<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: cotillion</title><link>https://news.ycombinator.com/user?id=cotillion</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Wed, 08 Apr 2026 01:21:07 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=cotillion" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by cotillion in "US- and Greek-owned tankers ablaze after Iran claims 'underwater drone' strike"]]></title><description><![CDATA[
<p>Some of the states held presidential elections, not all, but the winners write history so it worked out fine in that case.</p>
]]></description><pubDate>Thu, 12 Mar 2026 16:12:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=47353022</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=47353022</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47353022</guid></item><item><title><![CDATA[New comment by cotillion in "How Copyover MUD Servers Worked"]]></title><description><![CDATA[
<p>I still maintain the CD LPMud driver for Genesis MUD at <a href="https://github.com/cotillion/cd-gamedriver">https://github.com/cotillion/cd-gamedriver</a>.
There is not very much activity though since most critical issues have been fixed over the years and the game is very stable.</p>
]]></description><pubDate>Tue, 11 Feb 2025 12:18:16 +0000</pubDate><link>https://news.ycombinator.com/item?id=43011952</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=43011952</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43011952</guid></item><item><title><![CDATA[New comment by cotillion in "EUCLEAK Side-Channel Attack on the YubiKey 5 Series"]]></title><description><![CDATA[
<p>Infineon chips are used in some smart tachographs in EU. 
This is likely to get very messy.<p>Extract those keys and your drivers can ignore all annoying work-time rules and you can just patch the files if you are audited.</p>
]]></description><pubDate>Tue, 03 Sep 2024 20:52:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=41439085</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=41439085</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=41439085</guid></item><item><title><![CDATA[New comment by cotillion in "Netlify just sent me a $104k bill for a simple static site"]]></title><description><![CDATA[
<p>My experience is that customers don't really care that much about small amounts of downtime no matter what size you are, people mostly get that unexpected stuff happens as long as you don't get hacked or misplace their data. Customers might complain a bit but seldom leave because of a few hours downtime.<p>This seems to mostly hold true to developers also, GitHub manages to survive just fine after all.</p>
]]></description><pubDate>Tue, 27 Feb 2024 07:48:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=39521295</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=39521295</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=39521295</guid></item><item><title><![CDATA[New comment by cotillion in "Ransomware attack affecting Tietoevry's services to some customers in Sweden"]]></title><description><![CDATA[
<p>They obviously had no separation at all between customers within the DC though. Which is worrying.</p>
]]></description><pubDate>Mon, 22 Jan 2024 10:48:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=39088132</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=39088132</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=39088132</guid></item><item><title><![CDATA[New comment by cotillion in "0-days exploited by commercial surveillance vendor in Egypt"]]></title><description><![CDATA[
<p>Ouch.<p>Apparently Firefox has "Https First" also but requires the pref dom.security.https_first to be set.<p>"HTTPS-Only Mode" is obviously best if you can do that.</p>
]]></description><pubDate>Fri, 22 Sep 2023 18:33:59 +0000</pubDate><link>https://news.ycombinator.com/item?id=37615862</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=37615862</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=37615862</guid></item><item><title><![CDATA[New comment by cotillion in "Google Translate “Get well [Swedish firstname]” translates to “fuck you”"]]></title><description><![CDATA[
<p>Its aggression is related to animals somehow.<p>- krya på dig katt (cat) - fuck you cat<p>Björn is also bear in swedish.</p>
]]></description><pubDate>Tue, 09 May 2023 13:56:58 +0000</pubDate><link>https://news.ycombinator.com/item?id=35874383</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=35874383</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=35874383</guid></item><item><title><![CDATA[New comment by cotillion in "FreeBSD optimizations used by Netflix to serve video at 800Gb/s [pdf]"]]></title><description><![CDATA[
<p>Netflix works because they move content close to the users. This is done by either having the ISP establish a peering connection directly to Netflix hosted servers or by having the ISPs host "Open Connect Appliances" which cache the most requested content. These appliances are based on FreeBSD.<p>The AWS egress savings from this setup must be immense.<p><a href="https://openconnect.netflix.com/" rel="nofollow">https://openconnect.netflix.com/</a></p>
]]></description><pubDate>Thu, 03 Nov 2022 12:52:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=33450207</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=33450207</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=33450207</guid></item><item><title><![CDATA[New comment by cotillion in "I fucking hate Jira"]]></title><description><![CDATA[
<p>I think those of us who have had to suffer through ClearQuest, Lotus notes etc have an entirely different scale on how bad things can be compared to those who appear to really really hate Jira today. I'm not a fan of Jira but atleast it loads, eventually.</p>
]]></description><pubDate>Mon, 20 Jun 2022 20:01:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=31815052</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=31815052</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=31815052</guid></item><item><title><![CDATA[New comment by cotillion in "Possible Spring core RCE"]]></title><description><![CDATA[
<p>This appears to be some Chinese source with the same info: <a href="https://cn-sec.com/archives/853339.html" rel="nofollow">https://cn-sec.com/archives/853339.html</a><p>Looking at Github and uses of SerializationUtils.deserialize this is going to be painful.</p>
