frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: SemaMesh: eBPF-based firewall for AI Agents(blocks destructive prompts)

https://github.com/semamesh/SemaMesh
1•vikram_yerneni•1h ago
Hello HN,

We built an open-source, sidecarless service mesh to govern autonomous AI agents on Kubernetes.

The Problem: Standard meshes (Istio/Cilium) operate at L4/L7. They see connections, but they don't see intent. If an autonomous agent gets stuck in a loop and burns $1,000 in OpenAI tokens, or decides to run DROP TABLE to "optimize storage," a standard mesh sees a valid HTTP 200 OK.

The Solution: SemaMesh uses eBPF (sock_ops) to transparently intercept outbound traffic from AI pods and route it through a local semantic proxy (Go) that enforces "Layer 8" policies.

Features: . eBPF-based: No sidecar injection required. . Semantic Blocking: Parses JSON prompts to block high-risk intent (e.g., "delete database") before it leaves the node. . Stateful Pause: Integrates with CRIU to freeze/checkpoint a rogue agent's process state for forensics instead of just killing the pod. . Token Quotas: Rate limit by $$ cost, not just requests per second.

Tech Stack: . Datapath: C (eBPF) . Proxy/Control Plane: Go . Orchestration: Kubernetes (DaemonSet/Operator)

We just released v0.4.0 with a "Smoke Test" script that spins up a local Kind cluster and simulates a "Rogue Agent" attack so you can see the blocking logic in action.

Repo: https://github.com/semamesh/SemaMesh

Would love feedback on the eBPF interception logic or the CRIU integration approach.

Show HN: Cmdfy – Generate shell commands locally using Ollama (Go binary)

https://github.com/kesavan-vaisakh/cmdfy
1•vaisakh92•40s ago•0 comments

Scaling Embeddings Outperforms Scaling Experts in Language Models

https://arxiv.org/abs/2601.21204
1•simonpure•2m ago•0 comments

Coast Guard breaks up ice in Hudson River as NYC Ferry remains suspended

https://gothamist.com/news/coast-guard-breaks-up-ice-in-hudson-river-ny-harbor-as-nyc-ferry-remai...
1•geox•2m ago•0 comments

The $75M Opportunity: Consolidating Canada's Fragmented AI Spending

https://zeitgeistml.substack.com/p/the-75m-opportunity-consolidating
1•eh_tk•3m ago•0 comments

Analytical Chemistry 2.0

https://asdlib.org/onlineArticles/ecourseware/Text_Files.html
1•loughnane•3m ago•0 comments

Skypilot: Run, manage, and scale AI workloads on any AI infrastructure

https://github.com/skypilot-org/skypilot
1•ahamez•3m ago•0 comments

Shark 2.0 – a free, open-source poker solver in C++

https://github.com/24parida/shark-2.0
1•aparida31•4m ago•1 comments

Sometimes Never Compete on Price

https://longform.asmartbear.com/never-compete-on-price/
1•gk1•4m ago•0 comments

Rethinking Heating

https://www.youtube.com/watch?v=o8xcHmYlyX8
1•oliversisson•6m ago•1 comments

'We got lazy and complacent': abolishing the wealth tax changed Sweden

https://theconversation.com/we-got-lazy-and-complacent-swedish-pensioners-explain-how-abolishing-...
1•PaulHoule•6m ago•0 comments

Zendesk Alternative

http://zendeskalternative.com
1•gk1•7m ago•0 comments

'On This Day... 1776'

https://www.youtube.com/playlist?list=PLYOGLpQQfhNIzsiXxPLUMwhBEunGH9bem
1•bookofjoe•7m ago•1 comments

Show HN: Stripe-no-webhooks – Sync your Stripe data to your Postgres DB

https://github.com/pretzelai/stripe-no-webhooks
4•prasoonds•7m ago•0 comments

Looking for open-source Python package for AI stock analysis

1•Siddartha_19•8m ago•0 comments

The European Schuko socket bothers me

https://blog.jgc.org/2026/01/the-european-schuko-socket-bothers-me.html
1•pbrowne011•8m ago•0 comments

OTLO

https://www.futurefabric.co/blog/otlo/
2•surprisetalk•9m ago•0 comments

Expert Book Recommendations

https://fivebooks.com/
1•surprisetalk•9m ago•0 comments

Yawning has an unexpected influence on the fluid inside your brain

https://www.newscientist.com/article/2513692-yawning-has-an-unexpected-influence-on-the-fluid-ins...
1•MDWolinski•10m ago•0 comments

Scott Galloway Calls to Cancel OpenAI Subscriptions to Launch Consumer Strike [video]

https://www.youtube.com/shorts/7GfJBIAg420
1•ddxv•10m ago•1 comments

Book Review of Stewart Brand's Maintenance

https://www.symmetrybroken.com/maintenance-the-mattering-instinct-for-engineers/
1•riemannzeta•11m ago•0 comments

Book Review of Steven Pinker's When Everyone Knows That Everyone Knows

https://www.symmetrybroken.com/uncommon-knowledge/
1•riemannzeta•11m ago•0 comments

Google's 'Project Genie' Is Basically a Plagiarism Tool

https://www.nintendolife.com/news/2026/01/googles-project-genie-is-basically-a-huge-plagiarism-to...
1•begemotz•13m ago•1 comments

Show HN: Xmrcheckout – self-hosted, non-custodial Monero checkout

https://xmrcheckout.com
1•pigless72•13m ago•0 comments

Parallel evaluation in Nix rolling out to Determinate Nix users

https://hachyderm.io/@determinatesystems/115985028320981183
2•embedding-shape•13m ago•0 comments

Show HN: Nano Queries, a state of the art Query Builder

https://vitonsky.net/blog/2026/01/24/nano-queries/
1•vitonsky•14m ago•0 comments

Show HN: A causal safety release gate for AI systems

https://github.com/EM1805/causal-safety-and-alignment-engine
1•EM1805•14m ago•1 comments

Will Agents replace search teams?

https://www.youtube.com/watch?v=OGnW2Pu2uVE
1•softwaredoug•14m ago•0 comments

Ruby 4.0 is available in the Microsoft Store

https://rubyinstaller.org/2026/01/27/ruby-4.0-available-in-microsoft-store.html
1•Kerrick•15m ago•0 comments

Skills on Tessl: the package manager for agent skills

https://tessl.io/blog/skills-are-software-and-they-need-a-lifecycle-introducing-skills-on-tessl/
1•popey•15m ago•0 comments

History of the PT2399 Delay Chip (2025)

https://www.perfectcircuit.com/signal/pt2399-delay-chip
1•thomasjb•15m ago•0 comments