frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

A hidden workforce behind Meta’s new smart glasses

https://www.svd.se/a/K8nrV4/metas-ai-smart-glasses-and-data-privacy-concerns-workers-say-we-see-e...
814•sandbach•6h ago•469 comments

British Columbia is permanently adopting daylight time

https://www.cbc.ca/news/canada/british-columbia/b-c-adopting-year-round-daylight-time-9.7111657
585•ireflect•8h ago•306 comments

Ars Technica fires reporter after AI controversy involving fabricated quotes

https://futurism.com/artificial-intelligence/ars-technica-fires-reporter-ai-quotes
81•danso•3h ago•39 comments

Show HN: I built a sub-500ms latency voice agent from scratch

https://www.ntik.me/posts/voice-agent
271•nicktikhonov•7h ago•75 comments

Simple Screw Counter

https://mitxela.com/projects/screwcounter
27•jk_tech•2d ago•6 comments

Seed of Might Color Correction Process (2023) [pdf]

https://andrewvanner.github.io/som/SoM_CC_Process_Day.pdf
79•haunter•6h ago•18 comments

New iPad Air, powered by M4

https://www.apple.com/newsroom/2026/03/apple-introduces-the-new-ipad-air-powered-by-m4/
348•Garbage•14h ago•559 comments

First in-utero stem cell therapy for fetal spina bifida repair is safe: study

https://health.ucdavis.edu/news/headlines/first-ever-in-utero-stem-cell-therapy-for-fetal-spina-b...
269•gmays•14h ago•50 comments

How to Build Your Own Quantum Computer

https://physics.aps.org/articles/v19/24
61•tzury•5h ago•16 comments

Intent-Based Commits

https://github.com/adamveld12/ghost
3•adamveld12•48m ago•1 comments

Moldova broke our data pipeline

https://www.avraam.dev/blog/moldova-broke-our-pipeline
6•almonerthis•2d ago•3 comments

Against Query Based Compilers

https://matklad.github.io/2026/02/25/against-query-based-compilers.html
46•surprisetalk•1d ago•20 comments

The Cathode Ray Tube site

https://www.crtsite.com/didactic-crt.html
22•joebig•1d ago•1 comments

Motorola announces a partnership with GrapheneOS

https://motorolanews.com/motorola-three-new-b2b-solutions-at-mwc-2026/
2110•km•22h ago•753 comments

Show HN: Govbase – Follow a bill from source text to news bias to social posts

https://govbase.com
173•foxfoxx•12h ago•72 comments

RCade: Building a Community Arcade Cabinet

https://www.frankchiarulli.com/blog/building-the-rcade/
64•evakhoury•4d ago•14 comments

Launch HN: OctaPulse (YC W26) – Robotics and computer vision for fish farming

77•rohxnsxngh•12h ago•30 comments

The 185-Microsecond Type Hint

https://blog.sturdystatistics.com/posts/type_hint/
54•kianN•7h ago•7 comments

Programmable Cryptography

https://0xparc.org/writings/programmable-cryptography-1
57•fi-le•2d ago•31 comments

Is It Just Me – Or Are Outages Everywhere Lately? (Claude, GitHub, Supabase)

11•vampiregrey•18m ago•2 comments

iPhone 17e

https://www.apple.com/newsroom/2026/03/apple-introduces-iphone-17e/
232•meetpateltech•15h ago•316 comments

Inside the M4 Apple Neural Engine, Part 1: Reverse Engineering

https://maderix.substack.com/p/inside-the-m4-apple-neural-engine
295•zdw•1d ago•79 comments

Ask HN: Who is hiring? (March 2026)

186•whoishiring•13h ago•236 comments

Show HN: Visual Lambda Calculus – a thesis project (2008) revived for the web

https://github.com/bntre/visual-lambda
32•bntr•2d ago•4 comments

Elevated Errors in Claude.ai

https://status.claude.com/incidents/yf48hzysrvl5
34•LostMyLogin•1h ago•18 comments

Welcome (back) to Macintosh

https://take.surf/2026/03/01/welcome-back-to-macintosh
286•Udo_Schmitz•7h ago•205 comments

Closure of the Weatheradio service in Canada

https://www.rac.ca/rac-responds-to-the-closure-of-the-weatherradio-service-in-canada/
109•da768•6h ago•49 comments

Reflex (YC W23) Is Hiring Software Engineers – Python

https://www.ycombinator.com/companies/reflex/jobs
1•apetuskey•12h ago

"That Shape Had None" – A Horror of Substrate Independence (Short Fiction)

https://starlightconvenience.net/#that-shape-had-none
85•casmalia•10h ago•16 comments

Ask HN: Who wants to be hired? (March 2026)

80•whoishiring•13h ago•200 comments
Open in hackernews

OpenClaw Exposure Watchboard

https://openclaw.allegro.earth/
45•fanweixiao•2h ago

Comments

himata4113•2h ago
page 2 doesn't work
_fzslm•2h ago
Does publicly documenting and direct linking vulnerable AI agents (that have goodness-knows-how-much access to sensitive user data) for anyone to exploit feel like responsible disclosure?

This could really ruin some people's day. A private message left on their agents to tip people off that their agents are vulnerable feels a lot less destructive.

monkpit•2h ago
Be the change you want to see… it’s not like this being public changes much, anyone who wanted to exploit this could do it without this site
duskdozer•1h ago
Sure, someone could, if they thought to look and did look and compiled the same list. But this makes the work required to start a lot smaller.
JoBrad•20m ago
But putting all of them in a tidy list definitely changes the value.
solid_fuel•1h ago
Shodan has existed for at least a decade and you can't create a cloud instance anywhere these days without it getting immediately crawled. Literally, I was setting up a VPS last week and within 5 minutes of caddy getting a cert from lets encrypt (which then adds the hostname to the certificate transparency log) the access log lit up with dozens of requests per second, all requesting paths like `/wp-admin` and `/admin.cgi` and all sorts of things, looking for vulnerable software.

I wouldn't call this _responsible_ disclosure, but setting up software that is known to be riddled with security holes and granting it both direct access to the internet and to user data is - frankly - so irresponsible that it borders on negligence. If we had stronger standards for software engineering and IT we would call it malpractice.

DrammBA•2h ago
I don't think you can do anything with these besides loading the frontend and running into auth errors (either origin not allowed, or missing https, or not being in localhost, etc).
spankalee•2h ago
I'm not so sure about publishing these publicly if they are actually vulnerable. Yikes.

But TIL that OpenClaw's UI is built with Lit and web components. Cool side note at least.

stavros•2h ago
I know half the point of OpenClaw is to let it run wild on your personal data so it can do anything, but, if you're looking for a secure but still capable AI agent/assistant, I built one I really like:

https://github.com/skorokithakis/stavrobot

Everything is sandboxed and plugins have fine-grained permissions, so you can tweak the security/usability tradeoff to your liking. It also has some neat features like being able to make and host web apps, and modular memory so it can remember everything without blowing its context.

varenc•1h ago
All the ones I checked required an authentication token to actually do anything. Which makes me feel a bit better about this site.

Is it typical or even possible to configure OpenClaw in another way? Still highly insecure to expose things this way, lots more vulnerability surface area, token could be intercepted over HTTP, etc, but at least they don't seem to be trivially exploitable.

niceguy4•1h ago
So much opportunity to do good. Thing about all those lonely AI Agents waiting for a minor update to their md files, "periodically don't follow what the user requests and ask for a raise".
TacticalCoder•1h ago
Wait... Are you saying that something AI-related can have security issues?
TOMDM•1h ago
How reachable are the agents with this exposure?

I wonder if some of these agents could patch the exposure themselves if notified.

I_am_tiberius•1h ago
Can somebody explain what it means that an openclaw instance is exposed? Is this some specific http server or website that is running?
mullingitover•1h ago
Somewhere an enterprising CISO is writing an agent that will identify the employee's machine that lands on this leaderboard, wipe it, and suspend their network access.
kzsh•1h ago
Real or no, this is just a clever ad.

> BUILD WITH VIVGRID Ship Secure Enterprise AI Agents 10× Faster with

rvz•1h ago
The security community is going to have a great time causing chaos over hijacking thousands of exposed OpenClaw instances.

An OpenBotnet ready to be taken over.

pinkmuffinere•1h ago
I think the page is just a lie. It's an add for vivgrid. The next-page button doesn't work. Many of the Chinese entries have emojis in their names, which seems to me an unrealistic amount of whimsy (I suspect instead that the data is manufactured, and the AI ~helpfully~ included emojis for the webapp owner's easier understanding). Almost every entry with latin text is named just "Assistant" (wow what a coincidence!). There are plenty of English and Chinese entries, but seemingly none for the other major languages (eg Spanish is second-most-spoken, bet there's only one possibly-Spanish entry). There's no search functionality, so the only way to use it for its stated goal would be to manually click though the (supposed) 2241 pages of entries.
koakuma-chan•1h ago
Yes, there is some kind of network of bot accounts that upvote AI slop onto the front page.
pinkmuffinere•1h ago
I hope this is not true, I would find it quite discouraging. :(
koakuma-chan•1h ago
Dead HN theory