frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Stealthy RCE on Hardened Linux: Noexec and Userland Execution PoC

https://hardenedlinux.org/blog/2026-04-13-stealthy-rce-on-hardened-linux-noexec--userland-execution-poc/
6•hardenedlinux•1h ago

Comments

tux3•1h ago
I'm getting a little tired of blog posts that are just raw, unedited ChatGPT output, chief.

If you have arbitrary code execution, you can execute more arbitrary code on disk without calling exec. Better yet if you care about stealth is to not touch the disk at all, and keep everything in memory, downloading your next stage from a server directly into RAM.

takipsizad•1h ago
This article sounds extremely robotic and AI generated.
juancn•1h ago
It's nothing revolutionary, essentially change your own process for another binary, but for this you need to take over the process in the first place which is usually the hard part.

It's mildly interesting that they didn't call exec() and parse the elf manually, but that's about it.

nyrikki•1m ago
> Run services in the tightest possible DAC/MAC sandbox with minimal caps.

That is what os dangerous, especially with containers where people run with the container root with elevated privileges.

With ollama, llama.cpp, and many other often agent containers that will run arbitrary code, and are running with the ability to bypass MACs, plus the fact that vfs and IPC isn’t really namespaces away it is complicated.

When you can’t even convince popular funded projects to add ‘USER foo’ to a dockerfile, this method is trivial.

If you looked into the state of lsms and how every complicated or difficult project is basically unconstrained it should be concerning.

~15 lines of c and ld_preload gets you privileged user namespaces on Debian based systems because of busybox as an example, which is a required package yet privileged in apparmor

Palantir Stock Continues to Fall. Not Even the President Can Erase the Losses

https://www.barrons.com/articles/palantir-stock-price-president-trump-anthropic-7313031c
3•1vuio0pswjnm7•2m ago•0 comments

Show HN: Access X, Reddit, Threads and all social media data from a single API

https://www.socialcrawl.dev/
1•magneticbrains•2m ago•1 comments

A Picture is Worth a Thousand Tokens

https://repaint.com/blog/picture-is-worth-a-thousand-tokens
2•benshumaker•2m ago•0 comments

Dual national Londoner stranded in Spain by new border rule

https://www.bbc.com/news/articles/c747vj1z0xwo
1•speckx•2m ago•0 comments

Problems Before the Real Problem: The First Lessons of Apollo 13

https://www.flyingbarron.com/2026/04/problems-before-real-problem-first.html
2•flyingbarron•4m ago•0 comments

Apple Reportedly Testing AI Glasses in Several Frame Styles

https://www.cnet.com/news/apple-reportedly-testing-ai-glasses-in-several-frame-styles/
1•CharlesW•5m ago•0 comments

How to Stop Cops from Using Wi-Fi to "See Through the Walls" of Your Home [video]

https://www.youtube.com/watch?v=LngDW3t36nc
1•dp-hackernews•5m ago•0 comments

Show HN: Curation: Share Podcast Recommendation

https://curation-509629088134.us-west1.run.app/
1•arbol•6m ago•0 comments

OpenAI's latest internal memo about beating the competition

https://www.theverge.com/ai-artificial-intelligence/911118/openai-memo-cro-ai-competition-anthropic
1•pretext•8m ago•0 comments

Mount GitHub repositories as a virtual read-only macOS filesystem

https://github.com/indragiek/GHFS
1•latchkey•9m ago•0 comments

I Rode in a Waymo with a Litigator: Here's What I Learned

https://www.law.com/2026/04/13/i-rode-in-a-waymo-with-a-litigator-heres-what-i-learned/
2•1vuio0pswjnm7•12m ago•0 comments

Show HN: Is Claude still thinking? How are you wasting life?

https://claudestillthinking.com
2•Exorust•12m ago•0 comments

Show HN: Hitoku Draft – context aware local macOS assistant

https://github.com/Saladino93/hitokudraft
1•lostathome•12m ago•0 comments

Running (and Coding with) Local AI on a Mac

https://github.com/dmitryryabkov/local-ai-mac
2•allessa•12m ago•0 comments

Linux 7.0 debuts as Linus Torvalds ponders AI's bug-finding powers

https://www.theregister.com/2026/04/13/linux_kernel_7_releaseed/
2•blackcoffeerain•12m ago•0 comments

New disclosures reveal how DOGE worked

https://www.washingtonpost.com/politics/2026/04/13/doge-musk-trump-deposition-videos-chatgpt/
1•_tk_•12m ago•0 comments

Want to understand the current state of AI? Check out these charts

https://www.technologyreview.com/2026/04/13/1135675/want-to-understand-the-current-state-of-ai-ch...
1•joozio•13m ago•0 comments

Why most AI projects feel useless

2•vaishcodescape•15m ago•1 comments

Lobsters Interview with Internet_Jannitor

https://alexalejandre.com/programming/interview-with-john-earnest/
1•PaulHoule•15m ago•0 comments

Show HN: Asthi – Damn good asset tracker

https://www.asthi.app/
1•suvamsh•17m ago•0 comments

Show HN: CRXcavator, but Better

https://amibeingpwned.com
1•acorn221•17m ago•0 comments

I vibe coded a feed reading web app. It was enlightening and uncomfortable

https://www.theregister.com/2026/04/12/vibe_coding_works/
3•geekinchief•18m ago•0 comments

Show HN: Built a personality that lives across CLI, browser, and web –> all solo

1•thomasgeelens•20m ago•0 comments

Show HN: Aurora – a browser engine experiment in Rust

1•JohannaAlmeida•21m ago•1 comments

What does it mean to measure durable change velocity in 2026?

https://www.gitclear.com/blog/measuring_durable_change_velocity_in_2026_prompt_to_production_era
1•wbharding•21m ago•0 comments

The AI build-out is powering global goods trade

https://www.ft.com/content/ad169119-4a62-437b-b6ec-70819b1e8b4f
1•alephnerd•22m ago•0 comments

Mist: Open-source Markdown editor with AI-native comments and suggested edits

https://interconnected.org/home/2026/04/10/open-mist
1•austinbirch•23m ago•0 comments

Cloudflare Turnstile Is Down

2•owenthejumper•23m ago•0 comments

Unpatched vuln in RAGFlow allows for post-auth RCE

https://zeropath.com/blog/ragflow-rce-unpatched-vulnerability
1•NonStopOyster•25m ago•0 comments

Does Trump think he's God?

https://www.taxresearch.org.uk/Blog/2026/04/13/does-trump-think-hes-god/
6•only_in_america•25m ago•3 comments