frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Start all of your commands with a comma (2009)

https://rhodesmill.org/brandon/2009/commands-with-comma/
254•theblazehen•2d ago•85 comments

Hoot: Scheme on WebAssembly

https://www.spritely.institute/hoot/
26•AlexeyBrin•1h ago•2 comments

OpenCiv3: Open-source, cross-platform reimagining of Civilization III

https://openciv3.org/
706•klaussilveira•15h ago•206 comments

The Waymo World Model

https://waymo.com/blog/2026/02/the-waymo-world-model-a-new-frontier-for-autonomous-driving-simula...
969•xnx•21h ago•558 comments

Vocal Guide – belt sing without killing yourself

https://jesperordrup.github.io/vocal-guide/
68•jesperordrup•6h ago•31 comments

Reinforcement Learning from Human Feedback

https://arxiv.org/abs/2504.12501
7•onurkanbkrc•46m ago•0 comments

Making geo joins faster with H3 indexes

https://floedb.ai/blog/how-we-made-geo-joins-400-faster-with-h3-indexes
135•matheusalmeida•2d ago•35 comments

Where did all the starships go?

https://www.datawrapper.de/blog/science-fiction-decline
45•speckx•4d ago•35 comments

Unseen Footage of Atari Battlezone Arcade Cabinet Production

https://arcadeblogger.com/2026/02/02/unseen-footage-of-atari-battlezone-cabinet-production/
68•videotopia•4d ago•7 comments

Jeffrey Snover: "Welcome to the Room"

https://www.jsnover.com/blog/2026/02/01/welcome-to-the-room/
39•kaonwarb•3d ago•30 comments

ga68, the GNU Algol 68 Compiler – FOSDEM 2026 [video]

https://fosdem.org/2026/schedule/event/PEXRTN-ga68-intro/
13•matt_d•3d ago•2 comments

What Is Ruliology?

https://writings.stephenwolfram.com/2026/01/what-is-ruliology/
45•helloplanets•4d ago•46 comments

Show HN: Look Ma, No Linux: Shell, App Installer, Vi, Cc on ESP32-S3 / BreezyBox

https://github.com/valdanylchuk/breezydemo
239•isitcontent•16h ago•26 comments

Monty: A minimal, secure Python interpreter written in Rust for use by AI

https://github.com/pydantic/monty
237•dmpetrov•16h ago•126 comments

Show HN: I spent 4 years building a UI design tool with only the features I use

https://vecti.com
340•vecti•18h ago•147 comments

Hackers (1995) Animated Experience

https://hackers-1995.vercel.app/
506•todsacerdoti•23h ago•247 comments

Sheldon Brown's Bicycle Technical Info

https://www.sheldonbrown.com/
389•ostacke•21h ago•98 comments

Show HN: If you lose your memory, how to regain access to your computer?

https://eljojo.github.io/rememory/
303•eljojo•18h ago•188 comments

Microsoft open-sources LiteBox, a security-focused library OS

https://github.com/microsoft/litebox
361•aktau•22h ago•186 comments

An Update on Heroku

https://www.heroku.com/blog/an-update-on-heroku/
428•lstoll•22h ago•284 comments

Cross-Region MSK Replication: K2K vs. MirrorMaker2

https://medium.com/lensesio/cross-region-msk-replication-a-comprehensive-performance-comparison-o...
3•andmarios•4d ago•1 comments

PC Floppy Copy Protection: Vault Prolok

https://martypc.blogspot.com/2024/09/pc-floppy-copy-protection-vault-prolok.html
71•kmm•5d ago•10 comments

Was Benoit Mandelbrot a hedgehog or a fox?

https://arxiv.org/abs/2602.01122
23•bikenaga•3d ago•11 comments

Dark Alley Mathematics

https://blog.szczepan.org/blog/three-points/
96•quibono•4d ago•22 comments

The AI boom is causing shortages everywhere else

https://www.washingtonpost.com/technology/2026/02/07/ai-spending-economy-shortages/
26•1vuio0pswjnm7•2h ago•17 comments

How to effectively write quality code with AI

https://heidenstedt.org/posts/2026/how-to-effectively-write-quality-code-with-ai/
271•i5heu•18h ago•219 comments

Delimited Continuations vs. Lwt for Threads

https://mirageos.org/blog/delimcc-vs-lwt
34•romes•4d ago•3 comments

I now assume that all ads on Apple news are scams

https://kirkville.com/i-now-assume-that-all-ads-on-apple-news-are-scams/
1079•cdrnsf•1d ago•461 comments

Introducing the Developer Knowledge API and MCP Server

https://developers.googleblog.com/introducing-the-developer-knowledge-api-and-mcp-server/
64•gfortaine•13h ago•30 comments

Understanding Neural Network, Visually

https://visualrambling.space/neural-network/
306•surprisetalk•3d ago•44 comments
Open in hackernews

In Re: 23andMe, Inc. Customer Data Security Breach Litigation

https://www.23andmedatasettlement.com/
66•toomuchtodo•2mo ago

Comments

toomuchtodo•2mo ago
Related:

DNA testing firm 23andMe fined £2.3m by UK regulator for 2023 data hack - https://news.ycombinator.com/item?id=44300220 - June 2025 (1 comment)

23andMe tells victims it's their fault that their data was breached - https://news.ycombinator.com/item?id=38856412 - January 2024 (368 comments)

SilverElfin•2mo ago
> Up to $10,000 for Extraordinary Claims; > Up to $165 for Health Information Claims; > An estimated $100 for Statutory Cash Claims; and > 5 years of Privacy & Medical Shield + Genetic Monitoring

None of these make the victims whole. The typical customer would rather pay $1000 to not have their private medical records stolen. Giving them just $165 or a few years of monitoring is insulting. What does that monitoring even achieve?

toomuchtodo•2mo ago
There is no way to make victims whole for this negligence; what is on offer is arguably the best that can done for a failure to properly implement customer identity and access management systems and processes for personal genomic user data.

(disclosure: I am a member of the class, as is most of my family, no other affiliation)

uoaei•2mo ago
This kind of fatalism is the antithesis of proper legal thought and practice as it pertains to real harm.

Precedent is everything, the members of the class who drag down expectations for the rest of us are actively committing harm by denying a resolution to our collective claims. Solidarity is the sole responsibility of a class of people.

delichon•2mo ago
That might matter if 23andMe still had deep pockets, rather than being a bankrupt shell.
tomrod•2mo ago
Everyone who served on the board or worked for the company should be held liable, personally and in a piercing of the corporate veil.

Individuals had responsibility when they made these decisions. It is on the courts to make the victims whole, despite the shenanigans around corporate liability limits.

EDIT: I legitimately think that if we _don't_ hold individuals accountable for these sorts of data breaches of the most sensitive data imaginable then there is no sense to legal systems.

EDIT2: Assuming Gemini has any semblance of accurate information, here are some individuals to consider beginning with:

- Anne Wojcicki (Co-Founder, Chair of the Board)

    Estimated Net Worth: $150 Million - $270 Million (Note: Her net worth peaked significantly higher when 23andMe's valuation was high, but has been adjusted downward following the company's financial struggles and bankruptcy filing).

    Other Known Affiliations: Co-founder and board member of the Breakthrough Prize Foundation. Former wife of Google co-founder Sergey Brin.
- Andre Fernandez (Independent Director)

    Estimated Net Worth: At least $1 Million (based on reported stock holdings as of late 2025).

    Other Known Affiliations: Former CFO of WeWork Inc. and NCR Voyix Corp. Serves on the board of Cardlytics.
- Jim Frankola (Independent Director)

    Estimated Net Worth: At least $18 Million (based on reported stock holdings in late 2025).

    Other Known Affiliations: Former CFO of Cloudera Inc. and Ariba. Serves as a Director and Audit Committee Chair for Ansys, Inc.
- Mark Jensen (Independent Director, Lead Independent Director)

    Estimated Net Worth: At least $12.7 Million - $19.1 Million (Note: Public records show different individuals with similar names and varying net worths; this estimate is based on the director with experience as CFO of RedLeaf, Lattice Semiconductor, and ForeScout, who served as a Director for Lattice Semiconductor Corp and holds a significant position at American Resources Corp).

    Other Known Affiliations: Previous Audit Committee Chair for companies like Lattice Semiconductor and ForeScout.
- Neal Mohan (Past Independent Director)

    Estimated Net Worth: Not widely disclosed, but as CEO of a major tech platform, his compensation is substantial.

    Other Known Affiliations: Chief Executive Officer (CEO) of YouTube.
- Roelof Botha (Past Independent Director)

    Estimated Net Worth: $1.5 Billion - $2 Billion (primarily due to his role as a successful venture capitalist).

    Other Known Affiliations: Partner at venture capital firm Sequoia Capital.
- Patrick Chung (Past Independent Director)

    Estimated Net Worth: Not widely disclosed; compensation for his director role was reported in 2024.

    Other Known Affiliations: Co-founder and Managing Partner at Xfund.
- Peter J. Taylor (Past Independent Director)

    Estimated Net Worth: Not widely disclosed; compensation for his director role was reported in 2024.

    Other Known Affiliations: President of Greatland Investment Group; former CFO and Executive Vice President of PG&E Corporation.
- Richard Scheller, Ph. D. (Past Independent Director)

    Estimated Net Worth: Not widely disclosed; compensation for his director role was reported in 2024.

    Other Known Affiliations: Former Chief Science Officer and Head of Research and Early Development at Genentech.
- Sandra Hernández, M.D. (Past Independent Director)

    Estimated Net Worth: Not widely disclosed; compensation for her director role was reported in 2024.

    Other Known Affiliations: CEO of the California Health Care Foundation.
- Valerie Montgomery Rice, M.D. (Past Independent Director)

    Estimated Net Worth: Not widely disclosed; compensation for her director role was reported in 2024.

    Other Known Affiliations: President and CEO of the Morehouse School of Medicine.
delichon•2mo ago

  William Roper: “So, now you give the Devil the benefit of law!”

  Sir Thomas More: “Yes! What would you do? Cut a great road through the law to get after the Devil?”

  William Roper: “Yes, I'd cut down every law in England to do that!”

  Sir Thomas More: “Oh? And when the last law was down, and the Devil turned 'round on you, where would you hide, Roper, the laws all being flat? This country is planted thick with laws, from coast to coast, Man's laws, not God's! And if you cut them down, and you're just the man to do it, do you really think you could stand upright in the winds that would blow then? Yes, I'd give the Devil benefit of law, for my own safety's sake!”
― Robert Bolt, A Man for All Seasons: A Play in Two Acts
uoaei•2mo ago
holy contrived strawman batman!
toomuchtodo•2mo ago
I will allow my past comments to speak for themselves a bit.

https://news.ycombinator.com/item?id=38857170

https://news.ycombinator.com/item?id=38857228

https://news.ycombinator.com/item?id=38857476

> I will eat crow if it comes to light that this was entirely unavoidable on 23andme's part. (me)

> You won’t have to. They could have forced MFA and been done with it. That doesn’t make it their fault that they didn’t. It just means they could have done better and assumed that at least some users (read: most) are ignorant about best practices with sensitive data. It’s not something they would be legally culpable for, though.

This class action and the £2.3M extracted by a UK regulator sure feels like legal culpability. There must be consequences, otherwise nothing will change. I accept some action vs no action, when perfect is out of reach. We are building systems, requiring constant tuning and improvement.

Closing the loop on this provides an immutable case study on this topic.

(i manage and am responsible for systems that protect enterprise and customer data for millions of customers at a fintech, I take this work seriously, because someone should; if you want better behavior, we need better legal tools to go after corporations for these failures, intentional or not)

uoaei•2mo ago
You must have a strange definition of "fault" if "easily preventable foreseeable outcomes happened due to negligence" falls outside its scope.

You seem to be skilled at over-intellectualizing to the point of losing the plot. I do that with movies, you do that with real life. Why?

zeroonetwothree•2mo ago
You are free to opt out of the settlement and pursue your own claim.
SilverElfin•2mo ago
This is true of all class actions. But it’s not helpful that the only recourse for victims is to lose enormous amounts of money and time to get justice. This is a loophole that must be fixed.
LurkandComment•2mo ago
What if you're Canadian?
atulvi•2mo ago
I want to know this too.
arnonejoe•2mo ago
Give each victim 100 shares of company stock. You lose your company to the people that you hurt. Seems fair.
tomrod•2mo ago
That's just bankruptcy with extra steps. You're giving an asset which has no value immediately after the action.
loloquwowndueo•2mo ago
*lose
arnonejoe•2mo ago
Thank you ;)
coolThingsFirst•2mo ago
2 measly SQL injections and down goes 23andMe.
vintermann•2mo ago
There was no SQL injection. The attack was basically the same as if someone stole the password to a friend's Facebook account, and proceeded to scrape the posts everyone else had made visible to that friend.

Some would say SNP data is more valuable than your posting history. I'm not so sure, since after all 23andMe went bankrupt trying to monetize their data and reddit didn't. It seems possible to me that a post where you say you do X is more useful to advertisers and political propagandists/spies, than a SNP which suggests you're 20% more likely to do X.

coolThingsFirst•2mo ago
I am reading more on the vector of attack used on 23andme and it seems they used credentials from other data breaches. This never would have happend with MFA, even SMS confirmation would've been enough.

It's insane that a company that literally stores DNA data didn't have the most basic defenses against data breaches that would take an intern 15 minutes to read about.

bsimpson•2mo ago
I've had 23andme since ~2012. Haven't received a single email from/about 23andmedatasettlement.com
babelfish•2mo ago
It would have been from 23andmebankruptcynoticing@noticing.ra.kroll.com
tomrod•2mo ago
Ah, certainly not a spam email.
vintermann•2mo ago
Indeed, y0u may be entit1ed to compensation.
zdw•2mo ago
Can I file a claim if I'm related to folks who shared their (and by extension, my) DNA with this company?
SoftTalker•2mo ago
This will basically be everyone in the world. Could be the largest class action ever?
2muchcoffeeman•2mo ago
Oprah spruiked 23andMe.

Can people sue Oprah?

iwontberude•2mo ago
Since when is spruiking a liability?
tjpnz•2mo ago
You can be held liable if fraud was committed and you were aware of it.
zeristor•2mo ago
Spruik

Promote or publicise.

A new word to me, and not one I’ll use.

fragmede•2mo ago
It seems like a word that's read and not spoken.
windexh8er•2mo ago
I may actually try my hand in conciliation court against them on this one. I received a test kits back around 2015 from a family member, but was disgusted at the idea that there was no possible way they 1) wouldn't go under and sell my data 2) be breached. I feel like these sort of outcomes for these types of services are very obvious as highly likely to anyone who works in proximity to tech, and especially startups.

Anyway, I never submitted the test. But I know for a fact that family has. It's really annoying to that others can make these sort of linked decisions for you - especially as we are now acutely aware that this type of data can, will and I'm sure is being used in ways that basically nobody would consent to.

TheBlight•2mo ago
If you type something into the computer you should assume everyone in the world will eventually be able to see it.

If you send your DNA to a company in the mail you should assume everyone in the world will eventually be able to see it.

rogueparitybit•2mo ago
So, what about healthcare? Back to paper records? Because it's not acceptable to me that everyone in the world will eventually see my private medical records.
esseph•2mo ago
It's probably too late for that to be honest.

You should also assume your MegaCorp, if you work for one, has also already seen them (in many cases they can buy them from various data brokers or even off the grey market).

I'm not saying this is the way things should be, just things as I know them to be.

registeredcorn•2mo ago
What remedial steps would you support, out of interest?

For example, if someone could have their current life become, essentially "redacted", and receive an entirely new one with fairly low barrier of entry, would that be something you would support?

I do agree that once it's out, it's out and you can't really "go back" or have any expectation that what you put out there will somehow magically be "safe", but I think there ought to be a means to hard reset; a burn everything to the ground, and start from square one option.

To head off the inevitable questions of some variation of, "...but what about abuse?" from the croud, I would generally ask:

Abuse to whom? The person who's entire existence is irrevocably captured, documented, data mined, and optimized for malicous intent? Or the random mouth breath8ng schlub who abuses the opportunity to do something nefarious before getting caught and going to prison?

tzs•2mo ago
It's not clear to me that I should care if my data was in the breach. For my data to have been in the breach the following must have happened.

1. I opted in to sharing my information with everyone that 23andMe identified as relatives. "Relatives" in this context means genetic 4th cousins or closer. For me that turned out to be 1500 people, all of whom are as far as I know complete strangers to me (I'm adopted).

2. One or more of those 1500 people used the same password on 23andMe that they used on some other site that suffered a breach that gave up plaintext passwords.

3. That password was included in a credential stuffing attack that let someone get into their 23andMe account, where that intruder downloaded the account owner's relatives list which included my information.

When I chose to share my data with 1500 strangers I was pretty much conceding that I didn't really care who got it.

vintermann•2mo ago
Yeah, I agree this is pretty overblown. On GEDmatch, you basically give everyone the information in your SNP reads - you can compare arbitrary people there, not just yourself to "close" relatives. The only condition is that you give others the same access as you want for yourself. It's very useful for genetic genealogy.

Technically, you could probably get access to and scrape all that data by uploading fake data, or someone else's. It will do very little useful unless you're into genealogy.

QuantumFunnel•2mo ago
Well of course someone dismissing this would be the top comment here
thepasswordapp•2mo ago
The credential stuffing angle here is worth highlighting - the breach happened because users reused passwords from other breached sites.

What's frustrating is that even security-conscious users face a massive burden after any breach: changing passwords across dozens or hundreds of accounts. Research shows the average remediation gap after breach disclosure is 94 days - most people simply don't do it because it's too tedious.

We've solved password generation and storage. What's still broken is the actual process of updating passwords at scale when you need to respond to a breach like this one.