frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

License Plate Reader Searches Should Require a Warrant

https://andrewpwheeler.com/2026/08/12/license-plate-reader-searches-should-require-a-warrant/
134•apwheele•46m ago•46 comments

2026 Eclipse Webcams

https://jonty.github.io/2026_eclipse_webcams/
311•zoenolan•3h ago•72 comments

Obituary: AmigaDOS developer Dr. Tim King has passed away

https://amiga-news.de/en/news/AN-2026-08-00070-EN.html
66•doener•1h ago•13 comments

Tailscale Traces Database Corruption to 16y/o SQLite WAL-Reset Bug

https://tailscale.com/blog/sqlite-wal-reset-bug
80•ropbear•1h ago•8 comments

Someone is running mass vulnerability scans, spoofing AI bots like ClaudeBot

https://knownagents.com/insights
45•gavinhking•1h ago•12 comments

Why Tiny JPEGs Look Different in Chrome

https://guillaumetech.github.io/posts/jpg-scaling-chrome/
79•gutechh•1h ago•12 comments

GiveCampus (YC S15) Is Hiring Engineering Managers

https://job-boards.greenhouse.io/givecampus/jobs/4112793009
1•mkong1•34m ago

AI is removing the middle class of software engineering

https://blog.florianherrengt.com/ai-removing-middle-class-software-engineering.html
180•florianherrengt•2h ago•150 comments

What sort of maths are LLMs good at?

https://gowers.wordpress.com/2026/08/12/what-sort-of-maths-are-llms-good-at/
171•ColinWright•5h ago•75 comments

Automatic1111 for Apple metal, 40% speed up sd1.5

https://therad.ninja/from-8-10-seconds-to-3-7-teaching-automatic1111-to-speak-metal-on-an-m3-pro/
26•dmikey831•1h ago•5 comments

My Agent Setup

https://chad.cm/posts/2026-8-11-my-agent-setup
35•carimura•1h ago•15 comments

Show HN: Woxi - Open-source Mathematica / Wolfram Language reimplementation

https://woxi.ad-si.com
171•adius•5h ago•23 comments

Only 2.6% of the most visited websites have fully valid HTML

https://validatehtml.com/html-error-statistics
31•theo_dcrx•1h ago•36 comments

5th Heat Dome Expands Across Europe: 40°C+ Target Western and Central Europe

https://www.severe-weather.eu/global-weather/excessive-heat-dome-heatwave-western-europe-mid-augu...
68•robtherobber•3h ago•47 comments

Delphi 13 Community Edition Is Now Available

https://blogs.embarcadero.com/delphi-13-community-edition-is-now-available/
90•layer8•4h ago•69 comments

Shade Map

https://shademap.app
25•fredley•2h ago•6 comments

High-Res Photo Shows Sand-Capped Butte Rising from Mars Plain of Polygons

https://petapixel.com/2026/08/04/amazing-high-res-photo-shows-a-butte-rising-from-mars/
104•bookofjoe•6d ago•7 comments

Bigos (Polish Hunter's Stew) Recipe Builder

https://chefsbinge.com/bigos-recipe-builder/
43•doublepg23•5d ago•15 comments

uBlock Origin Is Giving Up the Fight to Keep Ads Off Facebook

https://digitalescapetools.com/2026/08/ublock-origin-stops-chasing-facebook-ads.html
42•Markoff•4h ago•27 comments

Qwen/Qwen3.8-2.4T-A95B

https://huggingface.co/Qwen/Qwen3.8-2.4T-A95B
31•Philpax•28m ago•1 comments

Launch HN: Discovered Materials (YC P26) – AI agents to discover new materials

https://discoveredmaterials.com/research/
47•advaith08•7h ago•13 comments

The Ultimate Horse

https://worksinprogress.co/issue/the-ultimate-horse/
21•Petiver•20h ago•3 comments

Facebook is paying controversial creators to produce rage-bait content

https://www.abc.net.au/news/2026-08-06/ragebait-how-facebook-is-paying-controversial-creators/106...
413•robtherobber•5h ago•268 comments

The hardest working font in Manhattan (2025)

https://aresluna.org/the-hardest-working-font-in-manhattan/
316•dcminter•5d ago•48 comments

Hax – a minimalist, terminal-native coding agent written in C

https://usehax.dev/
4•OleksandrC•46m ago•2 comments

Worms: The Future of Yesterday's Worms Today

https://worm.net/
123•doener•5d ago•44 comments

ArenaAllocators don't play nicely with ArrayLists

https://www.openmymind.net/Arena-Allocators-and-ArrayLists/
6•ibobev•5d ago•1 comments

German advocacy group lodges criminal complaint over Meta AI glasses

https://www.reuters.com/legal/government/german-advocacy-group-lodges-criminal-complaint-over-met...
37•tartoran•1h ago•11 comments

Commodore 8-Bit 5¼" Disk Images

https://www.masswerk.at/nowgobang/2026/commodore-disk-images
10•masswerk•1h ago•0 comments

I built a jellyfish laboratory in my backyard [video]

https://www.youtube.com/watch?v=MILwxfQBm6Q
31•surprisetalk•1w ago•2 comments
Open in hackernews

Someone is running mass vulnerability scans, spoofing AI bots like ClaudeBot

https://knownagents.com/insights
45•gavinhking•1h ago

Comments

Bender•1h ago
Many of those user-agents listed are often faked. Look up which ASN owns their IP. If I block most VPS providers most of the faked bots vanish. There are still some running from residential and phones using hijacked code (readers that are not really just readers but really multipurpose proxies). On that note, do not trust the linked source code but rather decompile the live code your phone is running and have AI analyze it.
gavinhking•1h ago
Yeah, that's exactly what these visits are: faked user agents that fail IP verification or Web Bot Auth. What's interesting is the surge across so many websites in the last week.
Bender•53m ago
There are many possibilities but one of them could be some new vuln was released and they are looking for it. That would require looking at the URL's they are requesting. Botters run their own purpose built campaigns. Do you also have a summary of URL's requested by unique counts?
gavinhking•18m ago
Looks like many of the paths relate to AI coding tools. There are some examples below the chart
bflesch•18m ago
Same for the origin IP address. The fiber leaving your country is tapped, and those people can inject packets with any origin IP that they want. Your ISP has no way to check if their peer actually received a certain packet from a certain country or not.

From a technical perspective, all this "china/russia" attribution is built on a quite shaky foundation. As a sysadmin you'd never know if it would be the British crown attacking your European company instead.

Not minimizing nation state cyber crime here, but the packet goes through many hands with different incentives.

codegeek•13m ago
Is there an easy way to block any requests originating from VPS etc instead of residential/commercial IP from legitimate users ? I know cloudflare does a few things but I really want to figure out a way to block any request say at nginx or caddy (reverse proxy) from reaching origin servers if they are not from an IP that is not a VPS etc.
basilikum•4m ago
> /commercial IP from legitimate users

No, because legitimate users do not just use residential and "commercial" IPs. Like me, right now

pjc50•40m ago
Someone is always running mass vulnerability scans. That's a "water is wet" state of the Internet.
gavinhking•34m ago
Definitely, the point here though is there is a stat sig surge in the chart in the last week, across thousands of websites. At least a surge in this particular spoofing pattern.
yabones•38m ago
Every server with port 80/443 open has thousands of hits a day from random boxes looking for wordpress login pages. The only new thing is that they're pretending to be a different type of annoying bot. There's a new layer of sophistication and subterfuge, but it's the same junk traffic we've always dealt with.
gavinhking•31m ago
Another interesting thing here is the paths they're targeting, many are for newish AI coding tools
binaryturtle•25m ago
On average about 100 (TCP) requests hit my home router per minute doing various probing and scanning. Lots of checking for the telnet port obviously. Sometimes you can see a swarm of entirely different IPs scanning the full port range (probing the ports one-by-one).

You'll see a lot of deepfield, censys-scanner, visionheight.com, shadowserver.io, etc., but also the usual suspects of Chinese or Russian IPs.

With OpenWRT I use something like this: `tcpdump -i pppoe-wan 'inbound and tcp[tcpflags] & (tcp-syn|tcp-ack) == tcp-syn'`, or alternatively `tcpdump -i pppoe-wan 'inbound and tcp[tcpflags] & (tcp-syn|tcp-ack) == tcp-syn and not port 44000'`, if we have some torrent client running (e.g. here at port 44000) which would mess up the result. I'm not sure it's the best way to handle this, but it's definitely enlightening what bounces off on the router.