frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

cURL stopped HackerOne bug bounty program due to excessive slop reports

https://github.com/curl/curl/pull/20312
7•latexr•1h ago

Comments

jruohonen•1h ago
As could be expected, curl was the first one, but now the prediction is in the air about whether slop will kill also bug bounties themselves, and maybe even GitHub; cf.

https://news.ycombinator.com/item?id=46666777

latexr•1h ago
Exact messaging is:

> We have concluded the hard way that a bug bounty gives people too strong incentives to find and make up "problems" in bad faith that cause overload and abuse.

Anyone who follows Daniel Stenberg on social media, or his talks, or his blog, or cURL’s HackerOne, know the struggle AI slop reports have been on the cURL project, and how they’ve tried to work with HackerOne to reduce those and have been talking for months about terminating it for that very reason.

billy99k•25m ago
Slop bug bounty reports have always been an issue. Sites like HackerOne have a triage team that's supposed to filter through the garbage, before it gets to program management.

On the other side of it, I've submitted reports that are valid, have the steps, and show impact. Companies will do everything in their power to not pay you, including changing the back-end code or just stating it doesn't have any impact on business.

latexr•17m ago
> Sites like HackerOne have a triage team that's supposed to filter through the garbage, before it gets to program management.

Daniel Stenberg, leader and BDFL of the cURL project, has been in contact with HackerOne for at least several months to resolve the situation. It was fruitless. Daniel’s social media posts and blog make that clear.

> Companies will do everything in their power to not pay you, including changing the back-end code or just stating it doesn't have any impact on business.

That doesn’t apply to cURL at all.

billy99k•6m ago
That's why I said 'supposed to'. It's obviously not working.

"That doesn’t apply to cURL at all"

I never said it did. My point is that companies are struggling with slop reports as much as researchers not getting paid.

West Midlands police chief quits over AI hallucination

https://www.theregister.com/2026/01/19/copper_chief_cops_it_after/
1•YeGoblynQueenne•1m ago•0 comments

Show HN: Using AI agents effectively as a student

1•recursivedoubts•1m ago•0 comments

Tell HN: If you submit an article, please don't be the first commenter

1•Brajeshwar•1m ago•0 comments

A tool for seeing your Internet latency

https://gfblip.appspot.com/
1•keepamovin•2m ago•0 comments

Brain – turn natural language into Bash commands inline

https://github.com/sangress/brain
1•sangress_dev•2m ago•1 comments

Josh Shapiro Writes That Harris Team Asked If He Had Ever Been an Israeli Agent

https://www.nytimes.com/2026/01/18/us/politics/josh-shapiro-memoir-kamala-harris.html
1•mhb•3m ago•0 comments

Stop Consuming Spam at the First Sign

https://idiallo.com/blog/stop-consuming-spam-at-the-first-sign
1•Brajeshwar•3m ago•0 comments

Show HN: DanceJump – play a DDR-style dance game on YouTube (Chrome and Edge)

https://microsoftedge.microsoft.com/addons/detail/dancejump-for-youtube/kjcikodgaapodnjkhhmaobbkc...
1•maaydin•4m ago•0 comments

xAI fired employee who did the interview

https://twitter.com/sulaimanghori/status/2013261823475097732
1•Steen3S•4m ago•0 comments

An interactive map of niche artifacts

https://nichedesign.garden/
2•itaydr•5m ago•0 comments

Donald Trump links threats to seize Greenland to Nobel Prize snub in letter

https://www.theguardian.com/us-news/2026/jan/19/donald-trump-greenland-threats-nobel-prize-snub-l...
2•gizzlon•6m ago•0 comments

The mother of all demo apps

https://codebase.show/projects/realworld
1•MichaelNolan•6m ago•0 comments

The risky plan to take the "K" out of K-pop

https://www.economist.com/culture/2026/01/15/the-risky-plan-to-take-the-k-out-of-k-pop
1•andsoitis•7m ago•0 comments

MacBooks, Apple Neural Engine, and Overheating

https://gethopp.app/blog/macbook-m4-overheating
1•OptionOfT•7m ago•1 comments

How we mitigated a vulnerability in Cloudflare’s ACME validation logic

https://blog.cloudflare.com/acme-path-vulnerability/
1•el_duderino•8m ago•0 comments

Surfscape – Your Own Way to Navigate the Web with Freedom

https://github.com/machaddr/surfscape
1•keepamovin•9m ago•1 comments

Show HN: Ghost Engine – generate weights on the fly

https://github.com/sajanlamsal/ghost-engine
1•saznlamsal•10m ago•1 comments

Kdb+ (Time Series Database Lectures #4 Fintan Quill 2017) [video]

https://www.youtube.com/watch?v=AiGdfmxEP68
1•tosh•10m ago•0 comments

Idiocracy

https://pt.wikipedia.org/wiki/Idiocracy
10•voxleone•13m ago•5 comments

We implemented a blind signatures model to anonymize user API requests

https://wardblog.substack.com/p/technical-post-how-we-created-a-blind
1•bennydog224•15m ago•1 comments

SmartExcelGuardian: Open-source Excel data cleaning with heuristics and formulas

https://github.com/rogers-cyber/SmartExcelGuardian
1•Dev_Master•16m ago•1 comments

Ask HN: Anyone using Claude Agent SDK in production?

1•galsapir•16m ago•0 comments

Show HN: Visualizing LLM Price vs. Performance

https://the-frontier.app/
1•foke82•16m ago•0 comments

I built a voice-first AI mirror you can self-host

https://noted.lol/mirrormate/
1•orangekame3•18m ago•1 comments

Google translategemma 4B Translation Models

https://huggingface.co/google/translategemma-4b-it
2•darktoto•19m ago•0 comments

Edbrowse: A command-line editor and web browser

https://github.com/edbrowse/edbrowse
1•thunderbong•20m ago•0 comments

A self-hosted PaaS with a unified dashboard for all your servers

https://senate.sh/
1•xuty•21m ago•0 comments

Scaling long-running autonomous coding

https://simonwillison.net/2026/Jan/19/scaling-long-running-autonomous-coding/
1•blenderob•21m ago•0 comments

NYSE develops tokenized securities platform to support 24/7 trading

https://www.theblock.co/post/386123/nyse-develops-tokenized-securities-platform-to-support-24-7-t...
1•Anon84•22m ago•0 comments

Reals, Complex, Quaternions and Octonions

https://nigelvr.github.io/post-4.html
1•nigelvr•22m ago•0 comments