So when I ride the bus or train, I'm allowed to use my phone? What about when I use an uber (or lift or any of the many many other local alternatives)?
Not everyone that moves at driving speeds is driving, especially in places outside of America.
Yea there are many examples of high level corruption in the german government (and most western governments actually, including the US). A recent example is the mask scandal with CDU/CSU (same party) https://www.dw.com/en/german-mask-scandal-unforgivable-viola...
You will not find much local corruption though, which is what most people think of when they hear corrupt countries. Local corruption is paying of a cop, judge, that kind of stuff. I’m sure it also happens in Germany, but that is very very rare.
I haven’t seen any errors and macOS seems to handle it greacefully. You can also disable it on macOS clients for network servers individually but that seems to be a loosing battle (even if you control all clients). They are finder settings after all
Thumbs.db files are created on my windows 11 pc at least. They’re only created for files that have metadata that requires reading those files. Explorer likes to display the metadata (sometimes) for some folders that have a lot of media in it (pictures, music, videos, etc). If the thumbs.db file is missing, windows will partially read every media file on the server to show thumbnails, that obviously creates unnecessary load but it’s really a trade off that might not make sense for most.
Assuming you’re running a smb server, you could just veto the files. Windows isn’t much better since it likes to create thumbs.db almost everywhere too (which I also veto, but vetoing them can increase the load and bandwidth requirements and your server and clients)
Getting it to work the first time was a pain. Basically, you want to disable cloudflare (just untick the box so that it goes directly to your server, you can keep using cloudflare's dns server), then obtain the normal way, and reactivate Cloudflare. But I would highly recommend using cerbot's cloduflare dns plugin[1] instead so that you can (re)create the certificate w/o disabling cloudflare.
I believe OP is referring to the fact that a sophisticated attack has access to the hardware and you continue using it afterwards. They could, for example, change the unencrypted /boot partition to log the password you use to decrypt your partition. Or, if you sign the boot partition, they could install a hardware key logger, or do any other kind of hardware modification that defeats the security. Preventing this kind of attack is incredible difficult. They are many means to prevent those kind of attacks but, for the most part, it just making it harder for the attacker so that the attacker needs to become even more sophisticated.
Full disk encryption only helps if you are worried that your hardware gets stolen
The heatsink doesn't really work, though, and is marketing for the most part [1].
I have a crucial P1 NVME SSD and I can make it overheat pretty reliably. Pretty much any synthetic workload makes it overload if the SSD is empty (it reaches 70° pretty quickly and even starts throttling until it reaches 80° and the whole system starts shuttering because of extreme throttling do it doesn't damage itself. Although I have not properly tested it, it seems that not using any heatsinks from my motherboard makes the temps actually better but it still overheats.
The main reason it can overheat quickly is probably because its sitting in a really bad position where it gets close to zero airflow despite being in an airflow focused case. Most motherboards place the nvme slot directly under the GPU. The main problem seems to be that the controller is overheating when it's writing at close to 2000 MB/s. It's also important to note that only the controller (an actual relatively powerful ARM processor), not the flash memory, seems to overheat.
Fortunately, this is mostly not an issue because it's a QLC drive and the workload is unrealistic in the real world. When writing to an empty drive at 2000MB/s (Queue depth 4, 128k sequential writes), it takes 2 minutes until the cache is full. The way its currently used, it takes 30 secs for the cache to become full and for write speeds to drop to 150MB/s. The only way it has every overheated in the real world was during the loading screen of a gameplay when it reached 78C quickly (and I only noticed it in the hardware monitor). If the GPU hadn't heated up the nvme drive before (it was sitting at 65C mostly idle), and starved it for air, I doubt it would have hit 60C.
So until motherboards start placing nvme where it can get some actual cooling, or they make actual functioning heatsinks, their power usage can make a difference.
I hope you don’t mind me asking but what’s the purpose of having a comment in the top to direct to different pages. There is already a more button on the bottom which makes the top comment kind of redundant.
Also a tip for others when HN is slow or almost down (like when Google was down): you can open a private tab and navigate HN from there. Since you’re not logged in, you’re served a copy from cloud flare. It’s usually out of date by 1min or so but good enough for reading in my opinion.
