Hacker Newsnew | past | comments | ask | show | jobs | submit | WellDressed's commentslogin

I was able to pass four AWS certifications and learning a ton in the process by taking courses on https://acloudguru.com/ and lots of practice on AWS itself.

Highly recommend acloud. I would use them again to re-up my certs as well.


Wow! I'm a lemonade customer and the fact that leadership twice mentions that leaking customer data is by design, is mind-boggling to me. What product owner would suggest such a feature!?

Any recommendations for a replacement?


Tweet from the leadership: https://twitter.com/shai_wininger/status/1392892957787885573

"1/ Let’s set things straight up front: What @muddywatersre found were links to 4 insurance quotes shared by Lemonade users themselves. (aka, they loved it so much, they shared ‘em).

That is not a vulnerability, it’s by design!"

"2/ We designed our quotes to be shareable. If someone wants to send their quote to their family, friends, or mortgage bank, they can. Btw, turns out people post their quotes on Pinterest and UX blogs, and these are the ones they stumbled upon"

"3/ Since Google indexes Pinterest and blogs, these links end up being discoverable on Google."


I don’t get it. It appears that what is being “leaked” is quoted that users are choosing to share publicly on a public web page which then gets indexed by search engines.

What’s the actual vulnerability here?

The only “vulnerability” is the short seller saying that they were able to log into the users account, but if they were able to log into the users account, why were they only able to access their name and quote, information the users had chosen to share publicly, and were not able to access a whole host of other data that would be available if one were able to log in to a users account.


Indoor dining can resume in NY on Sept. 30

* 25% occupancy limit

* All patrons must have temperature checked at door

* One member of each party will be required to provide restaurant with contact info for tracing if needed

* No service after midnight

* No bar service

* Masks must be worn when not seated at a table; tables must be 6 feet apart

* Strict adherence to all State-issued guidance

* Enhanced air filtration, ventilation, and purification standards

https://twitter.com/NYGovCuomo/status/1303744894658371587?s=...


Sites we interact with may become adversarial towards us at any time they see fit. I wish my browser and the extensions I use were sacrosanct and outside the purview of other companies/sites.


Reminds me of the backlash Digg received back in the day.

https://www.theguardian.com/technology/pda/2010/aug/31/digg-...


Yes, this is an important lesson about redesigns. I saw a couple people brush off the Snapchat redesign angst with, "Meh, people will get over it", usually with links to the (admittedly accurate) Oatmeal comic about Facebook layout changes [0]. And while that's certainly the case sometimes, don't count on it as a general rule: Digg demonstrated conclusively that a poorly-received redesign can torpedo the entire company. Proceed with caution.

[0]: http://theoatmeal.com/pl/state_web_winter/facebook_layout


I've set up my own VPN using Streisand [https://github.com/StreisandEffect/streisand] & Google Compute Engine (Micro Instance). When you create an account on Google's Cloud, you get $300 (or used to at least). This instance type is big enough to handle the few devices I connect to it, fairly speedily too.


Is it not feasible that a warrant to Google instantly reveals your identity?


Without a doubt! I'm not too concerned because I'm using it within the USA to access my email, HN, and various other common websites while on public wifi.


Yup, hosting illegal content via a cloud provider is a good way to have your account shut down.


How long does those $300 last you?


The micro instance is (eligible to be) free https://cloud.google.com/free/ so the $300 is an extra (expires after 12 months)


Thanks mtmail! I've yet to pay a dime. I won't mind doing so once it expires though.


I was just going to say that same thing. Unfortunately, the chains of habit are generally to small to feel until they are to hard to break. Even with this change in hardware, how many will change this ingrained habit of theirs?


Living in NYC also, I use Gett mostly and sometimes Juno (due to 30% off limited time promotion). I always ask drivers which service they like. Many do not like Uber or Lyft due to the % they take, compared to Gett/Juno.

Also, I found it interesting that nearly all drivers have multiple cell phones logged into separate services, sometimes Gett and Juno! I wonder what the percentage of drivers Gett will be picking up that were already Juno drivers.


There is nothing wrong with the photo (which is classy). You will find photos like that on Facebook (personal) & Linkedin (professional) profiles.


Hi Wes,

FYI, when I applied the coupon and it registered the reduction to $49 (Masters Package) in the field, but was charged $59 at checkout.


Shoot me an email and I'll get it all fixed up - wes@wesbos.com


Thanks much for the quick reply Wes! You're the best!


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: