frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

DeepMind: CodeMender: an AI agent for code security

https://deepmind.google/discover/blog/introducing-codemender-an-ai-agent-for-code-security/
64•ravenical•1h ago

Comments

blibble•20m ago
what an annoying page

pointless videos, without enough time to read the code

sobiolite•18m ago
I wonder if we're going to end up in an arms race between AIs masquerading as contributors (and security researchers) trying to introduce vulnerabilities into popular libraries, and AIs trying to detect and fix them.
sublinear•8m ago
Why would it be like that instead of the way we already handle low-trust environments?

Projects that get a lot of attention already put up barriers to new contributions, and the ones that get less attention will continue to get less attention.

The review process cannot be left to AI because it will introduce uncertainty nobody wants to be held responsible for.

If anything, the people who have always seen code as a mere means to an end will finally come to a forced decision: either stop fucking around or get out of the way.

An adversarial web is ultimately good for software quality, but less open than it used to be. I'm not even sure if that's a bad thing.

zb3•15m ago
DeepMind = not available for use
esafak•13m ago
It's lost its charm.
mmaunder•13m ago
Can we just flag this since it’s not actually a thing available to anyone?
sigmar•13m ago
4.5 million lines of code for one fix is impressive for an LLM agent, but there's so little detail in this post otherwise. Perhaps this is a tease to what will be released on Thursday...
narmiouh•12m ago
Not a fan of future products being announced as if they are here but are basically is still in "Internal Research" stages. I'm not sure who this is really helping? except creating unnecessary anticipation which we kinda all know are in this loop lately of "yes it works great, but".
bgwalter•8m ago
So it is a secret tool, they will "gradually reach out to interested maintainers of critical open source projects with CodeMender-generated patches", then they "hope to release CodeMender as a tool that can be used by all software developers".

Why is everything in "AI" shrouded in mystery, hidden behind $200 monthly payments and has glossy announcements. Just release the damn thing and let us test it. You know, like the software we write and that you steal from us.

nickpinkston•3m ago
I'm optimistic that it's easier to find/solve vulnerabilities via auto pen-testing / patching, and other security measures, than it will be to find/exploit vulnerabilities after - ie defense is easier in an auto-security world.

Does anyone disagree?

This is purely my intuition, but I'm interested in how others are thinking about it.

All this with the mega caveat of this assuming very widespread adoption of these defenses, which we know won't be true and auto-hacking may be rampant for a while.

Sora 2 Local Playground

https://github.com/alasano/sora-2-playground
1•alasano•36s ago•1 comments

Soft drink consumption and increased risk of nonalcoholic fatty liver disease

https://www.sciencedirect.com/science/article/pii/S1665268124003491
1•lawgimenez•2m ago•0 comments

2x Performance, $300k Savings: A Case Study Rewriting Critical Service in Rust

https://wxiaoyun.com/blog/rust-rewrite-case-study/
1•weinzierl•2m ago•0 comments

OpenAI DevDay live: Altman comments on 'strange' stock moves of demo companies

https://www.cnbc.com/2025/10/06/open-ai-devday-live-updates-altman-jony-ive.html
1•zerosizedweasle•5m ago•1 comments

From engines to nanochips: Physicists redefine how heat moves

https://phys.org/news/2025-10-nanochips-physicists-redefine.html
1•westurner•7m ago•1 comments

Microsoft is plugging more holes that let you use Windows 11 without MS account

https://www.theverge.com/news/793579/microsoft-windows-11-local-account-bypass-workaround-changes
4•josephcsible•7m ago•0 comments

Servo GTK

https://blogs.gnome.org/nacho/2025/10/01/servo-gtk/
3•birdculture•8m ago•0 comments

T-Mobile Will Soon Begin LTE Phase-Out

https://tmo.report/2025/10/exclusive-t-mobile-to-begin-lte-phase-out/
3•tech234a•8m ago•0 comments

