Hacker Newsnew | past | comments | ask | show | jobs | submit | wolf550e's commentslogin

Almost nothing is built by security engineers, including security features of security products at security companies.


I'm a security engineer, I have built things like this, and I made the original comment. A lot of my job revolves around developing automation for security needs.

Also, many of the top 100 domains serve user-generated content (like AWS/S3). Blindly trusting anything from them just because they are big is so woefully misguided it boggles my mind; I seriously doubt that anyone is actually doing what is described in the article.


Idk, I have done security audits for startups and small tech companies. They won't have a security engineer on staff and are "moving fast and breaking things". I've seen things much more misguided than this.


I just finished working at a small company like what you are probably describing. It was...horrific. But I try not to think about that anymore!


Is this handled by uv or do you need to use deadsnakes ppa?


If anything, you'd need the opposite, as deadsnakes is old versions (OP needs a new version).


deadsnakes has 3.13.8, 3.14.0 and 3.15-a1 for 22.04: https://launchpad.net/~deadsnakes/+archive/ubuntu/ppa?field....


Oh interesting, I didn't realize they started including newer versions. I guess that makes the name a misnomer then...


"mainframes" are z/Architecture, not POWER.


OpenSSH and OpenSSL are completely unrelated projects.


Independent projects but not unrelated since there was a historical dependency from OpenSSH to OpenSSL.

https://serverfault.com/questions/780476/generating-ssh-keys...

My knowledge was a bit outdated by about a decade.


There have been Jews in Jerusalem, even a majority of Jews, in Ottoman times.

https://en.wikipedia.org/wiki/Demographic_history_of_Jerusal...

The Jews of Morocco (or Baghdad, or Tehran) can't go back. For that matter, surviving Polish Jews were chased out of Poland after WWII. Most Israeli Jews are Mizrahi and most Israeli Jews don't have a 2nd passport.

And, of course, people have a right to self determination. Jews don't have to beg to be allowed to live as dhimmi or as a minority in Europe.

One people from the middle east managed to actually decolonize their tiny piece of land from the Arabs, and people have lost their minds. Every minority in the middle east is under attack (Kurds, Druze, Christians, etc.), and Westerners always side with the Arab colonizers.


I love that you brought up right to self-determination.

However it comes with the bundle with all human rights and international laws, including Prohibion on forced displacement (like Nakhba), full recognition of Human Rights (apartheid state), territorial integrity (settlements), prohibion on genocide (ICC/ICJ is awaiting trial)

The international law has been settled on this: Two state solution, 1967 borders, full rights to Palestinian state, etc.


The vast majority of Israelis wanted the Palestinians to have a state. That's why Barak, Sharon and Olmert were elected. Israel tried twice to negotiate for a Palestinian state, and once gave the Palestinians Gaza unilaterally. The Palestinian leadership did not agree both times, and we have seen what they did with Gaza since 2005.

The problem is that the goal of the Palestinians is not a Palestinian state, it's to ensure that the Jews don't have a state. Otherwise they would have gotten a state in 1947. Except that the Palestinians didn't exist as a polity in 1947, and the West Bank was claimed by Jordan until 1988. The PLO was established in 1964, not to free the West Bank from Jordan, but to undo the 1948 war.

There is no Palestinian opposition that says not agreeing then was a mistake and they should have taken the offer (e.g. in 2008).

The main issue is not that some Palestinians are under the rule of horrible leaders like Hamas, the problem is that Hamas is the most popular party. The Palestinians completely support the goal of undoing the establishment of Israel. And apparently are mostly ok with the principle that it doesn't matter how many lives it costs, as long as Muslim land is freed, i.e. no sovereign Jews.

Basically, Israel has peaceniks and leftists, and even right wing governments were very willing to give land for peace, believing in the two state solution. The Palestinians have never had any peaceniks. The Israeli peace camp was badly wounded by the second intifada and it seems completely killed by October 7th.


> prohibion on genocide (ICC/ICJ is awaiting trial)

ICC is not pursuing any genocide charges. Khan initially sought a charge of extermination, but it was rejected by the pre-trial chamber.


The parser is attack surface, but that's the only part of something like Photoshop that has to be secure. The actual editing features can be insecure.


The reason JPEGs still rule is because Google Chrome removed support for JPEG-XL, the actually better photo format, because the Google guys who did AVIF decided they don't want competition.


Chrome's JPEG-XL removal was officially due to low usage metrics and prioritization concerns, not just competitive motives - Google's own engineers were divided on the decision, with many supporting JXL's technical merits.


The demographics are changing, but see https://en.wikipedia.org/wiki/Mizrahi_Jews_in_Israel


They also support P-256 and P-384 ECDSA, but I think 4096 bit RSA is ok for account key.

https://letsencrypt.org/docs/integration-guide/#supported-ke...


Implementing an ACME client in python using pyca/cryptography (or in Go) would be fine, but why do it in C++ ?


Not everyone wants to deal with maintaining Python and untold dependencies on their web server. A C++ binary often has no additional dependencies, and even if it does they’ll be dealt with by the OS package manager.


I think uv[1] basically solved this problem for python scripts. Go creates statically linked executables that are easy to deploy.

1 - https://docs.astral.sh/uv/guides/scripts/


Docker/podman?


Not everyone wants to spin up a multi-GB container for when a 80KB C++ binary would do...


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: