frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

After my account was hacked, I created CSDM, a tripwire to reveal the attacker

https://github.com/HSkribe/CSDM
3•HSkribe•1h ago

Comments

HSkribe•1h ago
I’ve been working on a small defensive security tool and wanted to share it here.

It’s called Cloud Sync Decoy Monitor. The basic idea is pretty simple: it places decoy files inside cloud-synced folders like OneDrive or Google Drive, and if one of those files gets opened, it logs the event and can send an alert.

The phrase I kept using in my head while building it was “a GPS tracker for accounts.” That’s not literal, obviously. I just mean I wanted something that gives an early signal when activity gets close to the data itself, instead of only watching login history and auth events.

A lot of security tooling is really good at telling you when someone signed in. I was more interested in the next layer down: what happens when files inside a synced account start getting touched unexpectedly?

Right now the project includes:

a Windows desktop GUI decoy deployment into detected OneDrive / Google Drive folders a local receiver for callbacks SQLite logging and JSON evidence output optional signed beacons rate limiting, dedupe, and retention cleanup It’s still early and definitely rough around the edges. It’s Windows-first, Python-based, and more “useful prototype / open-source defensive tool” than polished product. But it works, and I thought the idea might be interesting to people here.

I’d really appreciate feedback, especially on:

whether this threat model is useful where this would break down in the real world false positive / false negative concerns packaging and distribution integrations I should prioritize Repo: https://github.com/HSkribe/CSDM

If people find it interesting, I’m happy to keep improving it.

OpenSSH Post-Quantum Cryptography

https://www.openssh.org/pq.html
1•susam•56s ago•0 comments

Hurricane Electric (HE.NET) IPv6 tunnelbroker page offline due to expired domain

https://tunnelbroker.net
1•luckman212•1m ago•1 comments

Cattle grazing boosts nature recovery (increased plant diversity, 5x butterfly)

https://www.leeds.ac.uk/research-32/news/article/5935/cattle-grazing-boosts-nature-recovery-in-yo...
1•bilsbie•1m ago•0 comments

Google Announces Genkit (Gen AI Library) for Dart and Flutter

https://blog.dart.dev/announcing-genkit-dart-build-full-stack-ai-apps-with-dart-and-flutter-2a5c9...
1•pavelgj•1m ago•0 comments

Video Upscaler 16K and Converter – on-device video upscaling on iPhone

https://video-upscaler-16k.web.app/
1•kovallux•2m ago•1 comments

Documents Reveal Ties Between Trump Officials and Industries They Regulate

https://www.propublica.org/article/trump-administration-financial-disclosures-steve-feinberg
1•throw0101d•2m ago•0 comments

Alma Detects Abundant Alcohol in Interstellar Comet 3I/Atlas

https://www.almaobservatory.org/en/audiences/alma-detects-extremely-abundant-alcohol-in-interstel...
1•geox•2m ago•0 comments

Nadzoring: Utility for Network Scanning / in Dev

https://github.com/alexeev-prog/nadzoring
2•alexeev-prog•2m ago•0 comments

Vibium and Kernel: WebDriver BiDi support for cloud browsers

https://www.kernel.sh/blog/bidi
2•hugs•3m ago•1 comments

Left-Handed People Are More Competitive, Study Says

https://www.wired.com/story/left-handed-people-are-more-competitive-says-science/
1•bookofjoe•3m ago•1 comments

Why AI Chatbots Agree with You Even When You're Wrong

https://spectrum.ieee.org/ai-sycophancy
2•Brajeshwar•4m ago•0 comments

SMail – Load a CSV. Write your message. Send hundreds via emails Gmail. Done

2•AhnixSoft•4m ago•0 comments

Devolutions Has Acquired UniGetUI

https://github.com/Devolutions/UniGetUI/discussions/4444
1•pentagrama•5m ago•0 comments

Claude will cook us all

https://flexprice.io/
2•manishfp•5m ago•1 comments

We built ApplyGenius.ai an AI resume builder for developers

https://applygenius.ai/
1•mikkaai•5m ago•0 comments

AI-SLOP: Develop Best Current Practises for Open Source Maintainers

https://github.com/ossf/wg-vulnerability-disclosures/issues/178
1•jruohonen•6m ago•0 comments

Arizona Is Now at the Center of 2020 Election Investigations

https://www.theatlantic.com/politics/2026/03/arizona-election-investigations/686310/
1•throw0101d•6m ago•2 comments

How to Get Investors for App

https://schooly-waitinglist.app/#waitlist
2•boriswizaard•8m ago•1 comments

The Operational Cost of Vacuuming in PostgreSQL

https://mariadb.org/the-real-operational-cost-of-vacuuming-in-postgresql/
1•theodorejb•10m ago•0 comments

Swiss e-voting can't count 2,048 ballots after USB keys fail to decrypt them

https://www.theregister.com/2026/03/11/swiss_evote_usb_snafu/
2•jjgreen•10m ago•0 comments

Zero Parameter Dual Pathway Derivation of the Cosmological Constant with SymPy

https://github.com/drlm13/cosmological-constant-derivation
1•drluke13•13m ago•1 comments

Pg_10046: Oracle SQL_trace inspired SQL and wait event tracing for PostgreSQL

https://github.com/DmitryNFomin/pg_10046
1•tanelpoder•13m ago•0 comments

Aaru: The Billion-Dollar AI Startup That Was Founded by Teenagers

https://www.wsj.com/business/ai-startup-aaru-young-founders-35da7f87
1•fortran77•14m ago•1 comments

Anthropic vs. Trump Administration: What Happens When Firms Push Back

https://joycevance.substack.com/p/anthropic-sues-the-administration
1•taskset•16m ago•0 comments

Logicplanes vs. Kaeso – better tech brand?

https://logicplanes.com/
1•devinoldenburg•16m ago•1 comments

Show HN: I built a tool to detect almost any object in images using a prompt

https://www.useful-ai-tools.com/tools/detect-anything/
1•eyasu6464•16m ago•0 comments

Show HN: Canopy – A kid-friendly Plex client for iOS

https://canopykids.app/
1•ashlance•17m ago•0 comments

IdeaRank – Startup Analysis Engine

1•TMDev•17m ago•0 comments

CSS Naked Day 2020

https://meyerweb.com/eric/thoughts/2020/04/09/css-naked-day-2020/
2•theandrewbailey•17m ago•1 comments

Make anything AI-ready. AI-ready in 30 seconds

https://vinkius.com/en
1•renatomarinho•18m ago•1 comments