frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

EchoJEPA: Latent Predictive Foundation Model for Echocardiography

https://github.com/bowang-lab/EchoJEPA
1•euvin•5m ago•0 comments

Disablling Go Telemetry

https://go.dev/doc/telemetry
1•1vuio0pswjnm7•6m ago•0 comments

Effective Nihilism

https://www.effectivenihilism.org/
1•abetusk•9m ago•1 comments

The UK government didn't want you to see this report on ecosystem collapse

https://www.theguardian.com/commentisfree/2026/jan/27/uk-government-report-ecosystem-collapse-foi...
2•pabs3•11m ago•0 comments

No 10 blocks report on impact of rainforest collapse on food prices

https://www.thetimes.com/uk/environment/article/no-10-blocks-report-on-impact-of-rainforest-colla...
1•pabs3•12m ago•0 comments

Seedance 2.0 Is Coming

https://seedance-2.app/
1•Jenny249•13m ago•0 comments

Show HN: Fitspire – a simple 5-minute workout app for busy people (iOS)

https://apps.apple.com/us/app/fitspire-5-minute-workout/id6758784938
1•devavinoth12•14m ago•0 comments

Dexterous robotic hands: 2009 – 2014 – 2025

https://old.reddit.com/r/robotics/comments/1qp7z15/dexterous_robotic_hands_2009_2014_2025/
1•gmays•18m ago•0 comments

Interop 2025: A Year of Convergence

https://webkit.org/blog/17808/interop-2025-review/
1•ksec•27m ago•1 comments

JobArena – Human Intuition vs. Artificial Intelligence

https://www.jobarena.ai/
1•84634E1A607A•31m ago•0 comments

Concept Artists Say Generative AI References Only Make Their Jobs Harder

https://thisweekinvideogames.com/feature/concept-artists-in-games-say-generative-ai-references-on...
1•KittenInABox•35m ago•0 comments

Show HN: PaySentry – Open-source control plane for AI agent payments

https://github.com/mkmkkkkk/paysentry
1•mkyang•37m ago•0 comments

Show HN: Moli P2P – An ephemeral, serverless image gallery (Rust and WebRTC)

https://moli-green.is/
1•ShinyaKoyano•46m ago•0 comments

The Crumbling Workflow Moat: Aggregation Theory's Final Chapter

https://twitter.com/nicbstme/status/2019149771706102022
1•SubiculumCode•51m ago•0 comments

Pax Historia – User and AI powered gaming platform

https://www.ycombinator.com/launches/PMu-pax-historia-user-ai-powered-gaming-platform
2•Osiris30•52m ago•0 comments

Show HN: I built a RAG engine to search Singaporean laws

https://github.com/adityaprasad-sudo/Explore-Singapore
1•ambitious_potat•57m ago•0 comments

Scams, Fraud, and Fake Apps: How to Protect Your Money in a Mobile-First Economy

https://blog.afrowallet.co/en_GB/tiers-app/scams-fraud-and-fake-apps-in-africa
1•jonatask•57m ago•0 comments

Porting Doom to My WebAssembly VM

https://irreducible.io/blog/porting-doom-to-wasm/
2•irreducible•58m ago•0 comments

Cognitive Style and Visual Attention in Multimodal Museum Exhibitions

https://www.mdpi.com/2075-5309/15/16/2968
1•rbanffy•1h ago•0 comments

Full-Blown Cross-Assembler in a Bash Script

https://hackaday.com/2026/02/06/full-blown-cross-assembler-in-a-bash-script/
1•grajmanu•1h ago•0 comments

Logic Puzzles: Why the Liar Is the Helpful One

https://blog.szczepan.org/blog/knights-and-knaves/
1•wasabi991011•1h ago•0 comments

Optical Combs Help Radio Telescopes Work Together

https://hackaday.com/2026/02/03/optical-combs-help-radio-telescopes-work-together/
2•toomuchtodo•1h ago•1 comments

Show HN: Myanon – fast, deterministic MySQL dump anonymizer

https://github.com/ppomes/myanon
1•pierrepomes•1h ago•0 comments

The Tao of Programming

http://www.canonical.org/~kragen/tao-of-programming.html
2•alexjplant•1h ago•0 comments

Forcing Rust: How Big Tech Lobbied the Government into a Language Mandate

https://medium.com/@ognian.milanov/forcing-rust-how-big-tech-lobbied-the-government-into-a-langua...
4•akagusu•1h ago•1 comments

PanelBench: We evaluated Cursor's Visual Editor on 89 test cases. 43 fail

https://www.tryinspector.com/blog/code-first-design-tools
2•quentinrl•1h ago•2 comments

Can You Draw Every Flag in PowerPoint? (Part 2) [video]

https://www.youtube.com/watch?v=BztF7MODsKI
1•fgclue•1h ago•0 comments

Show HN: MCP-baepsae – MCP server for iOS Simulator automation

https://github.com/oozoofrog/mcp-baepsae
1•oozoofrog•1h ago•0 comments

Make Trust Irrelevant: A Gamer's Take on Agentic AI Safety

https://github.com/Deso-PK/make-trust-irrelevant
9•DesoPK•1h ago•4 comments

Show HN: Sem – Semantic diffs and patches for Git

https://ataraxy-labs.github.io/sem/
1•rs545837•1h ago•1 comments
Open in hackernews

The god mode vulnerability that should kill "Trust Microsoft" forever

https://tide.org/blog/god-mode-vulnerability-microsoft-authorityless-security
50•SaltNHash•4mo ago

Comments

dataflow•4mo ago
https://web.archive.org/web/20250923130941/https://tide.org/...
ingomaro•4mo ago
dead link?
dazzawazza•4mo ago
I suspect it's just getting hammered: https://web.archive.org/web/20250923203108/https://tide.org/...
letier•4mo ago
It’s on archive.org.

https://web.archive.org/web/20250923130941/https://tide.org/...

isoprophlex•4mo ago
This article isn't just full of LLM-isms, it's unreadable because of it. When you completely delegate your editing to a machine, you're not just lazy, you're robbing yourself of the one thing that made you stand out --emdash-- your own voice.

Moreover, as we navigate this evolving paradigm, we must carefully consider the balance between efficiency, authenticity and a third thing in this list.

Maybe at the end of the day, the point of writing isn't delving into a topic and churning out text as fast as you can, but expressing your opinions in your own authentic voice.

ares623•4mo ago
New copypasta just dropped
card_zero•4mo ago
I found the idea of a third thing in that list particularly persuasive.
thaumasiotes•4mo ago
You should. It was important in the classical study of rhetoric, given the name "tricolon".

https://en.wikipedia.org/wiki/Isocolon#Tricolon

card_zero•4mo ago
Which (as mentioned there) has evolved into a form where all three things are the same: money, money, money, location, location, location, education, education, education, and of course developers, developers, developers.
thaumasiotes•4mo ago
> and of course developers, developers, developers

Not quite; the Ballmer quote has him repeat the word in what sounds to me like one block of six followed by two blocks of four.

ZeroConcerns•4mo ago
So, the premise that I was able to gather from their website before it went down is "cryptographic guarantees, not vendor trust", and they claim to be working towards that, apparently at https://github.com/tide-foundation, which is a tiny bit underwhelming right now.
Den_VR•4mo ago
CVE-2025–55241, Azure EntraID had a problem that could have allowed attackers to impersonate any user, including Global Administrators, across any tenant. Its fixed now.
karlkloss•4mo ago
Why not linking to the original site: https://dirkjanm.io/obtaining-global-admin-in-every-entra-id...
egamirorrim•4mo ago
And whatever tide.com is is slow and broken for me smh
userbinator•4mo ago
You mean .org.

tide.com is something very different.

gostsamo•4mo ago
"Laundry Detergent and Fabric Care Products - Tide" - preventing dirty laundry sounds fitting enough.
stanac•4mo ago
If nothing else .com is working. There is archive link on another comment.
vednig•4mo ago
It's a hacker's nightmare, cleans up everything
IlikeKitties•4mo ago
No one in their right mind ever trusted microsoft with ANYTHING and the people that trust microsoft aren't ever going to change that.
willvarfar•4mo ago
Is there any simple explanation or walk-through of a diagram showing how Tide works?

There are several bits in the article about how Tide and TideCloak demonstrates that authorityless auth works, but I'm not finding an explainer.

procaryote•4mo ago
The real issue is, what do you use instead that you can make the non-technical users accept?

You can certainly move to google and get an overall improvement in track record and end user experience, but the fundamental issue raised in the article is still there

You can move to proton and get a pretty nice experience for mail and calendar, but it adds limitations regular users will be upset by. Their equivalent to word is very beta and they have nothing similar to excel.

You can move to nextcloud, and fix the fundamental issue, but every single piece of the solution will be even worse to use than microsoft's stack, and users will hate you.

If I could solve this, I could drop microsoft and google both

flakeoil•4mo ago
The article does not discuss what to use instead of Microsoft's products, it discusses a better architecture for authorization than the one Microsoft uses. The architecture which Microsoft uses is flawed and too many companies rely on it.

The solution in short: "...distributed in the form a key who’s pieces live across a decentralized network."

If looking for alternatives to Microsoft's products I would recommend Infomaniak [0]. They have a fairly complete solution of business tools (email, contacts, calendar, cloud storage, file sharing, chat, video meetings, docs and sheets).

[0] https://www.infomaniak.com

aappleby•4mo ago
If that article isn't AI-massaged I'll eat my hat.
KempyKolibri•4mo ago
“It’s not just x, it’s y” every three sentences. Ugh.
OutOfHere•4mo ago
I don't think AI writes so poorly, and it's absurdly unfair to ascribe it to AI.
darkamaul•4mo ago
Same story, but directly with the reporter:

One Token to rule them all – Obtaining Global Admin in every Entra ID tenant (13 days ago - 51 comment): https://news.ycombinator.com/item?id=45282497

tomhow•4mo ago
Thanks, we marked this one as a duplicate, because a followup post about a post that has already had a significant discussion here can't sustain a new discussion.
komali2•4mo ago
> The root cause of this Microsoft vulnerability wasn’t poor coding or lack of testing. It also isn’t correct to say that it’s the need to trust Microsoft. It’s more accurately what we’re trusting Microsoft with — Authority.

> As long as someone or something holds it, it can be exploited.

Wide distribution, as opposed to centralization, seems to be the most reliable way to ensure continuity. Am I wrong in seeing this pattern in so many different areas? The distributed animal survives ecological or geological collapse in one region, the distributed activist group survives fed infiltration into one entity, the distributed army holds off the centralized one (with infinitely better funding and weaponry) for decades, the distributed political power survives demagogue takeover.

I might be abstracting way too far here, but it makes me wonder why we keep trying to centralize authority, when it keeps failing spectacularly.

ocdtrekkie•4mo ago
The problem is the cloud. This sort of vulnerability is fundamentally impossible with an on-premise Exchange server and Active Directory. Once everyone's talking to and authenticating against one service, this sort of thing becomes difficult to avoid, especially when a company is bragging about how much code is written by LLMs now.
vednig•4mo ago
As long as there is code their will remain a vulnerability.

All the security and compliances require that someone operates it, not everyone can design systems like Linux in an year or so.

The more darker truth is the entire existence of proprietary codebases and architectures, there's a saying either ask the question or forever remain foolish

It's time we ask it ourselves and the companies which we depend on to allow atleast open auditing their architecture

It's just one step but it prevents the level of exploits like these

Hizonner•4mo ago
Teaser for an undescribed and probably overhyped product.