frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Incident March 30th, 2026 – Accidental CDN Caching

https://blog.railway.com/p/incident-report-march-30-2026-accidental-cdn-caching
23•cebert•1h ago

Comments

stingraycharles•37m ago
This write up doesn’t make sense. Authenticated users are the ones without a Set-Cookie? Surely the ones with the cookie set are the authenticated ones?

There are dozens of contradictions, like first they say:

“this may have resulted in potentially authenticated data being served to unauthenticated users”

and then just a few sentences later say

“potentially unauthenticated data is served to authenticated users”

which is the opposite. Which one is it?

Am I missing something, or is this article poorly reviewed?

justjake•34m ago
Fixed the typo in that second paragraph and aligned the section on the Set-Cookie stuff. Anything else that can be made more clear?
sublinear•35m ago
I'm curious if having unique URLs per user session would mitigate this.

I think that's already best practice in most API designs anyway?

sebmellen•12m ago
Almost three years ago now, Railway poached one of our smartest engineers. They were smart to do so. I have a lot of respect for the Railway team and I’m impressed with their execution.

I think this is their first major security incident. Good that they are transparent about it.

If possible (@justjake) it would be helpful to understand if there was a QA/test process before the release was pushed. I presume there was, so the question is why this was not caught. Was this just an untested part of the codebase?

varun_chopra•3m ago
Data was leaked and they're calling it accidental CDN caching...

Scientists prepare expeditions in remote environments

https://actu.epfl.ch/news/how-scientists-prepare-expeditions-in-remote-envir/
1•defrost•7m ago•0 comments

The Heils – Hate to Say I Told You So (Official Music Video)

https://www.youtube.com/watch?v=xKXu_eL3IhE
1•keepamovin•7m ago•0 comments

Kelsey Hightower: What the AI Hype Machine Won't Tell You

https://bitdrift.io/podcast/beyond-the-noise/episode-11
1•karinakarina3•7m ago•0 comments

Critical: Active supply chain attack on axios

https://twitter.com/feross/status/2038807290422370479
2•9woc•10m ago•0 comments

252mya.earth – The Age of Dinosaurs, Shown to Scale

https://252mya.earth/
2•gmays•10m ago•0 comments

Show HN: Headless Timeshift Emulation

https://github.com/RodBarnes/ts-tools/blob/main/README.md
1•IronRod•11m ago•0 comments

I built an AI image generator that turns simple prompts into quality visuals

https://nanobananagen.org/
2•huixiaodewenzi•14m ago•2 comments

FluxVector – Free vector search API with built-in multilingual embeddings

https://fluxvector.dev
1•andresdp•14m ago•0 comments

Axios Compromised on NPM – Malicious Versions Drop Remote Access Trojan

https://www.stepsecurity.io/blog/axios-compromised-on-npm-malicious-versions-drop-remote-access-t...
3•mtud•14m ago•1 comments

Seems like a bad idea: "One login to connect Glassdoor and Indeed"

https://www.glassdoor.ca/about/onelogin/
2•SteveVeilStream•14m ago•1 comments

Show HN: Asto – AST-based code editing for AI agents

https://github.com/ntaraujo/asto
1•ntaraujo1•22m ago•0 comments

Show HN: HN Sieve – AI scores every HN project so you don't miss the good ones

https://github.com/primoia/hn-sieve
1•cezarvil•24m ago•0 comments

Earth's Fortunate Escape Velocity

https://www.universal-sci.com/headlines/2018/4/22/the-challenges-of-an-alien-spaceflight-program-...
2•sinoue•28m ago•0 comments

You still have to refactor, even with AI

https://www.adamhjk.com/blog/you-still-have-to-refactor-even-with-ai/
3•vinhnx•28m ago•0 comments

Super Investor

https://apps.apple.com/us/app/super-investor/id1441737952
1•jm33077•29m ago•0 comments

TokenSurf – Drop-in proxy that cuts LLM costs 40-94%

https://tokensurf.io
2•CemBas•29m ago•0 comments

Llama.cpp at 100k Stars

https://twitter.com/ggerganov/status/2038632534414680223
2•simonpure•31m ago•0 comments

NASA Computing in the '80's – JPL Building 230 [video]

https://www.youtube.com/watch?v=T_bqc76_3xU
1•jnord•34m ago•0 comments

American Exchange Group to buy sneaker maker Allbirds for $39M

https://www.reuters.com/business/american-exchange-group-buy-sneaker-maker-allbirds-39-million-20...
2•noleary•36m ago•0 comments

100x Less Power: The Breakthrough That Could Solve AI's Energy Crisis

https://scitechdaily.com/100x-less-power-the-breakthrough-that-could-solve-ais-massive-energy-cri...
1•g-b-r•36m ago•2 comments

Inkline: All-in-one workspace for authors and creative writers

https://github.com/enxilium/inkline
1•sukdip•37m ago•1 comments

Askable – give any UI element LLM awareness with one attribute

https://askable-ui.github.io/askable/
2•vamgan•39m ago•0 comments

Trump Tells Aides He's Willing to End War Without Reopening Hormuz

https://www.wsj.com/world/middle-east/trump-iran-war-strait-of-hormuz-ee950ad4
6•Jimmc414•41m ago•4 comments

Federal judges report broad adoption of AI tools

https://news.northwestern.edu/stories/2026/03/northwestern-study-finds-a-significant-number-of-fe...
2•pseudolus•41m ago•0 comments

We hate AI-assisted articles

https://idiallo.com/blog/why-we-hate-llm-articles
3•foxfired•42m ago•1 comments

Mr. Chatterbox is a Victorian-era ethically trained model

https://simonwillison.net/2026/Mar/30/mr-chatterbox/
2•y1n0•42m ago•0 comments

Effective Strategies for Asynchronous Software Engineering Agents

https://arxiv.org/abs/2603.21489
2•simonpure•44m ago•1 comments

Artemis II is not safe to fly

https://idlewords.com/2026/03/artemis_ii_is_not_safe_to_fly.htm
3•idlewords•45m ago•0 comments

How the Solar Wind Works

https://phys.org/news/2026-03-solar.html
2•y1n0•47m ago•0 comments

Put the Certificate Down

https://awakenedvoices.substack.com/p/put-the-certificate-down
1•sacredcam•51m ago•0 comments