> The IEC 60320 connectors were specified for exactly that reason. Honestly, I don't get why these were not made mandatory for all kinds of appliances. There are even locking variants available if vibration is of concern.
I'm not sure what you mean by the second sentence but you can't use most appliances made for Europe in America and vice versa. Most electronic appliances depend on the input voltage and supplying 240V can easily cause a fire. That is true for almost all electronic appliances (water heater, fan, washing machine, etc) but not true most "computer related devices" such as a monitor, PSU, charger. Since those devices already operate on a much lower DC Voltage, they often have transformers (not sure if that's the right word), that can scale down the current from either 120 or 240. [0]
That being said, a mandatory IEC connector (and it's variances) would help a lot to cut down unnecessary e-waste. Instead of throwing away a device because the cable is damaged, you can easily order a replacement that is around $2 and high quality, instead of relying third party cords that might have bad wiring from a non reputable brand. The reason they are not mandatory, though, is that most companies like to have their own connectors so that you either overpay for it or just buy a new device.
[0]: You should still always read the specs on the input current for the device though. It is dangerous to rely on the fact that similar devices can operate at 120V/240V because yours might not. You can usually see the specs on the website/packaging or usually near the input plug.
> You can buy games and just play them, 1080p60 on hardware you never have to pay for.
Honestly, this worries me the most. There doesn’t seem to be a way to transfer the licenses out of stadia, which means, even though you “bought the game“, you’re still at googles mercy for your continued enjoyment of the game. What if they decide that the hardware costs are too much for Google, and you now have to pay a monthly fee? What if they decide that stadia is not the success they hoped for and close it down (which Google is not known for doing at all…). Unless there are clear migrations paths away from stadia, I’d stay away from it because Google have shown that they are not afraid to change/EOL any of their products with no regards to their existing customers (just look at their lifetime free photos service, etc)
This is not necessarily true. Apple sells their non Intel macs with Thunderbolt and there are some ryzen motherboards with thunderbolt support [1]. That being said, Thunderbolt is a lot less common on AMD boards probably because it is a lot more expensive then it would be on an Intel board. And Laptops so far have always received the budget treatment for ryzen chips (want a better screen? intel only, etc).
So I think lack of thunderbolt comes down to manufacturers not wanting to pay as much for their AMD R&D and keep costs down with simple, budget motherboards.
Or, if you needed Thunderbolt 3, you could just wait until USB 4 is commonplace, which is basically Thunderbolt 3 + some more.
Can someone explain the purpose of this decoder? As far as I know, decoding H.264 is already pretty solid on Linux and I don't know what benefits of making it stateless there are. I could definitely see why a stateless encoder would be beneficial (i.e. to spread out the load), but isn't decoding h.264 already a solved problem?
Well, the problem is that OSCP is leaking which applications you open (and when you open them) which is the big deal IMO. One solution would be that the OSCP is checking the HTTPs certificate in cleartext once upon startup (and maybe once every day or so thereafter), and is using HTTPs for all subsequent application requests.
I don't really see a problem here how that could cause a loop. This way, an attacker can only see:
- When you boot your Mac because it verifies the HTTPs certificate once.
- When the OSCP daemon makes a clear text request to check that the HTTPs cert is still ok
- That you have just opened an application (but not which application)
IMO that still leaks an unacceptable amount of meta data but it is miles better then using cleartext. Maybe a bloom filter here would be a much better solution + make the daemon regularly fetch bad signature that are not added the the filter yet instead of pulling. Sure the filter may hit false positives sometimes but in that case, the OSCP server could be checked and apple could see if a certificate has a high rate of false positives and adjust the bloom filter accordingly.
Apple also helped a lot indirectly. They have been spending billions on R&D for their SoC's and outsourced the production of the waffers to TSMC which used Apples R&D money to contribute to their 7nm and 5nm node (though Zen 3 is "still" on 7nm).
Although AMDs and Dr. Lisa Su's achievement are not to be underestimated, I doubt the 7nm processes would be as mature as it is right now without Apple.
In Germany it is quite common to get a fine for that (an adhortatory letter or Abmahnung in German).
Media companies monitor torrents, and as soon as they see a new German ip address seeding, they send a letter to the ISP with the IP address and timestamp. The ISPs send the law firm the real user address and then they send you a letter demanding a fine for illegally uploading copyrighted material often between 1000-3000€. If you don't pay up, they take you to court.
This is quite common and many people see letters even if they only seed for a few seconds. Apparently the easiest way is to just ignore the letters and pretend you don't live there but I wouldn't be so sure (a friend told me that's what he did and it allegedly worked but I have no experience with either).
So this is a lot less drastic but still quite as effective. And it even makes VPNs risky because disconnecting and exposing your real IP for even one second is enough to receive that letter (though not all torrents are monitored and private torrents are usually safe because the German RIAA doesnt have access to it).
I recommend you take a look at the Wikipedia about "Abmahnung" how that is even possible when the copyright holders don't sue themselves: https://en.wikipedia.org/wiki/Abmahnung
I think the biggest problem with nuclear energy is humanity itself. We are simply not capable of making long term commitment and keeping them. Sure theoretically nuclear power is safe, especially in developed countries like the US and Europe.
But let's pretend we build a super safe nuclear facility somewhere in Europe. In the beginning we will be very vigilant. The depleted ore will be properly stored (or whatever the toxic nuclear byproduct is). Maintenance will be kept to highest standard but what happens in 20 years? During that time frame a lot can change, a country can be bankrupted, and has to cut a budget. What is a fairly rich country today might not be one in 20 years.
But let's say that doesn't happen. We also always try to optimize. Say we fill our storage for depleted ore, and we look for a new one. We figure out that we can outsource it to another country because it is cheaper. This country has the same standards we do, so we happily give it to them. But after a while they can't accept anymore so we start looking for other countries to sell our waste product to, and because we have already outsourced it once, we will probably do it again but this time at lower standards.
What I am saying is, it is really difficult to predict how we handle a nuclear plant built today, 40-100 years from now, because this is how long the lifetime of a plant and its byproducts are at minimum.
Meanwhile wind/solar/batteries has a much better defined lifetime. After only 10 years we will most likely recycle them. Yes sometimes recycling them creates unnecessary waste because some countries/companies/people will cut corners but the damage caused by improperly recycled solar and even batteries is so much lower then the damage of what a nuclear power plant can do.
So the question is, do we trust all countries that 'can safely operate a nuclear plant today' to do so in 20-50 years? What about the waste products? Can we be sure that they will always be properly stored? That every country checks their stores for leaks regularly over 100 years? And this doesn't even account for developing countries that want -- and possible need nuclear power -- to catch up to developed countries. Can we just deny it to them while we are doing it ourselves?
If humanity has proven anything, it's that we are not capable of making such decisions of a long period of time reliably.
But doesn't this feature exactly help with this bug? Two memory allocations should now return different pointers (because the MTE nibble is different) therefore the comparision should fail. Unless ofcourse the application was using this undefined behavior (which would be very buggy since malloc can randomly refuse to reuse the same address even though it was freed and therefore create extremely hard and difficult to track bugs).
> It only makes sense when it's about noisy and air-polluting businesses, grocery/whatever stores and offices are absolutely great to be dispersed within residential areas!
Grocery stores (even small ones) can be very noisy, especially with extended business hours these days. I used to live In an apartment above a grocery story with a small parking lot for a long time. This was also in a mixed zone area (mostly residential, a few shops, barber, etc).
At 6am, trucks start rolling up and delivering food (although they are only supposed to do that at 7am, on some days they’ll start at 6). That means very loud beeping from the trucks backing up and shouting to the grocery employees above engine noise. Throughout the day, there will be random noise (honking in the parking lot, people slamming their cart into the barrier, etc) and sometimes people get drunk in the parking lot and start shouting (usually until 11pm, the grocery store closed at 10). And once in a while, their security system went of and the police show up and make some noise at 4am. With an open window (which you had to have in the summer — air conditioning is an exception in the part of Europe where I lived) you can hear all that noise almost as if you are standing next to it.
I never minded it too much since I’m a very heavy sleeper but I can definitely see that some people would get very poor quality sleep. And no landlord ever wants a store to be built above their apartments because it lowers the value dramatically due to the mentioned reasons.
That seems like a really cool project, but I couldn't figure out how exactly the where filter was implemented. Can you point me to the code that implements it?
Not everyone that moves at driving speeds is driving, especially in places outside of America.