]]></description><pubDate>Wed, 30 Mar 2022 07:57:33 +0000</pubDate><link>https://news.ycombinator.com/item?id=30852502</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=30852502</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=30852502</guid></item><item><title><![CDATA[New comment by cotillion in "Attackers exploit flaw in web’s security to steal $2M in cryptocurrency"]]></title><description><![CDATA[
<p>No, klayswap.com has CAA configured in DNS.</p>
]]></description><pubDate>Fri, 11 Mar 2022 13:36:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=30639673</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=30639673</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=30639673</guid></item><item><title><![CDATA[New comment by cotillion in "Attackers exploit flaw in web’s security to steal $2M in cryptocurrency"]]></title><description><![CDATA[
<p>You are most likely vulnerable to some extent, protection has to be done by your ISP.<p>In this case it seems like the attackers targeted an SDK. Subresource integrity would have helped here.<p><a href="https://developer.mozilla.org/en-US/docs/Web/Security/Subresource_Integrity" rel="nofollow">https://developer.mozilla.org/en-US/docs/Web/Security/Subres...</a></p>
]]></description><pubDate>Fri, 11 Mar 2022 13:21:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=30639479</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=30639479</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=30639479</guid></item><item><title><![CDATA[New comment by cotillion in "Compromising Angular via expired NPM publisher email domains"]]></title><description><![CDATA[
<p>The mitigation against this was probably the restriction on password resets which support lifted. They just forgot to train support how to deal with it.</p>
]]></description><pubDate>Sun, 20 Feb 2022 10:06:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=30404610</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=30404610</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=30404610</guid></item><item><title><![CDATA[New comment by cotillion in "Hetzner now provides IPv6 only dedicated servers"]]></title><description><![CDATA[
<p>In the server auction the price appears to drop by €2.13 when IPv6 is selected. Which I guess is affected by local VAT.</p>
]]></description><pubDate>Tue, 07 Dec 2021 14:31:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=29472808</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=29472808</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=29472808</guid></item><item><title><![CDATA[New comment by cotillion in "EU lawmakers pass strict new rules affecting big U.S. tech"]]></title><description><![CDATA[
<p>When the words on the page are "Minimum level of fines of 4% and up to 20% of total turnover  " it might be time to start to listen.<p>And for systematic non-compliance “structural or behavioural remedies”.</p>
]]></description><pubDate>Tue, 23 Nov 2021 14:09:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=29317972</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=29317972</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=29317972</guid></item><item><title><![CDATA[New comment by cotillion in "DoorDash Joins Forces with Wolt"]]></title><description><![CDATA[
<p>Most pizza-places here attempt to avoid the "(wolt|foodora) tax" price increase for pickups by offering free drinks if you call and order instead of doing it through the app.<p>Wouldn't be surprised if they start splitting into separate legal entities soon to get out of the pickup price matching restrictions.</p>
]]></description><pubDate>Wed, 10 Nov 2021 10:13:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=29173061</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=29173061</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=29173061</guid></item><item><title><![CDATA[New comment by cotillion in "Fastmail, Runbox, and Posteo under DDoS extortion attack"]]></title><description><![CDATA[
<p>At this scale you pretty much need to apply some sort of DDoS scrubbing service. Your ISP might already have one they can route traffic through or if you have your own AS you can let a DDoS service announce the target prefixes.<p>A game i run was recently hit with a 102 Ggbps CLDAP reflection attack. We were down for a while until our ISPs DDoS protection detected it after that we were mostly unaffected. If the attack is difficult to separate from legitimate traffic you'll still suffer though.</p>
]]></description><pubDate>Sat, 23 Oct 2021 14:09:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=28968675</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=28968675</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=28968675</guid></item><item><title><![CDATA[New comment by cotillion in "Gmail password first character is case insensitive on mobile device"]]></title><description><![CDATA[
<p>They probably just do two password checks.</p>
]]></description><pubDate>Sat, 09 Oct 2021 10:38:23 +0000</pubDate><link>https://news.ycombinator.com/item?id=28808628</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=28808628</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=28808628</guid></item><item><title><![CDATA[New comment by cotillion in "Facebook-owned sites were down"]]></title><description><![CDATA[
<p>So, does anyone know where to one can buy an LTE gateway with a serial port interface?
Asking for a friend.</p>
]]></description><pubDate>Mon, 04 Oct 2021 17:14:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=28749615</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=28749615</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=28749615</guid></item><item><title><![CDATA[New comment by cotillion in "Cooling system leak led to Victorian Big Battery fire"]]></title><description><![CDATA[
<p>Well, the conclusions seem to suggest they have passive safety.<p>"The affected Megapacks failed safely despite total loss."</p>
]]></description><pubDate>Tue, 28 Sep 2021 11:26:54 +0000</pubDate><link>https://news.ycombinator.com/item?id=28681522</link><dc:creator>cotillion</dc:creator><comments>https://news.ycombinator.com/item?id=28681522</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=28681522</guid></item></channel></rss>