frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Tool to detect malware left behind after patching CVE-2025-55182

3•Just_Clive•1d ago
I'm Clive, a developer from South Africa. Four days ago, Eduardo Borges posted about getting hacked through CVE-2025-55182 (the React Server Components RCE). His server was patched, but the malware stayed, crypto miners, fake services named "nginxs" and "apaches", cron jobs for persistence. CPU at 361%. Part of a 415-server botnet.

That's when I realized: patching removes the vulnerability, but not the infection.

I built NeuroLint originally as a deterministic code transformation tool for React/Next.js (no AI, just AST-based fixes). When this CVE dropped, I added Layer 8: Security Forensics.

It scans for 80+ indicators of compromise: - Suspicious processes (high CPU, random names, fake services) - Malicious files in /tmp, modified system binaries - Persistence mechanisms (cron jobs, systemd services, SSH keys) - Network activity (mining pools, C2 servers) - Docker containers running as root with unauthorized changes - Crypto mining configs (c.json, wallet addresses)

Try it: npm install -g @neurolint/cli neurolint security:scan-breach . --deep

No signup required. Works on Linux/Mac. Takes ~5 minutes for a deep scan.

What's different from manual detection: - AST-based code analysis (detects obfuscated patterns) - 80+ behavioral signatures vs. 5-10 manual grep commands - Automated remediation (--fix flag) - Timeline reconstruction showing when breach occurred - Infrastructure-wide scanning (--cidr flag for networks)

The tool is deterministic (not AI). Same input = same output every time. Uses Babel parser for AST transformation with fail-safe validation - if a transformation fails syntax checks, it reverts.

Built it in 3 days based on Eduardo's forensics and other documented breaches. Already found dormant miners in test environments.

GitHub: https://github.com/Alcatecablee/Neurolint-CLI NPM: https://www.npmjs.com/package/@neurolint/cli

If you were running React 19 or Next.js 15-16 between Dec 3-7, run the scanner even if you already patched. Especially if you already patched.

Happy to answer questions about the detection logic, AST parsing approach, or the CVE itself.

The New Kindle Scribes Are Great, but Not Great Enough

https://www.wired.com/review/kindle-scribe-colorsoft-2025/
1•thm•40s ago•0 comments

Beyond the Bus Factor: Managing Tribal Knowledge

https://brihatijain.com/blog/beyond_the_bus_factor
1•brihati•1m ago•1 comments

China launches satellite 'super factory' in bid to rival Elon Musk's Starlink

https://www.scmp.com/economy/china-economy/article/3335926/china-launches-satellite-super-factory...
1•gscott•2m ago•0 comments

Computer Use 2025 Wrapped

https://www.onkernel.com/blog/computer-use-2025
1•masnwilliams•3m ago•0 comments

Chord: Open-Source Prototype for PBR Material Estimation Debuting at Siggraph

https://www.ubisoft.com/en-us/studio/laforge/news/1i3YOvQX2iArLlScBPqBZs/generative-base-material...
1•klaussilveira•5m ago•0 comments

Military's new AI: 'Hypothetical' boat strike scenario 'unambiguously illegal'

https://san.com/cc/the-militarys-new-ai-says-hypothetical-boat-strike-scenario-unambiguously-ille...
1•doener•5m ago•0 comments

LZ dark matter experiment spots neutrinos from the sun's core

https://www.llnl.gov/article/53711/lz-dark-matter-experiment-sets-worlds-best-spots-neutrinos-sun...
1•gmays•5m ago•0 comments

Meta's Pivot from Open Source to Money-Making AI Model

https://www.bloomberg.com/news/articles/2025-12-10/inside-meta-s-pivot-from-open-source-to-money-...
2•peterbonney•7m ago•0 comments

EU-US Data Transfers: Time to prepare for more trouble to come

https://noyb.eu/en/eu-us-data-transfers-time-prepare-more-trouble-come
4•tomwas54•7m ago•0 comments

Heuristics vs. RAG: Shrinkflation as a Policy Driver

https://www.unite.ai/heuristics-vs-rag-shrinkflation-as-a-policy-driver/
1•50kIters•7m ago•0 comments

Ask HN: Is there a "good" (non-privacy horror) aftermarket HUD for your car?

1•xrd•8m ago•0 comments

German unions call for French Dassault's expulsion from EU fighter jet program

https://www.reuters.com/business/aerospace-defense/powerful-german-union-calls-dassaults-expulsio...
2•alephnerd•8m ago•0 comments

Show HN: Wirebrowser – A JavaScript Debugger with Breakpoint-Driven Heap Search

https://github.com/fcavallarin/wirebrowser
2•fcavallarin•9m ago•0 comments

Explaining weird stuff via Python's compilation pipeline – UMich guest lecture [video]

https://www.youtube.com/watch?v=G2yPbg2fgQY
1•vismit2000•10m ago•0 comments

Why Tagged PDF Matters for AI

https://opendataloader.org/docs/tagged-pdf
1•Julia_Katash•11m ago•1 comments

Decide What's Human

https://kupajo.com/decide-whats-human/
1•kolyder•12m ago•0 comments

Preventing Resource Leaks in Go: How GoLand Helps You Write Safer Code

https://blog.jetbrains.com/go/2025/12/09/preventing-resource-leaks-in-go-how-goland-helps-you-wri...
1•Annprots•12m ago•1 comments

Pedantle

https://pedantle.certitudes.org/
1•knuckleheads•12m ago•0 comments

Storing OAuth Tokens

https://fusionauth.io/articles/oauth/oauth-token-storage
1•mooreds•13m ago•0 comments

Pompeii Time Capsule Reveals Secrets to Durable Ancient Roman Cement

https://www.scientificamerican.com/article/pompeii-house-frozen-mid-renovation-reveals-secrets-of...
2•Brajeshwar•14m ago•0 comments

Starlink Became the Internet Alternative

https://restofworld.org/2025/starlink-musk-internet-expansion/
2•Brajeshwar•14m ago•0 comments

James Webb Telescope detects 13B-year-old supernova with gamma-ray burst

https://www.space.com/astronomy/james-webb-space-telescope/the-james-webb-space-telescope-just-fo...
1•Brajeshwar•14m ago•0 comments

Calif. tech saddest invention has been bleeding cash

https://www.sfgate.com/food/article/california-tech-world-soylent-scrambling-adapt-21219237.php
1•deegles•15m ago•1 comments

201 Stories by Anton Chekhov

https://web.archive.org/web/20070630223838/http://chekhov2.tripod.com/
1•bookofjoe•15m ago•0 comments

Legacy Code, Live Risk: Empirical Evidence of Malware Detection Gaps

https://www.mdpi.com/2076-3417/15/22/11862
1•PaulHoule•15m ago•0 comments

39C3 Fahrplan 2025

https://fahrplan.events.ccc.de/congress/2025/fahrplan/
2•birdculture•15m ago•0 comments

Show HN: Stridewars – A team step competition with Mario Kart-style power-ups

https://www.stridewars.com
1•nugzbunny•15m ago•0 comments

Relational AI vs. Constitutional AI: Are we focusing on the right question?

1•buttersmoothAI•18m ago•0 comments

Former GitLab CEO raises money for Kilo to compete in crowded AI coding market

https://www.cnbc.com/2025/12/10/former-gitlab-ceo-raises-8-million-for-kilo-to-compete-in-vibe-co...
1•lngzl•19m ago•0 comments

How to Write Your LinkedIn

https://taylordesseyn.substack.com/p/how-to-write-your-linkedin
1•mooreds•19m ago•0 comments