<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: arsome</title><link>https://news.ycombinator.com/user?id=arsome</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Fri, 17 Apr 2026 00:43:53 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=arsome" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by arsome in "LittleSnitch for Linux"]]></title><description><![CDATA[
<p>This gets even more involved when you consider things like loading libraries, there's also the impact of calls like OpenProcess/WriteProcessMemory/CreateRemoteThread (Windows-land versions, though I'm sure similar exists elsewhere).<p>The "good" Windows firewalls like Outpost and Zone Alarm used to have features to catch this, they'd detect when a process tried to invoke or open a running process which had internet access. They'd also do things like detect when a process tried to write a startup item. This went by names like "Leak Control" but it was basically providing near-complete HIDS features with local control.</p>
]]></description><pubDate>Thu, 09 Apr 2026 13:29:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=47703475</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=47703475</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47703475</guid></item><item><title><![CDATA[New comment by arsome in "OpenBSD: PF queues break the 4 Gbps barrier"]]></title><description><![CDATA[
<p>If you're moving those kind of speeds you're probably not doing packet filtering in software.</p>
]]></description><pubDate>Thu, 19 Mar 2026 14:34:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=47440241</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=47440241</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47440241</guid></item><item><title><![CDATA[New comment by arsome in "Tailscale Peer Relays is now generally available"]]></title><description><![CDATA[
<p>Headscale also offers a relay server of its own.</p>
]]></description><pubDate>Wed, 18 Feb 2026 18:15:59 +0000</pubDate><link>https://news.ycombinator.com/item?id=47064220</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=47064220</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47064220</guid></item><item><title><![CDATA[New comment by arsome in "Cloudflare Global Network experiencing issues"]]></title><description><![CDATA[
<p>Very quickly you'll find this doesn't work. Your DC will just null your IP. You'll switch to a new one and the attackers will too, the DC will null that one. You won't win at this game unless you're a very sizeable organization or are just willing to wait the attackers out, they will get bored eventually.</p>
]]></description><pubDate>Tue, 18 Nov 2025 16:36:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=45968526</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=45968526</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45968526</guid></item><item><title><![CDATA[New comment by arsome in "Tell HN: Azure outage"]]></title><description><![CDATA[
<p>One of these things is much easier to burn or otherwise tamper with.</p>
]]></description><pubDate>Wed, 29 Oct 2025 22:24:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=45753887</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=45753887</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45753887</guid></item><item><title><![CDATA[New comment by arsome in "Gemini 2.5 Flash Image"]]></title><description><![CDATA[
<p>This seems absolutely silly, it's not hard to take a photo of a photo and there's both analog (building a lightbox) and digital (modifying the sensor input) means which would make this entirely trivial to spoof.</p>
]]></description><pubDate>Wed, 27 Aug 2025 15:19:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=45040914</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=45040914</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45040914</guid></item><item><title><![CDATA[New comment by arsome in "Tailscale Is Pretty Useful"]]></title><description><![CDATA[
<p>It's largely equivalent here - you're just exposing something via a tunnel rather than directly via your home IP.<p>That could have benefits, for example, if you're concerned about a DDoS attack on that service taking your home internet out, you may be able to work around it like this. But it won't mitigate a gaping hole in the underlying service which you're still exposing.<p>It could also have drawbacks, like limited bandwidth and higher latency, which would make it highly unsuitable for something like a game server.</p>
]]></description><pubDate>Wed, 05 Mar 2025 21:24:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=43272673</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=43272673</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43272673</guid></item><item><title><![CDATA[New comment by arsome in "Liberux: The Linux Phone You Have Been Waiting For"]]></title><description><![CDATA[
<p>Site has now turned into a wordpress installer?</p>
]]></description><pubDate>Thu, 23 Jan 2025 13:44:56 +0000</pubDate><link>https://news.ycombinator.com/item?id=42803920</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=42803920</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42803920</guid></item><item><title><![CDATA[New comment by arsome in "Right to root access"]]></title><description><![CDATA[
<p>There are indeed software firewalls on Android that use the VPN functionality to implement something like this so they don't even require root, I believe Glasswire offers one.</p>
]]></description><pubDate>Mon, 13 Jan 2025 17:40:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=42686123</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=42686123</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42686123</guid></item><item><title><![CDATA[New comment by arsome in "Charset="WTF-8""]]></title><description><![CDATA[
<p>name.Length > 0<p>is probably pretty safe.</p>
]]></description><pubDate>Sun, 24 Nov 2024 14:48:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=42228181</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=42228181</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42228181</guid></item><item><title><![CDATA[New comment by arsome in "CrowdStrike's impact on aviation"]]></title><description><![CDATA[
<p>You can basically run Windows 3.1 in dosbox on a potato now, so the hardware really isn't even a problem. If any of this was actually true...</p>
]]></description><pubDate>Mon, 29 Jul 2024 20:30:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=41103482</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=41103482</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=41103482</guid></item><item><title><![CDATA[New comment by arsome in "Intent to end OCSP service"]]></title><description><![CDATA[
<p>Disappointing to hear considering the limitations of CRLs - is there any intention to go forward with OCSP stapling or is that completely abandoned at this point?</p>
]]></description><pubDate>Tue, 23 Jul 2024 15:49:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=41047316</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=41047316</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=41047316</guid></item><item><title><![CDATA[New comment by arsome in "Jellyfin: We're Good, Seriously"]]></title><description><![CDATA[
<p>I used to feel the same way about Plex til they started flooding my less savvy family with ads for their own content and useless features unrelated to what they want to do. Really not impressed by that one. I realized how bad it was when I got a call about a broken movie I didn't even have.<p>Plex still seems slicker than Jellyfin in some ways but after that experience I'd certainly consider a switch. Offline is the only reason I still use plex, but their offline setup is pretty buggy too.</p>
]]></description><pubDate>Mon, 22 Jul 2024 10:29:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=41032817</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=41032817</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=41032817</guid></item><item><title><![CDATA[New comment by arsome in "Daylight eInk Computer"]]></title><description><![CDATA[
<p>eink display strapped to a cheap android tablet and a pile of marketing hype.<p>Once people realize how the display randomly leaves old junk on the screen and requires a manual refresh to fix and the software is a barely modified from stock AOSP let alone has sufficient modifications to make use with this screen possible, this will be right behind the Rabbit R1 and that stupid AI pin as worst product of the year.</p>
]]></description><pubDate>Tue, 09 Jul 2024 22:28:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=40921940</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=40921940</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40921940</guid></item><item><title><![CDATA[New comment by arsome in "Linksys Velop routers send Wi-Fi passwords in plaintext to US servers"]]></title><description><![CDATA[
<p>The level of effort and obviousness of an email reset is nothing compared to helping someone figure out how to reconfigure every smart device ever made.</p>
]]></description><pubDate>Tue, 09 Jul 2024 17:42:08 +0000</pubDate><link>https://news.ycombinator.com/item?id=40918832</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=40918832</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40918832</guid></item><item><title><![CDATA[New comment by arsome in "PySkyWiFi: Free stupid wi-fi on long-haul flights"]]></title><description><![CDATA[
<p>> And here I am, avoiding downloading things on cell service because it might negatively impact other people around me.<p>You paid for that service, they should be able to provide it to you. If it negatively impacts other users, that's the provider's fault.</p>
]]></description><pubDate>Tue, 09 Jul 2024 14:48:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=40916775</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=40916775</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40916775</guid></item><item><title><![CDATA[New comment by arsome in "Should this be a map or 500 maps?"]]></title><description><![CDATA[
<p>Even when driving the best Google maps can do is avoid highways. OsmAnd is great but it doesn't solve the routing issue to my knowledge. If you know of something that solves that one please let me know.</p>
]]></description><pubDate>Thu, 04 Jul 2024 11:47:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=40874102</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=40874102</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40874102</guid></item><item><title><![CDATA[New comment by arsome in "[dead]"]]></title><description><![CDATA[
<p>How do you properly investigate a performance, stability or security issue in your production environment in that scenario? Perhaps logs are enough for some things, but unless you have massive replay infrastructure and a complete duplicate of all data running live, you'll have some serious challenges there, and investigating a security issue with that sort of setup sounds like a nightmare to me. "DB got dumped last week and we just wiped all the evidence with this mornings deployment".</p>
]]></description><pubDate>Tue, 02 Jul 2024 05:03:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=40853706</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=40853706</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40853706</guid></item><item><title><![CDATA[New comment by arsome in "The weirdest QNX bug I've encountered (2021)"]]></title><description><![CDATA[
<p>I actually ran across this issue myself, SIGQUIT'd the process, loaded it into a debugger and found the exact same problem. I can confirm the problem still exists on QNX 7.1. Fortunately we were moving off it, so I didn't think much more about it, but glad someone wrote it up.</p>
]]></description><pubDate>Sun, 30 Jun 2024 19:24:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=40839482</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=40839482</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40839482</guid></item><item><title><![CDATA[New comment by arsome in "TeamViewer Security Breach"]]></title><description><![CDATA[
<p>RustDesk has been pretty good for something that's 1:1 comparable, but for most cases ssh or rdp is preferable.</p>
]]></description><pubDate>Thu, 27 Jun 2024 22:10:40 +0000</pubDate><link>https://news.ycombinator.com/item?id=40815728</link><dc:creator>arsome</dc:creator><comments>https://news.ycombinator.com/item?id=40815728</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40815728</guid></item></channel></rss>