frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

One-Click RCE in Asus's Preinstalled Driver Software

https://mrbruh.com/asusdriverhub/
149•MrBruh•4h ago•40 comments

What is it like to be a thermostat? (1996)

https://www.organism.earth/library/document/what-is-it-like-to-be-a-thermostat
19•theletterf•2h ago•24 comments

Fandom Sells Giant Bomb to Independent Creators

https://about.fandom.com/news/fandom-sells-giant-bomb-to-independent-creators
128•minimaxir•9h ago•46 comments

Observations from people watching

https://skincontact.substack.com/p/21-observations-from-people-watching
248•jger15•11h ago•136 comments

Fan Service

https://flak.tedunangst.com/post/fan-service
76•todsacerdoti•5h ago•17 comments

Lianas are taking over the rainforests, and it's visible from space

https://phys.org/news/2025-05-lianas-rainforests-visible-space.html
31•stevenjgarner•3d ago•20 comments

Sierpiński Triangle? In My Bitwise and?

https://lcamtuf.substack.com/p/sierpinski-triangle-in-my-bitwise
152•guiambros•12h ago•40 comments

US vs. Google amicus curiae brief of Y Combinator in support of plaintiffs [pdf]

https://storage.courtlistener.com/recap/gov.uscourts.dcd.223205/gov.uscourts.dcd.223205.1300.1.pdf
368•dave1629•19h ago•734 comments

Show HN: Xenolab – Rasp Pi monitor for my pet carnivourus plants

https://github.com/blackrabbit17/xenolab
96•malux85•12h ago•30 comments

A critical look at MCP

https://raz.sh/blog/2025-05-02_a_critical_look_at_mcp
463•ablekh•19h ago•254 comments

Lazarus Release 4.0

https://forum.lazarus.freepascal.org/index.php?topic=71050.0
87•proxysna•4d ago•33 comments

For $595, you get what nobody else can give you for twice the price (1982) [pdf]

https://s3data.computerhistory.org/brochures/commodore.commodore64.1982.102646264.pdf
182•indigodaddy•15h ago•108 comments

Reverse engineering the 386 processor's prefetch queue circuitry

http://www.righto.com/2025/05/386-prefetch-circuitry-reverse-engineered.html
146•todsacerdoti•17h ago•43 comments

A brief history of the numeric keypad

https://www.doc.cc/articles/a-brief-history-of-the-numeric-keypad
12•ThomPete•2d ago•2 comments

Strain gauge made out of PCB

https://github.com/vapetrov/PCB_strain_gauge
58•dr_coffee•3d ago•16 comments

When Suno covers my song (very useful) – a study with variations

http://rochus-keller.ch/?p=1350
30•Rochus•2d ago•3 comments

Why the Apple II Didn't Support Lowercase Letters (2020)

https://www.vintagecomputing.com/index.php/archives/2833/why-the-apple-ii-didnt-support-lowercase-letters
88•colinbartlett•12h ago•52 comments

NetBSD 10.x Kernel Math_emulation

https://mezzantrop.wordpress.com/2025/02/04/netbsd-10-x-kernel-math_emulation/
30•jaypatelani•7h ago•0 comments

Engineers develop wearable heart attack detection technology

https://medicalxpress.com/news/2025-04-wearable-heart-technology.html
32•PaulHoule•3d ago•10 comments

The State of SSL Stacks

https://www.haproxy.com/blog/state-of-ssl-stacks
78•zdw•4d ago•12 comments

Absolute Zero: Reinforced Self-Play Reasoning with Zero Data

https://arxiv.org/abs/2505.03335
4•leodriesch•2h ago•1 comments

Thinkers and Doers

https://www.strangeloopcanon.com/p/on-thinkers-and-doers
9•andrewrn•3h ago•4 comments

The Ecstatic Swoon

https://aeon.co/essays/what-stendhal-says-about-the-purpose-and-promise-of-art
4•prismatic•2d ago•0 comments

Show HN: I’m 16 years old and working on my first startup, a study app

https://www.notiv.app/
61•WilliamCranna•3h ago•43 comments

Show HN: LoopMix128 – Fast C PRNG (.46ns), 2^128 Period, BigCrush/PractRand Pass

https://github.com/danielcota/LoopMix128
55•the_othernet•12h ago•30 comments

Arduino is at work to make bio-based PCBs

https://blog.arduino.cc/2025/04/22/arduino-is-at-work-to-make-bio-based-pcbs/
59•PaulHoule•2d ago•11 comments

Embracer Games Archive is preserving 75000 video games and needs contributions

https://embracergamesarchive.com/
169•draugadrotten•22h ago•80 comments

Adaptive Hashing

https://quotenil.com/adaptive-hashing.html
36•varjag•2d ago•6 comments

Comparison of C/POSIX standard library implementations for Linux

https://www.etalabs.net/compare_libcs.html
111•smartmic•18h ago•39 comments

How much information is in DNA?

https://dynomight.substack.com/p/dna
70•crescit_eundo•2d ago•58 comments
Open in hackernews

Pakistani firm shipped fentanyl analogs, scams to us

https://krebsonsecurity.com/2025/05/pakistani-firm-shipped-fentanyl-analogs-scams-to-us/
105•todsacerdoti•3d ago

Comments

jfengel•3d ago
Why bother selling actual fentanyl when you've got a thriving business selling fake homework help? Seems like a lot less overhead to manage.
SchemaLoad•3d ago
Surely LLMs put the homework help industry out of business.
michaelbuckbee•3d ago
Not joking, there's actually a lawsuit from one of the homework aid sites against Google as the AI Overviews are providing the answers that were previously been teased and upsold on their site.

Left unsaid in the filing was that it seemed like _most_ of the pages on the homework site were in fact scanned from copy written textbooks and then solved and they were trying to SEO rank for _exactly_ the question in the homework.

awesome_dude•3d ago
Best "they're stealing our homework answers" lawsuit ever :)
whaleofatw2022•3d ago
Probably something about margin vs volume. One complicated transaction that could net a huge profit vs lots of smaller transactions that result in less overall profit despite same cost.

He'll ive seen legit businesses get burned on the same mindset. More than once. It's just in the legal transaction space, the risk shifts more towards 'delivering a crappy product' than, say, 'your employees get arrested' when you are forced to hit a deliverable.

golergka•3d ago
Because for some it’s less important to earn money and more important to destabilise your geopolitical rival.
zoklet-enjoyer•3d ago
People have been down voting me for years whenever I say this. It used to be so easy to buy fentanyl, cathinones, ketamine analogs, etc from China. Maybe it still is, I don't know
ajkjk•3d ago
More... money...
GuinansEyebrows•3d ago
like Wu-Tang Financial said, you gotta diversify your bonds.
SanjayMehta•3d ago
The two go together. Money laundering.

The high margin profits from the fentanyl are laundered as proceeds from the homework business.

walterbell•3d ago
Turtles all the way down.

> the company’s most lucrative scam business: Hundreds of sites peddling fake college degrees and diplomas. People who purchased fake certifications were subsequently blackmailed by Axact employees posing as government officials.. “Axact took money from at least 215,000 people in 197 countries — one-third of them from the United States.. earning the company at least $89 million”.. a Pakistan district judge acquitted 24 Axact officials at trial due to ‘not enough evidence’ and then later admitted he had accepted a bribe (of $35,209) from Axact

adynaton•3d ago
>Axact That name sounds familiar Darknet Diaries: 142: Axact

Episode webpage: https://darknetdiaries.com/episode/142

Media file: https://www.podtrac.com/pts/redirect.mp3/dovetail.prxu.org/7...

SOLAR_FIELDS•3d ago
> FAZAL: Yeah, I thought the same; kind of creepy. But it’s far worse than that. I was talking with someone from another team and they said, go to facebook.com and try to log in with this e-mail and password. We were able to log in to these people’s Facebook accounts.

This is why MFA needs to be a requirement everywhere

dzhiurgis•3d ago
Kinda ironic that social media sites do it better than your bank. My airline even has passkeys!
SOLAR_FIELDS•3d ago
As a minimal social media user, do any social media sites actually require MFA these days? You can have the best security features in the world but if they are opt in and even a slight degradation of UX the vast majority of people will not adopt them. Security often needs to be beaten over the head of the populace to be successful. Let’s Encrypt and HTTPS in the browser is a good example of this.
MrRadicle•1d ago
https://archive.ph/Ej90N

How about some Fake Lawyers with Fake Degrees they got from Axact, shove some bribe money in there. Its a global blackmail and bribery operation and domain Registrars like GoDaddy NameCheap Name.com Dynadot Tucows etc are allowing them to create millions of FAKE WEBSITES to scam people and that money goes right back into the west via offshore accounts, right into your real estate, treasonous bastards that accept "Sharia Investors" — It goes through Dubai, the Carribean, then right into Private LLCs and anonymous Private Equity Shareholders.

Islam is a master of bribery and sniffing out TRAITORS.

profsummergig•3d ago
One universal internet for the entire world was a mistake.

We need borders on the internet.

netsharc•3d ago
In America, billionaires scam you!

With apologies to Yakov Smirnoff...

SOLAR_FIELDS•3d ago
Wow, quite cunning. Charge people to do something fraudulent, then double dip by charging them to not expose the fraud. It’s another variant of the classic scam of getting someone to do something illegal and then blackmailing them for it, but this one is extra creative because it charges people to do the illegal original thing!
bryan0•3d ago
This part was also amusing:

> KrebsOnSecurity reviewed the Google Ad Transparency links for nearly 500 different websites tied to this network of ghostwriting, logo, app and web development businesses. Those website names were then fed into spyfu.com, a competitive intelligence company that tracks the reach and performance of advertising keywords. Spyfu estimates that between April 2023 and April 2025, those websites spent more than $10 million on Google ads.

morkalork•3d ago
The one selling pick axes always wins
Havoc•3d ago
[flagged]
golergka•3d ago
That’s how they may be financing the terror.
LightBug1•3d ago
That's a good point. A little like the US and Israel's weaponry sales funding genocide.
throwaway48476•3d ago
Cross border/jurisdictional payments need to be insured and reversible. This will stop the scams.
foxglacier•3d ago
Reversible by who? Not the payer or it'll create fraud in the other direction similar to credit card chargeback fraud or Ebay's "I didn't receive my item, give me my money back" fraud.
throwaway48476•3d ago
By the insurer. Credit card issuers are already privatized legal dispute courts.
TZubiri•3d ago
I'm pretty sure institutional wires are reversible. Courts can also freeze accounts, the only weakpoint is absconding and quit scamming, but you lose the reputation of a whole bank in that.
throwaway48476•3d ago
Courts can freeze accounts within their jurisdiction. If a US scammer steals money the courts can reverse it. If an asian scammer does it there's no recourse, that's why it must be insured.
spwa4•2d ago
... and the Pakistani court sided with the scammers, after the judge was paid about $40000. So relying on the justice system doesn't help anyone here (and that's assuming you're willing to pay enough to run a court case on the other side of the world in the first place).
TZubiri•2d ago
of course. But the court can freeze:

A- All accounts of the foreign company within their jurisdiction. i.e: foreign company can no longer do business with the state B- Freeze accounts of foreign bank, or order them to cover the remedy, C- Embargo country.

throwaway48476•2d ago
Insuring individual payments is a lot easier than embargoing countries over small sums of money.
TZubiri•1d ago
It's not really about small sums of money is it? It's a drug case and at that point it's about contempt of the court.
TZubiri•3d ago
https://youtu.be/_uMEE7eaaUA?si=nar1NcXX1YHb4X5G

An interesting time to publish this, but no doubt Krebs was working on it before the India attack.

When I saw Krebs getting into international warfare politics, I thought he was out of his element, but doubtless he is pulling some relevant strings from the cyber aspect.

I'd be interested in seeing if he can get in on something close to the actual war like the NSO whatsapp exploits. So far Krebs has brought a lot of attention to scammers. But at any point he might make the jump and link cyber to actual attacks on life.