Hacker Newsnew | past | comments | ask | show | jobs | submit | Sophira's commentslogin


You'd be surprised.

I actually do like to view certificates of working sites, because it can be interesting to see what's listed in the Subject Alternative Names field. It can lead to some interesting observations about what sites are linked.

Netscape of this era predates the Subject Alternative Name :)

This has actually been done:

https://esolangs.org/wiki/Hello

While quines (programs that print their own source code) aren't possible in Hello, there's a version that makes it possible:

https://esolangs.org/wiki/Hello_Plus_Plus

And if you say the original isn't good enough because it can't do anything else... well, esolangs have you covered there too:

https://esolangs.org/wiki/HQ9_Plus

(It should be noted that these are all joke esolangs. There are actual languages on the wiki that are very interesting though - I would definitely recommend you take them out!)


> I would definitely recommend you take them out!

I obviously meant "check them out" here. I was using speech recognition and it clearly misheard what I said.

I'd edit, but it's been long enough since I posted that HN isn't offering that option for this comment any more.


Nah, you're not crazy. I'm also someone who actually reads terms documents, because I find that they're often the only thing that will be truthful about a company's intentions.

And keeping it completely disconnected from the internet should be the default, in my opinion.


There is absolutely no reason to read those contracts any more. As Louis Rossman keeps pointing out, most of them now include the ability for them to change terms at any time. That's basically the null contract.

Since the legal system has once again failed to protect users from corporations, it's up to users to use technical means for self defense.


Depends on jurisdiction, just because someone wrote something in a contract doesn’t mean it’s binding.

In Poland/EU we have an (ever growing) list of forbidden clauses that even when written and signed by consumer are null and void. And I think these can be enacted retroactively - when corporations invent new shady clauses, government steps in and tells them these are invalid.

This helps to even out the consumer-corporation field.


> we have an (ever growing) list of forbidden clauses that even when written and signed by consumer are null and void

I'm pretty sure that's true almost everywhere. Law beats contract. The real question is how strong the laws are. In the US not so much because of small government and stuff, especially in red states.


The law matters very little when enforcing it in court often means a multiyear lawsuit against an opponent which employs an army of attorneys, has effectively unlimited amounts of money, will likely cost you ruinious sums of money, and for an outcome that's far from guaranteed.

You can do that too. You can show up, represent yourself and pay a few hundred dollar court fee, while the big company has to waste hundreds of thousands of dollars to defend themselves from you. You'll probably lose the case if you don't have a lawyer, but in a place like the US, you don't have to pay the other side's legal fees unless the case is frivolous (which it won't be).

>The law matters very little when enforcing it in court often means a multiyear lawsuit against an opponent which employs an army of attorneys, has effectively unlimited amounts of money, will likely cost you ruinious sums of money, and for an outcome that's far from guaranteed.

Or when you can't even enforce anything in court as you've already given up your right to spend all your money suing, as binding arbitration is the required and only mechanism to "resolve disputes." To make it extra fair, the corporation pays the arbitration firm for their "objective" decisions and not you.

What could go wrong?


Has it actually happened that someone went to court and the court told them no, you have to do binding arbitration? Or is it just something they put in the contract to scare you? Has anyone argued they didn't actually agree to what the country thinks they agreed to? You could start by just saying no, you didn't agree to that, and the company will have to prove you did.

In the Gamer's Nexus video, he gets drunk before accepting the terms so that it isn't legal consent. A drunk person can't enter a contract.


>Has it actually happened that someone went to court and the court told them no, you have to do binding arbitration? Or is it just something they put in the contract to scare you? Has anyone argued they didn't actually agree to what the country thinks they agreed to? You could start by just saying no, you didn't agree to that, and the company will have to prove you did.

Yes[0]. For over 100 years.

Next question?

[0] https://en.wikipedia.org/wiki/Arbitration_case_law_in_the_Un...


