<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: hannob</title><link>https://news.ycombinator.com/user?id=hannob</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 18 Jun 2026 04:49:27 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=hannob" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by hannob in "Factoring "short-sleeve" RSA keys with polynomials"]]></title><description><![CDATA[
<p>My best guess would be some kind of netapp product, as we saw some self-signed certs on hosts that identified as netapp. But netapp didn't answer, and we got either no or no useful feedback from any of the certificate owners. So we ended up being unable to figure that out.<p>I'll probably share a list in some way soon and will try to ask the wider cryptographic and TLS community if anyone can figure it out.</p>
]]></description><pubDate>Tue, 16 Jun 2026 08:59:51 +0000</pubDate><link>https://news.ycombinator.com/item?id=48552502</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=48552502</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48552502</guid></item><item><title><![CDATA[New comment by hannob in "Microsoft doubles down on controversial quantum computing claims"]]></title><description><![CDATA[
<p>My prediction would be that it won't become mainstream.<p>Even if it will be practically possible to build quantum computers for average users (given they currently rely on complex physical experiments, one can doubt that), there's the question of whether there's a need for "mainstream" quantum computing.<p>As has often been said, quantum computers aren't some magical thing that makes every computation faster. They are faster at some very specific problems like breaking cryptography (I doubt that there's a mass market for decrypting the old WIFI traffic you stored from your neighbor, and, these days, most internet traffic is already pq safe) and simulating physics (also probably not something average joe wants to do every day).<p>In all likelihood, quantum computers will be specialized devices used, e.g., by scientists. You may be able to rent your quantum computing time if that gets cheap enough to be practical, but I doubt many people will ever own one.</p>
]]></description><pubDate>Wed, 03 Jun 2026 07:52:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=48381158</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=48381158</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48381158</guid></item><item><title><![CDATA[New comment by hannob in "Germany Law to Force Algorithm Boost for State-Approved News"]]></title><description><![CDATA[
<p>I would take this with a very huge grain of salt.<p>The only source seems to be a fringe right-wing news webpage (Apollo News) citing from an internal paper (which, it sounds to me, is just a vague proposal from a media oversight body). I have not seen any reports in major news publications, and would assume there's a lot of context missing in this reporting.</p>
]]></description><pubDate>Wed, 27 May 2026 19:23:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=48299212</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=48299212</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48299212</guid></item><item><title><![CDATA[New comment by hannob in "The Forgotten Art of the LAN Party (2023)"]]></title><description><![CDATA[
<p>Historic bit: in the late 90s/early 2000s there was a bit of a trend - and quite some tension - of demoscene parties getting taken over by LAN parties. I believe the Gathering used to be a demoscene party, but completely transformed into a gaming LAN party.<p>There were also those that tried to be both (I believe Assembly is doing both to this day) or those that kept the gaming out (Mekka/Symposium, which no longer exists, but there's been a followup party called Breakpoint, and later another followup called Revision that still exists).</p>
]]></description><pubDate>Wed, 27 May 2026 05:41:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=48290115</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=48290115</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48290115</guid></item><item><title><![CDATA[New comment by hannob in "Europe built sovereign clouds to escape US control. Forgot about the processors"]]></title><description><![CDATA[
<p>As far as cloud service servers are concerned, I don't think ARM CPUs have any meaningful marketshare, right?<p>You could start running things on ARM, but, almost certainly, that comes with a lot of extra friction. (Not saying that isn't a bad idea, it'd probably improve the ecosystem as a whole and flush out architecture-specific assumptions in server software. But it's not someting trivial to do.)</p>
]]></description><pubDate>Sat, 16 May 2026 12:19:15 +0000</pubDate><link>https://news.ycombinator.com/item?id=48159520</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=48159520</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48159520</guid></item><item><title><![CDATA[New comment by hannob in "Myths about /dev/urandom (2014)"]]></title><description><![CDATA[
<p>I think this one is among the most significant findings:
<a href="https://factorable.net/" rel="nofollow">https://factorable.net/</a><p>I also believe there were some android ASLR issues based on the same weakness (i.e., low early boot-time entropy).<p>But this is all quite old, and there've been massive improvements. Basically, "don't use a very old linux kernel" is your mitigation for these issues.</p>
]]></description><pubDate>Thu, 14 May 2026 13:02:53 +0000</pubDate><link>https://news.ycombinator.com/item?id=48134820</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=48134820</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48134820</guid></item><item><title><![CDATA[New comment by hannob in "New stainless steel can survive conditions for hydrogen production in seawater"]]></title><description><![CDATA[
