Skip to main content



首先说利息的问题。目前3-4%的30年贷款是获得资本最便宜的方式了。对职业房产flipper来说,如果做hard money lending,利率一般在9%一年,home equity loan和小额贷款利率也大大高于房贷。特别是如果你是通过upgrade自住房的方式去买入新的房产,每个贷款都可以是primary home,无疑又减少了成本。再说收益,目前美国的通货膨胀目标是2%一年,还是没有考虑因为疫情大规模印钱的情况下。并且,市场上可以以我认为基本没有风险的方式,去获得好于4%一年收益的投资还是挺多的。比如政府的general obligation bond,利用居民的交税作为担保,46年来的违约率在0.003%。目前最高可以到4.3% yield,哪怕纽约州的之前看都有3%,还不用交联邦税,等效税前收益更高。或者投资比如高盛对标INDU / SPX / NDX指数的结构化债券,只要纳斯达克,标普和道琼斯不跌超过50%就不损失本金,一年9%收益,当然潜在风险是高盛倒闭。再不济存款 money market收益都有1.8%。当然风险承受能力每个人不同,个人不把标普长期看跌50%作为高风险。对于风险的考虑我觉得需要有个界限,就好比你不需要过度担心世界末日一样。如果真要防止黑天鹅,不如采用黑天鹅这个词的发明者,塔勒布的投资思路,契而不舍地投资一些小概率事件,但是一旦发生就会有大幅受益,用来对冲你的主要投资。





Popular posts from this blog

CKA Simulator Kubernetes 1.22 Pre Setup Once you've gained access to your terminal it might be wise to spend ~1 minute to setup your environment. You could set these: alias k = kubectl                         # will already be pre-configured export do = "--dry-run=client -o yaml"     # k get pod x $do export now = "--force --grace-period 0"   # k delete pod x $now Vim To make vim use 2 spaces for a tab edit ~/.vimrc to contain: set tabstop=2 set expandtab set shiftwidth=2 More setup suggestions are in the tips section .     Question 1 | Contexts Task weight: 1%   You have access to multiple clusters from your main terminal through kubectl contexts. Write all those context names into /opt/course/1/contexts . Next write a command to display the current context into /opt/course/1/ , the command should use kubectl . Finally write a second command doing the same thing into ...

OWASP Top 10 Threats and Mitigations Exam - Single Select

Last updated 4 Aug 11 Course Title: OWASP Top 10 Threats and Mitigation Exam Questions - Single Select 1) Which of the following consequences is most likely to occur due to an injection attack? Spoofing Cross-site request forgery Denial of service   Correct Insecure direct object references 2) Your application is created using a language that does not support a clear distinction between code and data. Which vulnerability is most likely to occur in your application? Injection   Correct Insecure direct object references Failure to restrict URL access Insufficient transport layer protection 3) Which of the following scenarios is most likely to cause an injection attack? Unvalidated input is embedded in an instruction stream.   Correct Unvalidated input can be distinguished from valid instructions. A Web application does not validate a client’s access to a resource. A Web action performs an operation on behalf of the user without checkin...