frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

How To Start Bug Bounties (2021)

https://ozguralp.medium.com/how-to-start-bug-bounties-101-how-to-make-a-million-in-4-years-e15ee62d6f4
9•redbell•2h ago

Comments

elicash•1h ago
One thing I see mentioned on reddit is that there's a lot of AI junk recently in bug bounty reports, and that AIs currently seem to have trouble distinguishing between "this is a bug" and "this is an actual vulnerability."
whatamidoingyo•1h ago
I have recently started bug hunting again, and asking ChatGPT questions is really frustrating (e.g. "nmap port scan less aggressive?" -> "Sorry, I can't help you with that.") Right to Google.

It also feeds into things. I'll feel like I'm so close to a discovery, and ask ChatGPT if I found sensitive data, or a vulnerability, and it always says "yes", but 90% of the time, it's not. I end up Googling away to find out what I really have.

I would never use ChatGPT for a report, or trust it with this sort of thing. You could probably ask it if editing HTML with dev tools is a security vulnerability, and it will probably say "Yes, you should immediately report that. Would you like me to draft the report for you?"

It's good for writing some short scripts, though. Just don't let it know it's for a "bug bounty". Can't believe people are just blindly trusting it.

elevation•1h ago
You need an LLM trained specifically for pentesting support. TFA links to a site advertising Burp AI [0]. Looks useful for bug bounties but data policies can prevent pentesters from using it in their engagements.

[0]: https://portswigger.net/burp/ai

redbell•1h ago
> there's a lot of AI junk recently in bug bounty reports

See: https://news.ycombinator.com/item?id=45330378

danielfalbo•47m ago
Another example: https://github.com/obsidianmd/obsidian-importer/issues/421#i...
dlcarrier•51m ago
Step 1: Hire a bug bounty service

Step 2: Mark all bug reports as "Works as intended"

The Most Important Invention Ever Is Glue [video]

https://www.youtube.com/watch?v=n1-5-O6IAWo
1•gmays•57s ago•0 comments

Enshitification [YouTube] [video]

https://www.youtube.com/watch?v=P1EKQidRooc&list=PLet00UQnlQoUKqSB5-oFmrwpnnVc4C4A8&index=1
1•_joel•3m ago•0 comments

The Scaling Era: An Oral History of AI, 2019–2025

https://press.stripe.com/scaling
1•brandonb•3m ago•0 comments

Glue raises $20M Series A for agentic team chat

https://glue.ai/blog/20m-to-build-agentic-team-chat
7•kainosnoema•5m ago•0 comments

Hacking GTA V RP Servers Using Web Exploitation Techniques

https://nullpt.rs/hacking-gta-servers-using-web-exploitation
1•ibobev•6m ago•0 comments

Rendu: A JavaScript Hypertext Preprocessor

https://github.com/h3js/rendu
1•randomuxx•7m ago•1 comments

Show HN: Magic Vizion – highlight anything, visualize instantly with one click

https://chromewebstore.google.com/detail/columnsai/hfgfkpoildikklbmjnkedmapiopeacga
1•caoxhua•9m ago•0 comments

Show HN: KI Song Erstellen Kostenlos – AI Music Generator FüR Deutsche Musik

https://kisongerstellen.com/
1•kevinhacker•10m ago•0 comments

SoftBank to buy ABB robotics unit for $5.4B as it boosts its AI play

https://www.cnbc.com/2025/10/08/softbank-to-buy-abb-robotics-unit-for-5point4-billion-in-ai-push....
3•voxadam•11m ago•0 comments

Building What Matters in Product and Experience

https://comuniq.xyz/post?t=414
1•01-_-•12m ago•0 comments

Microsoft's Fluid Icons, Figma's ChatGPT Diagrams and Okay DEV's Creative Beta

https://uibits.co/p/microsoft-s-fluid-icons-figma-s-chatgpt-diagrams-okay-dev-s-creative-beta
3•Kristaps90•13m ago•0 comments

Women portrayed as younger than men online, and AI amplifies the bias

https://newsroom.haas.berkeley.edu/news-release/women-portrayed-as-younger-than-men-online-and-ai...
5•geox•13m ago•0 comments

Show HN: Solving the cluster 1 problem with vCluster standalone

https://www.vcluster.com/blog/vcluster-standalone-multi-tenancy-kubernetes
5•saiyampathak•16m ago•0 comments

What fully automated firms will look like

https://www.dwarkesh.com/p/ai-firm
1•rzk•16m ago•0 comments

Doctorow: American Tech Cartels Use Apps to Break the Law

https://lithub.com/how-american-tech-cartels-use-apps-to-break-the-law/
18•ohjeez•19m ago•0 comments

Show HN: I built a local-first podcast app

https://wherever.audio
2•aegrumet•20m ago•0 comments

Rebuild the World

http://www.rebuildworld.net/
1•infovi•20m ago•1 comments

Major protests against corruption in the Philippines

https://www.wsws.org/en/articles/2025/09/22/zhyf-s22.html
2•PaulHoule•21m ago•0 comments

3rd Circuit: CFAA Does Not Turn Workplace Policy Infractions into Federal Crimes [pdf]

https://www2.ca3.uscourts.gov/opinarch/241123ppan.pdf
5•ivl•23m ago•3 comments

From Zero Code to Live DApp: Why We Built an AI Launchpad for Web3 Founders

https://0xminds.com/
1•silasomen•23m ago•1 comments

What RSS is and why we should keep using it (2022)

https://harisont.github.io/l-informatico-di-famiglia/2022/03/05/rss-en.html
2•linhns•25m ago•0 comments

An Event Mikeal Would Have Liked

https://an-event-mikeal-would-have-liked.com/
1•neom•27m ago•0 comments

Show HN: Autocache – Cut Claude API costs 90% (for n8n, Flowise, etc.)

https://github.com/montevive/autocache
1•jmrobles•28m ago•1 comments

JSON River – Parse JSON incrementally as it streams in

https://github.com/rictic/jsonriver
1•rickcarlino•28m ago•0 comments

Ask HN: How can we force a gcloud billing support ticket to be escalted

2•merb•28m ago•0 comments

Data-driven fine-grained region discovery in the mouse brain with transformers

https://www.nature.com/articles/s41467-025-64259-4
1•frozenseven•29m ago•0 comments

Show HN: Sarge Launcher – A Quake 3 Arena Utility

https://github.com/endless-r0ad/sarge-launcher
2•endless-r0ad•30m ago•0 comments

New Home for React and React Native

https://twitter.com/fb_engineering/status/1975935750509343006
1•MihaiSandor•31m ago•1 comments

Improving Clinical Trial Design

https://www.syllabi.directory/clinical-trials
1•prnv10•32m ago•0 comments

Show HN: Open-source Unity MCP for game developers

https://github.com/CoplayDev/unity-mcp
1•josvdwest•33m ago•0 comments