frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

Open in hackernews

A beginner's guide to constant-time cryptography

https://www.chosenplaintext.ca/articles/beginners-guide-constant-time-cryptography.html
5•susam•1d ago

Comments

8organicbits•1d ago
This is a good overview, but I think some more actionable advise would be helpful, especially given the beginner audience.

Following the API key example, I'd usually hash these when storing them in the database. This side steps the issue, as hashing the attacker's guess doesn't leak any timing information about the secret. The final string comparison (hash_guess == hash_expected) will leak timing information about the hash of the API key, but that doesn't leak information about the un-hashed API key.

Interestingly, there are lots of frameworks that use timing-sensitive checks. Django, for example, uses timing-sensitive look-ups [1]. Building a practical attack could yield a trove of bug bounties...

[1] https://code.djangoproject.com/ticket/31412

Corel Vector (former Gravit) will be discontinued

1•adibalcan•38s ago•0 comments

Something is wrong w tRPC and NextJS dx

1•koolyy•46s ago•0 comments

Show HN: Dashboard to measure the growth of nature-based carbon removal

https://nbs.cdr.fyi/
1•cdr_fyi•1m ago•0 comments

The Myth of AGI

https://www.techpolicy.press/the-myth-of-agi/
2•cratermoon•7m ago•0 comments

FLUX.1 Kontext —Context-aware image generation and editing tools

2•AllenRen•8m ago•0 comments

V3: First Public Post-Quantum KEM Covering All 12 PQC Compliance Criteria

https://zenodo.org/records/15584950
1•TomIRN•8m ago•1 comments

Why is Marcella Hazan's tomato sauce the best sauce I have ever had? (2022)

https://old.reddit.com/r/Cooking/comments/zerjbe/comment/iza1uye/
1•Tomte•8m ago•0 comments

FAA demands an investigation into SpaceX's latest out-of-control Starship flight

https://phys.org/news/2025-05-faa-demands-accident-spacex-latest-1.html
1•rbanffy•9m ago•0 comments

Should I still use analytics?

https://martinfowler.com/articles/202506-whither-analytics.html
1•ingve•12m ago•0 comments

Show HN: Kontext AI – In-Context Image Generation and Editing with FLUX.1

https://kontextai.run
1•Sawana•14m ago•0 comments

Apple could remove AirDrop from EU iPhones as battle heats up

https://9to5mac.com/2025/06/03/apple-could-remove-airdrop-from-eu-iphones-as-legal-battle-heats-up/
1•rcarmo•16m ago•1 comments

Meta Aims to Fully Automate Ad Creation Using AI

https://www.wsj.com/tech/ai/meta-aims-to-fully-automate-ad-creation-using-ai-7d82e249
1•bookofjoe•17m ago•1 comments

U.S. platform films a UFO in the Middle East [video]

https://www.youtube.com/watch?v=QSMY0dhZtCg
1•keepamovin•17m ago•0 comments

Hacker House in Bali August/September

https://balifoundervilla.com/
2•sophiedefauw•20m ago•1 comments

Greenland's mega tsunamis: direct observation of trapped waves that shook world

https://phys.org/news/2025-06-greenland-mega-tsunamis-shook-world.html
2•pseudolus•20m ago•0 comments

Builder.ai Collapses: $1.5B 'AI' Startup Exposed as 'Indians'

https://www.ibtimes.co.uk/builderai-collapses-15bn-ai-startup-exposed-actually-indians-pretending-bots-1734784
3•healsdata•20m ago•0 comments

The Tech Recruitment Ruse That Has Avoided Trump's Crackdown on Immigration

https://www.propublica.org/article/trump-immigration-h1b-visas-perm-tech-jobs-recruitment
3•burkaman•20m ago•0 comments

Gibbs-randomness proposition for energy efficient deep learning

http://science-memo.blogspot.com/2025/06/compressive-algorithmic-randomness.html
1•northlondoner•21m ago•1 comments

The Newsvendor Model and Apparel

https://varietyiq.com/blog/news
2•efavdb•22m ago•0 comments

The Kybalion (A Study of the Hermetic Philosophy of Ancient Egypt and Greece)

https://en.wikipedia.org/wiki/The_Kybalion
1•Bluestein•22m ago•0 comments

AI 'vibe coding' startups burst onto scene with sky-high valuations

https://www.reuters.com/business/ai-vibe-coding-startups-burst-onto-scene-with-sky-high-valuations-2025-06-03/
1•abe94•23m ago•0 comments

Most people who buy your game won't play it

https://howtomarketagame.com/2025/06/03/most-people-who-buy-your-game-wont-play-it/
2•lylejantzi3rd•24m ago•1 comments

Show HN: GribStream – Query Weather Forecasts Like a Database

https://gribstream.com/video?fromTime=2024-10-08T00:00:00Z&UntilTime=2024-10-12T00:00:00Z&name=WIND&level=80%20m%20above%20ground&info=&scaleMin=0&scaleMax=40&fps=6
3•ElPeque•29m ago•2 comments

Minimum x86-64 Machine Code (in Hex) for SmithForth core (2022)

https://dacvs.neocities.org/SF/SForth220711dmp.txt
1•peter_d_sherman•29m ago•1 comments

Show HN: Cognee – Open-Source AI Memory Layer That Remembers Context

https://github.com/topoteretes/cognee
3•vasa_•32m ago•0 comments

Schneider says US grid will be less stable by 2030 as datacenter demand rises

https://www.theregister.com/2025/06/03/schneider_electric_says_us_grid/
2•rntn•34m ago•1 comments

Ukraine's Drone Strikes Against Russia Could Become the Global Norm

https://time.com/7290551/ukraines-drone-strikes-against-russia-could-soon-become-the-global-norm/
2•prmph•34m ago•3 comments

Dragon drone uses thrust vectoring to carry objects

https://newatlas.com/drones/dragon-drone-spidar-university-of-tokyo/
2•speckx•36m ago•0 comments

Meta signs a 20-year agreement to buy nuclear power from Constellation Energy

https://www.cnbc.com/2025/06/03/meta-signs-nuclear-power-deal-with-constellation-energy-.html
1•mpweiher•36m ago•0 comments

The Presidential budget proposal is a death sentence for NASA

https://badastronomy.beehiiv.com/p/trump-threatens-to-eviscerate-nasa-cb96
4•xqcgrek2•38m ago•0 comments