<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: ZoneZealot</title><link>https://news.ycombinator.com/user?id=ZoneZealot</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Tue, 07 Apr 2026 05:36:30 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=ZoneZealot" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by ZoneZealot in "Adobe wrote to my hosts file. I've never had an app do this before"]]></title><description><![CDATA[
<p>Next they'll be installing a font like TeamViewer did... <a href="https://community.teamviewer.com/English/discussion/124507/statement-on-teamviewer-installation-detection/p1" rel="nofollow">https://community.teamviewer.com/English/discussion/124507/s...</a></p>
]]></description><pubDate>Fri, 03 Apr 2026 16:52:58 +0000</pubDate><link>https://news.ycombinator.com/item?id=47629064</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=47629064</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47629064</guid></item><item><title><![CDATA[New comment by ZoneZealot in "Confusables.txt and NFKC disagree on 31 characters"]]></title><description><![CDATA[
<p>I think we're expecting too much from an LLM generated article from a user that has been spending a lot of time spamming their content across multiple platforms and websites.</p>
]]></description><pubDate>Wed, 25 Feb 2026 16:26:48 +0000</pubDate><link>https://news.ycombinator.com/item?id=47153729</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=47153729</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47153729</guid></item><item><title><![CDATA[New comment by ZoneZealot in "Show HN: CIA World Factbook Archive (1990–2025), searchable and exportable"]]></title><description><![CDATA[
<p>Yep, all their comments are LLM output. As well as their alt <a href="https://news.ycombinator.com/threads?id=ruhith">https://news.ycombinator.com/threads?id=ruhith</a><p>Both accounts are used to advertise their website.</p>
]]></description><pubDate>Mon, 23 Feb 2026 11:26:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=47120871</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=47120871</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47120871</guid></item><item><title><![CDATA[New comment by ZoneZealot in "Major European payment processor can't send email to Google Workspace users"]]></title><description><![CDATA[
<p>They mean to send an email in advance, with a message ID that would later be used in the target email. First email gets ignored, moved to spam, or not read yet. Then the target email gets sent with the predicable message ID, and gets bounced.<p>Comments on issues use the format
<[OrgName]/[RepoName]/issues/[IssueNumber]/[CommentID]@github.com><p>A mitigation to this would be to take the combination of message ID and the sending domain and use that as the unique value, because message ID is not guaranteed to actually contain a domain label that's owned by the sender.<p>For example SendGrid's message IDs are <[RandomValue]@geopod-ismtpd-[Integer]>.</p>
]]></description><pubDate>Thu, 12 Feb 2026 19:40:09 +0000</pubDate><link>https://news.ycombinator.com/item?id=46993962</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46993962</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46993962</guid></item><item><title><![CDATA[New comment by ZoneZealot in "Railway (PaaS) global outage"]]></title><description><![CDATA[
<p>That's a big yikes just after promoting themselves in the Jmail thread yesterday <a href="https://news.ycombinator.com/item?id=46966562">https://news.ycombinator.com/item?id=46966562</a><p>Of course every service will have outages, it's just funny to see it so soon after saying:<p>> We're nuts for studying failure at the company [...]<p>(albeit a different 'failure' context)</p>
]]></description><pubDate>Wed, 11 Feb 2026 16:39:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=46977183</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46977183</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46977183</guid></item><item><title><![CDATA[New comment by ZoneZealot in "What came first: the CNAME or the A record?"]]></title><description><![CDATA[
<p>> People configure things similar to <a href="https://mxtoolbox.com/dmarc/dmarc-setup-cname" rel="nofollow">https://mxtoolbox.com/dmarc/dmarc-setup-cname</a> instructions (which I find in conflict with RFC1034).<p>I don't think they're advising anyone create both a CNAME and TXT at the same label - but it certainly looks like that from the weird screenshot at step 5 (which doesn't match the text).<p>I think it's mistakenly a mish-mash of two different guides, one for 'how to use a CNAME to point to a third party DMARC service entirely' and one for 'how to host the DMARC record yourself' (irrespective of where the RUA goes).</p>
]]></description><pubDate>Mon, 19 Jan 2026 22:19:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=46685299</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46685299</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46685299</guid></item><item><title><![CDATA[New comment by ZoneZealot in "All my new code will be closed-source from now on"]]></title><description><![CDATA[
<p>It's almost like the kind of extra filler that an LLM adds because it doesn't understand the meaning behind the words...</p>
]]></description><pubDate>Sat, 10 Jan 2026 14:01:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=46565795</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46565795</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46565795</guid></item><item><title><![CDATA[New comment by ZoneZealot in "All my new code will be closed-source from now on"]]></title><description><![CDATA[
<p>It's an incredibly complex topic, and I do feel for people who are now seeing a massive disruption to the existing ways to monetise their own work (they should be able to live comfortably).<p>It's quite ironic that they used an LLM to write or at least entirely re-format their post, when their topic is about the impact these systems have on the ongoing sustainability of the humans behind the work.<p>I personally don't use LLMs and generative models, I find their output way too untrustworthy and their practice of mining the data of others unsettling. Not that anything on the internet can be inherently trusted anyway.</p>
]]></description><pubDate>Sat, 10 Jan 2026 13:56:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=46565760</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46565760</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46565760</guid></item><item><title><![CDATA[New comment by ZoneZealot in "SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack"]]></title><description><![CDATA[
<p>None of the examples in the article exhibit the 'via' UX. They were all sent with an aligned RFC5321.MailFrom and RFC5322.From (i.e. domain name used in both of those values is the same), those not matching is the most common reason to have the 'via' displayed [0]. They do have display names which pretend to be SendGrid.<p>0: <a href="https://support.google.com/mail/answer/1311182#zippy=%2Ci-can-find-via-and-a-website-name-next-to-the-senders-name" rel="nofollow">https://support.google.com/mail/answer/1311182#zippy=%2Ci-ca...</a></p>
]]></description><pubDate>Sat, 10 Jan 2026 12:48:34 +0000</pubDate><link>https://news.ycombinator.com/item?id=46565268</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46565268</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46565268</guid></item><item><title><![CDATA[New comment by ZoneZealot in "SendGrid isn’t emailing about ICE or BLM – it’s a phishing attack"]]></title><description><![CDATA[
<p>SendGrid's platform doesn't need to be the sender of these emails at all. It's just classic phishing, the emails can pass SPF, DKIM and DMARC as all of these rely on DNS resource records to be created on the RFC5321.MailFrom and/or RFC5322.From domain. Which is under control of the spammer. It's not pretending to be from sendgrid.com, if it was then these measures would help.</p>
]]></description><pubDate>Fri, 09 Jan 2026 22:31:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=46560360</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46560360</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46560360</guid></item><item><title><![CDATA[New comment by ZoneZealot in "AWS raises GPU prices 15% on a Saturday, hopes you weren't paying attention"]]></title><description><![CDATA[
<p>Keeping in mind the consumer space will see minimal trickle down from used datacenter electronics in ~3-5 years from this boom.<p>The GPUs are generally rack-scale integrated units rather than PCIe. The bulk of the GPU RAM is HBM, so not very scavenge-able for consumer GPU mods. Power consumption of the blackwell GPUs in most solutions like the DGX B200 isn't really viable for home use even if you had the space and hookups for a fraction of the original 10ru system. The hard drives and SSDs will be likely be shredded on site and never re-sold as used. RAM will be registered ECC, only suitable for server-class motherboards.</p>
]]></description><pubDate>Tue, 06 Jan 2026 12:53:13 +0000</pubDate><link>https://news.ycombinator.com/item?id=46511619</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46511619</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46511619</guid></item><item><title><![CDATA[New comment by ZoneZealot in "RevisionDojo, a YC startup, is running astroturfing campaigns targeting kids?"]]></title><description><![CDATA[
<p>The funny thing about that is it's extremely simple to bypass. On old or new reddit, search 'author:example' to find posts by /u/example. Or to see both comments and posts, on new reddit go to the user profile and do blank search like a single space character.<p>That's using reddit's own site, of course there are other methods like Google dorks.</p>
]]></description><pubDate>Mon, 05 Jan 2026 19:30:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=46503529</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46503529</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46503529</guid></item><item><title><![CDATA[New comment by ZoneZealot in "Honey's Dieselgate: Detecting and tricking testers"]]></title><description><![CDATA[
<p>For context, Ben Edelman the author of the blog post was in the video at <a href="https://youtu.be/qCGT_CKGgFE?t=1980" rel="nofollow">https://youtu.be/qCGT_CKGgFE?t=1980</a><p>Their personal site is also linked in the video description <a href="https://www.benedelman.org/honey-detecting-testers/" rel="nofollow">https://www.benedelman.org/honey-detecting-testers/</a></p>
]]></description><pubDate>Tue, 30 Dec 2025 23:01:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=46439170</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46439170</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46439170</guid></item><item><title><![CDATA[New comment by ZoneZealot in "I have to give Fortnite my passport to use Bluesky"]]></title><description><![CDATA[
<p>'Kids Web Services' is a subsidiary of Epic, the makers of Fortnite.<p><a href="https://www.kidswebservices.com/" rel="nofollow">https://www.kidswebservices.com/</a></p>
]]></description><pubDate>Fri, 19 Dec 2025 17:30:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=46328469</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46328469</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46328469</guid></item><item><title><![CDATA[New comment by ZoneZealot in "Micron Announces Exit from Crucial Consumer Business"]]></title><description><![CDATA[
<p>Micron are estimated to have 23% and 21% of global revenue for DRAM and HBM in Q2 2025.<p>Their 'smaller' market, SSDs - has an estimated 13% of global NAND revenue.<p><a href="https://counterpointresearch.com/en/insights/global-dram-and-hbm-market-share" rel="nofollow">https://counterpointresearch.com/en/insights/global-dram-and...</a>
<a href="https://counterpointresearch.com/en/insights/global-nand-memory-market-share" rel="nofollow">https://counterpointresearch.com/en/insights/global-nand-mem...</a><p>I don't know their breakdown for consumer vs enterprise, but the Crucial brand is consumer focussed. Obviously enterprise at this point is incredibly lucrative.<p>We're gonna need a bigger pin.</p>
]]></description><pubDate>Wed, 03 Dec 2025 19:04:48 +0000</pubDate><link>https://news.ycombinator.com/item?id=46138539</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46138539</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46138539</guid></item><item><title><![CDATA[New comment by ZoneZealot in "WordPress plugin quirk resulted in UK Gov OBR Budget leak [pdf]"]]></title><description><![CDATA[
<p>I agree, and I also am familiar with how WP Engine's 'GES' (global edge security) works. obr.uk points to two IP addresses held in the name of WP Engine, but they're actually BYOIP with Cloudflare. Cloudflare act as a caching layer, DDOS mitigation and WAF.<p>Note that GES works a bit different to traditional Cloudflare implementations, HTML requests are basically passed through to the WP Engine NGINX reverse proxy server that's in front of the WordPress site (as opposed to being heavily cached with Cloudflare). Static assets, like a PDF - would indeed be cached with GES.</p>
]]></description><pubDate>Mon, 01 Dec 2025 19:31:00 +0000</pubDate><link>https://news.ycombinator.com/item?id=46111948</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=46111948</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46111948</guid></item><item><title><![CDATA[New comment by ZoneZealot in "Samsung now owns Denon, Bowers and Wilkins, Marantz, Polk, and more audio brands"]]></title><description><![CDATA[
<p>You can even go all out with making custom enclosures, DIY Perks has some great videos on DIY audio. <a href="https://www.youtube.com/watch?v=XEspOD1NHr0&list=PLOJU8YJjFwGOeh6BgCWVhZf5HSkfVPVP3" rel="nofollow">https://www.youtube.com/watch?v=XEspOD1NHr0&list=PLOJU8YJjFw...</a></p>
]]></description><pubDate>Sat, 27 Sep 2025 20:36:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=45399123</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=45399123</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45399123</guid></item><item><title><![CDATA[New comment by ZoneZealot in "DNS piracy blocking orders: Google, Cloudflare, and OpenDNS respond differently"]]></title><description><![CDATA[
<p>Cloudflare have only ever been able to do their job (on the reverse proxy CDN/WAF side), by doing full TLS interception. They see the session in plaintext.<p>The customer grants Cloudflare a TLS certificate for their site either by uploading a cert manually, or letting Cloudflare issue a cert via the ACME protocol. They use that to present the site to the world. Cloudflare connects back to the origin site, and the origin either uses HTTP (bad! but possible), HTTPS with a self signed cert, HTTPS with another publicly trusted cert, or a cert that Cloudflare issues with their own (not publicly trusted) CA called Origin CA.<p>As the visitor, you there's no big sign saying 'Cloudflare can read this content as well as the origin website'. They're trusted to not be malicious sure, but there's a massive risk with using any sort of service like this that you don't control.<p>One of those massive risks turned reality with Cloudbleed in 2016/2017: <a href="https://en.wikipedia.org/wiki/Cloudbleed" rel="nofollow">https://en.wikipedia.org/wiki/Cloudbleed</a><p><a href="https://project-zero.issues.chromium.org/issues/42450151" rel="nofollow">https://project-zero.issues.chromium.org/issues/42450151</a><p><a href="https://blog.cloudflare.com/incident-report-on-memory-leak-caused-by-cloudflare-parser-bug/" rel="nofollow">https://blog.cloudflare.com/incident-report-on-memory-leak-c...</a><p><a href="https://blog.cloudflare.com/quantifying-the-impact-of-cloudbleed/" rel="nofollow">https://blog.cloudflare.com/quantifying-the-impact-of-cloudb...</a></p>
]]></description><pubDate>Mon, 12 May 2025 09:18:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=43961083</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=43961083</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43961083</guid></item><item><title><![CDATA[New comment by ZoneZealot in "DNS piracy blocking orders: Google, Cloudflare, and OpenDNS respond differently"]]></title><description><![CDATA[
<p>You're right, I was mistaken. Using a CNAME or A record as the only method to direct traffic at a label towards Cloudflare's reverse proxy is not available on the Free or Pro tier.<p><a href="https://developers.cloudflare.com/dns/zone-setups/partial-setup/" rel="nofollow">https://developers.cloudflare.com/dns/zone-setups/partial-se...</a></p>
]]></description><pubDate>Mon, 12 May 2025 09:07:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=43961036</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=43961036</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43961036</guid></item><item><title><![CDATA[New comment by ZoneZealot in "DNS piracy blocking orders: Google, Cloudflare, and OpenDNS respond differently"]]></title><description><![CDATA[
<p>The trust we have in the CAs who are embedded in our root stores is very important - yes.<p>Thankfully, in this case the issue at hand is entirely unrelated to TLS, rogue CAs etc. Or even DNS record manipulation (for now)...<p>Cloudflare put a 'You're blocked' page, on the web server that Cloudflare are already running for their customer. The customer being the website that Cloudflare is being ordered to block (for users in certain countries).</p>
]]></description><pubDate>Sun, 11 May 2025 22:42:58 +0000</pubDate><link>https://news.ycombinator.com/item?id=43957844</link><dc:creator>ZoneZealot</dc:creator><comments>https://news.ycombinator.com/item?id=43957844</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43957844</guid></item></channel></rss>