frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Show HN: Algraf, block-scoped, algebraic grammar-of-graphics DSL

1•williamcotton•1m ago•0 comments

Show HN: Topolog – Plans as typed DAG programs, deadlines computed, not guessed

https://www.topolog.co.uk
1•rohithbv•1m ago•0 comments

Visa adds payment network into ChatGPT, letting AI agents shop and pay for users

https://finance.yahoo.com/sectors/technology/articles/visa-plugs-payment-network-chatgpt-18015054...
1•coffee•2m ago•0 comments

AI: Equalizer or Divider?

1•borissk•5m ago•0 comments

Largest whale graveyard discovered by sub at bottom of ocean

https://www.cbsnews.com/news/whale-graveyard-discovered-sub-bottom-ocean/
1•Vaslo•5m ago•0 comments

Radix Top-K: finding the top-k elements in an array without sorting

https://veitner.bearblog.dev/radix-top-k/
1•matt_d•7m ago•0 comments

Deficient executive control in transformer attention

https://academic.oup.com/pnasnexus/article/5/6/pgag149/8698838
2•derbOac•8m ago•0 comments

We are building robotics that serves humanity. Now, backed by up to $1.4B

https://neura-robotics.com/series-c/
1•doener•8m ago•0 comments

America Is Not Ready For What's Coming – pt 1 [video][25 mins]

https://www.youtube.com/watch?v=Ru5zJ_eRtPg
1•Bender•9m ago•1 comments

The Cosmological Hart-Tipler Conjecture

https://arxiv.org/abs/2606.04044
1•root-parent•12m ago•0 comments

AI hiring lawsuit: Workday's bias-testing data is attorney-client privileged

https://blog.mccoy.io/workday-ruling-ai-screener-audit
1•jgafni•12m ago•0 comments

This Flash Drive Has Literally Every File

https://www.youtube.com/watch?v=w6rkhvdAqHU
1•SpyCoder77•15m ago•0 comments

Ask HN: Why does Deno Deploy block /wp-content?

https://deno.com/wp-content
2•tisizi•15m ago•1 comments

I'm Rich

https://www.guidavid.com/writing/im-rich
1•gdss•20m ago•0 comments

Claude for Financial Services

https://notebooklm.google.com/notebook/16f00c29-20fe-42fe-b77d-cfc3b02b879b/artifact/7e5a9568-45f...
2•gilthor•20m ago•1 comments

The terrific technical debt of Arabic typography rendering: an interactive tour

https://lr0.org/blog/p/arabic/
2•lr0•24m ago•0 comments

Agent-gate – fail-closed agent gate and tamper-evident receipts as an MCP server

https://github.com/Jott2121/agent-gate
1•jott2121•27m ago•0 comments

Exposing the Solid State Donut Battery. It's over [video]

https://www.youtube.com/watch?v=j5oyVNjrUPI
1•ot•28m ago•0 comments

Ads in New York must now label AI-generated 'synthetic performers'

https://apnews.com/article/new-york-ai-law-hochul-synthetic-performers-e433625bfb61c8abeab0d61986...
3•1659447091•32m ago•0 comments

An entrance animation stranded my dashboard on a black screen

https://stengineer.dev/lab/walking-into-hour-four
1•lookingforsome•33m ago•0 comments

OpenAI C2PA Policy

https://help.openai.com/en/articles/8912793-c2pa-and-synthid-in-openai-generated-images
2•sarkarghya•34m ago•0 comments

Building Hollywood Motion Capture from Scratch [video]

https://www.youtube.com/watch?v=kYVqL_DqBis
2•radeeyate•34m ago•0 comments

Nontrailing separators do not spark joy

https://buttondown.com/hillelwayne/archive/nontrailing-separators-do-not-spark-joy/
5•birdculture•35m ago•0 comments

702 Ultimatum: Warrant Requirement or Bust

https://www.eff.org/deeplinks/2026/06/702-ultimatum-warrant-requirement-or-bust
2•kevinwang•37m ago•0 comments

Loop-Harness

https://github.com/lSAAGl/loop-harness
2•LordIsBack•41m ago•0 comments

Show HN: Obsidian Image Upload Toolkit – upload images to 10 cloud providers

https://github.com/addozhang/obsidian-image-upload-toolkit
2•addozhang•44m ago•0 comments

Recovering attention during heavy study efforts

https://socketstudy.com/sparks/recovering-attention/
2•wingrove•49m ago•0 comments

Nexus Q Revival

https://mikevoyt.github.io/nexusq-revival/
2•tmp10423288442•50m ago•0 comments

Closing the Loop: One Impressive AI Coding Agent Session for Y-Combinator

https://vmysla.substack.com/p/closing-the-loop-one-impressive-ai
2•vmysla•51m ago•0 comments

A smarter approach to designing metamaterials

https://engineering.berkeley.edu/news/2025/07/a-smarter-approach-to-designing-metamaterials/
3•airstrike•52m ago•0 comments
Open in hackernews

Patch for critical vulnerability in p2pool (Monero) to be released on 2026-06-13

https://github.com/SChernykh/p2pool/releases/tag/pre-release-v4.16
3•sxde•1h ago

Comments

sxde•1h ago
From link:

PSA: Critical P2Pool security update

A critical vulnerability has been discovered in all currently released P2Pool versions.

This is a P2Pool consensus bug that can allow an attacker to affect the calculated payouts of miners - up to the whole block reward going to the attacker.

To avoid facilitating exploitation, no technical details will be published at this time. The vulnerability does not enable RCE (remote code execution), node crashes, or resource-exhaustion attacks. However, affected nodes remain financially vulnerable until updated.

A patched P2Pool release will be published on 2026-06-13 (this Saturday) at 15:00 UTC. All users must update as soon as the release becomes available.

Anyone continuing to run an older version after that time risks losing mining payouts if the vulnerability is exploited. Note that mining payouts which are already in your wallet are safe. Updating is strongly recommended even if your node appears to be operating normally.

Source code, signed binaries, checksums, and upgrade instructions will be published through the official P2Pool release channels only - https://github.com/SChernykh/p2pool/releases

Download releases only from the official page and verify all downloaded files before installation.

Because P2Pool is open source, the fix will become visible once published. A capable attacker may be able to develop an exploit within hours, leaving miners who have not updated exposed.

It is essential that you are available to update promptly at the time of the release, or have a carefully tested automatic update process that downloads, verifies, and installs the official release.

Further technical details will be disclosed after sufficient adoption of the patched release.

We are continuously monitoring the network and have reviewed the available historical logs. We have found no evidence that this vulnerability has been exploited.