Engineering &
Security Wire
Curated from Hacker News, Lobsters, Krebs on Security, and other top sources. Updated every 6 hours.
Russian CTRL Toolkit Delivered via Malicious LNK Files Hijacks RDP via FRP Tunnels
Cybersecurity researchers have discovered a remote access toolkit of Russian-origin that's distributed via malicious Windows shortcut (LNK) files that are disguised as private key folders. The CTRL toolkit, according to Censys, is custom-built using .NET and includes various executables" to facilitate credential phishing, keylogging, Remote Desktop Protocol (RDP) hijacking, and reverse tunneling
Set the Line Before It's Crossed
19 points, 3 comments on Hacker News
The State of Secrets Sprawl 2026: 9 Takeaways for CISOs
Secrets sprawl isn't slowing down: in 2025, it accelerated faster than most security teams anticipated. GitGuardian's State of Secrets Sprawl 2026 report analyzed billions of commits across public GitHub and uncovered 29 million new hardcoded secrets in 2025 alone, a 34% increase year over year and the largest single-year jump ever recorded. This year's findings reveal three core trends: AI has
JSON Canvas Spec
25 points, 4 comments on Hacker News
Three China-Linked Clusters Target Southeast Asian Government in 2025 Cyber Campaign
Three threat activity clusters aligned with China have targeted a government organization in Southeast Asia as part of what has been described as a "complex and well-resourced operation." The campaigns have led to the deployment of various malware families, including HIUPAN (aka USBFect, MISTCLOAK, or U2DiskWatch), PUBLOAD, EggStremeFuel (aka RawCookie), EggStremeLoader (aka Gorem RAT), MASOL
Show HN: CLI to order groceries via reverse-engineered REWE API (Haskell)
122 points, 46 comments on Hacker News
Cloudflare Client-Side Security: smarter detection, now open to everyone
We are opening our advanced Client-Side Security tools to all users, featuring a new cascading AI detection system. By combining graph neural networks and LLMs, we've reduced false positives by up to 200x while catching sophisticated zero-day exploits.
Use string views instead of passing std:wstring by const&
35 points, 36 comments on Hacker News
Butterfly-collecting: The history of an insult (2017)
8 points, 0 comments on Hacker News
Helping disaster response teams turn AI into action across Asia
AI for Disaster Response in Asia: OpenAI Workshop with Gates Foundation
Samsung Magician disk utility takes 18 steps and two reboots to uninstall
248 points, 131 comments on Hacker News
An Introduction to Writing Systems and Unicode
15 points, 3 comments on Hacker News
Chess in SQL
26 points, 7 comments on Hacker News
Significant progress made on Xbox 360 recompilation
58 points, 15 comments on Hacker News
A School District Tried to Help Train Waymos to Stop for School Buses
13 points, 2 comments on Hacker News
The True Shape of Io's Steeple Mountain
13 points, 0 comments on Hacker News
Digitizing photos from the 1998 Game Boy Camera
23 points, 3 comments on Hacker News
Understanding young news audiences at a time of rapid change
18 points, 1 comments on Hacker News
Show HN: TurboQuant for vector search – 2-4 bit compression
34 points, 2 comments on Hacker News
Vector Meson Dominance
18 points, 0 comments on Hacker News
ESP32-S31: 320MHz 2C RV32IMAFCP+CLIC, 512KB SRAM, GbE, 802.11ax, 61 GPIO
75 points, 42 comments on Hacker News
What Category Theory Teaches Us About DataFrames
36 points, 3 comments on Hacker News
A Recipe for Steganogravy
93 points, 20 comments on Hacker News
Show HN: Home Maker: Declare Your Dev Tools in a Makefile
32 points, 16 comments on Hacker News
From 300KB to 69KB per Token: How LLM Architectures Solve the KV Cache Problem
7 points, 0 comments on Hacker News
AI Perfected Chess. Humans Made It Unpredictable Again
14 points, 2 comments on Hacker News
Bring Back MiniDV with This Raspberry Pi FireWire Hat
30 points, 5 comments on Hacker News
The revenge of the data scientist
83 points, 16 comments on Hacker News
TruffleRuby
103 points, 6 comments on Hacker News
Learn Something Old Every Day, Part XVIII: How Does FPU Detection Work?
18 points, 0 comments on Hacker News
Aggregated from public RSS feeds & the Hacker News API · All links point to original sources · Clawship does not republish full articles