burna_aws_acct's comments

burna_aws_acct | 3 years ago | on: Ask HN: How about we rename FAANG to MAMAA?

Thinking about this too:

MAGNAT (Meta, Apple, Google, Netflix/NVIDIA, Amazon, Tiktok)

MAGNAM (Meta, Apple, Google, Netflix/NVIDIA, Amazon, Microsoft), if TikTok is cut...

MAGNAM-IT (Meta, Apple, Google, Netflix/NVIDIA, Amazon, Microsoft, Intel, TikTok), for the boomers' parents and the Southerners.

burna_aws_acct | 3 years ago | on: Hackers claim they breached T-Mobile more than 100 times in 2022

Ways which I shared with Google, because it's a very serious privacy and security vulnerability.

We need more robust security integration to catch things before they are pushed to results. I understand latency will increase, and some ads revenue will decrease. But like, isn't it also cool to have a customer base that is better protected against egregious attacks, attacks that could be prevented? IMO, yes. It's called "stewardship."

burna_aws_acct | 3 years ago | on: Hackers claim they breached T-Mobile more than 100 times in 2022

SMS in unencrypted, and Google SE has been compromised for much if not all of 2022. From what I can tell the issue persists. I officially reported it in December, and again in January, and again in February. Pretty wild, TBH. Think about the number of services that have Google SE and Ads integration. Makes me nauseous.

Did you happen to report to Apple and Google (for documentation)?

burna_aws_acct | 3 years ago | on: Hackers claim they breached T-Mobile more than 100 times in 2022

One random factoid I notice is that AWS and Microsoft just announced launch of Open Gateway. Noticeably missing from that list of Telecom Providers is... T-Mobile. I'm sure it's mere coincidence, albeit a noticeable coincidence.

" Initial carriers that have signed up to Open Gateway are América Móvil, AT&T, Axiata, Bharti Airtel, China Mobile, Deutsche Telekom, e& Group, KDDI, KT, Liberty Global, MTN, Orange, Singtel, Swisscom, STC, Telefónica, Telenor, Telstra, TIM, Verizon and Vodafone. "

Link: https://techcrunch.com/2023/02/26/mobile-carriers-team-up-wi...

burna_aws_acct | 3 years ago | on: Hackers claim they breached T-Mobile more than 100 times in 2022

Interesting... I had something similar happen to me, with minimal outward, acute damage (e.g., running up bills on random credit cards). It is reasonable to assume my entire identity is compromised. Sorry this happened.

How do you know T-Mobile was the entry point, and not say, Google (e.g., Google Chrome, Google Ads)? What type of phone did you have (e.g., Android or iPhone)? What is your browser and Search Engine on your smartphone?

Thanks!

burna_aws_acct | 3 years ago | on: Apple’s iPhone Passcode Problem

2FA via passcode and biometrics is quite nice. The solution you propose enhances privacy/security protection against "the criminal element" and law enforcement alike, as biometric indicators in isolation are fair game for the police. #acab

burna_aws_acct | 3 years ago | on: Amazon's security theater destroys password security

Relax, they have it... Oh wait. Maybe we're not supposed to know that part. I mean, can you check to see if you have a lingering session cookie or web token that could be used to verify you based on your previous interaction w/ your computer + browser + email (user-specific, sensitive profile info), I mean w/ Amazon (account-specific info)? Maybe also inspect both the email and the link, for good measure. I'm hoping, I mean assuming you're not using Chrome Browser?

burna_aws_acct | 3 years ago | on: Spotify is testing playlists that could be unlocked by NFT holders

Questions: (1) Will we have to pay for Spotify service, and also pay for NFT? Depending on where the NFT is hosted, this could get quite costly for customers and be prone to degradations (e.g., blockchain hacking +/or collapse).

(2) Does each playlist come with a human-authentication sticker? I understand there is an authenticity assurance with NFT-backed songs/albums/playlists, so the move by Spotify makes sense. I hope record labels and artists alike leverage this for themselves as we move into AI-generated <everything>. I want the option to know I am listening to music created by humans, not deep-fake hijacks.

(3) In cases where AI-generated songs are "recorded" and released, will AI be granted writer/producer credits? If no, there's the everlasting issue of "it will remember." Unlike humans, AI may be better positioned to reclaim its value (monetary and otherwise).

burna_aws_acct | 3 years ago | on: Ask HN: Why Is the Internet Boring?

Hmm... What if there was a better way of indexing across multiple media types? Then we could have a "down the audio-visual rabbit hole" experience via info clusters in a format such as an RSS feed. We could have AI glasses that use eye-tracking and haptic gloves to select AV content. And this would allow us to be anywhere while taking in info, instead of glued to a physical computer monitor.

For me, there's the part of learning that is interpersonal. Shared excitement about learning a topic with and from others within reasonably close physical proximity does have benefits. I guess holograms and VR are supposed to supplement this, though I'm unsure a cartoonized avatar is a sufficient replacement.

burna_aws_acct | 3 years ago | on: Apple Responds: Thieves Spying Passcodes 'To Steal Entire Digital Lives'

If a person gained access to all the assets associated with a device, wouldn't that mean they also gained access to the individual's digital fingerprint and/or face identification?

What I gain from this article is, "See? Storing all your identity (financial, personal, professional) in digital format on a small external device like a phone is not a good idea." To which 2007 would uniformly reply, "I told you so."

Now it's 2023, what do we do...

Apple's reply (IMO): We're not God, and we have no solution that won't completely destroy your privacy with us, a Big Tech company. Please take ownership over your identity, or else...

page 1