<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: ArchOversight</title><link>https://news.ycombinator.com/user?id=ArchOversight</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Sat, 13 Jun 2026 00:09:04 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=ArchOversight" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by ArchOversight in "An AI agent deleted our production database. The agent's confession is below"]]></title><description><![CDATA[
<p>Do you have more information on this?</p>
]]></description><pubDate>Mon, 27 Apr 2026 05:37:47 +0000</pubDate><link>https://news.ycombinator.com/item?id=47918049</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=47918049</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47918049</guid></item><item><title><![CDATA[New comment by ArchOversight in "Home Assistant waters my plants"]]></title><description><![CDATA[
<p>It's not that it's that complex to need all of this. It's about ease of use. Home Assistant OS makes life simpler for users (such as myself), it makes it easy to use adding that run as additional docker containers, it makes plugging in USB z-wave/zigbee devices a breeze.<p>While it is technically no longer supported, you can still install the whole kit and caboodle using pip in a Python virtual environment, but why would you?</p>
]]></description><pubDate>Mon, 16 Mar 2026 19:40:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=47403782</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=47403782</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47403782</guid></item><item><title><![CDATA[New comment by ArchOversight in "Home Assistant waters my plants"]]></title><description><![CDATA[
<p><a href="https://www.home-assistant.io/installation/generic-x86-64/" rel="nofollow">https://www.home-assistant.io/installation/generic-x86-64/</a><p>you mean an image like this?<p>This is what I've been running on my generic x86-64 system for a couple of years now, 0 issues. Even migrated to a newer system recently because I wanted something that was slightly faster for ESPHome compilations.</p>
]]></description><pubDate>Mon, 16 Mar 2026 19:38:35 +0000</pubDate><link>https://news.ycombinator.com/item?id=47403752</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=47403752</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47403752</guid></item><item><title><![CDATA[New comment by ArchOversight in "US- and Greek-owned tankers ablaze after Iran claims 'underwater drone' strike"]]></title><description><![CDATA[
<p>The insurance companies primarily... secondary the people with bombs that can sink ships attempting to use the waterways.</p>
]]></description><pubDate>Thu, 12 Mar 2026 15:55:58 +0000</pubDate><link>https://news.ycombinator.com/item?id=47352682</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=47352682</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47352682</guid></item><item><title><![CDATA[New comment by ArchOversight in "IKEA launches new smart home range with 21 Matter-compatible products"]]></title><description><![CDATA[
<p>That's why Matter and Thread are IPv6. You don't need IPv4 at all... and if you run out of IPv6 address space, I'd love to see just how many devices/sensors you have in your home.</p>
]]></description><pubDate>Thu, 06 Nov 2025 19:37:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=45839326</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=45839326</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45839326</guid></item><item><title><![CDATA[New comment by ArchOversight in "IKEA launches new smart home range with 21 Matter-compatible products"]]></title><description><![CDATA[
<p>Which sellers? I have been looking for custom ones because I have some weird window sizes.</p>
]]></description><pubDate>Thu, 06 Nov 2025 19:35:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=45839306</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=45839306</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45839306</guid></item><item><title><![CDATA[New comment by ArchOversight in "How America got hooked on ultraprocessed foods"]]></title><description><![CDATA[
<p><a href="https://archive.is/eWcpP" rel="nofollow">https://archive.is/eWcpP</a></p>
]]></description><pubDate>Thu, 16 Oct 2025 15:58:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=45607019</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=45607019</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45607019</guid></item><item><title><![CDATA[New comment by ArchOversight in "Temporary suspension of acceptance of mail to the United States"]]></title><description><![CDATA[
<p>FedEx in my case paid the bill to customs, shipped me my item, and then secondary sent me a bill to pay for the customs fees after I had already received the item.<p>They don't want shipments stuck in port because storage there is expensive.</p>
]]></description><pubDate>Mon, 25 Aug 2025 18:28:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=45017199</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=45017199</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45017199</guid></item><item><title><![CDATA[New comment by ArchOversight in ""Remove mentions of XSLT from the html spec""]]></title><description><![CDATA[
<p>That assumes the server has a lot of additional CPU power to serve the content as HTML (and thus do the templating server side), whereas with XSLT I can serve XML and the XSLT and the client side can render the page according to the XSLT.<p>The XSLT can also be served once, and then cached for a very long time period, and the XML can be very small.</p>
]]></description><pubDate>Tue, 19 Aug 2025 19:04:13 +0000</pubDate><link>https://news.ycombinator.com/item?id=44955064</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=44955064</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44955064</guid></item><item><title><![CDATA[New comment by ArchOversight in ""Remove mentions of XSLT from the html spec""]]></title><description><![CDATA[
<p>If this is the reason to remove and or not add something to the web, then we should take a good hard look at things like WebSerial/WebBluetooth/WebGPU/Canvas/WebMIDI and other stuff that has been added that is used by a very small percentage of people yet all could contain various security bugs...<p>If the goal is to reduce security bugs, then we should stop introducing niche features that only make sense when you are trying to have the browser replace the whole OS.</p>
]]></description><pubDate>Tue, 19 Aug 2025 18:55:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=44954957</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=44954957</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44954957</guid></item><item><title><![CDATA[New comment by ArchOversight in ""Remove mentions of XSLT from the html spec""]]></title><description><![CDATA[
