Live data from Hacker News

Viewing profile — tomxor

tomxor

HN member
Joined
Mon, Jan 23, 2017, 1:59 PM UTC
HN karma
10,469
Public activity
2,987 items

About tomxor

No profile information was provided.

Recent public activity

  1. comment
    Comment #49176394

    > You know about the values of a culture, if they call your old parents to rip them off. Large groups of people in a poor country steal from rich countries, and your explanation is…

  2. comment
  3. comment
    Comment #48978679

    > A ping goes around the whole world before your pressed key is visible on the screen. I don't disagree with your sentiment, but as someone who manages infrastructure which is lite…

  4. comment
  5. comment
    Comment #48509384

    > For many people, LLMs are the first time that computers do what they tell them to. Not what some big tech PM has decided is or isn’t possible. The crux is here somewhere. A massi…

  6. comment
    Comment #48198165

    That's helpful to prevent individual secret harvesting, however it does not protect you from potential silent downstream effects in packages. i.e. inclusion of malicious code in li…

  7. comment
    Comment #48196512

    At this point lifecycle script should be disabled by default in NPM. It's a convenience feature that provides built-in Arbitrary Code Execution (even for transient dependencies), a…

  8. comment
    Comment #48196214

    > You are not recovering these investments OK, Question: Would this outcome still benefit society overall? In the aftermath of this bubble "AI" will still have utility, like the do…

  9. comment
  10. comment
  11. comment
    Comment #48007015

    Hah TIL. So it's the river Welsh river on the English side of the Bristol channel. I often feel like I would understand a lot more names if I bothered learning Welsh. It's pretty p…

  12. comment
    Comment #47968175

    > Immediate public disclosure is the only choice that isn't irresponsible as far as I'm concerned. No, it's really not. High severity vulnerabilities are responsibly handled by qui…

  13. comment
    Comment #47964513

    FYI it's dynamically loaded on demand, so lsmod will show it after you try run the exploit, or you can explicitly load it with: modprobe algif_aead The following mitigation (from t…

  14. comment
    Comment #47925603

    Another happy self hosted Gitea user here for ~3 years now. Came from Gitlab which started pushing out basic users in 2022 with massive price hikes. I weighed Github as an option b…

  15. comment
    Comment #47804306

    > aaand we have Quake and Comand&Conquer - Red Alert Agreed, it would seem that evolutionary biology peaked in the late 90s then

  16. comment
    Comment #47586910

    These robots weren't really "walking" in the sense that humans walk through continuous dynamic balancing, i.e falling forward. These used quasi-static walking, where the zero momen…

  17. comment
  18. comment
    Comment #47463242

    Go back to Win98 UI, I know it will never happen but can you imagine... At this point I genuinely think people would be blown away at how much of a functional improvement it would …

  19. comment
    Comment #47341108

    Yes, by generally I really mean all the defaults are pretty permissive, but I understand some people tune both TCP and SSH on their servers to drop connections faster because they …

  20. comment
    Comment #47331024

    If hung SSH connections are common it's likely due to CGNAT which use aggressively low TCP timeouts. e.g. I've found all UK mobile carriers set their TCP timeout as low as 5 minute…

  21. comment
  22. comment
    Comment #47290752

    > It’s who’s looking at your profile; it’s the profiles that you’re looking at. That was the holy grail Facebook actually implemented this as a user facing feature. I think it was …

  23. comment
  24. comment
    Comment #47243823

    Yup, in a word, ownership. But that's an unpopular approach these days where many companies are obsessed with minimising the bus factor to the point that their IP is as replaceable…

  25. comment
    Comment #47227163

    > I cannot think of a technology more diametric to 'plug n play' than VR, which is very unfortunate. Ironically that's exactly what the Quest solved with SLAM, it really is plug an…