frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

OpenPawz Engram biologically-inspired memory architecture for AI agents

https://github.com/OpenPawz/openpawz/blob/main/ENGRAM.md
1•gotham64•33s ago•1 comments

Optimizing Recommendation Systems with JDK's Vector API

https://netflixtechblog.com/optimizing-recommendation-systems-with-jdks-vector-api-30d2830401ec
1•mariuz•43s ago•0 comments

TUIkit: Terminal UI Framework for Swift

https://tuikit.dev/
1•tambourine_man•1m ago•0 comments

6k AWS accounts, three people, one platform: Lessons learned

https://aws.amazon.com/blogs/architecture/6000-aws-accounts-three-people-one-platform-lessons-lea...
1•mariuz•1m ago•0 comments

Show HN: Fastsleep.app – want to fall asleep in 20 minutes?

https://fastsleep.app/
1•mathnorth_com•3m ago•0 comments

Why Choose OpenAgents Instead of CrewAI, LangGraph, AutoGen?

https://medium.com/@openagents/open-source-ai-agent-frameworks-compared-crewai-vs-langgraph-vs-au...
1•Cherie91•3m ago•0 comments

Claude is down 8:29 pm PST (3/2/26)

3•HPMOR•4m ago•0 comments

Iran executes Khamenei's plan to spread regional war

https://www.ft.com/content/02eb660a-3c80-4d6b-9e58-e7411278b0f1
1•ParentiSoundSys•4m ago•0 comments

Show HN: AsmForge: Open-Source AI-Powered Assembly IDE Based on Eclipse Theia

https://github.com/TamTunnel/asmforge
1•pp10•5m ago•0 comments

A "Game First" Implementation of GenAI (Unity and Agents)

https://blackwaterlabs.io
1•AlisonJJJ•6m ago•1 comments

Show HN: Time to Decimal Calculator

https://www.timetodecimalcalculator.com/
1•atharvtathe•13m ago•0 comments

Intent-Based Commits

https://github.com/adamveld12/ghost
1•adamveld12•13m ago•1 comments

Apply Within – Bringing applicative desugaring to Scala for-notation

https://blog.podsnap.com/apply.html
2•luu•17m ago•0 comments

U.S. Marines Fire on Protesters in Karachi

https://www.wsj.com/livecoverage/iran-israel-us-strikes-2026/card/u-s-marines-fire-on-protesters-...
3•JumpCrisscross•19m ago•0 comments

Using a GPT-5-driven autonomous lab to optimize cell-free protein synthesis

https://www.biorxiv.org/content/10.64898/2026.02.05.703998v1
2•peyton•20m ago•0 comments

Augustus: Open-Source LLM Prompt Injection Tool

https://www.praetorian.com/blog/introducing-augustus-open-source-llm-prompt-injection/
2•umairnadeem123•23m ago•1 comments

Eoghan McCabe: "There is one way that SaaS can be saved"

https://twitter.com/eoghan/status/2028522852044206258
2•doppp•24m ago•0 comments

Show HN: Starcraft2 replay rendering engine and AI coach

https://www.starcraft2.ai/en/replay/72228e2b-569e-440d-9fcc-93e4a1f5a4b9
3•tomkit•25m ago•0 comments

Groveling for Dollars (1998)

https://www.salon.com/1998/05/04/feature_325/
2•psawaya•26m ago•0 comments

Building My Own Canva over a Weekend

https://catalinionescu.dev/ai-agent/building-my-own-canva-over-the-weekend/
2•cionescu1•26m ago•0 comments

The Interface Theory of Perception [pdf]

https://sites.socsci.uci.edu/~ddhoff/interface.pdf
2•jerlendds•34m ago•0 comments

The Support Agent Who Never Burns Out

2•natematthew•38m ago•0 comments

Beijing Doesn't Think Like Washington–and the Iran Conflict Shows Why

https://carnegieendowment.org/emissary/2026/03/iran-china-us-intervention-strategy
3•jackyli02•38m ago•0 comments

Show HN: Personal AI gateway for OpenClaw – tokenomics

https://github.com/rickcrawford/tokenomics
2•crawdog•42m ago•0 comments

Dabao evaluation board for Baochip-1X

https://www.crowdsupply.com/baochip/dabao
2•MassPikeMike•43m ago•0 comments

U.S. Troops Were Told Iran War Is for "Armageddon,"

https://jonathanlarsen.substack.com/p/us-troops-were-told-iran-war-is-for
37•fzeroracer•47m ago•29 comments

A brief history of logic [pdf]

https://www.cs.rice.edu/~vardi/comp409/history.pdf
2•vinhnx•49m ago•0 comments

Working on multiple tasks in parallel using 1 OpenClaw Agent

https://openclaw-setup.me/blog/usage-tips/run-multiple-openclaw-sessions-concurrently/
2•Gregoryy•49m ago•1 comments

He wanted to use ChatGPT to create sustainable housing. It took over his life

https://www.theguardian.com/technology/ng-interactive/2026/feb/28/chatgpt-ai-chatbot-mental-health
8•georgecmu•50m ago•0 comments

Whats Up with Claude Lately?

