frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: SiteIQ–Automated security tests for LLM APIs(prompt inj,jailbreaks,DoS)

https://github.com/sastrophy/siteiq
1•sastrophy•1h ago
Hi HN,

  I'm an 11th grader learning cybersecurity. I built SiteIQ, an open-source security testing tool that includes 36 automated tests specifically for LLM-powered APIs.

  Why this matters: Most security scanners focus on traditional web vulnerabilities (SQLi, XSS). But if you're shipping an LLM-powered feature, you need to test for prompt injection, jailbreaks, and LLM-specific DoS attacks. I couldn't find a good open-source tool for this, so I built one.

  What it tests:

  - Prompt Injection – Direct, indirect, RAG poisoning
  - Jailbreaks – DAN-style, persona continuation, "grandma exploit", fictional framing
  - Encoding Bypass – Base64, ROT13, nested encodings, custom ciphers
  - Refusal Suppression – Attacks that block the model from saying "I cannot"
  - Hallucination Induction – Tries to get fake library names/CVEs (package hallucination attacks)
  - ASCII Art Jailbreaks – Visual text that bypasses keyword filters
  - Recursive Prompt DoS – Quine-style prompts, Fibonacci expansion, tree generation
  - System Prompt Leakage – 12 extraction techniques
  - Cross-Tenant Leakage – Session confusion, memory probing
  - Plus: PII handling, emotional manipulation, Unicode/homoglyphs, multi-turn attacks, tool abuse...
The tool also does traditional security/SEO/GEO testing, but I think the LLM module is most useful given how many teams are shipping AI features without proper adversarial testing.

GitHub: https://github.com/sastrophy/siteiq

  Feedback welcome – especially on attack vectors I'm missing.

The Hardest and Easiest Spelling Bee Words of 2025

https://www.nytimes.com/2025/12/16/upshot/spelling-bee-words-2025.html
1•sarimkx•33s ago•1 comments

Estimated Tokens to Merge

https://gmays.com/estimated-tokens-to-merge-etm-other-notes/
1•gmays•41s ago•0 comments

UK bid for 2035 women's football World Cup with 15 cities and 22 stadiums in mix

https://www.theguardian.com/football/2025/nov/28/uk-unveils-bid-for-2035-womens-football-world-cu...
1•PaulHoule•1m ago•0 comments

Comparing language model performance on creative writing transformations

https://writing-showdown.com/
1•amarble•1m ago•0 comments

Security tools for people who don't like security tools

https://shroudlabs.tech/
1•airhangerf15•2m ago•0 comments

Origin of Hallucination in LLMs, The physical source of hallucinations has found

https://arxiv.org/abs/2512.01797
2•bilsbie•3m ago•0 comments

Trump's First Year Reshaped U.S. Energy and Climate Policy

https://www.nytimes.com/2025/12/22/climate/how-trumps-first-year-reshaped-us-energy-and-climate-p...
2•quapster•3m ago•0 comments

Fossilized Bee Nests Inside Skeletons Are Unlike Anything We've Seen Before

https://gizmodo.com/fossilized-bee-nests-inside-skeletons-are-unlike-anything-weve-seen-before-20...
1•gmays•3m ago•0 comments

Chris Rea, singer of festive hit Driving Home for Christmas, dies aged 74

https://www.thejournal.ie/chris-rea-dead-singer-6910947-Dec2025/
1•vinnyglennon•5m ago•1 comments

Ask HN: Self-Hosted Observability Tools

1•rcarmo•5m ago•0 comments

Optera's room-temperature spectral hole optical storage archive

https://blocksandfiles.com/2025/12/21/opteras-room-temperature-spectral-hole-optical-storage-arch...
1•rbanffy•6m ago•0 comments

Study: More eyes on the skies will help planes reduce climate-warming contrails

https://news.mit.edu/2025/study-observing-skies-will-help-planes-reduce-climate-warming-contrails...
1•fleahunter•6m ago•0 comments

Toad is a unified experience for AI in the terminal

https://willmcgugan.github.io/toad-released/
2•nikolatt•6m ago•0 comments

Show HN: DeepSearch – a high-performance SMB directory scanner in Rust

https://github.com/dohuyhoang93/DeepSearch
1•dohuyhoangvn93•7m ago•0 comments

The Texas Instruments CC-40 invades Gopherspace (plus TI-74 BASICALC)

http://oldvcr.blogspot.com/2025/12/the-texas-instruments-cc-40-invades.html
1•rbanffy•7m ago•0 comments

Amazon overhauls AI team as chief declares an 'inflection point'

https://www.ft.com/content/f3092c2d-f428-4ff4-bdbd-9a27b12bcae2
1•1vuio0pswjnm7•8m ago•0 comments

Lord Sandwich who the sandwich is named after

https://en.wikipedia.org/wiki/John_Montagu,_4th_Earl_of_Sandwich
1•ViktorRay•10m ago•0 comments

A Unified CLI Tool for All Your LLMs That Promises Improved UX

https://www.infoq.com/news/2025/12/llm-agent-cli/
1•willm•10m ago•0 comments

Federal Prison for Writing Code

https://reason.com/podcast/2025/12/19/hes-serving-5-years-in-prison-for-bitcoin-privacy-software/
2•manithree•10m ago•1 comments

Archive.org Is Down

https://www.archive.org
4•RcouF1uZ4gsC•11m ago•0 comments

Don't Cheer the End of America's Obesity Crisis Just Yet

https://www.economist.com/graphic-detail/2025/11/17/dont-cheer-the-end-of-americas-obesity-crisis...
1•sarimkx•12m ago•1 comments

Lua 5.5.0 Released

https://lua.org/versions.html#5.5
4•km•13m ago•0 comments

UX systems now optimize faster than users can make meaning

https://www.slideshare.net/slideshow/two-ux-patterns-we-don-t-talk-about-enough/284775816
1•realitydrift•13m ago•0 comments

Ask HN: Favourite Blog Posts of 2025

1•sarimkx•15m ago•0 comments

10 years of personal finances in plain text files

https://sgoel.dev/posts/10-years-of-personal-finances-in-plain-text-files/
1•siddhant•15m ago•0 comments

Why Do A.I. Chatbots Use 'I'

https://www.nytimes.com/2025/12/19/technology/why-do-ai-chatbots-use-i.html
1•elsewhen•16m ago•0 comments

Ask HN: Favourite Books of 2025

1•sarimkx•16m ago•0 comments

Anti-AI Hate? A Defense of AI-Assisted Development

https://meysam.io/blog/whats-with-the-purist-anti-ai-hate/
1•meysamazad•16m ago•0 comments

Ask HN: What are some home office essentials?

1•quantumwoke•17m ago•0 comments

How to migrate your user data from Google Firebase

https://fusionauth.io/blog/how-to-migrate-from-firebase
1•mooreds•21m ago•0 comments