frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Toyota Fluorite: "console-grade" Flutter game engine

https://fluorite.game/
316•bsimpson•5h ago•180 comments

GLM-5: From Vibe Coding to Agentic Engineering

https://z.ai/blog/glm-5
312•meetpateltech•5h ago•170 comments

Claude Code Is Being Dumbed Down

https://symmetrybreak.ing/blog/claude-code-is-being-dumbed-down/
527•WXLCKNO•3h ago•369 comments

NetNewsWire Turns 23

https://netnewswire.blog/2026/02/11/netnewswire-turns.html
138•robin_reala•4h ago•34 comments

Amazon Ring's lost dog ad sparks backlash amid fears of mass surveillance

https://www.theverge.com/tech/876866/ring-search-party-super-bowl-ad-online-backlash
233•jedberg•3h ago•129 comments

Single bone in Spain offers first direct evidence of Hannibal's war elephants

https://phys.org/news/2026-02-hannibal-famous-war-elephants-bone.html
77•Archelaos•5d ago•26 comments

WiFi Could Become an Invisible Mass Surveillance System

https://scitechdaily.com/researchers-warn-wifi-could-become-an-invisible-mass-surveillance-system/
251•mgh2•4d ago•122 comments

Switzerland's Extraordinary Medieval Library

https://www.bbc.com/travel/article/20260202-inside-switzerlands-extraordinary-medieval-library
13•CaptainZapp•5d ago•0 comments

GLM-OCR: Accurate × Fast × Comprehensive

https://github.com/zai-org/GLM-OCR
197•ms7892•4d ago•57 comments

Microwave Oven Failure: Spontaneously turned on by its LED display (2024)

https://blog.stuffedcow.net/2024/06/microwave-failure-spontaneously-turns-on/
28•arm•2h ago•4 comments

We rendered and embedded one million CAD files

https://cad-search-three.vercel.app/
74•DavidFerris•23h ago•30 comments

The risk of a hothouse Earth trajectory

https://www.cell.com/one-earth/fulltext/S2590-3322%2825%2900391-4
250•Archelaos•2h ago•272 comments

It's all a blur

https://lcamtuf.substack.com/p/its-all-a-blur
320•zdw•5d ago•61 comments

iOS 26.3 and macOS 26.3 Fix Dozens of Vulnerabilities, Including Zero-Day

https://www.macrumors.com/2026/02/11/ios-26-3-security-vulnerabilities/
82•akyuu•2h ago•35 comments

FAA halts all flights at El Paso airport for 10 days

https://www.nytimes.com/2026/02/11/us/faa-el-paso-flight-restrictions.html
298•edward•13h ago•474 comments

Paragon accidentally uploaded a photo of its spyware control panel

https://twitter.com/DrWhax/status/2021608609595945442
83•CGMthrowaway•2h ago•29 comments

Apple's Siri revamp reportedly delayed again

https://techcrunch.com/2026/02/11/apples-siri-revamp-reportedly-delayed-again/
20•salkahfi•49m ago•7 comments

Show HN: Hibana – An Affine MPST Runtime for Rust

https://hibanaworks.dev
14•o8vm•5d ago•4 comments

Show HN: AI agents play SimCity through a REST API

https://hallucinatingsplines.com
149•aed•2d ago•66 comments

Should your developer company go open source?

https://extremefoundership.substack.com/p/should-your-developer-company-go
36•paraphrenia•4h ago•24 comments

Rome is studded with cannon balls (2022)

https://essenceofrome.com/rome-is-studded-with-cannon-balls
92•thomassmith65•4d ago•9 comments

Exposure Simulator

http://www.andersenimages.com/tutorials/exposure-simulator/
111•sneela•10h ago•53 comments

Q&A: New UK onshore wind and solar is '50% cheaper' than new gas

https://www.carbonbrief.org/qa-new-uk-onshore-wind-and-solar-is-50-cheaper-than-new-gas/
10•DamonHD•1h ago•2 comments

Typing for Love or Money: The Hidden Labor Behind Modern Literary Masterpieces

https://publicdomainreview.org/essay/typing-for-love-or-money/
8•prismatic•4d ago•1 comments

Lessons you will learn living in a snowy place

https://eukaryotewritesblog.com/2026/01/21/very-snowy-place/
289•surprisetalk•5d ago•289 comments

Why Vampires Live Forever

https://machielreyneke.com/blog/vampires-longevity/
251•machielrey•6h ago•125 comments

End of an era for me: no more self-hosted git

https://www.kraxel.org/blog/2026/01/thank-you-ai/
221•dzulp0d•20h ago•147 comments

Communities are not fungible

https://www.joanwestenberg.com/communities-are-not-fungible/
195•tardibear•14h ago•86 comments

Windows Notepad App Remote Code Execution Vulnerability

https://www.cve.org/CVERecord?id=CVE-2026-20841
725•riffraff•15h ago•444 comments

Y Combinator CEO Garry Tan launches group to influence CA politics

https://missionlocal.org/2026/02/sf-garry-tan-california-politics-garrys-list/
196•computerliker•1h ago•165 comments
Open in hackernews

Paragon accidentally uploaded a photo of its spyware control panel

https://twitter.com/DrWhax/status/2021608609595945442
82•CGMthrowaway•2h ago

Comments

recursivecaveat•1h ago
This company btw for anyone else who had not heard of them before (there are a lot of companies by that name): https://en.wikipedia.org/wiki/Paragon_Solutions
phendrenad2•1h ago
It's too bad that "The right of the people to be secure in their persons, houses, papers, and effects, against unreasonable searches and seizures, shall not be violated, and no Warrants shall issue, but upon probable cause, supported by Oath or affirmation, and particularly describing the place to be searched, and the persons or things to be seized" has become "we can download a full copy of all of your files at any time, or continually, if we feel like it, even if we don't suspect you of a crime".
moralestapia•1h ago
Awesome.

Moxie's "unbreakable" end-to-end communication protocol.

thmsths•1h ago
The message can't be intercepted in transit, since we are talking about spyware, I assume they get it from the device, hard to defend against that if they have access to your process' memory space.
Hamuko•1h ago
Surprising that end-to-end encryption doesn't really matter when you get into one of the ends.
akimbostrawman•1h ago
not at all. there is no encryption that can save you when one of the legitimate participants is somehow compromised. doesn't even need to be a sophisticated device compromise, literal shoulder surfing does that too.
moralestapia•1h ago
Thanks GPT, but that's exactly what GP was saying.
coldtea•15m ago
The parent said "it's surprising". It's not surprising.
ASalazarMX•1h ago
Even if you had to input your private key every time you wanted to read or send a message, having malware in your phone voids practically any form of encryption, because it has to be decrypted eventually to be used.
moralestapia•1h ago
>The message can't be intercepted in transit

Lol, so like ... all encryption schemes since the 70s?

sowbug•1h ago
They do have stronger schemes, which are called hash functions.
moralestapia•1h ago
What?

Hashing is not encrypting.

You can learn more about the topic here, https://www.okta.com/identity-101/hashing-vs-encryption/

p-o•49m ago
Hashing is a part of encryption, maybe you are the one who needs to shore up on the topic?
aipatselarom•43m ago
Nice try. However, hashing and encryption are two different operations.

Load this page, https://en.wikipedia.org/wiki/Advanced_Encryption_Standard

Ctrl-F "hash". No mention of it.

Before being pedantic at least check out the url in that comment to get the basics going.

sowbug•6m ago
This entire thread should be annihilated, but since you mentioned being pedantic...

You're correct that a pure encryption algorithm doesn't use hashing. But real-world encryption systems will include an HMAC to detect whether messages were altered in transit. HMACs do use hash functions.

AlotOfReading•10m ago
A good hash function is surjective. Encryption is bijective. They're very different things.
sowbug•46m ago
> What?

> Hashing is not encrypting.

> You can learn more about the topic here, https://www.okta.com/identity-101/hashing-vs-encryption/

Thank you for that link. Your original comment implied that Signal's threat model should have included an attacker-controlled end. The only way to do that is to make decryption impossible by anyone, including the intended recipient. A labyrinthine way to do that would be to substitute the symmetric-encryption algorithm with a hash algorithm, which of course destroys the plaintext, but does accomplish the goal of obfuscating it in transit, at rest, and forever.

coldtea•13m ago
It's a joke, because hashing losses information, and thus the original is not retrievable, woosh
lmm•11m ago
Certainly very hard to defend against that when the messenger you're using won't let you use a device you control.
Insanity•1h ago
How is this related?
moralestapia•1h ago
I see there's some room for ambiguity.

See, https://en.wikipedia.org/wiki/Moxie_Marlinspike

dualbus•19m ago
Apologies for being dense. Could you spell out how you went from Paragon Solutions to the Signal Protocol?
rtaylorgarlock•1h ago
Looks like image was removed and maybe only a demo?
phendrenad2•1h ago
Non-X link: https://archive.is/kqvnH
ronsor•1h ago
From one Twitter user:

> It's just a demo instance, but, these front ends are barely revealed to the public

This genuinely doesn't look any different from the control panels of commercial infostealers and RATs sold on Russian hacking forums. Those usually sell for between $200 and $20,000 depending on features and pricing model (one-time vs. ongoing subscription).

These spyware companies hype themselves up, but they're really not any different from Ivan's RAT-as-a-Service, besides having extra exploits to burn and wealthier customers.

walletdrainer•33m ago
As it turns out, you just can’t make malware for targets like these much better.
amai•26m ago
I read Pentagon instead of Paragon.
efilife•16m ago
Can somebody please explain to an idiot (me) how is this possible for this to keep going? I thought that the world has decided that spyware is illegal and can't be produced. Is this company related to israeli government? If not, why is it allowed to function?