Readit News logoReadit News
isbvhodnvemrwvn commented on Security issues with electronic invoices   invoice.secvuln.info/... · Posted by u/todsacerdoti
michaelt · 2 days ago
-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

> How would you digitally sign a Json document and embed the signature in the document?

Embedding a signature into the same file is easy enough.

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v0.9.7 (GNU/Linux)

iEYEARECAAYFAjdYCQoACgkQJ9S6ULt1dqz6IwCfQ7wP6i/i8HhbcOSKF4ELyQB1

oCoAoOuqpRqEzr4kOkQqHRLE/b8/Rw2k =y6kj

-----END PGP SIGNATURE-----

isbvhodnvemrwvn · 2 days ago
Or use something similar to jwts, you normalize the document, sign the hash, wrap the original document with metadata and include the signature.
isbvhodnvemrwvn commented on So you want to speak at software conferences?   dylanbeattie.net/2025/12/... · Posted by u/speckx
aleph_minus_one · 5 days ago
> I run a paid, one-day, mid-sized conference every year, and with only so many slots, we find it very, very difficult to risk choosing people who don't have videos of themselves speaking.

Some people are much more privacy-conscious than others and thus at least don't want more videos of themselves online than what is absolutely necessary.

isbvhodnvemrwvn · 5 days ago
It's the circle of those people even close to intersecting with the one for aspiring conference speakers?
isbvhodnvemrwvn commented on Work after work: Notes from an unemployed new grad watching the job market break   urlahmed.com/2025/11/05/w... · Posted by u/linkregister
crystal_revenge · a month ago
I always feel a bit conflicted when I read these experience from new grads: on the one hand, there's no question the job market today is not the one they signed up for; on the other, the expectation of recent grads is completely alien to me as someone who entered the job market in the shadow of the dotcom bust.

The biggest thing that seems foreign to me is the expectation that "I'm a fit for the job, I should therefore get the job". When I entered the workforce every job was a competition.

The process was the companies would post a job, and then collect resumes until they felt they had a sufficient number of candidates to proceed (or some arbitrary deadline was reached). If you were the only good candidate, it was very common that they would feel there wasn't enough competition and would simply restart the search. This process could easily take months. Then, if there were enough qualified candidates, you would get the interview but you would always be competing with 3-5 other people that the company felt where roughly equal matches.

I had worked part-time (not purely interned) in my field for 3 years, so had plenty of experience at the entry level. Even then competition was stiff, and an interviewer simply not vibing with you was enough to lose a job.

I vividly recall having my target pay set at 2x minimum wage, eating canned stew because that's all I could afford and about to lower my standards when I finally got a call back after months of searching. So as a new grad with reasonably similar qualifications to the author, I was pumped to be making 2x minimum wage out of college.

And at the time none of my classmates considered it to be a challenging job market.

Flash-forward a few years and my younger siblings faced the GFC, I knew of tons and tons of really bright new grads that simply couldn't get work for years. I was shocked that most of them didn't complain too much and where more than willing to suck up to corporate America as soon as a job was offered (I personally thought a bit more resistance was in order).

I'm not sure I really have a point other than to emphasize how truly bizarre the last decade has been where passing leetcode basically meant a 6 figure salary out of undergrad. I'm typically a doomer, but honestly I think it's hard to disambiguate what part of this job market is truly terrible and what part is people who have spend most of their lives living in unprecedentedly prosperous times.

isbvhodnvemrwvn · a month ago
I think this expectation of getting a job when you meet criteria no matter what is a result of them being new grads - that's what happens in classes or exams, you do not compete with others, you just do your thing.
isbvhodnvemrwvn commented on Tell HN: Azure outage    · Posted by u/tartieret
vachina · a month ago
At least I get to control when the 0.01 happens.
isbvhodnvemrwvn · a month ago
No you don't, lol.
isbvhodnvemrwvn commented on How to sequence your DNA for <$2k   maxlangenkamp.substack.co... · Posted by u/yichab0d
nashashmi · 2 months ago
If I have my genome dna data, where can I get it analyzed? For ancestry? For health info? Etc. of course With privacy!
isbvhodnvemrwvn · 2 months ago
Forget any use for ancestry with privacy guarantees. All you'll get is magic "ethnicity" percentages, kind of astrology of genealogy. For it to be useful in genealogy context you need to rely on matching and analyzing common ancestors, this will inherently lead to your data being shared in one way or another and possibly your identity being revealed.
isbvhodnvemrwvn commented on Ask HN: Went to prison for 18 months, lost access to my GitHub. What can I do?    · Posted by u/joshmn
trenchpilgrim · 2 months ago
Get a lawyer and contact GitHub through legal means.
isbvhodnvemrwvn · 2 months ago
What law do you think is relevant in this situation?
isbvhodnvemrwvn commented on Britain to introduce compulsory digital ID for workers   reuters.com/world/uk/brit... · Posted by u/alex77456
Xss3 · 3 months ago
Fraud prevention and decentralised id verification.

In a nutshell itd give identities the same level of technological protection that crypto currencies have.

isbvhodnvemrwvn · 3 months ago
There is nothing this does that digital signature don't already.
isbvhodnvemrwvn commented on Britain to introduce compulsory digital ID for workers   reuters.com/world/uk/brit... · Posted by u/alex77456
Xss3 · 3 months ago
Any digital ID not using a form of blockchain tech is doing it wrong in my view.
isbvhodnvemrwvn · 3 months ago
What purpose would that serve if identity is assigned by a centralized entity (the government)?
isbvhodnvemrwvn commented on Shai-Hulud malware attack: Tinycolor and over 40 NPM packages compromised   socket.dev/blog/ongoing-s... · Posted by u/jamesberthoty
biggusdickus69 · 3 months ago
I didn’t downvote, but...

Depending on a commercial service is out of the question for most open source projects.

isbvhodnvemrwvn · 3 months ago
Renovate is not commercial, it's an own source dependabot, quite more copable at that.
isbvhodnvemrwvn commented on Garmin beats Apple to market with satellite-connected smartwatch   macrumors.com/2025/09/03/... · Posted by u/mgh2
jtbaker · 3 months ago
The clunkiness of the software is a feature to me. I don't want my watch to have the slickest apps, I want it to be pretty utilitarian, rugged and functional. My Instinct Crossover is pretty perfect for that.

The only thing that I think could be better (for me) would be a very rudimentary basemap view in addition to the existing breadcrumb trail functionality.

isbvhodnvemrwvn · 3 months ago
The rough part is very poor UX and lots and lots of bugs. I have to give tutorials on how to use my edge when I lend it to people, it's so easy to do weird things by accident and is not obvious what's going on.

u/isbvhodnvemrwvn

KarmaCake day1699April 30, 2018View Original