frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

MD RAID or DRBD can be broken from userspace when using O_DIRECT

https://bugzilla.kernel.org/show_bug.cgi?id=99171
19•vbezhenar•1h ago

Comments

saurik•12m ago
So... one can, on a filesystem that is mirrored using MD RAID, from userspace, and with no special permissions (as it seems O_DIRECT does not require any), create a standard-looking file that has two different possible contents, depending from which RAID mirror it happens to be read from today? And, this bug, which has been open for a decade now, has, somehow, not been considered to be an all-hands-on-deck security issue that undermines the integrity of every single mechanism people might ever use to validate the content of a file, because... checks notes... we should instead be "teaching [the attacker] not to use [O_DIRECT]"?

(FWIW, I appreciate the performance impact of a full fix here might be brutal, but the suggestion of requiring boot-args opt-in for O_DIRECT in these cases should not have been ignored, as there are a ton of people who might not actively need or even be using O_DIRECT, and the people who do should be required to know what they are getting into.)

Boost FastAPI with Pydantic Resolve and Router Viz

https://feed.sportskeeda.com/blog/boost-fastapi-with-pydantic-resolve
1•tank-34•4m ago•0 comments

FastAPI Voyager: Explore your API interactively

https://github.com/allmonday/fastapi-voyager
1•tank-34•5m ago•0 comments

AI Is Killing Wikipedia's Human Traffic

https://gizmodo.com/ai-is-killing-wikipedias-human-traffic-2000673686
1•geox•6m ago•0 comments

Texas Is Sued over Digital ID Age Verification Bill

https://reclaimthenet.org/texas-is-sued-over-digital-id-age-verification-bill
1•uyzstvqs•7m ago•0 comments

Evidence emerges that we are more than our brains

https://www.wsj.com/opinion/can-science-reckon-with-the-human-soul-76cdb7b6
1•felineflock•8m ago•1 comments

Game over. AGI is not imminent, and LLMs are not the royal road to getting there

https://garymarcus.substack.com/p/the-last-few-months-have-been-devastating
19•FromTheArchives•13m ago•0 comments

Slick v0.2 a .vimrc for servers and admins

https://github.com/quenode/slick-vimrc
1•quenode•16m ago•0 comments

A non-technical CFO is shipping better code than the agencies he hired

https://martinalderson.com/posts/non-technical-cfo-shipping-better-code-than-agencies/
2•martinald•17m ago•0 comments

Automatic documentation screenshots (with bounding-boxes) via codex

1•zenburnmyface•17m ago•0 comments

Finding a Flow State in Writing

https://lithub.com/sue-monk-kidd-on-finding-a-flow-state-in-writing/
1•wawayanda•23m ago•0 comments

AI Learns To Move In 4D [video]

https://www.youtube.com/watch?v=1BDYSxsVMAE
1•zeristor•25m ago•0 comments

Using CUE to unify IoT sensor data

https://aran.dev/posts/cue/using-cue-to-unify-iot-sensor-data/
2•mvdan•29m ago•0 comments

Thermalization by a Synthetic Horizon (2022)

https://journals.aps.org/prresearch/abstract/10.1103/PhysRevResearch.4.043084
1•westurner•32m ago•0 comments

Show HN: Ever had the need to transcribed and annotate YouTube video?

2•berna2103•36m ago•0 comments

Show HN: JFIF to JPG – A Lightweight Client-Side Converter (No Uploads Needed)

https://jfif-to-jpg.com/
1•seagnson•36m ago•1 comments

Macron wanders alone by the Seine as grip on his future slips away

https://www.japantimes.co.jp/news/2025/10/07/world/politics/macron-political-crisis-future/
2•PaulHoule•37m ago•1 comments

Fighting words at the Founding

https://harvardlawreview.org/print/vol-138/fighting-words-at-the-founding/
1•hhs•38m ago•0 comments

Writing a JSON Parser in BQN

https://tony-zorman.com/posts/bqn-json.html
1•birdculture•39m ago•0 comments

SQL Anti-Patterns You Should Avoid

https://datamethods.substack.com/p/sql-anti-patterns-you-should-avoid
3•zekrom•40m ago•0 comments

A curated open list of best AI tools

https://bestofai.io
2•dariubs•43m ago•1 comments

Lux: A luxurious package manager for Lua

https://github.com/lumen-oss/lux
2•Lyngbakr•44m ago•0 comments

Show HN: AI sales co-pilot, coaches reps in real-time during calls

https://www.meetgoran.com/
1•Mrakermo•45m ago•1 comments

Hidden benefits of undefined behavior

https://mazzo.li/posts/undefined-behavior.html
1•ingve•45m ago•0 comments

Solving NYT's Pips Puzzle

https://healeycodes.com/solving-nyt-pips-puzzle
2•healeycodes•48m ago•0 comments

The Overfitted Brain: Dreams evolved to assist generalization

https://arxiv.org/abs/2007.09560
2•consumer451•51m ago•4 comments

Proton's New Governance Links It to State-Supported Foundation?

https://vp.net/l/en-US/blog/Proton%27s-New-Governance-Links-it-to-State-Supported-Foundation
2•rasengan•51m ago•1 comments

Astrocytes are the superstars of long-term memory: multi-day trace stabilizers

https://www.nature.com/articles/s41586-025-09619-2
5•marshfram•51m ago•4 comments

The IDEs we had 30 years ago ... and we lost

https://blogsystem5.substack.com/p/the-ides-we-had-30-years-ago-and
48•AlexeyBrin•53m ago•36 comments

Running Rust/Go on shared hosting for $5 a month

2•andreamancuso•53m ago•0 comments

Chinese Nobel laureate and physicist Chen Ning Yang dies aged 103

https://www.bbc.com/news/articles/cdxrzzk02plo
4•c4pt0r•53m ago•0 comments