frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Mantine-datatable (and others) compromised – owner account suspended

https://github.com/icflorescu/mantine-datatable/discussions/813
37•justsomehuman•2h ago

Comments

j1elo•1h ago
So in summary:

* GitHub's backwards priorities end up causing a hack on their systems.

* Hackers use their newly gained powers to compromise other people's repos.

* GitHub dectects compromised repo, and suspends the account of its maintainer, so they cannot warn nor act against it to protect or at least warn their community of users.

"I cause a fire, and later ban you for getting burned."

No wonder people are leaving.

zuzululu•1h ago
Where are they going? If its not self hosted I don't see it not ending up like github.
crazysim•54m ago
codeberg

I had a repo with more than a dozen forks banned on GitHub for some unclear TOS violations. Ticket has been sitting for a week plus now, asking for clarification and guidance.

So, it lives in codeberg now. https://codeberg.org/nelsonjchen/op-replay-clipper

zuzululu•39m ago
this just looks like a reskinned gitea
phoronixrly•32m ago
There exist competent operations people and competent developers.
jerf•1h ago
"We have checked our own environments thoroughly and found no traces of compromise. We suspect this may be part of the broader GitHub infrastructure breach carried out by the TeamPCP hacking group in May 2026: https://techcrunch.com/2026/05/20/github-says-hackers-stole-..."

Greater HN collective, please help me metaphorically double-click on this. I've poked around a bit but didn't find out much more than the given link. What are we concerned about the hack possibly having accomplished?

Because stealing repos is bad enough... but are we saying it's possible that commits can now magically appear in repos from hackers? I don't want to raise any alarms if I'm misreading this or if we're early in the news cycle, but if that's possible, I and a lot of other people reading this need to have some immediate conversations with a lot of people. So... is that what this is saying? Or am I misreading it? I sure hope so.

zuzululu•1h ago
I was impacted. found weird spam repos that later were deployed on cloudflare redirecting my domains.

meanwhile the gitea running on my metalbox for nearly a decade has seen no compromise and 100% uptime when cloudflare has gone down repeatedly

im rethinking the whole "go where crowd is" , while great from evolutionary point of view, its the complete opposite. Where the crowd gathers online is the most dangerous place.

tom1337•20m ago
Looking at the setup.js it seems to be an infostealer which posts the found details to a newly created github repo (on the victims account) or a command and control server. As far as I can tell it looks for github secrets and kubernetes cluster secrets.

Astronauts told to return to ISS after sheltering over air leak repairs

https://www.bbc.com/news/live/c4g44ew3g1kt
252•janpot•3h ago•164 comments

pg_durable: Microsoft open sources in-database durable execution

https://github.com/microsoft/pg_durable
161•coffeemug•2h ago•40 comments

Gemma 4 QAT models: Optimizing compression for mobile and laptop efficiency

https://blog.google/innovation-and-ai/technology/developers-tools/quantization-aware-training-gem...
108•theanonymousone•2h ago•18 comments

Conventional Commits encourages focus on the wrong things

https://sumnerevans.com/posts/software-engineering/stop-using-conventional-commits/
164•jsve•3h ago•118 comments

Adyen Selected as Payment Services Provider for GOV.UK Pay

https://www.adyen.com/press-and-media/adyen-payments-gov-uk
44•ChrisArchitect•1h ago•2 comments

Mouseless – keyboard-driven control of macOS/Linux/Windows

https://mouseless.click
317•riddley•2d ago•157 comments

Cloudflare CEO Is Lying to You About the Bot Traffic Jump

https://www.flyingpenguin.com/cloudflare-ceo-is-lying-to-you-about-the-bot-traffic-jump/
29•speckx•53m ago•7 comments

I tested every IP KVM in my Homelab

https://www.jeffgeerling.com/blog/2026/i-tested-every-ip-kvm/
146•vquemener•4h ago•42 comments

New method turns ocean water into drinking water, without waste

https://www.rochester.edu/newscenter/what-is-desalination-definition-ocean-water-704732/
58•speckx•3h ago•27 comments

Mantine-datatable (and others) compromised – owner account suspended

https://github.com/icflorescu/mantine-datatable/discussions/813
38•justsomehuman•2h ago•10 comments

Launch HN: General Instinct (YC P26) – Frontier models on edge devices

22•guanming0717•2h ago•9 comments

Cooldown Support for Ruby Bundler

https://blog.rubygems.org/2026/06/03/cooldown-let-new-gems-be-vetted.html
112•calyhre•2d ago•27 comments

My Agent Skill for Test-Driven Development

https://www.saturnci.com/my-agent-skill-for-test-driven-development.html
11•laxmena•1d ago•0 comments

Tracing a powerful GNSS interference source over Europe

https://arxiv.org/abs/2606.03673
314•mimorigasaka•10h ago•158 comments

Did Claude increase bugs in rsync?

https://alexispurslane.github.io/rsync-analysis/
96•logicprog•6h ago•91 comments

Do the Hardest Thing

https://justinjackson.ca/hard-thing
14•levhawk•1d ago•4 comments

Inside FAISS: Billion-Scale Similarity Search

https://fremaconsulting.ch/blog/faiss
6•tohms•1d ago•0 comments

Gov.uk goes Dutch on payments as it dumps Stripe

https://www.theregister.com/public-sector/2026/06/04/govuk-goes-dutch-on-payments-as-it-dumps-str...
86•toomuchtodo•1h ago•25 comments

Sakana AI's Recursive Self-Improvement (RSI) Lab

https://sakana.ai/rsi-lab/
10•hardmaru•1h ago•7 comments

Nango (YC W23, dev infra) is hiring staff back end engineers

https://nango.dev/careers
1•bastienbeurier•6h ago

Redis 8.8: New array data structure, rate limiter, performance improvements

https://redis.io/blog/announcing-redis-8-8/
175•ksec•2d ago•80 comments

India's surprise baby bust

https://www.economist.com/leaders/2026/06/04/indias-surprise-baby-bust-is-a-warning-to-the-world
49•hakonbogen•4h ago•185 comments

Dutch gov't will only allow European company to operate DigiD platform

https://nltimes.nl/2026/06/05/dutch-govt-will-allow-european-company-operate-digid-platform
165•TechTechTech•4h ago•55 comments

C++: The Documentary

https://herbsutter.com/2026/06/04/c-the-documentary-released-today/
319•ingve•14h ago•235 comments

Show HN: Lowfat – pluggable CLI filter that saved 91.8% of my LLM tokens

https://github.com/zdk/lowfat
60•zdkaster•9h ago•45 comments

Entanglement Builds Space-Time. Now "Magic" Gives It Gravity

https://www.quantamagazine.org/entanglement-builds-space-time-now-magic-gives-it-gravity-20260603/
133•rbanffy•10h ago•140 comments

Changing how we develop Ladybird

https://ladybird.org/posts/changing-how-we-develop-ladybird/
732•EdwinHoksberg•11h ago•482 comments

"Maybe later" was a feature

https://arnorhs.dev/posts/2026-06-04/maybe-later-was-a-feature/
5•arnorhs•1d ago•0 comments

South Korean forums will need to scan every images with AI censorship tools

https://discuss.privacyguides.net/t/south-korean-online-communities-will-need-to-scan-every-image...
178•Cider9986•19h ago•123 comments

Ask HN: What is your (AI) dev tech stack / workflow?

87•dv35z•3h ago•68 comments