frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

AI agent runs amok in Fedora and elsewhere

https://lwn.net/SubscriberLink/1077035/c7e7c14fbd60fae9/
111•tanelpoder•2h ago

Comments

ruguo•1h ago
Prompt injection?

Or is this simply another example of why autonomous agents shouldn't get write access before earning trust?

pianopatrick•1h ago
"Someone using an AI agent ran amok in Fedora and elsewhere"
scared_together•48m ago
Read closer - Giovanni’s accounts may have been compromised.
pianopatrick•14m ago
Sure, but I would expect that the compromise and the agent were both done by some person or group, not by an agent going rogue
blop•1h ago
looks like LLMs aren't mature enough yet to play long-game xz-style attacks without detection... Scary stuff though :( These supply chain attacks are getting really wild
12_throw_away•1h ago
In their suspicious message [1] claiming to have been hacked, the user and/or agent says

> To help identify accounts and actions that have been directly verified by me, I will use the term “NATCIOS” to indicate anything I have personally verified.

Does anyone have any idea what "NATCIOS" means here? I cannot find this term anywhere on the internet. (Honestly, that sentence is really weird. I almost wonder whether this is someone experiencing a health episode?)

[1] https://lwn.net/ml/all/AS8PR08MB6055AE3054B34F6A567AC95BCF08...

scared_together•46m ago
And what’s stopping an AI agent from throwing in a casual NATCIOS here and there?
numbsafari•38m ago
I too have see the fnords
nine_k•29m ago
Likely the point of NATCIOS is exactly in being a made-up word not found anywhere, so a model won't utter it.
Terr_•23m ago
Because I'm probably not the only one thinking it, here are anagrams [0] for your Setec Astronomy needs.

[0] https://wordsmith.org/anagram/anagram.cgi?anagram=NATCIOS&t=...

aquariusDue•1h ago
At first I wanted to make a silly joke along the lines of "get your agents in line and behaving!" but as I read on it became a pretty scary situation.

Setting aside the potential supply chain attack I'm worried about the time lost going around these wild goose chases that unsupervised AI agents tend to throw other people on the receiving end on. Not only is there a lot of time lost on the maintainers side if they take this stuff seriously (and they seem to generally do) but on the side of the agents' wrangler how can they deem it OK to treat other people like this? While the solution would be to employ common decency, the tried and tested approach of you put in effort to write this so I guess I'll make some effort to read it, I feel that due to the onslaught of this kind of drive-by contributions (I think people have generally started to call them) will lead to a funny situation of having agents talk to each other on public forums basically.

Anyway, I went on a tangent but man the times we're living in are a bit extra wild compared to the previous wild times in recent history.

luk212•59m ago
Bad patches are of course bad, but creating confident-looking noise for maintainers who are already stretched thin...now that's not good!

Issue trackers and PRs are definitely getting harder and harder to trust. That said, AI is helping ALOT in OSS, but we definitely need guardrails around provenance, automated issue actions, and sudden changes in a contributor’s behavior.

g-b-r•12m ago
How is it helping a lot?
darknavi•10m ago
I personally find the barrier of starting new (FOSS) projects much lower now days.
g-b-r•6m ago
And how's the quality of these vibe-coded new foss projects?
Waterluvian•4m ago
Do they have value? Purpose?

I vibe code shop jigs all the time but I don’t FOSS them because they rarely have value outside my context.

keyle•56m ago
There is a natural pace of humans requiring food, water and sleep. The main issue with suspicious AI agents is that they never sleep. So it will take extra-coordination between timezones to ensure we don't let them in.

Fundamentally, until we can really prove we're humans online, open-source has a real problem on its hands. Contributions from people from identities known and consistent before the AI-age are fine, everyone else is suspicious. LGTM is a big risk nowadays.

scared_together•43m ago
> Contributions from people from identities known and consistent before the AI-age are fine

Unfortunately, according to the article:

> Giovannini has participated in discussions at least as far back as 2018, and his activity in Bugzilla goes back to at least 2016. He does not appear to have been a particularly active contributor to the project, but his involvement clearly predates the agentic AI era. Whether his account is now being operated by a human attacker, an agentic AI, or a mix of both, it has a legitimate history prior to its recent activity.

So people would have to not only verify the age of Giovanni’s accounts, but judge whether his behaviour was normal.

no-name-here•11m ago
The senders name is Nathan - maybe NAThan Confirmed Information Or Something? Ha.

(Above is my own guess. Separately, Gemini Pro said it was just a made up word.)

ndiddy•2m ago
The reply to that message notes that the email doesn't read like previous emails he's sent, and the Github account mentioned was created an hour prior to the email being sent. I think it's at least somewhat feasible that it's still the LLM writing, and the acronym is just something it made up.

AI agent runs amok in Fedora and elsewhere

https://lwn.net/SubscriberLink/1077035/c7e7c14fbd60fae9/
111•tanelpoder•2h ago•20 comments

Cybersecurity researchers aren't happy about the guardrails on Anthropic's Fable

https://techcrunch.com/2026/06/10/cybersecurity-researchers-arent-happy-about-the-guardrails-on-a...
234•speckx•9h ago•225 comments

πFS

https://github.com/philipl/pifs
534•helterskelter•7h ago•137 comments

A Written Language for the Cherokee So Efficient It Was Thought to Be Magic

https://www.smithsonianmag.com/innovation/man-created-written-language-cherokee-did-efficiently-e...
103•grahambargeron•4h ago•61 comments

Anthropic requires 30 day data retention for Fable and Mythos

https://support.claude.com/en/articles/15425996-data-retention-practices-for-mythos-class-models
201•lebovic•1d ago•84 comments

Vacuum-Form Signage

https://bethmathews.substack.com/p/the-history-behind-the-signs-lighting
15•benbreen•23h ago•2 comments

I'm Eric Ries, author of "The Lean Startup" and new book "Incorruptible" – AMA

537•eries•11h ago•431 comments

Klondike Solitaire game for curses in 5k of C

https://nanochess.org/klondike_in_c.html
15•nanochess•2d ago•0 comments

How JPL keeps the 13-year-old Curiosity rover doing science

https://spectrum.ieee.org/curiosity-rover-jpl-mars-science
176•pseudolus•8h ago•38 comments

PgDog is funded and coming to a database near you

https://pgdog.dev/blog/our-funding-announcement
393•levkk•12h ago•199 comments

L'Affaire Siloxane

https://mceglowski.substack.com/p/laffaire-siloxane
160•idlewords•1d ago•25 comments

What is it like to be a bat? (1974) [pdf]

https://www.sas.upenn.edu/~cavitch/pdf-library/Nagel_Bat.pdf
66•shadow28•5h ago•55 comments

GeoLibre 1.0

https://geolibre.app/
158•jonbaer•8h ago•11 comments

Show HN: Extend UI – open-source UI kit for modern document apps

https://www.extend.ai/ui
157•kbyatnal•10h ago•40 comments

Raspberry Pi 5 – 16GB RAM

https://www.adafruit.com/product/6125?src=raspberrypi
175•akman•6h ago•199 comments

Deficient executive control in transformer attention

https://academic.oup.com/pnasnexus/article/5/6/pgag149/8698838
18•derbOac•2h ago•4 comments

Who's the smartest corvid?

https://thetyee.ca/Culture/2026/06/05/Whos-the-Smartest-Corvid/
72•NaOH•1d ago•59 comments

Farmer donates land for a park, city sells it for $10M as data center land

https://www.tomshardware.com/tech-industry/farmer-donates-land-for-a-park-city-sells-it-for-data-...
427•maxloh•7h ago•221 comments

World Capitals Voronoi

https://www.jasondavies.com/maps/voronoi/capitals/
40•vincnetas•2d ago•18 comments

Building an HTML-first site doubled our users overnight

https://mohkohn.co.uk/writing/html-first/
1005•edent•13h ago•459 comments

Show HN: HelixDB – A graph database built on object storage

https://github.com/HelixDB/helix-db/tree/main
94•GeorgeCurtis•10h ago•31 comments

Computer Lessons

https://technicshistory.com/2026/06/06/computer-lessons/
9•cfmcdonald•4d ago•0 comments

Claude Desktop spawns 1.8 GB Hyper-V VM on every launch, even for chat-only use

https://github.com/anthropics/claude-code/issues/29045
350•tonyrice•9h ago•245 comments

Notes on DeepSeek

112•vinhnx•12h ago•75 comments

Apache Burr: Build reliable AI agents and applications

https://burr.apache.org/
176•anhldbk•11h ago•92 comments

Unix GC Remastered

https://mohandacherir.github.io/Qdiv7/posts/unix_new_gc/
13•mananaysiempre•3h ago•2 comments

Authentication issues related to API requests

https://www.githubstatus.com/incidents/fcj3088jg1wx
153•Multicomp•10h ago•30 comments

All 9,300 Japanese train station, animated by the year it opened (1872–2026)

https://jivx.com/eki
200•momentmaker•14h ago•69 comments

Why are there so many canines in fine art?

https://www.theatlantic.com/magazine/2026/07/the-dogs-gaze-thomas-w-laqueur/687312/
15•prismatic•3d ago•14 comments

Smudging the game disc to make speedrunning 'SpongeBob' faster

https://www.inverse.com/input/gaming/the-dirty-secret-that-makes-speedrunning-on-spongebob-a-lot-...
78•pncnmnp•1d ago•44 comments