frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

Open in hackernews

SystemD Service Hardening

https://roguesecurity.dev/blog/systemd-hardening
47•todsacerdoti•4h ago

Comments

ibizaman•2h ago
Nice tip on debugging syscall issues!
eliaspro•2h ago
Quoting https://brand.systemd.io/#:~:text=Yes,%20it%20is%20written%2...

"Yes, it is written systemd, not system D or System D, or even SystemD. And it isn't system d either. [...]"

jauntywundrkind•1h ago
Much better article with very real tips about what options to try than yesterday's (weirdly flagged/dead?) post on the topic. Which while I really enjoyed lacked substance; I was in the comments trying to provide a more useful basis with some real examples, but this is an exemplary list of awesome ways systemd can easily quickly readily provide aassive boost to isolation & security. Great write up!

Yesterday's, just in case: https://us.jlcarveth.dev/post/hardening-systemd.md https://news.ycombinator.com/item?id=44928504

Faaak•1h ago
And that's something that's impossible to do with old init scripts, that are all unique in their way and not uniform at all.
carlhjerpe•1h ago
You can ofcourse achieve all these things in your init scripts which are unique in their way and not uniform at all, just to give credit where credit is due. But systemd makes it practical to use our beloved kernel and it's features in an uniform and standard way... :)

I started my Linux journey so late I can't imagine living without systemd, the few systems I've encountered without systemd are such a major PITA to use.

I recently discovered "unshare" which I could use to remount entire /nix RW for some hardlinking shenanigans without affecting other processes.

systemd is so good, warty UX when interacting with it but the alternative is honestly Windows in my case.

Web apps in a single, portable, self-updating, vanilla HTML file

https://hyperclay.com/
172•pil0u•3h ago•49 comments

A gigantic jet caught on camera: A spritacular moment for NASA astronaut

https://science.nasa.gov/science-research/heliophysics/a-gigantic-jet-caught-on-camera-a-spritacular-moment-for-nasa-astronaut-nicole-ayers/
169•acossta•3d ago•39 comments

Unification (2018)

https://eli.thegreenplace.net/2018/unification/
28•asplake•2h ago•2 comments

A short statistical reasoning test

https://emiruz.com/post/2025-08-17-statistical-reasoning/
22•usgroup•2h ago•7 comments

Claudia – Desktop companion for Claude code

https://claudiacode.com/
417•zerealshadowban•16h ago•195 comments

Clojure Async Flow Guide

https://clojure.github.io/core.async/flow-guide.html
142•simonpure•8h ago•48 comments

Llama-Scan: Convert PDFs to Text W Local LLMs

https://github.com/ngafar/llama-scan
158•nawazgafar•12h ago•64 comments

The Lives and Loves of James Baldwin

https://www.newyorker.com/magazine/2025/08/18/baldwin-a-love-story-nicholas-boggs-book-review
13•Caiero•10h ago•2 comments

The Enterprise Experience

https://churchofturing.github.io/the-enterprise-experience.html
373•Improvement•16h ago•108 comments

Google admits anti-competitive conduct involving Google Search in Australia

https://www.accc.gov.au/media-release/google-admits-anti-competitive-conduct-involving-google-search-in-australia
194•Improvement•6h ago•120 comments

Viking-Age hoard reveals trade between England and the Islamic World

https://www.heritagedaily.com/2025/08/viking-age-hoard-reveals-trade-between-england-and-the-islamic-world/155786
37•bookofjoe•2d ago•9 comments

Nvidia Tilus: A Tile-Level GPU Kernel Programming Language

https://github.com/NVIDIA/tilus
23•ashvardanian•3d ago•3 comments

Show HN: Doxx – Terminal .docx viewer inspired by Glow

https://github.com/bgreenwell/doxx
190•w108bmg•13h ago•49 comments

Leeches and the Legitimizing of Folk-Medicine

https://press.asimov.com/articles/leeches-and-the-legitimizing-of-folk-medicine
22•mailyk•3d ago•23 comments

Show HN: OverType – A Markdown WYSIWYG editor that's just a textarea

332•panphora•17h ago•86 comments

Mangle – a language for deductive database programming

https://github.com/google/mangle
56•simonpure•8h ago•8 comments

Modifying other people's software

https://natkr.com/2025-08-14-modifying-other-peoples-software/
56•todsacerdoti•4d ago•28 comments

Derivatives, Gradients, Jacobians and Hessians

https://blog.demofox.org/2025/08/16/derivatives-gradients-jacobians-and-hessians-oh-my/
251•ibobev•19h ago•58 comments

Show HN: NextDNS Adds "Bypass Age Verification"

408•nextdns•19h ago•132 comments

SystemD Service Hardening

https://roguesecurity.dev/blog/systemd-hardening
47•todsacerdoti•4h ago•5 comments

Scientists discover surprising language 'shortcuts' in birdsong – like humans

https://www.manchester.ac.uk/about/news/scientists-discover-surprising-language-shortcuts-in-birdsong--just-like-humans/
5•gnufx•3d ago•0 comments

Non-Uniform Memory Access (NUMA) is reshaping microservice placement

https://codemia.io/blog/path/NUMA-Is-the-New-Network-How-Per-Socket-Memory-Models-Are-Reshaping-Microservice-Placement
62•signa11•8h ago•21 comments

Show HN: ASCII Tree Editor

https://asciitree.reorx.com/
22•novoreorx•6h ago•7 comments

ArchiveTeam has finished archiving all goo.gl short links

https://tracker.archiveteam.org/goo-gl/
366•pentagrama•16h ago•89 comments

I Prefer RST to Markdown (2024)

https://buttondown.com/hillelwayne/archive/why-i-prefer-rst-to-markdown/
83•shlomo_z•13h ago•69 comments

BBC Micro, ancestor to ARM

https://retrogamecoders.com/bbc-micro-the-ancestor-to-a-device-you-are-guaranteed-to-own/
120•ingve•20h ago•103 comments

A Visual Exploration of Gaussian Processes (2019)

https://distill.pub/2019/visual-exploration-gaussian-processes/
70•vinhnx•2d ago•1 comments

Gazan woman flown to Italy dies of malnutrition

https://www.bbc.com/news/articles/ce87n455dvxo
4•mhga•28m ago•2 comments

Why Nim?

https://undefined.pyfy.ch/why-nim
161•TheWiggles•20h ago•174 comments

Fun with Finite State Transducers

https://blog.yossarian.net/2025/08/14/Fun-with-finite-state-transducers
35•woodruffw•3d ago•3 comments