Hacker Newsnew | past | comments | ask | show | jobs | submit | ngomez's commentslogin

The CloudFlare blog discusses that idea when they talk about having an "agent process" to hold cryptographic material, but they list drawbacks like having to develop two processes, implement a well-defined interface, and enforce ACLs. I'm not convinced that "developing two processes" is a reason not to do it, since the kernel is effectively just the second process now, but everything else makes sense.

It's unfortunate though since this is one thing I think Windows does decently well. The Windows crypto and TLS APIs do use a key isolation process by default (LSASS) and have a stable interface for other processes to use it [0]. I imagine systemd could implement something similar, but I also know that there are very strong opinions about adding more surface area to systemd.

[0] https://blackhat.com/docs/us-16/materials/us-16-Kambic-Cunni...


TBH LSASS is privileged enough to be a good target for exploits.

Interestingly, Microsoft has been trying to get ahead of this for a couple of years now with their National Partner Clouds program [0], which they describe as:

> designed for scenarios where full ownership and operational independence from Microsoft is required

In France's case, Capgemini and Orange have a joint venture to operate datacenters that Microsoft runs Azure and Office on top of [1]. Moving away from Windows and Teams would still reduce their dependence on Microsoft substantially. But if the core goal is to reduce dependence on non-European suppliers, I would be wary of the French government buying services from "Bleu" when it's mainly Microsoft and a couple of consultancies in a trenchcoat.

[0] https://learn.microsoft.com/en-us/azure/azure-sovereign-clou...

[1] https://www.capgemini.com/news/press-releases/capgemini-and-...


I've been trying uBO Lite myself for a few months, and anyone who uses YouTube will absolutely notice that it's worse at blocking. Lite tends to delay playback at the start of a video for as long as the blocked ads would've been, making the site feel slower, and once in a while an ad will slip past the blocker anyway.


I am not so sure if that is the light version. In my (outdated) Ungoogled Chromium which still has classic uBlock, YouTube videos also have delays or do stop playing completely after a few seconds. So I have switched to the FreeTube software to watch YouTube videos. I can recommend that.


I have used Youtube and uBlock Origin lite for the past couple of months and have not noticed that. Are you using the complete filtering mode?


Just use Freetube to browse Youtube. It's a better experience in every respect.


Are you thinking of the Windows 3.00 Working Model?

https://betawiki.net/wiki/Windows_3.00_Working_Model


I'd not seen that one before, but I could have done with that version on my twin floppy 286 as it was a pain to run 3.1 on it.


Not the whole thing: a lot of the Windows org chart is still under Rajesh Jha in Experiences + Devices, or scattered around Azure with Scott Guthrie. But they've already been pushing Windows Copilot and Bing Ads and widgets, so I imagine the plan is more of the same.


Mikhail reported to Rajesh Jha and I guess now he'll report to Mustafa.

Mikhail's official title is CEO of Advertising and the entire Windows Engineering org reports to him.

I just asked some MS friends who confirmed.


It's not just the kids growing up now. I'm sure plenty of millennials who watched YouTube when AudioSwap was a thing will recognize "Dreamscape" by 009 Sound System:

https://www.youtube.com/watch?v=TKfS5zVfGBc


> "Dreamscape" by 009 Sound System

Say no more. I'll go get Unregistered Hypercam 2.


I think the IPv4 "evil" bit [0] already does this :)

[0] https://datatracker.ietf.org/doc/html/rfc3514


Whether it's proper depends on who you ask but you can use the singular they.

https://en.m.wikipedia.org/wiki/Singular_they


This is interesting.


Could you elaborate? AMD spun their fabrication arm off into GlobalFoundries a while back, and they seem to be doing okay. I thought that would be a good precedent for Intel divesting its fabs too, but I'd love to hear any counterpoints to that.


AMD spun off GlobalFoundries to save itself, and suffered greatly for many years afterward. Let's not pretend it was some kind of masterstroke done by a company that was firing smoothly on all cylinders.

Do a Google search for the stock price. AMD announced the spinoff in October 2008.


GlobalFoundries completely gave up on leading edge and went downmarket. It would be a shame to see Intel's fabs follow.



Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: