Live data from Hacker News

Viewing profile — richardowright

richardowright

HN member
Joined
Mon, Sep 03, 2012, 7:53 PM UTC
HN karma
47
Public activity
26 items

About richardowright

No profile information was provided.

Recent public activity

  1. story
  2. comment
    Comment #26924234

    When the ID changes on the tag, a nearby device can link the two id's together since they're in the same 'position' (i.e. id x was at y position and now id z is there, so id x = id…

  3. comment
    Comment #25602405

    Does this include access to thinks like the Azure Control Plane components? In my mind, that code has a different exposure.

  4. story
  5. story
  6. story
  7. story
  8. comment
    Comment #25340359

    I've also been having this issue with ATT Fiber, but I'm out of Atlanta.

  9. comment
    Comment #25077790

    Try CDAP - https://cdap.io/ . Open source with Google backing it.

  10. comment
    Comment #25077748

    Or use the opensource take of it - https://cdap.io/

  11. comment
    Comment #24147631

    Seeing a translation of "(security) driver slayer". https://twitter.com/DAlperovitch/status/1293948157618003969

  12. story
  13. comment
    Comment #23811059

    They do have a very comprehensive simulation system with a large part of the work being done at Dobbins Air Force Base just outside of Atlanta. From what I understand, the team is …

  14. comment
    Comment #22972681

    Why not use reverse verbal passwords (i.e. have the bank give you a secret phrase)? That should eliminate a large amount of issues without the need for a call back.

  15. story
  16. comment
    Comment #22761957

    Sprint's towers were built for it's CDMA network running in the 1900 MHz spectrum. However, their LTE network primarily run at the 2.5GHz spectrum which has far less range/requires…

  17. story
    Google's Down

    Looks like a huge # of Google Services are down including GCP. Some services that appear to be impacted - Gmail, YouTube, and Cloud Firestore. https://downdetector.com/status/googl…

  18. comment
    Comment #19259646

    Full post from eclypsium https://eclypsium.com/2019/01/26/the-missing-security-primer... . Also I assume aws baremetal servers are not vulnerable due to the nitro security card ( h…

  19. story
  20. comment
    Comment #18096846

    I imagine you just "replay" the issued/signed JWT to Facebook, so you can act like that user.

  21. story
  22. comment
    Comment #17446226

    Any plans to publish the results from the pbkdf2 version?

  23. comment
    Comment #8288218

    It seems to me like the breach may still be ongoing/the vulnerability may still exist. In the announcement, they use "have been" as in its actively occurring. Additionally, in the …

  24. story
  25. comment
    Comment #6316420

    I also think that since this would be exploited against non-state actors as well as states changes the payouts calculations significantly. Much, if not most, of the value is derive…