Meanwhile, the Houthi's are trying to build missile technology with AI. We're only seeing the beginning of the consequences of an over-reliance on AI for military purposes.
I worked at Google datacenters for over a decade. It was a huge ordeal to request running generators because our entire ECS (environment control services) team was geared towards NOT having to run them. I know AWS and Microsoft both have a similar situation. The referenced article just seems like senseless fear mongering.
Nix reminds me of Haskell in a lot of ways. Very interesting research going on in the space of efficient/immutable builds, but somehow still ends up with no real adoption in the broader ecosystem.
Did a Ctrl+F to try and find anything about `.agents/skills` in the release notes. My harness already fixes Claude's refusal here, so I can't tell if that's been supported yet or not. Annoying if they did one without the other.
Tunneling was something that recently fell out of the work I've been doing [1]. I've used Cloudflare Tunnels before but I just have low trust with them recently with how big they are getting. All of these nice things come at the cost of pushing _a lot_ of traffic through their systems.
Reality check - you are not pushing “_a lot_” of traffic relative to any hyperscaler or large scale CDN. They push hundreds of Tbps sustained. You don’t peak at a few Mbps.
They can monitor extreme outliers. It’s not an issue for them.
In hindsight, that was probably a confusing sentence. I was more pointing out how much traffic flows trough their systems which ends up making it an attractive honeypot, especially as a U.S. company.
Sure any centralization of infra is an obvious risk for a myriad of reasons eg DoS, manipulation, honeypots, etc.
But again my point applies - the chances they get enough people using it that it becomes a meaningfully worse security target than lots of other existing things seems … super low.
It’s a big world, people make many choices I can’t understand (nix? Haskell? Php? <flame wars to /dev/null>). Even if this product nailed it - the number of people who can use it is minuscule - yes even as we add Claude-enabled PMs to the software dev ranks.
Alt view with the old saying - “put all your eggs in one basket … and watch that basket!”
Yeah, I don't doubt their infrastructure at all. In fact, I rate them fairly high in terms of reliability and performance. I've honestly been a fan of them for a very long time - it's just I'm watching all of this centralization happen and it sets my Spidey sense off. Like I'm waiting for the other shoe to drop.
The "centralization" which is cloudflare basically running its own walled garden version of the interent (how often do you see a cloudflare page checking if you're human?) is exactly why a lot of people do NOT like cloudflare. And if you've known about CF and its leadership since their inception you'd be even more wary of sticking your stuff over there.
I've migrated many companies off of cloudflare, usually because they end up pissing off companies when a contract renewal comes up and they slam them with massively increased bills and almost useless support if you aren't very high paying enterprise. I don't know how many CF support tickets I've just given up on over the last 15 years, usually related to their admin page, workers or some weird thing their system does that wasn't documented and I just stop getting responses and definitely don't get fixes.
If you ever worked in webhosting the Cloudflare wordpress/etc extensions are everywhere and back when I did work in hosting tons of support tickets were made because of CF. Could be way better now, I don't go near that industry these days.
The casual CF user sticking it in front of a blog they rarely look at and the business forced CF user has a very different experience. I cringe and seriously consider if I'm interviewing for an infra role and they use cloudflare. Usually it's startups that grew into larger businesses.
Given they seem to mostly offer services that are about as easy to switch away from as you could hope for, compared to, say, companies who write loads of CF that only runs on AWS, and I can't imagine why this keeps on being said for Cloudflare specifically. What power do they have?
They see all the traffic in cleartext. Plus you have to trust them not to maliciously alter your traffic. As a US company, their options may be limited if they are coerced by their government to do so.
I doubt that this is how wordy your communication is.
“It consists of a few systems” would be adequate. And if we had prior context about what else exists that surrounds “the substrate” the “substrate itself” distinction would be meaningful, but it’s not, because you are referring to one object, which is the system you built, and I doubt any enzymes act on it, so it’s likely not a substrate.
Cloudflare want you to push traffic through their systems. This is yet another traffic generator to drive up Cloudflare’s leverage when negotiating peering with carriers & service providers, in order to drive down the marginal cost of bandwidth for Cloudflare’s actual product viz. the enterprise DDoS protection.
True. Same reason Hurricane Electric peers promiscuously. I'm surprised more networks don't, to be honest - wouldn't say DTAG prefer that you peer with DTAG than peer with HE upstream of DTAG?
Wrote some of my thoughts somewhat related to this recently [1]. I've simply concluded that its a matter of numbers: the more centralized data becomes the easier it is for the government to coerce access. If the government could obtain the data of a million citizens by coercing or engaging in law fare against one or two companies, it's much easier done. If they had to individually coerce, sue, or otherwise hack into those same million customers, it becomes a lot more expensive and difficult. It sucks that's the way it is, but that's why I think the new internet has to reverse the rules and make authorities more particular about who they track rather than just casting a dragnet across N major providers.
In the very same conference they announced WoW Forever. So whatever it is, it's not necessarily systemic, because they seemed to have nailed that audience.
Spending almost all of my time working on DNTLS (https://dntls.net/). Yesterday I was able to create secure mTLS tunnels over IPv6 for direct P2P to my co-founder's desktop in SE Asia (I'm in the US). He was able to load a website I was hosting locally on my machine. I also tested coordinating through a relay to avoid publishing my public IP and sending all traffic through the relay to hide my IP entirely. We more or less recreated the "old" internet in a way except everything is mTLS and E2E encrypted.
Why does that have to be the only reason? I personally think it has nothing to do with "Hacker" news, but I understand that sentiment has been in the fringe lately with HN becoming increasingly political.
There's a far cry between someone showing off some weird contraption they hacked together versus posting about the Houthi's military campaign. If you can't see that, then I'm not sure what else to say.
Totally, but I didn't say political means everything I said everything is political, which means anything a human does to any extent, tacitly or otherwise, is embedded in a power structure.
reply