frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Free open-source file scanner (pompelmi)

https://github.com/pompelmi/pompelmi
1•SonoTommy•4h ago
Hi HN — I built Pompelmi, a free open-source local file scanner focused on developers, CI pipelines and security hobbyists.

One-line: Pompelmi scans files for suspicious patterns (YARA rules, MIME heuristics, zip-bomb detection, basic static heuristics) and helps automate safe handling of incoming files in dev/CI workflows.

Why: I wanted a lightweight, opinionated scanner that’s easy to run locally or in CI (no cloud required) and that developers can extend with custom rules.

Features

YARA rules integration (bring your own rules)

MIME sniffing + file type checks

Zip/bomb heuristics and large archive protections

Pluggable heuristics engine + CLI + simple API

Quick to run locally and easy to wire into CI pipelines

MIT license

Quick try (from source)

git clone https://github.com/pompelmi/pompelmi cd pompelmi # install with your preferred package manager (npm / pnpm / yarn) npm install # see README for examples; test a file with the CLI or run the example scanner

Repo / docs: https://github.com/pompelmi/pompelmi

I’m especially interested in feedback on rule UX (how users add/share YARA rules), CI integration examples, and any missing checks you’d expect from a lightweight scanner. Thanks — happy to answer questions and iterate on PRs. — Tommy (JustSouichi)

Always Be Ready to Leave (Even If You Never Do)

https://andreacanton.dev/posts/2025-11-08-always-ready-to-leave/
1•andreacanton•33s ago•0 comments

Who's watching the watchers? This Mozilla fellow, and her Surveillance Watch map

https://www.theregister.com/2025/11/08/mozilla_fellow_al_shafei/
1•defrost•4m ago•1 comments

SpaceX launches 28 Starlink satellites from California's central coast [video]

https://www.space.com/space-exploration/launches-spacecraft/spacex-starlink-11-14-b1093-vsfb-ocisly
1•ashishgupta2209•5m ago•0 comments

Cara pesan tiket bus Rosalia indah // 0813"5342"3753

1•djkurek•6m ago•1 comments

At the Border of Fantasy and Reality

https://desa.pl/en/stories/at-the-border-of-fantasy-and-reality/
1•jruohonen•7m ago•0 comments

Screenshot Editor – Minimalist screenshot editor

https://www.screenshoteditor.live/
1•dikshant_shah•10m ago•0 comments

Largest web with 111k spiders discovered in a remote cave in Greece

https://subtbiol.pensoft.net/article/162344/
1•tchalla•11m ago•0 comments

Show HN: Conversational Hindi tutor for Indian diaspora kids (5-9yrs old)

https://www.hindispeakingtutor.in/
1•shubham13596•19m ago•0 comments

The Tech CEO 'Making No Apologies for the Work with ICE' (Alex Karp)

https://www.politico.com/news/magazine/2025/11/06/alex-karp-book-michael-steinberger-trump-evolut...
2•giuliomagnifico•22m ago•0 comments

Harbor – a framework for evaluating and optimizing agents and language models

https://github.com/laude-institute/harbor
1•piebro•35m ago•0 comments

Visualizing Intersecting Sets

https://upset.app/
2•vismit2000•37m ago•0 comments

Ask HN: What's a Purchase You Regret?

1•znpy•38m ago•1 comments

Vue-Transify v1.3.0

https://github.com/Redskullvue/vue-transify
2•redskull422•42m ago•0 comments

New spyware exploited a Samsung 0-day delivered through WhatsApp messages

https://unit42.paloaltonetworks.com/landfall-is-new-commercial-grade-android-spyware/
3•notmine1337•43m ago•1 comments

I help people build SaaS MVP from scratch in just $2499 fully

https://cal.com/alwassikhan/mintmvp?user=alwassikhan
1•alwassikhan•45m ago•0 comments

Animation: What is sync.Pool and how to use it properly

https://www.youtube.com/watch?v=fwHok9ZhQaY
1•valyala•45m ago•0 comments

Show HN: What do you hate most about data analysis?

1•akshayjadhao•47m ago•0 comments

Ask HN ,what do you hate most about data analysis?

1•akshayjadhao•50m ago•0 comments

Jelly Slider

https://docs.swmansion.com/TypeGPU/examples/#example=rendering--jelly-slider
3•rishikeshs•52m ago•1 comments

AI Business Idea Generator – Generate custom ideas for profitable side-hustles

https://aibizgen.net
1•vkastei•1h ago•1 comments

The Art of Leadership

https://rodgercuddington.substack.com/p/the-art-of-leadership
1•freespirt•1h ago•0 comments

Profiling tools I use for QEMU storage performance optimization

http://blog.vmsplice.net/2025/06/profiling-tools-i-use-for-qemu-storage.html
1•todsacerdoti•1h ago•0 comments

LangChain Open Deep Research Internals: A step-by-step guide

https://www.bolshchikov.com/p/open-deep-research-internals-a-step
1•bolshchikov•1h ago•0 comments

Show HN: Patternia – A compile-time pattern matching DSL for C++

https://github.com/sentomk/patternia
2•sentomk•1h ago•1 comments

The FAA Updated Its UAP Reporting Policy and That's a Good Thing

https://www.safeaerospace.org/news/the-faa-quietly-updated-its-uap-reporting-policy
2•keepamovin•1h ago•0 comments

Logic Theorist: The program that rewrote the foundations of mathematics

https://bigthink.com/books/logic-theorist/
2•YeGoblynQueenne•1h ago•0 comments

Guillermo del Toro tells James Cameron about the time he saw 'disappointing' UFO

https://twitter.com/TUPACABRA2/status/1986849740697575621
1•keepamovin•1h ago•0 comments

Show HN: CoLit – A Collaborative Literature Platform

https://www.colit.app/
2•pujan19•1h ago•0 comments

Overclocked Casio fx-6300G graphics calculator 1.8 MHz vs. 0.8 MHz (2001) [video]

https://www.youtube.com/watch?v=seBmf9gMQO0
2•Lio•1h ago•0 comments

Why Microsoft Will Never Make Great Products (and Why That's Okay) – Shravonix

https://shravonix.com/technology/why-microsoft-will-never-make-great-products-and-why-thats-okay/
3•jainilprajapati•1h ago•0 comments