Hacker Newsnew | past | comments | ask | show | jobs | submit | Reddit_MLP2's commentslogin

It is harder than you may think for many people... https://www.gianlucagimini.it/portfolio-item/velocipedia/

I also think Sherline machines have good value. Were they the cheapest, no, but they actually worked really well in my experience for their size. I only have their manual lathe, but it was a MUCH higher quality machine than my larger 7x14 from china. It just feels like everything is either a race to the bottom, enshittification and/or both right now.

pump the IPO...pump the IPO...pump the IPO...

legacy media is not proactively manipulating us via algorithmically amplifying division to increase 'engagement', all to sell us some ads... I do think Zuck is one of the more harmful figures in modern history. That being said, good open models? great!


sadly it seems like most of the banks I use still enforce antiquated password rules, no MFA and rely on stupid questions most of which can easily be guessed from public records.


That might change on the country. At least here in Brazil, all logins require some sorth of MFA.

This changes by banks, some send code to our phone number (thought WhatsApp or SMS), others send SMS+email + face ID. All of them require at least the face ID. Some biggest banks requires you to go to ATM to authorize app access. You insert your card, password and authorize there.

There's Mercado Pago, which supports passkeys and standard MFA too. So you can store on bitwarden even.


Just the other day I was creating an ID on a government web site, which offered a list of security questions such as "Title of your favorite movie" or "Someone that you admired as a child" and the answer was not allowed to have any spaces.

Just absurd.


Security questions have always been ridiculous, but I'll especially never understand how "favorite [thing]" ever made it to production anywhere. "Favorite movie" can change multiple times in the same conversation.


Still better than the government (!!!) website that a few days ago gave me the option of using "What's the name of the company you first worked at?"


You can also just put any answer into the question as long as you will remember it.


It should work for all people and not depend on these “tricks”.


Yet they still work and people generally don't have their accounts stolen. Why? Because security is more than technology. Stealing a bank account is illegal and you will be prosecuted for it.


hahahahahahahahahahahahahahahahahahahahahahahahahaha

Nobody hacks because that's illegal


The optimum amount of hacks is not zero.


No doubt preaching to the Choir here but I just generate a new pass phrase and store it in Bitwarden. If course for the non HN audience, much more confusing and dangerous.


yup, ALMOST correct documentation, but using 10-20x the amount of words needed to actually document. Is it better than nothing? probably? Much of it is really hard for a human to read though. So if the purposed us to document what the AI did for a future instance of an AI, sure, but I don't see the current tech replacing technical writers in the short term.


the way the crony capitalism economy works, it will bankrupt all of us well before it does the AI companies...


This is older, but even humans don't have a great concept of how a bicycle works... https://twistedsifter.com/2016/04/artist-asks-people-to-draw...


Wouldn't this be more about being capable of mentally remembering how a bicycle looks versus how it works?

This reminds me of Pictionary. [0] Some people are good and some are really bad.

I am really bad a remembering how items look in my head and fail at drawing in Pictionary. My drawing skills are tied to being able to copy what I see.

[0] https://en.wikipedia.org/wiki/Pictionary


I think it’s difficult to draw a bike exactly because you remember how it works rather than how it looks, so you worry about placing all the functional parts and get the overall composition wrong. Similar to drawing faces, without training, people will consistently dedicate too much area to the lower part of the face and draw some kind of neanderthal with no forehead.


Let me fix that for you. Marc Andreessen is wrong. There is the whole broken clock analogy though...


sadly I still worry about that. An install fails once, you you hard code the --force flag in all your CI/CD jobs and we are back in the same place again. I am not sure what the answer is, though problems...


Adding a hardcoded flag is not the same as asking the user if they want potential malware. If CI/CD is broken they should revert the change to pinned dependencies instead of trying to install a bleeding edge version of a new dependency that hasn't been scanned yet.


I don't understand why this would be an issue. Firstly, you could just pin your dependencies, but even if you don't, couldn't the default behaviour be to just install the newest scanned version?


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: