Hacker News new | past | comments | ask | show | jobs | submit | _vvdf's comments login

> How are people still getting away with this kind of abuse? How?

Read the comments in this thread six hours from now and you'll understand.


I think I know what you are trying to say and I agree but I’m also on the camp that Richard Stallman didn’t say anything necessarily wrong, just awkward.

On the one hand I want people to be able to to speak their minds but on the other hand this guy might be a sexual predator at best and a serial rapist at worst. and he is getting away with it!


bring in the stallmanites!

I for one am glad there is someone to stand up for him - it makes it very easy to tell who wants to cherrypick and debate semantics due to their own biases.


It's not quite google.ar, but I'm still trying to figure out what to do with https://gnu.gl/


If GNU Project ever wanted to run a free Google alternative, GNUgl at gnu.gl would be a great fit.


Once they become a community project, rather than the rms fan club, I'll talk to them.


Until a year or two ago (can't remember exactly) it wasn't possible to register a "naked" .ar domain and they were reserved for very special cases (government mostly). It had to be a .com.ar or .org.ar etc.



Hahahaha. xD

But are they still IP and branding slaves?


I don't want to be that guy, but.... We should probably appreciate a modern IRCd, but why, why, why wasn't this written in a memory safe language like Rust or Go? Seriously wtf, if you are starting from scratch in 2021 on a remotely accessible application why would you choose C?


They aren't starting from scratch, it's a fork of charybdis, which in turn was a fork of ircd-ratbox.


Ah, that's helpful context. I had incorrectly assumed that it was something written from scratch, which would be very notable in the IRC space.


I have had a Twilio account for years, and have always used the proprietary MFA implementation from their Authy app. I don’t remember being forced to switch to SMS MFA.


Not much to see? Not noteworthy?

Where could I, or any Internet user, trivially download these details on 533M Facebook users prior to this dump? If nothing else, it seems extremely noteworthy that someone was not only able to obtain the data through scraping or some attack, but has shared with the world.


> Where could I, or any Internet user, trivially download these details on 533M Facebook users prior to this dump?

On Facebook. Literally. You can scrape any public profile info. It's against ToS, but it's not illegal (some caveats apply, see the hiQ Labs v. LinkedIn case for more info).

The only noteworthy thing is the phone number vuln. Except that's been known since 2019, so it's certainly not news.


There's a difference between programming a scraper capable of scraping 500 million records, running it and storing the results without getting caught by Facebook and downloading a file.


> The video provides a good overview about the issues surrounding bias in ML, and I think it motivates a discussion that would be useful to have on HN, given the number of people who work on such systems that regularly visit this site.

Have you read any sane discourse on HN in the last few years? The top post on any thread like this will discuss how algorithmic bias is just some SJW conspiracy or concern.


I've been a long time lurker of the site and decided to start contributing to it with this submission today. I realize that the topic does have flamebait qualities but it was never my intention to showcase that. I found this video to be more substantial than usual youtube algorithm hacking videos on the topic.


It's not an especially good look, although I see in the past few minutes HSTS has been enabled!


It's the same as before, clerk.dev does not have it and dashboard.clerk.dev had HSTS when I checked first too. HSTS is sorta irrelevant for .dev though since all of .dev is on the preload list in major browsers. I'd be more worried about the third party JS without SRI. Especially since including third party JS is an active choice while not having headers is an inactive one.


No, they just buy Canonical.


Switching from an RPM distro to a Debian derivative is a much bigger jump than building from RH sources directly.


What about this interesting submission makes it "clear" the account was "sold"?


We can look at a timeline of the account history for paulsb.

Last comment on the account: 2012

Last post on the account: 2013

7 years of inactivity

This post

---

If it were them coming back to their old account, given how regularly paulsb commented while still active, you would think there'd be at least a few recent comments showing some kind of ramp up in re-usage of the site.


Consider applying for YC's Summer 2025 batch! Applications are open till May 13

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: