frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

VeilGate- Deception Reverse Proxy

1•C0oki3s•46m ago
In my day job, I run AI pentest agents against real targets like banks, fintechs, and secured production stacks with paid WAFs. I also deal with multilayer infrastructure and dedicated security teams. Despite these defenses, I keep finding high and critical vulnerabilities using just an LLM agent loop, a few open-source tools, MCP servers, and Burp Suite.

The volume of traffic is increasing quickly. Agent-driven activity in web logs has shifted from occasional noise to a constant background presence. Tools like PentestGPT, CAI, Strix, and HexStrike allow you to set up fully autonomous agents against any target for under a dollar an hour of API cost. Most teams haven’t noticed this change because their tools weren’t designed to detect it.

This repetition started to concern me. Despite all the paid WAFs, the rules, and the layered infrastructure, I could still guide an AI agent through a secured target and find critical issues. So what is the actual defense?

The realization that changed my perspective: blocking doesn’t work. A 403 error is simply a signal in an LLM's context window. The agent sees "defended here," updates its model, and pivots in milliseconds. Every block provides free information that shows the attacker where your weaknesses are.

That’s why I created VeilGate as a deception proxy, not just another blocker. It sits in front of your app and operates in modes such as `observe`, `challenge`, `tarpit`, or `auto`. Each request is scored based on protocol fingerprints, behavioral signals, and online machine learning. Requests below the threshold are forwarded to your main app normally. Ambiguous traffic receives a browser proof-of-work challenge. High-confidence agent traffic gets redirected into tarpit mode, where it encounters a deception layer instead of your actual app.

Anthropic is killing stainless, so we built our own SDK/MCP generator

1•iiviie•42s ago•0 comments

Show HN: I built a native macOS Markdown viewer 100% with AI coding agents

https://github.com/rajatarya/mdviewer
1•rajatarya•2m ago•0 comments

Cognitive Drift and Co-Cognition: How AI Reshapes Human Thought [pdf]

https://ia801602.us.archive.org/12/items/cognitive-drift-and-co-cognition-canonical-overview-faq-...
1•scaledsystems•4m ago•1 comments

Netlify Is Having an Outage

https://www.netlifystatus.com
1•flycatcha•4m ago•0 comments

Ambrose to Theodosius I 390

https://sourcebooks.web.fordham.edu/source/ambrose-let51.asp
1•highfrequency•5m ago•0 comments

Study this tool, kids. Just don't you dare open it

https://www.washingtonpost.com/opinions/2026/05/19/minimum-age-rules-ai-are-bad-policy/
1•IMGROOT2•8m ago•1 comments

I carried my stories From Python to Node and found Apple's hidden city of Metal

https://github.com/jahbini/pipeline-demo
1•GeemoBeamo•9m ago•1 comments

Solo Dev Kills YouTube Ask

https://www.neotube.ai/
4•walkervin•13m ago•1 comments

Meta Goes Big on the Bayou

https://www.bloomberg.com/features/2026-meta-facebook-ai-data-center-louisiana/
1•littlexsparkee•17m ago•1 comments

1k-year-old dingo bones show that it was injured, cared for, and ritually buried

https://www.popsci.com/environment/dingo-bones-ritual-burial-australia/
2•gmays•18m ago•0 comments

OhMyAdmin – PhpMyAdmin Reimagined with Go, React, and Monaco Editor

https://github.com/aranajhonny/ohmyadmin
2•akatsutki•20m ago•0 comments

Show HN: PrismoDev – local CLI for finding token waste in Claude Code/Codex

https://github.com/shanirsh/prismodev
1•shanirshad•20m ago•0 comments

Show HN: SharpSkill – A LeetCode Alternative with real interview outcomes

https://sharpskill.dev/en/vs/leetcode
2•GiornoJojo•20m ago•0 comments

Russia's War Is Going Badly–On the Ground and in the Air

https://www.wsj.com/world/russias-war-is-going-badlyon-the-ground-and-in-the-air-447ce204
2•JumpCrisscross•21m ago•1 comments

FBI plans tracking system that taps into license plate cameras across US

https://arstechnica.com/tech-policy/2026/05/fbi-seeks-us-wide-access-to-license-plate-cameras-wan...
1•ndr42•23m ago•1 comments

Donald Trump and sons to be 'forever' exempt from tax audits

https://www.ft.com/content/57334fae-a475-4ab0-a202-8df3766927e4
8•doener•24m ago•2 comments

Show HN: Postbear The API Client your terminal has been waiting for

https://github.com/carban/postbear
1•carban•25m ago•0 comments

How Google Is Becoming the New AOL(2014)

https://raventools.com/blog/google-new-aol/
2•rolph•25m ago•0 comments

Printable Blank Calendar Generator

https://blankcal.app/?r=this-month&dp=1
1•zapeterson16•26m ago•0 comments

Google's Ambitious AI Search Changes (Biggest in 25 Years) Are Risky. Here's Why

https://www.inc.com/connor-jewiss/googles-ambitious-ai-search-changes-are-risky-heres-why/91347071
1•connorjewiss•26m ago•0 comments

Xi told Trump that Putin might 'regret' Ukraine invasion

https://www.ft.com/content/567c57b0-6346-43e6-9d14-840a793b4d1d
1•cwwc•28m ago•0 comments

Jigs, Products, and Appearances: The Vibe Coding Distribution Problem

https://trevoragilbert.com/posts/jigs-products-appearances-vibe-coding-distribution/
1•trevoragilbert•28m ago•1 comments

I created Age of Empires 2: The Conquerors

https://twitter.com/i/status/2056763353369063571
2•Michelangelo11•29m ago•0 comments

Trump's deal with government ends his tax audits

https://www.justice.gov/opa/media/1441216/dl
4•defly•31m ago•1 comments

Backup Photos from Google Photos: A Detailed Guide

https://blinkdisk.com/blog/backup-photos-from-google-photos
1•pauxel•32m ago•0 comments

Occupations with the Highest Divorce Rates

https://flowingdata.com/2026/05/07/divorce-and-occupation-2026/
2•gmays•33m ago•0 comments

This was Coworking Tech Week 2026

https://www.coworkingtechweek.com/blog/this-was-coworking-tech-week-2026/
1•inchevd•33m ago•0 comments

Hey Platforms: Add Take It Down to Your Transparency Reports

https://www.techdirt.com/2026/05/19/hey-platforms-add-take-it-down-to-your-transparency-reports/
1•hn_acker•35m ago•0 comments

Sōzune – a reverse proxy built on Sōzu, with Traefik-style autodiscovery

https://github.com/kemeter/sozune
2•Shine-neko•36m ago•2 comments

Concluding the Arc Experiment

https://www.ietf.org/archive/id/draft-adams-arc-experiment-conclusion-00.html
1•upofadown•36m ago•0 comments