frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Cloudflare acquires Deno

https://deno.com/blog/cloudflare
681•ilreb•4h ago•367 comments

Our $445M Series D

https://oxide.computer/blog/our-445m-series-d
370•ahlCVA•4h ago•150 comments

Let your AI agents paint big arrows, boxes and text on your screen

https://github.com/franzenzenhofer/big-arrow-on-the-screen
296•franze•6h ago•122 comments

I'm in a Meeting

https://iminafleeting.com/
452•splintersio•8h ago•162 comments

Nobel Peace Prize for 2026 to Navanethem Pillay

https://www.nobelprize.org/prizes/peace/2026/press-release/
325•Anon84•7h ago•164 comments

Germany turning abandoned coal mines into 23 lakes, becoming artificial wetland

https://timesofindia.indiatimes.com/world/europe/germany-is-turning-abandoned-coal-mines-into-23-...
107•ohjeez•2h ago•49 comments

Python 3.15.0

https://www.python.org/downloads/release/python-3150/
206•ngoldbaum•3h ago•39 comments

Why isn't the industry freaking out about DeepSeek 4.1 Flash?

https://www.dgt.is/blog/2026-10-07-deepseek-freek-out/
985•jonotime•1d ago•892 comments

Whistle: Speech to Text in 16.9 MB

https://cactuscompute.com/blog/whistle
873•gmays•1d ago•172 comments

Man discovers his parents' coffee machine used 1TB of data in 10 days

https://www.dexerto.com/entertainment/man-discovers-his-parents-coffee-machine-used-1tb-of-data-i...
875•ck2•2d ago•530 comments

Tomek Korbak: OpenAI's head of safety told they no longer trust me

https://twitter.com/tomekkorbak/status/2108266859397283953
32•doener•46m ago•9 comments

Once: Cache CLI Commands

https://github.com/alex0ptr/once
66•baquero•7h ago•29 comments

I hired an illustrator to draw my house. Now it's my Home Assistant dashboard

https://antonfrolov.substack.com/p/i-hired-an-illustrator-to-draw-my
836•soheilpro•2d ago•182 comments

MXC - a sandboxed code execution system

https://github.com/microsoft/mxc
133•nreece•11h ago•64 comments

Yes, and

https://htmx.org/essays/yes-and/
650•Michelangelo11•1d ago•255 comments

Keyboard differences between Windows and Macs

https://unsung.aresluna.org/deeper-dive-keyboard-differences-between-windows-and-macs/
262•sohkamyung•14h ago•212 comments

Training Text-to-Image Models Without a VAE

https://www.linum.ai/field-notes/pyramid-jit
3•schopra909•2d ago•6 comments

Theranos.world

https://www.theranos.world/
521•kbyatnal•23h ago•188 comments

OpenAI fires three safety researchers for "mishandling research information"

https://techcrunch.com/2026/10/08/fired-openai-safety-researchers-dispute-misconduct-claims-warn-...
210•trakkstar•7h ago•109 comments

Programming Isn't Special

https://blog.glyph.im/2026/10/programming-isnt-special.html
81•ingve•9h ago•76 comments

Reactions to 100 Solutions

https://proofsandprompts.com/2026/10/08/100-reactions-to-100-solutions/
27•jacobedawson•5h ago•14 comments

Study: Exercise increases cancer survival rates

https://www.nejm.org/doi/10.1056/NEJMoa2502760
66•RickJWagner•4h ago•36 comments

Ask HN: What do you run on a $5 VPS that's worth keeping online 24/7?

351•mariocesar•2d ago•548 comments

Iranian campaign planted fake articles in real U.S. publications using ChatGPT

https://www.washingtonpost.com/technology/2026/10/09/chatgpt-users-iran-planted-ai-generated-arti...
146•cainxinth•5h ago•130 comments

The Hetzner Cloud network stack – history and technical overview

https://www.hetzner.com/blog/the-hetzner-cloud-network-stack-history-and-technical-overview/
75•cnkk•5h ago•22 comments

The value of not getting to the point (2015)

https://ken.arneson.name/2015/11/the-value-of-not-getting-to-the-point/
211•NaOH•22h ago•73 comments

OpenAI, the Partition Principle, and Mathematics

https://karagila.org/2026/openai-pp/
178•md224•18h ago•267 comments

Imposing Sanctions on the International Criminal Court

https://www.state.gov/releases/office-of-the-spokesman/2026/10/imposing-sanctions-on-the-internat...
144•TechTechTech•2h ago•155 comments

ETH-68: Ethernet Audio Interface for Linux

https://naturalsystems.io/eth68
205•chabad360•2d ago•131 comments

City Regrets New Religious Liberty Law Allowing Prayer at City Council Meeting

https://www.404media.co/it-is-done-hail-satan-city-immediately-regrets-new-religious-liberty-law-...
12•Refreeze5224•1h ago•3 comments
Open in hackernews

Building my npx business card

https://ashley.dev/posts/turning-feedback-into-features/
8•edent•1y ago

Comments

steele•1y ago
Ooh, free real estate, let's colonize and gentrify package management
aabhay•1y ago
Lmao, gentrify cracked me up
neilv•1y ago
Do these npx business cards run arbitrary code on your computer?
cypherpunks01•1y ago
npx

Run a command from a local or remote npm package

Description

This command allows you to run an arbitrary command from an npm package (either one installed locally, or fetched remotely), in a similar context as running it via npm run.

neilv•1y ago
Yes, then is a "command from an npm package" arbitrary code?

And what is this "similar context as running it via npm run"?

Would it be better to answer the question directly?

joshka•1y ago
Yeah, this seems like a very smart but inherently flawed idea.
cypherpunks01•1y ago
Yes I agree! OSS package management ecosystems are a great idea, but allowing submissions without any review or vetting is just asking for supply chain attacks.
Xss3•1y ago
May as well just release an executable tbh.
theamk•1y ago
Reminds me of JAPH [0] - a tiny Perl program that was used in email/newsgroup signature to give it personal touch.

[0] https://www.perlmonks.org/?node_id=412464

watusername•1y ago
Terminal business cards are a nice idea, but RCE business cards are just asking for trouble. Instead of npx, what happened to good'ol curl? Something like

$ curl ashley.dev

Some decades ago, we had finger (https://en.wikipedia.org/wiki/Finger_%28protocol%29) which is designed for this very use case. Sadly it's no longer installed by default with most distros:

$ finger @ashley.dev

queezey•1y ago
This would be a great advertisement for security consulting.

"I was just able to run arbitrary code on your computer. Here is a sample of your recent browser history. Let me tell you help you mitigate your security vulnerabilities."