frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Show HN: Last Internet Connection

https://reparadoxy.itch.io/last-internet-connection
1•PolishDevelop22•41s ago•0 comments

PlanetScale TIN: fast text search in Postgres

https://planetscale.com/blog/tin-v106
1•thomask1995•1m ago•0 comments

Show HN: Seahaven – Open-source framework for building RL environments

https://github.com/Kiln-AI/Seahaven
1•scosman•1m ago•0 comments

The Science and Engineering of Machine Consciousness

https://keyurramoliya.com/posts/Machine-Consciousness/
1•KeyurRamoliya•2m ago•0 comments

Show HN: Jevman – AI decision models play Pac-Man

https://opper.ai/jevman-benchmark/
1•felix089•2m ago•0 comments

Don't 'meet them where they are' and leave them there

https://www.joannejacobs.com/post/don-t-meet-them-where-they-are-and-leave-them-there
2•speckx•4m ago•0 comments

The Woman Who Wants You to Ditch Your Phone

https://www.nytimes.com/2026/10/07/style/august-lamm-influencer-smartphone-book.html
1•bonefishgrill•4m ago•0 comments

Positive Text Origin Verification

2•Miguel_FierroM•6m ago•0 comments

The Latest Nuisance on Flights Is a Zoom Call at 30k Feet

https://www.wsj.com/lifestyle/travel/the-latest-nuisance-on-flights-is-a-zoom-call-at-30-000-feet...
2•apparent•8m ago•0 comments

Signals and Systems Principles for Data Scientists

https://m.regrok.info/signals-for-data-scientists.html
1•vipin211•9m ago•0 comments

Natura unveils $99 Interface smart ring for AI agents and apps

https://techcrunch.com/2026/10/08/naturas-smart-ring-puts-ai-agents-on-your-finger/
4•utiiiD•9m ago•0 comments

X100 better browser for Instinct, for free

https://docs.anchorbrowser.io/for-agents
1•idan-raman•10m ago•1 comments

Margeux: A Lisp language inspired by Python and Nim, running natively in browser

https://margeux.duckdns.org
3•vegnus•12m ago•0 comments

My friend built this, and it helped me get past the first hiring filter

https://creatucv.ai
2•oriolgfarssac•12m ago•0 comments

Tethics

https://tethics.com
2•structuredPizza•13m ago•0 comments

Cloudhiker

https://cloudhiker.net
1•robtherobber•13m ago•0 comments

StepFun opens Step5 Preview free for a week through OpenCode,Cline and Kilo Code

https://twitter.com/StepFun_ai/status/2108182763002278158
4•WavyPeng•14m ago•0 comments

Opus 5.5 built the entire Middle-earth from LOTR with Three.js

https://www.youtube.com/watch?v=kRuPq4GjhGc
2•earthwalker17•15m ago•0 comments

TikTok Video Reels for PC

https://chromewebstore.google.com/detail/empty-title/peejbgcjjdmgladmjmhccglgefmlckjm
1•DevFunny•15m ago•0 comments

Leak Shows Cops Can Break into Locked iPhones

https://www.404media.co/podcast-leak-show-cops-can-break-into-locked-iphones/
2•mikelgan•16m ago•0 comments

Step 5 Preview, a 1M-context MoE from StepFun, shows up on OpenRouter

https://openrouter.ai/stepfun/step-5-preview
3•AnneWodell•16m ago•0 comments

You're Not an Extension of Anyone's Self

https://prgrmmr.org/posts/not-an-extension-of-anyones-self/
2•speckx•18m ago•0 comments

Show HN: Nobel Prizes explained six ways, with a public fix log

https://nobelprize.swapniltamse.com/
3•swapnil-tamse•21m ago•0 comments

Microsoft Quicksand

https://github.com/microsoft/quicksand
3•tosh•25m ago•0 comments

AI Institute for Human-AI Cooperation

https://haicinstitute.org/
1•jawns•25m ago•0 comments

How Does Yamamoto Do What He Does? Toyota-Like Mechanics

https://robbinsathletics.com/yamamoto-pitching-mechanics/
2•robbinsathletic•26m ago•0 comments

Intelligence Explosion

5•silexia•28m ago•3 comments

Secret protection must scale with software: <2ms classifier in the push path

https://github.blog/ai-and-ml/github-copilot/secret-protection-must-scale-with-software/
3•havens•28m ago•0 comments

Thinking Will Become a Hobby

https://www.spinellis.gr/blog/20261008/?hn261008
3•DSpinellis•28m ago•0 comments

Strands Box: another open source sandbox

https://github.com/strands-agents/box/
4•shenli3514•29m ago•0 comments
Open in hackernews

New gTLD Application for .lan

https://newgtldprogram-aps.icann.org/applications/CD2694T-T26351/summary
50•mzajc•45m ago

Comments

mzajc•45m ago
Posting because OpenWRT, possibly others as well, assign .lan names to devices on the LAN by default. People who make use of this might want to follow the application, and, if it goes through, either change the name or make sure queries can't get incorrectly get sent to upstream resolvers.

