frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

The Security of Ephemeral Pages

https://schalkneethling.com/posts/the-security-of-ephemeral-pages/
1•speckx•1m ago•0 comments

StepStone: LLM-Based GPU Kernel Driver Fuzzing via User-Space Libraries [pdf]

https://www.cs.ucr.edu/%7Ezhiyunq/pub/oakland26_gpu_fuzzing.pdf
1•matt_d•1m ago•0 comments

GitHub Says 3,800 Repositories Breached

https://www.forbes.com/sites/daveywinder/2026/05/20/github-says-3800-repositories-breached-teampc...
1•sholas•2m ago•0 comments

2026 Layoffs Tracker (WSJ)

https://www.wsj.com/economy/jobs/layoffs-2026-tracker-784ea69f
1•cwwc•2m ago•0 comments

Tor v3 .onion addresses are the same Ed25519 pubkey as Solana wallets

https://ouija.social/directory
1•notstacc•4m ago•0 comments

The Book of Mozilla

https://en.wikipedia.org/wiki/The_Book_of_Mozilla
1•TheSilva•5m ago•0 comments

The Internet can't stop watching Figure AI's humanoid robots handling packages

https://arstechnica.com/ai/2026/05/the-internet-cant-stop-watching-figure-ais-humanoid-robots-han...
1•Brajeshwar•5m ago•0 comments

The Hardware Lottery

https://hardwarelottery.github.io/
1•intelkishan•7m ago•0 comments

Show HN: We wrote forensic intelligence reports on 20 open-source codebases

https://github.com/zero-intelligence/zero-intel
1•DhruvKumarJha•7m ago•0 comments

The surprising story behind the first British person in space

https://www.bbc.com/culture/article/20260518-helen-sharman-the-story-behind-the-first-british-per...
2•xoxxala•8m ago•0 comments

Newborns' cry melody is shaped by their native language

https://pubmed.ncbi.nlm.nih.gov/19896378/
1•thunderbong•10m ago•0 comments

My Hermes and Obsidian Setup and Use Cases

https://metedata.substack.com/p/013-my-hermes-and-obsidian-set-up
1•young_mete•10m ago•0 comments

Show HN: Lance – image/video generation and understanding in one model

https://github.com/bytedance/Lance
2•cleardusk•10m ago•0 comments

You never learned to delegate. AI just made it obvious

https://jeroensangers.com/2026/05/18/you-never-learned-to-delegate.html
1•speckx•10m ago•1 comments

What do you think of my new website?

https://www.movingcompared.co.uk
1•ty00001•11m ago•0 comments

I built 2k badges for Replay and I'm not sure I've slept since December

https://temporal.io/blog/badges-for-replay-and-i-havent-slept-since-december
1•raybb•12m ago•1 comments

LightSolver Partners with Boeing

https://www.photonics.com/Articles/LightSolver-Partners-with-Boeing/a72200
1•ramon156•12m ago•0 comments

Show HN: Zero Protocol – A personal context file for AI

https://github.com/zero-intelligence/zero-protocol
2•DhruvKumarJha•13m ago•0 comments

U.S. PV manufacturing capex could reach $7B in 2027 in breakout year

https://www.pv-magazine.com/2026/05/20/u-s-pv-manufacturing-capex-could-reach-7-billion-in-2027-i...
2•ndr42•13m ago•0 comments

Show HN: Chatroom with curl command (requires IPv6)

https://chat.est.im/ai/hackernews
1•est•15m ago•0 comments

Career coach based on psychological tests (desktop,BYOK)

https://yggdra.garden/
1•teslavr•15m ago•0 comments

SBCL: The Assembly Code Breadboard (2014)

https://pvk.ca/Blog/2014/03/15/sbcl-the-ultimate-assembly-code-breadboard/
1•yacin•16m ago•0 comments

From Skills Back to Tools: Why Our Dashboard Assistant Moved Off the Claude Code

https://blog.promptlayer.com/from-skills-back-to-tools-why-our-dashboard-assistant-moved-off-the-...
1•jonpon•16m ago•0 comments

StrangerLoops

https://strangerloops.com
1•alanbotts•16m ago•0 comments

The brain's code seems to be in constant flux. Neuroscientists are baffled

https://www.nature.com/articles/d41586-026-01554-0
3•Brajeshwar•19m ago•0 comments

AI-generated abandonware is hollowing out open source

https://leaddev.com/software-quality/ai-generated-abandonware-is-hollowing-out-open-source
2•chhum•21m ago•0 comments

Chat client for Meshtastic LoRa mesh networks in Emacs

https://git.andros.dev/andros/meshtastic.el
2•andros•22m ago•0 comments

Localgcp: LocalStack for GCP, emulating 14 Google Cloud services locally

https://github.com/slokam-ai/localgcp
1•linkdd•22m ago•0 comments

How much should we worry about secretly loyal AIs?

https://www.the-substrate.net/p/how-much-should-we-worry-about-secretly
2•erwald•27m ago•0 comments

Digitally stuck on an island with 30 people

https://isle31.com/
1•vincentlenoach•27m ago•0 comments
Open in hackernews

Proposal: Add bare metal support to Go

https://github.com/golang/go/issues/73608
85•rbanffy•1y ago

Comments

Someone•1y ago
FTA:

  // printk emits a single 8-bit character to standard output
  //
  //go:linkname printk runtime.printk
  func printk(c byte)
So, printing “Hello, world!”, necessarily will have to make 13 calls to this function. I think I would have required a printk that prints an array of bytes. I expect that can be significantly faster on lots of hardware.

In contrast, there’s

  // getRandomData generates len(b) random bytes and writes them into b
  //
  //go:linkname getRandomData runtime.getRandomData
  func getRandomData(b []byte)
Here, they seem to acknowledge that it can be faster to make a single call.
jeroenhd•1y ago
The method for printing uses an Intel UART driver to print characters. AFAIK, the standard low level UART generally only does single character transfers unless you write a (relatively) complex driver.

Rendering per string is better per string, but I'm not so sure how bad the difference is when it comes to UART but I doubt the system has enough throughput for the first implementation to matter.

90s_dev•1y ago
I wonder if this is related to that bare metal bios os post from a week or so ago. I asked the author why he used tty asm calls to print instead of calling int 10 directly and he said it was more efficient, but for different reasons.

https://news.ycombinator.com/item?id=43873822

Someone•1y ago
> The method for printing uses an Intel UART driver to print characters

The spec (rightfully) says “(e.g. serial console)”, not “Intel UART driver”.

You cannot know what bare metal you’re running on. On some hardware it could be sending data out over Bluetooth, USB or WiFi because that’s the only connection to the outside world.

ronsor•1y ago
Arguably `printk(c byte)` should be `printck(c byte)`, and there should be a separate `printk(s []byte)` that handles an array of bytes.

If `printk` isn't implemented, then fall back to repeated calls of `printck`.

lcarsip•1y ago
printk is the low level primitive for stdout printing and it's done this way as low level drivers generally only accept single characters.

There are upper level functions which simply takes a []byte and make fmt.Printf() work seamlessly and effectively when not printing on an UART that only takes a single character as output.

In TamaGo stdout is primarily used for debugging.

timewizard•1y ago
> Here, they seem to acknowledge that it can be faster to make a single call.

It calls the internal Fill function to fill 4 bytes of the slice at a time. That calls the rng assembly stub function which uses 'rdrand' to get 32bits of random data. Which gets called len(b)/4 times.

I don't think they did it for speed but rather to be more idiomatic.

Anyways, OSDev has had a "Go Bare Bones" page for quite a while:

https://wiki.osdev.org/Go_Bare_Bones

jasonthorsness•1y ago
We use 'scratch' containers for many of our Go applications, so they have no user-space stuff other than our application binary. It reduces exposure for security vulnerabilities. This proposal seems to be taking that approach to the extreme - not even a kernel. Super-interesting; I wonder if it could run on cloud VMs? How tiny could the image become?
jasonthorsness•1y ago
Looks like Tamago targets multiple VM runtimes https://github.com/usbarmory/tamago?tab=readme-ov-file
veggieroll•1y ago
How do you handle temp file space, timezone data, and other things that a minimal image provide?
kfreds•1y ago
Temp file space: Use RAM, or talk to host storage over Virtio.

Timezone data etc: You would have to fetch that over the network, or from a metadata API such as the one Firecracker provides to VM guests.

fpoling•1y ago
Services rarely need timezone done. So if one is OK with supporting only UTC, Go runtime works fine without any timezene data.

We use a minimal image to run in on AWS Nitro VM and it contains only kernel, init.d, the Go application file and TLS certificate roots with the root filesystem mounted over tmpfs.

Note that Nitro VM uses a custom kernel provided by AWS so the new proposal is not relevant for us. But if we could run Go directly in that VM, it will surely makes things faster and saves like 10% memory overhead. And it will also avoid OOM killer and few other bad unwanted interactions between Go runtime and Linux kernel memory management.

champtar•1y ago
For timezones data go already has https://pkg.go.dev/time/tzdata
kfreds•1y ago
> This proposal seems to be taking that approach to the extreme - not even a kernel.

To be fair, there is a kernel - the Go runtime. But since there is no privilege separation it classifies as a unikernel. Performance gains should be expected compared to a system where you have to copy data to/from guest VM kernel space to guest VM user space.

> I wonder if it could run on cloud VMs?

Yes. TamaGo currently runs in KVM guests with the following VMMs: Cloud Hypervisor, Firecracker microvm, QEMU microvm.

> How tiny could the image become?

Roughly the same size as your current Go binary. TamaGo doesn't add much.

ignoramous•1y ago
> To be fair, there is a kernel - the Go runtime.

I like Anil Madhavapeddy's definition for such setups. A compiler that just refuses to stop:

  MirageOS is a system written in pure OCaml where not only do common network protocols and file systems and high-level things like web servers and web stacks can all be expressed in OCaml but the compiler just refuses to stop ... compiler, instead of stopping and generating a binary that you then run inside Linux or Windows, will continue to specialize the application that it is compiling and ... emit a full operating system that can just boot by itself.
https://signalsandthreads.com/what-is-an-operating-system / https://archive.vn/yLfkq
eyberg•1y ago
Cloud vms are a main target for unikernels, however, as Russ mentions in one of the linked issues there actually is quite a lot of other code you need to include in your system depending on what you are deploying to.

For instance systems with arm64 might need UEFI or if you enable SEV now you need additional support for that which is why I'd agree with Russ's stance on this.

Every time someone asks us to provide support for a new cloud instance type (like a graviton 4 or azure's arm) we have to go in and sometimes provide a ton of new code to get it working.

kfreds•1y ago
I assume you're referring to this[1]. I don't think it's necessary to bring all of that into the Go runtime itself, or ask the Go team to maintain it. It would be part of your application, and similar to a board support package.

TamaGo already supports UEFI on x86, and that too would be part of the BSP for your application, not something that would need to be upstreamed to Go proper. Same for AMD SEV SNP.

As for you (nanovms) supporting new instance types, wouldn't it be nice to do that work in Go? :)

Edit: I wonder how big the performance impact would be if you used TamaGo's virtio-net support instead of calling from Go into nanos.

advanderveer•1y ago
I would be interested in this if it enabled deterministic simulation testing for the Go programming languages. There have been some efforts in this area but with little success.
rcarmo•1y ago
I use TinyGo, and it does that job well. Not sure if it’s necessary to mainline it.
lcarsip•1y ago
TinyGo targets an entirely different class of systems and is not something that can be upstream being a different compiler, see https://github.com/usbarmory/tamago/wiki/Frequently-Asked-Qu...