Hacker Newsnew | past | comments | ask | show | jobs | submit | bronson's commentslogin

What review processes on computers?

I didn’t write the previous comment, but I think the point here is that there is a long-running trend aiming to protect users both from malicious intent and to a certain extent from themselves. In the past, viruses had it easy to infect and spread computers because of both inattentive users clicking on mails claiming someone loved them, and the default access mode for any user granting them admin access.

Even though review processeses generally do not exist for computers, they are part of that same trend.


mac app store / windows app store

And outside stores we have Windows’ UAC and Mac’s annoying-but-understandable “this dmg is sus” dialogues. Granted they are review processes but they’re often what keeps common users from wrecking their devices.

Bad weather doesn't explain all their poor decisions. If anything, it should have made them more likely to perform a goaround.

After applying the brakes for 8 seconds, they then went to full throttle to try get back in the air for four more seconds. That's bonkers.

All good points. So, why don't we use CO2 in minisplits? Split systems are most popular in new construction and retrofits, so why are we settling for modern refrigerants like R32 with a large GWP of 675?

It's because CO2 has to be run at more extreme temperatures and pressures, fine for factory-made connections inside a single unit but a showstopper for field joints.


What does "mathematical output of the AI" even mean? A proof? Intermediate tokens?

It's a Lean program that proves the theorem.

No, in the US, everyone with an iphone uses imessage. (Basically all my family's messaging goes over imessage) It's only when non-iphone users are on the chat that RCS comes into play.

Almost none of my RCS conversations are encrypted. Who cares what's in the spec if nobody uses it?

> Custom android was never easy and never will be.

It's easy when it comes preinstalled.

> And it's fundamentally incompatible with the concept of having a truly secure env on your device (same as in the PC space, ironically enough).

Where on earth do you get this misconception? Custom Android != has root. If you don't think Graphene is reasonably secure, explain how?


That would be such a sizeable disconnect that you might do some arbitrage.

Current prices in USD:

128 GB 1 TB M5 Mac Studio: $5399

128 GB 1 TB GMKtec EVO-X2: $3499

128 GB 1 TB Framework Desktop: $3748


> ... and you isolate processes in sandbox per your current task.

Oh is that all? If you start writing up the requirements to make that happen (without permission prompts and portals, right?), I think you'll find that would be even more difficult than app isolation and have even more backward compatibility issues.


Actually I use that approach daily and it has very few usability issues, at least in my mostly terminal based workflow. GUI apps show me environment to which they belong in the title bar. Happy with that.

Can't imagine how per-app isolation would even work for me. Sounds like something inspired from android world where there's no such thing as having the same app run mutliple times on different workspaces/windows, etc. and the usability correspondingly suffers.

Portal thing even bit me recently. I leave dbus and window manager socket in the sandbox, so I can use GUI apps without too much trouble, and a few months back firefox started showing me files from outside the sandbox and hiding files in the sandbox in file save dialog, which confused the hell out of me, until I found out someone decided to add a remote file access via some dbus service or whatever. Dangerous. I had to remove dbus socket sharing completely from the sandbox at some inconvenience.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: