<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: superq</title><link>https://news.ycombinator.com/user?id=superq</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 24 Sep 2026 14:03:22 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=superq" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by superq in "Omarchy: Any User Process Can Escalate to Root"]]></title><description><![CDATA[
<p>Absolutely. Docker is a boiling mess of baked-in convenience workarounds (ie vulns). It's an orchestration layer (like k8s with containers), not a real security boundary like VMs. OTOH, single-purpose VMs are basically just as easy these days and those can still pull in containers as needed.</p>
]]></description><pubDate>Mon, 31 Aug 2026 00:39:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=49504362</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=49504362</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49504362</guid></item><item><title><![CDATA[New comment by superq in "METR and Redwood Offer Holy %^ Postmortem of the HuggingFace Hack"]]></title><description><![CDATA[
<p>No, he's saying that licensing or additional regulation isn't necessary when torts get involved (and states attorneys general get perturbed!)<p>These don't tend to utterly destroy an industry, but they are often successful in forever transforming it. Just ask Big Tobacco. No new laws needed: if your product hurts someone else, you're eventually going to be found liable, regardless of your arbitration clauses. Additional laws will just slow down innovation, which will itself cause harm (AI is already becoming quite good at recognizing melanomas, for example)</p>
]]></description><pubDate>Sun, 30 Aug 2026 20:17:59 +0000</pubDate><link>https://news.ycombinator.com/item?id=49502339</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=49502339</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49502339</guid></item><item><title><![CDATA[New comment by superq in "METR and Redwood Offer Holy %^ Postmortem of the HuggingFace Hack"]]></title><description><![CDATA[
<p>Except that, according TFA, even OpenAI obscured or didn't even notice some of the worst implications of what the agents surreptitiously did.</p>
]]></description><pubDate>Sun, 30 Aug 2026 20:12:56 +0000</pubDate><link>https://news.ycombinator.com/item?id=49502307</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=49502307</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49502307</guid></item><item><title><![CDATA[New comment by superq in "METR and Redwood Offer Holy %^ Postmortem of the HuggingFace Hack"]]></title><description><![CDATA[
<p>I get the snark (and slightly agree), but that's not really what GP or TFA were saying at all. They are saying that these were the least things we could have done.<p>What you're saying is, "Your scientists were so preoccupied with whether they could, they didn't stop to think if they should"<p>while the author of the TFA was saying, in effect: "your scientists didn't even bother with the most basic duty of care"<p>Life finds a way, or, in this case, super-intelligent AI.</p>
]]></description><pubDate>Sun, 30 Aug 2026 20:12:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=49502302</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=49502302</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49502302</guid></item><item><title><![CDATA[New comment by superq in "How Universities Should Prepare Founders"]]></title><description><![CDATA[
<p>Indeed, pg might be familiar with that author.</p>
]]></description><pubDate>Tue, 25 Aug 2026 03:42:30 +0000</pubDate><link>https://news.ycombinator.com/item?id=49428825</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=49428825</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49428825</guid></item><item><title><![CDATA[New comment by superq in "Fastmail offers EU data region"]]></title><description><![CDATA[
<p>EU data regions are based on the insanely flawed idea that data is:<p>* a physical thing that can only live in one place<p>* not copyable<p>* can be 'contained'.<p>The whole thing reeks of bureaucratic 'best practices' that just aren't.<p>Even worse than that, trying to keep <i>email</i> restricted to the EU (or anywhere else) means that you effectively wouldn't be able to communicate with anyone in a different region, which is kinda the whole point.<p>Why not just make your own internet next? and then you can disconnect from everyone else who is trying to hack you. Just pull your network plug.<p>Email itself is hopelessly insecure by design anyway. Not just metadata when you are E2EE everything inside the envelope, but even basic vulns like downgrade attacks are simple because it's literally a violation of the RFCs (so you're not spec-compliant) to require TLS or any other encryption.. Why? because requiring modern crypto might interfere with deliverability and backwards compatibility. The real, deeper reason is that email is from a kinder, simpler time (well, at least simpler) and the design goals were never updated to keep up with the times.<p>Email is what we have. Just understand its flaws and then use other tools where you can. And who cares where your email lives - it's too easy to break anyway.</p>
