frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

OpenAI loses song lyrics copyright case in German court

https://www.dw.com/en/openai-loses-song-lyrics-copyright-case-in-german-court/a-74698240
1•pimeys•2m ago•0 comments

The No. 1 Country Song in America Is by a Non-Human Artist

https://www.thedailybeast.com/the-no-1-country-song-in-america-is-by-a-non-human-artist/
1•Brajeshwar•3m ago•0 comments

Netzbremse – Deutsche Telekom is throttling the Internet

https://netzbremse.de/en/speed/
1•CrLf•4m ago•0 comments

Cold Truth

https://drexel.edu/westphal/academics/undergraduate/graphic-design/polishpostercollections/cold-t...
1•jruohonen•7m ago•0 comments

I built an unlimited AI video generator powered by Sora 2

https://powervideo.net/
1•LeoWood42•7m ago•1 comments

Raft Consensus in 2k Words

https://news.alvaroduran.com/p/raft-consensus-in-2000-words
1•ohduran•11m ago•0 comments

Diving into Reactive Programming in Node.js

https://blog.appsignal.com/2025/11/12/diving-into-reactive-programming-in-nodejs.html
1•amalinovic•12m ago•0 comments

Ethics isn't about being a good person

https://www.lableaks.dev/p/ethics-isnt-about-being-a-good-person
2•didgeoridoo•13m ago•0 comments

GLP-1 receptor agonists on five-year mortality in patients with colon cancer

https://www.tandfonline.com/doi/full/10.1080/07357907.2025.2585512
1•01-_-•14m ago•0 comments

RF and Microwave Power Amplifiers

https://us.artechhouse.com/RF-and-Microwave-Power-Amplifiers-P2436.aspx
1•teleforce•14m ago•0 comments

Async and Finaliser Deadlocks

https://tratt.net/laurie/blog/2025/async_and_finaliser_deadlocks.html
2•todsacerdoti•15m ago•0 comments

EU Violates Case Law in Proposed GDPR Big Tech AI Training Carve-Out

https://noyb.eu/en/eu-commission-about-wreck-core-principles-gdpr
2•piltdownman•21m ago•2 comments

Israeli settlers set fire to Palestinian warehouse and land

https://www.bbc.com/news/articles/c78zygz4xg9o
8•dependency_2x•21m ago•2 comments

Show HN: Design canvas integrated into your AI IDE

https://www.velork.com/
1•alielroby•24m ago•0 comments

TimeClout: A New, Open-Source Tool to End Shift Scheduling Headaches

https://metaduck.com/announcing-timeclout-private-beta/
1•pgte•25m ago•0 comments

Ask HN: How does one stay motivated to grind through LeetCode?

2•blutoot•26m ago•0 comments

Django-Tailwind v4.4: Now with Zero Node.js Setup via Standalone Tailwind CLI

https://timonweb.com/django/django-tailwind-v44-now-with-zero-nodejs-setup-via-standalone-tailwin...
1•bobjackson•28m ago•0 comments

Datephotos.ai

https://datephotos.ai
1•jacobgor502•29m ago•0 comments

HackGPT Enterprise, AI-Powered Penetration Testing Platform

https://github.com/yashab-cyber/HackGpt
2•salkahfi•29m ago•0 comments

I Think the BBC's Future Is Bleak

https://livelyclock.substack.com/p/why-i-think-the-bbcs-future-is-bleak
2•thomasfromcdnjs•30m ago•0 comments

How should open source software projects handle AI‑generated code?

https://manualdousuario.net/en/open-source-ai-code-keepassxc/
1•rpgbr•32m ago•0 comments

Aspire – Your Stack, Streamlined

https://aspire.dev/
1•styx31•33m ago•0 comments

Loom – An event-driven OS for AI agents, built by a college junior in 10 days

https://github.com/loom-os/loom
2•JaredforReal•33m ago•1 comments

Checklist for Preventing Browser Fingerprinting

https://cloudexplorer.ai/checklist-preventing-browser-fingerprinting/
1•BlackPlot•36m ago•0 comments

Pakistani newspaper mistakenly prints AI prompt with the article

https://twitter.com/omar_quraishi/status/1988518627859951986
17•wg0•36m ago•2 comments

What is Purchasing power parity and why you may implement it?

https://hugo.writizzy.com/purchasing-power-parity-ppp/4ea79d1b-988e-4a9f-8d0f-3d7557703fb5
1•hlassiege•38m ago•0 comments

Mls-chat: Example client/server for the MLS protocol based on OpenMLS

https://github.com/q10elabs/mls-chat
1•knz42•39m ago•1 comments

Infrastructure or Intrusion?

https://algorithmwatch.org/en/infrastructure-intrusion-conflict-data-center/
1•jruohonen•41m ago•0 comments

Google vows to stop scam E-Z Pass and USPS texts plaguing Americans

https://arstechnica.com/tech-policy/2025/11/google-vows-to-stop-scam-e-z-pass-and-usps-texts-plag...
4•BlackPlot•48m ago•0 comments

Helios: A 98-qubit trapped-ion quantum computer

https://arxiv.org/abs/2511.05465
1•fuglede_•50m ago•0 comments
Open in hackernews

Security issues discovered in sudo-rs

https://lists.debian.org/debian-security-announce/2025/msg00218.html
10•kahlonel•1h ago

Comments

portmanteaufu•1h ago
To save everyone a click, the text is:

""" Two security issues were discovered in sudo-rs, a Rust-based implemention of sudo (and su), which could result in the local disclosure of partially typed passwords or an authentication bypass in some targetpw/rootpw configurations.

For the stable distribution (trixie), this problem has been fixed in version 0.2.5-5+deb13u1.

We recommend that you upgrade your rust-sudo-rs packages. """

wiz21c•1h ago
as far as i can see, it's just programming errors, nothing to do with rust.
_flux•1h ago
Everything to do with reimplementing sudo, though.

But sudo has its share of CVEs as well (latest CVE-2025-32463), so perhaps a fresh look on the tool is warranted; perhaps some learnings have been taken from it.

noobermin•9m ago
I think if rust was used to replace other bits (say things like utilities like grep or whatever) instead of security vital things like sudo, there would be less complaints.
_flux•1h ago
What were the actual fixes like?