frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Non-determinism is an issue with patching CVEs

https://flox.dev/blog/achieving-rapid-cve-remediation-in-an-era-of-escalating-vulnerabilities/
22•mathewpregasen•1h ago

Comments

jambay•1h ago
There has been so much discussion about the increase of volume in CVEs. I love that it's super apparent from looking at that graph of CVEs by year, there is a noticeable bend in the slope upward in the 2026 plot. It's not just hype, the rate of CVEs is changing faster than prior years.
LoganDark•1h ago
That is not the title of the article:

> Achieving CVE Remediation in an Era of Escalating Vulnerabilities

tptacek•1h ago
Reads kind of sales-pitchy. Every day we see another actively exploited Linux LPE; have you thought about your SBOM today?
ronef•1h ago
I feel we should definitely be digging way beyond the SBOM... but also wondering if the forecasting in the general ecosystem is on point or not.
ronef•1h ago
I.e. is this overhyped?
ohnei•33m ago
I like nix and its approach but if I'm being honest I think its also getting easier to be sloppy about dependencies and ask AI to find any dependencies that might be missing from the cleanly installed packaging metadata. There's maybe a paradox for developers in that we can try to drop structure and brute force scan first intensively enough to catch anything likely to get caught or we can ask AI to finally apply all the rigorous methods we decided were too expensive for routine software and probably have minimally more things to run with each release.
tremon•31m ago
Are you offering an easy fix for that "Linux" line on your SBOM?

Google broke reCAPTCHA for de-googled Android users

https://reclaimthenet.org/google-broke-recaptcha-for-de-googled-android-users
333•anonymousiam•4h ago•117 comments

AI is breaking two vulnerability cultures

https://www.jefftk.com/p/ai-is-breaking-two-vulnerability-cultures
173•speckx•5h ago•75 comments

You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)

https://ze3tar.github.io/post-zcrx.html
86•MrBruh•3h ago•50 comments

Cartoon Network Flash Games

https://www.webdesignmuseum.org/flash-game-exhibitions/cartoon-network-flash-games
246•willmeyers•6h ago•79 comments

AWS says data center overheating in North Virginia disrupts services

https://www.reuters.com/business/retail-consumer/amazon-cloud-unit-says-data-center-overheating-n...
59•christhecaribou•19h ago•25 comments

Non-determinism is an issue with patching CVEs

https://flox.dev/blog/achieving-rapid-cve-remediation-in-an-era-of-escalating-vulnerabilities/
22•mathewpregasen•1h ago•7 comments

Looking at the data behind prediction markets

https://asteriskmag.com/issues/14/are-prediction-markets-good-for-anything
27•kqr•1d ago•11 comments

David Attenborough's 100th Birthday

https://www.bbc.com/news/articles/cp3pww9g0p5o
360•defrost•10h ago•66 comments

Serving a website on a Raspberry Pi Zero running in RAM

https://btxx.org/posts/memory/
177•xngbuilds•7h ago•71 comments

Mux (YC W16) Is Hiring

https://www.mux.com/jobs
1•mmcclure•1h ago

All means are fair except solving the problem

https://yosefk.com/blog/all-means-are-fair-except-solving-the-problem.html
21•akkartik•2d ago•13 comments

AWS data center outage hits trading on Fanduel, Coinbase

https://www.cnbc.com/2026/05/08/aws-outage-data-center-fanduel-coinbase.html
10•bigflern•1h ago•0 comments

An Introduction to Meshtastic

https://meshtastic.org/docs/introduction/
353•ColinWright•11h ago•135 comments

Dirty Frag: Universal Linux LPE

https://github.com/V4bel/dirtyfrag
15•unbeli•2h ago•1 comments

Meta Shuts Down End-to-End Encryption for Instagram Messaging

https://www.pcmag.com/news/meta-shuts-down-end-to-end-encryption-for-instagram-dms-messaging
39•tcp_handshaker•1h ago•17 comments

Wi is Fi: Understanding Wi-Fi 4/5/6/6E/7/8 (802.11 n/AC/ax/be/bn)

https://www.wiisfi.com/
8•homebrewer•2d ago•1 comments

My first in-prod corrupted hard drive problem

https://blog.pavementlink.ch/2026/05/07/my-first-corrupted-hard-drive-problem/
32•r1chk1t•3h ago•23 comments

Compound drivers of Antarctic sea ice loss and Southern Ocean destratification

https://www.science.org/doi/10.1126/sciadv.aeb0166
6•littlexsparkee•58m ago•0 comments

Rumors of my death are slightly exaggerated

1435•CliffStoll•2d ago•223 comments

Teaching Claude Why

https://www.anthropic.com/research/teaching-claude-why
43•pretext•4h ago•5 comments

Mojo 1.0 Beta

https://mojolang.org/
255•sbt567•20h ago•167 comments

US Government releases first batch of UAP documents and videos

https://www.war.gov/UFO/
204•david-gpu•10h ago•316 comments

Poland is now among the 20 largest economies

https://apnews.com/article/poland-economy-growth-g20-gdp-26fe06e120398410f8d773ba5661e7aa
861•surprisetalk•10h ago•715 comments

PC Engine CPU

https://jsgroth.dev/blog/posts/pc-engine-cpu/
113•ibobev•8h ago•50 comments

Roadside Attraction

https://theoffingmag.com/essay/roadside-attraction/
13•aways•3h ago•3 comments

Man finds $1M worth of Yu-Gi-Oh cards in a dumpster

https://www.404media.co/man-finds-1-million-worth-of-yu-gi-oh-cards-in-a-dumpster/
87•danso•2d ago•25 comments

Maybe you shouldn't install new software for a bit

https://xeiaso.net/blog/2026/abstain-from-install/
806•psxuaw•23h ago•427 comments

Show HN: GETadb.com – every GET request creates a DB

https://www.getadb.com/
22•nezaj•6h ago•26 comments

Ask HN: We just had an actual UUID v4 collision...

266•mittermayr•15h ago•227 comments

Podman rootless containers and the Copy Fail exploit

https://garrido.io/notes/podman-rootless-containers-copy-fail/
109•ggpsv•9h ago•23 comments