frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Deft-Intruder – Real-time malware detection daemon for Linux

https://github.com/Deftdotcx/deft-intruder
1•539hex•1h ago
I built an open-source malware detection daemon that monitors all running processes in real-time using ML + heuristics. No kernel modules or eBPF required.

Key points:

- Polls /proc for new processes (works on any Linux kernel 2.6+)

- Random Forest model trained on EMBER 2018 dataset (2.3M samples)

- Heuristic rules for crypto miners, ransomware, rootkits

- ~20MB RAM, <1% CPU, sub-millisecond scan latency

- Pure C, zero runtime dependencies

- Model embedded directly in binary (50KB)

Why I built this: Existing solutions either require modern kernels (eBPF) or are heavy/proprietary. I wanted something lightweight that works everywhere - servers, containers, old distros.

Detection approach: Extract features from executables (entropy, imports, sections), run ML prediction, apply heuristic rules, combine scores. If above threshold, kill the process.

Happy to discuss implementation details or Linux security in general.

Pragmatism, not idealism, will determine the fate of Google's ad tech empire

https://digiday.com/media-buying/ad-tech-briefing-pragmatism-not-idealism-will-determine-the-fate...
1•doener•2m ago•0 comments

High-Performance Query Processing with NVMe Arrays

https://dl.acm.org/doi/10.1145/3698813
1•blakepelton•3m ago•1 comments

'A's will soon be most common university grade (New Zealand)

https://www.rnz.co.nz/news/national/579974/grade-inflation-think-tank-warns-a-s-will-soon-be-most...
1•robocat•11m ago•0 comments

Historic Engineering Wonders: Photos That Reveal How They Pulled It Off

https://rarehistoricalphotos.com/engineering-methods-from-the-past/
1•dxs•13m ago•0 comments

The Archaeologist and the Oil Drop – Ben Landau-Taylor

https://www.benlandautaylor.com/p/the-archaeologist-and-the-oil-drop
1•bilsbie•13m ago•0 comments

A Tiny TypeScript Rant

https://mayberay.bearblog.dev/a-tiny-typescript-rant/
1•mugamuga•13m ago•0 comments

The Smart Squeeze

https://hypersoren.xyz/posts/smart-squeeze/
1•highfrequency•15m ago•0 comments

Proton Pass CLI

https://proton.me/blog/proton-pass-cli
1•mikece•15m ago•0 comments

When AI Goes Wrong

https://whenaifail.com/category/ai-coding/
1•birdculture•16m ago•0 comments

Psychoanalysis in Reverse

https://cybershow.uk/blog/posts/inreverse/
2•oydydfdfhd•16m ago•0 comments

I Sent 200 Cold Messages and Got Zero Calls: My Customer Discovery Reality Check

https://meysam.io/blog/cold-outreach-customer-discovery-zero-conversions/
1•meysamazad•17m ago•2 comments

Godbolt's Rule When Abstractions Fail

https://corecursive.com/godbolt-rule-matt-godbolt/
1•_kb•18m ago•0 comments

DateAtlas – Maps every date and time to a unique spot on Earth

1•forge_craft•20m ago•0 comments

Implementing Zero-Trust Network Access for Microservices with OpenZiti

https://www.vroble.com/2025/11/beyond-firewalls-implementing-zero.html
2•dovholuknf•20m ago•0 comments

AWS Lambda Networking over IPv6

https://aws.amazon.com/blogs/compute/aws-lambda-networking-over-ipv6/
1•enz•22m ago•0 comments

UK digital bank Revolut sees value jump £23B in a year

https://www.computerweekly.com/news/366634852/UK-digital-bank-Revolut-sees-value-jump-23bn-in-a-year
3•latein•22m ago•0 comments

Shutting Down Not Another CV

https://mikevdv.dev/blog/2025-11-24-shutting-down-not-another-cv
1•speckx•23m ago•0 comments

Libinput 1.30 adds support for Lua plugins

https://lore.freedesktop.org/wayland-devel/20251125050917.GA854973@quokka/T/#u
1•qrobit•23m ago•0 comments

ZSim: Fast and Accurate Microarchitectural Simulation of Thousand-Core Systems [pdf]

https://people.csail.mit.edu/sanchez/papers/2013.zsim.isca.pdf
1•nill0•24m ago•0 comments

Unlocking ammonia as a fuel source for heavy industry

https://news.mit.edu/2025/unlocking-ammonia-fuel-source-heavy-industry-amogy-1125
2•meysamazad•24m ago•0 comments

Can application layer improve local model output quality?

1•acro-v•24m ago•1 comments

Preconfigured neuronal firing sequences in human brain organoids

https://www.nature.com/articles/s41593-025-02111-0
1•tmzt•25m ago•0 comments

Opus 4.5 is the best model for RAG

https://agentset.ai/blog/opus-4.5-eval
2•tifa2up•26m ago•0 comments

The Great Downzoning

https://worksinprogress.co/issue/the-great-downzoning/
1•ortegaygasset•27m ago•0 comments

Ask HN: Favorite "hacking" mini-games in video games?

2•Gabonish•27m ago•0 comments

Auto-save feature added for buildsheet.one

https://buildsheet.one
1•usegrand•28m ago•0 comments

Erdoğan rings alarm bells on demographic crisis

https://www.dailysabah.com/politics/erdogan-rings-alarm-bells-on-demographic-crisis/news
1•bookofjoe•29m ago•1 comments

Four Ways AI Is Being Used to Strengthen Democracies Worldwide

https://www.schneier.com/blog/archives/2025/11/four-ways-ai-is-being-used-to-strengthen-democraci...
1•speckx•30m ago•0 comments

IKEA's colorful new Bluetooth speakers

https://www.theverge.com/news/827516/ikea-bluetooth-speaker-solskydd-kulglass-lamp-spotify-tap
2•HelloUsername•30m ago•0 comments

Volatile Infrastructure is worse than volatile applications

https://www.draketo.de/software/volatile-infrastructure
1•pantalaimon•30m ago•0 comments