frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Unpinched – open-source PinchTab and CDP bridge detector

https://github.com/Helixar-AI/Unpinched
1•Siri_D•2h ago
We published a free CLI tool after writing about PinchTab — a browser hijacking technique that abuses Chrome DevTools Protocol to give attackers (or compromised AI agents) silent access to live browser sessions. No malware signature. No process injection. Most EDRs don't see it at all.

Unpinched is a point-in-time scanner — think nmap for PinchTab presence. Single Go binary, no install required, runs in ~3 seconds.

It checks four things: - Local ports for a PinchTab HTTP API server (with signature verification) - Running processes matching known PinchTab binary names - Unauthenticated CDP exposure on localhost:9222 - Known filesystem artifact paths across macOS, Linux, Windows

Also ships as a GitHub Action so you can gate deploys on a clean scan result.

GitHub: https://github.com/Helixar-AI/Unpinched

The underlying research on why CDP-based attacks evade conventional security stacks is here if you're curious: https://helixar.ai/press/pinchtab-stealth-browser-attacks-yo...

Happy to answer questions on the detection logic or the threat model.

You only breathe out of one nostril at a time

https://www.cnn.com/2026/03/08/health/nostril-breathing-wellness-conversation
1•mooreds•1m ago•0 comments

Show HN: Signed Receipts for Agent Actions

https://github.com/peacprotocol/peac
1•jithinraj•1m ago•0 comments

MapReduce Framework

https://third-bit.com/dsdx/mapreduce/
1•mooreds•1m ago•0 comments

Ask HN: What models do you use for your OpenClaw so that skills work well

1•zlatkov•2m ago•0 comments

IMG_0416

https://ben-mini.com/2024/img-0416
1•TigerUniversity•2m ago•0 comments

Child care providers fight headwinds on Colorado's rural Eastern Plains

https://coloradosun.com/2026/03/09/out-of-reach-child-care-providers-fight-headwinds-on-colorados...
1•mooreds•2m ago•0 comments

Show HN: Sinkhole – 30 free browser-based tools, no signup, MIT licensed

https://www.sinkhole.app
1•boringeurodev•2m ago•0 comments

Rust-Like Error Handling in TypeScript

https://codeinput.com/blog/typescript-result
1•todsacerdoti•2m ago•0 comments

Show HN: Pasu- Open-Source CLI AWS IAM Analyzer Tool

https://github.com/nkimcyber/pasu-IAM-Analyzer
1•nkimeducaiton•2m ago•0 comments

Show HN: Beta-Claw – I built an AI agent runtime that cuts token costs by 44%

https://github.com/Rawknee-69/Beta-Claw
1•Kyoiske•3m ago•0 comments

Show HN: ClawGuard – Detect 42 prompt injection patterns in <10ms

https://github.com/joergmichno/clawguard
1•joergmichno•3m ago•0 comments

Reimagining HTTP 402 – Simplify API and agentic payments with Stripe

https://stripe402.com
1•whatl3y•3m ago•0 comments

The Silent Filter

https://juanpabloaj.com/2026/02/27/the-silent-filter/
1•harperlee•4m ago•0 comments

Show HN: Whichllm – Find and run the best local LLM for your hardware

https://github.com/Andyyyy64/whichllm
2•andyyyy64•4m ago•0 comments

Live Nation reaches settlement with DOJ in antitrust fight

https://www.politico.com/news/2026/03/09/live-nation-reaches-settlement-with-doj-in-antitrust-fig...
1•coloneltcb•5m ago•0 comments

The Third Hard Problem

https://mmapped.blog/posts/48-the-third-hard-problem
1•subset•5m ago•0 comments

Show HN: Needle – Search Reddit, Hacker News, GitHub and Forums in One Place

1•iamvs2002•6m ago•0 comments

We Hacked McKinsey's AI Platform

https://codewall.ai/blog/how-we-hacked-mckinseys-ai-platform
1•darkport•7m ago•0 comments

Owner of ICE detention facility sees big opportunity in AI man camps

https://techcrunch.com/2026/03/08/owner-of-ice-detention-facility-sees-big-opportunity-in-ai-man-...
13•monkeydust•9m ago•2 comments

Love in the Time of A.I. Companions

https://www.newyorker.com/magazine/2026/03/16/love-in-the-time-of-ai-companions
1•fortran77•9m ago•0 comments

United States Leads Dismantlement of One of the World's Largest Hacker Forums

https://www.justice.gov/opa/pr/united-states-leads-dismantlement-one-worlds-largest-hacker-forums
1•bookofjoe•10m ago•0 comments

Streaming My Vitals to Dr. Claw

https://zach.codes/p/streaming-my-vitals-to-dr-claw
2•zackify•10m ago•0 comments

Anti-Simplification

https://thedailywtf.com/articles/anti-simplification
1•jjgreen•12m ago•0 comments

"It doesn't feel safe"–Many international game developers plan to skip GDC in US

https://arstechnica.com/gaming/2026/03/it-doesnt-feel-safe-many-international-game-developers-pla...
5•rbanffy•14m ago•1 comments

Broadcom May Become the Biggest Counterbalance to Nvidia

https://www.nextplatform.com/connect/2026/03/05/broadcom-may-become-the-biggest-counterbalance-to...
2•rbanffy•14m ago•0 comments

Show HN: AgentScan – Detect AI agent accounts on GitHub

https://agentscan.netlify.app/
1•matteogabriele•15m ago•0 comments

Dire Strait

https://paulkrugman.substack.com/p/dire-strait
1•rbanffy•16m ago•0 comments

My TrueNAS Core (FreeBSD) Homelab

https://blog.gpkb.org/posts/homelab-2025/
1•vermaden•16m ago•0 comments

White Gloss TV Unit: Boosts LED and Lamp Light More Than Matte Finish

https://dreamhomestore.co.uk/collections/tv-units
1•sallyparkes1994•17m ago•1 comments

FreeBSD Capsicum vs. Linux Seccomp Process Sandboxing

https://vivianvoss.net/blog/capsicum-vs-seccomp
1•vermaden•17m ago•0 comments