<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: cataflam</title><link>https://news.ycombinator.com/user?id=cataflam</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Sat, 27 Jun 2026 02:39:52 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=cataflam" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by cataflam in "Real-time LLM Inference on Standard GPUs: 3k tokens/s per request"]]></title><description><![CDATA[
<p>Congrats gaeld and team<p>The demo is very impressive!<p>disclaimer: I've known the founder for a while, as legitimate as it gets in deep tech, real years of research and engineering behind this, not vaporware</p>
]]></description><pubDate>Fri, 29 May 2026 14:30:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=48323553</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=48323553</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48323553</guid></item><item><title><![CDATA[New comment by cataflam in "The bootstrapper's EU stack for under €10 per month"]]></title><description><![CDATA[
<p>> For monitoring I use and recommend UpDown.io, which doesn’t seem to be listed there.<p>It doesn't seem very well known, but I've been a happy user. Most of the others have become over-bloated with a shitty UI.</p>
]]></description><pubDate>Mon, 25 May 2026 22:28:57 +0000</pubDate><link>https://news.ycombinator.com/item?id=48272660</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=48272660</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48272660</guid></item><item><title><![CDATA[New comment by cataflam in "If AI writes your code, why use Python?"]]></title><description><![CDATA[
<p>> Nicholas Carlini, a researcher at Anthropic, orchestrated 16 parallel Claude agents to write a production C compiler in Rust.<p>To write a proof-of-concept C compiler, not a production-grade one...<p>Hard to take the article seriously after this</p>
]]></description><pubDate>Tue, 12 May 2026 13:55:51 +0000</pubDate><link>https://news.ycombinator.com/item?id=48108375</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=48108375</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48108375</guid></item><item><title><![CDATA[New comment by cataflam in "Game devs explain the tricks involved with letting you pause a game"]]></title><description><![CDATA[
<p>You misinterpreted the comment you are citing.<p>This non-determinism would not and did not cause replays to diverge (the PRNG seed was most likely stored and would reproduce exactly the same results).</p>
]]></description><pubDate>Sun, 19 Apr 2026 12:27:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=47823801</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=47823801</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47823801</guid></item><item><title><![CDATA[New comment by cataflam in "France's aircraft carrier located in real time by Le Monde through fitness app"]]></title><description><![CDATA[
<p>Your AI powered comment is wrong.
Le monde has been doing this for years. They have a series of articles about this.
There is no "gap closing."</p>
]]></description><pubDate>Fri, 20 Mar 2026 20:41:20 +0000</pubDate><link>https://news.ycombinator.com/item?id=47460320</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=47460320</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47460320</guid></item><item><title><![CDATA[New comment by cataflam in "Show HN: OneCLI – Vault for AI Agents in Rust"]]></title><description><![CDATA[
<p>it cannot email your secret key to an attacker because of prompt injection etc.</p>
]]></description><pubDate>Thu, 12 Mar 2026 21:40:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=47357558</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=47357558</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47357558</guid></item><item><title><![CDATA[New comment by cataflam in "1B identity records exposed in ID verification data leak"]]></title><description><![CDATA[
<p>Almost a month old, original source: <a href="https://cybernews.com/security/global-data-leak-exposes-billion-records/" rel="nofollow">https://cybernews.com/security/global-data-leak-exposes-bill...</a><p>and I've never seen any confirmation elsewhere<p>Looks like CyberNews have edited the article with more info since first I saw it, it used to look quite suspicious and untrustworthy, it now has more info. Still doesn't say exactly what a record is, or how many uniques there are.</p>
]]></description><pubDate>Thu, 12 Mar 2026 10:24:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=47348693</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=47348693</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47348693</guid></item><item><title><![CDATA[New comment by cataflam in "Global warming has accelerated significantly"]]></title><description><![CDATA[
<p>You're getting downvoted because you didn't read the article.<p>It is specifically about cleaning up the data by <i>removing</i> these 3 and showing a clearer picture of acceleration <i>without</i> these 3 factors.</p>
]]></description><pubDate>Sat, 07 Mar 2026 01:00:55 +0000</pubDate><link>https://news.ycombinator.com/item?id=47283214</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=47283214</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47283214</guid></item><item><title><![CDATA[New comment by cataflam in "What an unprocessed photo looks like"]]></title><description><![CDATA[
<p>Great series of articles!</p>
]]></description><pubDate>Mon, 29 Dec 2025 10:24:35 +0000</pubDate><link>https://news.ycombinator.com/item?id=46419175</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=46419175</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46419175</guid></item><item><title><![CDATA[New comment by cataflam in "FFmpeg to Google: Fund us or stop sending bugs"]]></title><description><![CDATA[
<p>Don't they?<p><a href="https://git.ffmpeg.org/gitweb/ffmpeg.git?a=search&h=HEAD&st=author&s=%40google.com" rel="nofollow">https://git.ffmpeg.org/gitweb/ffmpeg.git?a=search&h=HEAD&st=...</a></p>
]]></description><pubDate>Wed, 12 Nov 2025 03:24:30 +0000</pubDate><link>https://news.ycombinator.com/item?id=45896080</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45896080</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45896080</guid></item><item><title><![CDATA[New comment by cataflam in "Date bug in Rust-based coreutils affects Ubuntu 25.10 automatic updates"]]></title><description><![CDATA[
<p>Wow. Maybe I'm missing something but it seems really weird to replace a tool with a rewrite that doesn't pass the test suite!</p>
]]></description><pubDate>Thu, 23 Oct 2025 22:16:51 +0000</pubDate><link>https://news.ycombinator.com/item?id=45688060</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45688060</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45688060</guid></item><item><title><![CDATA[New comment by cataflam in "Date bug in Rust-based coreutils affects Ubuntu 25.10 automatic updates"]]></title><description><![CDATA[
<p>This comment[0] explains it.<p>The core bug seems to be that support for `date -r <file>` wasn't implemented at the time ubuntu integrated it [1, 2].<p>And the command silently accepted -r before and did nothing (!)<p>0: <a href="https://lwn.net/Articles/1043123/" rel="nofollow">https://lwn.net/Articles/1043123/</a><p>1: <a href="https://github.com/uutils/coreutils/issues/8621" rel="nofollow">https://github.com/uutils/coreutils/issues/8621</a><p>2: <a href="https://github.com/uutils/coreutils/pull/8630" rel="nofollow">https://github.com/uutils/coreutils/pull/8630</a></p>
]]></description><pubDate>Thu, 23 Oct 2025 22:14:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=45688031</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45688031</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45688031</guid></item><item><title><![CDATA[New comment by cataflam in "Microsoft PowerToys"]]></title><description><![CDATA[
<p>Amazing they are still alive and kicking. Started using them with Windows 95 (different specific ones, same general concept)<p>These and Sysinternals (bought by Microsoft around 2006) were must have when I was still using Windows.<p><a href="https://learn.microsoft.com/en-us/sysinternals/" rel="nofollow">https://learn.microsoft.com/en-us/sysinternals/</a></p>
]]></description><pubDate>Wed, 10 Sep 2025 16:24:05 +0000</pubDate><link>https://news.ycombinator.com/item?id=45199993</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45199993</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45199993</guid></item><item><title><![CDATA[New comment by cataflam in "We all dodged a bullet"]]></title><description><![CDATA[
<p>> update your password, update your 2FA<p>should practice it for ENTER your password, ENTER your 2FA ;)<p>> Still, I don’t understand how npmjs.help doesn’t immediately trigger red flags<p>1. it probably did for quite a few recipients, but that's never going to be 100%
2. not helped by the current practices of the industry in general, many domains in use, hard sometimes to know if it's legit or not (some actors are worse in this regard than others)<p>Either way, someone somewhere won't pay enough attention because they're tired, or stressed out, or they are just going through 100 emails, etc.</p>
]]></description><pubDate>Wed, 10 Sep 2025 16:15:33 +0000</pubDate><link>https://news.ycombinator.com/item?id=45199862</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45199862</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45199862</guid></item><item><title><![CDATA[New comment by cataflam in "We all dodged a bullet"]]></title><description><![CDATA[
<p>Indeed.<p>At least the crowd here should _know_ that TOTP doesn't do anything against phishing, and most of the critical infrastructure for code and other things support U2F so people should use it.</p>
]]></description><pubDate>Wed, 10 Sep 2025 16:12:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=45199821</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45199821</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45199821</guid></item><item><title><![CDATA[New comment by cataflam in "We all dodged a bullet"]]></title><description><![CDATA[
<p>My apologies, somehow after all these years, I didn't know that (and first time I've done it)!</p>
]]></description><pubDate>Wed, 10 Sep 2025 16:08:13 +0000</pubDate><link>https://news.ycombinator.com/item?id=45199749</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45199749</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45199749</guid></item><item><title><![CDATA[New comment by cataflam in "We all dodged a bullet"]]></title><description><![CDATA[
<p>Yes! Here is the whitepaper (from 2017 I think), I read that and used it, it's excellent<p><a href="https://karla.io/files/ichthyology-wp.pdf" rel="nofollow">https://karla.io/files/ichthyology-wp.pdf</a><p>> At Stripe, rather than focusing on mitigating more basic attacks with phishing training, we decided to invest our time in preventing credential phishing entirely. We did this using a combination of Single Sign On (SSO), SSL client certificates, and Universal Second Factor
(U2F)</p>
]]></description><pubDate>Wed, 10 Sep 2025 16:03:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=45199697</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45199697</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45199697</guid></item><item><title><![CDATA[New comment by cataflam in "We all dodged a bullet"]]></title><description><![CDATA[
<p>Still would have done nothing in this case, as they pulled the correct email address he uses for npm from another source (public API I think?).<p>That's exactly why I said all the other "helpful" recommendations and warning signs people are using are never foolproof, and thus mostly useless given the scale at which phishing campaigns operate.<p>Great if it helps you in the general case, terrible if it lulls you into a sense of confidence when it's actually a phishing email using the right email address.</p>
]]></description><pubDate>Wed, 10 Sep 2025 15:55:40 +0000</pubDate><link>https://news.ycombinator.com/item?id=45199584</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45199584</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45199584</guid></item><item><title><![CDATA[New comment by cataflam in "We all dodged a bullet"]]></title><description><![CDATA[
<p>As for any of these cases, we do receive legitimate emails that require being logged in, Google or otherwise<p>The answer is simple: use your bookmarks/password manager/... to login yourself with a URL you control in another tab and come back to the email to click it<p>(and if it still asks for a login then, of course still don't do it)</p>
]]></description><pubDate>Wed, 10 Sep 2025 15:50:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=45199491</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45199491</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45199491</guid></item><item><title><![CDATA[New comment by cataflam in "NPM debug and chalk packages compromised"]]></title><description><![CDATA[
<p>In that case<p>1. You just requested it, I'm not saying to never click link on transactional emails you requested. You still need to click on those verify email links<p>2. It replaces entering your password, so you're not entering your password on a link from an email, which is the very wrong thing.</p>
]]></description><pubDate>Tue, 09 Sep 2025 22:38:03 +0000</pubDate><link>https://news.ycombinator.com/item?id=45190350</link><dc:creator>cataflam</dc:creator><comments>https://news.ycombinator.com/item?id=45190350</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45190350</guid></item></channel></rss>