<p>Sounds like libxslt needs more than just a small number of fixes, and it sounds like Google could be paying someone, like you, to help provide the necessary guidance and feedback to increase the usability and capabilities of the library and evolve it for the better.<p>Instead Google and others just use it, and expect that any issues that come up to be immediately fixed by the one or two open source maintainers that happen to work on it in their spare time. The power imbalance must not be lost on you here...<p>If you wanted to dive into what [3] does, you could do so, you could then document it, or refactor it so that it is more obvious, or remove the compile time flag entirely. There is institutional knowledge everywhere...</p>
]]></description><pubDate>Tue, 19 Aug 2025 18:52:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=44954919</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=44954919</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44954919</guid></item><item><title><![CDATA[New comment by ArchOversight in "PyPI Preventing Domain Resurrection Attacks"]]></title><description><![CDATA[
<p>Even if you provide a phone number, it will never send the required code or information and you will still be locked out of your account.<p>That is how I am locked out of a gmail account... eventhough I have the right username/password, and backup email, and typed in a phone number, Google won't let me back in.</p>
]]></description><pubDate>Tue, 19 Aug 2025 18:43:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=44954834</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=44954834</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44954834</guid></item><item><title><![CDATA[New comment by ArchOversight in "How a 20 year old bug in GTA San Andreas surfaced in Windows 11 24H2"]]></title><description><![CDATA[
<p>The code would have failed because you can't use an uninitialized variable, so you would have had to set it to a default. You don't just get random garbage from the stack.</p>
]]></description><pubDate>Wed, 23 Apr 2025 18:26:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=43775151</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=43775151</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43775151</guid></item><item><title><![CDATA[New comment by ArchOversight in "The mistakes and missed opportunities in the design of IPv6"]]></title><description><![CDATA[
<p>On MacOS it has a larger net mask, but the OS doesn't respond to any address within that range automatically.<p><pre><code>  lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> mtu 16384
   options=1203<RXCSUM,TXCSUM,TXSTATUS,SW_TIMESTAMP>
   inet 127.0.0.1 netmask 0xff000000
   inet6 ::1 prefixlen 128
   inet6 fe80::1%lo0 prefixlen 64 scopeid 0x1
   nd6 options=201<PERFORMNUD,DAD></code></pre></p>
]]></description><pubDate>Fri, 21 Mar 2025 19:42:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=43440073</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=43440073</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43440073</guid></item><item><title><![CDATA[New comment by ArchOversight in "Apple M3 Ultra"]]></title><description><![CDATA[
<p>You believe that Hector Martin is also Asahi Lina?<p><a href="https://bsky.app/profile/lina.yt" rel="nofollow">https://bsky.app/profile/lina.yt</a><p><a href="https://github.com/AsahiLina">https://github.com/AsahiLina</a></p>
]]></description><pubDate>Wed, 05 Mar 2025 16:57:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=43269204</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=43269204</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43269204</guid></item><item><title><![CDATA[New comment by ArchOversight in "Microsoft Go 1.24 FIPS changes"]]></title><description><![CDATA[
<p>Is there going to be a way to turn FIPS on as a requirement without having compiled the binary against the FIPS-140 module?<p>Even now it has been a lot of trouble trying to get vendors to provide us a way to rebuild/repackage their Golang binaries using the FIPS-140 support from RHEL, and if it is still the case that they need to build one-offs, teams will still need to rebuild/repackage a lot of Golang tools just to be FIPS compliant because it's not as simple as setting a flag like it is for OpenSSL.</p>
]]></description><pubDate>Thu, 06 Feb 2025 23:52:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=42967714</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=42967714</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42967714</guid></item><item><title><![CDATA[New comment by ArchOversight in "Microsoft Go 1.24 FIPS changes"]]></title><description><![CDATA[
<p>Most projects that compile against OpenSSL can be forced into FIPS mode by setting a flag that the OpenSSL library uses to force enable FIPS mode when it is loaded.<p>Golang projects however don't compile against OpenSSL instead using the internal cryptography. In many cases rebuilding and repackaging a Golang based tool is a no-no since now you are accepting ownership of it in an audit, when instead you want to point to an upstream vendor, or source code is not available.<p>So in many cases in production while the system itself is in FIPS mode (Linux kernel), and applications using system crypto libraries (OpenSSL primarily) are in FIPS mode, Go binaries are not in FIPS mode and may end up using algorithms that are explicitly disallowed by the FIPS standards.</p>
]]></description><pubDate>Thu, 06 Feb 2025 23:49:16 +0000</pubDate><link>https://news.ycombinator.com/item?id=42967687</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=42967687</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42967687</guid></item><item><title><![CDATA[New comment by ArchOversight in "Microsoft Go 1.24 FIPS changes"]]></title><description><![CDATA[
<p>Either projects start shipping FIPS enabled or companies have to rebuild and repackage projects with FIPS enabled.<p>With OpenSSL installed system wide you can turn on a flag and the library will force it into FIPS mode internally, with Go unless you build your binaries to link against OpenSSL like this Microsoft Go release seems to be doing you don't get that instant on system wide.</p>
]]></description><pubDate>Thu, 06 Feb 2025 23:45:39 +0000</pubDate><link>https://news.ycombinator.com/item?id=42967661</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=42967661</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42967661</guid></item><item><title><![CDATA[New comment by ArchOversight in "Lfgss shutting down 16th March 2025 (day before Online Safety Act is enforced)"]]></title><description><![CDATA[
<p>Op uses they/them pronouns.</p>
]]></description><pubDate>Tue, 17 Dec 2024 19:38:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=42444491</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=42444491</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42444491</guid></item><item><title><![CDATA[New comment by ArchOversight in "Lfgss shutting down 16th March 2025 (day before Online Safety Act is enforced)"]]></title><description><![CDATA[
<p>Author uses they/them pronouns.</p>
]]></description><pubDate>Tue, 17 Dec 2024 19:37:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=42444483</link><dc:creator>ArchOversight</dc:creator><comments>https://news.ycombinator.com/item?id=42444483</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42444483</guid></item></channel></rss>