frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Firmware GRC tool that generates OSCAL and SBOMs for 122 controls

https://www.usenabla.com/
1•jdbohrman•3h ago
Hey there HN! My name is James, and I'm the developer of Nabla. The journey building this was a massive learning experience and I'm still learning things about this market as I go, but I wanted to tell you a little bit about Nabla that I think excite me about the future and why I chose firmware as opposed to the normal cloud path for GRC.

It actually went through a weird three step journey. What started off as a general BCA tool I wanted to build just to challenge myself because I saw Fossa advertise it on their website, turned into a weird snowball of trying out different things with binary composition analysis.

I ended up realizing the our typed Rust struct which standardized the composition opened up the door to a lot of things I was wanting to do, and beginning to over-engineer before I dug in and looked at what was being extracted better. What we ended up with was a pretty nice CLI that can scan firmware of multiple types and produce machine readable compliance artifacts.

The CLI uses:

- goblin for parsing ELF, Mach-O, and PE formats - capstone for lightweight disassembly where needed - A custom BinaryAnalysis struct to normalize metadata - The BinaryAnalsis structured results are fed into an LLM, which maps findings to OSCAL controls

Right now it covers 122+ controls, but the control set is expanding. The LLM isn’t a black box here — it’s grounded by the structured analysis, so it doesn’t just hallucinate.

I’d love feedback on:

- Usability, once I publish docs (install/run experience)

- Accuracy of the OSCAL mappings

- Ideas for handling edge cases (firmware blobs, weird file formats)

Thanks, and happy to answer questions!

Base Storage is 256 GB Across iPhone 17 Lineup

https://www.macrumors.com/2025/09/09/iphone-17-lineup-starts-256gb-storage/
1•Bogdanp•1m ago•0 comments

Atlassian announces EOL for "datacenter" products

https://www.atlassian.com/migration
1•cduzz•1m ago•1 comments

Anthropic Services Down

https://status.anthropic.com
4•himeexcelanta•2m ago•0 comments

Introduction to GrapheneOS

https://dataswamp.org/~solene/2025-01-12-intro-to-grapheneos.html
1•renehsz•2m ago•0 comments

Rick Davies, Singer and Founder of Supertramp, Dies at 81

https://www.nytimes.com/2025/09/08/arts/music/supertramp-rick-davies-dead.html
1•bookofjoe•3m ago•1 comments

Anthropic Services Down

https://status.anthropic.com/incidents/k6gkm2b8cjk9
7•rob•3m ago•1 comments

Ask HN: How are you preparing for upcoming short-lived SSL renewals?

2•froil•4m ago•0 comments

Scientists Put Tardigrade DNA into Human Stem Cells

https://www.popularmechanics.com/science/animals/a43509580/tardigrade-dna-human-stem-cells-super-...
1•matthewsinclair•4m ago•0 comments

Tech gets the headlines, org change gets the results

https://blog.robbowley.net/2025/09/04/maybe-it-wasnt-the-tech-after-all/
1•ChrisArchitect•4m ago•0 comments

Get paid like a prime minister to tame Home Office IT chaos

https://www.theregister.com/2025/09/10/home_office_cdio/
1•rntn•6m ago•0 comments

PsiQuantum Raises $1B, Says Its Quantum Computer Will Be Ready in 2 Years

https://www.wsj.com/articles/psiquantum-raises-1-billion-says-its-computer-will-be-ready-in-two-y...
1•vtomole•8m ago•0 comments

"No Tax on Tips" Includes Digital Creators, Too

https://www.hollywoodreporter.com/business/business-news/no-tax-on-tips-guidance-creators-trump-t...
3•aspenmayer•9m ago•1 comments

Method for correlating lipid molecular information with anatomy in C. elegans

https://www.nature.com/articles/s41598-025-09577-9
1•PaulHoule•9m ago•0 comments

The Anthropic Form of Natural Laws

https://brianschrader.com/archive/the-strangely-anthropic-form-of-natural-laws/
2•sonicrocketman•10m ago•0 comments

Discovering Observers – Part 2

https://www.sandordargo.com/blog/2025/09/10/observers-part2
2•ibobev•11m ago•0 comments

Business for Sale – 3yr Medical StartUp

https://www.nionneuroscience.com/
1•PatrikSlachta•11m ago•2 comments

File Preallocation on macOS in Ruby

https://tenderlovemaking.com/2025/09/10/file-preallocation-on-macos-in-ruby/
1•ibobev•11m ago•0 comments

Wiggling into Correlation

https://entropicthoughts.com/wiggling-into-correlation
1•ibobev•11m ago•0 comments

Show HN: Wappdex – an app store–style directory for SaaS and indie projects

https://www.wappdex.com/
1•onounoko•12m ago•0 comments

Merck Scraps Plans for £1B London Hub in Fresh Blow to UK

https://www.bloomberg.com/news/articles/2025-09-10/merck-scraps-plans-for-1-billion-london-hub-in...
1•petethomas•13m ago•0 comments

Climate change responsible for 1700 heat-related deaths in Zurich, study finds

https://www.ox.ac.uk/news/2025-09-10-climate-change-responsible-1700-heat-related-deaths-single-e...
1•gnabgib•14m ago•0 comments

I didn't bring my son to a museum to look at screens

https://sethpurcell.com/writing/screens-in-museums/
2•arch_deluxe•14m ago•0 comments

Claude Is Down

14•martinald•14m ago•9 comments

Bluesky's Approach to Age Assurance

https://bsky.social/about/blog/09-10-2025-age-assurance-approach
1•soheilpro•16m ago•0 comments

Ente Announced a Partnership with Kagi

https://ente.io/blog/launching-friends/
1•bhrlady•16m ago•0 comments

NASA Says Mars Rover Discovered Potential Biosignature in 2024

https://www.nasa.gov/news-release/nasa-says-mars-rover-discovered-potential-biosignature-last-year/
3•GMoromisato•16m ago•1 comments

Show HN: 5MB Rust binary that runs HuggingFace models (no Python)

https://github.com/Michael-A-Kuykendall/shimmy/releases
1•MKuykendall•16m ago•0 comments

Scientists speak out against chat control

https://www.heise.de/en/news/400-scientists-speak-out-against-chat-control-10637109.html
2•sva_•17m ago•0 comments

Costa Mesa woman registered dog to vote to make a point, attorney says

https://www.nbclosangeles.com/news/local/dog-registered-vote-election-orange-county/3776193/
1•pfexec•19m ago•0 comments

Xbox is coming to cars thanks to an LG and Microsoft partnership

https://www.theverge.com/news/774177/microsoft-xbox-car-lg-partnership-cloud-streaming
1•avonmach•19m ago•0 comments