frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

Open in hackernews

Wiz hardened, near-zero-CVE base images

https://www.wiz.io/blog/introducing-wizos-hardened-near-zero-cve-base-images
4•dschofie•2h ago

Comments

lysace•2h ago
> The impact was immediate.

> Critical and high CVEs in base images dropped to near zero. Our vulnerability scanners became quieter, with fewer false positives and less noise.

Are there vulnerability scanners that attempt to look for what is actually used, instead of just what is present?

dschofie•2h ago
Definitely! A lot of this falls under the "reachability" umbrella. It's just a little harder to say if something is actually used vs just installed. For example, in your app you could exec a script which can be harder for tools to detect with accuracy and there are just quite a few edge cases to handle
lysace•2h ago
I guess the scanner would need to be provided with runtime data, somehow. I.e. two phases of scanning, before and after deployment. Suddenly it's getting quite complex, especially if you include the security aspects of that scanner running in prod.

David Hilbert's radio address (2014/1930)

https://old.maa.org/press/periodicals/convergence/david-hilberts-radio-address
1•anigbrowl•1m ago•0 comments

LLM inference economics from first principles

https://www.tensoreconomics.com/p/llm-inference-economics-from-first
1•nkko•3m ago•0 comments

Blumenthal, Blackburn, Thune & Schumer Introduce the Kids Online Safety Act

https://www.blumenthal.senate.gov/newsroom/press/release/blumenthal-blackburn-thune-and-schumer-introduce-the-kids-online-safety-act
1•Improvement•3m ago•0 comments

Laser-Induced Graphene from Commercial Inks and Dyes

https://advanced.onlinelibrary.wiley.com/doi/10.1002/advs.202412167
1•PaulHoule•5m ago•0 comments

Consequences of the Moosbauer-Poole Algorithms

https://arxiv.org/abs/2505.05896
1•rbanffy•6m ago•0 comments

The Vibes

https://taoofmac.com/space/blog/2025/05/13/2230
1•swah•6m ago•0 comments

Are the means of computation even seizable?

https://pluralistic.net/2025/05/14/pregnable/#checkm8
1•rbanffy•6m ago•0 comments

They want to climb Everest in a week using an anesthetic gas.

https://www.cnn.com/2025/05/13/travel/climb-everest-one-week-xenon-intl
1•bookofjoe•8m ago•0 comments

Show HN: Family Folder – Help your family remember everything, organise anything

https://www.familyfolder.com
1•tonystaunton•8m ago•0 comments

Predictions of AI progress hinge on two questions nobody has convincing answers

https://voltairesviceroy.substack.com/p/predictions-of-ai-progress-hinge
1•paulpauper•10m ago•0 comments

How to Make a Tribe

https://www.mikesblog.net/p/how-to-make-a-tribe
1•paulpauper•10m ago•0 comments

Nature vs. Nurture vs. Putting in the Work

https://dendwrite.substack.com/p/nature-vs-nurture-vs-putting-in-the
1•paulpauper•10m ago•0 comments

Vorarbeiter is here

https://docs.flathub.org/blog/vorarbeiter-is-here
1•speckx•10m ago•0 comments

McEliece standardization: Looking at what's happening, and analyzing rationales

https://blog.cr.yp.to/20250423-mceliece.html
1•1vuio0pswjnm7•10m ago•0 comments

Ask HN: What's your Windows game development environment?

1•kruuuder•14m ago•0 comments

When Open Source Isn't: How OpenRewrite Lost Its Way

https://medium.com/@jonathan.leitschuh/when-open-source-isnt-how-openrewrite-lost-its-way-642053be287d
2•Jlleitschuh•14m ago•1 comments

Show HN: PicNow – realtime AI image generator

https://www.picnow.ai/
2•brightvegetable•15m ago•0 comments

UTC is Enough for Everyone, Right? (2018)

https://zachholman.com/talk/utc-is-enough-for-everyone-right
1•Tomte•15m ago•0 comments

Signal-free implementation of trains in a simulation game

1•iliketrains•19m ago•0 comments

Show HN: Go Ahead, Give Yourself a Mullet

https://www.mullets.me/
1•grapevine12•20m ago•0 comments

The Joy and Freedom of Working Until Death

https://ritholtz.com/2014/02/the-joy-and-freedom-of-working-until-death/
2•pearlsontheroad•22m ago•0 comments

Building a usage-based billing system

https://www.trychroma.com/engineering/billing
1•jeffchuber•22m ago•0 comments

Elon Musk Needs More Options

https://www.bloomberg.com/opinion/newsletters/2025-05-14/elon-musk-needs-more-options
2•ioblomov•24m ago•2 comments

NASA Observes First Visible-Light Auroras at Mars

https://www.jpl.nasa.gov/news/nasa-observes-first-visible-light-auroras-at-mars/
2•pseudolus•25m ago•1 comments

EToro shares jump in Nasdaq debut

https://www.marketwatch.com/story/newly-issued-etoro-shares-jump-in-nasdaq-debut-its-a-bullish-sign-for-ipos-a579db3c
1•baristaGeek•25m ago•0 comments

The Present and Future of Vibe Coding for Non Developers

https://iamcharliegraham.substack.com/p/the-rise-of-vibe-coding-for-non-developers
1•grahac•27m ago•0 comments

UTF-8 test file (2000)

https://www.w3.org/2001/06/utf-8-wrong/UTF-8-test.html
2•Tomte•28m ago•0 comments

Various Things in MetaPost (2019)

https://habr.com/en/articles/454376/
9•Tomte•28m ago•0 comments

AI headphones translate multiple speakers at once, cloning voices in 3D sound

https://www.washington.edu/news/2025/05/09/ai-headphones-translate-multiple-speakers-at-once-cloning-their-voices-in-3d-sound/
1•rbanffy•29m ago•0 comments

AI and All Humanity Books, Standards and Other Things That Worth It

https://spacefrontiers.org/c
1•pasha_sf•29m ago•1 comments