Live data from Hacker News

Viewing profile — yegortimoshenko

yegortimoshenko

HN member
Joined
Mon, Jul 06, 2015, 6:26 AM UTC
HN karma
442
Public activity
80 items

About yegortimoshenko

No profile information was provided.

Recent public activity

  1. comment
    Comment #25644249

    It gets much worse than that on this blog: https://archive.is/RtoKS#selection-397.1-397.222 > Nitpicking is more excusable for women to do. That's ultimately because men talk to ot…

  2. comment
  3. comment
    Comment #25067781

    Thank you, _why :3

  4. comment
    Comment #20370225

    https://blog.cloudflare.com/encrypted-sni/

  5. comment
    Comment #20316656

    I should have said "any disclosure": EFail was coordinated (6 months notice [1]) and yet GnuPG officially downplayed the risk [2], launched #effail counter-campaign and blamed rese…

  6. comment
    Comment #20315633

    Can confirm, I've reported a similar attack [1], along with a few other vulnerabilities, and also published exploit tools. I ended up getting legal threats from two people that I s…

  7. comment
    Comment #20150558

    For reference, this concern has been addressed here: https://news.ycombinator.com/item?id=20149112

  8. comment
    Comment #20150163

    There are not that many phone manufacturers that even allow you to change the trust anchor (which makes any of this even remotely possible). For example, Samsung uses e-fuses to bu…

  9. comment
    Comment #20149573

    Chain of trust does protect you from evil maid attacks. And yes, there can be bugs in application layer, but at least half of all CVEs are memory corruption bugs. These practices d…

  10. comment
    Comment #20149495

    Librem 5 isn't going to be particularly security-focused: no attestation, no trusted boot, most userspace programs are written in memory unsafe languages like C, with no extra effo…

  11. comment
  12. story
  13. story
  14. comment
    Comment #20147859

    I saw both variants in both browsers.

  15. comment
    Comment #20145817

    Huh, 5 out of 15 interviewed developers referred to their desktop as "boring".

  16. comment
    Comment #20139606

    Relevant section of Debian upstream guide: https://wiki.debian.org/UpstreamGuide#SCons As a Linux distribution maintainer, I second that. There are not that many packages that stil…

  17. comment
  18. comment
    Comment #17322709

    This is not a valid DMCA claim, point one doesn't even mention copyright. I sent a counter-claim, then tried to republish the repo. GitLab said me I will only be able to republish …

  19. comment
    Comment #17322345

    Repos have been moved to http://github.com/AndroidHardening .

  20. comment
    Comment #17322055

    I'm not sure what you expect from the developer, to just take it? He doesn't have power in the company because even though he's a 50% shareholder, he's not on the board of director…

  21. comment
    Comment #17298365

    Mirror: https://github.com/yegortimoshenko/copperhead-takeover CEO has sent DMCA takedown request on my GitLab repo, which clearly abuses copyright law. To use the mirrored pages, …

  22. comment
    Comment #17298263

    Mirror: https://github.com/yegortimoshenko/copperhead-takeover CEO has sent DMCA takedown request on my GitLab repo, which clearly abuses copyright law.

  23. comment
    Comment #17296115

    CEO also blocks everyone who supports Daniel on their IRC channel. I've been repeatedly asked to take down these links and documents, and CEO even told me "they would come after me…

  24. comment
    Comment #17241694

    CEO has removed all of their comments except one. Here are two archived states that should hopefully help future readers to understand the discussion: https://yegortimoshenko.gitla…

  25. comment
    Comment #17239826

    Sales is means, not a goal in and of itself. What you're suggesting is a broken economic model that doesn't honor people that add to the world (i.e. authors).