Hacker Newsnew | past | comments | ask | show | jobs | submit | testtesttest's commentslogin

Article is spot on. After a few weeks we broke quarenteen and flew to stay with the grandparents. We are lucky the grandparents are youngish and able to help.


Open source is not the same as open. You can't run Firefox on an iPhone.


Before someone says I have Firefox/Chrome on my iPhone; they are just skins for Safari. Same vulnerabilities which exist on Safari(Webkit) can be exploited there as well since they aren't allowed to use their browser engine.


If I understand you correctly, "open source" is not a kind of openness and should be disregarded. Assuming that is so, for the sake of argument, what does count as openness?



Sure you can't. That's not Firefox, but Firefox-branded Safari.


You can run real Firefox too, if you jailbreak first.


slack --inspect=4444 //will let ya connect to main electron process via chrome remote debug

Then run this

require('electron').BrowserWindow.getAllWindows()[0].webContents.executeJavaScript(` javascript:(_ => { const redux = slackDebug[slackDebug.activeTeamId].redux; const {wysiwyg_composer, wysiwyg_composer_ios, wysiwyg_composer_webapp, ...payload} = redux.getState().experiments; redux.dispatch({ type: '[19] Bulk add experiment assignments to redux', payload }); })(); `)

to disable rich text editor. Going to hack together a node launch script for slack here in a little bit :P


Thanks a lot, I need this


Another article [0] (2007) featuring the image.

[0] http://www.nbcnews.com/id/22113395/ns/technology_and_science...

EDIT: Presentation from Igor Alexeff and Theodore Anderson (University of Tennessee):

https://www.ysc.org.ua/2011/data/i.alexeff_presentation.pdf


>Downgrade KDEWebKit from Tier 3 to Porting Aids

>Summary: QtWebKit is dead, even the "revived" version has no changes since more than a year.

https://phabricator.kde.org/D21400


The organization is not exactly efficient and has had a lot of drama: https://www.theregister.co.uk/2019/06/04/npm_cj_silverio_jav...

It really doesn't matter too much though. As you mentioned, what they do is not that difficult and there are good alternatives (exp yarn).


If the maintenance costs are low enough. Replacing battery packs is not going to be cheap. It costs about $3000 USD to replace the battery pack in a Prius (I assume all electric cars will cost more). Generally the pack has to be replaced between 5 and 10 years depending on use.


Not sure why you were downvoted here. This is my exact concern. Batteries don't last forever, and they're expensive to refurbish or (more common, I assume) replace at the sizes necessary for an electric car.


Lots of big tech companies.

AT&T - 102 - San Ramon

Atmel Corporation - 45 - San Jose

Atmel Corporation - 14 - San Jose

Atmel Corporation - 9 - San Jose

Broadcom - 64 - San Diego

Broadcom and Avago - 771 - Irvine

Broadcom and Avago - 435 - Santa Clara

Broadcom and Avago - 48 - San Jose

Cisco Systems, Inc. - 899 - San Jose

Cisco Systems, Inc. - 42 - San Jose

Cisco Systems, Inc. - 25 - San Jose

DreamWorks Animation and - 226 - Glendale

DreamWorks Animation and - 170 - Glendale

Ericsson Inc. - 435 - San Jose

FireEye, Inc. - 80 - Milpitas

GoPro, Inc. - 138 - San Mateo

Google - 104 - Mountain View

Google Inc. - 94 - Mountain View

Hewlett Packard Enterprise - 258 - Palo Alto

Hewlett Packard Enterprise - 208 - Sunnyvale

Hewlett Packard Enterprise - 143 - Citrus Heights

Intel Corporation - 84 - Santa Clara

Intel Corporation - 54 - Santa Clara

Marvell Semiconductor, Inc. - 139 - Santa Clara

Marvell Semiconductor, Inc. - 20 - Aliso Viejo

Marvell Semiconductor, Inc. - 12 - Folsom

Motorola Mobility LLC - 58 - Sunnyvale

Motorola Mobility LLC - 9 - Santa Clara

Oracle America, Inc. - 441 - Santa Clara

Ricoh Electronics, Inc. - 147 - Tustin

Seagate US LLC - 70

Sony Computer Entertainment America - 40 - San Diego

Symantec Corporation - 84 - Mountain View

Symantec Corporation - 77

Symantec Corporation - 23 - Mountain View

Symantec Corporation - 3 - Mountain View

Synaptics Incorporated - 77 - San Jose

Twitter, Inc. - 67 - San Francisco

Western Digital Technologies, Inc. - 59 - Milpitas

Xerox Business Services - 19 - Irvine

Xerox Business Services, LLC - 11 - Irvine

Also Verizon, VISA and others...


Nowadays facts don't matter. Everybody follows whatever they already believe, including myself.

If we look at the TrueCrypt audit report: https://opencryptoaudit.org/reports/TrueCrypt_Phase_II_NCC_O...

It says they found 2 high severity issues, 1 low severity issue, 1 undermined severity issue. All in the cryptography category.

There were additional issues found by the Project Zero: http://googleprojectzero.blogspot.de/2015/10/windows-drivers...

Even when faced with this clear evidence, people consider TrueCrypt as being safe.

VeryCrypt is under active development, so the situation is much better since the issues can be fixed in the future releases. However, people might blindly follow whatever is reported and consider VeraCrypt bulletproof regardless of the previous experience with other crypto projects.


> Even when faced with this clear evidence, people consider TrueCrypt as being safe.

I don't understand. If your definition of 'safe' requires that no vulnerabilities can ever be discovered in a product, you're going to have to give up and never use a computer again.

Having some high-end crypto experts and some of the best bug hunters audit your product and then fix the discovered vulnerabilities puts you at the higher end of the security spectrum.

> VeryCrypt is under active development, so the situation is much better since the issues can be fixed in the future releases.

Counter-point for consideration: any non-maintenance code changes may introduce new issues that weren't part of this audit.


It is safe. It's safe in the same way that your valuables locked inside a 4 ton safe in your basement are safe. Or in the same way that being a passenger on a plane is safe. Or even in the same way that SSL is safe.

From the report you linked:

> While CS believes these calls will succeed in all normal scenarios, at least one unusual scenario would cause the calls to fail and rely on poor sources of entropy

Essentially, there are outlying circumstances in which it might be more vulnerable than usual, which is true of pretty much anything.


If you have a problem viewing the page (due to Dropbox bandwidth limits), here's an archived page (incl. pictures):

http://archive.is/1LKwZ


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: