Skip to main content
Live Feed

Engineering &
Security Wire

Curated from Hacker News, Lobsters, Krebs on Security, and other top sources. Updated every 6 hours.

23
ENG
6
SEC
1
AI
7389
TOTAL
Thu, Jun 25, 2026
30
2461ENG

A Tiny Compiler for Data-Parallel Kernels

32 points, 3 comments on Hacker News

Hacker Newshealeycodes.comJun 25
2462ENG

1-Bit Pixel Art Emojis

21 points, 2 comments on Hacker News

Hacker Newshypertalking.comJun 25
2463ENG

Political bias in AI: Where the AI models stand

Article URL: https://trakkr.ai/bias Comments URL: https://news.ycombinator.com/item?id=48672779 Points: 80 # Comments: 174

Hacker Newstrakkr.aiJun 25
2464ENG

Apple raises prices of MacBooks, iPads

535 points, 786 comments on Hacker News

Hacker Newsreuters.comJun 25
2465SEC

How we built saga rollbacks for Cloudflare Workflows

Cloudflare Workflows, our durable execution engine for multi-step applications, now supports saga-style rollbacks, allowing developers to specify a compensating action for each step.do().

The Cloudflare Blogblog.cloudflare.comJun 25
2466ENG

SoftBank 2026 AGM [pdf]

Article URL: https://group.softbank/media/Project/sbg/sbg/pdf/ir/investors/shareholders/2026/shareholders-meeting_46_05_en.pdf Comments URL: https://news.ycombinator.com/item?id=48672506 Points: 17 # Comments: 4

Hacker Newsgroup.softbankJun 25
2467ENG

Show HN: Secs-man, a secrets manager you can (not) rely on

This is a tool to manage encrypted local backups of secrets. The core idea is that it aims to be usable without depending on it, meaning that even if the software disappeared from the face of Earth tomorrow, your data would still be recoverable. It also integrates nicely with NixOS (which is what I use, though it does not require NixOS to be used). I have summed up a bit of explanation and some answers to reasonable questions in a blog post: https://baldino.dev/blog/secs-man/ Comments URL: https://news.ycombinator.com/item?id=48672389 Points: 15 # Comments: 12

Hacker Newsgithub.comJun 25
2468SEC

ThreatsDay Bulletin: Smart TV Proxyware, 24-Year curl Bug, AI Crime Forums + 13 More Stories

It’s dumb out there again. This week has the usual smell of prod on fire and nobody wanting to admit who left the door open — old creds still working, trusted apps doing sketchy crap, browser tricks jumping the fence, and “normal” workflows turning into phishing pipes because apparently email was not enough hell already. The worst part is how cheap some of it feels. Not elite. Not cinematic.

The Hacker News (Security)thehackernews.comJun 25
2469ENG

Regular expressions that work "everywhere"

26 points, 11 comments on Hacker News

Hacker Newsjohndcook.comJun 25
2470AI

Designing Organisations That Can Keep Up With AI

Why organisational latency is becoming the biggest barrier to fully realising AI’s benefits

OpenAI Blogopenai.comJun 25
2471ENG

Show HN: Turn native language audio into flashcards and shadowing practice

Here is a tool I built initially for myself to help with my German and Greek language studies. It started as a hack for creating Anki cards from native language audio. It extracts the words, finds their base forms (lemmas) and groups the examples by the lemma. At some point I realised that I have a transcription with word level timestamps that opens a lot of other opportunities. So I added a mode to click the first and last word in the transcript and it starts looping with the right gap and repeat count. Another feature I use a lot is selecting an audio fragment, sending a predefined prompt to an AI to "explain grammar" or "explain nuances of meaning" and I still experimenting with prompts. And because shadowing is so easy I also use it as a player to improve my English pronunciation. (I am not a native English speaker.) I made a quick video showing the workflow for creating Anki cards and shadowing: https://youtu.be/TaR58uuDBvU?si=o5aGLAi2S-BZ7Zy9 The app supports 15 input languages (

Hacker Newslingochunk.comJun 25
2472ENG

New @bitCast Semantics and LLVM Backend Improvements

Comments

Lobstersziglang.orgJun 25
2473SEC

Surviving the Mythos Era: Richard Bejtlich on the Case for NDR

Despite the abundance of telemetry at analysts’ disposal, many security operations teams struggle to answer a few basic questions during incident investigation: What happened? What evidence do we have? How do we know we’re seeing it all, in context? Answering these questions requires teams to go beyond alerts, the most common basis for initial triage. But investigations (and their outcomes)

The Hacker News (Security)thehackernews.comJun 25
2474ENG

Building a European Cloud Orchestration Platform within an Enterprise

Modern cloud deployments involve many tools with different lifecycles, creating a heavy burden on engineers. The Kubernetes ecosystem offers a unified Control Plane approach. Sharing best practices through tech talks and inner-source collaboration can create an engaged community and drive adoption. By Ben Linders

InfoQinfoq.comJun 25
2475ENG

LastPass notifies users of yet another data breach

Article URL: https://9to5mac.com/2026/06/23/lastpass-notifies-users-of-yet-another-data-breach/ Comments URL: https://news.ycombinator.com/item?id=48671468 Points: 285 # Comments: 133

Hacker News9to5mac.comJun 25
2476ENG

Presentation: Rust at the Core - Accelerating Polyglot SDK Development

Spencer Judge discusses the architectural pattern of building a shared core in Rust with language-specific layers on top. Drawing from his work on Temporal's SDKs, he shares lessons on navigating FFI boundaries, bridging async concepts, and managing memory safely. He explains the limitations of native extensions and how emerging tech like WebAssembly can streamline cross-language architecture. By Spencer Judge

InfoQinfoq.comJun 25
2477ENG

Cloudflare Ships Agent Skills for Zero Trust Deployment and Migration

Cloudflare released the Cloudflare One stack, an open-source library of agent skills for planning, deploying, and managing Zero Trust environments. The skills include automated migration logic for Zscaler and Palo Alto Networks, the same logic used in Cloudflare's Descaler program that has moved enterprise customers in hours rather than months. By Steef-Jan Wiggers

InfoQinfoq.comJun 25
2478ENG

tropius: detect AI tropes in prose

Comments

Lobsterstangled.orgJun 25
2479SEC

New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis

A previously undocumented Rust-based macOS implant and information stealer has been found to embed a prompt injection payload designed to trick a malware analyst's artificial intelligence (AI) tools and trick it into aborting or refusing an analysis of the artifact. The malware has been codenamed Gaslight owing to this deceptive behavior. It's been assessed with high confidence that the tool is

The Hacker News (Security)thehackernews.comJun 25
2480SEC

New Mistic Backdoor Linked to KongTuke in ClickFix and ModeloRAT Campaigns

A new, stealthy backdoor named Mistic has been deployed as part of suspected financially motivated attacks aimed at multiple organizations spanning insurance, education, IT, and professional services sectors since April 2026. According to Symantec and Carbon Black's Threat Hunter Team, the backdoor, also tracked as MLTBackdoor, is said to be linked to an initial access broker (IAB) named

The Hacker News (Security)thehackernews.comJun 25
2481ENG

Bringing Swift to the Apple ][

30 points, 2 comments on Hacker News

Hacker Newsyeokhengmeng.comJun 25
2482ENG

Aisle Discovers 6 New CVEs in Curl, Including the Oldest Issue Ever Reported

13 points, 2 comments on Hacker News

Hacker Newsaisle.comJun 25
2483ENG

The US Army Issued Ocarinas to Soldiers in World War II

76 points, 36 comments on Hacker News

Hacker Newsflutetunes.comJun 25
2484ENG

Slack Outlines Four-Phase Journey to a Multi-Cloud AI Serving Platform

Slack has outlined how its AI serving infrastructure evolved through four distinct phases, moving from a self-managed Amazon SageMaker deployment to a multi-cloud architecture spanning AWS Bedrock and Google Cloud Vertex AI. By Matt Foster

InfoQinfoq.comJun 25
2485ENG

Half-Life 2 in a Browser

234 points, 87 comments on Hacker News

Hacker Newshl2.slqnt.devJun 25
2486SEC

Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Exploited to Gain Root Access

An unknown threat actor exploited a recently disclosed high-severity security flaw impacting Cisco Catalyst SD-WAN as a zero-day at least two months before it was publicly disclosed, according to new findings from Google-owned Mandiant. The vulnerability, tracked as CVE-2026-20245 (CVSS score: 7.8), allows an authenticated, local attacker to execute arbitrary commands with elevated privileges

The Hacker News (Security)thehackernews.comJun 25
2487ENG

Deno Desktop

Comments

Lobstersankursethi.comJun 25
2488ENG

Linux on Older Hardware: The Complete Revival Guide

47 points, 13 comments on Hacker News

Hacker Newsfosslinux.comJun 25
2489ENG

Ask HN: Where is our profession (programmer) going?

I had been running a small (3 people) software company for about 4 years. Since closing down, I recently hung out at a friend's company to see what they were working on (15 ppl). To preface: I'm a heavy user of Claude (rarely write code by hand), but what I'm seeing in person has been rather shocking to me, and I wanted to calibrate with others. In particular: - the code is not the source of truth anymore; it's ask claude to write, and ask claude to explain - LoC, abstractions, and all those "software development principles" does not seem to matter to people - Code review is not done by humans - Actually understanding the problem deeply seems to be offloaded to claude - Some developers are running like 5+ simultaneous claude sessions, and no code is being looked at - Explosion of llm-generated tests First off, is this similar to what's going on at your company? If this company is representative, it feels like software development is going from a precise occupation that requires high de

Hacker Newsnews.ycombinator.comJun 25
2490ENG

Medical students are using popular research tool to pump out misleading studies

Article URL: https://www.science.org/content/article/medical-students-are-using-popular-research-tool-pump-out-misleading-studies Comments URL: https://news.ycombinator.com/item?id=48668119 Points: 3 # Comments: 0

Hacker Newsscience.orgJun 25

Aggregated from public RSS feeds & the Hacker News API · All links point to original sources · Clawship does not republish full articles