Preferred Locations: Amsterdam, Berlin, Paris (will need to relocate)
Current Location: Vancouver, Canada (not open to opportunities there)
Remote: During Covid, but not after
Willing to Relocate: Yes
Technologies: Golang, Node, Postgres, AWS, Ruby, Python, Linux
Résumé/CV: https://www.dropbox.com/s/0d09yg2k4a9ddm5/Shealen%20Clare%20Resume.pdf?dl=0
Email: "shealen" dot "clare" at "gmail" dot "com"
LinkedIn: https://www.linkedin.com/in/shealenclare/
---
Lead backend software dev with diverse experience, from Silicon Valley startups industrial research in Japan and an academic journal.
After about ten years experience working mostly in Vancouver, mostly for Bay Area companies, I'm keen to move across the Atlantic to Europe. I'd like to bump my role down from lead to senior IC as a buffer for the challenges of culture and language.
Thanks, and best of luck filling your positions,
Shea
The only systems that readily comes to mind is Reddit.
It's amazing how you can wind up on a subreddit and realise that you're nowhere near the bottom of the rabbit hole that you've been calling a hobby for the past n years.
I don't know if this qualifies for what you're after, though, because these communities are:
* based on users actively seeking out forums based on what they consider themselves to be interested in, and
* each community is centred around a single topic. There might be a subreddit for people who love Fraggles and a subreddit for people who love pop-tarts, but no subreddit for people who love both Fraggles and pop-tarts.
As attacker, my next strategy is create a bunch of agents (<10K should be enough) to download my typo packages.
Your move, defender ;)
But seriously, my point has less to do with the particular tactics of the adversaries and more to do with how the proposed strategy of automatically detecting potential typos invites gaming.
But if ABD and ABC are both package names in the system, then in order to present that warning we have to do some sort of resolution process to determine whether one is typosquatting.
Now that there's a strategy for finding fakers:
1) You have an attacker-defender arms race. The attacker will always be one step ahead of the defender.
2) You have the extra burden of keeping up in this race, otherwise your security feature is a facade. At best, this is useless. At worst, it lulls your users into a false sense of security.
It would definitely change things in a big way - especially for services that rely on acquiring user data in order to be profitable, as you mention.
However, I don't agree that Privly would necessarily end the current set-up entirely. It might result in a little more bargaining power for users who, up until now, haven't had any leverage in the user-host relationship.
One outcome that doesn't mean the end of user data-based businesses is where they modify their 'terms of use' to restrict or ban the use of this service. In this case, it's not clear how users could wrest back much control over their information, however.
---
Lead backend software dev with diverse experience, from Silicon Valley startups industrial research in Japan and an academic journal.
After about ten years experience working mostly in Vancouver, mostly for Bay Area companies, I'm keen to move across the Atlantic to Europe. I'd like to bump my role down from lead to senior IC as a buffer for the challenges of culture and language.
Thanks, and best of luck filling your positions, Shea