Hacker Newsnew | past | comments | ask | show | jobs | submit | hm-nah's commentslogin

I’ve thought about a future where all audio is recorded (public, home, work, etc.). If this thing is real, it would allow comms in this dystopian vision. Boo


I got smooched by this mofo. Got an email from GitHub Sec saying a repo in my own account was deleted because of a known vuln.

My NX Console EXTENSION in VS Code was updated after the supply chain attack was initialized by the malicious actor.

The symptom, besides the email from GitSec, was all my terminals initialized prompted for sudo pw, because ~/.bashrc had sudo shutdown appended.


The Kaspersky article says the hackers were focused on crypto wallets, env vars, and ssh keys, but what about .azure/cache-tokens.json, .aws/creds, .gcp/creds, etc.?


And the worst toolchain+ecosystem award goes to...


…JavaScript or VS Code Extensions? (Or both)


Drum roll please...


Oly Chit! This is a BIG deal! Sub-page citations…in-context RAG…built-in HTML UI…this is like the holy grail of deterministic text extraction. I’m trying this ASAP Rocky.


Then watch…AWS will fix it and not tell you at all. Similarly, I found that Azure Functions were saving secrets in plaintext in the SCM blade even though the Function App itself was using Key Vault References! I throughly documented the issue, reproduced it with fresh infra, filed a bug bounty, etc. Only to have Microsoft say “It’s the intended behavior” and “That’s not applicable for a bug bounty”, etc. Next month I checked the SCM area again…yeah, plaintext secrets were miraculously redacted. That’s the last time I hunt bugs for you MS!


It’s because this story hints at the concept of “Unmetered AI”. It can be easily hosted locally and run with a self-hosted LLM.

Wonder if Edison mentioned Nikola Tesla much in his writings?


Eh…everything but the Cloud Platform UI/UX/Usability front. GCP portal is a hot mess. It is far worse than Azure and slightly worse than AWS.


Ya know…you go once, drag your family to it, etc. It’s not a repeat excursion for locals. Without some serious interactive exhibit$, that attract schools of children, annually… doesn’t feel like a sustainable business model. Especially with that price tag. Maybe more of an add-on room to the Museum of History and Industry.


Maybe I’m the exception but I went maybe 30 or 40 times. There was so much joy in sharing my childhood with my child. Also the small gift shop had someone who knew their obscure technology history book, I must have bought 10 books from that shop.


A museum does not need a business model, per-se. If it goes in the national interest it should be preserved by the country.


And a tad more risk


For me, visiting this site crashes Firefox on iOS.


Smells like a knowledge graph


Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: