frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Defeating Works by Design's Unpickable Lock [video]

https://www.youtube.com/watch?v=rMi1dIqMwNw
11•zdw•2d ago

Comments

MarkusQ•1h ago
And the sequel: https://www.youtube.com/watch?v=R4k6Tpjk5Qw
Animats•37m ago
40 minutes of video.

This needs a Lock Picking Lawyer attack on this lock. He'd be done in two minutes.

The trouble with this lock is that the removable key contacts the pins. Even though it's isolated from the outside when it's in contact the pins, you do get it back out after contact. So there's potential for impressionism.

A design where there's a level of indirection between the key and the sensing device would be better. Key goes in, and is read and the info stored. Key rotates further, and stored info is tested while the info storage mechanism is isolated from both the outside and the key.

Some locks like that have been built. I saw one with a column of steel balls for each pin. The key raises the columns of balls, depending on the bitting. The number of balls that are raised above the shear line then varies for each cylinder. That's the information storage device. As the key is rotated, the raised balls become isolated from the keyway. Then, protected from outside access, the columns of balls act as the key for an ordinary pin tumbler setup.

tromp•32m ago
Design of this (not quite) unpickable lock: https://www.youtube.com/watch?v=-qUu8kIliy8
Abhijeet620380•14m ago
Good

Google Cloud Fraud Defence is just WEI repackaged

https://privatecaptcha.com/blog/google-cloud-fraud-defence-wei/
508•ribtoks•6h ago•246 comments

AI Is Breaking Two Vulnerability Cultures

https://www.jefftk.com/p/ai-is-breaking-two-vulnerability-cultures
69•speckx•2h ago•20 comments

What we lost the last time code got cheap

https://www.poppastring.com/blog/what-we-lost-the-last-time-code-got-cheap
36•speckx•1h ago•19 comments

Lets Encrypt Stopping Issuance for Potential Incident

https://letsencrypt.status.io/pages/incident/55957a99e800baa4470002da/69fe2d6698ca07050eb4b1b3
17•rbaudibert•14m ago•0 comments

Cartoon Network Flash Games

https://www.webdesignmuseum.org/flash-game-exhibitions/cartoon-network-flash-games
171•willmeyers•3h ago•55 comments

Serving a website on a Raspberry Pi Zero running in RAM

https://btxx.org/posts/memory/
148•xngbuilds•4h ago•58 comments

An Introduction to Meshtastic

https://meshtastic.org/docs/introduction/
305•ColinWright•8h ago•116 comments

A web page that shows you everything the browser told it without asking

https://sinceyouarrived.world/taken
407•mwheelz•7h ago•204 comments

Bjarne Stroustrup: How do I deal with memory leaks? (2022)

https://www.stroustrup.com/bs_faq2.html#memory-leaks
48•theanonymousone•2h ago•35 comments

PC Engine CPU

https://jsgroth.dev/blog/posts/pc-engine-cpu/
96•ibobev•5h ago•38 comments

My first in-prod corrupted hard drive problem

https://blog.pavementlink.ch/2026/05/07/my-first-corrupted-hard-drive-problem/
4•r1chk1t•24m ago•3 comments

David Attenborough's 100th Birthday

https://www.bbc.com/news/articles/cp3pww9g0p5o
181•defrost•7h ago•19 comments

Show HN: GETadb.com – every GET request creates a DB

https://www.getadb.com/
7•nezaj•3h ago•0 comments

Rumors of my death are slightly exaggerated

1238•CliffStoll•2d ago•195 comments

Apple, Intel have reached preliminary chip-making deal

https://www.reuters.com/business/apple-intel-have-reached-preliminary-chip-making-deal-wsj-report...
124•scrlk•2h ago•62 comments

Cloudflare to cut about 20% of its workforce

https://www.reuters.com/business/world-at-work/cloudflare-cut-over-1100-jobs-2026-05-07/
1222•PriorityLeft•23h ago•859 comments

Mojo 1.0 Beta

https://mojolang.org/
194•sbt567•17h ago•136 comments

Poland is now among the 20 largest economies

https://apnews.com/article/poland-economy-growth-g20-gdp-26fe06e120398410f8d773ba5661e7aa
778•surprisetalk•7h ago•669 comments

Google Broke reCAPTCHA for De-Googled Android Users

https://reclaimthenet.org/google-broke-recaptcha-for-de-googled-android-users
47•anonymousiam•1h ago•9 comments

US Government releases first batch of UAP documents and videos

https://www.war.gov/UFO/
161•david-gpu•7h ago•255 comments

Canvas online again as ShinyHunters threatens to leak schools’ data

https://www.theverge.com/tech/926458/canvas-shinyhunters-breach
884•stefanpie•21h ago•588 comments

pg_flight_recorder: Continuously sample PostgreSQL system state via pg_cron

https://github.com/dventimisupabase/pg_flight_recorder
6•tanelpoder•1d ago•0 comments

Maybe you shouldn't install new software for a bit

https://xeiaso.net/blog/2026/abstain-from-install/
786•psxuaw•20h ago•410 comments

Podman rootless containers and the Copy Fail exploit

https://garrido.io/notes/podman-rootless-containers-copy-fail/
92•ggpsv•6h ago•20 comments

Show HN: Git for AI Agents

https://github.com/regent-vcs/re_gent
71•doshay•5h ago•41 comments

Ask HN: We just had an actual UUID v4 collision...

202•mittermayr•12h ago•190 comments

GeoJSON

https://geojson.org/
130•tosh•10h ago•61 comments

Dirtyfrag: Universal Linux LPE

https://www.openwall.com/lists/oss-security/2026/05/07/8
767•flipped•1d ago•308 comments

ClojureScript Gets Async/Await

https://clojurescript.org/news/2026-05-07-release
254•Borkdude•12h ago•60 comments

The surprisingly complex journey to text-selectable client-side generated PDFs

https://sdocs.dev/blogs/journey-to-pdf-generation
64•FailMore•1d ago•52 comments