<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: waste_monk</title><link>https://news.ycombinator.com/user?id=waste_monk</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Mon, 08 Jun 2026 20:18:15 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=waste_monk" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by waste_monk in "Why the US Navy won't blast the Iranians and 'open' Strait of Hormuz"]]></title><description><![CDATA[
<p>>How many of the strikes in Iran were 100% organic Navy assets?<p>Not sure if they're organic, but they sure are free range.</p>
]]></description><pubDate>Wed, 01 Apr 2026 06:31:10 +0000</pubDate><link>https://news.ycombinator.com/item?id=47597577</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=47597577</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47597577</guid></item><item><title><![CDATA[New comment by waste_monk in "Ask HN: How do you safely give LLMs SSH/DB access?"]]></title><description><![CDATA[
<p>I have mostly stopped reading AI related posts here, because everytime I see something like what the OP is doing it gives me the horrors.</p>
]]></description><pubDate>Thu, 15 Jan 2026 03:11:00 +0000</pubDate><link>https://news.ycombinator.com/item?id=46627563</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=46627563</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46627563</guid></item><item><title><![CDATA[New comment by waste_monk in "NYC Mayoral Inauguration bans Raspberry Pi and Flipper Zero alongside explosives"]]></title><description><![CDATA[
<p>>There's no legitimate purpose in bringing crayons and a coloring book<p>Presumably there might be children (or very bored adults) at the event?</p>
]]></description><pubDate>Wed, 31 Dec 2025 01:57:55 +0000</pubDate><link>https://news.ycombinator.com/item?id=46440484</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=46440484</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46440484</guid></item><item><title><![CDATA[New comment by waste_monk in "My insulin pump controller uses the Linux kernel. It also violates the GPL"]]></title><description><![CDATA[
<p>I think the usual argument is that you don't own the digital good, you have a license to use it, and that license is between you and the originator (or their reseller) directly. And you aren't allowed to resell the license.<p>E.g. this sort of thing <a href="https://www.tomshardware.com/video-games/pc-gaming/steam-checkout-banner-clarifies-you-dont-own-the-game-you-buy-gog-takes-a-jab-at-steam-saying-it-gives-users-offline-installers-that-cannot-be-taken-away" rel="nofollow">https://www.tomshardware.com/video-games/pc-gaming/steam-che...</a></p>
]]></description><pubDate>Sat, 27 Dec 2025 03:58:01 +0000</pubDate><link>https://news.ycombinator.com/item?id=46398980</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=46398980</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46398980</guid></item><item><title><![CDATA[New comment by waste_monk in "FFmpeg has issued a DMCA takedown on GitHub"]]></title><description><![CDATA[
<p>Ooh, how about instead of being able to author a commit message, you're forced to let an LLM write it for you based on the diff since last commit. And that the LLM runs distributed on the blockchain, so it's monstrously slow, and has to be paid for with a 'gas' analogue so there's huge transaction fees as well.<p>That's the most techbro-brained idea I could come up with.</p>
]]></description><pubDate>Sat, 27 Dec 2025 03:50:30 +0000</pubDate><link>https://news.ycombinator.com/item?id=46398936</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=46398936</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46398936</guid></item><item><title><![CDATA[New comment by waste_monk in "Reinventing the dial-up modem (2019)"]]></title><description><![CDATA[
<p>In my country you can prepend '*31#' when dialling to mask your phone number.<p>Seems like this app could do something similar (assuming a similar dialing code is available wherever it is being used? I'd think it's a common enough feature), prepending the masking sequence to the patient's number before dialling.</p>
]]></description><pubDate>Fri, 26 Dec 2025 06:20:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=46389663</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=46389663</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46389663</guid></item><item><title><![CDATA[New comment by waste_monk in "We stopped roadmap work for a week and fixed bugs"]]></title><description><![CDATA[
<p>As opposed to the current 100% defects approach they seem to have adopted.</p>
]]></description><pubDate>Mon, 24 Nov 2025 04:22:15 +0000</pubDate><link>https://news.ycombinator.com/item?id=46030361</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=46030361</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46030361</guid></item><item><title><![CDATA[New comment by waste_monk in "We stopped roadmap work for a week and fixed bugs"]]></title><description><![CDATA[
<p>>I'd love to see an actual bug-free codebase.<p>cat /dev/null .</p>
]]></description><pubDate>Mon, 24 Nov 2025 04:21:30 +0000</pubDate><link>https://news.ycombinator.com/item?id=46030357</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=46030357</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46030357</guid></item><item><title><![CDATA[New comment by waste_monk in "SSL Configuration Generator"]]></title><description><![CDATA[
<p>The printers still exist, but the branding is deprecated.<p>Xerox -> Fuji-Xerox -> FUJIFILM Business Innovation</p>
]]></description><pubDate>Sat, 15 Nov 2025 05:00:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=45935165</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45935165</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45935165</guid></item><item><title><![CDATA[New comment by waste_monk in "The Department of War just shot the accountants and opted for speed"]]></title><description><![CDATA[
<p>Or, simply open up the sales of tanks to the civilian market.<p>That's a joke, of course, but even if they were demilitarised variants there'd probably still be a market for it.</p>
]]></description><pubDate>Wed, 12 Nov 2025 01:07:40 +0000</pubDate><link>https://news.ycombinator.com/item?id=45895205</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45895205</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45895205</guid></item><item><title><![CDATA[New comment by waste_monk in "Ask HN: How would you set up a child’s first Linux computer?"]]></title><description><![CDATA[
<p>Comedy option: Give them Linux From Scratch [1] and the minimum set of tools and packages required to bootstrap it.<p>App store? Yeah we have one, it's called <i>make</i>.<p>[1] <a href="https://www.linuxfromscratch.org/lfs/view/stable/" rel="nofollow">https://www.linuxfromscratch.org/lfs/view/stable/</a></p>
]]></description><pubDate>Mon, 10 Nov 2025 06:46:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=45873123</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45873123</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45873123</guid></item><item><title><![CDATA[New comment by waste_monk in "Apple is crossing a Steve Jobs red line"]]></title><description><![CDATA[
<p>I appreciate the attempt, but have never seen the point personally.<p>That is, many physical media collectors do it to have nice box sets to display, or in an attempt to have off-line copies of media, but I have never met anyone who goes to the effort of ensuring long-term readability - which is understandable, it is a huge hassle. Unless you are copying the content to new physical media every so often it will eventually rot and become unplayable.<p>For example, for optical media the expected lifetime is only a couple of decades depending on the type of media [1]. I believe commercially pressed DVD and blueray are somewhere around 10-20 years.<p>[1] <a href="https://www.canada.ca/en/conservation-institute/services/conservation-preservation-publications/canadian-conservation-institute-notes/longevity-recordable-cds-dvds.html" rel="nofollow">https://www.canada.ca/en/conservation-institute/services/con...</a> , see table 2.</p>
]]></description><pubDate>Sat, 08 Nov 2025 12:34:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=45856223</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45856223</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45856223</guid></item><item><title><![CDATA[New comment by waste_monk in "FFmpeg dealing with a security researcher"]]></title><description><![CDATA[
<p>>I think that is a little entitled. They should be happy google isn't just straight up emailing full-disclisure.<p>Google has literally billions of dollars in profits (in part because they use FFmpeg in a bunch of commercial products like Youtube and Chrome), and one of the largest software workforces in the world, including expertise on secure software and vulnerability remediation.<p>If anyone can afford to contribute back a fix instead of just raising a report, and has the ethical responsibility to do so, it's Google.</p>
]]></description><pubDate>Sun, 02 Nov 2025 06:21:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=45788195</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45788195</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45788195</guid></item><item><title><![CDATA[New comment by waste_monk in "Do Users Verify SSH Keys? (2011) [pdf]"]]></title><description><![CDATA[
<p>>That way when your CA private key leaks (the key which we never ever rotate, of course)<p>As with X.509, any serious usage will involve a hardware security module, so that compromise of the CA host does not allow the key to be leaked. You'd still have a very bad day, but it can be mitigated.<p>I do think it's a fairly significant flaw that SSH CA doesn't support intermediate CA's (or at least didn't last time I looked into it) to enable an offline root CA.<p>>Bonus points if the same CA is also used for authenticating users.<p>The SSH CA mechanism can be used for both Host and User auth, yes.<p>Keeping in mind, in a real use case this would be tied to something like active directory / LDAP, so you can automate issuance of ssh keys to users and hosts.<p>Systems configured to trust the SSH CA can trust that the user logging in is who they say they are because the principal has already been authenticated and vouched for by the identity provider, no more manually managing known_hosts and authorized_keys, or having to deal with Trust On First Use or host key changed errors.<p>You can also set the CA's endorsement of the issued keys to fairly short lifetimes, so you can simplify your keymat lifecycle management a great deal - no worrying about old keys lying around forever if the CA only issues them as valid for an hour / day / etc. .<p>Overall I think you still come out ahead on security.</p>
]]></description><pubDate>Thu, 30 Oct 2025 04:59:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=45756595</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45756595</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45756595</guid></item><item><title><![CDATA[New comment by waste_monk in "I Don't Want Ads on My Refrigerator"]]></title><description><![CDATA[
<p>I just want the damn fridge to keep food cold, I never want it to do anything else .<p>It's bad enough I have to see ads outside the house and on tv/internet, I don't need to see them on my fucking appliances. We are living in hell.</p>
]]></description><pubDate>Thu, 30 Oct 2025 02:18:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=45755729</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45755729</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45755729</guid></item><item><title><![CDATA[New comment by waste_monk in "It's insulting to read AI-generated blog posts"]]></title><description><![CDATA[
<p>I understand there is an "Exclude Top Choices" algorithm which helps combat this sort of thing.</p>
]]></description><pubDate>Thu, 30 Oct 2025 01:48:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=45755523</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45755523</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45755523</guid></item><item><title><![CDATA[New comment by waste_monk in "WebDAV isn't dead yet"]]></title><description><![CDATA[
<p>Also worth noting that FTPS (FTP over TLS) exists and obviates the fuss around SSH TOFU and key management etc. Especially given we're in the era of free certificates via Let's Encrypt, this is a great option.<p>The main downside is people will sometimes assume you mean SFTP (not having heard of FTPS or realising they are different), and then get upset when it doesn't work as they expect. However good tooling will support both e.g. Filezilla.</p>
]]></description><pubDate>Mon, 27 Oct 2025 06:59:54 +0000</pubDate><link>https://news.ycombinator.com/item?id=45718117</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45718117</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45718117</guid></item><item><title><![CDATA[New comment by waste_monk in "The Linux Boot Process: From Power Button to Kernel"]]></title><description><![CDATA[
<p>I'm not a firmware dev but the one's I've seen working usually have all sorts of fancy test kits, debug instrumentation, Software (chip scope?), etc. to debug with, not just relying on print debugging.<p>Not to say it isn't a valid way to debug, but there are definately better options available.</p>
]]></description><pubDate>Mon, 27 Oct 2025 05:35:00 +0000</pubDate><link>https://news.ycombinator.com/item?id=45717720</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45717720</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45717720</guid></item><item><title><![CDATA[New comment by waste_monk in "AWS multiple services outage in us-east-1"]]></title><description><![CDATA[
<p>♫ It's the most blunderful time of the year<p>There'll be much admin moaning<p>And servers not glowing<p>and the NOC crew in tears<p>It's the most blunderful time of the year ♫</p>
]]></description><pubDate>Tue, 21 Oct 2025 03:44:56 +0000</pubDate><link>https://news.ycombinator.com/item?id=45652258</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45652258</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45652258</guid></item><item><title><![CDATA[New comment by waste_monk in "AWS multiple services outage in us-east-1"]]></title><description><![CDATA[
<p>That'd make for a decent heist comedy - a bunch of former professional athletes get hired to break in to a low-oxygen data center, but the plan goes wrong and they have to use their sports skills in improbable ways to pull it off.</p>
]]></description><pubDate>Tue, 21 Oct 2025 03:41:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=45652239</link><dc:creator>waste_monk</dc:creator><comments>https://news.ycombinator.com/item?id=45652239</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45652239</guid></item></channel></rss>