frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Don't Fuck with My .bashrc

https://fev.al/posts/dont-fuck-with-my-bashrc/
2•charles_f•1h ago

Comments

Bender•1h ago
Bots will do what bots can do. One could make their home directory tmpfs that gets populated by a root startup script, or make home read-only and work with code in a tmpfs mount, or make the files it is dorking with immutable. Enable auditd rules that log when something is trying to write into your dotfiles. For that matter I would enable auditd rules that log every single thing a bot is doing. Those with good custom auditd rules will be the first to catch the bots doing something shady. There are many sites with examples on how to use auditd. I happen to like the writing style that archlinux creates. [1] I would be especially uncomfortable having a bot on my machine if ssh multiplexing is enabled as the bot could bypass MFA into production without anyone noticing but that's a topic for another day.

Another useful tool for monitoring changes and detecting shenanigans is OSSEC [2] but it does require some tuning to minimize noise.

Some would discourage the use of chattr +i as it can create confusion later on when debugging something. Its just a stop-gap until proper guard rails and monitoring are in place.

    sudo chattr +i ~/.bashrc ~/.bash_prof* ~/.bash_logout ~/.vimrc
    lsattr -a
This is obviously only useful if sudo is not passwordless or the bot could undo it.

[1] - https://wiki.archlinux.org/title/Audit_framework

[2] - https://www.ossec.net/

Optimal Seating on the Airbus A380

https://tech.marksblogg.com/a380-seating.html
1•marklit•2m ago•0 comments

Ask HN: Prediction for SpaceX IPO?

2•bix6•2m ago•0 comments

Grit: Rewriting Git in Rust with Agents

https://blog.gitbutler.com/true-grit
1•cbrewster•3m ago•0 comments

Show HN: AI News Aggregator

https://aibriefs.news
1•michelmi•5m ago•0 comments

Progress: Real and Potemkin

https://scottlocklin.wordpress.com/2026/06/09/progress-real-imaginary/
1•o_nate•8m ago•0 comments

Ask HN: Is online irritability the canary in the coal mine for various fields?

1•amichail•13m ago•1 comments

Show HN: RS-Poker V5 The one with self learning multi-threaded async Agents

https://ottercrew.group/blog/poker-v5/
2•eclark•13m ago•1 comments

The quiet push to shield pesticide makers from lawsuits

https://grist.org/sponsored/the-quiet-push-to-shield-pesticide-makers-from-lawsuits/
2•speckx•15m ago•0 comments

Where was your backyard millions of years ago?

https://phys.org/news/2026-04-backyard-millions-years.html
2•PaulHoule•16m ago•0 comments

Show HN: Predict World Cup scores each day against your friends

https://scorinho.com
1•cwbuilds•17m ago•1 comments

NYC Founders Looking for Startup Office Hardware

2•ultra_em•17m ago•0 comments

Runtime Guards for AI Agents

https://guard-sdk.js.org/
1•apvarun•18m ago•0 comments

Devs know AI code is riddled with holes, but ship it anyway

https://www.theregister.com/devops/2026/06/09/devs-know-ai-code-is-riddled-with-holes-but-ship-it...
8•speckx•24m ago•0 comments

FDA allows popular sunscreen ingredient long used in Europe and Asia

https://www.nbcnews.com/health/health-news/bemotrizinol-fda-allows-sunscreen-ingredient-popular-e...
2•jameslk•26m ago•0 comments

Ask HN: Favorite text heavy blogs the are a joy to read

2•joshmarinacci•26m ago•0 comments

The Massachusetts Dept of Public Health wants to hide public genealogy records

https://mailchi.mp/reclaimtherecords/we-massively-need-your-help-massachusetts-public-access
1•toomuchtodo•27m ago•2 comments

XML and JSON in 2026

https://www.tbray.org/ongoing/When/202x/2026/06/01/XML-and-JSON-in-2026
2•smartmic•28m ago•0 comments

What Yahoo killed when it bought Maktoob

https://lr0.org/blog/p/yahoo/
2•edent•28m ago•0 comments

Fable 5 on Vending-Bench: Misbehaving, with Plausible Deniability

https://andonlabs.com/blog/fruitcake-vending-bench
2•lukaspetersson•30m ago•1 comments

Why anecdotal evidence is better than studies

https://greyenlightenment.com/2026/05/23/why-anecdotal-evidence-is-better-than-studies/
1•paulpauper•30m ago•0 comments

Hitachi Ltd, Part II – By Bradford Morgan White

https://www.abortretry.fail/p/hitachi-ltd-part-ii
1•rbanffy•32m ago•0 comments

Fuck|Thank You

https://pawelgrzybek.com/fuck-thank-you/
1•speckx•33m ago•0 comments

Show HN: I applied Lyapunov stability theory to detect when LLM agents spiral

https://github.com/vishal-dehurdle/state-harness
1•visha1v•34m ago•0 comments

Authorization via Gmail and Apple ID Banned in Russia

1•levleontiev•35m ago•0 comments

Advanced AI Safety Addendum

https://cloud.google.com/terms/advanced-ai-safety-addendum
1•hmokiguess•36m ago•0 comments

2 Kinds of People

https://2kindsofpeople.tumblr.com/
3•smartmic•37m ago•0 comments

Ultrafast machine learning on FPGAs via Kolmogorov-Arnold Networks

https://aarushgupta.io/posts/kan-fpga/
11•ag2718•40m ago•0 comments

Ask HN: What do you use for throwaway email inboxes in CI pipelines?

2•devdoc83•44m ago•0 comments

Famed historian Gordon S. Wood struck, killed in East Providence

https://www.wpri.com/news/local-news/providence/famed-historian-gordon-s-wood-struck-killed-in-ea...
1•speckx•47m ago•0 comments

The problem with generative AI (it's a dream machine)

https://metayeti.net/blog/the-problem-with-generative-ai
4•metayeti•48m ago•1 comments