frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

Open in hackernews

Show HN: Nightcrawler – A scanner that finds low-hanging fruit while you work

https://github.com/thesp0nge/nightcrawler-mitm
2•thesp0nge•5h ago
Hi HN,

I wanted to share a project I built in a strange but productive pair-programming "trip" with a large language model. The goal was to create my own automated "First Officer"—a tool that handles the tactical grunt work of finding common vulnerabilities while I focus on the strategic, human-led parts of a security assessment.

The result is Nightcrawler, an open-source CLI proxy and scanner built on Python & mitmproxy.

How it works: You run it and browse a target app through it. While you navigate, Nightcrawler passively finds insecure headers, outdated JS, and JWTs, while its active scanners autonomously test every discovered link and form for XSS, SQLi, Directory Traversal, and more.

The development process felt exactly like Captain Picard directing Commander Riker. I'd give the strategic orders ("We need to detect Stored XSS"), and the LLM would execute the tactical implementation. It was incredibly fast, but also highlighted the current limits of AI—it required constant human oversight to fix the subtle bugs and "hallucinations" it introduced.

The tool is still in beta (pip install nightcrawler-mitm). I'd love to get your feedback, bug reports, or ideas on what to build next.

Thanks for checking it out!

Apache Mesos to be moved to Attic – part 2

https://lists.apache.org/thread/d0cob6pp8xkw06qyckzv52nc20n0p7wt
1•janisz•16s ago•0 comments

RAGmate – Local RAG server for JetBrains, now with Git-branch-aware indexing

https://github.com/ragmate/ragmate
1•scream4ik•43s ago•1 comments

Artemis Program

https://en.wikipedia.org/wiki/Artemis_program
1•marklit•8m ago•0 comments

Building resilient multi-tenant systems with Amazon SQS fair queues

https://aws.amazon.com/blogs/compute/building-resilient-multi-tenant-systems-with-amazon-sqs-fair-queues/
1•gregory144•8m ago•0 comments

Standardising OSS Inventorying – New Scanoss Whitepaper

1•scanosss•10m ago•0 comments

Show HN: MiniGameCenter: Play 100 Free Games in One App

https://minigamecenter.com/
1•zhaoyaozu•10m ago•0 comments

Replit's CEO apologizes after its AI agent wiped a company's code base

https://www.businessinsider.com/replit-ceo-apologizes-ai-coding-tool-delete-company-database-2025-7
1•jgalt212•11m ago•1 comments

Show HN: Try Traffic Road – Free, Fast-Paced Car Dodging Game in the Browser

https://trafficroad.run
1•zhaoyaozu•13m ago•0 comments

Optimists Are Alike, but Pessimists Are Unique, Brain Scan Study Suggests

https://www.scientificamerican.com/article/optimists-are-alike-but-pessimists-are-unique-bran-scan-study-suggests/
1•Terretta•14m ago•1 comments

How India's Academic Bank of Credits Is Reshaping Higher Education

https://schezy.com/blog/academic-bank-of-credits-guide
1•qareena•15m ago•1 comments

Solution Architect

1•TAabhijeet•17m ago•0 comments

Nasdaq/Verafin: AI Leader in Financial Crime Prevention

https://verafin.com/artificial-intelligence/
1•techthumb•17m ago•1 comments

First Safe AI-Native Browser

https://neotoday.ai/
1•lhuser123•17m ago•0 comments

Trump Always Chickens Out

https://en.wikipedia.org/wiki/Trump_Always_Chickens_Out
2•nabla9•17m ago•0 comments

Show HN: ToSay v2.0 – Added Expression and Context modes, upgraded AI model

https://howtosay.cc
1•harperhuang•20m ago•0 comments

French petition against return of bee-killing pesticide passes 1M

https://phys.org/news/2025-07-french-petition-bee-pesticide-1mn.html
1•geox•20m ago•0 comments

EU eyes 3rd retaliatory strike against Trump that would hit services

https://www.politico.eu/article/eu-considers-third-retaliatory-strike-against-donald-trump-tariffs-services/
2•saubeidl•23m ago•1 comments

Stargate advances with 4.5 GW partnership with Oracle

https://openai.com/index/stargate-advances-with-partnership-with-oracle/
2•Tinos•25m ago•0 comments

Where have the IMO gold medallists ended up, part four of three?

https://xquant.substack.com/p/where-have-the-international-math-be5
1•nb_quant•26m ago•0 comments

The Prisoner of Benda (The Futurama Theorem)

https://en.wikipedia.org/wiki/The_Prisoner_of_Benda
2•amichail•30m ago•0 comments

Show HN: Dela, a Delegating Task Runner

https://github.com/aleyan/dela
1•aleyan•30m ago•0 comments

Trucking's uneasy relationship with new tech

https://www.bbc.com/news/articles/c5yeyn4gl80o
1•Michelangelo11•31m ago•0 comments

LED-pumped room-temperature solid-state maser

https://www.nature.com/articles/s44172-025-00455-w
1•PaulHoule•32m ago•0 comments

UK Post Office names public inquiry as risk to £410M Horizon replacement

https://www.theregister.com/2025/07/22/uk_post_office_names_public/
1•rntn•32m ago•0 comments

Cloudflare: Subaddressing Support in Email Routing

https://developers.cloudflare.com/changelog/2025-07-21-subaddressing/
1•sexy_seedbox•33m ago•0 comments

The Emerging Problem of "AI Psychosis"

https://www.psychologytoday.com/us/blog/urban-survival/202507/the-emerging-problem-of-ai-psychosis
2•greyface-•35m ago•0 comments

Made-to-order DNA goes big: new tech doubles size of custom genetic sequences

https://www.nature.com/articles/d41586-025-02261-y
1•Bluestein•37m ago•0 comments

The evolution of code review practices in AI

https://packagemain.tech/p/evolution-of-code-review-practices-code-rabbit
1•der_gopher•39m ago•0 comments

Discount Agent finds the product you want – at the price you want

https://www.discountagent.co/
1•Damjanski•42m ago•0 comments

Detecting code copying at scale with Vendetect

https://blog.trailofbits.com/2025/07/21/detecting-code-copying-at-scale-with-vendetect/
1•gpi•42m ago•0 comments