<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: pritambaral</title><link>https://news.ycombinator.com/user?id=pritambaral</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Mon, 07 Sep 2026 23:26:40 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=pritambaral" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by pritambaral in "Omarchy: Any User Process Can Escalate to Root"]]></title><description><![CDATA[
<p>Ah, Ubuntu _Server_. I'm tempted to dismiss this by simply saying "Server Linux != Desktop Linux", but yeah, I don't like that this is on by default either.<p>I mean, this is a setup that ships with a default password that's the same as the username, and the first thing I do on all my server installs is disable all default user accounts and enable passwordless sudo.<p>From reading other docs of Ubuntu Server, it appears they relax the root/non-root distinction in other ways too. But I'd probably never have suspected this particular vector of vulnerability.</p>
]]></description><pubDate>Tue, 01 Sep 2026 11:33:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=49520556</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49520556</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49520556</guid></item><item><title><![CDATA[New comment by pritambaral in "Omarchy: Any User Process Can Escalate to Root"]]></title><description><![CDATA[
<p>> Ubuntu has the exact same vulnerability out of the box, just with lxd instead.<p>No, it does not[1]. LXD:<p>- explicitly warns against this mode of vulnerability. Of course, there's no protection against people who blindly run commands copied from the internets, but the official documentation, at least, for as far back as I can recall, has had clear warning boxes against this, with explanations.<p>- does not have the track record of bad design that docker has had (IMO).<p>- supports fine-grained ACLs and user management.<p>----<p>[1]: <a href="https://ubuntu.com/blog/shared-development-environment-with-lxd" rel="nofollow">https://ubuntu.com/blog/shared-development-environment-with-...</a></p>
]]></description><pubDate>Tue, 01 Sep 2026 02:06:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=49517147</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49517147</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49517147</guid></item><item><title><![CDATA[New comment by pritambaral in "Omarchy: Any User Process Can Escalate to Root"]]></title><description><![CDATA[
<p>The Desktop Linux equivalent to that would be Polkit.<p>Psst. There's also this, in typical KDE style: <a href="https://github.com/aeroshell-desktop/uac-polkit-agent" rel="nofollow">https://github.com/aeroshell-desktop/uac-polkit-agent</a></p>
]]></description><pubDate>Tue, 01 Sep 2026 01:46:34 +0000</pubDate><link>https://news.ycombinator.com/item?id=49516984</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49516984</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49516984</guid></item><item><title><![CDATA[New comment by pritambaral in "Omarchy: Any User Process Can Escalate to Root"]]></title><description><![CDATA[
<p>Desktop alternative to most uses of sudo: Polkit[1]. For a UAC style prompt, see AeroShell[2].<p>However, one still SHOULD NOT allow untrusted software arbitrary read/write access to their $HOME, even on a completely secure (and thus, imaginary) OS. No reason why every App X should have access to the files of every App Y.<p>1: <a href="https://wiki.archlinux.org/title/Polkit" rel="nofollow">https://wiki.archlinux.org/title/Polkit</a><p>2: <a href="https://github.com/aeroshell-desktop/uac-polkit-agent" rel="nofollow">https://github.com/aeroshell-desktop/uac-polkit-agent</a></p>
]]></description><pubDate>Tue, 01 Sep 2026 01:37:47 +0000</pubDate><link>https://news.ycombinator.com/item?id=49516923</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49516923</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49516923</guid></item><item><title><![CDATA[New comment by pritambaral in "California lawmakers unanimously pass Linux exemption from age-verification law"]]></title><description><![CDATA[
<p>> It does disfavor license-free and public domain software, which isn't great.<p>Public domain software is free to "copy, redistribute, and modify", so ... where's the disfavour?</p>
]]></description><pubDate>Sun, 30 Aug 2026 06:58:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=49496316</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49496316</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49496316</guid></item><item><title><![CDATA[New comment by pritambaral in "A year of fighting scrapers on my 1.5 million-page website"]]></title><description><![CDATA[
