frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Elevators

https://john.fun/elevators
239•Jrh0203•1h ago•88 comments

Big Food vs. the People

https://www.lighthousereports.com/investigation/big-food-vs-the-people/
34•jruohonen•57m ago•3 comments

DeepSeek V4 Flash 0731 Intelligence, Performance and Price Analysis

https://artificialanalysis.ai/models/deepseek-v4-flash
384•theanonymousone•9h ago•208 comments

DeepSeek-V4-Flash Update

https://api-docs.deepseek.com/updates/
533•dnhkng•10h ago•257 comments

Algorithms on billion-scale graph using 10GB RAM: I love DataFusion

https://semyonsinchenko.github.io/ssinchenko/post/datafusion-graphs-cc-2/
19•speckx•1h ago•3 comments

Miso (YC S16) is hiring for U.S. expansion

https://www.ycombinator.com/companies/miso/jobs/g2uAlMG-founding-business-lead-u-s-expansion
1•victorology•54s ago

Arch Linux disables AUR package adoption

https://lwn.net/Articles/1086489/
39•database64128•3h ago•9 comments

I built a f.lux alternative because the M5 Max firmware broke existing solutions

https://driftformac.app/
22•jackvanstone•1h ago•13 comments

A GTK4 SSH-askpass in Zig

https://xn--gckvb8fzb.com/a-gtk4-ssh-askpass-in-zig/
23•surprisetalk•1h ago•6 comments

The End of an Era

https://hughhowey.com/the-end-of-an-era/
282•harscoat•5h ago•320 comments

Make Everything to Markdown

https://klartext.it-handwerk-stuttgart.de/
20•Beko2210•1h ago•5 comments

13 Models and 4 Agents on SWE Tasks: Go, Java, Python, Rust, TS

https://swe-rebench.com
10•ibragim_bad•1h ago•3 comments

The session you cannot take with you

https://earendil.com/posts/session-portability/
667•apitman•13h ago•189 comments

Google fixed more Chrome bugs in June than over the past two years, thanks to AI

https://blog.google/security/chrome-stronger-with-every-update/
397•Garbage•9h ago•384 comments

The C ``Clockwise/Spiral Rule''

https://c-faq.com/decl/spiral.anderson.html
16•etrvic•3h ago•7 comments

Show HN: BitBang – Reach machines behind NAT from a browser, no account

https://github.com/richlegrand/bitbang-cli
11•narragansett•2h ago•1 comments

Is AI reasoning right for the wrong reasons?

https://www.quantamagazine.org/is-ai-reasoning-right-for-the-wrong-reasons-20260731/
65•retupmoc01•1h ago•66 comments

New Defcon Badges Pack a Unique Open-Source Chip That Doubles as a Security Key

https://www.wired.com/story/defcon-34-badge-baochip-andrew-bunnie-huang/
37•hn_acker•1h ago•7 comments

IMAX vs. IMAX 70mm: The difference between these two cinema formats

https://www.engadget.com/2220571/differences-between-imax-70mm/
46•ksec•6d ago•62 comments

Show HN: I built a cross-browser extension that controls fingerprinting surfaces

https://privacything.com/en/
13•tomaszjanusz•2h ago•2 comments

Anti-fraud tools can't keep pace with scammers exploiting cheap internet calling

https://broadbandbreakfast.com/how-to-fight-back-against-fraudulent-robocalls/
19•dredmorbius•3h ago•10 comments

Danube's record low levels force shutdown of Hungary's only nuclear plant

https://www.bbc.com/news/articles/cn0nqv05g0do
64•vrganj•9h ago•86 comments

The Maxwell Conjecture Is False (GPT 5.6 Sol)

https://arxiv.org/abs/2607.27197
106•rahen•5h ago•95 comments

The Art of Decision-Making (2019)

https://www.newyorker.com/magazine/2019/01/21/the-art-of-decision-making
8•EndXA•1h ago•0 comments

Situational Awareness down 67% in July in AI stock rout

https://www.wsj.com/finance/investing/situational-awareness-down-67-in-july-in-ai-stock-rout-cd19...
106•pondsider•3h ago•105 comments

Winding Down Artichoke Ruby

https://hyperbo.la/w/winding-down-artichoke-ruby/
41•ksec•5d ago•4 comments

Moonshot’s Kimi uses 20k Nvidia chip cluster from Alibaba

https://www.bloomberg.com/news/articles/2026-07-31/moonshot-s-kimi-built-on-20-000-nvidia-chip-cl...
65•gk1•3h ago•42 comments

The most official water costs $120k a gallon

https://signoregalilei.com/2026/07/26/the-most-official-water-costs-120000-a-gallon/
19•surprisetalk•2h ago•2 comments

Dubious research tied to Red Bull has shaped energy drink policy

https://www.theexamination.org/articles/red-bull-funded-research-energy-drinks-alcohol
50•Jimmc414•1h ago•79 comments

Show HN: Gander, an Android file viewer that asks for no permissions at all

https://github.com/mokshablr/gander
173•mokshablr•11h ago•62 comments
Open in hackernews

Arch Linux disables AUR package adoption

https://lwn.net/Articles/1086489/
38•database64128•3h ago

Comments

delecti•38m ago
That title had me worried, but the reality seems quite reasonable.

I assumed the goal was to reduce usage of AUR, they've actually remove the ability to adopt (take ownership of) orphaned packages. I'm sure there are legitimate uses of that functionality, but it also seems like a pretty big avenue for abuse.

OJFord•27m ago
I've used it (not for abuse). It's simply volunteering to maintain the package after previous maintainer(s) have explicitly disowned it, knowing they no longer have time for it or don't care because they stopped using it, etc.
gchamonlive•13m ago
Problem is that there is no KYC process before someone can adopt any orphaned package
ameliaquining•24m ago
Yeah, the security problems with unilateral adoption of orphaned packages by unprivileged users are fundamental and unfixable; the only remedy is to remove the feature. Whether it has legitimate use cases (which it sounds like it does) is irrelevant. I'm not sure why it took them so long to realize this and act accordingly, but I'm glad they now have.
Sleaker•23m ago
I don't think any form of automated adoption of orphaned packages will ever work, it's just too easy to introduce malicious code into an otherwise functional but no longer maintained source.
WD-42•8m ago
I’ve been using arch for nearly 2 decades at this point. It’s amazing that the AUR went this long without any serious attacks.

It’s a different world now. I can’t help but feel there used to be honor among hackers. You didn’t go after your own. What kind of jerk would attack Arch Linux?

charcircuit•6m ago
Desktop Linux has always been a house of cards in regards to security. I agree it's amazing that it went on for so long, but this was inevitable.
charcircuit•8m ago
AUR should be scanning new uploads for malware before allowing them to be published.