frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Amazon to Slash 30k Jobs

https://economictimes.indiatimes.com/news/international/us/amazon-plans-massive-lay-offs-to-begin...
2•brunojppb•10m ago•1 comments

Build: Book Review

https://maa1.medium.com/build-book-review-2e833a6627d7
1•teleforce•10m ago•0 comments

You can have the ore now. It is in New York, a thousand tons of it

https://en.wikipedia.org/wiki/Edgar_Sengier
1•tgamblin•10m ago•0 comments

Obfuscating WireGuard Traffic as QUIC

https://docs.amnezia.org/documentation/instructions/new-amneziawg-selfhosted/
1•o999•13m ago•1 comments

Personalities Test – Free 16 Personalities (MBTI) Personality Test Online

https://personalitiestest.co/
1•Piccollages•13m ago•1 comments

The Color of Pomegranates

https://grokipedia.com/page/The_Color_of_Pomegranates
1•andsoitis•14m ago•1 comments

Age (2022)

https://anilv.com/age
2•ath_ray•19m ago•0 comments

One of the Cursor co-founders left the company

https://arvid.xyz/posts/leaving/
3•amrrs•31m ago•1 comments

Bill Gates Says Climate Change 'Will Not Lead to Humanity's Demise'

https://www.nytimes.com/2025/10/28/climate/bill-gates-climate-change-humanity.html
3•fleahunter•32m ago•0 comments

Making web testing pleasant in Scheme: Schematra 0.4

https://schematra.com/blog/whats-new-in-schematra-0-4
2•funkaster•33m ago•1 comments

Show HN: Big-AGI 2 – Spent a year obsessing over AI for thinking

https://github.com/enricoros/big-AGI/releases/tag/v2.0.0
2•enricoros•41m ago•1 comments

Axial Internal-Combustion Engines

http://douglas-self.com/MUSEUM/POWER/unusualICeng/axial-ICeng/axial-IC.htm
2•pillars•45m ago•0 comments

My AI Appetites

https://martin-brennan.com/my-ai-appetites/
1•mjrbrennan•45m ago•0 comments

The Museum of Retro Technology

http://douglas-self.com/MUSEUM/museum.htm
1•pillars•46m ago•0 comments

Export Your GitHub Data

https://www.dagmawi.dev/blog/Export-Your-GitHub-Data
1•dagmawibabi•48m ago•0 comments

Overleaf Alternative

https://www.useoctree.com/
2•basilyusuf1709•52m ago•2 comments

Was democracy just a moment? (1997)

https://www.theatlantic.com/magazine/archive/1997/12/was-democracy-just-a-moment/306022/
2•andsoitis•52m ago•0 comments

Th Coming Anarchy (1994)

https://www.theatlantic.com/magazine/archive/1994/02/the-coming-anarchy/304670/
2•andsoitis•57m ago•0 comments

Complete Digitization of Leonardo da Vinci's Codex Atlanticus

https://www.openculture.com/2025/10/digitization-of-leonardo-da-vincis-codex-atlanticus.html
2•emmelaich•1h ago•0 comments

Alsym energy launches Na series claiming safe low cost sodium ion battery

https://www.ess-news.com/2025/10/22/alsym-energy-launches-na-series-claiming-safe-low-cost-sodium...
6•tremguy•1h ago•0 comments

The Twitter domain is being retired. Make sure your account doesn't get locked

https://www.fastcompany.com/91429496/twitter-com-domain-dead-on-nov-10-action-required-2fa-users
4•r721•1h ago•0 comments

Signal president Meredith Whittaker says they had no choice but to use AWS

https://www.theregister.com/2025/10/27/signal_ceo_meredith_whittaker_aws_dependency/
9•pyeri•1h ago•4 comments

Ask HN: Glitchy YouTube Shorts?

2•gbraad•1h ago•0 comments

Last day to early signup for offline AI

https://www.generativeide.com/
1•NikhilChowdaryG•1h ago•0 comments

Is Your Data Valid? Why Bufstream Guarantees What Kafka Can't

https://vutr.substack.com/p/is-your-data-valid-why-bufstream
1•tamnd•1h ago•0 comments

On-Policy Distillation

https://thinkingmachines.ai/blog/on-policy-distillation/
2•tamnd•1h ago•0 comments

X.com silently deletes new likes likes on old posts

https://twitter.com/papayathreesome/status/1982998033093800342
5•Otter-man•1h ago•2 comments

Step Accumulation Patterns and Risk for Cardiovascular Events and Mortality

https://www.acpjournals.org/doi/10.7326/ANNALS-25-01547
3•canucker2016•1h ago•1 comments

Qasr Bshir

https://en.wikipedia.org/wiki/Qasr_Bshir
6•mooreds•1h ago•0 comments

Show HN: Linux Smart Directories Navigation

https://github.com/abdulbadii/smart-directories-navigation
3•dogol•1h ago•0 comments
Open in hackernews

Hack Any Outlook Account in Firebase Apps – Zero-Click Email Verification

1•vrajshroff•2h ago
If your app uses Firebase Auth email verification, enterprise Outlook users protected by Microsoft Defender Safe Links may already be getting their accounts auto-verified — without them ever opening an email. That flip of emailVerified = true can silently enable attackers to impersonate employees, trigger payouts, reset credentials, or walk through internal onboarding flows. This is a huge trust collapse between two widely used security features.

Comments

vrajshroff•2h ago
What’s fascinating here is that two “secure” systems — Microsoft’s Safe Links and Firebase Auth — combine to break security.

It’s the perfect example of layered defenses interacting in unexpected ways.

Should email verification ever be trusted as proof of ownership in 2025, or is it time we move away from link-based auth entirely?

8organicbits•1h ago
Have you reported this to Google and Microsoft?