<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: iscoelho</title><link>https://news.ycombinator.com/user?id=iscoelho</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 30 Jul 2026 06:03:08 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=iscoelho" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by iscoelho in "The iPhone Upgrade Program is being replaced by Apple Upgrade"]]></title><description><![CDATA[
<p>I don't think iPhone Upgrade Program was ever the best deal to be honest. It's just convenient.</p>
]]></description><pubDate>Tue, 28 Jul 2026 20:18:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=49089377</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=49089377</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49089377</guid></item><item><title><![CDATA[New comment by iscoelho in "iPhone Upgrade Program"]]></title><description><![CDATA[
<p>I stand corrected! This doesn't look too bad then.</p>
]]></description><pubDate>Tue, 28 Jul 2026 18:09:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=49087741</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=49087741</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49087741</guid></item><item><title><![CDATA[New comment by iscoelho in "The iPhone Upgrade Program is being replaced by Apple Upgrade"]]></title><description><![CDATA[
<p>The Apple Upgrade lease model isn't even a replacement as you have to wait 24 months before upgrading.<p>The entire point of the iPhone Upgrade Program was to make it painless to swap to the newest iPhone every year. Without that, there's no value proposition.</p>
]]></description><pubDate>Tue, 28 Jul 2026 18:05:59 +0000</pubDate><link>https://news.ycombinator.com/item?id=49087691</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=49087691</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49087691</guid></item><item><title><![CDATA[New comment by iscoelho in "Kernel anti-cheat is an overreach"]]></title><description><![CDATA[
<p>You'd be surprised to know that this strategy works quite well! Pixel bots require a hardware fake display when faced with kernel anti-cheat. They also depend on color/pattern recognition, as AI is not yet capable of operating at the frame rates required for competitive games. That allows the bait to be seen by a bot, but invisible to the eye.<p>If you are successfully baited and detected, you also get HWID banned, so it only takes once. This makes cheating via pixel bot unviable.<p>On the contrary, DMA is so desired because it eliminates this risk.</p>
]]></description><pubDate>Tue, 07 Jul 2026 22:52:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=48825099</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48825099</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48825099</guid></item><item><title><![CDATA[New comment by iscoelho in "Kernel anti-cheat is an overreach"]]></title><description><![CDATA[
<p>Aimbot is actually very solvable!<p>1) When DMA is fully blocked, Aimbot resorts to being a pixel bot.<p>2) Once you're relying on a pixel bot, all the anti-cheat has to do is "bait" the bot. After you click the bait a few times, you're banned. (:<p>RuneScape is actually the pioneer of this technique.</p>
]]></description><pubDate>Tue, 07 Jul 2026 10:13:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=48815760</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48815760</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48815760</guid></item><item><title><![CDATA[New comment by iscoelho in "Kernel Anti-Cheat Is an Overreach"]]></title><description><![CDATA[
<p>> "How come replay analysis doesn’t catch more cheaters?"<p>1) There's too many players.<p>2) Closet cheaters are extremely subjective: automated & manual moderation would be full of false positives. In these cases, functional anti-cheats actually serve to vindicate these players.</p>
]]></description><pubDate>Tue, 07 Jul 2026 10:05:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=48815712</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48815712</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48815712</guid></item><item><title><![CDATA[New comment by iscoelho in "Kernel anti-cheat is an overreach"]]></title><description><![CDATA[
<p>I feel someone doesn't need to play competitive games to be able to give an honest assessment of the privacy & security risks.<p>I'm sad I'm not seeing that honesty elsewhere in this thread.</p>
]]></description><pubDate>Tue, 07 Jul 2026 09:55:57 +0000</pubDate><link>https://news.ycombinator.com/item?id=48815644</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48815644</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48815644</guid></item><item><title><![CDATA[New comment by iscoelho in "Kernel anti-cheat is an overreach"]]></title><description><![CDATA[
<p>At least in Valorant, DMA is becoming impossible due to IOMMU / Memory Integrity enforcement. The only option is becoming pixel bots.<p>As for faking the input device: I'm sure it's possible, but I'm also sure that perfectly spoofing an input device is much easier said than done.<p>Even if it is possible, all they have to do is make it hard enough to where the percentage of players cheating is at the point where you will rarely if ever encounter a cheater in your matches. As far as I'm aware, Valorant is one of the only games that has accomplished that.</p>
