frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

GM Backs Sodium Ion Batteries for U.S. Grid Storage

https://spectrum.ieee.org/sodium-ion-battery-peak-energy
68•rbanffy•1h ago•19 comments

Did They Ghost You?

https://didtheyghostyou.com/
148•mooreds•3h ago•53 comments

The new rules of context engineering for Claude 5 generation models

https://claude.com/blog/the-new-rules-of-context-engineering-for-claude-5-generation-models
109•mellosouls•2h ago•55 comments

Stolen Buttons

https://anatolyzenkov.com/stolen-buttons
513•Gecko4072•5d ago•119 comments

SIMD for Collision

https://box2d.org/posts/2026/07/simd-for-collision/
24•birdculture•3d ago•5 comments

Producing ammonia and fertiliser using wind power in Morris, Minnesota

https://ammoniaenergy.org/articles/flexible-renewable-ammonia-demonstrator-now-operational-in-min...
71•gritzko•3h ago•40 comments

Multicast TV Distribution on My Home Network

https://www.apalrd.net/posts/2026/isp_mcast/
20•mrngm•2h ago•3 comments

Show HN: I made some transistor animations

https://brandonli.net/semisim/animations
103•stunningllama•1d ago•10 comments

Show HN: Brolly, a plain-text weather forecast site

https://brolly.sh/forecast/RWFP2qW8
101•jsax•5h ago•32 comments

Clinical Failure Rates over the Decades: Yikes

https://www.science.org/content/blog-post/clinical-failure-rates-over-decades-yikes
4•EA-3167•25m ago•0 comments

General Resolution: LLM Usage in Debian

https://www.debian.org/vote/2026/vote_002
28•zdw•3h ago•10 comments

Open-weight AI is having its Kubernetes moment

https://tobi.knaup.me/2026-07-25-open-weight-ai-is-having-its-kubernetes-moment/
284•tknaup•8h ago•232 comments

Zero roadkill as Amazon canopy bridges secure 15,000 crossings

https://news.mongabay.com/2026/07/zero-roadkill-as-amazon-canopy-bridges-secure-15000-crossings/
252•hn_acker•3d ago•79 comments

Bitchat is now on Radicle

https://radicle.network/nodes/rosa.radicle.network/rad%3Az2v9tRJz1oknFAqCSY5W5c76nVvm6
189•h1watt•10h ago•117 comments

Who does Anubis actually stop?

https://fzakaria.com/2026/07/09/who-does-anubis-actually-stop
31•type0•2h ago•37 comments

How My Images Are Dithered

https://dead.garden/blog/how-my-images-are-dithered.html
210•surprisetalk•3d ago•73 comments

Show HN: Writemark, a dependency free web component for inline Markdown editing

14•_boffin_•3h ago•5 comments

Show HN: Minesweeper Raycasted

https://claude.ai/public/artifacts/725f961b-09dc-4a66-8dac-8fefeeb69a1f
13•franze•3h ago•10 comments

Android May Soon Restrict On-Device ADB

https://kitsumed.github.io/blog/posts/android-may-soon-restrict-on-device-adb/
859•shscs911•16h ago•403 comments

Show HN: Yorishiro – a macOS terminal where AI agents live

https://github.com/sktkkoo/Yorishiro
28•hakumei•3d ago•7 comments

Running a 28.9M parameter LLM on an $8 microcontroller

https://github.com/slvDev/esp32-ai
19•boveyking•4h ago•0 comments

Bringing PyTorch Monarch to AMD GPUs

https://pytorch.org/blog/bringing-pytorch-monarch-to-amd-gpus-single-controller-distributed-train...
58•gmays•7h ago•6 comments

Show HN: GeoChess – open-source geography strategy game

https://geochess.org
4•spider-hand•5d ago•9 comments

Fly.io CEO Kurt Mackey is stepping down

https://fly.io/blog/kurt-scott-money-sprites/
116•subarctic•2h ago•71 comments

Kimi K3 built a Windows XP in browser

https://windows-xp.kimi.site/
29•boveyking•1h ago•15 comments

Building a Tiny 3D Renderer for a Tiny Handheld

https://saffroncr.itch.io/katavatis/devlog/1534514/building-a-tiny-3d-renderer-for-a-tiny-handheld
232•g0xA52A2A•3d ago•18 comments

Kyber (YC W23) Is Hiring a Head of Engineering

https://www.ycombinator.com/companies/kyber/jobs/FGmI8mx-head-of-engineering
1•asontha•11h ago

The growing vigilante movement to knock out Flock surveillance cameras

https://www.theguardian.com/us-news/ng-interactive/2026/jul/25/flock-surveillance-cameras
149•bookofjoe•4h ago•71 comments

The Dark Night of Mathematics

https://kirwinhampshire.substack.com/p/the-dark-night-of-mathematics
146•rmdmphilosopher•7h ago•171 comments

Spatial languages: Writing code in 2D

https://shukla.io/blog/2026-07/cccx.html
100•BinRoo•3d ago•37 comments
Open in hackernews

Who does Anubis actually stop?

https://fzakaria.com/2026/07/09/who-does-anubis-actually-stop
30•type0•2h ago

Comments

satvikpendem•1h ago
Exactly, it's the same as Cloudflare captchas where only certain blessed devices and browsers can seem to actually pass it. Ironically, adding Anubis accelerates the death of the open web.
grim_io•59m ago
Open to whom?

There can't be a truly open web if the guys with all the resources in the world have the incentive to absolutely crush you by draining all of your resources.

They won't crush you out of malice, but by accident, like an ant.

nitwit005•46m ago
Cloudflare got it's early business from sites being taken down by DDOS attacks. The early users of Anubis were often sites taken down by scrapers.

Not a fan of either solution, but the sites simply going offline does not promote an "open web" either.

mike_hock•18m ago
No, this is not the same as Cloudflare fascism. You're free to use any JS runtime to solve the challenge.
lrem•1h ago
Uh wait, a cookie that can be reused for a time to fetch the rest of the content? That's the exact opposite of what I'd intuitively want for this system...
recursivecaveat•9m ago
If you behave yourself and reuse the same cookie/IP instead of trying to hide your identity, other tools can be used to block you if your request volume is crazy. It also means regular people only have to solve once.
jdlshore•1h ago
Hmm, I don’t think I agree. The author is claiming that Anubis is meant to stop individuals using LLMs, but I don’t think that’s its purpose. I believe its purpose is to reduce mass scraping of data that puts excessive load on systems. It does that by increasing the cost of scraping, not by preventing it entirely.

Specifically, bad actors were ignoring robots.txt and rotating IPs to make blocking difficult. Anubis serves to make new connections more expensive, so that people will reuse a connection/cookie, and then falls back to normal means of preventing bad actors.

(That mass scraping is the result of AI training companies, yes, but it’s the mass scraping that’s the problem, not the LLMs.)

TomatoCo•1h ago
There's plenty of arguments that mass scrapers have compute to spare but it seems to me that if Anubis makes it 100x more expensive to scrape then, for any given scraping budget, that means you get scraped 100x less. Which is the difference between your server buckling under the load or continuing to serve reliably.
dullcrisp•13m ago
If compute isn’t the bottleneck then it wouldn’t make it 100x more expensive to scrape. Of course if it does, then it’ll be effective.
ddtaylor•56m ago
There is no distinction between the two. If one can do it the other can just as easily. I know multiple people right now that can scrape any a site very easily.

I do this at scale and it took me very little time to set up and almost no resistance. So anyone who thinks that this is difficult or you're preventing people from doing this at scale, you're wrong.

jsnell
cjd8•1h ago
Funny, I'm working on a simple tool that pulls the atom feed of the latest patches from lore with Python, and I just slip a User-Agent header into the requests.get() and it works great.
yellow_lead•1h ago
> The exact adversary Anubis targets defeats it trivially.

Wrong, anubis stops mass crawling of web pages, by requiring a proof of work, which makes accessing these websites more expensive.

Anubis was not built to stop individual users with llms.

drum55•56m ago
Claude Opus can make an optimized version of the proof of work solver that’s more than 10000x faster than the javascript one, in about 5 minutes time. Who is this stopping exactly? It’s the wrong tool in the wrong place.
Macha•50m ago
Practically, the people indiscriminately scraping don't bother to do the work to bypass it or implement the POW test, which results in reduced CPU load for all the properties that were having trouble with scrapers before. Until scrapers start implementing it en masse then, it still serves its purpose.
greyface-•39m ago
> Until scrapers start implementing it en masse

If it becomes widespread (as it has been doing), they will. Anubis' strategy only works while it remains a niche approach only adopted by a small number of sites.

Macha•27m ago
And then people will move to a new solution.

I think this is a pragmatist vs idealist debate. The pragmatic answer is that Anubis solves a problem now, and so it will be used until either it doesn't or a better solution presents itself. The idealist approach is that it's obvious that there's ways to get around Anubis, and so some people argue from there that it shouldn't be used. But the only other alternatives being offered are to either eat up the costs (in server resources or engineering time), or to go behind cloudflare with its own tradeoffs.

novafunc•1h ago
Anubis's primary goal is to prevent web scrapers from DDoSing a website. It's not meant to be an unbeatable challenge or only allow humans like Google's more privacy-invasive captchas.

You do the proof of work, you get the content. Not all web scrapers are willing to do the work, which reduces the strain put on web servers.

