Live data from Hacker News

Viewing profile — xmodem

xmodem

HN member
Joined
Wed, Sep 05, 2012, 7:44 AM UTC
HN karma
1,872
Public activity
600 items

About xmodem

No profile information was provided.

Recent public activity

  1. comment
    Comment #49225710

    I have poor eyesight and need to sit closer than normal, and I find 27" to be just a tad too large. In my home-office setup I have a decade-old 24" 4K IPS panel that is the perfect…

  2. comment
    Comment #48971057

    If this is true then why did Anthropic bother to update their privacy policy when they first launched Fable?

  3. comment
    Comment #48710512

    If you can reproduce it reliably and doing so generates some form of telemetry, then just set up some automation to keep doing that in a loop. From as many machines as possible. No…

  4. comment
    Comment #48574729

    Hell, I've hand-written a large PR as a single commit and then asked claude to break it down for me at least once. But I think the fact doing this task by hand is a tedious, time-c…

  5. comment
    Comment #48567050

    What percentage of CVEs can be used to obtain a shell, but can't otherwise be used to obtain some other form of code execution in a distro-less container?

  6. comment
    Comment #48567023

    I am aware, thank you :). I responded to a sibling dupe-comment over here [1]. To summarize, in my experience there is immense value to having basic shell tools available in the en…

  7. comment
    Comment #48562168

    Nope, not my position at all. I want to have a minimal OS environment with rudimentary tools available with zero extra friction. FROM alpine:latest adds less than 10MB and covers 9…

  8. comment
    Comment #48561605

    Yup! They are a good solution to the massive problem you caused for yourself by implementing a different "solution" to a non-problem. And even that's only true if you assume kubern…

  9. comment
    Comment #48560503

    > FROM scratch just reduces the surface. The actual attack surface of your application? Or the attack surface of you and your team's attention from a busybody security org. It's im…

  10. comment
    Comment #48559098

    > The cool part about FROM scratch images is that you'll never have to update your base image to address CVEs. Only your software and its (compiled) dependencies. What's the benefi…

  11. comment
    Comment #48558985

    More than one ~500 employee company I've worked at has had security policies either encouraging or requiring the use of "distro-less" images - images with no OS components other th…

  12. comment
    Comment #48240652

    I see a lot of commentators in this thread who are aggressively critical of volunteer maintainers for making a decision about how to maximize the value of the free labor they donat…

  13. comment
    Comment #48239891

    Rather than have complexity centralised and managed, let's generate the same vulnerable code across millions of apps. Great plan.

  14. comment
    Comment #48002025

    TUIs suck and the only reason they are seeing a re-surgency of relevance is because everything else sucks more along one or more critical metrics. Given the truly incomprehensible …

  15. comment
    Comment #47976564

    I just want a button that says "approve and merge these 3 commits now but these two need re-work"

  16. comment
    Comment #47913911

    Don't anthropomorphize the language model. If you stick your hand in there, it'll chop it off. It doesn't care about your feelings. It can't care about your feelings.

  17. comment
    Comment #47913868

    So it's only wrong in a technical and pedantic sense. A better phrasing might have been along the lines of "There are many sequences of tokens that will destroy your production dat…

  18. comment
    Comment #47649038

    It's an objection to adding a new dependency, not an attempt to remove an existing one. If we can't stop adding new dependencies, we are certain to be stuck with the status quo for…

  19. comment
    Comment #47386968

    It's almost as if comments on a website called "hacker news" are written by individuals with differing and varying opinions, and not by some nebulous hive-mind that purports to be …

  20. comment
    Comment #47322500

    The problem is that the well you are drinking from has in fact been poisoned. Maybe you think you can tolerate it but some projects are taking a policy decision that any exposure i…

  21. comment
    Comment #47279669

    The fact that the AI agent will just go and attempt to do whatever insane shit I can dream up is both the most fun thing about playing with it, and also terrifying enough to make m…

  22. comment
    Comment #47279195

    An engineer recklessly ran untrusted code directly in a production environment. And then told on himself on Twitter.

  23. comment
    Comment #47252685

    The A-series has supported virtualization since long before the M-series existed. iOS disables it in early boot, though. On the other hand, how much virtualization are you really g…

  24. comment
    Comment #47102599

    > Unless your strategy is to create a photo-lab-like screen in pure black and red, or wear deep-red-tinted glasses, it’s unlikely that a pure colorshift strategy will cut out that …

  25. comment
    Comment #46859246

    > And I'm guessing that the reason macOS doesn't give more details is because macOS is likely not involved in the step that fails And I guess because of the wide variety of third-p…