<p>> open source project<p>So, one can put in the minimal effort of removing one div.<p>> being associated<p>There's no requirement of association of any kind. See above and below.<p>> request<p>Cool. Pay for your own branding. Request fulfilled. No? Then it's a demand, not a request.</p>
]]></description><pubDate>Fri, 07 Aug 2026 23:14:57 +0000</pubDate><link>https://news.ycombinator.com/item?id=49217348</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49217348</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49217348</guid></item><item><title><![CDATA[New comment by pritambaral in "A year of fighting scrapers on my 1.5 million-page website"]]></title><description><![CDATA[
<p>> ... sexualized ...<p>Perhaps you should check if anybody else sees what you see. After browsing through every image I could find in the history of this project, I, at least, am convinced: any "sexualization" _you_ see is entirely in your head.<p>> ... in judeo christian societies<p>I really hope you're not trying to whitewash your own bias by alluding to those religions. From everything I've read of their texts, and interacted with practioners of those religions, I'm unaware of any bias that classifies _cartoon depictions of children_ as "sexual".<p>Perhaps you should try whitelabeling instead. Don't like the packaging? Package it yourself!</p>
]]></description><pubDate>Fri, 07 Aug 2026 23:02:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=49217265</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49217265</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49217265</guid></item><item><title><![CDATA[New comment by pritambaral in "Massively Parallel Postgres Backups"]]></title><description><![CDATA[
<p>Note: this only applies if the `--link` flag is used with `pg_upgrade` (which, I recommend), but the default is to copy all data.</p>
]]></description><pubDate>Tue, 04 Aug 2026 16:32:02 +0000</pubDate><link>https://news.ycombinator.com/item?id=49171221</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49171221</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49171221</guid></item><item><title><![CDATA[New comment by pritambaral in "Prevent cognitive debt by manually retyping LLM-generated code"]]></title><description><![CDATA[
<p>LLMs are plenty far from compilers.</p>
]]></description><pubDate>Mon, 03 Aug 2026 11:38:09 +0000</pubDate><link>https://news.ycombinator.com/item?id=49154408</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49154408</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49154408</guid></item><item><title><![CDATA[New comment by pritambaral in "Prevent cognitive debt by manually retyping LLM-generated code"]]></title><description><![CDATA[
<p>> One could argue that adding a library is in some ways similar to copy/pasting code in as much as, one doesn't know what the code is doing, and yet that doesn't leave me with a sense of unease!<p>It does, to me. Been burned enough times that I now, at minimum, audit the source code of third-party libraries before I use them.</p>
]]></description><pubDate>Mon, 03 Aug 2026 11:35:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=49154390</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=49154390</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49154390</guid></item><item><title><![CDATA[New comment by pritambaral in "Microsoft's open source tools were hacked to steal passwords of AI developers"]]></title><description><![CDATA[
<p>> You can run rootless containers or you can use containerization like Podman which does not run as root.<p>Yes, now you get my point. Do you run rootless containers (with the Docker backed) or do you run "root" containers?</p>
]]></description><pubDate>Fri, 19 Jun 2026 18:48:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=48601822</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=48601822</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48601822</guid></item><item><title><![CDATA[New comment by pritambaral in "Emacs 31 is around the corner: The changes I'm daily driving"]]></title><description><![CDATA[
<p>TV dinners have their value, but a cooked meal is often better. And, just like meals can be cooked for a team, so can emacs configs.</p>
]]></description><pubDate>Fri, 19 Jun 2026 08:30:40 +0000</pubDate><link>https://news.ycombinator.com/item?id=48596253</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=48596253</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48596253</guid></item><item><title><![CDATA[New comment by pritambaral in "Microsoft's open source tools were hacked to steal passwords of AI developers"]]></title><description><![CDATA[
<p>I hope you see the (IMO, obvious) problem.<p>1. Docker (or any Linux container runtime, for that matter) is not intended for, designed for, or effective as a security boundary.
2. Root containers run as root on the host. The "sandboxed" processes have full capabilities, as far as the kernel is concerned with them.</p>
]]></description><pubDate>Wed, 10 Jun 2026 17:02:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=48479288</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=48479288</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48479288</guid></item><item><title><![CDATA[New comment by pritambaral in "Microsoft's open source tools were hacked to steal passwords of AI developers"]]></title><description><![CDATA[
<p>> <a href="https://github.com/ashishb/amazing-sandbox" rel="nofollow">https://github.com/ashishb/amazing-sandbox</a><p>Does your Docker backend run commands in rootless containers? I skimmed the code but didn't see anything to confirm this.</p>
]]></description><pubDate>Tue, 09 Jun 2026 09:54:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=48458917</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=48458917</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48458917</guid></item><item><title><![CDATA[New comment by pritambaral in "SSH Secret Menu"]]></title><description><![CDATA[
<p>ProxyCommand allows you to use any command to setup a connection. Not necessarily an ssh command, like ProxyJump. It can be any command, as long as it receives on stdin and produces on stdout, it can act like a TCP connection.<p>ProxyJump is a special case of `ProxyCommand ssh -p <port> <user>@<host>`. Can't replace the `ssh` in there when using ProxyJump.</p>
]]></description><pubDate>Wed, 11 Mar 2026 08:38:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=47333066</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=47333066</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47333066</guid></item><item><title><![CDATA[New comment by pritambaral in "Hyundai is now delaying its EV battery plant that was raided by ICE"]]></title><description><![CDATA[
<p>Here's what you did, paraphrased:<p>"It was the Hyundai Corpo that broke the law! They're stealing American jobs! That's why ICE targeted them! No, I have no evidence, only blind belief. Why are you even asking me for evidence?! What about when Hyundai did bad things in the past???!!?1?"<p>----<p>If it:<p>1. Repeats the arguments of fascists.<p>2. Defends fascists.<p>3. Attacks the victims of fascists.<p>What do you think it is? A duck?!</p>
]]></description><pubDate>Fri, 12 Sep 2025 21:30:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=45226996</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=45226996</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45226996</guid></item><item><title><![CDATA[New comment by pritambaral in "Hyundai is now delaying its EV battery plant that was raided by ICE"]]></title><description><![CDATA[
<p>Who says they didn't? There is only one party here who acted in bad faith, and it wasn't Hyundai.<p>In fact, this party has a — by now well-established — track-record of precisely this bad behaviour. They haven't even tried to hide their actions, only their individual faces. They've been public about their disdain for the law, for humanity, and their general evil plans.<p>And here you are accusing their victims of crimes you, like them, have no evidence of.</p>
]]></description><pubDate>Fri, 12 Sep 2025 13:39:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=45222032</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=45222032</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45222032</guid></item><item><title><![CDATA[New comment by pritambaral in "Lord of the Io_uring (2020)"]]></title><description><![CDATA[
<p>Firefox on Android has a setting to force enable zoom on all websites, even those that disable it.</p>
]]></description><pubDate>Mon, 01 Sep 2025 14:57:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=45093162</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=45093162</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45093162</guid></item><item><title><![CDATA[New comment by pritambaral in "Claude Sonnet will ship in Xcode"]]></title><description><![CDATA[
<p>What program do I have to join for 0%?</p>
]]></description><pubDate>Fri, 29 Aug 2025 04:14:13 +0000</pubDate><link>https://news.ycombinator.com/item?id=45060102</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=45060102</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45060102</guid></item><item><title><![CDATA[New comment by pritambaral in "DeepSeek v3.1 is not having a moment"]]></title><description><![CDATA[
<p>> you could do ca. 1200 prompts per double decker. Which is a lot.<p>If humans had evolved to do prompts (while retaining everything else that makes human thought human), that number doesn't sound that big.<p>OTOH, if LLMs had to do everything humans need energy for, that number would be waaay too big for LLMs.<p>----<p>Humans don't even have an efficient energy input system. How many of those 1.3M joules actually get assimilated? Silicon is a lot more efficient at energy, because a lot of effort has been put into making it so, and is fed raw energy. It doesn't need to process food like humans, humans already did that for it when they captured the energy in electricity.<p>----<p>I'm sure there's more ways of making the comparison more fair, but I doubt your parent was trying to prove their claim with such deep research. So let me try another angle: No human can burn through as much energy as the top hosted LLMs do for one prompt, in as much time.</p>
]]></description><pubDate>Sat, 23 Aug 2025 17:20:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=44997471</link><dc:creator>pritambaral</dc:creator><comments>https://news.ycombinator.com/item?id=44997471</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44997471</guid></item></channel></rss>