back
user profile
ronbenton
2,022karma·354submissions·February 3, 2025
about
Bay Area
recent activity (354 total)
comment
With all the layoffs happening in my company, I’ll take at least a bit of being valued right now
comment
Always great seeing this high quality work coming out of government. Sad to see it being shut down.
comment
Yes my company is also clearly aiming for attrition through resignation rather than layoffs/severance
comment
Reminds me of Lord Farquaad "Some of you may die, but that is a sacrifice I am willing to make." Anyways, this is all very much in line with the market souring for tech workers. We won'…
comment
Airbnb is really bad about this. Advertising lodging for $100 and then suddenly when you go to book there's an additional $100/night of fees.
comment
>Even companies with near-infinite resources (like Apple and Google) made trivial “worst practice” security mistakes that put their customers in danger. Yet we continue to rely on all these product…
comment
The whole isomorphic framework trend has always scared the poo out of me. I feel like it's just asking for security issues. For people who commonly use these frameworks -- is it common to have is…
comment
All of them made out of balsa wood yet have 10,000 5-star reviews. It’s a joke
comment
But besides those things, it's great! Seriously though I think Microsoft has mostly given up on the B2C market. They have good capture of B2B with hardware and software. Why make great products w…
comment
I actually do have some websites blocked on my iphone using the "block adult websites" feature
comment
Yes this is what I was thinking too. Everyone’s “must have” features will be different. Once we add them all, we’ll be looking at an iPhone.
comment
A dumb phone with good camera, texting, etc seems like a good product idea. Has it been done?
comment
This is a wild vuln in how trivial it is to execute. But maybe even wilder is the timeframe to event _start_ triaging the bug after it was reported. How? Was it incorrectly named? Was the severity not…
comment
My biggest concern about these so-called “isomorphic frameworks” is they’re trying to abstract away the server/client distinction. I don’t see how that doesn’t result in tons of security bugs. Or…
comment
Oh my word: The exploit involves crafting HTTP requests containing the malicious header: GET /protected-route HTTP/1.1
Host: vulnerable-app.com
x-middleware-subrequest: true So... just addin…
comment
I am concerned it took over 2 weeks to start triaging a security bug along the lines of "auth can be bypassed"
comment
The West In the Americas, United States, and Canada: Russia should use its special services within the borders of the United States and Canada to fuel instability and separatism against neoliberal glo…