frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Ask HN: Safari Safe Browsing false positives persist after Google clears domain

1•Numbness•1h ago
Safari maintains two independent Safe Browsing databases: - Apple/social_engineering,any_platform,url_expression (Apple-proprietary, 943 KB) - Google/social_engineering,osx,url_expression (Google's list)

The sync appears one-directional: Apple copies additions from Google but does NOT process deletions. A domain cleared by Google Safe Browsing remains permanently blocked in Safari with no automated removal path.

Reproduction: 1. Navigate to https://openvan.camp/ in Safari → full-screen red "Fraudulent Website Warning" 2. Same URL in Chrome/Firefox/Edge → no warning 3. Delete ~/Library/Caches/com.apple.Safari.SafeBrowsing/ → relaunch Safari → warning reappears immediately from fresh DB download

All external databases show clean: - Google Safe Browsing: clean - VirusTotal: 0/65 vendors - URLVoid: 0/35 engines - Spamhaus DBL, Gridinsoft, FortiGuard: removed/clean

Sysdiagnose confirms Safari connects to mask.icloud.com via OHTTP/QUIC every ~30 min (HTTP 200, ~450ms) yet Apple's list retains the entry on every refresh cycle. This is not a caching issue — it is a missing deletion mechanism in Apple's proprietary feed.

The original flag (March 2026) was caused by a third-party ad network (Adsterra) serving malicious redirects. It was removed on March 18. All remediations completed. websitereview.apple.com submitted March 18 — no response after 6 days.

WebKit Bugzilla: https://bugs.webkit.org/show_bug.cgi?id=310606 Apple Radar: rdar://173213501

Has anyone else hit this? Is there any known escalation path beyond websitereview.apple.com?

Show HN: ProofShot – Give AI coding agents eyes to verify the UI they build

https://proofshot.argil.io/
1•jberthom•1m ago•0 comments

Helios: 14B open source video model, real time at 19.5fps, runs on 6GB VRAM

https://github.com/PKU-YuanGroup/Helios
1•steveharing1•2m ago•0 comments

How good is Claude, really?

https://alinpanaitiu.com/blog/how-good-is-claude-really/
1•imaq•2m ago•0 comments

Show HN: Kern – One agent. One folder. One mind. Every channel

https://github.com/oguzbilgic/kern-ai
1•obilgic•3m ago•0 comments

Liquid Glass Is Permanent

https://mjtsai.com/blog/2026/03/23/liquid-glass-is-permanent/
1•imaq•4m ago•0 comments

A Minimal NixOS Config That Still Feels Premium

https://slicker.me/nixos/premium_minimal.html#premium
1•weatherlight•6m ago•0 comments

JP Morgan's Monitors Employee's Keystrokes and Meetings; for Their Wellbeing

https://www.inc.com/moses-jeanfrancois/jp-morgans-junior-banker-tech-monitoring/91319918
2•tuananh•7m ago•0 comments

Show HN: Prompts Directory for Data Analyst

https://mljar.com/ai-prompts/data-analyst/
1•pplonski86•10m ago•0 comments

Ask HN: How are you monitoring what OpenClaw does when it runs autonomously?

1•jialu1•11m ago•0 comments

Tech Founders Can Access Investors and What Davos and Tulum Has to Do with It

https://irishtechnews.ie/how-tech-founders-can-access-investors/
1•ybelkin•11m ago•0 comments

Someone Forked Systemd to Strip Out Its Age Verification Support

https://itsfoss.com/news/systemd-fork-strips-out-age-verification/
1•KnuthIsGod•12m ago•0 comments

Long-Running Sandbox in Dockers for Coding Agents (100% POSIX Compatible)

https://sandock.ai/
1•chepy•13m ago•0 comments

Ask HN: System Programming as a LLM shelter

1•AloysB•13m ago•0 comments

Rye

https://ryelang.org/
2•tosh•14m ago•0 comments

Palantir turns poisonous on the campaign trail

https://www.ft.com/content/5d6f924d-2e7e-4a5e-ae20-d4f8e29a7d17
3•KnuthIsGod•14m ago•0 comments

SpaceStarCarz KoolWheelz Paper Models

https://davesdesigns.ca/dcc/html/spacestarcarz_.html
1•exvi•15m ago•0 comments

Misfits wanted: the VC firm looking to back 'unreasonable' founders

https://www.ft.com/content/4d29c556-bbd9-490e-a3c8-90f5b894af9e
1•petethomas•18m ago•0 comments

Never Miss a Downtime Again

https://www.notifly.live/
1•netaneo•18m ago•0 comments

Browser control and computer use as MCP tools – works with Claude, Codex, Cursor

https://github.com/gettalon/talon-plugins
2•gettalon•26m ago•0 comments

Ask HN: What would it take to provide free AI to the underprivileged?

1•herodoturtle•26m ago•1 comments

We can remove strncpy() from the Linux kernel finally

https://hachyderm.io/@kees/116282745861595200
1•riffraff•28m ago•1 comments

Amazon confirms: Public wish lists can reveal addresses

https://www.heise.de/en/news/Amazon-confirms-Public-wish-lists-can-reveal-addresses-11221681.html
2•doener•36m ago•0 comments

systemd has not implemented age verification

https://blog.bofh.it/debian/id_473
2•pabs3•40m ago•0 comments

Claude Code Now Supports CIMD for MCP OAuth

https://bsky.app/profile/den.dev/post/3mhrupyeus223
1•mooreds•40m ago•0 comments

The great Linux file pickers tragedy

https://erika.florist/wiki/linux/filepickertragedy/
1•pabs3•41m ago•0 comments

Ask HN: HSL 0.1 – The Human Source License. Please help refining

1•xdgrulez•41m ago•1 comments

The Voice Web with maplibre-voice – Mistral Hackathon 2026

https://www.youtube.com/watch?v=DNpdRVZ0j5A
1•tderflinger•41m ago•0 comments

Expert Personas Improve LLM Alignment but Damage Accuracy

https://arxiv.org/abs/2603.18507
1•Jacques2Marais•42m ago•0 comments

The 53-Year Evolution of AI Agents: A Comprehensive Reading List

https://fullhoffman.com/2026/03/12/agents-are-agents-reading-list/
1•adunk•44m ago•0 comments

Starlette 1.0.0

https://github.com/Kludex/starlette
3•tosh•52m ago•0 comments