Hacker Newsnew | past | comments | ask | show | jobs | submit | more jxjnskkzxxhx's commentslogin

I've rolled with the same set up for years, what should I be doing instead?


If your setup includes a password manager, generated unique passwords and enabling 2FA everywhere you can, there's not much else to do.

Just use a unique complex root password for your password manager and check semi-regularly that it hasn't leaked on haveibeenpwnd.

Bonus points if your password manager automatically checks your stored passwords for leaks and scores them (eg. LastPass)


I happen to think that having your password manager online is a mistake.


For your consideration, one does not need to have their password manager online to use HIBP; they offer [at least] two different concessions to your concerns:

- SHA1 or NTLM hash prefix matching https://haveibeenpwned.com/API/v3#SearchingPwnedPasswordsByR...

- actually download the HIBP db and check for yourself https://haveibeenpwned.com/API/v3#PwnedPasswordsDownload

Thus you could hash your passwords in your airgapped setup, transfer the hashes using a mechanism you trust to an Internet connected device, and then check the hashes


password manager with 2FA / yubikey, randomized passwords per account, randomized account emails if your provider supports aliasing


What provider do you suggest? I've used Gmail all my life. Recently firefox started supporting forwarding, but that's only 5 emails.


I'm on Fastmail and it has been worth every penny. They happen to also integrate their email alias generation with 1Password, which I also use, making it an extra good investment

Despite their name being fastMAIL they also have a passable calendaring implementation. My only complaint about it is that they don't offer an Android "widget" in order to see the upcoming agenda at a glance, so one has to actually launch their app to view the calendar

If such things matter to you, they have CalDAV and WebDAV offerings, the latter of which I use for backing up my ViolentMonkey scripts. I haven't used their "Google Keep" replacement because Joplin serves my needs, but it does exist. And all of this for the same yearly price


> My reading has gotten worse over the years

Do you spend a lot of time on your phone?


I wonder what he would say if you could show this to him. Probably something like "you know, this is if no consequence".


Thanks for that.

If you don't mind a follow up: how is it legal that some corporate restructuring applies differently do different investors, e.g. founders Vs angel? Like if I own 90% and you own 10% can I just go "I've decided that you own 0% now"?


How come Peter thiel wasnt diluted in Facebook?


He was.

But it’s Facebook.


Ah yes angel investing. Investing in businesses that don't make money. Ok.


This is extremely superficial.


I downloaded his letters to shareholders to an ebook reader, starting I believe in 1971 or so. Read all of it to the present, about 1500 pages (there's a lot of repetition)

What sticks out the most is what a clear thinker he is.


Would be possible for you to share it? I think would be a very interesting read. Thanks


Quantum computers don't exist. If you want to talk about a hypothetical machine which might exist in the future you should state that plainly.

Forcing the reader to parse thru the literary devices in order to get to the argument weakens the argument.


Not them but you are replying on a thread talking about how it isn't safe in the longer future. That context was already built.


Quantum computers absolutely exist and are commercially available. They're just not very useful at the moment.


It get exponentially difficult to add more qubits so it's not a given that we will be able to build one large enough to be a real threat to modern cryptography.


“Quantum computers that break diffie hellman as easily as RSA”, where “easily” means “not at all”, do exist.


> I'd think it just takes a blessing from the dear leader to mock his rotundness in front of the evil capitalists, as long as it brings in the dough and the corporate secrets.

The Muslim fundamentalists to did 9/11 shaved their beards to look less suspicious.


Yeah, I'm pretty sure this whole thread is rather silly because if this is a game of chess their next move is very obvious.


Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: