Engineering &
Security Wire
Curated from Hacker News, Lobsters, Krebs on Security, and other top sources. Updated every 6 hours.
Scotty: A beautiful SSH task runner
Article URL: https://freek.dev/3064-scotty-a-beautiful-ssh-task-runner Comments URL: https://news.ycombinator.com/item?id=47589567 Points: 7 # Comments: 1
Show HN: Hyprmoncfg – Terminal-based monitor config manager for Hyprland
Article URL: https://paolino.me/hyprmoncfg-monitor-configuration-for-hyprland/ Comments URL: https://news.ycombinator.com/item?id=47589451 Points: 6 # Comments: 3
TrueConf Zero-Day Exploited in Attacks on Southeast Asian Government Networks
A high-severity security flaw in the TrueConf client video conferencing software has been exploited in the wild as a zero-day as part of a campaign targeting government entities in Southeast Asia dubbed TrueChaos. The vulnerability in question is CVE-2026-3502 (CVSS score: 7.8), a lack of integrity check when fetching application update code, allowing an attacker to distribute a tampered update,
Securing Elliptic Curve Cryptocurrencies Against Quantum Vulnerabilities [pdf]
Article URL: https://quantumai.google/static/site-assets/downloads/cryptocurrency-whitepaper.pdf Comments URL: https://news.ycombinator.com/item?id=47589370 Points: 8 # Comments: 1
Agent-driven development in Copilot Applied Science
I used coding agents to build agents that automated part of my job. Here's what I learned about working better with coding agents. The post Agent-driven development in Copilot Applied Science appeared first on The GitHub Blog.
Software You Can Love 2026 tickets are on sale
Comments
Tell HN: Chrome says "suspicious download" when trying to download yt-dlp
On a newest version, I attempted to download newest yt-dlp only to be warned of "Suspicious Download". No explanation what that means was provided. Comments URL: https://news.ycombinator.com/item?id=47588658 Points: 170 # Comments: 51
Project Mario: the inside story of DeepMind
Article URL: https://colossus.com/article/project-mario-demis-hassabis-deepmind-mallaby/ Comments URL: https://news.ycombinator.com/item?id=47588632 Points: 5 # Comments: 0
The Subprime Technical Debt Crisis
Comments
GitHub Monaspace Case Study
Article URL: https://lettermatic.com/custom/monaspace-case-study Comments URL: https://news.ycombinator.com/item?id=47588349 Points: 49 # Comments: 19
Objections to systemd age-attestation changes go overboard
Comments
Good code will still win
Article URL: https://www.greptile.com/blog/ai-slopware-future Comments URL: https://news.ycombinator.com/item?id=47587953 Points: 9 # Comments: 9
Oracle slashes 30k jobs
Article URL: https://rollingout.com/2026/03/31/oracle-slashes-30000-jobs-with-a-cold-6/ Comments URL: https://news.ycombinator.com/item?id=47587935 Points: 554 # Comments: 435
Microsoft: Copilot is for entertainment purposes only
Article URL: https://www.microsoft.com/en-us/microsoft-copilot/for-individuals/termsofuse Comments URL: https://news.ycombinator.com/item?id=47587866 Points: 169 # Comments: 62
RubyGems Fracture Incident Report
Article URL: https://rubycentral.org/news/rubygems-fracture-incident-report/ Comments URL: https://news.ycombinator.com/item?id=47587631 Points: 41 # Comments: 4
Zml-smi: universal monitoring tool for GPUs, TPUs and NPUs
15 points, 3 comments on Hacker News
What changes when you turn a Linux box into a router
90 points, 23 comments on Hacker News
Vertex AI Vulnerability Exposes Google Cloud Data and Private Artifacts
Cybersecurity researchers have disclosed a security "blind spot" in Google Cloud's Vertex AI platform that could allow artificial intelligence (AI) agents to be weaponized by an attacker to gain unauthorized access to sensitive data and compromise an organization's cloud environment. According to Palo Alto Networks Unit 42, the issue relates to how the Vertex AI permission model can be misused
February in Servo: faster layout, pause and resume scripts, and more
Comments
The Claude Code Source Leak: fake tools, frustration regexes, undercover mode
4 points, 0 comments on Hacker News
Accelerating the next phase of AI
OpenAI raises $122 billion in new funding to expand frontier AI globally, invest in next-generation compute, and meet growing demand for ChatGPT, Codex, and enterprise AI.
Introducing Programmable Flow Protection: custom DDoS mitigation logic for Magic Transit customers
Magic Transit customers can now program their own DDoS mitigation logic and deploy it across Cloudflare’s global network. This enables precise, stateful mitigation for custom and proprietary UDP protocols.
Data Indexing in Golang
Comments
Open source CAD in the browser (Solvespace)
Article URL: https://solvespace.com/webver.pl Comments URL: https://news.ycombinator.com/item?id=47586614 Points: 156 # Comments: 48
Claude Code users hitting usage limits 'way faster than expected'
142 points, 117 comments on Hacker News
The AI Arms Race – Why Unified Exposure Management Is Becoming a Boardroom Priority
The cybersecurity landscape is accelerating at an unprecedented rate. What is emerging is not simply a rise in the number of vulnerabilities or tools, but a dramatic increase in speed. Speed of attack, speed of exploitation, and speed of change across modern environments. This is the defining challenge of the new era of digital warfare: the weaponization of Artificial Intelligence. Threat actors
Combinators
Article URL: https://tinyapl.rubenverg.com/docs/info/combinators Comments URL: https://news.ycombinator.com/item?id=47585974 Points: 88 # Comments: 24
Silver Fox Expands Asia Cyber Campaign with AtlasCross RAT and Fake Domains
Chinese-speaking users are the target of an active campaign that uses typosquatted domains impersonating trusted software brands to deliver a previously undocumented remote access trojan named AtlasCross RAT. "The operation covers VPN clients, encrypted messengers, video conferencing tools, cryptocurrency trackers, and e-commerce applications, with eleven confirmed delivery domains impersonating
Autoscaling CI for Gitea in Rust
Comments
Herbie: Automatically improve imprecise floating point formulas
4 points, 0 comments on Hacker News
Aggregated from public RSS feeds & the Hacker News API · All links point to original sources · Clawship does not republish full articles