frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

The AI Hype Index: AI Loves Cheating

https://www.technologyreview.com/2026/09/23/1144940/ai-hype-index-ai-loves-cheating/
1•sbulaev•2m ago•0 comments

Show HN: The Mirror Act – a magic show that performs cognitive biases on you

https://themirroract.avestura.dev
1•avestura•4m ago•0 comments

Cortical thinning and hippocampal expansion linked to ADHD symptom trajectories

https://www.repository.cam.ac.uk/items/f7f1efa9-3b29-49e2-b765-60fe44526de6
1•wslh•5m ago•0 comments

I stress-tested LLM quantization by deliberately breaking models

https://github.com/gracejackson-sudo/quant-delta-predictor
1•GraceJackson07•5m ago•0 comments

We just shipped support for the ugliest part of HTTP: Vary – Cloudflare Blog

https://blog.cloudflare.com/vary-support/
2•thisisfatih•6m ago•0 comments

Opus 5.5 Scores 75.6% on Part Catalog Bench

https://partcatalogbench.adamjohnson.site
1•thomas_ma•12m ago•0 comments

Neuromancer in 3 Axioms

https://2600hz.substack.com/p/neuromancer-in-3-axioms
1•josh2600•13m ago•1 comments

Manage Firezone as code with Terraform

https://www.firezone.dev/blog/terraform-provider
1•jamilbk•14m ago•0 comments

The Bayeux Tapestry: Woven by the Victors

https://www.historytoday.com/archive/out-margins/bayeux-tapestry-woven-victors
2•prismatic•15m ago•0 comments

Where's the Beef?: The lab-grown-meat revolution that wasn't

https://harpers.org/archive/2026/09/wheres-the-beef-lab-grown-meat-erin-somers/
2•Hooke•15m ago•0 comments

Simple Git Management Tool

https://github.com/sascha10000/gitman
1•sascha10000•17m ago•1 comments

Claude Opus 5.5: Things People Created

https://favtutor.com/claude-opus-5-5-real-examples/
1•wslh•19m ago•0 comments

OpenAI 'agent' hacked Australia's health service

https://www.ft.com/content/56133ef4-377b-4e35-a939-f199ceb64507
3•little_goat_boy•20m ago•0 comments

Steppy Fox – free browser game

https://steppyfox.com/
1•fadilbeg•21m ago•0 comments

The last IMO problem AI could not solve [video]

https://www.youtube.com/watch?v=Nbwv5wHQoj0
1•ColinWright•22m ago•0 comments

It's Not Just True, It's False

https://idiallo.com/byte-size/its-not-just-true-its-false
1•foxfired•23m ago•1 comments

A Redistribution of Code Ownership

https://blog.scotterickson.info/2026-09-23-Redistributed-Ownership
1•serickson•25m ago•0 comments

DHH Is Completely Crazy

https://www.reddit.com/r/rails/comments/1woa8r8/dhh_is_completely_crazy/
6•megraf•25m ago•0 comments

Virtual World/Real World Cycling App – In over My Head

https://sykla.app/hn
1•blakeburnette•25m ago•2 comments

OpenAI agent hacked Medicare, Albanese expressed 'extreme concern' to Sam Altman

https://www.theguardian.com/australia-news/2026/sep/24/anthony-albanese-says-openai-agent-hacked-...
3•NervousDendrite•28m ago•0 comments

The First VHS VCR: JVC HR-3300

https://dfarq.homeip.net/the-first-vhs-vcr-jvc-hr-3300/
1•ibobev•29m ago•0 comments

White House Says Access Is a 'Privilege' in Court Filing Defending Media Ban

https://www.nytimes.com/2026/09/23/business/trump-cnn-politico-ms-now-ban.html
3•whack•29m ago•0 comments

The spy in your living room

https://dfarq.homeip.net/the-spy-in-your-living-room/
1•ibobev•29m ago•1 comments

New England RetroFest and the Maine Vintage Computer Society

https://www.goto10retro.com/p/new-england-retrofest-and-the-maine
2•ibobev•29m ago•0 comments

OpenAI Hacked Medicare Portal, Australia Prime Minister Anthony Albanese Says

https://www.rnz.co.nz/news/world/1551084/openai-hacked-medicare-portal-australia-prime-minister-a...
1•richardc323•30m ago•0 comments

OpenRouter x AssemblyAI: Universal‑3.5 Pro is now available on OpenRouter

https://www.assemblyai.com/blog/aai-on-openrouter
1•iharnoor•31m ago•1 comments

The next Surface Pro 12-inch and Surface Laptop 13-inch

https://blogs.windows.com/devices/2026/09/23/introducing-surface-pro-12-inch-and-surface-laptop-1...
1•kristianpaul•33m ago•0 comments

Bulk Orders Surge at Used Bookstores in Japan; 50 Tons Sent to U.S.

https://news.ntv.co.jp/category/society/e48899c1ab1445f683929740ef2b3aa6
2•ilamont•33m ago•0 comments

Surprise, Meta's latest AI gimmick is just underpaid humans

https://www.avclub.com/meta-muse-ai-human-labor
1•randycupertino•35m ago•0 comments

Cassis: Context Maintenance for Analytics Agents

https://getcassis.com/product/
1•matthieu_bl•36m ago•0 comments
Open in hackernews

VSCode's SSH Agent Is Bananas

https://fly.io/blog/vscode-ssh-wtf/
33•Rapzid•1h ago

Comments

walrus01•25m ago
When I give an agent ssh access to something I want to be able to watch and fully understand what it's doing. I want it to essentially only "type" things into the CLI that I could have typed myself, I can comprehend what it's doing, and am not surprised by the results. Opencode and a smart LLM (qwen 3.8-flash-next, deepseek v4 0731 or smarter) do relatively well with this in my experience.
pixl97•3m ago
And if everyone was like you AI safety wouldn't be that large of concern. The default human behavior seems to be fire and forget which can go off the rails really quick.
walrus01•2m ago
It's not like I've never told an agent to build an ssh tunnel or some sort of more persistent connection between my dev machine running the harness and the remote thing it is talking to as an SSH client... Just that I don't want it going and doing that proactively unless I specifically define the parameters first.
danielklnstein•22m ago
Missing a (2025)

FYI VSCode's SSH Agent is a godsend for remote development - the "disadvantages" that Fly lists are part of its advantages. I've worked in several teams that have made extensive use of the extension, and it's never been an issue. You can restrict SSH access arbitrarily to ensure whatever security or access guardrails you need.

miohtama•11m ago
“A tool with a purpose of editing files on a remote system can edit files on a remote system.”
varispeed•9m ago
Shock and horror!
devonbleak•3m ago
it's worse than that, last i looked into this - there's functionality in the protocol that allows the remote system to modify files and execute code on the local/frontend system. it really is bananas.
Joker_vD•19m ago
> Emacs hosts the spiritual forebearer of remote editing systems, a blob of hyper-useful Elisp called “Tramp”. If you can hook Tramp up to any kind of interactive environment — usually, an SSH session — where it can run Bourne shell commands, it can extend Emacs to that environment.

vs.

> The agent runs over port-forwarded SSH. It establishes a WebSockets connection back to your running VSCode front-end. The underlying protocol on that connection can: Wander around the filesystem; - Edit arbitrary files; Launch its own shell PTY processes; Persist itself.

So... basically the same things that Tramp could do as well?

> In security-world, there’s a name for tools that work this way. I won’t say it out loud, because that’s not fair to VSCode, but let’s just say the name is murid in nature.

Yeah, it's called RAT, and an ur-example of it is SSH itself (especially when allowed to run a shell remotely), so... not sure why are you freaking out.

I mean, I'd probably prefer if VS Code simply ran ed/vim remotely, but both of those editors can invoke shell anyhow so... eh?

MajesticHobo2•17m ago
This part of VSCode's architecture is acceptable to me. The reverse direction, where a compromised remote can do whatever it wants to my local machine, is not.
comandillos•10m ago
This extension and devcontainers is basically the way to go for large dev teams inmho
binlog•5m ago
The agent is supposed to run on a remote dev box. The purpose is to make the remote machine an extension of your local one, to run extensions, containers, test deployments, forward ports and tons more. If you are installing it on production servers and are surprised by its behavior that’s on you.
innocent_name•5m ago
Moreover, it explicitly breaks in VSCodium and no good alternatives exist.
arcanemachiner•1m ago
You say that like it's a bad thing; I narrowly escaped serious use of VSCode thanks to this fact.