Viewing profile — tomxor
tomxor
HN member- Joined
- Mon, Jan 23, 2017, 1:59 PM UTC
- HN karma
- 10,469
- Public activity
- 2,987 items
- HN profile
- View on Hacker News ↗
About tomxor
No profile information was provided.
Recent public activity
-
comment
Comment #49176394
> You know about the values of a culture, if they call your old parents to rip them off. Large groups of people in a poor country steal from rich countries, and your explanation is…
- comment
-
comment
Comment #48978679
> A ping goes around the whole world before your pressed key is visible on the screen. I don't disagree with your sentiment, but as someone who manages infrastructure which is lite…
- comment
-
comment
Comment #48509384
> For many people, LLMs are the first time that computers do what they tell them to. Not what some big tech PM has decided is or isn’t possible. The crux is here somewhere. A massi…
-
comment
Comment #48198165
That's helpful to prevent individual secret harvesting, however it does not protect you from potential silent downstream effects in packages. i.e. inclusion of malicious code in li…
-
comment
Comment #48196512
At this point lifecycle script should be disabled by default in NPM. It's a convenience feature that provides built-in Arbitrary Code Execution (even for transient dependencies), a…
-
comment
Comment #48196214
> You are not recovering these investments OK, Question: Would this outcome still benefit society overall? In the aftermath of this bubble "AI" will still have utility, like the do…
- comment
- comment
-
comment
Comment #48007015
Hah TIL. So it's the river Welsh river on the English side of the Bristol channel. I often feel like I would understand a lot more names if I bothered learning Welsh. It's pretty p…
-
comment
Comment #47968175
> Immediate public disclosure is the only choice that isn't irresponsible as far as I'm concerned. No, it's really not. High severity vulnerabilities are responsibly handled by qui…
-
comment
Comment #47964513
FYI it's dynamically loaded on demand, so lsmod will show it after you try run the exploit, or you can explicitly load it with: modprobe algif_aead The following mitigation (from t…
-
comment
Comment #47925603
Another happy self hosted Gitea user here for ~3 years now. Came from Gitlab which started pushing out basic users in 2022 with massive price hikes. I weighed Github as an option b…
-
comment
Comment #47804306
> aaand we have Quake and Comand&Conquer - Red Alert Agreed, it would seem that evolutionary biology peaked in the late 90s then
-
comment
Comment #47586910
These robots weren't really "walking" in the sense that humans walk through continuous dynamic balancing, i.e falling forward. These used quasi-static walking, where the zero momen…
- comment
-
comment
Comment #47463242
Go back to Win98 UI, I know it will never happen but can you imagine... At this point I genuinely think people would be blown away at how much of a functional improvement it would …
-
comment
Comment #47341108
Yes, by generally I really mean all the defaults are pretty permissive, but I understand some people tune both TCP and SSH on their servers to drop connections faster because they …
-
comment
Comment #47331024
If hung SSH connections are common it's likely due to CGNAT which use aggressively low TCP timeouts. e.g. I've found all UK mobile carriers set their TCP timeout as low as 5 minute…
- comment
-
comment
Comment #47290752
> It’s who’s looking at your profile; it’s the profiles that you’re looking at. That was the holy grail Facebook actually implemented this as a user facing feature. I think it was …
- comment
-
comment
Comment #47243823
Yup, in a word, ownership. But that's an unpopular approach these days where many companies are obsessed with minimising the bus factor to the point that their IP is as replaceable…
-
comment
Comment #47227163
> I cannot think of a technology more diametric to 'plug n play' than VR, which is very unfortunate. Ironically that's exactly what the Quest solved with SLAM, it really is plug an…