]]></description><pubDate>Tue, 07 Jul 2026 09:40:53 +0000</pubDate><link>https://news.ycombinator.com/item?id=48815544</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48815544</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48815544</guid></item><item><title><![CDATA[New comment by iscoelho in "Kernel anti-cheat is an overreach"]]></title><description><![CDATA[
<p>In my opinion, the debate about kernel anti-cheat on Windows is disingenuous fear-mongering. I'm confused why Hacker News of all places misrepresents the technical details.<p>You can already completely compromise the average user's privacy with an underprivileged process (nearly <i>all</i> of your personal information is accessible with zero privileges!), and you can already persist with administrator privileges (that is routinely given on Windows).<p>In regard to the "RCE attacker risk", attackers can RCE to escalate just as easily into vulnerable Windows services (there's too many to count). Kernel drivers aren't that special.<p>In regard to the "CrowdStrike risk", that's not privacy related and is extremely overblown.<p>What exactly does a kernel driver change regarding <i>privacy</i>? Nothing I can think of.<p>It's this simple: If games want your personal data, they don't need a kernel driver to get it.</p>
]]></description><pubDate>Tue, 07 Jul 2026 09:25:36 +0000</pubDate><link>https://news.ycombinator.com/item?id=48815429</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48815429</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48815429</guid></item><item><title><![CDATA[New comment by iscoelho in "Kernel anti-cheat is an overreach"]]></title><description><![CDATA[
<p>That's a different type of game entirely. Private/community servers cannot be competitive at the scale of modern competitive games.</p>
]]></description><pubDate>Tue, 07 Jul 2026 09:08:35 +0000</pubDate><link>https://news.ycombinator.com/item?id=48815297</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48815297</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48815297</guid></item><item><title><![CDATA[New comment by iscoelho in "Kernel anti-cheat is an overreach"]]></title><description><![CDATA[
<p>This isn't possible in Valorant. Their kernel module is extremely particular about input devices:<p>1) only allows a single mouse input device at a time<p>2) completely ignores virtual mouse input<p>3) flags "special"/"uncommon" input devices<p>Their anti-cheat is actually much more involved and effective than most would assume.</p>
]]></description><pubDate>Tue, 07 Jul 2026 09:04:48 +0000</pubDate><link>https://news.ycombinator.com/item?id=48815271</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48815271</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48815271</guid></item><item><title><![CDATA[New comment by iscoelho in "Microsoft BitLocker – YellowKey zero-day exploit"]]></title><description><![CDATA[
<p>I don't disagree. Clarifying, I personally don't think this exploit is a backdoor, but rather that the negligence is enough to appear malicious.<p>Just for fun (not saying I believe this!): Did you ever consider that a malicious Microsoft employee may have intentionally planted this exploit? They don't have access to signing keys. They aren't able to make custom firmware. However, what they can do is leave innocent looking code in Windows that they and their co-conspirators can exploit later. Completely possible (-:</p>
]]></description><pubDate>Thu, 14 May 2026 20:47:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=48141010</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48141010</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48141010</guid></item><item><title><![CDATA[New comment by iscoelho in "Microsoft BitLocker – YellowKey zero-day exploit"]]></title><description><![CDATA[
<p>If the device does not have BitLocker, WinRE already by default provides full Administrator access to the unencrypted disk via Command Prompt.<p>> I think that level of pushback against the claims is a valid (and small) amount of "downplaying". I haven't seen anyone claiming this isn't a serious issue.<p>If you look in the other threads about this, it's much more obvious. Look for brand new users. There's comparatively few in this thread, but the pattern is there: if the user's name is green, they're downplaying this.</p>
]]></description><pubDate>Thu, 14 May 2026 07:21:00 +0000</pubDate><link>https://news.ycombinator.com/item?id=48132130</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48132130</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48132130</guid></item><item><title><![CDATA[New comment by iscoelho in "Microsoft BitLocker – YellowKey zero-day exploit"]]></title><description><![CDATA[
<p>If the device doesn't have BitLocker, this exploit is pointless because you can already boot any OS USB and immediately have full access to the unencrypted disk.<p>This exploit is only ever relevant with BitLocker enabled (as a method to "bypass" BitLocker's security premise [categorically classifying this as, dare I say, a "BitLocker bypass"]).<p>To avoid typing 1)2)3)4) a bunch of more times, I'll just say 2/3/4) all still fit the definition of downplaying the situation.</p>
