frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Post-Mythos Cybersecurity: Keep calm and carry on

https://cephalosec.com/blog/cybersecurity-in-the-post-mythos-era-keep-calm-and-carry-on/
30•Versipelle•1h ago

Comments

Versipelle•1h ago
I've been brewing on this topic since Mythos preview was announced. As Mythos got finally released, then banned, then released again under U.S. government control, it was time to finally flesh it out and use it as a way to exit the lurker-zone on HN !
dude250711•1h ago
"Released" is doing some heavy lifting here.
Versipelle•55m ago
Fair, let's say a heavily staggered come back.

I was actually pleased to see OpenAI openly (although timidly) complaining about the situation in their latest announcement, framing it as an unsustainable system.

One can only guess the outrage in the news if the Chinese government had been the first to pull this kind of stunt.

petcat•51m ago
> outrage in the news if the Chinese government had been the first to pull this kind of stunt.

I suspect that the Chinese government "pulls this kind of stunt" often but just nobody ever hears about it because their society is not free to complain about such a thing publicly.

FromTheFirstIn•46m ago
This is a great read! I never realized the scale of the effort to find that BSD vulnerability- helps put things in perspective
datakan•24m ago
The fear porn around this all has been horrible. I work in Cybersecurity and Mythos is all the vendors will talk about because they want to sell something. It started the day of the announcement which is what told me it was all BS. They had no information about it yet would happily tell me about all their solutions for it.

Anyone in my profession worth a damn will tell you the vast majority of security issues are related to bad configurations and bad practices + accidents and bad luck. Vulnerable software is a problem but basic defense in depth will either mitigate or drastically reduce attack surface. Mythos does nothing to change that.

The technical debt at companies is the largest security threat. That, and layer 8 which is the people factor. The amount of silliness I've seen from people and companies as a whole is truly hard to verbalize. I've seen banks that gave every employee from the janitor up to the CEO domain admin access due to a crappy application that was written in 2004 that they never updated. I've seen a fortune 250 company write its own internal routing protocol that was basically clear text traffic that dated back to the 1990's and was never retired because, why not. I've seen contractors infect entire fab's in the chip industry because they plugged an infected USB stick into a 30 year old tool that hadn't seen an update in over 20. Then when the fab came back up, they did it again the next day.

Ultimately, Mythos is just another tool in the toolbox. It's great to find new vulns but it is incredibly short sighted to think it will move the needle in any meaningful way in the security industry.

hedora•10m ago
The actual story here: The Trump administration is going to choose which organizations get access to which AI models when.

This will establish an asymmetry where the chosen organizations get to secure their stuff and break other people’s systems with each new model release.

If you believe the “good guys” will be the ones given asymmetric offensive access, then you’re either severely misinformed or support things like ethnic cleansing (which these models are already being used for).

Mythos’ slightly higher performance is a nothing burger. It is not even the current top model. According to anthropic, gpt 5.5 is!

Personally, I’m switching to open weight models asap, and probably will start sending money to Chinese vendors since they have values more compatible with western democracy.

Apple seeks to buy memory chips from blacklisted Chinese company

https://www.ft.com/content/d72a25e2-7bde-4aa9-bd8d-0c4f3d6cb2cb
2•ksec•4m ago•1 comments

The PM's Guide to Managing AI Debt

https://newsletter.artofsaience.com/p/the-pms-guide-to-managing-ai-debt
2•mooreds•5m ago•0 comments

You've tried DuckDuckGo and Brave Search, now get serious with SearXNG

https://www.neowin.net/editorials/youve-tried-duckduckgo-and-brave-search-now-get-serious-with-se...
3•philonoist•7m ago•0 comments

Liquid-Cooling a TE Connectivity 800V DC Busbar and More from the Wiwynn Booth

https://www.servethehome.com/liquid-cooling-a-te-connectivity-800v-dc-busbar-and-more-from-the-wi...
1•ksec•9m ago•0 comments

Text Files as a User Interface

https://ratfactor.com/cards/text-files-as-ui
3•birdculture•11m ago•0 comments

Show HN: HotFX Pseudorandom – value noise in a CSS variable via custom element

https://fx.hot.page/pseudorandom
2•WebBurnout•11m ago•0 comments

Passkey Central

https://www.passkeycentral.org/home/
2•mooreds•12m ago•0 comments

Microsoft extends free Windows 10 security updates until October 12, 2027

https://www.tomshardware.com/software/windows/microsoft-extends-free-windows-10-security-updates-...
2•aleph_minus_one•15m ago•0 comments

Show HN: Ocarina – Automate and test MCP servers from YAML, no LLM

https://github.com/msradam/ocarina
2•msradam•15m ago•0 comments

The State has entered the Model Loop

https://peteridah.substack.com/p/the-state-has-entered-the-model-loop
2•peteridah•18m ago•0 comments

Back to the good old times – Win 7 for Debian (2024)

https://mehdy.eu/back-to-the-good-old-times-win-7-for-debian/
2•TuringTux•21m ago•0 comments

Distributed LLM Inference with LLM-d

https://cefboud.com/posts/llm-d/
3•cefboud•21m ago•0 comments

Double threat to privacy: Chat Control 1.0 and 2.0 are back

https://old.reddit.com/r/europe/comments/1ugc4td/double_threat_to_privacy_chat_control_10_and_20/
3•nickslaughter02•22m ago•0 comments

Height of Harmonic Numbers

https://www.johndcook.com/blog/2026/06/27/height-of-harmonic-numbers/
2•ibobev•22m ago•0 comments

Art by Maths

https://www.mathchronicles.org/copy-of-the-math-behind-the-rsa-encry
2•jruohonen•22m ago•0 comments

The Demoralization of the White-Collar Worker

https://nooneshappy.com/article/the-demoralization-of-the-white-collar-worker/
2•zdw•23m ago•0 comments

Show HN: Use any SVG as QR code On Dots

https://bar.codes/
2•Ciaranio•23m ago•0 comments

Four New Chameleon Species Found in Tropical "Sky Islands"

https://nautil.us/four-new-chameleon-species-found-in-tropical-sky-islands-1282292
2•Brajeshwar•26m ago•0 comments

Thousands more artists join Ireland's basic income plan

https://rgmii.org/blog/thousands-more-artists-join-irelands-basic-income-plan/
3•colinprince•27m ago•1 comments

Show HN:I got tired of spending 3hrs daily on job applications,so I automated it

https://jobspire.co.in/
3•cbyteai•27m ago•1 comments

Students Are Doing Worse Than You Think

https://www.economist.com/international/2026/06/25/students-are-doing-worse-than-you-think
2•karakoram•31m ago•1 comments

A peek into Reddit's anti-spam internals

https://lyra.horse/blog/2026/06/reddit-spam-internals/
6•OuterVale•31m ago•0 comments

Americans Are in a Sour Mood as the Country Turns 250

https://www.pewresearch.org/2026/06/12/on-the-countrys-250th-anniversary-the-american-people-are-...
2•karakoram•32m ago•0 comments

Ask HN: Which Zig version to use for my thesis?

2•xuinnz•40m ago•0 comments

Show HN: AI-whisper – Claude works better when Codex watches its back

https://ai-creed.dev/projects/ai-whisper/
2•vuphanse•41m ago•0 comments

Show HN: Apex-1-flash, 4B LLM finetuned on RTX 5070

https://huggingface.co/OrbitAIEU/Apex-1-flash
2•Qmay_Dev•41m ago•0 comments

Show HN: Discover content in any YouTube channel with RAG

https://askchannel.ai
2•nexus2045•42m ago•0 comments

Goodbye, Scientific American

https://www.lawyersgunsmoneyblog.com/2026/06/goodbye-scientific-american
4•u1hcw9nx•43m ago•1 comments

Free the Icons

https://weblog.rogueamoeba.com/2026/06/26/free-the-icons/
2•zdw•43m ago•0 comments

SumUp down across Europe (again)

https://status.sumup.com/europe/incidents/01KW4PXNYDDPRXZQ3GS5ZQA6CY#updates
2•mittermayr•47m ago•0 comments