Hacker Newsnew | past | comments | ask | show | jobs | submit | jwcacces's commentslogin

Man, it's going to be great when this gets adapted to make sure I'm looking into the screen at all the ads I'm required to watch, or when it complies a report of whether or not I'm paying attention to my boss in an all-hands...


Others are already trying to do this https://arxiv.org/abs/2504.06237. I haven't seen anyone take the approach I tried though, as most uses cases focus on tracking the main user rather than others around.


Article links to a library for that but says the licence didn't suit this project.

https://github.com/rehg-lab/eye-contact-cnn


The old LaserJet was jamming because you neglected to perform even the most basic maintenance. If you'd gotten it a new set of rollers (they were designed to be replaced), it would be happily printing today.


But with without design docs, how will my hordes of low cost contractors know what to do?


What? Tires are the way cars touch the road. If you're slowing down from engine breaking or from friction breaking, the force between the tires and the road will be the same. It's not like engine breaking has some alternative connection to the road.

And that says nothing about the fact that EVs use regenerative breaking, where the motors turn that kinetic energy into electricity to charge the battery, slowing things down with the friction breaks.


The beetle crawled to freedom through five hundred yards of shit-smelling foulness I can't even imagine. Or maybe I just don't want to. The length of five football fields. Just shy of half a mile. I guess it comes down to a simple choice. Get busy living or get busy dying.


For anyone wondering apparently this is a play on a quote from Shawshank Redemption, (I've never seen the movie!)

https://www.imdb.com/title/tt0111161/characters/nm0000151


Dude put down whatever you are doing and watch that movie right now!


Why!


I've watched a fair number of movies (100's, maybe even 1000+), that one easily sits in my top 20. Definitely recommended. And afterwards, the Count of Monte Cristo...


Because it’s a friggin’ masterpiece, that’s why.


Impossible not to read in Morgan Freeman's voice. This might be the best comment I have ever seen on HN. Thank you.


Thanks! This beetle reminded me of Andy Dufresne as well! What a champion of survival this little creature is!


That person was also referenced in the videogame Trover Saves the Universe:

https://www.youtube.com/watch?v=GtiqS1l_SbM Very NSFW language.

Hilarious, foul and disgusting coprophilia .. "back magic".


Four figures for an operating system license? > $1000? Really? Per computer, for just that version of Windows? Can you explain how that could be worth it?


I also find these "features" despicable, however in Sonicare's case this one is mostly benign.

I also have a Sonicare toothbrush, and other then the head it came with, I only use generic heads on it. The "feature" you are talking about is called the "BrushSync" and it enables the "Brush head replacement reminder". That feature doesn't activate with generic heads, and you can easily turn it for Sonicare heads. Here's a link to the manual for my brush. See page 11 for the feature description and 12 for the instructions to turn it off. Depending on your model you may need to do a different sequence.

https://www.manualslib.com/manual/1507567/Philips-Sonicare-P...

Now, you might say that without reminders, I'm not getting the clean I deserve, but I buy heads with those fade away indicator bristles, so I just change it out when the blue turns white.


Thanks!


I have that bell, it makes a beautiful sound. It's not quite loud enough, but it's real problem is that its spring is the only thing holding the striker on, and that gets bent out of shape way too easily.

Plus it was way too expensive for being a bell...


Hi! I wrote the post. I agree. I got a $3 bell later (kinda like a hamburger) and it lasted forever. The beautiful bell may go on a sophisticated city bike distant in my future. (Oh, also, Knog replaced it.)


I have it on one bike, have the same issues. The stamped metal bells (Incredibell) with a plastic base are louder, are cheaper and are easier to actuate and are sturdier.


To give an alternative opinion, as someone who has come to see a commute as a complete waste of my time, and also as someone who has spent a long time contemplating the nature of my relationship to work in general, I did not feel condescended by the that post.

I saw each those descriptors separately, able to appeal to those they resonated with. And honestly, the characterization of "working to get paid and not investing beyond what is necessary" is not a deprecation of me, my attitude, or the balance I've struck.

I can understand if that specific sentiment does not resonate with you, but for me, I've come to feel accepting and happy with the ideas that: my work is purely in exchange for money, it is not my identity, and that once I've put my part in, I want to use my time and energy towards the other things that make me happy.

I'm not saying I don't get great joy and satisfaction out of my hard work and coworker relationships, I really do. For me, that comes with: "This is my task, and when I've satisfied it, that's all I'm interested in doing". However what really brought peace to my mind was incorporating: "And that's OK." into my outlook. "I do not care to invest myself beyond that" is not a characterization I feel the need to be ashamed of. Perhaps it's hubris on my part, but I'm proud of the push back that I feel entitled to give, and I'm proud to say "this is the limit of my investment in work".


Looks like the perfect place to fake some browser chrome and trick people...

https://www.theregister.com/2017/01/19/browser_line_of_death...


I think you'll only get access to this API if the user has explicitly installed your app as a PWA, not just when visiting it as a webpage.


And then a shady company offers to buy the owner's website...


That’s a real problem, of course, but it seems fairly equivalent to any native app you install that can update itself or otherwise make a network request to obtain instructions.


Native apps that autoselfupdate have RCE vulnerabilities by definition and should be considered remote access malware already, before the developer release keys are compromised.

I am the reason Signal desktop now has a preference to opt out of autoupdate.


"It won't happen to me."


I agree with you. On the other hand, in the case of a native application, we can hope that the antivirus removes it. I hope that Microsoft has planned to update Defender accordingly.


Unlike the native app you probably won't have to worry about web page encrypted your files and asking a ransom.


For now


JavaScript malware has been a thing for a while now, and antiviruses have been targeting it accordingly.


It's not necessarily a JavaScript malware. A pure HTML page with a <form> tag could suffice to steal credentials.


XSS will mean that attackers control browser UI, that's kind of bad


Bad ? I thought that was a feature. "Want to change your browser behaviour ? Just put this CSS in user.js".


That was my first thought as well, but I couldn't remember the name for that boundary. I hope there is a well-designed per-site control/setting/user consent system to keep tech support scam sites (or worse!) from adding one more tool to their arsenal.


I’ve seen it called “The Line of Death”

https://textslashplain.com/2017/01/14/the-line-of-death/


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: