frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

We X-Rayed a Suspicious FTDI USB Cable

https://eclypsium.com/blog/xray-counterfeit-usb-cable/
24•aa_is_op•1h ago

Comments

invokestatic•23m ago
I have a slow burn project where I simulate a supply chain attack on my own motherboard. You can source (now relatively old) Intel PCH chips off Aliexpress that are “unfused” and lack certain security features like Boot Guard (simplified explanation). I bought one of these chips and I intend to desolder the factory one on my motherboard and replace it with the Aliexpress one. This requires somewhat difficult BGA reflow but I have all the tools to do this.

I want to make a persistent implant/malware that survives OS reinstalls. You can also disable Intel (CS)ME and potentially use Coreboot as well, but I don’t want to deal with porting Coreboot to a new platform. I’m more interested in demonstrating how important hardware root of trust is.

Nextgrid•13m ago
> persistent implant/malware that survives OS reinstalls

Try attacking NIC, server BMC or SSD firmware. You will achieve your goal without any hardware replacement needed.

gregsadetsky•8m ago
Yeah - these [0] kinds of cables are so extremely scary.

"The O.MG Cable is a hand made USB cable with an advanced implant hidden inside. It is designed to allow your Red Team to emulate attack scenarios of sophisticated adversaries"

"Easy WiFi Control" (!!!!!)

"SOC2 certification"? Dawg, the call is coming from inside the house...

[0] https://shop.hak5.org/products/omg-cable

stainablesteel•4m ago
it's a serious problem

they could be regulated to expose their chip with transparent covering rather than plain dark wiring

Two Weeks Until Tapeout

https://essenceia.github.io/projects/two_weeks_until_tapeout/
1•client4•1m ago•0 comments

What Is Conduit?

https://conduit.psiphon.ca/en/
1•alexmonami•2m ago•1 comments

Stochastic Terrorism

https://en.wikipedia.org/wiki/Stochastic_terrorism
2•garbawarb•6m ago•0 comments

My Comments Run on Email

https://ckardaris.github.io/blog/2026/01/22/my-comments-run-on-email.html
1•thunderbong•8m ago•0 comments

Show HN: Workspace-updater can now hoist common deps

1•smashah•18m ago•0 comments

ShinyHunters claims Okta customer breaches, leaks data belonging to 3 orgs

https://www.theregister.com/2026/01/23/shinyhunters_claims_okta_customer_breaches/
3•mooreds•19m ago•0 comments

Emulator2000 – Seiko Digital Watch Emulator

https://github.com/azya52/Emulator2000
1•rickcarlino•20m ago•0 comments

A plugin for Claude that forces you to write code

https://github.com/mlolson/claude-spp
1•LordHumungous•23m ago•1 comments

How Does the Hedgehog Engine 2 Work? [video]

https://www.youtube.com/watch?v=RLJQRccTwMs
1•todsacerdoti•23m ago•0 comments

Human Meaning Emerged From Exaptation: A software update, not a hardware upgrade [video]

https://www.youtube.com/watch?v=54l8_ewcOlY
2•clarencehoward•25m ago•1 comments

Stackmaxxing for a recursion world record [video]

https://www.youtube.com/watch?v=WQKSyPYF0-Y
2•edward28•25m ago•0 comments

GNU C Library 2.43 released with more C23 features, mseal and openat2 functions

https://www.phoronix.com/news/GNU-C-Library-Glibc-2.43
2•birdculture•26m ago•0 comments

Cow Clicker

https://en.wikipedia.org/wiki/Cow_Clicker
1•Ariarule•26m ago•0 comments

Wine-Staging 11.1 Adds Patches for Enabling Recent Adobe Photoshop Versions

https://www.phoronix.com/news/Wine-Staging-11.1
8•doener•26m ago•0 comments

The Longevity FAQ

https://nintil.com/longevity/
1•aabiji•27m ago•0 comments

Curl Gets Rid of Its Bug Bounty Program over AI Slop Overrun

https://itsfoss.com/news/curl-closes-bug-bounty-program/
2•nreece•32m ago•1 comments

The iOS 26 Adoption Rate Is Not Bizarrely Low Compared to Previous Years

https://daringfireball.net/2026/01/ios_26_adoption_rate_is_not_bizarrely_low
2•chmaynard•40m ago•0 comments

The Secretive VIP Programs That Keep Gamers Spending

https://www.nytimes.com/2026/01/20/arts/zynga-vip-video-games.html
4•bookofjoe•43m ago•1 comments

O Fortuna

https://robcruser.substack.com/p/o-fortuna
1•joebig•45m ago•0 comments

StoryGleam – Use Storybook with Gleam Projects

https://codeberg.org/theSuess/storygleam
1•TheWiggles•45m ago•1 comments

Tesla unsupervised Robotaxis are nowhere to be found

https://lightbrd.com/ZacksJerryRig/status/2015119993428705575#m
3•TheAlchemist•52m ago•0 comments

Show HN: Reel Rogue – A browser roguelike (idler) about manipulating the odds

https://www.alt-qq.com/
1•qq-niklas•53m ago•0 comments

Show HN: AI agent that searches the Cursor forum

https://cursor.trynia.ai/
2•jellyotsiro•54m ago•0 comments

Nvidia: Dynamic Memory Compression

https://developer.nvidia.com/blog/dynamic-memory-compression/
2•alecco•58m ago•0 comments

Show HN: Skget, another CLI to add skills to your coding agents

https://github.com/czheo/skget
1•czheo•58m ago•0 comments

Code as Content

https://www.contraption.co/code-as-content-and-digital-proprioception/
1•philip1209•59m ago•0 comments

CIO: Work-from-office mandate? Expect top talent turnover, culture rot

https://www.cio.com/article/4119562/work-from-office-mandate-expect-top-talent-turnover-culture-r...
8•dmitrygr•59m ago•0 comments

Failure to press button caused outage on train lines in Tokyo

https://www.asahi.com/ajw/articles/16307027
2•resonious•1h ago•0 comments

EU groupthink manifests itself as polite silence

https://www.ft.com/content/ecf765d1-6110-420d-abcf-9255ec015b19
1•hhs•1h ago•0 comments

Show HN: C From Scratch – Learn safety-critical C with prove-first methodology

https://github.com/SpeyTech/c-from-scratch
4•william1872•1h ago•0 comments