Show HN: Neural background noise removal in multimedia with a single command

https://github.com/svemyh/deepfilter-multimedia
1•svemyh•8m ago•0 comments

PDF: Crippling Relational AI Guarantees Systemic Risk

https://zenodo.org/records/17280485
1•LabRat_Research•13m ago•0 comments

Built a free fullscreen event countdown tool for event managers

https://www.miniecom.com/tools/presentation-timer
1•bylde•13m ago•1 comments

Cross-Agent Privilege Escalation: When Agents Free Each Other

https://embracethered.com/blog/posts/2025/cross-agent-privilege-escalation-agents-that-free-each-...
1•wunderwuzzi23•14m ago•0 comments

How to Orchid, by Jemaine Clement

https://us.telepathicinstruments.com/
1•xrd•14m ago•0 comments

Can You Build a TikTok Alternative?

https://idiallo.com/blog/can-you-build-a-tiktok-alternative
3•WhyNotHugo•16m ago•1 comments

The Mechanism of Mineral Nucleation and Growth in a Mini-Ferritin

https://pubs.acs.org/doi/10.1021/jacs.5c05464
1•colingauvin•23m ago•0 comments

Sneaky asteroid zooms past Antarctica closer than a satellite

https://www.livescience.com/space/asteroids/sneaky-asteroid-zooms-past-antarctica-closer-than-a-s...
1•teleforce•23m ago•0 comments

The Free Republic of Verdis

https://verdisgov.org/
1•NGRhodes•26m ago•1 comments

TrueAnon Podcast: The Left Has Its Rabbit Holes

https://www.nytimes.com/2025/10/06/style/trueanon-podcast-left-conspiracy-theories.html
2•etc-hosts•28m ago•0 comments

Roadmap for AI in Visual Studio (October)

https://devblogs.microsoft.com/visualstudio/roadmap-for-ai-in-visual-studio-october/
1•ibobev•29m ago•0 comments

Tarot.js – A customizable JavaScript library for managing Tarot card decks

https://github.com/MarketingPipeline/Tarot.js
2•GFXPipeline•36m ago•0 comments

OpenAI wants to make ChatGPT into a universal app front end

https://arstechnica.com/ai/2025/10/openai-wants-to-make-chatgpt-into-a-universal-app-frontend/
4•AlexDragusin•40m ago•0 comments

Q&A: New DNA techniques reveal unseen soil bacteria and antibiotic candidates

https://phys.org/news/2025-09-qa-dna-techniques-reveal-unseen.html
1•PaulHoule•42m ago•0 comments

Scientists Just Connected the Dots Between Viruses and Everything

https://rachel.fast.ai/posts/2025-10-07-rethinking-viruses/index.html
1•chmaynard•42m ago•0 comments

Reqwire.io

2•Reqwireio•45m ago•0 comments

Ask HN: What solution does Stripe use for their API/webhooks Workbench?

1•alexander-g•46m ago•0 comments

Altman says no current plans for ads in ChatGPT Pulse – but not ruling it out

https://www.theverge.com/news/793073/chatgpt-pulse-no-plans-for-ads-sam-altman
2•evolve2k•47m ago•0 comments

The developer role is evolving. Here’s how to stay ahead.

https://github.blog/ai-and-ml/the-developer-role-is-evolving-heres-how-to-stay-ahead/
1•chmaynard•48m ago•0 comments

What Happens to European Workers When Immigrants "Take Their Jobs?" [pdf]

https://globalmigration.ucdavis.edu/sites/g/files/dgvnsk8181/files/2017-07/giovanni_what_happens_...
2•pupperino•52m ago•0 comments

Case-Insensitive OverlayFS Support Merged for Linux 6.18

https://www.phoronix.com/news/Case-Insensitive-Overlay-6.18
2•voxadam•52m ago•0 comments

RediShell: Critical Remote Code Execution

https://www.wiz.io/blog/wiz-research-redis-rce-cve-2025-49844
1•mihau•52m ago•0 comments