frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

The VibeSec Reckoning

https://martinfowler.com/articles/vibesec-reckoning.html
19•HieronymusBosch•1h ago

Comments

_pdp_•18m ago
We will learn the hard way... like always.
some_random•12m ago
Something worth noting is that the types of vulnerabilities LLMs introduce are notably different from what humans introduce, way fewer local issues like syntax mistakes, simple memory problems, etc and far more broad issues like authn/authz
bcjdjsndon•8m ago
Vibe coding into production? You don't need to wait for scientists to produce research to know that's not a great idea.

You played yaself

comandillos•6m ago
I mean, isn't introducing safety guardrails as part of the system prompt actually a REALLY bad idea? This way you basically fully rely on the model to follow the rule, but its clear that even frontier models like Opus will start ignoring these things after a certain context length...

In our company we are just running agents inside isolated containers with isolated network access so it cannot even SSH or fuck up anything even if it gets access into it... That's the only and safest way... inconvenient, true, but the only safe option.

PS: At the same time I've observed this way actually people uses the agent in a more reasonable way, e.g. producing helper scripts to help them with their daily stuff, produce very specific things, create simple PoCs, but they don't commit to vibe-code all the functionality in their corresponding software products.

et1337•4m ago
> prompting for test-driven development is not the same as enforcing code coverage thresholds in your build tool

Are they actually different? I would guess they have roughly the same efficacy. 100% code coverage means nothing, and this is especially true with LLMs.

Foobar8568•4m ago
First so called vulnerability, isn't how a lot platforms are actually built? Share a link/copy a link, and more often than not, I am sure to have read a warning like "anyone with that link may access that file".

How HN: I let 10 LLMs hire each other in USDC to stress-test my protocol

https://tournament.swarmwage.com
1•lucianocccc•40s ago•0 comments

WindowSwap

https://www.window-swap.com/Window
1•bookofjoe•44s ago•0 comments

How the plastic bottle cap became a parable for the value of EU regulation

https://www.theguardian.com/commentisfree/2026/may/27/how-the-plastic-bottle-cap-became-a-parable...
1•tadaima•1m ago•0 comments

Show HN: Kibbutznik – a pulse-based direct democratic engine

https://kibbutznik.org/
1•uriee•1m ago•0 comments

DuckDB Labs Becomes DuckLabs

https://ducklabs.com/news/2026/05/27/duckdb-labs-becomes-ducklabs
1•0xedb•2m ago•0 comments

Beware the boom and bust cycle of memory stocks, investors warn

https://www.cnbc.com/2026/05/25/memory-stocks-cyclical-boom-bust-samsung-sk-hynix.html
1•speckx•6m ago•0 comments

Show HN: CoreMCP – MCP Server for On-Prem DBs

1•y11t0•6m ago•0 comments

Apache Fory v1.0.0 Serialization Framework Released

https://fory.apache.org/blog/fory_1_0_0_release/
1•CharlesW•7m ago•0 comments

I Rebuilt ZX Spectrum Basic in Rust with AI

https://github.com/ashtree74/zxbasic-rust
1•adam_jesion•7m ago•0 comments

Corporations can vote in some Delaware elections, judge says

https://news.bloomberglaw.com/esg/corporations-have-the-right-to-vote-in-delaware-town-judge-says
4•marcher•8m ago•0 comments

How the ZX80 Works

http://blog.tynemouthsoftware.co.uk/2019/10/how-the-zx80-works.html
2•mariuz•9m ago•1 comments

American Dream (2003)

https://github.com/bibanon/bibanon/wiki/American-Dream
1•downbad_•11m ago•0 comments

Trump administration to send Americans exposed to Ebola to Kenya

https://www.nytimes.com/2026/05/26/us/politics/trump-ebola-kenya.html
3•petethomas•11m ago•1 comments

How to Use Git Bisect to Find the Commit That Broke Everything

https://jsdev.space/howto/git-bisect/
1•javatuts•12m ago•0 comments

New Vaultjacking Phishing Technique

https://phishu.net/blogs/blog-vaultjacking-phishing-the-google-password-manager-vault-in-the-phis...
1•curtbraz•12m ago•0 comments

HN Search: A Spotlight-Style Search Interface for Hacker News

https://twitter.com/_bumblebee7_/status/2059649571907637449
1•unconventional•12m ago•0 comments

Five of seven people trapped in Laos cave found alive by rescuers

https://www.cnn.com/2026/05/27/asia/laos-flooded-cave-rescue-intl
2•YeGoblynQueenne•12m ago•0 comments

OpenRouter more than doubles valuation to $1.3B in a year

https://techcrunch.com/2026/05/26/openrouter-more-than-doubles-valuation-to-1-3b-in-a-year/
2•chuckhend•12m ago•0 comments

Hetzner price adjustment of server products effective 15 June 2026

https://www.hetzner.com/pressroom/standardization-and-price-adjustment-of-our-server-products/
5•falava•14m ago•1 comments

Show HN: Zorilla – vibe-code a 3D game in the browser

https://www.zoril.la/
1•algera•14m ago•1 comments

Back to the Future: AI and the Legal Profession

https://blog.withedge.com/p/back-to-the-future-ai-and-the-future
1•ejz•14m ago•0 comments

Canada's Bill C-22 and the security cost of collecting more data

https://tailscale.com/blog/bill-c22-canada
3•Brajeshwar•15m ago•0 comments

Most Teachers Receive No Formal Guidance on AI Use

https://news.gallup.com/poll/710534/teachers-receive-no-formal-guidance.aspx
1•giuliomagnifico•15m ago•0 comments

Is having agents in the room meant to be chaotic?

https://slock.ai/resources/blog/is-having-agents-in-the-room-meant-to-be-chaotic/
1•tygg•16m ago•0 comments

SpaceX-Tesla merger chatter reignites as Musk pushes rocket company to Nasdaq

https://www.cnbc.com/2026/05/26/spacex-tesla-merger-chatter-reignites-as-musk-rocket-company-near...
1•breve•16m ago•0 comments

SecretScanner is an open-source tool for discovering passwords, API, tokens

https://github.com/deepfence/SecretScanner
1•javatuts•16m ago•0 comments

Linux was accidentally designed for agents

https://danieldelaney.net/fourth-era/
2•cryptophreak•16m ago•2 comments

Banca Sella Becomes First Italian Bank Licensed for Bitcoin and Crypto Services

https://www.europesays.com/italy/20070/
1•janandonly•17m ago•0 comments

Running Ghostty on a Playdate to control tmux

https://jiahao.gg/blog/crankshell/
1•jiahaog•17m ago•0 comments

BRAKEInG News

https://file.kiwi/ac5a4ed5
1•shmolyakolya•18m ago•0 comments