Readit News logoReadit News
mrorbitman commented on Show HN: Web Tunnels – Passwordless authentication for the web   pico.sh/tunnels... · Posted by u/qudat
qudat · 2 years ago
> Look at how much energy has been put into Passkeys

Yep, this is a huge reason why we are so excited about web tunnels because we are already loving the DX/UX around it. The end-user doesn't need to install anything new and they have access to private sites using just SSH keypairs and a tunnel.

For example, when using any code forge (gitea, github, gitlab, sourcehut, etc.) they require two completely separate authentication mechanisms: one for SSH and one for web.

Now imagine the simplicity of a git code forge that leverages web tunnels to serve its web ui: no separate login and as long as the tunnel is open, you have authenticated access to the web viewer.

So combine web tunnels with autossh and you are forever authenticated to your authenticated sites.

mrorbitman · 2 years ago
Wow that's a great point. Git repository hosts are perfect use case for this.

One of the challenges of having the ssh key be the identity connecting multiple devices, another challenge is if you lose access to your ssh key, I'm not sure what the "forgot password" flow would be. Especially since you wouldn't even have a signup email address.

mrorbitman commented on Show HN: Web Tunnels – Passwordless authentication for the web   pico.sh/tunnels... · Posted by u/qudat
mrorbitman · 2 years ago
> Of course the catch is that our users need to be able to run SSH commands

If we ever crack how to make that normie-accessible, the the game is flipped upside down.

Look at how much energy has been put into Passkeys - a massive orchestration and cooperation from google, microsoft, apple... And it’s still slow AF, often requires that you find your second Passkey device, bluetooth, QR code scanning etc.

mrorbitman commented on Bitwarden raises $100M   bitwarden.com/blog/accele... · Posted by u/deanmoriarty
ndand · 3 years ago
Not for the rest of their lives. 50 people can live on $100k/year for 20 years.
mrorbitman · 3 years ago
if you assume typical stock market returns, ~$2M is enough to retire on and live on $100k a year of interest gained alone.
mrorbitman commented on EU Digital Markets Act, aimed at Google, Apple, Amazon, approved   consilium.europa.eu/en/pr... · Posted by u/Gareth321
Gareth321 · 4 years ago
This is easily one of the most expansive Acts regarding computing devices passed in my lifetime. The summary is in the link. As an iPhone user, this will enable me to:

* Install any software

* Install any App Store and choose to make it default

* Use third party payment providers and choose to make them default

* Use any voice assistant and choose to make it default

* User any browser and browser engine and choose to make it default

* Use any messaging app and choose to make it default

* Make core messaging functionality interoperable. They lay out concrete examples like file transfer

* Use existing hardware and software features without competitive prejudice. E.g. NFC

* Not preference their services. This includes CTAs in settings to encourage users to subscribe to Gatekeeper services, and ranking their own services above others in selection and advertising portals

* Much, much, more.

After the Act is signed by the Council and the European Parliament in September, Apple, Google, Amazon, and other "Gatekeepers" will have six months to comply. Fines are up to 10% of global revenue for the first offense, and 20% for repeat offenses.

mrorbitman · 4 years ago
Six months??? What does "comply" mean? Ship a version of the OS that supports all these new features? Or begin implementation of them?

Six months is barely enough time for companies to digest and understand the new requirements, and certainly not enough time to develop and ship such dramatic changes.

mrorbitman commented on The Lightning Network: Turning Bitcoin into Money   papers.ssrn.com/sol3/pape... · Posted by u/olalonde
joshstrange · 4 years ago
I pay for 5 podcasts, I do it via Patreon, Memberful, and a custom (stripe-based) solution. I'm not really sure what problem needs to be solved in this space. I pay for 2 podcasts that I haven't listened to in months, I do it because I pay to support these creators. I don't need/want my listen history to directly correlate to sending money to hosts I like (nor do they, they'd much rather have the constant stream instead of peaks and valleys). Also, I actually hate the idea of "boosts", it just encourages bad behavior (just like IAP's that aren't one-time/DLC/remove-ads).
mrorbitman · 4 years ago
all those websites take their cut. and visa takes their cut. and still the podcaster can't "cash out" immediately, depending on settlement times and policies of the corporations. Essentially, the middlemen have the creators by the balls, lightning solves that.
mrorbitman commented on Hackers claim to have breached Okta systems   twitter.com/_MG_/status/1... · Posted by u/obi1kenobi
camwhite · 4 years ago
naïve question: Is there anything regular consumers can/should do in light of this information? Changing passwords etc seems futile if hackers have internal developer access anyway
mrorbitman · 4 years ago
is there an app that can send bulk gdpr data deletion requests for no-longer-used services?

seems like it'd be possible write an app that scans email history to detect services that have your data, scrape their websites to determine support email address(es), and send a GDPR data deletion request template to each of the selected ones.

mrorbitman commented on US Senate votes unanimously to make daylight savings time permanent   twitter.com/senatecloakro... · Posted by u/enraged_camel
sbahr001 · 4 years ago
Am I not mistaken, but isn't this change going to make datetime calculation hell now; especially with legacy systems or am I missing something.
mrorbitman · 4 years ago
it's already hell, who cares.
mrorbitman commented on Static torrent website with peer-to-peer queries over BitTorrent on 2M records   boredcaveman.xyz/post/0x2... · Posted by u/voigt
forgotmyoldacc · 4 years ago
Is the demo down for anyone else? It's stuck loading. Chrome on MacOS
mrorbitman · 4 years ago
The site and search eventually work, but the torrents themselves do not download and do not appear to have all necessary magnet information in the links. So the downloads just hang there in the torrent client.
mrorbitman commented on Beware of a New Amazon Token Crypto Scam   blog.avast.com/beware-of-... · Posted by u/saturn5k
nope96 · 4 years ago
> steer clear of eth entirely and just stick to learning about bitcoin

Although even that isn't so clear cut - you have to educate/warn about Bitcoin Gold, Bitcoin Cash, Bitcoin SV, and so on.

mrorbitman · 4 years ago
True. I only told them how to use CashApp which only sells bitcoin.
mrorbitman commented on Beware of a New Amazon Token Crypto Scam   blog.avast.com/beware-of-... · Posted by u/saturn5k
bener · 4 years ago
I feel like they would do rather well - there are so many new crypto "projects" and so many people "investing" in them. Investing in new coins using Eth for purchasing is very normalised in those circles, and people are super hungry for opportunities to enter an ICO.

Most of the people (or people with bots) making any sort of money with these new coins are getting in on the ICO and dumping their coins during the initial peak after public release. The whole thing is like a high frequency pump and dump, and there are large profits to be had for the few who can pull it off, which makes buyers particularly rushed.

The Binance Smart Chain has even more of this going on, it's madness. It's like the wild west of defi.

mrorbitman · 4 years ago
Yeah, eth is bad enough, but BSC and Solana are where the truly depraved and desperate get-rich-quick victims are. Absolutely brutal.

u/mrorbitman

KarmaCake day38September 27, 2014View Original