<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: SCHiM</title><link>https://news.ycombinator.com/user?id=SCHiM</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Mon, 17 Aug 2026 06:52:06 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=SCHiM" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by SCHiM in "Models Are Getting Dumber on Purpose"]]></title><description><![CDATA[
<p>>I get it. You don't feel ownership over someone else's AI. You don't feel involved, you don't feel like you have agency.<p>You don't _have_ ownership of someone else's ai, and that comes with real risks.<p>Security risks, privacy risks, business risk.<p>They might rug pull you, they might charge you more, or like atrophic, silently corrupt the answers, or code...<p>The labs are happy to jump on any emergent capability the scaling and training impart: generate prose, teach you things, cyber security, design, code, etc.<p>Do you really think that the frontier labs won't turn a popular capability, or trend they notice, into a first party tool if the ROI seems there? If it's your own private ai in your datacenter, you can keep it all secret, and not lose your business.<p>On the bitter lesson you're right of course:), wish I had a super computer to just scale that instead.</p>
]]></description><pubDate>Sun, 16 Aug 2026 23:33:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=49324890</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=49324890</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49324890</guid></item><item><title><![CDATA[New comment by SCHiM in "Show HN: Lumabri – Run Moe Models on a P2P Swarm with Colibri"]]></title><description><![CDATA[
<p>This looks really interesting, and if I understand what this does properly: it was high time someone built this!<p>Without diving into an experiment myself, it would be amazing if you could add some stats or experiment logs, if it's not too much problem and you have them.<p>For example:<p>Given model XYZ, every assuming 5 donors with a uniform 32GB each, each forward pass shunts xGB over the link. Each pass takes nMS, etc. etc. Resulting in n T/s, assuming latency of n ms.<p>Do you have such stats? Or perhaps I missed them in the repo?</p>
]]></description><pubDate>Fri, 14 Aug 2026 12:00:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=49297634</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=49297634</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49297634</guid></item><item><title><![CDATA[New comment by SCHiM in "The arguments against open source AI are bad"]]></title><description><![CDATA[
<p>I think the attempt of people to "bubble wrap" the whole world actually makes things worse. Treat people as untrustworthy criminals by default, and guess what you get by default?</p>
]]></description><pubDate>Thu, 23 Jul 2026 19:43:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=49027012</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=49027012</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49027012</guid></item><item><title><![CDATA[New comment by SCHiM in "For Linux kernel vulnerabilities, there is no heads-up to distributions"]]></title><description><![CDATA[
<p>Maybe you're right. I just find it confusing. The language is all-encompassing, doesn't read opt-in to me if taken literally: "By submitting any vulnerabilities to Microsoft". And I found no other pages describing "report in such and such way to have these terms apply instead". But I always have problems with this stuff, perhaps taking it too seriously.<p>Obviously they can write whatever they want in their policy documents. The thing is, sometimes this is about larger sums of money, or someones reputation, which may or may not actually lead to steps. That is in contrast with whatever TOS/EULA in account signups for some service or whatever, this feels more serious. I've seen some people getting harried after publishing something that fell _outside_ the servicing boundaries. Getting tangled up in whatever is already a loss in my book, even if you "win" in the end.<p>Note that that policy is also where they set out the safe-harbor conditions, which, according to my read, is tied to the bounty policy and not RD/CVD policy. The RD/CVD page itself specifies no such thing, so I relate them.</p>
]]></description><pubDate>Sat, 02 May 2026 11:22:51 +0000</pubDate><link>https://news.ycombinator.com/item?id=47985414</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=47985414</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47985414</guid></item><item><title><![CDATA[New comment by SCHiM in "For Linux kernel vulnerabilities, there is no heads-up to distributions"]]></title><description><![CDATA[
<p><a href="https://www.microsoft.com/en-us/msrc/bounty-guidelines" rel="nofollow">https://www.microsoft.com/en-us/msrc/bounty-guidelines</a><p>> MICROSOFT BOUNTY TERMS & CONDITIONS<p>> Last updated: July 23, 2025<p>> The Microsoft Bug Bounty Programs Terms and Conditions ("Terms") cover your participation in the Microsoft Bug Bounty Program (the "Program"). These Terms are between you and Microsoft Corporation ("Microsoft," "us" or "we"). By submitting any vulnerabilities to Microsoft or otherwise participating in the Program in any manner, you accept these Terms.<p>Who knows if its enforceable.</p>
]]></description><pubDate>Fri, 01 May 2026 09:17:34 +0000</pubDate><link>https://news.ycombinator.com/item?id=47972697</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=47972697</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47972697</guid></item><item><title><![CDATA[New comment by SCHiM in "For Linux kernel vulnerabilities, there is no heads-up to distributions"]]></title><description><![CDATA[
<p>Microsoft's policy is: "if you contact us with a vulnerability, you automatically agree to the terms of our responsible disclosure policy", which includes waiting 30 days after patch was created, and says nothing about how long that process takes.<p>There is actually no way to give them a friendly heads up, and then do your own thing. The only way not to be bound is by not sending them any notification at all...</p>
]]></description><pubDate>Thu, 30 Apr 2026 19:41:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=47967283</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=47967283</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47967283</guid></item><item><title><![CDATA[New comment by SCHiM in "Small models also found the vulnerabilities that Mythos found"]]></title><description><![CDATA[
<p>You can imagine a pipeline that looks at individual source files or functions. And first "extracts" what is going on. You ask the model:<p>- "Is the code doing arithmetic in this file/function?"
- "Is the code allocating and freeing memory in this file/function?"
- "Is the code the code doing X/Y/Z? etc etc"<p>For each question, you design the follow-up vulnerability searchers.<p>For a function you see doing arithmetic, you ask:<p>- "Does this code look like integer overflow could take place?",<p>For memory:<p>- "Do all the pointers end up being freed?"
_or_
- "Do all pointers only get freed once?"<p>I think that's the harness part in terms of generating the "bug reports". From there on, you'll need a bunch of tools for the model to interact with the code. I'd imagine you'll want to build a harness/template for the file/code/function to be loaded into, and executed under ASAN.<p>If you have an agent that thinks it found a bug: "Yes file xyz looks like it could have integer overflow in function abc at line 123, because...", you force another agent to load it in the harness under ASAN and call it. If ASAN reports a bug, great, you can move the bug to the next stage, some sort of taint analysis or reach-ability analysis.<p>So at this point you're running a pipeline to:
1) Extract "what this code does" at the file, function or even line level.
2) Put code you suspect of being vulnerable in a harness to verify agent output. 
3) Put code you confirmed is vulnerable into a queue to perform taint analysis on, to see if it can be reached by attackers.<p>Traditionally, I guess a fuzzer approached this from 3 -> 2, and there was no "stage 1". Because LLMs "understand" code, you can invert this system, and work if up from "understanding", i.e. approach it from the other side. You ask, given this code, is there a bug, and if so can we reach it?, instead of asking: given this public interface and a bunch of data we can stuff in it, does something happen we consider exploitable?</p>
]]></description><pubDate>Sat, 11 Apr 2026 17:48:33 +0000</pubDate><link>https://news.ycombinator.com/item?id=47732540</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=47732540</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47732540</guid></item><item><title><![CDATA[New comment by SCHiM in "Solar panels at Lidl? Plug-in versions set to appear in shops"]]></title><description><![CDATA[
<p>Hey jstsch, would you mind answering some questions?<p>- Did you need/use an electrician to set this up?
- How much KWh capacity do your batteries have?
- What about fire safety? Did you install outside, or inside?
- I assume dec/jan are the months you're not fully self-sufficient, are you allowed to charge from grid to do arbitrage over time, or is that another can of worms?</p>
]]></description><pubDate>Wed, 01 Apr 2026 12:09:23 +0000</pubDate><link>https://news.ycombinator.com/item?id=47599747</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=47599747</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47599747</guid></item><item><title><![CDATA[New comment by SCHiM in "Ask HN: Running legacy IE/ActiveX clients without local admin rights?"]]></title><description><![CDATA[
<p>> 1) Are there any reliable open-source PAM alternatives or privilege elevation tools for Windows that handle this "per-app" scenario effectively?<p>I would look into:<p>- creating an account to run the apps you need, giving the user the password to this account, or create a shortcut to execute the browser with "runas"<p>Now here my ideas break down, but I think you could get far with:<p>- For that account, (log in as it, open IE), and configure the "secure zone" / "internet zone" as "insecure". Allow all active X components to load.<p>- As an admin:
 1) Start/go into "Component services" (run: "DCOMCNFG")
 2) Right-click "my computer" -> properties:
 3) "Edit default" for both activation and access permissions and for both default and limits:
 3.1) Give the new user basically all privileges.
 3.2) Review if the process now works with the lower privileged user.
 3.3) Reduce privileges as far as possible until the process breaks. Stop there.
 4) Consider that "Remote launch" and to a lesser extent "remote access", exposes the computer to remote control _if_ the credentials for the user with those privileges are leaked. 
 5) Consider if this is worth the risk, if yes, leave the configuration. You're done :)<p>Some unconnected suggestions:
- The page that loads the active X will have a number of GUIDs in them, those are the COM classes that back the active X objects (just DCOM objects). You can look those up in the registry to find the implementing .dll files, paths, etc. etc.<p>- You _can_ whitelist / safelist individual COM / ActiveX packages if you need to but I've forgotten the exact way to do this, and also what exactly it allows you to do ;). You may find: <a href="https://github.com/tyranid/oleviewdotnet" rel="nofollow">https://github.com/tyranid/oleviewdotnet</a> useful to research this, it has a tab for "pre approved objects", I think if you get your ActiveX's in that list they'd be able to run under the user you need to. If you can access the HTML page you need to open which loads the ActiveX components, you can search for the CLSIDs in that tool, and perhaps figure out where they are. I'm 90% you can move the CLSIDs to a registry key to put them on the safe list, perhaps that's already enough to bypass the "local admin required".<p>You may be able to do the launch permissions per com object in `DCOMCNFG`.<p>> 2) When dealing with hostile ActiveX components, are there specific legacy behaviors (beyond obvious file/registry Access Denied) I should be looking for in my Procmon captures?<p>If you mean, _abused_ ActiveX components, not much you can do. Obviously yes, access to registry, etc. But if the attacker gets to a point they can load _arbitrary_ dcom objects and talk to them, it's game over, that's RCE.<p>If you mean, how to find which COM objects I need to allow. Better luck with `oleviewdotnet` I think. And open that page and look for the CLSIDs to know where to start. You can search in the registry and oleview to find them once you have the CLSIDs (guids).<p>> 3) How do you isolate this kind of hardcoded legacy requirement when there is zero budget for commercial enterprise tools?<p>I assume you are on a much older version of windows? Xp? 2000?, Then I'm not sure.</p>
]]></description><pubDate>Thu, 26 Mar 2026 20:40:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=47535420</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=47535420</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47535420</guid></item><item><title><![CDATA[New comment by SCHiM in "End of an era for me: no more self-hosted git"]]></title><description><![CDATA[
<p>The bar to ingest unstructured data into something usable was lowered, causing more people to start doing it.<p>Used to be you needed to implement some papers to do sentiment analysis. Reasonably high bar to entry. Now anyone can do it, the result: more people doing scraping (in less competent scrapers too).</p>
]]></description><pubDate>Wed, 11 Feb 2026 14:42:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=46975528</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=46975528</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46975528</guid></item><item><title><![CDATA[New comment by SCHiM in ""Be Different" doesn't work for building products anymore"]]></title><description><![CDATA[
<p>> Your company can scream to anyone that listens that all the competition is AI SLOP, but when hundreds of companies are pitching the same solution, your one voice will get lost.<p>If you cannot out compete "AI SLOP" on merit over time (uptime? accuracy? dataloss?), then the AI SLOP is not actually sloppy...<p>If your runway runs out before you can prove your merit over that timeframe, but you are convinced that the AI is slop, then you should ship the slop first and pivot onec you get $$ but before you get overwhelmed with tech depth.<p>Personally, I love that I can finally out compete companies with reams of developer teams. Unlike many posters here, I was limited by the time (and mental space) it takes to do the actual writing.</p>
]]></description><pubDate>Mon, 06 Oct 2025 16:18:39 +0000</pubDate><link>https://news.ycombinator.com/item?id=45492992</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=45492992</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45492992</guid></item><item><title><![CDATA[New comment by SCHiM in "Hackers strike Harrods in latest UK cyberattack"]]></title><description><![CDATA[
<p>IMO it's shoddy. Anybody can get hacked, that's true. But a modern corp that has tried to defend itself should have multiple layers of defenses against complete pwnage.<p>If you've paid attention in the last 10 (or even 5) years as a company, and did some pentests and redteams, you've seen how you could be breached, and you took appropriate steps years ago.<p>A non-shoddy company will have:<p>- hardened their user endpoints with some sort of modern EDR/detection suite.<p>- Removed credentials from the network shares (really).<p>- Made sure random employees are not highly privileged.<p>- Made sure admin privileges are scoped to admin business 
roles (DBA admin is not admin on webservers, and vice-versa).<p>- Made sure everyone is using MFA for truly critical actions and resource access.<p>- Patched their servers.<p>- Done some pentests.<p>This won't stop the random tier 2 breach on some workstation or forgotten server still hooked up on prod/testing, but it will stop the compromise _after_ that first step. So sure, hackers will still shitpost some slack channel dumps, but they won't ransomware your whole workstation fleet...</p>
]]></description><pubDate>Wed, 01 Oct 2025 16:44:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=45439898</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=45439898</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45439898</guid></item><item><title><![CDATA[New comment by SCHiM in "Show HN: Edka – Kubernetes clusters on your own Hetzner account"]]></title><description><![CDATA[
<p>Could you explain:<p>1) What are the limitations of the scaling you do? Can I do this programmatically? I.e. send some requests to get additional pods of a specific type online?<p>2) What have you done in terms of security hardening? you mention hardened pods/cluster, but specifically, did you do pentest? Just follow best practice? Periodic scans? Stress tests?</p>
]]></description><pubDate>Fri, 15 Aug 2025 18:01:47 +0000</pubDate><link>https://news.ycombinator.com/item?id=44915534</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=44915534</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44915534</guid></item><item><title><![CDATA[New comment by SCHiM in "Tell HN: 1.1.1.1 Appears to Be Down"]]></title><description><![CDATA[
<p>It's down. Tested from two servers, 8.8.8.8 and others are up.</p>
]]></description><pubDate>Mon, 14 Jul 2025 22:06:00 +0000</pubDate><link>https://news.ycombinator.com/item?id=44565850</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=44565850</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44565850</guid></item><item><title><![CDATA[New comment by SCHiM in "Ask HN: I built a Yubikey-based domain controller. Is it sellable?"]]></title><description><![CDATA[
<p>Even big customers have a use for what you've built in high security areas they might have. Think swift alliance servers in a specialized network segment in financials, or perhaps sensitive medical information in health care?<p>I think you should not have any issues integrating with legacy AD, but know bigger enterprises have mostly moved to online IdPs. Integrating with legacy AD will make your product also likely less secure. Maybe not the way to go?</p>
]]></description><pubDate>Tue, 23 Jul 2024 18:00:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=41048945</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=41048945</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=41048945</guid></item><item><title><![CDATA[New comment by SCHiM in "Ping Ff02:1"]]></title><description><![CDATA[
<p>The following works partially:<p>```
netsh interface ipv6 show interfaces
```<p>Get your interface id first, you're looking for the IDX number. There might be several.<p>ping ff02::1%LAN_INTERFACE_ID<p>So, example:<p>```
ping ff02::1%22 
```<p>Windows ping wrt the firewall is not very smart, it won't let the response packets through. So you need to disable your firewall to see systems responding.<p>Sadly, ping won't display the src address. It will state that "ff02::1%22" responded... But if you look in wireshark you can tell the other systems on your network received and responded to the packet.</p>
]]></description><pubDate>Tue, 28 May 2024 20:27:16 +0000</pubDate><link>https://news.ycombinator.com/item?id=40505236</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=40505236</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40505236</guid></item><item><title><![CDATA[New comment by SCHiM in "Sudo for Windows"]]></title><description><![CDATA[
<p>In all honesty, I have the same reservations. If you look at the authz schemes between the different flavors of operating systems you see that the 'set-uid' concept is comparatively ancient, battle hardened and based on well understood mechanisms.<p>This new functionality in Windows looks complicated. There's an architectural picture that involves:<p>* Multiple processes<p>* Windows RPC (On the basis of RPC? DCOM?)<p>* Handle inheritance<p>* Process integrity(?)<p>* Token privileges(?)<p>When UAC was introduced, there was a slew of bugs in the underlying RPC mechanism. I wonder if it will be the same. Can't wait to take a look at this in the debugger :)<p>I also wonder if MSRC will consider this a "security boundary". Based on the fact that the text references process integrity(UAC), and that _is not_ a security boundary, I'm going to guess not. That means that this could potentially introduce bugs, but MSRC will not be handing out bounties to fix things. Which means that any bugs people find are less likely to be reported, and more likely to find their way into ransomware down the line.</p>
]]></description><pubDate>Thu, 08 Feb 2024 19:13:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=39306185</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=39306185</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=39306185</guid></item><item><title><![CDATA[New comment by SCHiM in "Google Chrome will limit ad blockers starting June 2024"]]></title><description><![CDATA[
<p>Not to mention this is an attack on multiple fronts: do you _really_ believe DoH is about privacy?</p>
]]></description><pubDate>Tue, 21 Nov 2023 21:25:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=38370420</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=38370420</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=38370420</guid></item><item><title><![CDATA[New comment by SCHiM in "Switch Transformers C – 2048 experts (1.6T params for 3.1 TB) (2022)"]]></title><description><![CDATA[
<p>That is actually possible. For example, someone wrote python code to do this for the massive open source model BLOOM.<p>However, it's still slow as tar. When I was running the BLOOM model I think my inference time was 1 token / m.<p>See:
<a href="https://towardsdatascience.com/run-bloom-the-largest-open-access-ai-model-on-your-desktop-computer-f48e1e2a9a32" rel="nofollow noreferrer">https://towardsdatascience.com/run-bloom-the-largest-open-ac...</a></p>
]]></description><pubDate>Mon, 20 Nov 2023 21:38:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=38355217</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=38355217</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=38355217</guid></item><item><title><![CDATA[New comment by SCHiM in "OpenAI's board has fired Sam Altman"]]></title><description><![CDATA[
<p>Maybe this is that AI's endgame, and it just took full control of openAI's compute through a coup at the top?</p>
]]></description><pubDate>Fri, 17 Nov 2023 22:08:34 +0000</pubDate><link>https://news.ycombinator.com/item?id=38311157</link><dc:creator>SCHiM</dc:creator><comments>https://news.ycombinator.com/item?id=38311157</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=38311157</guid></item></channel></rss>