<p>Making hydrogen from seawater is not an actual problem that needs solving.<p>The problem with hydrogen electrolysis is its energy requirements to split water. The energy requirements for the desalination of water before that is a rounding error. It's not worth the hassle to develop electrolyzers that can deal with seawater.</p>
]]></description><pubDate>Wed, 13 May 2026 19:23:55 +0000</pubDate><link>https://news.ycombinator.com/item?id=48126256</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=48126256</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48126256</guid></item><item><title><![CDATA[New comment by hannob in "DNSSEC disruption affecting .de domains – Resolved"]]></title><description><![CDATA[
<p>I know quite a bit about PKI and X.509, and I can tell you that much: the overlap with how DNSSEC works is limited.</p>
]]></description><pubDate>Tue, 05 May 2026 22:01:05 +0000</pubDate><link>https://news.ycombinator.com/item?id=48029241</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=48029241</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48029241</guid></item><item><title><![CDATA[New comment by hannob in "Acetaminophen vs. ibuprofen"]]></title><description><![CDATA[
<p>Buy a pack of 20x500mg (just checked, common size in Germany), take 2-3 every half hour for a while.<p>Sure, that's extreme. But if you're unaware of the risks, you feel sick, and you believe it's helping you.<p>I mean, people aren't killing themselves in masses with it, but it happens every now and then. Easily imaginable that one in a few million people will have enough tendency to take more pills and is unaware of the overdose danger.</p>
]]></description><pubDate>Wed, 22 Apr 2026 07:59:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=47860504</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=47860504</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47860504</guid></item><item><title><![CDATA[New comment by hannob in "RSA and Python"]]></title><description><![CDATA[
<p>> You're supposed to concatenate all the input numbers, to create a message that has hundreds or thousands of digits; then RSA-encrypt that number.<p>That's not how it works...<p>In modern protocols, you don't encrypt at all with RSA. You use a key exchange, and if you use RSA, you only use it as a signature algorithm to initiate the key exchange.<p>If you happen to want to encrypt with RSA, which you usually shouldn't, you first use a padding algorithm (the modern variant of that is called RSA-OAEP) with which you prepare and then encrypt a random key. That key you then use for symmetric encryption.</p>
]]></description><pubDate>Sat, 28 Mar 2026 19:42:59 +0000</pubDate><link>https://news.ycombinator.com/item?id=47557606</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=47557606</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47557606</guid></item><item><title><![CDATA[New comment by hannob in "Cyber.mil serving file downloads using TLS certificate which expired 3 days ago"]]></title><description><![CDATA[
<p>You're training users to click away error messages.</p>
]]></description><pubDate>Mon, 23 Mar 2026 18:22:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=47493243</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=47493243</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47493243</guid></item><item><title><![CDATA[New comment by hannob in "A GitHub Issue Title Compromised 4k Developer Machines"]]></title><description><![CDATA[
<p>> Has everyone lost their minds?<p>Clearly yes.
(Ok, not everyone, but large parts of the IT and software development community.)</p>
]]></description><pubDate>Fri, 06 Mar 2026 10:22:03 +0000</pubDate><link>https://news.ycombinator.com/item?id=47273169</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=47273169</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47273169</guid></item><item><title><![CDATA[New comment by hannob in "NPM install is stealing your passwords – I built a tool to catch it"]]></title><description><![CDATA[
<p>Well...<p>There's a long history of people trying to build software that detects bad software. It's known as Antivirus software. It doesn't work very well, because you're up against fundamental truths of computational theory (the halting problem).</p>
]]></description><pubDate>Tue, 24 Feb 2026 09:05:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=47134704</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=47134704</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47134704</guid></item><item><title><![CDATA[New comment by hannob in "Toyota’s hydrogen-powered Mirai has experienced rapid depreciation"]]></title><description><![CDATA[
<p>Your understanding is entirely wrong.<p>Most hydrogen fueling stations receive it from the next steam reformer, which will make it from fossil gas.</p>
]]></description><pubDate>Sat, 21 Feb 2026 20:36:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=47104448</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=47104448</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47104448</guid></item><item><title><![CDATA[New comment by hannob in "There is unequivocal evidence that Earth is warming (2024)"]]></title><description><![CDATA[
<p>If the rest of the world wants to still have an industry once we finally decide to seriously use green technology, they should quickly catch up to China - if that's still possible.<p>While China is still very reliant on fossil-fuels, and particularly dirty coal, they're at the same time working on dominating the post-fossil age at astonishing speed. After they already dominate solar and batteries, they're working on doing the same for a number of other future green industries. They are already dominating future technologies like Green Methanol that most people in Europe or the US have never heard of.</p>