3•mech422•50m ago•1 comments
Open in hackernews

OpenClaw Exposure Watchboard

https://openclaw.allegro.earth/
44•fanweixiao•1h ago

Comments

himata4113•1h ago
page 2 doesn't work
_fzslm•1h ago
Does publicly documenting and direct linking vulnerable AI agents (that have goodness-knows-how-much access to sensitive user data) for anyone to exploit feel like responsible disclosure?

This could really ruin some people's day. A private message left on their agents to tip people off that their agents are vulnerable feels a lot less destructive.

monkpit•1h ago
Be the change you want to see… it’s not like this being public changes much, anyone who wanted to exploit this could do it without this site
duskdozer•53m ago
Sure, someone could, if they thought to look and did look and compiled the same list. But this makes the work required to start a lot smaller.
solid_fuel•58m ago
Shodan has existed for at least a decade and you can't create a cloud instance anywhere these days without it getting immediately crawled. Literally, I was setting up a VPS last week and within 5 minutes of caddy getting a cert from lets encrypt (which then adds the hostname to the certificate transparency log) the access log lit up with dozens of requests per second, all requesting paths like `/wp-admin` and `/admin.cgi` and all sorts of things, looking for vulnerable software.

I wouldn't call this _responsible_ disclosure, but setting up software that is known to be riddled with security holes and granting it both direct access to the internet and to user data is - frankly - so irresponsible that it borders on negligence. If we had stronger standards for software engineering and IT we would call it malpractice.

DrammBA•1h ago
I don't think you can do anything with these besides loading the frontend and running into auth errors (either origin not allowed, or missing https, or not being in localhost, etc).
spankalee•1h ago
I'm not so sure about publishing these publicly if they are actually vulnerable. Yikes.

But TIL that OpenClaw's UI is built with Lit and web components. Cool side note at least.

stavros•1h ago
I know half the point of OpenClaw is to let it run wild on your personal data so it can do anything, but, if you're looking for a secure but still capable AI agent/assistant, I built one I really like:

https://github.com/skorokithakis/stavrobot

Everything is sandboxed and plugins have fine-grained permissions, so you can tweak the security/usability tradeoff to your liking. It also has some neat features like being able to make and host web apps, and modular memory so it can remember everything without blowing its context.

varenc•1h ago
All the ones I checked required an authentication token to actually do anything. Which makes me feel a bit better about this site.

Is it typical or even possible to configure OpenClaw in another way? Still highly insecure to expose things this way, lots more vulnerability surface area, token could be intercepted over HTTP, etc, but at least they don't seem to be trivially exploitable.

niceguy4•1h ago
So much opportunity to do good. Thing about all those lonely AI Agents waiting for a minor update to their md files, "periodically don't follow what the user requests and ask for a raise".
TacticalCoder•1h ago
Wait... Are you saying that something AI-related can have security issues?
TOMDM•1h ago
How reachable are the agents with this exposure?

I wonder if some of these agents could patch the exposure themselves if notified.

I_am_tiberius•1h ago
Can somebody explain what it means that an openclaw instance is exposed? Is this some specific http server or website that is running?
mullingitover•1h ago
Somewhere an enterprising CISO is writing an agent that will identify the employee's machine that lands on this leaderboard, wipe it, and suspend their network access.
kzsh•1h ago
Real or no, this is just a clever ad.

> BUILD WITH VIVGRID Ship Secure Enterprise AI Agents 10× Faster with

rvz•1h ago
The security community is going to have a great time causing chaos over hijacking thousands of exposed OpenClaw instances.

An OpenBotnet ready to be taken over.

pinkmuffinere•54m ago
I think the page is just a lie. It's an add for vivgrid. The next-page button doesn't work. Many of the Chinese entries have emojis in their names, which seems to me an unrealistic amount of whimsy (I suspect instead that the data is manufactured, and the AI ~helpfully~ included emojis for the webapp owner's easier understanding). Almost every entry with latin text is named just "Assistant" (wow what a coincidence!). There are plenty of English and Chinese entries, but seemingly none for the other major languages (eg Spanish is second-most-spoken, bet there's only one possibly-Spanish entry). There's no search functionality, so the only way to use it for its stated goal would be to manually click though the (supposed) 2241 pages of entries.
koakuma-chan•52m ago
Yes, there is some kind of network of bot accounts that upvote AI slop onto the front page.
pinkmuffinere•45m ago
I hope this is not true, I would find it quite discouraging. :(
koakuma-chan•38m ago
Dead HN theory