Hacker Newsnew | past | comments | ask | show | jobs | submit | more otabdeveloper4's commentslogin

Qwen are the only guys doing real innovation. (LLM architectures and such.)

Everyone else is just gaming engagement metrics and benchmarks.


> because hand-programming is going to be slow enough that no company can continue like before

LLMs don't make programming faster, they just accelerate the technical debt process.

On agregate they slow everything down because you there's more technical debt at the end of the tunnel.

(OpenClaw is already unmaintainable today - for example, nobody has any clue what configuration options it supports, not even LLMs. Game over.)


It's already possible. Post-training is vastly more important than model size. (There's bigtime diminishing returns with increasing model size.)

Is there a size cutoff you would say where diminishing returns really kick in?

My experience doesn't disagree, at least. I've been using Qwen for coding locally a bit. It is much better than I thought it would be. But also still falls short in some obvious ways compared to the frontiers.


> Is there a size cutoff you would say where diminishing returns really kick in?

No idea yet. But also it's obvious that making LLMs without MoE is stupid.


It's not about malware. It's about Google complying with USA's geopolitical adventures.

Basically, Google needs an answer when men in suits ask them why they have technology that enables users to install sanctioned Iranian banking apps.


> relationships that don't lead anywhere

Relationships are not transactions that are supposed to "lead somewhere".


You’re being a bit pedantic here “leading somewhere” is accepted shorthand for a lasting, satisfying relationship that is good for both parties.

Relationships aren't transactional. This isn't a business deal.

Most people engage in romantic relationships because they'd like to find someone to marry and settle down with. Nothing but respect for the people who've thought it through and decided that's not for them, but what's much more common is failing to think it through or worrying it would be awkward/scary/"cringe" to take their relationship goals seriously.

That's what people are pointing to when they talk about relationships not "leading anywhere". If you want to be married in 5-10 years, and you're 2 years into an OK relationship with someone you don't want to marry, it's going to suck to break up with them but you have to do it anyway.


> it's often not worth the time to properly handle any minor $300k/yr boondoggle

No, because you can use that 300k to solve some real problem instead of literally lighting it on fire.

(Hell, just give employees avocado toasts or pingpong tables instead.)


There's hundreds of thousands of websites with the .su domain.

(The USSR dissolved before the world-wide-web was even a thing.)

If Barclays can get their own vanity TLD then Yugoslavia should be able too.


Granted, ccTLDs has been already going on for years before USSR change their pronoun to were. Mostly for email, no idea if ccTLDs found their use on BBS.

I can understand .su continuing because Russia pretty much took over everything that represent Soviet Union elsewhere (embassies, Security Council seat, etc) and other former Soviet states either support the continuation or indifferent. Yugoslavia continuation is more contentious topic.


Russia pretty much took over all the USSR's external debts too.

Maybe introduce .bk (Balkans) then anyone around there can use it.

.bk is not allowed because two-letter TLDs are reserved for entities with an ISO 3166 country code. .balkan might appear one day.

I'm sure there will be no way for us to kill eachother over something like this, no sirree...

The interesting part is this implies that Tesla cars have static certifcates that don't rotate. (Whoops.)

My read of the output in the post when they tried to SSH to the device was that Tesla are actually doing the right thing here and using an SSH certificate authority, which allows issuing certificates signed with a private key authorising access to a subset of devices (optionally for a defined period of time). https://en.wikibooks.org/wiki/OpenSSH/Cookbook/Certificate-b... has more information, but in summary unless the private signing key is compromised in some way this is entirely legit. I'd hope that they also have some mechanism for distributing a new public key if the signing key does get compromised but who knows.

I understand there are also certs involved with tesla vehicles communicating with a supercharger as well.

Why can't they rotate ? having root ssh keys on the device doesn't imply the certs don't rotate.

Not necessarily. All they have to do is roll a pub key into the update package. Same as any OTA update.

Do Tesla vehicles get VIN-specific updates?

Not sure - if I was designing it, feels like it would be a good way of getting the right build to the right car so that all the HW versions of each module are in line.

I'd imagine that the update includes all the possible hardware, and the update script actually decides which components to use. Like apt on Debian or yum on RHEL.

Interesting - just found this: https://www.pentestpartners.com/security-blog/reverse-engine...

Not had a chance to read it properly but definitely will be!


That was an amazing read, thank you!

It appears that the Tesla is running a full Ubuntu Linux distro. And here's a small quip to entice passers-by to read more:

  > With names ranging from “INDIFFERENT” to “SUICIDE_BOMBER”, there is a list of escalation strategies in the updater binary, which appear to be strategies for retries of downloads and user prompts on the UI.

Roblox is a development platform, not a game.

That's babby's first insight. Most people figure this out on their own in kindergarten.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: