rust-lang/rust is adopting an LLM policy

rust-lang/rust is adopting an LLM policy

✨ Explore this awesome post from Hacker News 📖 📂 **Category**: ✅ **What You’ll Learn**: Aug. 5, 2026 · Jynn Nelson Recently, five teams in the Rust project adopted a policy that I originally authored, governing how Large Language Models can be used when contributing to the rust-lang/rust monorepo. Notably, the new policy is not an official stance on LLMs, and does not apply everywhere in the Rust project. I wrote it for a very specific purpose, described below. This post talks about why we created that policy, what it says, and how this will affect contributors. The policy affects…
Read More

Hartwork Blog · libexpat now funded by the City of Munich for up to 6 months

💥 Explore this must-read post from Hacker News 📖 📂 **Category**: 📌 **What You’ll Learn**: For readers new to Expat: libexpat is a fast streaming XML parser. Alongside libxml2, Expat is one of the most widely used software libre XML parsers written in C, specifically C99. It is cross-platform and licensed under the MIT license. Starting 2026-08-01, the "security vacation" of the project has ended and(!) I will be be paid to work on maintaining libexpat for up to 6 months thanks to the City of Munich under the umbrella of their Open Source Sabbatical program.What does that mean? For…
Read More
Carloscodix/qapla: A char-level transformer trained from scratch on an $8 ESP32-S3. Not inference: the chip runs the full training loop, with backprop written by hand in C. · GitHub

Carloscodix/qapla: A char-level transformer trained from scratch on an $8 ESP32-S3. Not inference: the chip runs the full training loop, with backprop written by hand in C. · GitHub

🔥 Explore this insightful post from Hacker News 📖 📂 **Category**: 📌 **What You’ll Learn**: This text was written with the assistance of an AI. Careful: assistance doesn't mean the AI wrote it. It means it corrected, reviewed and filled in some parts, but the author is human (or so I believe). Léeme en español This is how you train a transformer from scratch on an eight-buck ESP32-S3. The (Klingon) GPT nobody asked for but everybody needed. And why did we need it? Because we take for granted that training a model requires a GPU or a datacenter. Not always:…
Read More
The auto industry is building for a past that’s never coming back

The auto industry is building for a past that’s never coming back

💥 Discover this trending post from Hacker News 📖 📂 **Category**: 💡 **What You’ll Learn**: Listen to the article 4 min This audio is auto-generated. Please let us know if you have feedback. Editor’s note: John McElroy is the president of BlueSky Productions, which produces Autoline Daily, and a longtime opinion columnist for WardsAuto. Views expressed here are his own. Take a look around the American automotive landscape, and you’ll see an industry acting as if new-car sales will grow forever. Before the decade is out, seven brand-new assembly plants are scheduled to come online in the United States alone.…
Read More

FIPS 140-3 is not a security guarantee, and auditors know it · 808bits

🔥 Check out this must-read post from Hacker News 📖 📂 **Category**: 📌 **What You’ll Learn**: A sales engineer at one of the major HSM vendors told me recently that over 90 percent of their customers who buy FIPS-enabled HSMs run them with FIPS mode disabled. They pay a premium for the certificate, then switch off the configuration it describes. By the end of this article you will understand why that is often the correct engineering decision. On September 21, 2026, every remaining FIPS 140-2 certificate moves to NIST’s historical list, and modules on that list should no longer be…
Read More
IP and DNS Leaks in WebKit Affecting Proxy Browsers and Apple iCloud Private Relay

IP and DNS Leaks in WebKit Affecting Proxy Browsers and Apple iCloud Private Relay

🚀 Explore this trending post from Hacker News 📖 📂 **Category**: 💡 **What You’ll Learn**: Like our research? Try Psylo. Psylo is our privacy-first browser for iOS and iPadOS, with a built-in proxy network, per-tab isolated web sessions, and anti-fingerprinting. Using it helps fund more work like this. Read why we built it → Download Psylo → Summary# Our proof-of-concept website leaks.psylo.app that detects the leaks WebKit-based browsers on iOS and macOS can be built to route all web traffic through proxy servers. This is how all proxy browsers work on iOS, including iOS Tor browsers and our own browser,…
Read More
The Future of Flowise

The Future of Flowise

🔥 Read this awesome post from Hacker News 📖 📂 **Category**: 💡 **What You’ll Learn**: Hey everyone,When we started Flowise, we wanted to make building AI apps easier and more fun for everyone. Seeing what you've built, from simple bots to massive workflows has truly been the best part of this journey. You have made this project what it is today.Over the last few months, we've noticed a significant shift in how people build. As AI models become more capable at reasoning, we've noticed that developers are increasingly relying on new coding agents such as Claude Code/OpenClaw to handle complex…
Read More

Bugtraq is back – Bugtraq

💥 Explore this awesome post from Hacker News 📖 📂 **Category**: ✅ **What You’ll Learn**: In 1993, Scott Chasin created Bugtraq as a place for full disclosure - a mailing list where security researchers could publish vulnerabilities openly, without gatekeepers, without politics. For over a decade, it was the heartbeat of vulnerability research. If something mattered in security, it was on Bugtraq first. Then it went quiet. The domain changed hands through a chain of acquisitions, and somewhere along the way, Bugtraq stopped being Bugtraq. The archives went dark. The list went silent. A generation of researchers grew up without…
Read More
A Novel Attack Surface in Passwordless Authentication

A Novel Attack Surface in Passwordless Authentication

💥 Explore this awesome post from Hacker News 📖 📂 **Category**: 💡 **What You’ll Learn**: Executive Summary This article analyzes new attack classes against passwordless authentication, focusing on Google’s synced passkey ecosystem and the Cloud Authenticator used by desktop clients. The attacks demonstrate how malware on a compromised endpoint can misuse onboarding, recovery and device trust workflows to take over passkey-protected accounts. We show how an attacker can authenticate without user interaction, bypass user verification requirements and extract all synced passkey private keys. After decades of breaches and billions in losses, the attack vectors that defined the era of passwords…
Read More
AI fuels more than half of cybercrime in Africa as digital scams surge, INTERPOL

AI fuels more than half of cybercrime in Africa as digital scams surge, INTERPOL

🔥 Discover this must-read post from Hacker News 📖 📂 **Category**: 📌 **What You’ll Learn**: Artificial intelligence is now powering more than half of reported cybercrime across Africa, allowing criminals to launch faster, more convincing and larger-scale attacks, according to INTERPOL's African Cyberthreat Assessment Report 2026. The report found that 55% of cybercrime cases recorded across the continent involve the use of AI, raising concerns as Africa's digital economy continues to expand. With more than 1.1 billion mobile subscribers in 2025, millions of people are relying on digital services, creating new opportunities for both innovation and cybercriminals. Based on data…
Read More