]]></description><pubDate>Thu, 14 May 2026 07:06:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=48132048</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48132048</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48132048</guid></item><item><title><![CDATA[New comment by iscoelho in "Microsoft BitLocker – YellowKey zero-day exploit"]]></title><description><![CDATA[
<p>1) Except that the entire premise behind BitLocker TPM's security relies on the login screen as a hard security boundary, and thus any attack on the login screen is an attack on BitLocker. It is semantics to dispute this and certainly fits "downplaying."<p>2) I'm sure many organizations are thankful that the researcher has decided not to release that exploit chain at this time. I am hopeful that Microsoft will not be as dismissive and will resolve it before it is publicly released.<p>3) It distracts from the point. The point is that Microsoft's security record is so bad that many of the vulnerabilities appear deliberate and obvious enough to be backdoors.<p>4) Yes, this also fits the definition of downplaying.</p>
]]></description><pubDate>Thu, 14 May 2026 06:43:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=48131914</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48131914</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48131914</guid></item><item><title><![CDATA[New comment by iscoelho in "Mystery Microsoft bug leaker keeps the zero-days coming"]]></title><description><![CDATA[
<p>Considering the researcher had already reported these to Microsoft, and delayed releasing them publicly until Microsoft "pulled every childish game possible" (quote) instead of patching them, it's not unreasonable for the researcher to be withholding another exploit from the public to limit harm.<p>I also disagree that the PIN bypass would be "10 times more impressive," but that's just my professional opinion.</p>
]]></description><pubDate>Thu, 14 May 2026 06:13:54 +0000</pubDate><link>https://news.ycombinator.com/item?id=48131723</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48131723</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48131723</guid></item><item><title><![CDATA[New comment by iscoelho in "Microsoft BitLocker – YellowKey zero-day exploit"]]></title><description><![CDATA[
<p>What's with all the replies on these threads downplaying this? Why is it mainly brand new accounts? What's going on here?<p>I've seen every variant of:<p>1) "this is an authentication/privilege escalation bug, not a bitlocker exploit" (? what are you even trying to say)<p>2) "even though the attacker explicitly warns that this is capable of bypassing TPM+PIN, that isn't actually true or what he meant"<p>3) "we shouldn't jump to conclusions that this is a backdoor"<p>4) "we already knew BitLocker with just TPM isn't secure" (? except many organizations depend on it to be)</p>
]]></description><pubDate>Thu, 14 May 2026 05:31:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=48131443</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48131443</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48131443</guid></item><item><title><![CDATA[New comment by iscoelho in "Mystery Microsoft bug leaker keeps the zero-days coming"]]></title><description><![CDATA[
<p>That’s quite a stretch, to say the least.</p>
]]></description><pubDate>Thu, 14 May 2026 05:26:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=48131415</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=48131415</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48131415</guid></item><item><title><![CDATA[New comment by iscoelho in "Despite doubts, federal cyber experts approved Microsoft cloud service"]]></title><description><![CDATA[
<p>But it doesn't. Full authentication bypass exploits are extremely rare and unheard of among tech giants. Maybe account takeover/recovery, sure, but full bypass? It just never happens.<p>Microsoft goes beyond that: they've managed to have a critical vulnerability in almost every authentication product they have ever created. It's exceptional.</p>
]]></description><pubDate>Wed, 18 Mar 2026 18:52:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=47429859</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=47429859</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47429859</guid></item><item><title><![CDATA[New comment by iscoelho in "Despite doubts, federal cyber experts approved Microsoft cloud service"]]></title><description><![CDATA[
<p>I knew there was another incident that I was forgetting, insanity... I don't understand how Microsoft keeps getting away with this and everyone just forgets.</p>
]]></description><pubDate>Wed, 18 Mar 2026 15:51:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=47427311</link><dc:creator>iscoelho</dc:creator><comments>https://news.ycombinator.com/item?id=47427311</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47427311</guid></item></channel></rss>