<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: schnatterer</title><link>https://news.ycombinator.com/user?id=schnatterer</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Wed, 23 Sep 2026 15:20:04 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=schnatterer" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by schnatterer in "How to perform CPR and defibrillation training video (2020)"]]></title><description><![CDATA[
<p>6 concise minutes of something we all should know and care about</p>
]]></description><pubDate>Sat, 05 Sep 2026 20:53:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=49580545</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=49580545</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49580545</guid></item><item><title><![CDATA[How to perform CPR and defibrillation training video (2020)]]></title><description><![CDATA[
<p>Article URL: <a href="https://commons.wikimedia.org/wiki/File:Save_a_Life_Cymru_-_Training_video.webm">https://commons.wikimedia.org/wiki/File:Save_a_Life_Cymru_-_Training_video.webm</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=49580544">https://news.ycombinator.com/item?id=49580544</a></p>
<p>Points: 5</p>
<p># Comments: 1</p>
]]></description><pubDate>Sat, 05 Sep 2026 20:53:12 +0000</pubDate><link>https://commons.wikimedia.org/wiki/File:Save_a_Life_Cymru_-_Training_video.webm</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=49580544</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49580544</guid></item><item><title><![CDATA[New comment by schnatterer in "Codex Security"]]></title><description><![CDATA[
<p>Can we interpret this as a reaction to Google open sourcing mantis?
<a href="https://github.com/google/mantis/" rel="nofollow">https://github.com/google/mantis/</a></p>
]]></description><pubDate>Wed, 29 Jul 2026 11:29:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=49096052</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=49096052</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49096052</guid></item><item><title><![CDATA[New comment by schnatterer in "CarPlay Is Additive"]]></title><description><![CDATA[
<p>What about privacy? No one here wonders what kind of data your car leaks to Apple/Google?</p>
]]></description><pubDate>Sun, 05 Jul 2026 06:23:02 +0000</pubDate><link>https://news.ycombinator.com/item?id=48791720</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=48791720</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48791720</guid></item><item><title><![CDATA[New comment by schnatterer in "Half-Baked Product"]]></title><description><![CDATA[
<p>What would you say are the main lessons to be learned here for all sides?</p>
]]></description><pubDate>Sat, 04 Jul 2026 12:23:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=48784903</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=48784903</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48784903</guid></item><item><title><![CDATA[New comment by schnatterer in "Podman v6.0.0"]]></title><description><![CDATA[
<p>Any experiences running k3d on podman? It's my daily provider of local kubernetes.</p>
]]></description><pubDate>Sat, 04 Jul 2026 06:54:59 +0000</pubDate><link>https://news.ycombinator.com/item?id=48783215</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=48783215</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48783215</guid></item><item><title><![CDATA[New comment by schnatterer in "Android Developer Verification: Threat masquerading as protection"]]></title><description><![CDATA[
<p>Meanwhile in Luxembourg: Google loses fight against EU’s $4.7 billion Android fine
<a href="https://www.msn.com/en-us/money/other/google-loses-fight-against-eu-s-47-billion-android-fine/ar-AA272fSq" rel="nofollow">https://www.msn.com/en-us/money/other/google-loses-fight-aga...</a></p>
]]></description><pubDate>Thu, 02 Jul 2026 11:03:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=48759490</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=48759490</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48759490</guid></item><item><title><![CDATA[New comment by schnatterer in "Bitwarden CLI compromised in ongoing Checkmarx supply chain campaign"]]></title><description><![CDATA[
<p>Can you give some examples for the claim that most of the attacks don't make it upstream? 
My gut tells me that, yes, mostly binaries have been compromised. But I am sure you have some real-world examples proving the point.</p>
]]></description><pubDate>Mon, 27 Apr 2026 07:06:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=47918567</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=47918567</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47918567</guid></item><item><title><![CDATA[New comment by schnatterer in "Moving from GitHub to Codeberg, for lazy people"]]></title><description><![CDATA[
<p>This repo also holds a lot of info about setting up two way mirrors between GitHub and Codeberg: <a href="https://codeberg.org/Recommendations/Mirror_to_Codeberg" rel="nofollow">https://codeberg.org/Recommendations/Mirror_to_Codeberg</a><p>Last commit is two years ago, but still a good overview.</p>
]]></description><pubDate>Fri, 27 Mar 2026 06:27:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=47539621</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=47539621</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47539621</guid></item><item><title><![CDATA[New comment by schnatterer in "‘ELITE’: The Palantir app ICE uses to find neighborhoods to raid"]]></title><description><![CDATA[
<p>Original 404media article:<p><a href="https://www.404media.co/elite-the-palantir-app-ice-uses-to-find-neighborhoods-to-raid/" rel="nofollow">https://www.404media.co/elite-the-palantir-app-ice-uses-to-f...</a><p><a href="https://archive.ph/wa32f" rel="nofollow">https://archive.ph/wa32f</a></p>
]]></description><pubDate>Thu, 15 Jan 2026 20:00:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=46638321</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=46638321</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46638321</guid></item><item><title><![CDATA[New comment by schnatterer in "Floppy disks turn out to be the greatest TV remote for kids"]]></title><description><![CDATA[
<p>The toni boxes are also quite hackable
<a href="https://tonies-wiki.revvox.de/" rel="nofollow">https://tonies-wiki.revvox.de/</a><p>At least the older model. Don't know about their latest model with gaming and everything.</p>
]]></description><pubDate>Tue, 13 Jan 2026 07:34:03 +0000</pubDate><link>https://news.ycombinator.com/item?id=46598216</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=46598216</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46598216</guid></item><item><title><![CDATA[New comment by schnatterer in "Package managers keep using Git as a database, it never works out"]]></title><description><![CDATA[
<p>> Even GitOps tools that embrace git as a source of truth have to work around its limitations<p>I'd say this only applies to huge scale (or monorepos, as mentioned in the article). 
Another workaround might be gitless gitops via OCI.</p>
]]></description><pubDate>Sun, 28 Dec 2025 11:52:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=46410406</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=46410406</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46410406</guid></item><item><title><![CDATA[Europe: WhatsApp opens for third-party apps]]></title><description><![CDATA[
<p>Article URL: <a href="https://faq.whatsapp.com/916543719558426">https://faq.whatsapp.com/916543719558426</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=46180944">https://news.ycombinator.com/item?id=46180944</a></p>
<p>Points: 45</p>
<p># Comments: 17</p>
]]></description><pubDate>Sun, 07 Dec 2025 11:23:43 +0000</pubDate><link>https://faq.whatsapp.com/916543719558426</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=46180944</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46180944</guid></item><item><title><![CDATA[New comment by schnatterer in "ICC ditches Microsoft 365 for openDesk"]]></title><description><![CDATA[
<p>OpenDesk is basically a huge helm file that configures the individual apps.
Given enough RAM it should be rather simple to deploy.
You can start right away, there is a community edition:
<a href="https://gitlab.opencode.de/bmi/opendesk/deployment/opendesk" rel="nofollow">https://gitlab.opencode.de/bmi/opendesk/deployment/opendesk</a></p>
]]></description><pubDate>Fri, 07 Nov 2025 19:21:16 +0000</pubDate><link>https://news.ycombinator.com/item?id=45849940</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=45849940</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45849940</guid></item><item><title><![CDATA[New comment by schnatterer in "Linux phones are more important now than ever"]]></title><description><![CDATA[
<p>I am surprised that no one criticized kernel architecture as base for a secure mobile OS, yet.<p>Let me heat up the discussion using this quote<p>> The Linux kernel has atrocious security. It has an anti-security architecture, implementation and culture. The Linux kernel is not a good base for building any new operating system with a focus on privacy and security<p><a href="https://grapheneos.social/@GrapheneOS/114665594121762341" rel="nofollow">https://grapheneos.social/@GrapheneOS/114665594121762341</a></p>
]]></description><pubDate>Tue, 16 Sep 2025 19:21:23 +0000</pubDate><link>https://news.ycombinator.com/item?id=45266683</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=45266683</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45266683</guid></item><item><title><![CDATA[New comment by schnatterer in "Cognitive load is what matters"]]></title><description><![CDATA[
<p>> business logic and http status codes
Why hold this custom mapping in our working memory? It's better to abstract away your business details from the HTTP transfer protocol, and return self-descriptive codes directly in the response body:
{  "code": "jwt_has_expired" }<p>While the logic behind it sounds reasonable, REST does the exact opposite with the same goal: simplicity, easy to learn, i.e. reduce mental load. 
I know there are other reasons for REST/SOAP/Graphql, etc. 
Still makes mental load a somewhat subjective matter to me.</p>
]]></description><pubDate>Sun, 31 Aug 2025 06:15:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=45080799</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=45080799</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45080799</guid></item><item><title><![CDATA[I migrated a 10-year workout history from runtastic to fitotrack app]]></title><description><![CDATA[
<p>Article URL: <a href="https://github.com/schnatterer/Runtastic2FitoTrack">https://github.com/schnatterer/Runtastic2FitoTrack</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=43538725">https://news.ycombinator.com/item?id=43538725</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 31 Mar 2025 19:20:59 +0000</pubDate><link>https://github.com/schnatterer/Runtastic2FitoTrack</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=43538725</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43538725</guid></item><item><title><![CDATA[New comment by schnatterer in "Everyone knows all the apps on your phone"]]></title><description><![CDATA[
<p>I'd like to add one more finding about the perils of root access:
<a href="https://github.com/chenxiaolong/my-avbroot-setup/blob/c52e44de6e225f66b012cea127de7ad6ddf96fcd/README.md#uid-0" rel="nofollow">https://github.com/chenxiaolong/my-avbroot-setup/blob/c52e44...</a><p>> The term [rooting] generally also includes the functionality for making runtime code patches (eg. with Zygisk) and making runtime filesystem modifications (eg. Magisk modules).<p>> Out of the many root-enabled apps I've studied or reverse engineered, the vast majority fail to handle arbitrary inputs properly (especially filenames). For example, some root-supporting file managers turn a seemingly benign action like listing a directory into local privilege escalation. This is trivially exploitable, especially with browsers auto-downloading files with server-provided filenames to /sdcard/Download/.<p>To avoid repeated root access UI prompts, some apps spawn a long-running shell session, write commands to stdin, and rely on parsing stdout and searching for the shell prompt to determine when commands complete. This approach is prone to desync, which can lead to commands being skipped or other inputs being interpreted as commands.<p>All in all, I simply do not trust most root-enabled apps to not leave a gaping security hole, so I avoid them entirely. There are apps that do handle root access in what I would consider a more proper way, by spawning a daemon as root and then talking to the daemon over a well defined binary protocol. Unfortunately, this approach is the extreme minority.</p>
]]></description><pubDate>Mon, 31 Mar 2025 19:18:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=43538685</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=43538685</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43538685</guid></item><item><title><![CDATA[New comment by schnatterer in "Everyone knows all the apps on your phone"]]></title><description><![CDATA[
<p>As someone who cherishes the power of root privs, I'd still like to make a point for alternative solutions that came up like distros such as GrapheneOS or CalyxOS or non-root filtering options via VPN.
If it weren't for backups I could manage my everyday life without root. For all other cases I would root and later unroot my phone via an OTA update :D
<a href="https://github.com/schnatterer/rooted-graphene/" rel="nofollow">https://github.com/schnatterer/rooted-graphene/</a><p>Hopefully GrapheneOS deliver on their promise to provide a better backup solutions than seedvault.</p>
]]></description><pubDate>Mon, 31 Mar 2025 19:14:58 +0000</pubDate><link>https://news.ycombinator.com/item?id=43538653</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=43538653</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43538653</guid></item><item><title><![CDATA[New comment by schnatterer in "Everyone knows all the apps on your phone"]]></title><description><![CDATA[
<p>I found this description about the security risks of rooting very eye-opening <a href="https://madaidans-insecurities.github.io/android.html" rel="nofollow">https://madaidans-insecurities.github.io/android.html</a>
It also explains the sandbox.</p>
]]></description><pubDate>Sun, 30 Mar 2025 13:11:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=43523886</link><dc:creator>schnatterer</dc:creator><comments>https://news.ycombinator.com/item?id=43523886</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43523886</guid></item></channel></rss>