]]></description><pubDate>Wed, 18 Feb 2026 21:40:08 +0000</pubDate><link>https://news.ycombinator.com/item?id=47066829</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=47066829</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47066829</guid></item><item><title><![CDATA[New comment by hannob in "Chrome extensions spying on users' browsing data"]]></title><description><![CDATA[
<p>That can't be true, right? I mean, Google broke Adblockers in Chrome to prevent this very issue. And it had absolutely nothing to do with Google's Ad business.<p>So it's completely impossible that such malicious extensions still exist.<p>(may contain sarcasm)</p>
]]></description><pubDate>Wed, 11 Feb 2026 14:38:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=46975473</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=46975473</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46975473</guid></item><item><title><![CDATA[New comment by hannob in "Show HN: We Built the 1. EU-Sovereignty Audit for Websites"]]></title><description><![CDATA[
<p>So their leatherboard of good examples lists nsa.gov with 100 points.<p>Is this a parody?</p>
]]></description><pubDate>Tue, 27 Jan 2026 14:54:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=46780778</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=46780778</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46780778</guid></item><item><title><![CDATA[New comment by hannob in "XHTML Club"]]></title><description><![CDATA[
<p>I used to create a number of simple web pages in XHTML back in the days when we believed XHTML was the future. Recently, while going through and restructuring some of my old "online stuff", I learned that XHTML really isn't in a state that I'd want to use it any more:<p>* XHTML 1.0 and 1.1 are officially deprecated by the W3C.<p>* XHTML5 exists as a variant of HTML5. However, it's very clear that it's absolutely not a priority for the HTML5 working groups, and there's a statement that future features will not necessarily be supported by the XHTML5 variant.<p>* XHTML5 does not have a DTD, so one of the main advantages of XHTML - that you can validate its correctness with pure XML functionality - isn't there.<p>* If you do a 'view source' in Firefox on a completely valid XHTML 1.0/1.1 page, it'll redline the XML declaration like it's something wrong. Not sure if this is intended or possibly even a bug, but it certainly gives me a 'browser tells me this is not supposed to be there' feeling.<p>It pretty much seems to me XHTML has been abandoned by the web community. My personal conclusion has been that whenever I touch any of my old online things still written in XHTML, I'll convert them to HTML5.</p>
]]></description><pubDate>Sat, 24 Jan 2026 14:08:35 +0000</pubDate><link>https://news.ycombinator.com/item?id=46743682</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=46743682</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46743682</guid></item><item><title><![CDATA[New comment by hannob in "Three RCEs in Ilias Learning Management System"]]></title><description><![CDATA[
<p>Okay, story time: back in 2018, the German government's foreign ministry was hacked.<p>At the time, a colleague of mine (we were both working for the German IT news magazine Golem) found a web page by a government-associated university that was offline with a message that it's been taken down due to a security issue.<p>Putting a few hints together, we figured out that Ilias was hosted therer, and that this was how the attack on the government initially started.<p>We weren't able to figure out which vulnerability was used, but had some ideas what it might've been. (Older versions had a default password for the admin account.)<p>One wonders: there's an Open Source software that's widely used by universities, even by government-associated universities. It's been the cause of a high-profile attack on a government before. One wonders why that doesn't trigger sufficient funding for regular, high-quality security audits of that software.<p>Article from 2018: <a href="https://www.golem.de/news/government-hack-hack-on-german-government-via-e-learning-software-ilias-1803-133231.html" rel="nofollow">https://www.golem.de/news/government-hack-hack-on-german-gov...</a></p>
]]></description><pubDate>Fri, 23 Jan 2026 16:59:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=46734798</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=46734798</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46734798</guid></item><item><title><![CDATA[New comment by hannob in "The string theory hype machine will never die"]]></title><description><![CDATA[
<p>I'm certainly a lay person here, so take this with a grain of salt. But my understanding is that this is part of the problem, or more the issue that people criticize.<p>I think it's largely uncontroversial that the math in string theory could be useful in other areas. But if that's your argument for the legitimacy of string theory then the question arises what string theory is and if it is still part of physics. Because physics has, of course, the goal of describing the real world, and, my understanding is, string theory failed to do that, despite what many people have hoped.<p>If string theory is "just a way of developing math that can be useful in totally unrelated areas", it's, well, part of mathematics. But I don't think that's how the field sees itself.</p>
]]></description><pubDate>Wed, 14 Jan 2026 21:37:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=46623923</link><dc:creator>hannob</dc:creator><comments>https://news.ycombinator.com/item?id=46623923</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46623923</guid></item></channel></rss>