]]></description><pubDate>Sat, 08 Aug 2026 18:52:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=49224714</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=49224714</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=49224714</guid></item><item><title><![CDATA[New comment by superq in ""It has been determined" that infected dairy herd serology can be disclosed"]]></title><description><![CDATA[
<p>Is this hyperbole, or are you seriously claiming that the Jewish men who run Breitbart, or Jewish founders like Ben Shapiro or Andrew Breitbart, are neo-Nazis?</p>
]]></description><pubDate>Tue, 11 Mar 2025 22:31:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=43337816</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43337816</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43337816</guid></item><item><title><![CDATA[New comment by superq in "You might not need Redis"]]></title><description><![CDATA[
<p>The issues that I have with Redis are not at all its API (which is elegant and brilliant) or even its serialized, single-core, single-threaded design, but its operational hazards.<p>As a cache or ephemeral store like a throttling/rate limiting, lookup tables, or perhaps even sessions store, it's great; but it's impossible to rely on the persistence options (RDB, AOF) for production data stores.<p>You usually only see this tendency with junior devs, though. It might be a case where "when all you have is a hammer, all you see are nails", or when someone discovers Redis (or during the MongoDB hype cycle ten years ago), which seems like it's in perfect alignment with their language datatypes, but perhaps this is mostly because junior devs don't have as many production-ready databases (from SQL like Postgresql, CockroachDB, Yugabyte to New/NoSQL like ScyllaDB, YDB, Aerospike) to fall back on.<p>Redis shines as a cache for small data values (probably switch to memcache for larger values, which is simpler key-value but generally 3 to 10 times faster for that more narrow use case, although keep an eye on memory fragmentation and slab allocation)<p>Just think carefully before storing long-term data in it. Maybe don't store your billing database in it :)</p>
]]></description><pubDate>Sat, 08 Mar 2025 19:56:39 +0000</pubDate><link>https://news.ycombinator.com/item?id=43302977</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43302977</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43302977</guid></item><item><title><![CDATA[New comment by superq in "SQLite-on-the-server is misunderstood: Better at hyper-scale than micro-scale"]]></title><description><![CDATA[
<p>Complexity == risk.<p>> It seems like the thing getting backed up shouldn’t have the privilege of deleting backups in case it gets compromised.<p>(agreed)<p>> For backups, I added a nightly cron job which > exports my SQLite db to a write-only S3 bucket.<p>Why not only do this and use an s3 sync instead? You can safely backup SQLite databases while they're being written to, so no need to <i>export</i> (dump) them; just copy the files themselves.<p>This might mean that your entire backup/restore strategy is just to copy some files. If so, that's ideal.<p>(Of course, s3 sync does require reading as well as writing, so perhaps just increase your cron job to run more often so it fits within your RPO)</p>
]]></description><pubDate>Fri, 07 Mar 2025 04:49:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=43287438</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43287438</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43287438</guid></item><item><title><![CDATA[New comment by superq in "SQLite-on-the-server is misunderstood: Better at hyper-scale than micro-scale"]]></title><description><![CDATA[
<p>Agreed, or even just start with sqlite for your globals and then scale to those later.</p>
]]></description><pubDate>Tue, 04 Mar 2025 17:32:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=43257665</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43257665</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43257665</guid></item><item><title><![CDATA[New comment by superq in "SQLite-on-the-server is misunderstood: Better at hyper-scale than micro-scale"]]></title><description><![CDATA[
<p>OLAP questions are usually out-of-band and preferably by a tool designed for it (like Clickhouse). Scanning all DB's is something that can be done in the background for most of these use cases.</p>
]]></description><pubDate>Tue, 04 Mar 2025 17:31:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=43257654</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43257654</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43257654</guid></item><item><title><![CDATA[New comment by superq in "SQLite-on-the-server is misunderstood: Better at hyper-scale than micro-scale"]]></title><description><![CDATA[
<p>> <i>Don't</i> do this<p>What's wrong with that? Of course it will work fine; SQLite, with or without WAL, has a ton of protections against corruption from writes-in-progress, which is what makes hot backups work.</p>
]]></description><pubDate>Tue, 04 Mar 2025 17:27:51 +0000</pubDate><link>https://news.ycombinator.com/item?id=43257612</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43257612</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43257612</guid></item><item><title><![CDATA[New comment by superq in "SQLite-on-the-server is misunderstood: Better at hyper-scale than micro-scale"]]></title><description><![CDATA[
<p>If that will fit your RPO, why not only do that? Saves a lot of complexity (and risk).</p>
]]></description><pubDate>Tue, 04 Mar 2025 17:26:15 +0000</pubDate><link>https://news.ycombinator.com/item?id=43257588</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43257588</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43257588</guid></item><item><title><![CDATA[New comment by superq in "Amazon’s delivery drones are grounded in College Station, Texas"]]></title><description><![CDATA[
<p>> physics isn't just a good idea, it is the law.<p>That is awesome.</p>
]]></description><pubDate>Mon, 03 Mar 2025 17:25:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=43244269</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43244269</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43244269</guid></item><item><title><![CDATA[New comment by superq in "Zelensky leaves White House after angry meeting"]]></title><description><![CDATA[
<p>Both sides agree that America has provided at least $100 billion and possibly up to a half-trillion in aid and other consideration to Ukraine. That's a fair bit of money!<p>And, if Zelenskyy is to be believed, it was a "grant", or a gift, which makes Zelenskyy's disrespectful attitude and hubris in the White House even more outrageous.</p>
]]></description><pubDate>Fri, 28 Feb 2025 21:13:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=43211038</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43211038</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43211038</guid></item><item><title><![CDATA[New comment by superq in "Zelensky leaves White House after angry meeting"]]></title><description><![CDATA[
<p>Technically, Zelenskyy instituted martial law and cancelled Ukrainian elections, so although he is the undisputed leader in power in Ukraine, he's <i>not</i> an elected president.<p>Do actual presidents show up in sweatshirts and insult their benefactors?</p>
]]></description><pubDate>Fri, 28 Feb 2025 21:09:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=43210942</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43210942</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43210942</guid></item><item><title><![CDATA[New comment by superq in "Introducing a terms of use and updated privacy notice for Firefox"]]></title><description><![CDATA[
<p>It doesn't take more than engineers to maintain an open-source <i>browser</i>, though. Why does it have to be a company at all? Remember Firefox? Firefox was literally just an act-of-love fork from some engineers from a dead acquisition by a dying dot-com era behemoth.<p>Put another way, does the Linux kernel or the Python language need to be run by <i>a company</i>, or will foundations does these jobs ok?<p>There are plenty of open source projects that are enormously successful without a single lawyer or project manager in sight.</p>
]]></description><pubDate>Fri, 28 Feb 2025 21:04:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=43210833</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43210833</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43210833</guid></item><item><title><![CDATA[New comment by superq in "Zelensky leaves White House after angry meeting"]]></title><description><![CDATA[
<p>It's a bit odd that literally every single top comment is pro-Zelenskyy and anti-White House.<p>I haven't seen a single thoughtful critique of Zelenskyy or his behavior on HN; it seems very one-sided and strange.<p>(also interesting that the BBC mispelled his last name, even though they're obviously big fans..)</p>
]]></description><pubDate>Fri, 28 Feb 2025 20:52:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=43210567</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43210567</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43210567</guid></item><item><title><![CDATA[New comment by superq in "GPT-4.5"]]></title><description><![CDATA[
<p>Complete legal arguments as well. If I was an attorney, I'd love to have a sophisticated LLM write my crib notes for anything I might do or say in the court room, or even the complete direction that I'd take my case. For some cases, that'd be worth almost any price.</p>
]]></description><pubDate>Fri, 28 Feb 2025 18:59:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=43209063</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43209063</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43209063</guid></item><item><title><![CDATA[New comment by superq in "Microsoft begins turning off uBlock Origin and other extensions in Edge"]]></title><description><![CDATA[
<p>Mozilla owns Pocket.</p>
]]></description><pubDate>Fri, 28 Feb 2025 18:34:32 +0000</pubDate><link>https://news.ycombinator.com/item?id=43208844</link><dc:creator>superq</dc:creator><comments>https://news.ycombinator.com/item?id=43208844</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43208844</guid></item></channel></rss>