frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Notion leaks email addresses of all editors of any public page

https://twitter.com/weezerOSINT/status/2045849358462222720
68•Tiberium•1h ago

Comments

DropDead•36m ago
Big companys need to start caring more security and privacy of its users and employees
bitmasher9•28m ago
I think we’ll start seeing consulting agencies advertise how many vulnerabilities that can resolve per million token, and engineering teams feeling pressure to merge this generated code.

We’ll also see more token heavy services like dependabot, sonar cube, etc that specialize in providing security related PR Reviews and codebase audits.

This is one of the spaces where a small team could build something that quickly pulls great ARR numbers.

contractlens_hn•19m ago
The same vertical-specialist logic applies in legal tech. Law firms are drowning in contract review — NDA, MSAs, leases — and generic AI gives them vague answers with no accountability. The teams winning there aren't building 'AI for lawyers', they're building AI that cites every answer to a specific clause and pins professional liability to the output. That's a very different product than a chatbot.
delecti•2m ago
Does SonarCube use LLMs these days? It always seemed like a bloated, Goodhart's law inviting, waste of time, so hearing that doesn't surprise me at all.
estimator7292•27m ago
The problem is that they don't "need" to. There's no consequences for not caring, and no incentive to care.

We need laws and a competent government to force these companies to care by levying significant fines or jail time for executives depending on severity. Not fines like 0.00002 cents per exposed customers, existential fines like 1% of annual revinue for each exposed customer. If you fuck up bad enough, your company burns to the ground and your CEO goes to jail type consequences.

rafram•16m ago
This kind of response went out of fashion after Enron. Burning an entire company to the ground (in that case Arthur Andersen) and putting thousands out of work because of the misdeeds of a few - even if they were due to companywide culture problems - turned out to be disproportionate, wasteful, and cruel.
amelius•10m ago
If the government wants me to take copyright and IP laws seriously, then they need to take my personal information serious too.
fnoef•5m ago
Nah. They care about profits only, the sooner the better, so everyone can cash out and move to their next “venture”
amazingamazing•23m ago
I've been toying around an architecture that sets things up such that the data for each user is actually stored with each user and only materialized on demand, such that many data leaks would yield little since the server doesn't actually store most of the user data. I mention this since this sorts of leaks are inevitable as long as people are fallible. I feel the correct solution is to not store user data to begin with.

some problems I've identified:

1. suppose you have x users and y groups, of which require some subset of x. joining the data on demand can become expensive, O(x*y).

2. the main usefulness of such an architecture is if the data itself is stored with the user, but as group sizes y increase, a single user's data being offline makes aggregate usecases more difficult. this would lend itself to replicating the data server side, but that would defeat the purpose

3. assuming the previous two are solved, which is very difficult to say the least, how do you secure the data for the user such that someone who knows about this architecture can't just go to the clients and trivially scrape all of the data (per user)?

4. how do you allow for these features without allowing people to modify their data in ways you don't want to allow? encryption?

a concrete example of this would be if HN had it so that each user had a sqlite database that stored all of the posts made per user. then, HN server would actually go and fetch the data for each of the posters to then show the regular page. presumably here if a data of a given user is inaccessible then their data would be omitted.

yellow_postit•15m ago
I’ve always liked this idea but I think it eventually ends back up with essentially our current system. Users have multiple devices so you quickly get to needing a sync service. Once that gets complex enough, then people will outsource to a third party and then we are back to a FB/Google/Apple sign in and data mgmt world.

The Great Ozempic Experiment, an opinion piece

https://www.nytimes.com/interactive/2026/04/15/opinion/glp1-health-effects.html
1•doctorpangloss•1m ago•0 comments

Wiring the Lisp Machine

https://scheatkode.com/blog/019d463d-38b3-7e63-80fd-6ed97bd8815e/hot-wiring-the-lisp-machine/
1•spudlyo•1m ago•0 comments

The Malleable Computer

https://world.hey.com/dhh/the-malleable-computer-7c187a9b
1•gpi•2m ago•0 comments

Opus 4.7 vs. 4.6 after 3 days of real coding side by side from my actual session

1•agentseal•4m ago•0 comments

Show HN: Deadline.email – a daily reminder that you'll die

https://deadline.email/
2•onesandofgrain•5m ago•0 comments

Token Maxer, Eventually

https://brunokiafuka.substack.com/p/token-maxer-eventually
1•brunokiafuka•5m ago•0 comments

Programming the Univac-1219 [video]

https://www.youtube.com/watch?v=rU8sCbwB8XU
1•caminanteblanco•5m ago•1 comments

NY Times: That Meeting You Hate May Keep A.I. From Stealing Your Job

https://www.nytimes.com/2026/04/15/business/ai-jobs-human-work.html
1•nicolapede•6m ago•0 comments

C# that looks like Go

https://makarchie.com/posts/csharp-that-looks-like-go-file-based-apps/
1•azhenley•6m ago•0 comments

SF is obsessed with the safest drivers – and ignoring the ones killing people

https://www.sfchronicle.com/opinion/openforum/article/pedestrian-death-driver-accident-22210904.php
1•standardUser•9m ago•1 comments

There are only four skills: design, technical, management and physical

https://www.lesswrong.com/posts/KRLGxCaqdgrotyB8z/there-are-only-four-skills-design-technical-man...
2•samuel246•10m ago•0 comments

Fake Pro-Trump Avatars Emerge on Social Media

https://www.nytimes.com/2026/04/17/business/media/artificial-intelligence-trump-social-media.html
5•doener•13m ago•1 comments

Gender reassignment significantly increases psychiatric morbidity

https://onlinelibrary.wiley.com/doi/10.1111/apa.70533
2•hereme888•14m ago•0 comments

Reconstructing a Dead USB Protocol: A Handheld's Secrets Unlocked by a Hot Knife

https://github.com/coremaze/ME2-Writeup
3•Bawoosette•15m ago•0 comments

Atlantic's circulation collapse would lead to substantial oceanic carbon release

https://www.nature.com/articles/s43247-026-03427-w
3•doener•16m ago•0 comments

I time travelled to Ancient Rome [video]

https://www.youtube.com/watch?v=aaua5ghidk0
1•lisper•16m ago•0 comments

Palantir posts mini-manifesto denouncing inclusivity and 'regressive' cultures

https://techcrunch.com/2026/04/19/palantir-posts-mini-manifesto-denouncing-regressive-and-harmful...
6•benwerd•19m ago•0 comments

Critical flaw in Protobuf library enables JavaScript code execution

https://www.bleepingcomputer.com/news/security/critical-flaw-in-protobuf-library-enables-javascri...
3•Brajeshwar•22m ago•1 comments

Is the 'Tailored Resume' advice feasible without automation anymore?

https://applygenius.ai
1•mikkaai•22m ago•0 comments

Show HN: Google Gemini Is Scanning Your Photos – and the EU Said No

5•anju-kushwaha•23m ago•0 comments

Accepted proposal: UUID in the Go standard library

https://rednafi.com/shards/2026/04/go-uuid/
2•ingve•23m ago•0 comments

Amazon DCV – A Better Alternative to VNC

https://aws.amazon.com/hpc/dcv/
1•alhazrod•26m ago•0 comments

Self-healing GitHub CI that won't let AI touch your application code

https://github.com/mosidze/aiheal
3•mosidze•33m ago•0 comments

Show HN: AgentGrade – agent-readiness guide for your site

https://agentgrade.com/
2•usiegj00•33m ago•0 comments

AI Is Killing Open Source SaaS Too

https://nmn.gl/blog/open-source-killed-ai
1•namanyayg•33m ago•1 comments

543 Hours: What happens when AI runs while you sleep

https://michael.roth.rocks/research/543-hours/
2•pramodbiligiri•37m ago•0 comments

PM Carney declares U.S. ties now a 'weakness' in address to Canadians

https://www.ctvnews.ca/politics/article/pm-carney-declares-us-ties-now-a-weakness-in-address-to-c...
51•Teever•37m ago•13 comments

"Ukraine cut out the bloated red tape of military bureaucracy"

https://www.youtube.com/watch?v=1s39U0j2jPA
1•lifeisstillgood•38m ago•1 comments

Rensei – let agents code 3D models and screenshot them. then 3D print

https://github.com/remorses/rensei
3•xmorse•39m ago•0 comments

The State of LLM Bug Bounties in 2026

https://wraith.sh/learn/state-of-llm-bug-bounties-2026
1•WizardX_0x•39m ago•0 comments