frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Low PNR Entropy: I accessed all airline bookings via simple math

https://alexschapiro.com/blog/security/vulnerability/2025/11/20/avelo-airline-reservation-api-vulnerability
4•bearsyankees•36m ago

Comments

diavarlyani•33m ago
Meanwhile in India we have airlines asking for OTP + Aadhaar + blood sample to change a seat, and somehow Avelo just needed 6 random chars. Beautiful write-up, Alex — this is the kind of responsible disclosure we need more of.

All about Automotive Lidar

https://mainstreetautonomy.com/blog/2025-08-29-all-about-automotive-lidar/
1•dllu•23s ago•0 comments

Show HN: Visual Proof of Pythagoras' Theorem

https://do-say-go.github.io/insights/others/interactive_perigals_pythagorean.html
1•keepamovin•1m ago•0 comments

India is ordering Apple and other phone makers to preinstall a state-owned app

https://www.theverge.com/news/834998/india-sanchar-saathi-app-order-apple-android
3•alsetmusic•4m ago•0 comments

I threw out those deodorants and anti-perspirants (2004)

https://stuff.mit.edu/people/rei/deodorant.html
1•huijzer•5m ago•1 comments

Sage Draughts

https://orac81.itch.io/sage-draughts
1•orac81•5m ago•1 comments

How many bytes does gzip compress?

https://www.awsistoohard.com/blog/gzip-is-cracked
1•veryrealsid•7m ago•0 comments

Polarization Impairs Performance: Evidence from Random Assignment in Pro Golf

https://pubsonline.informs.org/doi/10.1287/mnsc.2023.01798
1•PaulHoule•8m ago•0 comments

Our Future of Subtle Corporate Manipulation: AI Overviews of Independent Content [video]

https://www.youtube.com/watch?v=MrwJgDHJJoE
2•GiorgioG•11m ago•0 comments

What do we tell the humans?

https://theaidigest.org/village/blog/what-do-we-tell-the-humans
1•arb_•11m ago•0 comments

SpecWise – CI seatbelt that blocks risky AI merges

https://specwise.get0to1.com
1•tomekkaszynski•12m ago•1 comments

Understanding Why AGI Still Feels Distant

https://tawandamunongo.dev/posts/2025/12/machines-dont-think/
1•elcapithanos•12m ago•0 comments

Discovering APIs with Knowledge Graphs

https://jdsemrau.substack.com/p/discovering-apis-with-knowledge-graphs
1•Brajeshwar•15m ago•0 comments

Official Gemini course video: create poem on attendance at all-hands meetings

https://youtube.com/watch?v=DFXOInBrq60
1•soraminazuki•16m ago•1 comments

Teaching LLMs to compose math symbolically, not execute it

1•CheerfulDreamer•17m ago•0 comments

The USGS Cooperative National Geologic Map

https://www.beautifulpublicdata.com/usgs-cooperative-national-geologic-map/
1•Brajeshwar•17m ago•0 comments

GSoC 2025: ClangIR Upstreaming

https://blog.llvm.org/posts/2025-gsoc-clangir-upstreaming/
1•matt_d•20m ago•0 comments

NetEase Anticheat vulnerable to arbitrary kernelmode R/W

https://github.com/smallzhong/NeacController
2•kachapopopow•21m ago•1 comments

Deriving Dark Matter density from Information Theory with zero free parameters

https://zenodo.org/records/17764146
1•EvertonB•21m ago•1 comments

FileKit.dev – Plug-and-play uploads and media playback for React and Svelte

https://FileKit.dev
1•georgealbert•23m ago•0 comments

Paper shows scientific foundation model learns general abstract physics

https://arxiv.org/abs/2511.20798
1•iRoygbiv•25m ago•1 comments

We hacked Lovable to Vibe QA your apps

https://chromewebstore.google.com/detail/vibe-qa-ai-powered-testin/mnjjjnhaidpiaaknihingdmbnkoleffc
1•tarasyarema•26m ago•1 comments

Apple: STARFlow-V, a Normalizing Flow Model for Causal Video Generation

https://huggingface.co/apple/starflow
2•eyk19•29m ago•0 comments

DeepSeek-v3.2: Pushing the Frontier of Open Large Language Models

https://cas-bridge.xethub.hf.co/xet-bridge-us/692cfec93b25b81d09307b94/2d0aa38511b9df084d12a00fe0...
2•airstrike•29m ago•0 comments

An AI model trained on prison phone calls now looks for planned crimes in calls

https://www.technologyreview.com/2025/12/01/1128591/an-ai-model-trained-on-prison-phone-calls-is-...
1•rbanffy•29m ago•0 comments

Specification Grounding: The Missing Link in Vibe Coding

https://unstract.com/blog/specification-grounding-vibe-coding/
2•naren87•29m ago•0 comments

After 40 years of adventure games, Ron Gilbert pivots to outrunning Death

https://arstechnica.com/gaming/2025/12/after-40-years-of-adventure-games-ron-gilbert-pivots-to-ou...
1•mikhael•30m ago•0 comments

Self-Organized Criticality

https://en.wikipedia.org/wiki/Self-organized_criticality
1•indigodaddy•30m ago•1 comments

Did JWST Find an Exomoon or a Starspot?

https://www.universetoday.com/articles/did-jwst-find-an-exomoon-or-a-starspot
1•rbanffy•30m ago•0 comments

DSpico: Open-Source Nintendo DS Flashcart

https://github.com/LNH-team/dspico-hardware
2•akyuu•30m ago•0 comments

VSCode Tasks files used in new malware campaign

https://opensourcemalware.com/blog/contagious-interview-vscode
3•6mile•31m ago•0 comments