Hacker Newsnew | past | comments | ask | show | jobs | submit | bobross's commentslogin

VPN browser extensions are merely proxies and most likely will leak you IP/privacy. I've written a blog post on this topic: https://blog.innerht.ml/vpn-extensions-are-not-for-privacy/


I love the concept and the user interface very much!


Any tips for people like me who have flat feet?


Watch a few videos under the search results for "foot arch PT" and "foot arch massage", like this one

https://www.youtube.com/watch?v=2AwRK3js5dg



If it's causing serious problems, talk to a real doctor, not armchair doctors on HN (or reddit).


Stop believing that you have a severe deformity and just walk. It's part of the scope of human phenotypes and harmless.


Yep. Stop watching all sorts of advice from your chair. I have been hiking for many years now at ca. 2000 km per year. The body simply optimizes itself in time for all but very few people. A little adjustment might be necessary for particular cases, but you will figure this out finally yourself.

But the highest priority by far remains doing the basic things. Regularly - in any weather in this case - without excuses. That is the core. All other issues are premature optimizations (or to be clear, no optimization at all)


Clickjacking works without JavaScript assuming the targeted site works without JavaScript. HTML and CSS suffice.


I want to believe you, but the only example I found doesn't work.


To me Likejacking is more like harvesting organic likes. And YOLO leaks email address which is PII.


No, it was the full email. Besides, I've tried to suggest a fix by prompting first time users but it's been ignored for a week.


Actually Google temporarily shuts down the service as I've tried changing API keys/domains but received the same error


A lot of Google employees are reading HN and actively posting so no surprise. Did they at least contacted you to properly open a ticket now that they implicitely recognized the vulnerability? Otherwise very very dickish move as it solve nothing and you basically worked for free...


Nothing


And now if anybody from HN team is listnening. Can you explain why this thread is fastly slipping from the front page?

Currently it’s being devanced by articles that are olders, with less upvote and fewer comments. Can you guarantee that nobody is able manipulate ranking? It’s only a hunch, but it’s not the first time that I notice that google related "bad buzz" move away from main page slightly faster than other...

PS: I’ll gladly accept downvotes. But answers on why I’m wrong or paranoid would have been better


There appear to be quite a few flags on the article pushing it down. The ratio of upvotes to age compared to the rest of the front page is a strong indicator of this.

Also: lots of HN'ers work at google. It would be a nice rule if people were told to abstain from using their flagging privileges when the company they work at is the subject of a thread.


Thanks a lot for investigating. Otherwise I could’nt have excluded that it was only me being paranoid about that.


It looks like the situation has mostly corrected itself by now.


Power corrupts. Absolute power corrupts absolutely. Absolute power hates when it is challenged in any shape or form


It's probably because a lot of Google folks are on here - protecting their brand. Unfortunately that part isn't transparent, but its hopefully a minor issue.


HN has moderation, so some stories can be pushed back into the /New stack by staff, they can fall again if aren't liked by the community


Although I don't think this is some sort of conspiracy, HN front-page is curated content, ranking is not only based on votes.


Flags are a factor, and function as downvotes on articles but are much heavier weighted than upvotes.


Ho do I hack into google I'm a kid and I want to make it say giberish instead of Google


does anyone know?


You could still convince users to do a double click, no?


Honestly a decent sized chunk of users that I support double click most things anyway.

A large chunk of the user base doesn't know the functional difference between icons, hyperlinks and buttons.


Given that a large chunk of the web creator base seem to use these interchangeably nowadays, the confusion is unsurprising.


Unfortunately that is true, and it's really bad for accessibility too (using links as buttons, but not coding the keyboard events that are used on buttons, for example.


Well, yes; you double-click the play button to play the video/iframe. I'd be more worried about "Oh, the button did nothing, I should try again.". The real fix is to not allow transparency/compositing.


My dad double clicks everything. So yeah its super easy


This is what you would see if it still worked:

https://twitter.com/LiveOverflow/status/994560352149999616


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: