Hacker Newsnew | past | comments | ask | show | jobs | submit | bjourne's commentslogin

FYI, archive.today is NOT the Internet Archive/Wayback Machine.

I prefer archive.today because the Internet Archive’s Wayback Machine allows retrospective removals of archived pages. If a URL has already been crawled and archived, the site owner can later add that URL to robots.txt and request a re-crawl. Once the crawler detects the updated robots.txt, previously stored snapshots of that page can become inaccessible, even if they were captured before the rule was added.

Unfortunately this happens more often than one would expect.

I found this out when I preserved my very first homepage I made as a child on a free hosting service. I archived it on archive.org, and thought it would stay there forever. Then, in 2017 the free host changed the robots.txt, closed all services, and my treasured memory was forever gone from the internet. ;(


This information is now many years out of date - they no longer have this policy.

Any idea when that changed? I've been unable to access historical sites in the past because someone parked the domain and had a very restrictive robots.txt on it.

Even so you can still just request your site to be removed: https://help.archive.org/help/how-do-i-request-to-remove-som...

Heard of haveibeenpwned? You'll end up there, eventually.

If you end up, for some reason, being one of those unlucky individuals whose Google account gets banned and all your other accounts are behind Google login, then you truly have been owned.

You mean when using "sign in with" and then using a shitty password for your social media account?

If you use e-mail and password with a good password manager, that runs locally on your device and generate good random passwords, it is unlikely you will end up on haveibeenpwned, and even if one website does shit, the blast radius is only one account on one website.


You'll still have your e-mail address exposed, which you may not want if it is to some random porn site. Moreover, password managers do not work if you use multiple devices for log in, which most people actually do.

If you decide to visit such awful sites then the least you could do is not use primary email for this.

I don't think it makes sense to even have a "primary email". I've completely separated work, shopping, banking, gaming etc mailboxes.

Also how do password managers not work? Bitwarden syncs instantly across devices just fine.


I use my password manager across multiple devices daily.

Apparently it has not been working without me noticing it?


I assume they're thinking about the 'offline' style where one would shuffle a database file and probably resolve conflicts. There's an app/extensions nowadays, man!

I don't even bother with a VPN, just occasionally push a 'sync' button on the roaming devices [when they return to LAN]. DB transactions [new credentials] averages ~0 per month... but there's plenty of capacity. Works extremely well.


The truth is that even with KeePassXC, I just really do not notice stale passwords across devices. It's just really not a huge deal for me personally. Maybe it is for normal people. I sync my databases maybe once a year if I'm lucky.

Right, that's what I was trying to emphasize. Rare syncs are totally fine here, too. I try to keep a routine but tend to slip. If not 'with my usual device' there's a tiny number of accounts I even need. They rarely change so the 'cache' is usually suitable. If not, the restriction is always short-lived.

Same here. I use pass, and I just don't create/update passwords that often. And synchronising is very easy (it's a git repo).

... And how do you access the passwords that password manager manages?

With the "password manager" program? I have one on my desktop and one on my smartphone.

How do you expect to access the passwords that the password manager manages?


... Can everyone in the world ready our passwords or are they "protected" somehow?

I am not sure, whether you are trying to get at something specific, but will interpret the question in good faith:

A classical password manager reads an encrypted database. In theory, you could upload your password database (usually just one file) anywhere, and wouldn't need to worry, assuming, that you chose a sufficiently long password for decryption, and assuming, that the encryption does not have weaknesses, which would allow an attacker to decrypt it without the password. In practice, of course you still wouldn't upload your password file to a public place, to reduce risks in the future. But anyway, the idea is, that only you know the master password for the encrypted database and so no one else can read your passwords.


I am confused. You say:

> Moreover, password managers do not work if you use multiple devices for log in

I use a password manager with multiple devices, and it works. And yes, my passwords are "protected", that's the job of the password manager.


If you sign in with Google, the site knows your gmail address.

Email aliasing is a thing

Risk Bob's Salad Shack leaking an inconsequential, unique, credential or bind everything to the whims and identity of a single organization; hmm.

Ending up on HaveIBeenPwned is only a problem if you reuse passwords.

Nope. It is a problem if you reuse email addresses.

Are you saying that you reuse the same password everywhere, but a different email address every time, and you feel confident that having your password leaked won't have repercussions?

I am genuinely confused. Sounds like holding a gun from the wrong end and feeling protected by it.


Password manager.

Before inevitable "what if your password manager is hacked...," what if your google account is hacked / banned?


Agreed. Just wanted to add:

> Before inevitable "what if your password manager is hacked

My passwords are encrypted with a security key. I think it is more likely for my computer to get compromised than for my password manager to leak the passwords.

Admittedly, if I lose all the security keys at the same time, I lose all of my passwords.


You don't even need a password manager, browsers autogenerate secure passwords for you, and they sync between computers/mobile devices.

(I'm saying this from the perspective of "regular people don't want to be inconvenienced like that, obviously you should use an external password manager for security)


Sign-on with the external identity provider doesn't help if data related to your account like the billing information, your government ID info etc. are released in the breach, that's the sore point.

- Complains about age verification because it is "not private"

- Uses Google SSO to sign in everywhere


People will know that my password was y!2TvM8h3dpvw4 for one particular website at some point. What do I lose here? Google/Apple incurs much greater risk that is entirely out of your control.

I read the "hit piece". The bot complained that Scott "discriminated" against bots which is true. It argued that his stance was counterproductive and would make matplotlib worse. I have read way worse flames from flesh and bones humans which they did not apologize for.

Isn't that the point? That the oversight of DOGE is so bad that the only way to get information about its operations is through online news? Banana republic level of state behavior.

Statistics! Can a person below the median income afford to retire early? The answer is a resounding no. Can a person the top 10th percentile (upper middle class) afford to retire early? Yes.

https://dqydj.com/household-income-percentile-calculator/

So the top 10% is a household income of $250K and most of those couples didn’t reach that until their 40s. They aren’t making $225K as an L5 at 25 years old like a former intern/new grad I mentored when I was at BigTech

Most software developers won’t even see above $160K inflation adjusted during their career. Most work in second tier cities in the “enterprise”z.


This guy did it: https://www.mrmoneymustache.com/ on like $65K IIRC

The problem is, at core, fear. Fear of taking responsibility for your life.


So exactly how do you “take care” of your insurance if the ACA goes kaput? “Thoughts and Prayers” until you are 65?

I pay cash for everything right now since ACA plans are terrible... BUT, I am also one of those nut jobs that only eats meat and it is amazing. But, most people can't even begin to imagine giving up carbs as they are junkies.

Are you willing to bet that nothing catastrophic will happen to your health before you are 65?

Yes. I will not let fear rule my life.

That’s monumentally not a good idea

https://www.cdc.gov/chronic-disease/about/index.html

90% of adults will have a chronic condition by the time they are 65.

https://www.aarp.org/health/conditions-treatments/most-commo...


That data alone invalidates any idea of insurance being sustainable, it's a sinking ship.

I, on the other hand, only eat beef, butter, bacon, and eggs and everything is getting better. BUT, I may be in a cult, but this cult has benefits.


No insurance is viable because the risk pool includes people of all ages.

No, insurance is not viable until we fix metabolic health in the masses.

Again, I'm a nut job that has a HbA1C of 4.7 because I only eat beef, butter, bacon, and eggs.


there are still tribes in the amazon that have very little money, like the hazda. they may not call it retirement but they don't need to go to the office everyday.

Serious question, what makes us so addicted and dependent to money that we can't imagine any way of life without a lot of it?


People play dumb status games.

Here is the crazy thing, I went carnivore after I retired because one thread that worried me about shitty insurance is the risk. Now, I'm pretty sure if I only eat meat and work-out, then I might not even need insurance. Like, my labs are phenomenal.

By taking away the fear and the addiction, I've got a level of calm and control of my life that makes me realize the "modern world" is deeply sick.


So you think healthy living will prevent you from needing medical care until you are 65?

For the chronic stuff, yes.

For acute accidents, who knows!

With carnivore: I'm off almost all meds, my mobility and flexibility are amazing these days (I am sitting on the floor right now with crossed legs).


That’s not how life works…

Dude, cancer is an RNG roll away for anyone.

Doesn't matter how well you take care of yourself if a random cell decides to divide in just the wrong way.


Cancer happens all the time and your immune system deals with it. Look into the recent evidence of how keto deals with cancer. I'm telling you, I live in a world without fear and it is awesome.

I'm well aware of keto and cancer. I spent 5 years in ketosis, I trained semi professionally as an athlete (4 hours a day at a professional MMA gym), I spent years helping people get into keto and lose tons of weight and improve their health.

Keto helps with some cancers that are powered by glucose.

It does nothing to help with any other forms of cancer, of which there are plenty.


Are you willing going to “happy thoughts” your way into never having a serious illness?

Yes, 100%, all the way, full send.

edit: to add clarity, I'm going to leverage full placebo and happiness to my advantage: https://pubmed.ncbi.nlm.nih.gov/12883117/

I'm refute any negative emotions as they are counter-productive. I reject fear of the unknown, and I instead believe happy thoughts.


The Hazda live in Tanzania, not the Amazon. And they grow up learning to live the way they do. They'd be as lost in our world as we'd be in theirs.

And what’s their life expectancy?

Hate to be that guy, but the Hazda live in Tanzania.

What polls are your referring to? Can you cite any?

Complain about long emails. Short is better. Everyone agrees.

The billionaire class loves their crypto nazis--they won't let Musk fall from grace. Given the Epstein files, the Panama papers, and what we know about the elite networks, you'd have to be a sucker not to believe that the stock market is manipulated to the core.

Zig is not faster than C.

With default build settings it actually might be, because Zig's release mode builds with the equivalent of `-march=native` by default ;)

(disclaimer: not sure if that's actually still the case, last I checked in detail was probably 2 years ago).

Also Zig always builds the entire project as a single compilation unit, which allows more optimization options because the compiler sees all function bodies. The closest equivalent in the C world is LTO, but this is usually also not enabled by default.


Would you say its always slower, or always faster?

The optimization work happens in the LLVM backend, so in most cases (and using the same optimization and target settings - which is an important detail, because by default Zig uses more aggressive optimization options than Clang), similar Zig and C code translates to the exact same machine code (when using Clang to build the C code).

The same should be true for any compiled language sitting on top of LLVM btw, not just C vs Zig.


No. I will continue my crusade against blanket statements about performance.

Gee, good thing I didn't make a blanket statement and qualified it by saying "often", which is true, my contrarian dude. https://tigerbeetle.com wouldn't have chosen it unless they found it faster than C- and there's a significant quantity of money riding on that decision, so it likely wasn't done lightly at all.

The rest, you can google yourself, but in short, sorry to tell you that it is sometimes faster. Often, sometimes, some portion of the time.


No. It is a blanket statement that is never true. A programming language has no inherent speed. Your appeal to authority argument is rejected.

That's what I was getting at in my response. Once you add the qualifiers that were originally implied, its obvious that this is not an objective discussion to be had.

He relinquished the world champion title because he thought defending it was boring (and not paying well). So one can say he is already past his peak. Chess is a mental game after all. But it will take many years before his rating drops noticeably though.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: