Live data from Hacker News

Viewing profile — rx4g

rx4g

HN member
Joined
Sat, Feb 09, 2013, 10:42 PM UTC
HN karma
39
Public activity
19 items

About rx4g

My day job as a software developer keeps me pretty busy, but I'm usually working on a side project or two.

Recent public activity

  1. comment
    Comment #43139128

    Yes, I do, and am almost 50. I feel fortunate. I get to solve puzzles with a lot of my time.

  2. comment
    Comment #43139060

    Yes, I do, and am almost 50. I feel fortunate. I get to solve puzzles with most of my time.

  3. comment
    Comment #9736538

    I have experience with Angular and Backbone. Backbone will definitely give you more control, but you have to make more choices. Angular is definitely generating more buzz, but Back…

  4. comment
    Comment #8981381

    Now I kind of want to cross-reference this with the TIBOE index and make a frankenlanguage with the most popular syntax.

  5. comment
    Comment #8624274

    Huh, http://www.theverge.com/2014/11/18/7239221/whatsapp-rolls-ou... (found searching Google News for TextSecure) is also 404'ing at the moment.

  6. comment
    Comment #8195846

    It also gives you a chance, on subsequent logins, to just login using your FB account. Not that uncommon.

  7. comment
    Comment #8142157

    Self-signed certs are much harder to get browsers to accept these days. The "I know what I'm doing" button and process are becoming ever more complex, and I wouldn't be surprised i…

  8. comment
    Comment #8142118

    I think he's saying that clients could decide beforehand whether they want to go into HTTPS-only mode, for example. But this is something clients can actually do today, without the…

  9. comment
    Comment #8142089

    I can't speak for anyone else, but I certainly do. Regardless of the form of PKI employed, there's going to be a cost associated with validating the identity of the parties you're …

  10. comment
    Comment #8141970

    It's disappointing to hear that the idea of requiring TLS with HTTP/2 has lost traction. For me, TLS-everywhere was the carrot on the stick. I recognize that getting consensus is h…

  11. comment
    Comment #8133368

    No measure taken in isolation will give you "that much security". As you say, validating the identity of the artifact signer is an extremely important and oft-missed measure, but t…

  12. comment
    Comment #7891426

    Try the proxy in Burp Suite. The free edition lets you do most of what you can do in Fiddler. More powerful in some ways, rougher around the edges in other ways.

  13. comment
    Comment #7812382

    inb4 LibreCrypt

  14. comment
    Comment #6383565

    I have high hopes for TACK too. The fact that it's not CA dependent is a big deal. I wrote a bit about that, and getting by with ditching the root CAs in Firefox here: https://rx4g…

  15. story
  16. comment
    Comment #6361848

    Actually, without installing extra software, you can drop all the root CAs and do Trust-on-First-Use (TOFU) with a limited set of browsers. It's possible with Firefox desktop, for …

  17. story
  18. story
  19. comment
    Comment #5194475

    Wow, I can relate. A while back I left a job I had for 11 years to enter a completely different business domain. I still get email from users of the software I used to work on. Bac…