Live data from Hacker News

Viewing profile — zsims

zsims

HN member
Joined
Fri, Apr 16, 2021, 5:27 AM UTC
HN karma
127
Public activity
42 items

About zsims

No profile information was provided.

Recent public activity

  1. comment
    Comment #42447300

    Tradeoff is all the edge cases of cookies, CSRF etc. It's not a simple "cookies are better"

  2. comment
    Comment #42380892

    > The U.S. government wants everyone to abandon C/C++ -- how will they do this if they depend on SQLite3? ABI, the same way you don't need the Linux kernel to be rewritten to remov…

  3. comment
    Comment #42352761

    We do, I want to know if it's going to rain on my birthday

  4. comment
    Comment #41002499

    > Whilst Crowdstrike are going to cop a potentially existential-threatening amount of blame, an application shouldn't be able to do this kind of damage to an operating system. It d…

  5. comment
    Comment #40714865

    Blame for Flash? Or celebrated for killing Flash? Flash was a security nightmare

  6. comment
    Comment #40573980

    There are other paths to the attack he mentioned. Eg you find an API that accepts ciphertext or part of. Or a cloud backup/restore flow. Likely you need another vulnerability but i…

  7. comment
    Comment #40471956

    The problem is, it's not their software. No control over Slack, Outlook etc

  8. comment
    Comment #40241707

    Useful because you can support existing passwords without requiring everyone to login or reset their password. Still has flaws though, like password shucking.

  9. comment
    Comment #39771308

    Western Australia could be the ongoing emu war - https://en.wikipedia.org/wiki/Emu_War

  10. story
  11. comment
    Comment #37627258

    Nix has no security guarantees, nor sandboxing primitives. So not really comparable.

  12. comment
    Comment #37425938

    It's from https://mathiasbynens.be/demo/url-regex and rather fantastic. Thanks for sharing

  13. comment
    Comment #36869226

    I'd say at this point the most important part is "correctness" (rendering etc) and security

  14. comment
    Comment #36869136

    Doesn't that argument apply to tabs also? Eg IE6 days where there were no tabs, and everything was deferred to the OS/desktop window management. It was clunky and painful.

  15. comment
    Comment #36763793

    You mean like http://www.lambdashell.com/ ?

  16. comment
    Comment #35463549

    I haven't been maintaining this much lately. Suffers from the same problems as other tools - the accessibility APIs are slow

  17. comment
    Comment #35462112

    Discovery of Headless Chromium security vulnerability, how it works, and mitigations that should be applied to similar configurations

  18. story
  19. comment
    Comment #35302526

    Unless they see Bard as fulfilling that.

  20. comment
    Comment #34826457

    You're worried about performance but want x86 emulation on ARM?

  21. comment
    Comment #33638371

    You're just making up things trying to find a reason. HTTP was only invented in 1989, so these imaginary early 80s clients likely don't exist

  22. comment
    Comment #32688596

    > $18321AUD Is that a typo? Or are they actually that exxy?

  23. comment
    Comment #32475744

    Flatpack only came out in 2015

  24. comment
    Comment #32432187

    And the commercial fork: https://www.bsimm.com/

  25. comment
    Comment #32420938

    Um excuse me, how will people know I had an açai bowl for lunch?