Live data from Hacker News

Viewing profile — vin10

vin10

HN member
Joined
Mon, Sep 11, 2023, 9:58 AM UTC
HN karma
337
Public activity
23 items

About vin10

https://vin01.github.io/piptagole/

Recent public activity

  1. comment
    Comment #48119219

    There should be a metric for sites hosting malicious content! https[:]//erasmus-plus.ec.europa.eu/sites/default/files/2026-05/mortal-kombat-2-cs.pdf

  2. comment
    Comment #46330729

    it's a (then-)safe default from the age when having 1GB of RAM and 2GB of swap was the norm: https://linux-kernel.vger.kernel.narkive.com/U64kKQbW/should...

  3. comment
    Comment #46330585

    > he way stuff fails when it runs out of memory is really confusing have you checked what your `vm.overcommit_ratio` is? If its curious what kind of failures you are alluding to.

  4. comment
    Comment #46330561

    For anyone feeling brave enough to disable overcommit after reading this, be mindful that default `vm.overcommit_ratio` is 50% which means that if no swap is available, on a system…

  5. comment
  6. comment
    Comment #44126242

    Nice usability features definitely. Apart from that how would you say it compares against something like sysdig falco / cilium + tetragon? Apart from this a major issue is DNS base…

  7. comment
    Comment #43927811

    Interesting project, I think I just found a way to crash the sandbox, just reported via an advisory.

  8. comment
    Comment #43904323

    I would have expected at least Virustotal to flag them if that were the case. It does more than just looking up in a database of known malicious URLs and I think the reputation of …

  9. comment
    Comment #43897580

    It is the same for nested links as well. They mostly have a chain of links, each one taking you to a new one with hop count ranging anywhere from 5 up to 10 or more.

  10. story
  11. comment
    Comment #41072790

    > If you wouldn't trust running it on your host, you probably shouldn't run it in a container as well. - From a Docker/Moby Maintainer

  12. story
  13. comment
    Comment #40444834

    It is guarded by a warning and requires explicit approval similar to browsers but yes, it does broaden the attack surface: https://gitlab.com/gnachman/iterm2/-/commit/fc9ae5c90f53c…

  14. comment
    Comment #40437497

    It is the first one, they need to be printed and clicked.

  15. story
  16. comment
  17. story
  18. comment
  19. comment
    Comment #39634268

    This is a very well formulated suggestion. Nicely written!

  20. comment
    Comment #39633742

    You are right about short expiry times but another catch here is that if pre-signed URLs are being leaked in an automated fashion, these services also keep the downloaded content f…

  21. story
  22. comment
    Comment #38761436

    OP here. Another interesting attack vector I have been working on is OSC 8 for hyperlink support in terminals. Mostly they allow arbitrary url schemes including "ssh://" without an…

  23. story