Regarding that last point, I've had issues with dnsmasq in the past where it was remotely resolving domains even when they were configured to resolve locally. For .lan domains, this could be disastrous because I often send plaintext traffic to them. I did submit a fix/workaround[0], but it's still something to look out for. If anyone knows more about this issue or other ways queries could leak, please share!

[0]: https://github.com/openwrt/openwrt/pull/18610

gclawes•30m ago
RFC 8375: Special-Use Domain 'home.arpa.' is supposed to be used for this.

https://www.rfc-editor.org/info/rfc8375/

c0l0•26m ago
That's nice and all, but OpenWrt (and its use of .lan) predates this particular RFC by a rough 14 years.

I hope the gTLD application gets struck down.

pwdisswordfishq•18m ago
God forbid OpenWrt ever receives an update or something.
c0l0•11m ago
If you actually think it's a trivial affair to change a well-established default with more than 20 years of history that is, on top of all other difficulties that such a change typically encompasses, used to identify and name things, I hereby beg you to never design or provide any kind of infrastructure.
stop50•24m ago
Internal. is also an valid option. I moved everything there about a year ago
pqb•20m ago
It would be awesome if Ubiquity will actually follow this RFC too. The Amplifi product line from Ubiquity have `.lan` support but no `home.arpa`.

[0]: https://amplifi.com/

deno•17m ago
But what if my LAN is in the garage?
esskay•16m ago
and most people dont use it because its an incredibly poor name.
Palomides•4m ago
RFCs were originally formalization of what was being used in practice, home.arpa was chosen apparently for reasons of beauracratic convenience rather than what would best serve existing users who all would prefer .lan and continue to do so since that was published in 2018
montecarl•20m ago
This reminds me of when I used to do IT work for small businesses in college. One printing company I worked for, had about 100 computers on their network, and was using public ipv4 addresses, that they did not own, on their internal network. I forget what range they were using now. But imagine seeing a DHCP server handing out addresses like 142.250.110.1/16 on a LAN and the public ip being something totally different.

It was funny, because when I brought it up to them, it was hard to articulate why it was a problem and I couldn't convince them it was worth the effort of trying to fix. They never ran into a specific issue due to this while I was there but it felt so gross.

irusensei•8m ago
When I was working with Linux based kiosks and PoS systems I had a good share of issues with the Microsoft MVP signature use of .local on their forests. Back then their training material recommended .local for Active Directory services.
deno•7m ago
There's a good reason to do this if you can't be certain what reserved subnets are used in a given network and you absolutely need a static ip for some reason.

At least that's the conclusion I've arrived at at some point, but I don't remember what was the exact use case anymore.

However there are still several global IPv4 ranges that are not local reserved ranges but are effectively reserved and you could use them if you really want to without any issues.

masfuerte•6m ago
The problem is that they wouldn't be able to talk to any internet service that legitimately used those addresses. Whether that was likely to be a problem very much depends on whose addresses they were.
vekntksijdhric•36m ago
This is a security issue for many devices. What could possibly go wrong overriding a tld used for internal networking....
seanw444•34m ago
This was my first thought as well. Yikes.
jstarks•33m ago
What could go wrong using tlds that were not explicitly reserved for internal use?
alerighi•27m ago
Beside the fact that was standard or not it made sense to use .lan domain for local devices, and a lot of router sold were configured with that domain for resolving local network hosts.

To me is a very bad idea to implement this proposal, it should instead be standardized and reserved for internal usage as a fix. There were even RFC like https://www.rfc-editor.org/info/rfc6762/#appendix-G that suggested their usage for local devices in a network.

What is the point of selling the .lan domain, except for making money at the expense of a security risk for millions of networks that already use that domain for internal hosts?

BTW to me there was never any sense to add new TLD domain despite country code. They decided to render internet less secure, by giving scammers infinite TLD to register they scam domain like "apple.lan", with the sole purpose of making for them easy money.

davidcollantes•30m ago
Indeed. It akin to an application for a .local TLD.
sybercecurity•27m ago
Full collection of proposed new gTLDs: https://newgtldprogram-aps.icann.org/statistics

Also see a .bldg application, which also might conflict with some legacy naming schemes.

alwa•26m ago
This seems like a good time to educate myself about the application (and objection) process.

The bureaucracy seems precision-engineered to stultify, but apparently the public have 104 days after “String Confirmation Day” (17th Nov; capitalization theirs) to lodge objections, assuming the “GAC” doesn’t beat them to it…

https://newgtldprogram.icann.org/en/application-rounds/round...

…of course there’s a “filing fee,” priced in “hours of a panel of lawyers’ time,” to lodge such an objection…

https://newgtldprogram-2026-agb.icann.org/en/8-module-4-comm...

…welp, hope somebody more organized (and better-funded) than I can organize an objection. Much as I feel like I’m giving up my right to gripe by assuming somebody else will come along to do the weeding.

unleaded•24m ago
..Why? Just to annoy people?
vetrom•8m ago
The applicant appears to be an agglomeration of LLCs and legal diversions to hide responsible parties. It does lead me to assumptions about their motivations, whomever they may be.
hdgvhicv•5m ago
To sell to scammers for lots of money
p1mrx•22m ago
When ICANN reserved .internal a couple years ago, I was saying they should just flip and truncate it to .lan(retni) so everyone's happy.
Faelian2•21m ago
It's a shame that ICANN did get so greedy and put everyone at risk.

Having internal domain names owned by some guy on the internet has already compromised multiple corporate networks. See the talk from this guy:

https://www.romhack.io/wp-content/uploads/2025/10/Internal-D...

john_strinlai•17m ago
im not super keen on all of these gTLDs, but anyone choosing to use .lan should have been aware of the risks of using an unofficial/unreserved domain.

at the very least, the .dev stuff should have had people second-guessing their usage of unreserved domains.

gchamonlive•15m ago
Pihole here will still serve .lan internal domains. Anyone that registers .lan globally is the one of reserving a culturally busy domain that was unreserved before.
delecti•10m ago
Eh, maybe someone spinning up a brand new environment using it in 2026 should have known better. But you don't have to go that far back to reach a point where the current list of gTLDs would make .lan feel safe.
john_strinlai•7m ago
>But you don't have to go that far back to reach a point where the current list of gTLDs would make .lan feel safe.

throughout most of my career, there was no unreserved domain that felt safe. but especially after .dev.

procone•21m ago
gTLDs were a mistake. I say that as an owner of several domains with gTLDs.

There's almost no value.

Large businesses almost never use them. The potential for scams / phish / etc are now limitless.

deno•20m ago
Why would you even want something like “lan” as a global TLD? Does it mean something else than the obvious?

Fortunately there’s no need to speculate as the application explains this clearly:

  AGB Q118: What is the meaning/definition of the applied-for gTLD string?
  Answer: Lan commonly refers to a broadly recognized term used across a wide range of contexts.
Group_B•17m ago
so so dumb. Pure greed. This is going to cause so many issues
dijit•13m ago
I'm still seething about `.dev`.

For those not in the know, Google lobbied ICANN to get the name and in their application they stated (repeatedly) that the intent was to buy it so that it could be reserved; as .dev was already used by developers and if someone bought it for commercial purposes it would harm the developer community.[0]

.... they then proceeded to start selling them.

Leading to all kinds of issues, the exact issues that they raised...

https://github.com/basecamp/pow/issues/397

https://github.com/laravel/valet/issues/433

https://danielbachhuber.com/switch-laravel-valet-from-dev-to...

https://community.localwp.com/t/dev-domain-doesnt-work/4277

https://forums.theregister.com/forum/all/2017/11/29/google_d...

[0]: https://gtldresult.icann.org/applicationstatus/applicationde...

bombcar•11m ago
Can I get a group of Ians and register .Ian?
0x0•10m ago
I've been using a single letter "fake" tld for my internal LAN DNS zone. Looks like ICANN requires 3+ letters in tld applications, so hopefully should be safe for quite a while.
montjoy•8m ago
No.
ChrisArchitect•8m ago
Related:

ICANN Reveals 2026 Round Applications for New Generic Top-Level Domains

https://news.ycombinator.com/item?id=49997301

saghm•6m ago
Debian should apply for this so they can take advantage of case insensitivity and sans-serif fonts so to let people go to DEB.lAN to view their website
moecables•2m ago
I'm out of the loop on this, can someone explain who this is and why this is bad?
john_strinlai•28m ago
>It akin to an application for a .local TLD.

it is not, as .local is designated as a special-use domain name and .lan is not.

jeroenhd•29m ago
You would hope someone would finally learn after .dev and .local started getting used.
irusensei•21m ago
RFC 6762 reserves the .local. TLD for Multicast DNS. There are no reservations for .lan. so something like home.arpa. should be used instead.
procone•14m ago
router.home vs router.home.arpa

.home.arpa is so clunky. Why do I have to put the acronym of a US military project in my domain to access resources on my own local network?

Yes, I know that organization was central to the development of the l Internet, but it's not relevant as a domain 40 years later.

john_strinlai•9m ago
router.internal avoids the military arconym
irusensei•5m ago
You can buy a cheap domain to make sure no one else uses it and just roll it on your lan. Throw some DNS ACME challenges and you have valid certificates too.
stackskipton•13m ago
As former AD person and dealing with that several companies, the recommendation for internal network DNS has long been subdomain.company.com that is not on public internet.

Even today when setting up greenfield networks, I generally use internal.company.com. It also lets you get public trusted SSL certificates so you don't have to deal with internal PKI.