frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

MitM Flaw in Bitchat: Identity Is a Bitchat Challenge

https://www.supernetworks.org/pages/blog/agentic-insecurity-vibes-on-bitchat
7•spr-alex•7mo ago

Comments

spr-alex•7mo ago
bitchat has a trivial MITM flaw with the favorite's identity system. i wrote up my thoughts around vibe coding cryptographic security and rolling a new protocol
NitpickLawyer•7mo ago
Are there any tell-tale signs of vibecoding in the code base? Or are we at the point where we're using it as a pejorative for bad code?
spr-alex•7mo ago
i am not using it as a pejorative here, I am pretty sure that is the case for this code base, as every block has a comment describing the code that immediately follows

also i do not doubt jack's cryptography and encryption understanding, so this particular MitM flaw is almost certainly not what human steering would put together. x25519 APIs makes it both easy and simple to do identity persistence correctly, the code simply doesn't use the identity key cryptographically.

zith•7mo ago
I guess "don't roll your own crypto" is as valid as ever.
31337Logic•7mo ago
I'll stick with Briar, thanks.
d00mB0t•6mo ago
Sounds like a feature and not a bug. 'Secure' but with enough holes for three letter agencies.

Hims and Hers abandons copycat weight-loss drug in face of FDA probe

https://www.ft.com/content/3d4f88e9-33aa-4e1d-81af-ae6954598d63
1•bookofjoe•1m ago•1 comments

Show HN: Claude Code skill that uses Codex as MCP server for code review

https://github.com/pauhu/claude-codex-review
1•pauhu•1m ago•0 comments

The Great Reversal ( OCC and Crypto)

https://www.halogate.io/insights/great-reversal
1•CognitiveBytez•1m ago•1 comments

Show HN: I built a festival tracker that matches lineups to your music library

https://apps.apple.com/us/app/festiveo-music-festivals/id6755355854
1•kirillstyopkin•3m ago•0 comments

Ship Types, Not Docs

https://shiptypes.com/
1•howToTestFE•4m ago•0 comments

RIP Postman free tier. Here's an open-source local-first alternative

https://old.reddit.com/r/webdev/comments/1qyi3wz/rip_postman_free_tier_heres_an_opensource/
1•taubek•7m ago•0 comments

There is no Alignment Problem

1•salacryl•7m ago•0 comments

Hid Remapper

https://github.com/jfedor2/hid-remapper
1•downboots•7m ago•0 comments

Recursive Deductive Verification: A framework for reducing AI hallucinations

1•salacryl•8m ago•0 comments

Bitcoin tumbles below $70K, heavy losses in cryptocurrencies in last three weeks

https://www.bloomberg.com/news/articles/2026-02-05/bitcoin-drops-below-70-000-as-forced-deleverag...
1•heresie-dabord•8m ago•0 comments

Electrobun v1: Build fast, tiny, and cross-platform desktop apps with TypeScript

https://blackboard.sh/blog/electrobun-v1/
2•merlindru•10m ago•0 comments

Why are so many people joining cults? [video]

https://www.youtube.com/watch?v=SfG0PeMS2tQ
1•mgh2•12m ago•0 comments

Apple to Allow ChatGPT, Claude, and Gemini in CarPlay

https://www.macrumors.com/2026/02/06/apple-third-party-chatbots-carplay/
1•geox•12m ago•0 comments

Startup Idea that stops consumers paying the full price

https://shoppyhi.netlify.app
1•daviddahuang•13m ago•0 comments

GitHub Agentic Workflows

https://github.github.io/gh-aw/
1•mooreds•15m ago•0 comments

Exploring hardware-authenticated file encryption in Python

1•Lif28•16m ago•0 comments

Show HN: SEO v3 – Zero-dependency, Simple, powerful PHP SEO library

https://github.com/melbahja/seo
1•exec7•18m ago•0 comments

Show HN: Alerio – Turn Webhooks into Critical VoIP Calls (Overrides Silent Mode)

https://alerio.app/
1•royal-amrah•19m ago•1 comments

A Comprehensive Benchmark for Document Parsing and Evaluation (2025)

https://github.com/opendatalab/OmniDocBench
2•oceansky•20m ago•1 comments

When 20 Watts Beats 20 Megawatts: Rethinking Computer Design

https://smarterarticles.co.uk/when-20-watts-beats-20-megawatts-rethinking-computer-design
1•dxs•23m ago•0 comments

Canadian Province New Brunswick to Quit Using Elon Musk's X

https://www.bloomberg.com/news/articles/2026-02-05/canadian-province-new-brunswick-to-quit-using-...
8•rbanffy•25m ago•1 comments

Heterogeneous Processing: A Strategy for Augmenting Moore's Law (2006)

https://www.linuxjournal.com/article/8368
1•rbanffy•26m ago•0 comments

Show HN: Mvvmm – Firecracker-like mini virtual machine monitor in ~2000 LoC

https://github.com/mistivia/mvvmm
1•mistivia•28m ago•0 comments

Search anything said on a podcast, speaker-labeled and speaker-tracked

https://poddley.com
1•onesandofgrain•29m ago•1 comments

Canada, better the 28th EU member than the 51st US state

https://www.lemonde.fr/en/opinion/article/2026/02/05/canada-better-the-28th-eu-member-than-the-51...
5•u1hcw9nx•29m ago•1 comments

Show HN: Team of agent researchers read things I don't have time to and brief me

https://read-fast.replit.app/
1•thomoliverz•31m ago•2 comments

Show HN: Chaos Agents – Run chaos experiments with Agents

https://github.com/system32-ai/chaos-agents
3•linuxarm64•32m ago•0 comments

Almostnode – Node.js in the Browser

https://github.com/macaly/almostnode
1•ushakov•32m ago•0 comments

Mount Fuji cherry blossom festival canceled due to overtourism

https://www.japantimes.co.jp/news/2026/02/05/japan/japan-mount-fuji-cherry-festival-overtourism/
3•akyuu•34m ago•1 comments

Containers, cloud, blockchain, AI – it's all the same old BS, says RH veteran

https://www.theregister.com/2026/02/08/waves_of_tech_bs/
1•lproven•35m ago•0 comments