Live data from Hacker News

Show HN: Hacker News' “most unique support email of 2014”

news.ycombinator.com

91–100 of 120 posts

Re: Show HN: Hacker News' “most unique support email of 2014”

#93
post #41
post #8

Earlier quoted context omitted.

Security Theater Everywhere strikes again. Unless you're logged in and entering data, Hacker News does not need SSL.

In addition to thwarting state-sponsored attacks mentioned by geofft, HTTPS also prevents ISPs and hotels from injecting ads[1,2]. And using HTTPS even for logged-out users prevents an attacker from sslstripping[3] the link to the login page, which is good because even the most careful users won't always notice when a login page is suddenly served over an insecure connection. As a user of HN, I appreciate these secur…

This doesn't completely stop sslstripping. It does mitigate the possibility of link rewriting. However, unless you directly access the site via HTTPS, there would have to be a redirect to the secure version, which can still be hijacked.

Re: Show HN: Hacker News' “most unique support email of 2014”

#94

Earlier quoted context omitted.

Can it run Cyanogen? The Blackberry Passport is one of the few modern keyboard phones, it uses Amazon's appstore for Android apps.

Yes, and CGM 11 (KitKat) as well. The CGM wiki isn't entirely clear on this - there's a specific build for the Q which is somewhat outdated [1] so you should use this [2] [3]. Be aware that you'll need to tweak it a bit to make it super-responsive with 4.4 - at least for me, the N5 has really spoiled me (...especially after I went back to 4.4) > The Blackberry Passport is one of the few modern keyboard phones, it use…

Cool, thanks for the pointers.

Re: Show HN: Hacker News' “most unique support email of 2014”

#95
post #8

My gut says that they've disabled SSL v2/v3, and that the device does not support TLS.

Security Theater Everywhere strikes again. Unless you're logged in and entering data, Hacker News does not need SSL.

If you only encrypt what's important, you're doing your "enemies" half of their work :)

Re: Show HN: Hacker News' “most unique support email of 2014”

#96

I don't think it's possible for something to be the 'most unique'.

I used to be similarly pedantic with English. But a few years ago I converted to descriptivism[0], and I've been much happier ever since. :)

[0] http://english.blogoverflow.com/2012/10/prescriptivism-and-d...

Re: Show HN: Hacker News' “most unique support email of 2014”

#97
post #83
post #56

Earlier quoted context omitted.

Should we accept incorrect usage of language that is more confusing than the correct usage? For instance, using "begs the question" instead of "raises the question". It causes a lot of confusion because people cannot even agree what the misusage of "begs the question" means and it is never a better choice of words than "raises the question" if that is what someone means.

The point is that "correct usage" is not defined by logicians or etymologists or any kind of authority, but by society as a whole, and therefore has no one exact definition. Look up "literally" in any recent dictionary for proof.

And the misuse of 'literally' as a generic intensifier isn't even recent. It dates back[0] to the late 1600s.

[0] http://www.slate.com/articles/life/the_good_word/2005/11/the...

Re: Show HN: Hacker News' “most unique support email of 2014”

#98

Earlier quoted context omitted.

Or just have each protocol do what it's supposed to, rather than redirecting one to another? In general, aren't advanced users supposed to like having the option to make their own decisions?

Yeah. How many users (not power users) actually type https:// into address bar? To my knowledge, if you don't include the protocol, browser default to HTTP.

Not on Hacker News (and many other sites) with a modern browser. The first time you visit http://news.ycombinator.com, it will redirect to https://, and you're correct, if the first time you visit happens to be the time you are MITM'd, this is a weak point.

However, after the first visit, your browser learns through HSTS (the Strict-Transport-Security header) that accessing news.ycombinator.com without TLS is not supported, and won't attempt to access it again except via TLS. (For a year, in HN's case - this is configurable by the site administrator.)

Re: Show HN: Hacker News' “most unique support email of 2014”

#99

Earlier quoted context omitted.

Safari?

Safari doesn't do that out of the box. Something with an extension?

Actually, in safari, you can double-click on a link to highlight it, and the right-click menu has options "Go To Address" and "Go To Address in new tab". Quite useful.

Re: Show HN: Hacker News' “most unique support email of 2014”

#100
post #15

Uniqueness is absolute, so the support email is either unique or not. There are no degrees of uniqueness for something to be more unique than another thing. Sorry, but this grammar mistake is a big pet peeve.

You must be a blast at parties.
Post reply on HN