The US is not small government at all. It’s one of the largest governments in the world. It just exists almost exclusively to serve billionaires.

It’s “small government” when it comes to protecting your individual rights, and full flock powered ai surveillance state when someone has an abortion.


I obviously didn't invent that term. And in large part you're right that it means deregulation so companies can do whatever

That’s great! Because then you’re left with the simple task of raising it up with the government.

It’s actually the judiciary you’d bring it up with, I believe.

The judiciary is a branch of government. But more crucially, some countries have better consumer protection agencies, eliminating the need for people to go through costly court battles for common sense stuff.

Funny how the type system works in a legislative framework: null AND void

I'm never going to interpret that one with a straight face.


Interestingly, in Brazil and I'm sure in some other legislations, those contracts are essentially void because there's a presumption the average person does not have the time, patience, or ability to understand every clause—so they are by definition unable to agree to their terms.

I'd love to have a similar standard applied in the US but I'm not holding my breath.


>There is absolutely no reason to read those contracts any more

For another perspective, check out the comment you're replying to.


At the very least, you can be sure they'll never change the terms of the agreement to be more beneficial for you, though.

So just treat it as a best case scenario, knowing that it can get even worse.


Just assume the worse then, save yourself some time.

Well yeah, that's kinda the idea, but sometimes it's nice to know what 'the worst' will entail

At this point every EULA or TOS change should begin with the heading:

We Are Altering The Deal. Pray We Don't Alter It Any Further


PS, my technical means are keeping my TV off the internet.

Which doesnt work. LG tvs will scan for availible networks. Someone setting up a new router within range briefly disables encryption and "your" tv will jump on that network and transmit all the stored data.

It is tinfoil hats time, at least for LG tvs.


I guess you could remove the wifi antenna, or otherwise brick the wifi reception ability (faraday cage, lead block, etc). Or - just boycott LG. I'll never buy any of that corporate espionage nonsense, ever.

Also: the US intelligence agencies used Echelon ages ago to monitor what vast swaths of innocent people were up to. I think it's sensible to presume they've got their hooks into these devices too.


Give it a network, but don't allow that network to access the internet.

If it can't phone home, it's not connected.

A technical solution would presumably spoof the spaff but with E2EE and DoH is it possible? So then what, hacking firmware? I guess then TVs get a hard lifespan limit.


I never understood why any of the smartness had to be built into the TV in the first place. Sure, it's useful for the first year, and then the seriously underpowered hardware they installed into it will have trouble with just about anything.

I bought a Philips Ambilight OLED TV probably over 8 years now. Brilliant tv, great quality, I still see no reason to replace it at all. But its built in AndroidTV is garbage.


Because it’s extremely profitable for them to serve ads and sell PI. Kind of like how the airline industry makes more money off credit card shenanigans than actual plane tickets.

Not relevant to the discussion but to your comment, Freakonomics Radio claimed "airline industry makes more money off credit card shenanigans" was not true

https://freakonomics.com/podcast/is-your-plane-ticket-too-ex...

WSJ and Wendover claim it is true.


Because having the TV play from streaming apps out of the box is pretty useful.

The problem is we've not enforced any strong regulation against ads, downgrade rights or hack ability.

I don't need "better performance" from the system built into my TV I just need it to run Kodi.


I hear you. This is exactly the reason why I have a digital signage display rather than a Smart TV.

Similar boat - Panasonic glass fronted TV. Circa 2013. None of the smart works anymore.

1080p, but the picture far outstrips most other TVs I've owned to this day.

I have zero plans to change it, and it's usefulness has outlasted the Chromecast that's connected to it.

Yes, I put the first ads on Smart TVs. Apologies.


It's so you buy a new one every few years instead of keeping the same TV for a decade or two. Capitalism cannot survive when products last a lifetime.

If that’s true, then why is capitalism still around? Should it have died out in a previous generation in which many products did last a lifetime?

It did. We are currently on the fourth or more reinvention of capitalism. It's like ethernet - every time networking technology changes, the new one is called the same thing as the old one. The current fiber-optic switched Ethernet has absolutely nothing in common with the original vampire-tapped coax with media attachment units clamped onto the cable and a serial-port-looking AUI interface running down from the ceiling to the computer. Same for capitalism.

> Capitalism cannot survive when products last a lifetime.

This is totally backwards; capitalism would do fine in such an environment (in the same way that evolution does fine in an environment where organisms live more than just a few seconds; the whole reason we have the notion of a "lifetime" is that our germ line comes from a long line of ancestral DNA that made organisms that outlasted their competition.)

Individual companies might have to hustle to innovate or die, but that too is good for capitalism.


Whoa!

I think maybe I stepped on somebody's agenda?

Both capitalism and evolution depend on the fact that over time, on average, less fit organisms/organizations are displaced by better alternatives. You may not like that, but down-voting anyone who points it out doesn't make it any less true.


> I never understood why any of the smartness had to be built into the TV in the first place.

Because technology got ever more complex. A TV of yore? That thing operated on (relatively) simple physics alone, at the cost of requiring an absurd amount of broadcast infrastructure to make sure a TV signal could be received across the country.

Modern TVs however... digital modulation schemes with a lot of signal processing wizardry allow TV reception with far less broadcast towers and far better quality. You got satellites and with these a myriad of control schemes (DiSEqC, Unicable, ...). You got Pay-TV that requires decryption. You got HDMI CEC to allow your TV to remote control your DVD player.

And all of that complexity requires firmware which means it can have bugs which means you need a firmware update capability and when you're at that point you can just go and slap something Linux on it and get all the apps for streaming services.


Only good until the device starts using a neighbor's LG TV as access point, without telling you, for the sole purpose of upgrading itself and sending this "telemetry".

Zealous Autoconfig https://m.xkcd.com/416/

Non-mobile link: https://xkcd.com/416

Really?

Well that is how Airtags work.

Any iphone/ipad/mac nearby will act as a router for them[1]

Given that we have already established that LG is a shady company, I wouldn't put it beyond them to try to use the same trick.

[1]https://lifehacker.com/tech/how-apple-airtags-actually-work


That is not how AirTags work. They do not reach out to Apple servers at all.

AirTags broadcast an encrypted ID. Phones build lists of ID’s they’ve seen and send the list to Apple.

There is no routing, no ability to send arbitrary data, no active communication of any sort. It’s not a mesh network.

The link you posted makes that pretty clear.


An Apple airtag probably doesn't but it is apparently possible to send some data at a very low rate (the article in [1] says a few bits per hour) over the find my network [2]

[1] https://positive.security/blog/send-my

[2] https://github.com/positive-security/send-my


That's functionally the exact same thing, and if they wanted to send data they could encode it in the "ID".

uh, that is just all the iphones acting as a mesh network for airtag ID’s?

it means you can’t block the tracking by doing anything yourself - you’d also need to block everyone else’s devices too.


Mesh network typically means… a network. Unidirectional, best-effort, randomized IDs are not a network.

And of course you can block the tracking yourself, even though nobody is actually tracking because Apple can’t tell who owns what ID. Just turn off find my on your device.


They definitely meet the definition for a network. there is no requirement for determinism, bi-directional communication, etc. at least in the definitions I see for the word.

and turning it off on your device doesn’t actually block the info being communicated, merely the association where you can see it. and hopefully on their backend, but there is no technical requirement for it.

the whole point is everyone’s iphones forward airtag info for every airtag.


Fair point on the forwarding being non-disable-able. But I don’t see any privacy issue there. The forwarder provides observed obfuscated ID and location, which seems less fraught than even the signal strength metadata returned to cell towers.

I had misinterpreted “you can’t block the tracking” to mean of your own phone, rather than of devices that other people want tracked.


