frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

A CVE Dispute

https://daniel.haxx.se/blog/2026/06/24/a-cve-dispute/
41•theanonymousone•1h ago

Comments

nekusar•15m ago
I think all this goes to the joke/not-a-joke about "you aren't a real hacker until you have a CVE to your name". Its also a form of forced social proof.
rwmj•12m ago
The incentives here are really bad at the moment. Traditionally, your name on a CVE against an important project like curl have a certain cachet in the community. You might even leverage that to get a raise or a better job, so money was definitely part of this.

Now lots of people are throwing code against LLMs and then copy/pasting whatever comes out into "security" reports.

We decided for our projects that any LLM-generated security reports are simply copied to the public list. Everyone has access to LLMs so presumably if one LLM instance found it, then all users of LLMs have already or shortly will find it. We'll fix them if they're important, but the signal to noise is pretty bad.

I think this will, eventually, result in more secure services as the low hanging problems are found and fixed. But unfortunately I don't see the flood of LLM-generated nonsense ending any time soon.

f311a•5m ago
Unless it's a critical CVE, they worth very little now for your career.

Same for a lot of side projects or small contributions to OSS, people are still chasing them by wasting everyone's time for nothing. They would not even work on them if not AI.

cynicalsecurity•7m ago
Someone must have really wanted to put this on their CV.

Show HN: Stickyboard – Kanban on real sticky notes, no account needed

https://stickyboard.dev
1•petritavd•1m ago•0 comments

The British state has lost the argument

https://jonathancook.substack.com/p/the-british-state-has-lost-the-argument
1•hackandthink•2m ago•0 comments

Show HN: The Economic Atlas: a data-first dashboard for comparing countries

https://theeconomicatlas.com/
1•economicatlas•3m ago•0 comments

Azriel Blackman, Airline Mechanic for 80 Years, Dies at 100

https://www.nytimes.com/2026/08/29/us/azriel-al-blackman-dead.html
1•cainxinth•4m ago•0 comments

Don't Be a Meat Proxy

https://dontbeameatproxy.com/
1•adletbalzhanov•4m ago•1 comments

AI-Written Code Is Still *Your* Code. Are You OK with That?

https://martiansoftware.com/articles/ai-written-code-is-still-yours
1•martylamb•7m ago•0 comments

Energy biz SSE smacked around in court by a guy and AI

https://www.theregister.com/ai-and-ml/2026/08/31/energy-biz-sse-smacked-around-in-court-by-a-guy-...
2•sbulaev•8m ago•1 comments

Ask HN: What companies have discussed their AI/agentic workflows?

1•bigbinary•10m ago•0 comments

Advertisers are trying to influence AI bots with secret ads

https://www.theregister.com/ai-and-ml/2026/08/10/advertisers-are-trying-to-influence-ai-bots-with...
3•tcp_handshaker•12m ago•0 comments

Novo Mundo

2•Ismailalmasrirp•12m ago•0 comments

Lake Ontario Now Called Lake America on Google Maps

https://apnews.com/article/lake-trump-ontario-america-7c5c9776d72cb8e8d782e05ec6e7332b
5•pingou•13m ago•1 comments

Solving the Flat Cube

https://mathenchant.wordpress.com/2026/08/19/solving-the-flat-cube/
2•surprisetalk•13m ago•0 comments

Show HN: We tried to recover blurred, pixelated and redacted text (480 cases)

https://datablur.app/blog/blur-recovery-study
2•legitimate_key•13m ago•0 comments

Reverse Engineering Unknown File Formats with ImHex

https://werwolv.net/posts/file_format_reverse_engineering/
2•carlos-menezes•14m ago•0 comments

How we secure Figma's internal systems with agents

https://www.figma.com/blog/how-we-secure-figmas-internal-systems-with-agents/
3•tcp_handshaker•14m ago•0 comments

Build good decks using your AI

https://github.com/kritikmodi/deckloom
2•kritikmodi•14m ago•0 comments

Native Apps Why?

2•dmvjs•16m ago•0 comments

Hollywood studios have sued over AI. Now Google's courting them to use its tools

https://www.latimes.com/entertainment-arts/business/story/2026-08-31/how-google-is-courting-holly...
3•thm•17m ago•0 comments

ChatGPT faces tougher rules under EU online safety regime

https://www.ft.com/content/6af706a3-6e63-46c2-926b-85461a355e9b
5•thm•17m ago•0 comments

ChatGPT Temporary Chat by Default

https://chatgpt.com/auth/?temporary-chat=true&prompt=Hello
2•keks24•19m ago•1 comments

Ask HN: Which self-hosted Docker UIs support rootless mode?

2•vsilent•20m ago•0 comments

'Breakthrough' as Turkmenistan starts fixing 'mindboggling' methane mega-leaks

https://www.theguardian.com/environment/2026/aug/31/turkmenistan-methane-leaks-un-alerts-mars
6•Symbiote•25m ago•1 comments

Malacca Dilemma

https://en.wikipedia.org/wiki/Malacca_dilemma
3•leonidasrup•27m ago•0 comments

I Think the Military Commissary's Freezers Were Hacked

https://signalandsilence.substack.com/p/i-think-someone-hacked-the-commissary
22•jcurbo•29m ago•12 comments

Datadog saves over $1M each month by optimizing AI usage

https://www.datadoghq.com/blog/how-datadog-saves-money-by-optimizing-ai-usage/
3•darccio•30m ago•0 comments

A Stateful Problem

https://www.b-list.org/weblog/2010/dec/24/states/
2•dbaupp•32m ago•0 comments

Show HN: Evoboard – GitHub style habit heatmaps with automatic activity logging

https://evoboard.me/
3•Borsoon•33m ago•0 comments

EMLV: A Secure .eml Email Viewer for VS Code and Cursor

https://github.com/EbodShojaei/EMLViewer
3•bebe311•39m ago•0 comments

What I Learned About AI Trust from Reconciling over 100B Transactions

https://engineering.moniepoint.com/what-i-learned-about-ai-trust-from-reconciling
4•Cellz•41m ago•2 comments

Vssh: Add SSH:// scheme for remote command execution

https://github.com/curl/curl/pull/22661
2•_____k•42m ago•0 comments