frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Hledger 1.50

https://github.com/simonmichael/hledger/releases/tag/1.50
1•olexsmir•3m ago•0 comments

Have TikTok and Booking.com just 'nuked' the travel funnel?

https://www.phocuswire.com/tiktok-booking-social-media-hotels-distribution
1•nocoder•3m ago•0 comments

The Great Bitnami BSI Shift: What the New Costs and Licenses Mean for End Users

https://iits-consulting.de/blog/the-great-bitnami-shift-what-the-new-costs-and-licenses-mean-for-...
1•oweiler•8m ago•0 comments

Show HN: I built a tool that turns cryptography papers into working Python code

https://paperstoapp.com
1•bowtieditaliano•12m ago•0 comments

Show HN: Prototyper – AI design platform with its own compiler and runtime

https://www.getaprototype.com
1•thsvrrck•12m ago•0 comments

From Zero to GPU: A Guide to Building and Scaling Production-Ready CUDA Kernels

https://huggingface.co/blog/kernel-builder
1•danieldk•15m ago•0 comments

What Does It Take to Build a Winning Sports Betting App?

https://www.slavnastudio.com/sports-betting-app-development
1•Anton_vasiliiev•19m ago•1 comments

Rivian CEO: 'blows my mind' to see US auto makers shifting back to ICE vehicles

https://www.businessinsider.com/rivian-ceo-us-investment-internal-combustion-engines-gas-vehicles...
5•heresie-dabord•21m ago•0 comments

I Improved My Rust Compile Times by 75%

https://benw.is/posts/how-i-improved-my-rust-compile-times-by-seventy-five-percent
1•semv3r•25m ago•0 comments

The Color of the Future: A history of blue

https://www.hopefulmons.com/p/the-color-of-the-future
8•prismatic•31m ago•0 comments

Scott/tiger – the default login/pass for Oracle

https://community.spiceworks.com/t/the-story-behind-scott-tiger-the-default-login-pass-for-oracle...
2•rbanffy•35m ago•0 comments

Jujutsu v0.33.0 Released

https://github.com/jj-vcs/jj/releases/tag/v0.33.0
2•todsacerdoti•35m ago•0 comments

VibeVoice: Turn Text into 90‑Minute Multi‑Speaker Podcasts

https://vibevoice.cc/
1•gregzeng95•37m ago•0 comments

The OpenStreetMap team treated the Trufi president like a VIP; the app didn't

https://www.trufi-association.org/busboy-app-to-trufi-president-hello-stranger/
1•TrufiAssoc•39m ago•0 comments

Show HN: An OpenAI-compatible API gateway with free DeepSeek access until 2026

https://wisdom-gate.juheapi.com/vision
1•LeoWood42•40m ago•0 comments

Show HN: Vapor – A notepad that fades away as you type

https://enda.sh/vapor/
3•dduplex•42m ago•1 comments

First ever website created is still online

https://info.cern.ch/hypertext/WWW/TheProject.html
3•kathir05•43m ago•0 comments

Show HN: Free Vocal Remover and Splitter Tools

https://vocalremover.cloud
1•anyisalin•46m ago•0 comments

Year Bolt.new PRO plan for free

https://www.freelance-stack.io/?aff=159930
2•erayalakese•48m ago•0 comments

AI tool that turns AliExpress links into Shopify product pages in 2 minutes

https://www.mercurypages.ai/
2•emiliacr•52m ago•1 comments

Spec-Driven Development Toolkit from GitHub

https://github.com/github/spec-kit
2•mercat•52m ago•0 comments

PyconFR 25 -French Pycon- will take place in Lyon from October 30 to November 2

https://www.pycon.fr/2025/en/
1•Melcore•54m ago•0 comments

Geoffrey Hinton on his new "ray of hope" for AI alignment [video]

https://www.youtube.com/watch?v=NnA2OoH_NFY
2•ksdk•55m ago•1 comments

AI Datacenters Eat the World [video]

https://www.youtube.com/watch?v=dhqoTku-HAA
2•baalimago•56m ago•0 comments

Tau5 – a platform for live coding, art, and music

https://github.com/samaaron/tau5
1•bluehatbrit•58m ago•0 comments

The new economic nationalism: industrial policy and national security

https://www.sciencedirect.com/science/article/pii/S0016718525001824
3•theconomist•59m ago•0 comments

Neuron V2 Released – AI Agentic Workflows in PHP

https://github.com/inspector-apm/neuron-ai/discussions/280
2•valerione•1h ago•0 comments

Visual Story-Writing

https://github.com/m-damien/VisualStoryWriting
3•eddieweng•1h ago•0 comments

Von der Leyen's GPS scare gripped Europe. Russia allegations starting to unravel

https://www.politico.eu/article/gps-jamming-ursula-von-der-leyen-bulgaria-bulgaria-europe/
5•nationsecwatch•1h ago•0 comments

Show HN: Tsuki – Lua 5.4 ported to Rust

https://github.com/ultimaweapon/tsuki
1•ultimaweapon•1h ago•0 comments
Open in hackernews

Ask HN: How to Harden Your Phone?

6•mandeepj•1d ago
Inspired by this thread - https://news.ycombinator.com/item?id=45106903

Whenever I hear the Pegasus app or read about it at HN, I get a bit worried. So, today was that day again.

I'm sure we have cybersecurity experts, security researchers, and Infosec pros here at HN. What do you recommend to keep your phone, especially an iPhone, hardened as a brick? Came across the following article, although a bit dated, which suggests not using FaceTime and iMessage. But in another search, I found iMessage is more secure than just plain old SMS/Text. I'm more worried about zero-click exploits.

https://usa.kaspersky.com/blog/how-to-protect-from-pegasus-spyware/26103/

Just a thought - would having a firewall[0] on your phone to block any incoming request or quarantine it for review will work? A response to a user-initiated request is different than an independent request coming to your phone. A clarification to avoid mixing both.

Also, a traffic monitor[1] to watch excessive outgoing traffic or excessive hard drive reads to detect if you are compromised.

I've also been thinking about developing a custom Secure Vault app, more like an isolated Sandbox; I'll share more details about it if I think I can pull it off. Any pointers, books, articles, or videos are greatly appreciated.

Security is a fascinating topic; Let's discuss.

[0] : https://apps.apple.com/us/app/guardian-firewall-vpn/id1363796315

[1]: https://apps.apple.com/us/app/traffic-monitor-with-widget/id482570191

[2]: https://www.youtube.com/watch?v=1p0Xm-Opzjg (Catching NSO Group's Pegasus spyware)

[3]: https://help.apple.com/pdf/security/en_US/apple-platform-security-guide.pdf

[4]: https://www.reuters.com/technology/cybersecurity/governments-spying-apple-google-users-through-push-notifications-us-senator-2023-12-06/

Comments

runjake•1d ago
This guide for iPhone and Android is a good start. Not all their recommendations are obvious.

https://www.cisa.gov/sites/default/files/2024-12/guidance-mo...

For a deeper guide, check out the CISecurity benchmarks for your smartphone. They go a bit deeper. But the CISA guide will get you most of the way there.

https://www.cisecurity.org/cis-benchmarks

k310•1d ago
How about this idea?

Since a great deal of mobile usage is at home, how about a firewall of the home network as an 80/20 kind of solution? (YMMV) You might include a VPN.

This does not help away from home.

I have asked friends to use Signal for its many features, but I'm in low-tech company lately. They need a kick. Signal might address your messaging needs, and TBH, is better than imessage or FaceTime in mixed company. "Green people". Mainly because it is entirely crosds-platform.

mandeepj•1d ago
Can you please expand on 80/20 rule? 20% of traffic on mobile device or 20% might be suspicious?

I believe Signal is compromised! There are many such articles online https://www.truesec.com/hub/blog/russian-intelligence-compro...

necovek•1d ago
They suggest you might be at home 80% of the time, thus firewall on the home network would protect during that time.
k310•1d ago
That was my intent. Simply that you might be protected 80% of the time, if you spend 80% of your usage at home, and of course, YMMV.

But the 80/20 rule as written about is quite different. Simplified, it states that some 20% of effort or cases can give 80% of the results, whereas the other 20% can take 80% of your time/effort to nail.

Please query Signal about any security concerns. There was a clone of it being used by government officials that had flaws.

max_•1d ago
At the bare minimum, ditch the iPhone.

Get a pixel

Install grapheneOS

mandeepj•1d ago
Ordered a Pixel 10 pro XL a couple days ago :-)

You believe GrapheneOS is more secure than Android?

max_•1d ago
Stock Android & iOS are literally spyware.

GrapheneOS is very private.

2rsf•1d ago
Who and what are you trying to protect from? ICE/NSA will hack your phone, and all you can do as an amateur is to make their life harder (and raise their suspicion even more)
reify•1d ago
I alway found that dipping it in some araldite epoxy resin works great

Basically, squeeze both tubes, part A and part B, into a bowl, mix well.

lay your phone on a flat surface and pour the mixed araldite over the phone.

smooth and level the araldite with a plastic tool.

let dry.

sorted!

dabockster•10h ago
1. Disable Face ID/fingerprint unlocks and go back to using a alphanumeric pass code (letters and numbers). It's fine once you're actually in the phone, but you absolutely don't want to unlock your phone from the lock screen with biometrics.

2. Watch what kind of app permissions you grant to what apps. This is way easier to do on iPhones vs Android phones.

3. Understand that Google Apps (gApps) on Android phones are essentially a rootkit anymore. Especially with that recent news that Google is going to try to end sideloading APKs. Apple isn't that much better but they're more "out of the way" when you try to work.

4. Apple's SDK for its devices is more private than Android in certain ways. The IceBlock app's explainer is really good about this: https://www.iceblock.app/android