It joins phone location + tagid to provide location info of all tags. the backend then (hopefully) filters out tags people don’t want to track.

‘obfusication’ of IDs isn’t a meaningful thing here, or literally none of it would work.

the whole point of airtags is your phone doesn’t need to be anywhere near the tag to find it.


It's also how Amazon Sidewalk works for many Alexa-enabled devices

Yeah and my worry is, TVs like this can use sidewalk to connect to when they are not provided with internet access by the user (either but plugging into ethernet or connecting WiFi). Leaving the TV with an always-available exfiltration channel for it's espionage of the user's viewing habits.

This is a really bad thing for those of us who until now have just not connected our 'smart' shit to the internet.

Where I live in the EU they don't do sidewalk otherwise I'd have to look at ways to fight it (disassociate connections or DDoS the devices providing sidewalk routing)


Forget GPS jammers, everyone needs a bluetooth jammer.

> I find that they're often the only thing that will be truthful about a company's intentions.

Really? Many years ago, I had to physically sign a license with Microsoft to obtain some software. The license was not consistent with the license included with the software. Both licenses effectively said they were the real license and that any other agreement you made with Microsoft was not valid.

I don't think there was any nefarious intent. It was likely to avoid a situation where Microsoft employees offered terms that were not approved of by the company. Still, it goes to show that it can be awfully difficult to judge the intent of a company.


I guess neither is valid then, you got the software for free.

I've never actually seen this. Can you link an example?

It's okay, they'll fix it by asking AI to design their training courses for them. That'll fix everything, right?

This is almost certainly the same person, yes:

> Additionally, he is a co-host of the All In podcast...

The comment you replied to linked to an account on X called theallinpod, so there's a strong link there.


How's the telemetry situation nowadays? I haven't been updating my copy for a while.

I just started the appimage - it asks you to login to the "cloud" but also offers a prominent skip button, and then asks if you want a telemetry UUID or not.

So even after the intense backlash Tantacrul saw on the GH threads, they went ahead and stuffed it full of telemetry anyway. Incredible.

> So even after the intense backlash Tantacrul saw on the GH threads, they went ahead and stuffed it full of telemetry anyway. Incredible.

Here's an alternative for those unaware:

https://codeberg.org/tenacityteam/tenacity


He is pro age-verification with government IDs, what do you expect?

Did he state this in a video somewhere? I checked a couple biography pages but didn't see this specifically called out.


> Wow. @Meta settled for $18B, also agreeing to implement significant protections for teens. They'll of course choose the weakest / least effective implementation possible but even so - governments are beginning to force change. > >2 years ago, it looked hopeless. Big moment.

That Tweet shows that he is pro "protecting minors from social media", and "governments should do that protecting"


That doesn't say anything about age verification?

It literally does... Slowly read it again and read about the recent Meta lawsuit.

It literally doesn't. You're going to have to be more specific.

Please cite this if it's true.

As far as I can tell they're updating the much dated UX from being stuck in the 90's and are making great strides on the app.

I'm fine with them making money as they're investing into a utility I use.


See my other reply

telemetry != making money

Not sure, but since I've installed is as a Flatpak (org.audacityteam.Audacity) I simply disable its network capabilities via com.github.tchx84.Flatseal

This way, even if they had telemetry, I wouldn't really care.


I don't know, but I once ran strace on version 3 and was horrified by the number of files it touched at startup. Then tried accessing the internet.

For that kind of functionality, I would always recommend Avidemux[0]. It's quite a light package (which I like), and it allows you to do that and some other useful things too.

[0] http://fixounet.free.fr/avidemux/


I absolutely love Avidemux but it doesn't preserve subtitles when removing a middle clip like lossless cut can.

Dunno if it’s just me, but I tried to download it the other day and couldn’t. The windows download link just punts you right back to their own site.

Just checked. Same thing happened to me. For all links, including old versions AND other packages. Seems to be a problem with fosshub. (I am on linux+firefox).


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: