frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Show HN: NickelJoke: Premium Comedy for a Nickel

https://nickeljoke.vercel.app/
1•bilater•53s ago•0 comments

If Placebos Work So Well, Why Not Prescribe Sugar Pills for Everything?

https://www.derekthompson.org/p/tsmp-life-is-made-of-beliefs
1•herbertl•4m ago•1 comments

One Week with the iPhone 17 Pro

https://www.macpsych.blog/posts/one-week-with-the-iphone-17-pro
1•herbertl•5m ago•0 comments

'It's a superfood ' Why tempeh is suddenly on every menu

https://www.theguardian.com/food/2025/sep/28/its-actually-a-superfood-why-tempeh-is-suddenly-on-e...
1•n1b0m•9m ago•0 comments

The mechanics of software engineering teams

https://chrisloy.dev/post/2023/11/10/software-engineering-mechanics
1•ryangibb•11m ago•0 comments

Dodecahedron Speaker Is Biblically Accurate

https://hackaday.com/2025/09/23/dodecahedron-speaker-is-biblically-accurate/
1•axiomdata316•12m ago•0 comments

The economics of self-driving taxis

https://www.economist.com/finance-and-economics/2025/09/28/the-economics-of-self-driving-taxis
1•pseudolus•14m ago•2 comments

Clyde Kruskal talks about his Father Martin on Martin's 100th birthday

https://blog.computationalcomplexity.org/2025/09/clyde-kruskal-talks-about-his-father.html
1•baruchel•15m ago•0 comments

Study of 1M-year-old skull points to earlier origins of modern humans

https://www.theguardian.com/science/2025/sep/25/study-of-1m-year-old-skull-points-to-earlier-orig...
2•sampo•19m ago•1 comments

Obamify – Turn any image into Obama

https://github.com/Spu7Nix/obamify
2•huseyinkeles•20m ago•1 comments

Helium a tiny JavaScript library like Alpine

https://github.com/daz-codes/helium
1•daz4126•22m ago•0 comments

Time to Separate the Art from the Artist

https://christianheilmann.com/2025/09/28/time-to-separate-the-art-from-the-artist/
2•brycewray•25m ago•0 comments

UT San Antonio researchers develop safer non-opioid alternatives for pain relief

https://news.utsa.edu/2025/09/ut-san-antonio-researchers-are-developing-safer-non-opioid-alternat...
2•PaulHoule•25m ago•0 comments

K8s on Hetzner vs. AWS Fargate

https://beuke.org/hetzner-aws/
3•ttfvjktesd•25m ago•0 comments

Accenture plans to "ditch" staff who can't be retrained in AI

https://www.cnbc.com/2025/09/26/accenture-plans-on-exiting-staff-who-cant-be-reskilled-on-ai.html
4•01-_-•25m ago•1 comments

Famed roboticist says humanoid robot bubble is doomed to burst

https://techcrunch.com/2025/09/26/famed-roboticist-says-humanoid-robot-bubble-is-doomed-to-burst/
3•pranay01•26m ago•0 comments

China's crackdown on pessimistic and hostile content

https://comuniq.xyz/post?t=378
3•01-_-•28m ago•1 comments

Consistent Hashing

https://eli.thegreenplace.net/2025/consistent-hashing/
1•ingve•29m ago•0 comments

Google to merge Android and ChromeOS in 2026, because AI

https://www.theregister.com/2025/09/25/google_android_chromeos/
3•walterbell•33m ago•2 comments

Go Proposal: Hashers

https://antonz.org/accepted/maphash-hasher/
1•ingve•34m ago•0 comments

Serial killer case sets precedent to using whole-genome sequencing as evidence

https://www.nature.com/articles/d41586-025-03102-8
1•geox•35m ago•0 comments

Seeking Freelancer with embedded systems experience – CT – Remote

1•Skymira•36m ago•0 comments

More Perfect Union videos are wildly deceptive on data center water use

https://andymasley.substack.com/p/more-perfect-union-is-deceptive
3•NavinF•36m ago•0 comments

"Every Hard Drive I've Owned Has Been Larger Than All My Previous Ones Combined"

https://blog.nawaz.org/posts/2025/Sep/every-hard-drive-ive-owned-has-been-larger-than-all-my-prev...
3•BeetleB•38m ago•3 comments

Bcachefs: DKMS availability/migration general announcement

https://www.patreon.com/posts/139949871
2•koverstreet•39m ago•0 comments

The Art of the Impersonal Essay

https://www.newyorker.com/magazine/2025/09/29/the-art-of-the-impersonal-essay
1•mitchbob•39m ago•1 comments

Show HN: AI Dojo – open-source LeetCode-style trainer for AI prompts

https://github.com/at1as/AI-Dojo
1•jayw_lead•40m ago•0 comments

Higher disease risk nations are more optimistic about humanity's future

https://news.uga.edu/high-disease-risk-positive-future/
1•giuliomagnifico•40m ago•0 comments

What is "good taste" in software engineering?

https://www.seangoedecke.com/taste/
3•dondraper36•41m ago•0 comments

Losing Your Voice to AI – An End-of-Semester Ramble [video]

https://www.youtube.com/watch?v=ZetzF8v1v88
1•latexr•41m ago•0 comments
Open in hackernews

VMScape and why Xen dodged it

https://virtualize.sh/blog/vmscape-and-why-xen-dodged-it/
38•plam503711•1h ago

Comments

indigodaddy•36m ago
If anyone was looking there are still some Xen VPS providers around, one of the oldest being Tornado VPS (formerly prgmr.com).

https://tornadovps.com/about

The founders literally wrote the book on xen:

https://nostarch.com/releases/xen.html

transpute•27m ago
On HP business PCs, Xen's microkernel architecture was extended for copy-on-write nested virtualization microVMs (VM per browser tab or HTTP connection) and UEFI-in-VM, https://www.platformsecuritysummit.com/2018/speaker/pratt/ | https://news.ycombinator.com/item?id=42282053#42286147

Imminent unification of Android and ChromeOS will likely use a similar h/w nested-virt architecture based on L0 pKVM + L1 KVM hypervisors on Arm devices.

Honda is using Xen, "How to accelerate Software Defined Vehicle" (2025), https://static.sched.com/hosted_files/xensummit2025/93/HowTo...

yjftsjthsd-h•19m ago
I guess I don't quite follow. The attack can let an attacker in a normal VM see memory in either the host or a Xen dom0 VM. Why is it less impactful to get memory from the management VM instead of the host?
bayesnet•15m ago
While it’s interesting that Dom0 avoids Spectre-style branch prediction attacks it’s not clear from TFA exactly why that is so. How does the architecture of the hypervisor avoid an attack that seems to be at the hardware level? From my limited understanding of Spectre and Meltdown, swapping from a monolithic to a microkernel wouldn’t mitigate an attack. The mitigations discussed in the VMscape paper [0] are hardware mitigations in my reading. And I don’t see Xen mentioned anywhere in the paper for that matter.

I guess it’s sort of off topic, but I was enjoying reading this until I got to the “That’s not just elegant — it’s a big deal for security” line that smelled like LLM-generated content.

Maybe that reaction is hypocritical. I like LLMs; I use them every day for coding and writing. I just can’t shake the feeling that I’ve somehow been swindled if the author didn’t care enough to edit out the “obvious” LLM tells.

[0]: https://comsec-files.ethz.ch/papers/vmscape_sp26.pdf