frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Aikido Code Audit

https://www.aikido.dev/blog/introducing-code-audit-find-complex-vulnerabilities-hidden-in-your-codebase
22•ilreb•3h ago

Comments

_def•2h ago
This is marketed as a defensive tool, but how do you prove that you check against "your" source code?
Shanyao•2h ago
Looks like a solid bridge between SAST and manual review. Will check it out.
shireboy•2h ago
We’ve been using aikido code scanning and pen test tools and been pretty impressed. Will have to take a look at this.
leetrout•1h ago
I'm building a competing product and am curious if you'd be up for a conversation about what you've enjoyed best about Aikido and, importantly, what gaps are still not covered.
joshuat•2h ago
This looks promising, but I find it a little odd to bury the bulk of plan limitations under "fair-usage limits". When the limitations are specifically coupled to plans, it feels less like an FUP and more like plan-specific caps that should be surfaced more directly.
woodruffw•1h ago
As with so much (LLM) security work, the devil is in the details: "~25 security issues per codebase" means nothing without a grounding in the codebase's actual security model, capabilities exposed to an attacker, etc. I haven't used Aikido's product, but my experience with similar tools is that tend to not find actual security issues until a proper security model is introduced for grounding.

(I say this as someone who is, broadly, extremely impressed by and interested in the use of LLMs for security research.)

MeetingsBrowser•1h ago
> logic based vulnerabilities like a ReDoS pattern identified from source without live exploitation, or an admin-only route that's never been exercised

The two classes of vulnerability given as examples are the exact kind of issue I probably don’t care about, and are not grounded in an actual security model

Jimmc414•1h ago
“But it appears 1 or more organizations have successfully jail-broken Fable 5”

This is hardly true or it’s true of all frontier models and this was only magnified by Fables capabilities. It’s that you could hand Fable 5 vulnerable code, ask it to fix it, return patch plus test cases proving the fix and exploit relevant detail falls out as a byproduct of legitimate secure code review work.

I challenge anyone to provide a fix for this “exploit” without compromising Fable’s ability to patch unsecure code.

How to feed a dictator

https://www.theguardian.com/film/2026/jun/09/how-to-feed-a-dictator-film
87•Michelangelo11•2h ago•32 comments

Think of the children: How to force real ID for all internet traffic (2023)

https://nochan.net/b/Internet-Crap/20230829-Think-Of-The-Children/
142•Bender•7h ago•84 comments

There are no instances in ATProto

https://overreacted.io/there-are-no-instances-in-atproto/
364•danabramov•12h ago•201 comments

Norway imposes near ban on AI in elementary school

https://www.reuters.com/technology/norway-imposes-near-ban-ai-elementary-school-2026-06-19/
494•ilreb•11h ago•341 comments

Surprising Economics of Load-Balanced Systems

https://brooker.co.za/blog/2020/08/06/erlang.html
54•KraftyOne•7h ago•15 comments

I used sound waves to make espresso

https://theconversation.com/i-used-sound-waves-to-make-espresso-it-could-cut-coffee-brewing-energ...
213•zeristor•6d ago•143 comments

Hyundai buys Boston Dynamics

https://startupfortune.com/hyundai-takes-full-control-of-boston-dynamics-as-softbank-exits-for-32...
697•ck2•11h ago•318 comments

Aikido Code Audit

https://www.aikido.dev/blog/introducing-code-audit-find-complex-vulnerabilities-hidden-in-your-co...
23•ilreb•3h ago•8 comments

Data Compression Explained

https://mattmahoney.net/dc/dce.html
8•mtdewcmu•3d ago•0 comments

Digital Printing of Arabic: explaining the problem

https://digitalorientalist.com/2017/08/21/digital-printing-of-arabic-explaining-the-problem/
29•a_t48•3d ago•4 comments

Bobby Prince, composer for Doom, Wolfenstein 3D, and Duke Nukem 3D, has died

https://www.legacy.com/legacy/robert-bobby-prince-lll
241•pgrote•8h ago•28 comments

Hey, n00b, we didn't hire you to complete tasks

https://newsletter.kentbeck.com/p/hey-n00b-we-didnt-hire-you-to-complete
101•rrvsh•3h ago•49 comments

Project Valhalla, Explained: How a Decade of Work Arrives in JDK 28

https://www.jvm-weekly.com/p/project-valhalla-explained-how-a
548•philonoist•20h ago•339 comments

How many of the 170k English words do you know?

https://vocabowl-870366514258.us-west1.run.app/
252•abnry•13h ago•366 comments

Egyptian Fractions

https://blog.plover.com/math/egyptian-fractions.html
70•luu•4d ago•2 comments

DuckDB Internals Part 1

https://www.greybeam.ai/blog/duckdb-internals-part-1
444•marklit•3d ago•131 comments

A Perceptron in Age of Empires II

https://adewynter.github.io/notes/aoe2-circuits
32•EvgeniyZh•1d ago•11 comments

John Jumper to join Anthropic

https://twitter.com/JohnJumperSci/status/2068001285173834106
83•artninja1988•9h ago•59 comments

Ask HN: Will programmers write more efficient code during the memory shortage?

44•amichail•4h ago•71 comments

Telescope Ranchers

https://kottke.org/26/06/telescope-ranchers
107•bookofjoe•3d ago•42 comments

Big Banana Car

https://bigbananacar.com/
122•Bender•9h ago•73 comments

RhinoCollab a plugin for real-time editing for Rhino 3D

https://rhinocollab.com
21•Ashxius•5d ago•4 comments

Court Records Should Be Free

https://www.eff.org/deeplinks/2026/06/court-records-should-be-free
271•hn_acker•10h ago•56 comments

Zenzizenzizenzic

https://en.wikipedia.org/wiki/Zenzizenzizenzic
80•gyosifov•5h ago•22 comments

A 1976 university experiment spun up the U.S. wind industry

https://spectrum.ieee.org/william-heronemus-wind-energy
75•pseudolus•4d ago•7 comments

Show HN: Metiq: a real time 3D globe for 100 public datasets

https://metiq.space
95•rakeda•3d ago•29 comments

Building a robotics research setup that lives next to my desk

https://dfdxlabs.com/research/2026/robotics-setup/
122•mplappert•1d ago•40 comments

Zen and the Art of Machine Learning Research

https://blog.jxmo.io/p/zen-and-the-art-of-machine-learning
238•jxmorris12•4d ago•82 comments

Ten years of ClickHouse in open source

https://clickhouse.com/blog/open-source-10
283•saisrirampur•4d ago•72 comments

To study how chips work, MIT researchers built their own operating system

https://news.mit.edu/2026/to-study-how-chips-really-work-mit-researchers-built-their-own-operatin...
357•speckx•4d ago•54 comments