<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: JCattheATM</title><link>https://news.ycombinator.com/user?id=JCattheATM</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Fri, 29 May 2026 22:26:33 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=JCattheATM" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by JCattheATM in "Flatpak Will Depend on Systemd"]]></title><description><![CDATA[
<p>This is bad news, and exactly the type of viral problem criticics of systemd warned about. Systemd advocates always downplay the issue, but here we are.<p>I love using Alpine, and for the few packages that don't have a musl version available (e.g. Steam), flatpak has been a great way to run them.<p>Hopefully someone will maintain a fork.</p>
]]></description><pubDate>Tue, 26 May 2026 19:56:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=48285145</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48285145</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48285145</guid></item><item><title><![CDATA[New comment by JCattheATM in "CVE-2026-28952: Apple macOS 26.5 Kernel Vuln found by Claude"]]></title><description><![CDATA[
<p>Apple's ASLR was incomplete and basically trash for a long time, it didn't get proper ASLR until much later.</p>
]]></description><pubDate>Tue, 26 May 2026 19:27:47 +0000</pubDate><link>https://news.ycombinator.com/item?id=48284755</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48284755</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48284755</guid></item><item><title><![CDATA[New comment by JCattheATM in "CVE-2026-28952: Apple macOS 26.5 Kernel Vuln found by Claude"]]></title><description><![CDATA[
<p>Sure, I think I gave it that context by using the term historical.</p>
]]></description><pubDate>Tue, 26 May 2026 19:24:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=48284704</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48284704</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48284704</guid></item><item><title><![CDATA[New comment by JCattheATM in "CVE-2026-28952: Apple macOS 26.5 Kernel Vuln found by Claude"]]></title><description><![CDATA[
<p>Microsoft's Secure Desktop feature is actually incredibly well designed, and provides strong protect against fraudulent prompts or prompt interception attacks.</p>
]]></description><pubDate>Tue, 26 May 2026 07:51:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=48276503</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48276503</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48276503</guid></item><item><title><![CDATA[New comment by JCattheATM in "CVE-2026-28952: Apple macOS 26.5 Kernel Vuln found by Claude"]]></title><description><![CDATA[
<p>> They were not "coasting" on anything.<p>Yeah, they were. Virus writers were not targeting them as a platform because why   develop for 10% marketshare when you can target 90% for free. It just wasn't worth it to target as a platform. So there was some level of protection due to lack of interest in distributed attacks, but the OS had very little protection against targeted attacks.<p>> Apple has led the pack in nearly every major OS security feature of the last 25 years.<p>What an absurd claim. Apple trails behind, it never leads in this space. Windows 7 had numerous protections that had become standards that Apple still lacked when Windows 10 came out.</p>
]]></description><pubDate>Tue, 26 May 2026 07:50:09 +0000</pubDate><link>https://news.ycombinator.com/item?id=48276493</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48276493</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48276493</guid></item><item><title><![CDATA[New comment by JCattheATM in "CVE-2026-28952: Apple macOS 26.5 Kernel Vuln found by Claude"]]></title><description><![CDATA[
<p>My thinking was in a historical context, and for their desktop OS's. I know they've been pretty on top of things with iPhones, and MacOS has become a lot better, but for the longest time MacOS was pretty lacking, coasting very much on  promoting how much PCs have viruses and macs didn't, which was a marketshare thing more than a security thing. I don't think they got ASLR until later than pretty much everyone else, for example.<p>They've improved a lot, especially their phones, but I'd still never consider them a company that has a really strong focus on security.</p>
]]></description><pubDate>Tue, 26 May 2026 03:23:36 +0000</pubDate><link>https://news.ycombinator.com/item?id=48274605</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48274605</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48274605</guid></item><item><title><![CDATA[New comment by JCattheATM in "CVE-2026-28952: Apple macOS 26.5 Kernel Vuln found by Claude"]]></title><description><![CDATA[
<p>I'd guess they haven't even begun to really utilize them. They've never been a terribly security conscious company, despite the marketing.</p>
]]></description><pubDate>Tue, 26 May 2026 02:13:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=48274179</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48274179</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48274179</guid></item><item><title><![CDATA[New comment by JCattheATM in "Omarchy Is Not A Distro"]]></title><description><![CDATA[
<p>> It would still require install scripts to get from a fresh Arch install to Omarchy.<p>If it's really just primarily dotfiles, those 'install scripts' are just going to be a few cp and maybe tar commands.<p>> Omarchy is maintained as a complete system. You can install it from an ISO, update it like a distribution, and expect someone to care about whether the pieces work together.<p>Not entirely though, because they defer so much control and judgement to the actual distro they are layering over.<p>I guess it's semantics. I guess if you consider Kubuntu a different distro from Ubuntu then so too would Omarchy be a distinct Distro.</p>
]]></description><pubDate>Mon, 25 May 2026 01:02:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=48262541</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48262541</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48262541</guid></item><item><title><![CDATA[New comment by JCattheATM in "Omarchy Is Not A Distro"]]></title><description><![CDATA[
<p>> I think it does kind of have to be a “distro” because the appeal is that you don’t maintain the scripts yourself.<p>It's not a distro because you could overwrite everything by downloading someone else's dotfiles in a few minutes. It's purely just a set of configs.</p>
]]></description><pubDate>Sun, 24 May 2026 23:02:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=48261891</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48261891</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48261891</guid></item><item><title><![CDATA[New comment by JCattheATM in "Green card seekers must leave U.S. to apply, Trump administration says"]]></title><description><![CDATA[
<p>There's no hatred against white people, not widespread enough to be notable at least - the book White Fragility talks about this imagined persecution though, I recommend it. I know you need to have the last word, and as I don't wish to engage further with people that have your ultimately hateful views, please go ahead so we can be done. At some point, I hope you get cured of your fear of imagined threats ultimately, at least in part, driving your hate. Take care.</p>
]]></description><pubDate>Sun, 24 May 2026 14:32:20 +0000</pubDate><link>https://news.ycombinator.com/item?id=48257567</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48257567</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48257567</guid></item><item><title><![CDATA[New comment by JCattheATM in "Green card seekers must leave U.S. to apply, Trump administration says"]]></title><description><![CDATA[
<p>Basic empathy would be not bullying, terrorizing and detailing anyone who isn't white, nor supporting such vile behavior.</p>
]]></description><pubDate>Sun, 24 May 2026 04:16:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=48254318</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48254318</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48254318</guid></item><item><title><![CDATA[New comment by JCattheATM in "Green card seekers must leave U.S. to apply, Trump administration says"]]></title><description><![CDATA[
<p>I think the point being made may have passed you by.</p>
]]></description><pubDate>Sat, 23 May 2026 15:58:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=48248731</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48248731</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48248731</guid></item><item><title><![CDATA[New comment by JCattheATM in "Green card seekers must leave U.S. to apply, Trump administration says"]]></title><description><![CDATA[
<p>Well, no, it's just that people with basic empathy can see the racism and judge it accordingly.</p>
]]></description><pubDate>Sat, 23 May 2026 15:25:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=48248470</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48248470</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48248470</guid></item><item><title><![CDATA[New comment by JCattheATM in "Green card seekers must leave U.S. to apply, Trump administration says"]]></title><description><![CDATA[
<p>> I hear "I'm not anti immigrant, I'm anti illegal immigrant" a lot.<p>A lot of those people had no issue with ICE bullying and detaining legal immigrants.</p>
]]></description><pubDate>Sat, 23 May 2026 15:17:51 +0000</pubDate><link>https://news.ycombinator.com/item?id=48248416</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48248416</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48248416</guid></item><item><title><![CDATA[New comment by JCattheATM in "U.S. DOJ demands Apple and Google unmask over 100k users of car-tinkering app"]]></title><description><![CDATA[
<p>What are your thoughts on climate change?</p>
]]></description><pubDate>Thu, 21 May 2026 01:02:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=48216473</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48216473</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48216473</guid></item><item><title><![CDATA[New comment by JCattheATM in "U.S. DOJ demands Apple and Google unmask over 100k users of car-tinkering app"]]></title><description><![CDATA[
<p>Your attempts at dismissals of supporting points don't hold up. The company was enabling illegal behavior, knowingly. It would be like if Cox was helping people use the pirate bay.</p>
]]></description><pubDate>Wed, 20 May 2026 17:17:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=48210977</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48210977</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48210977</guid></item><item><title><![CDATA[New comment by JCattheATM in "OpenBSD 7.9"]]></title><description><![CDATA[
<p>> Even if it feels it should be simple, Linux has a way.<p>As someone who has run DNS and DHCP servers for over 30 years and continues to do so, this just feels like confirmation bias based on your personal anecdotes. If there's an issue, it's likely due to messy over-complicated distros. Alpine is no less solid than OpenBSD.</p>
]]></description><pubDate>Wed, 20 May 2026 03:14:09 +0000</pubDate><link>https://news.ycombinator.com/item?id=48202685</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48202685</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48202685</guid></item><item><title><![CDATA[New comment by JCattheATM in "OpenBSD 7.9"]]></title><description><![CDATA[
<p>Don't make the perfect be the enemy of the good. Just because they didn't stop escape via dirtyfrag doesn't make them useless let alone a joke.  pledge and unveil are nice, but exactly how effective do you expect them to be against an ssh/sftp server? Maybe you have ssh configured so it can't manipulate user and/or system files, but that isn't typically common usage.</p>
]]></description><pubDate>Tue, 19 May 2026 22:23:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=48200493</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48200493</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48200493</guid></item><item><title><![CDATA[New comment by JCattheATM in "OpenBSD 7.9"]]></title><description><![CDATA[
<p>> there are numerous other things that are done for mitigation outside of this.<p>Sure, and I think they are mostly great, main problem being they just don't go far enough. Where's the namespace level isolation, ACL or MAC support? Is there a way to give a user append only ability for one file, while having write but not delete access to another, and delete to yet another? What's the maximum extent to which OpenBSD could have limited an attacker, had they been vulnerable to regreSSHion?</p>
]]></description><pubDate>Tue, 19 May 2026 21:33:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=48199984</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48199984</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48199984</guid></item><item><title><![CDATA[New comment by JCattheATM in "OpenBSD 7.9"]]></title><description><![CDATA[
<p>It really is true. OpenBSD focuses on auditing. In many cases they were not affected because of mitigations, but because they were just using a different stack. OpenBSD wasn't affected by regreSSHion for example, for basically the same reason Alpine wasn't.<p>OpenBSD didn't invent the concept behind W^X, and if you want to talk of 'copying', which I think is kind of silly personally, then PAX was first.<p>I'm familiar with the list of OpenBSD innovations, and in turn I would point you to https://<a href="https://isopenbsdsecu.re/" rel="nofollow">https://isopenbsdsecu.re/</a> for a breakdown of their claims and marketing.<p>To this date OpenBSD doesn't have anything as simple as a proper ACL, let alone any type of MAC. They claim such systems are too complex, which is of course nonsense.<p>It's like I said - they focus a lot on preventing an attacker gaining access, but have little available to constrain attackers who DO get access.</p>
]]></description><pubDate>Tue, 19 May 2026 20:17:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=48198898</link><dc:creator>JCattheATM</dc:creator><comments>https://news.ycombinator.com/item?id=48198898</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48198898</guid></item></channel></rss>