frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Codex can read sensitive files outside the CWD without approval

1•thomas34298•1h ago
If you directly ask Codex to read ~/.ssh/id_rsa, it will usually decline due to "safety concerns". However, the sandbox which the agent is running in doesn't restrict reads outside the working directory in any way and you won't even be asked for approval - it's just a prompt (injection) away. The Codex developers close issues related to this problem and simply suggest running Codex "in a docker container or VM" [1].

To quote the Codex security documentation [2]:

> We’ve chosen a powerful default for how Codex works on your computer. In this default approval mode, Codex can read files, make edits, and run commands in the working directory automatically.

> However, Codex will need your approval to work outside the working directory or run commands with network access. [...]

As a new, naive user (which I was), I'd assume based on the text above that Codex wouldn't be able to extract secrets and read my browser history or whatever else on my PC if I started it in VSCode for example. Running Codex in a Docker container or VM is totally valid and quite a few people are probably doing that, like in a CI/CD pipeline, however, that's definitely the minority.

How is this not a bigger deal? In my experience, other agentic tools like Claude Code give the user much more control in regards to safety and what OpenAI is doing here feels highly irresponsible IMHO.

[1] https://github.com/openai/codex/issues/5237#issuecomment-3536026833

[2] https://developers.openai.com/codex/security/

Code Wiki: Accelerating your code understanding

https://developers.googleblog.com/en/introducing-code-wiki-accelerating-your-code-understanding/
1•msolujic•1m ago•0 comments

Meta and Google Discuss Deploying TPUs in Meta Datacenters Starting 2027

https://finance.yahoo.com/news/meta-google-discuss-tpu-deal-233823637.html
1•mfiguiere•3m ago•0 comments

Who first understood how eyes work?

https://www.occuity.com/post/who-first-understood-how-eyes-work
1•andsoitis•3m ago•0 comments

OpenAI's AI gadget now has a prototype

https://sherwood.news/tech/altman-openais-ai-gadget-now-has-a-prototype/
1•RyanShook•19m ago•0 comments

Computer Science and Game Theory: A Conversation – Timothy Roughgarden [video]

https://www.youtube.com/watch?v=cKeuB4B1Ww8
2•vismit2000•21m ago•0 comments

AI or You? Who is the one who can't get it done?

https://medium.com/@ahintze_23208/ai-or-you-who-is-the-one-who-cant-get-it-done-1cb60b9a2dbb
1•timschmidt•24m ago•0 comments

Ask HN: Why do maintainers spend time reviewing my code?

1•dils•24m ago•0 comments

Show HN: Kibun (気分) – a decentralized status.cafe alternative I made

https://www.kibun.social/
4•lakshikag•26m ago•0 comments

Unexpected 'Zig-Zag' Structures Discovered in Earth's Magnetic Field

https://www.sciencealert.com/unexpected-zig-zag-structures-discovered-in-earths-magnetic-field
1•ashishgupta2209•33m ago•0 comments

The AI Invasion of Knitting and Crochet

https://www.plagiarismtoday.com/2025/11/24/the-ai-invasion-of-knitting-and-crochet/
3•cardamomo•35m ago•0 comments

Why investors are increasingly fatalistic

https://www.economist.com/finance-and-economics/2025/11/23/why-investors-are-increasingly-fatalistic
3•jcartw•35m ago•2 comments

Quantum computing production expands with Shenzhen's factory project in China

https://dig.watch/updates/quantum-computing-production-expands-with-shenzhens-factory-project-in-...
1•rguiscard•40m ago•1 comments

Stanford Agentic Reviewer

https://paperreview.ai/
1•kpw94•42m ago•1 comments

Webfoundry gets GPT 5.1 Codex HTML generation through voice assistant

https://www.webfoundry.app/
2•guiprav•45m ago•1 comments

The price of gold: In Venezuela, mining threatens Indigenous Pemón

https://news.mongabay.com/2025/11/the-price-of-gold-in-venezuela-mining-threatens-indigenous-pemon/
1•PaulHoule•48m ago•0 comments

Linux compatible reliable C# boost for NATS messaging

https://github.com/nats-io/nats.net
1•northlondoner•50m ago•0 comments

Show HN: NBPro – NanoBanana Pro prompt library (100 prompts)

https://nbpro.org/
1•qzcanoe•51m ago•0 comments

Rare Layoffs at Apple Impact Dozens in Sales Roles

https://www.macrumors.com/2025/11/24/apple-eliminates-sales-roles/
3•mgh2•52m ago•0 comments

Towards Better Word

https://aartaka.me/better-word.html
2•freediver•53m ago•0 comments

Nvidia's rebuttal to Michael Burry's criticism

https://www.businessinsider.com/read-nvidia-rebuttal-michael-burry-criticism-other-claims-ai-boom...
1•mgh2•55m ago•0 comments

MetaOCaml: Ten Years Later System Description

https://www.sciencedirect.com/science/article/pii/S0167642325001364
1•matt_d•56m ago•0 comments

Seekdb: The AI-Native Search Database

https://github.com/oceanbase/seekdb
1•zyh888•58m ago•0 comments

The lesson I learnt in the USSR that still fools millions

https://youtu.be/gI1VcTVmqA8
2•burnt-resistor•58m ago•1 comments

Show HN: I Built a Small Startup Idea Validation Platform

https://b4zero.vercel.app/
1•mhpro15•1h ago•0 comments

Four Top Contenders at Apple to Succeed Tim Cook

https://www.wsj.com/tech/apple-ceo-tim-cook-successors-67b1bf84
1•sebastian_z•1h ago•0 comments

China's Xi Jinping Raises Future of Taiwan in Call with Donald Trump

https://www.theguardian.com/world/2025/nov/25/china-taiwan-xi-jinping-call-with-donald-trump
3•drivebyhooting•1h ago•0 comments

CS 61A: Structure and Interpretation of Computer Programs

https://cs61a.org
1•swatson741•1h ago•0 comments

Ask HN: MSRC silently patched my report (Status: "Complete") but denied bounty?

2•mambazz•1h ago•2 comments

Google is bringing Fuchsia OS to Android devices in pKVM microfuchsia VM (2024)

https://www.androidauthority.com/microfuchsia-on-android-3457788/
1•transpute•1h ago•1 comments

Ask HN: How should we self-assemble and launch "Naybor SOS" (Neighbor 911)?

https://www.neighbor911.us
1•davidharmsless•1h ago•0 comments