Live data from Hacker News

Viewing profile — unluckier

unluckier

HN member
Joined
Sat, Nov 29, 2014, 4:43 PM UTC
HN karma
69
Public activity
30 items

About unluckier

No profile information was provided.

Recent public activity

  1. comment
    Comment #41652584

    The thread that the title comes from is from a Twitter user that later stated about the issue: "And YES: I LOVE hyping the sh1t out of this stuff because apparently sensationalism …

  2. comment
    Comment #41580896

    Disabling the firewall for testing is simple enough. If things work after turning off the firewall, then this is your problem.

  3. comment
    Comment #41580864

    It's easily reproducible with a fresh macOS install. Yes, ESET has its own issue. But this is a problem in and of itself. https://imgur.com/a/Nr7Gk6c

  4. comment
    Comment #41572255

    See: https://waclaw.blog/macos-firewall-blocking-web-browsing-aft... If disabling the firewall (for testing) solves this problem, this is likely your issue.

  5. comment
    Comment #41572180

    Sequoia also breaks an application's ability to use DNS (or presumably anything UDP-based) if the macOS firewall is enabled, and an app is listed as "Block incoming connections". h…

  6. comment
    Comment #17306595

    So... two of the routers affected by the recent VPNFilter malware? Interesting choice.

  7. comment
    Comment #12679603

    No mention of ASLR. Helping to prevent memory corruption bugs apparently isn't on their radar?

  8. comment
    Comment #10879133

    If you're on BSD, that'll kill dd.

  9. comment
    Comment #10729428

    What version of IE is that dialog from? 6? Things have changed quite a bit since then. Yes, SSL inspection is a security tradeoff. Whether the folks rolling it out realize this is …

  10. comment
    Comment #10728298

    Even done in the best way possible, SSL inspection puts end users at increased risk. In the real world, vendors make mistakes, which put them at even higher risk. https://insights.…

  11. comment
    Comment #10645757

    "It desperately wants to just upgrade whenever it wants." Do you think that it's better that operating systems get security updates or that they get left alone? "Copy and paste is …

  12. comment
    Comment #10639062

    Or just turn off the web features. It's quite trivial to do so. http://www.howtogeek.com/224344/how-to-disable-spotlights-we...

  13. comment
    Comment #10603056

    It's the FreeBSD folks that didn't bother. Not you.

  14. comment
    Comment #10602653

    We all know that exploit mitigations aren't perfect. But to not even bother using them... that's just ridiculous. There are plenty of scenarios where ASLR helps prevent exploitatio…

  15. comment
  16. comment
    Comment #10602033

    I've heard the opposite. Although it's comparing to OpenBSD in this case, here's a good graphic that shows the exploit mitigations that FreeBSD provides by default: http://networkf…

  17. comment
    Comment #10601942

    How's FreeBSD doing in the exploit mitigation department? Last I checked, they didn't even have ASLR. http://networkfilter.blogspot.com/2014/12/security-openbsd-v...

  18. comment
    Comment #10110893

    You have to block outbound communication for "Search" in the Windows firewall. Regardless of whatever privacy settings you may have set.

  19. comment
    Comment #10109404

    If you have a proven technique for making Windows 10 not phone home, post the details here.

  20. comment
    Comment #10038493

    Did you install the CA certificate from whatever software you're using to MITM your machine?

  21. comment
    Comment #10038455

    At least for Android: https://docs.google.com/spreadsheets/d/1t5GXwjw82SyunALVJb2w... There are several banking-related apps listed here.

  22. comment
    Comment #10038267

    What do you mean "apps like this" ? The OP is talking about the Windows 10 OS, which uses the OS CA store.

  23. comment
    Comment #10038158

    It's pretty simple if the OS you're using allows you to install a trusted root CA certificate.

  24. comment
    Comment #10038151

    Is it really necessary to use a host that requires JavaScript to display an image? Anyway, I've confirmed this. I've disabled web search and all of the other privacy options I've s…

  25. comment
    Comment #10038143

    He did use a JPEG...