frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Tell HN: Slow Down

8•jacquesm•1h ago
The number of supply chain attacks and the blast radius as a result of these is ever increasing. The big culprits are languages that are not just languages but whole eco-systems, where stuff that should be 'batteries included' ends up in a massive stack of libraries and modules that nobody can be bothered to review.

This doesn't scale. Reviewing all of this code by all of the potential users is just asking for it, the bulk of them did not have the resource to write the module/library in the first place so they most likely will not have the resources to review everything they ingest.

I'm trying to imagine Linux with not one distribution but several thousand each of which could become malicious at the drop of a hat. In the longer term this will not work. All of these systems can only work in a world where there are no bad actors and where you implicitly trust the source.

Please improve curation. The next supply chain bug may well be 'the big one' and I'm pretty sure that various nation states are aiming to achieve that kind of capability now that there are ample proofs of concept out there. We need fewer points of distribution with better curation and far stricter review before inclusion, something along the lines of the Linux Kernel.

We do not need these crazy high release speeds with daily updates all over the stack, then you should just slow down and do better QA.

Reliability comes from the ability to invest the time review and increase understanding, not from the ability to release at breakneck speed, use your downstream as QA and then to fix things when you get them wrong. If it was coded today the world does not need it until tomorrow or even the day after tomorrow. Having a 'hot path' from your development environment to release that is fast also has the potential to export any compromise of your environment to your releases. More so if you accept external contributions to your code.

Comments

throwaw12•25m ago
> We do not need these crazy high release speeds with daily updates all over the stack

Although I like this, but I understand this is not easily achievable in companies where everyone is trying hard to grab the part of the market and AI FOMO and push by investors to release AI features

All of DOGE's work could be undone as lawsuit against Musk proceeds

https://arstechnica.com/tech-policy/2026/03/all-of-doges-work-could-be-undone-as-lawsuit-against-...
2•doener•1m ago•0 comments

What the heirs to General Electric did next

https://www.economist.com/business/2026/03/04/what-the-heirs-to-general-electric-did-next
1•andsoitis•2m ago•0 comments

Rapprochement Between Hyperion and Amiga Corporation

https://amiga-news.de/en/news/AN-2026-03-00108-EN.html
1•codewiz•2m ago•0 comments

A.I. Chatbots Want Your Health Records. Tread Carefully.

https://www.nytimes.com/2026/03/12/technology/personaltech/microsoft-copilot-health-ai-chatbots.html
1•bookofjoe•2m ago•1 comments

Stop Typing Prompts to Your Coding Agent

https://www.agenticcodingweekly.com/p/5-best-open-source-speech-to-text-tools-in-2026
1•primaprashant•2m ago•1 comments

Palestinians warn of expanding West Bank settler violence

https://www.bbc.com/news/articles/c747x00m83vo
2•inaros•4m ago•0 comments

Show HN: Agentic backlog generator that runs locally (no API key)

1•pvlakshm•4m ago•0 comments

RuntimeGuard, ransomware detection for Linux using eBPF

https://runtimeguard.io
1•wizzler•4m ago•0 comments

China's fight on air pollution has slowed

https://www.economist.com/china/2026/03/19/why-chinas-fight-on-air-pollution-has-slowed
2•andsoitis•5m ago•0 comments

Eclipse GlassFish: This Isn't Your Father's GlassFish

https://foojay.io/today/eclipse-glassfish-this-isnt-your-fathers-glassfish/
1•henk53•7m ago•0 comments

Selftrade by X

https://selftrade.ai
1•skogstokig•7m ago•0 comments

RustDesk gets removed from WinGet after ESET marks it as potentially unsafe

https://twitter.com/rustdesk/status/2036632270837297444
2•super256•7m ago•0 comments

Encode-Less Video Editing

https://blog.sukonbu.party/encode-less-video-editing/
1•tacomagick•8m ago•0 comments

Honda cancels the two electric vehicles it was developing with Sony

https://arstechnica.com/cars/2026/03/honda-cancels-the-two-electric-vehicles-it-was-developing-wi...
1•jitl•8m ago•0 comments

A free app directory where anyone can list their app, game, or website

https://tipitylabs.com
1•Tipitylabs•9m ago•0 comments

Show HN: Cryptographic passports for autonomous AI agents (Schnorr and ZK)

https://craigmbrown.com/blindoracle/status.html
1•cmb24k•9m ago•0 comments

Eulogy for Open Source

https://opensourcesecurity.io/2026/03-open-source-eulogy/
1•donutshop•11m ago•0 comments

Facet: a procedural brand image system built with agentic coding

https://measured.co/blog/introducing-facet
1•mono_spaced•12m ago•0 comments

Measuring the actual power draw of Teams, Meet, Discord, Slack and Zoom

2•Daminoup•12m ago•1 comments

Show HN: AutoRename-PDF – Open-source tool that uses AI to rename your PDFs

https://github.com/ptmrio/autorename-pdf
1•SPQRK•12m ago•0 comments

A Poisoned Security Scanner Became the Key to Backdooring LiteLLM

https://snyk.io/articles/poisoned-security-scanner-backdooring-litellm/
1•cdnsteve•13m ago•0 comments

Polymarket Bets on Trump Actions Under Scrutiny

https://www.aljazeera.com/news/2026/3/25/large-polymarket-wall-street-bets-on-trumps-war-news-und...
3•ordu•13m ago•1 comments

Show HN: OBS plugin that exposes pixel data from any scene to Lua scripts

https://github.com/heiner-palmen/obs-framebridge
1•floozie•14m ago•0 comments

AskAlf – Tell it what you need, it builds a team of AI workers

https://github.com/askalf/askalf
1•jsprayberry87•14m ago•1 comments

Zuckerberg Launches Meta Small Business

https://www.axios.com/2026/03/25/exclusive-zuckerberg-launches-meta-small-business
2•pdyc•14m ago•0 comments

open_slate tablet promises to last a decade with swappable batteries and storage

https://newatlas.com/consumer-tech/modular-android-tablet-open-slate-braxman-swappable-batteries/
1•breve•15m ago•0 comments

Can AI solve real math proofs? Researchers put it to the test

https://www.scientificamerican.com/podcast/episode/can-ai-actually-solve-real-math-proofs-researc...
1•Brajeshwar•15m ago•0 comments

Where Are All the Campus Protests?

https://www.theatlantic.com/ideas/2026/03/campus-protests-trump-iran/686518/
1•SanjayMehta•16m ago•1 comments

LeWorldModel with Yann LeCun

https://arxiv.org/abs/2603.19312
2•guerby•16m ago•1 comments

AirDrop Your AI: How to Transfer a Living Intelligence Between Devices in 34KB

https://kody-w.github.io/2026/03/21/airdrop-your-ai/
2•bothangles•17m ago•0 comments