It's by no means a perfect system. It's goals in part prevent it from doing so. It tries to not be too annoying for humans, to not block real users, and not be privacy invasive.

what•10m ago
>tries not to be annoying

The little anime girl is pretty off putting. I bounce when I see it.

arn3n•7m ago
It’s meant to be both funny AND highly unprofessional; Anubis makes money of licensing a version of the firewall where you can change the image.

It’s a good strategy; personal websites and blogs can display the anime girl without fear, and companies that care about their image end up paying. Win-win.

throw0101d•54m ago
I was curious about the name:

> Anubis is a Web AI Firewall Utility that weighs the soul of your connection[1] using one or more challenges in order to protect upstream resources from scraper bots.

* https://anubis.techaro.lol/docs/

> The Weighing of the Heart would take place in Duat (the Underworld), in which the dead were judged by Anubis, using a feather, representing Ma'at, the goddess of truth and justice responsible for maintaining order in the universe. The heart was the seat of the life-spirit (ka). Hearts heavier than the feather of Ma'at were rejected and eaten by Ammit, the Devourer of Souls.

* https://en.wikipedia.org/wiki/Weighing_of_souls#Ancient_Egyp...

aboardRat4•45m ago
>>I was curious about the name:

That's knowledge usually learnt in primary school.

ThrowawayTestr•43m ago
I mean I know about the heart weighing thing but I'm pretty sure I didn't learn it in school.
theshackleford•36m ago
> That's knowledge usually learnt in primary school.

Perhaps where you reside, I’m unsure why you would believe it to be universal.

j-bos•31m ago
Or scholastic book fairs (showing my age)
nitwit005•51m ago
This mistakes the goal. It's not to block the scrapers, but to discourage excessive (and costly) scraping.

The Anubis cookies are bound to particular IP address. The scrapers are often using a large set of IP addresses, so they'll be paying a far higher cost than this suggests.

patchtopic•24m ago
perhaps the author, instead of the "I'm so clever" theoretical arguments from the client side, actually implemented Anubis on the server side and observe the results.

I have set it up on a few sites being relentlessly hammered by clearly idiotic bot traffic, and it drops bot the traffic levels from insane to manageable. I don't even care if the traffic is AI or bots, if the bot has gone to the same effort as the author has the bot may even just access the site in a responsible manner and that's fine.

PunchyHamster•15m ago
Well, my call on this thing being useless waste of time of everyone involved was correct. Compute wasted on AI tokens alone is probably far more than some cpu for token solving, better invest time into caching it well (or blocking agentic traffic entirely if that's your jam)
•
55m ago
Except it does not actually increase the cost of scraping meaningfully. Compute is really cheap. The compute for minting an Anubis cookie will cost less than a thousandth of a cent even assuming the attacker uses the same JS implementation of proof of work rather than an optimized native implementation. That cookie can then be used for hundreds of requests.

How big of a deterrent is a millionth of a cent per page going to be? A non-existent one. Just the bandwidth from a residential proxy will cost the scraper orders of magnitude more.

Proof of work just isn't a viable counter-abuse challenge, even for something as low-yield as scraping. (It might be economically viable as a counter against some types of DDoS attacks, since they're even lower yield. But in practice it just moves the attack surface to the proof of work validation service.)

ragall•38m ago
> How big of a deterrent is a millionth of a cent per page going to be? A non-existent one.

In practice, this would seem to be false, according to the admins of said sites.

xboxnolifes•37m ago
Your theoretical counterargument falls apart by the reality of just putting up anubis and comparing the before and after. I don't understand why this argument shows up in every thread about anubis. There are plenty of people and orgs who have empirical before and after results. We don't need theoretical arguments when there exists actual data.
greyface-•11m ago
Anubis is the penicillin of web hosting.

Every individual practitioner has a strong incentive to overuse it, because it's extremely effective for them individually. Every additional practitioner that uses it increases the selection pressure on their collective adversary to develop resistance. Eventually, it reaches a tipping point and becomes ineffective. But the ecosystem-level impact of its historical use remains, and makes things worse for everyone.

Recently, the baseline expectations of the Web have shifted, and I need to enable JavaScript to read a non-CloudFlare-proxied simple HTML site like LKML. I do not expect this shift will revert once Anubis outlives its effectiveness.

drum55•21m ago
The barrier is a two sentence prompt to Claude to add a patch to curl that does 500MH/s to the 50kh/s the javascript version does on the same hardware, it only works because it’s obscure and largely irrelevant.
PunchyHamster•14m ago
That was true but with AI that could be automated pretty easily. Sure, not worth for random blog but random blog won't get the traffic anyway
Kuinox•49m ago
The difficulty is increased when the server get heavy traffic.
drum55•24m ago
Then the only people who can use it are the ones with a GPU implementation.
Kuinox•10m ago
No, the value of scrapping the page is long gone and the scrapper would have moved on. The users would still access the page by waiting a bit.
Terr_•2m ago
[delayed]