Engineering &
Security Wire
Curated from Hacker News, Lobsters, Krebs on Security, and other top sources. Updated every 6 hours.
Performance of WebAssembly runtimes in 2026
Comments
Show HN: TikZ Editor – WYSIWYG editor for figures in LaTeX
117 points, 24 comments on Hacker News
GitHub Updates actions/checkout to Block Common Pwn Request Attack Patterns
GitHub is moving to strengthen software supply chain security by updating "actions/checkout" to block pwn request attacks that exploit the risky use of the "pull_request_target workflow" trigger to run malicious code with the workflow's full privileges. Effective June 18, 2026, the latest version of "actions/checkout," the official GitHub action for checking out a repository into the
Show HN: Bun-sqlgen – Type-safe raw SQL for Bun, no ORM
23 points, 11 comments on Hacker News
Elevated error rate across multiple models
Article URL: https://status.claude.com/incidents/jbhf20wjmzrf Comments URL: https://news.ycombinator.com/item?id=48645386 Points: 153 # Comments: 180
Spying on kids to save kids from spying is stupid
221 points, 142 comments on Hacker News
Mistral OCR 4
150 points, 43 comments on Hacker News
Vulnerability Reports Are Not Special Anymore
Comments
MSG Made Dossier on Activists Who Opposed Facial Recognition
129 points, 24 comments on Hacker News
Lucide Releases Version 1.0, Removing Brand Icons and Cutting Bundle Size for Millions of Projects
Lucide has released version 1.0 of its open-source icon toolkit, marking its first stable major release. The update features over 1,600 icons and removes trademarked brand icons due to legal and design concerns. Significant performance improvements have also been made, reducing package size and adding context providers for various frameworks. Users upgrading should be aware of breaking changes. By Daniel Curtis
Presentation: The Time It Wasn't DNS
Sean Klein discusses why "human error" is a dangerous myth in complex systems. Sharing the inside story of Azure’s 2023 global WAN outage, he explains how modern incident analysis looks past the "Five Whys" to uncover systemic issues. Learn how engineering leaders can move away from blame, improve Standard Operating Procedures, and design resilient systems that actively protect their engineers. By Sean Klein
Helping build shared standards for advanced AI
OpenAI helps build shared standards for advanced AI, supporting evaluation frameworks, safety practices, and global cooperation through the Appia Foundation.
Lossless GIF recompression via exhaustive search
25 points, 3 comments on Hacker News
Record type inference for dummies
Comments
The "Bizarre Headgear" exhibit at the Sam Noble museum
58 points, 5 comments on Hacker News
80386 Early Start Memory Access
14 points, 1 comments on Hacker News
FEXPRs vs. vtable: how LispE interpreter works
Comments
Making Sense of Proof by Contradiction [pdf]
17 points, 4 comments on Hacker News
Microsoft Expands Azure Kubernetes Service with Bare Metal, Fleet Management and AI Infrastructure
At this year's Microsoft Build 2026, Microsoft unveiled a broad set of enhancements to Azure Kubernetes Service (AKS) aimed at making Kubernetes a first-class platform for AI training, inference, and large-scale cloud-native applications. By Craig Risi
Meta-Harness R&D: Enterprise-Grade Self-Improvement for Long-Horizon AI Workflows
How autonomous code improvement can be made disciplined enough for enterprise use
Modern GPU Programming for MLSys
48 points, 5 comments on Hacker News
Unlimited OCR: One-Shot Long-Horizon Parsing
269 points, 75 comments on Hacker News
Agentic AI: The Weapon That No Longer Needs a Warrior
Every weapon begins as an extension of the hand that holds it. The spear lengthened the reach of the arm. The bow sent the point flying without the throw. The rifle placed a man's death a quarter mile beyond his sight, and the aircraft carried that death across oceans. At each turn, the distance between the warrior and the wound grew wider, and yet one thing never moved: a human chose the target
The Coming Loop
264 points, 204 comments on Hacker News
Please keep code descriptions simple
Comments
Crypto in 2026: Oh, This Is the Bad Place
277 points, 321 comments on Hacker News
Show HN: Shumai – open-source Frame.io alternative for creative work
Shumai is an open source platform for uploading creative files, managing projects, collecting precise feedback, sharing work, and collaborating with AI agents, all in one simple creative-first workspace. I’ve always liked the product design of Frame.io, and I wanted to build an alternative that feels just as polished, while being open source and easy to self host. You can deploy Shumai with docker compose in just a few minutes. It can also be installed from npm, though you'll need to provide your own PostgreSQL instance with the pgvector extension installed. For larger deployments, Shumai supports distributed processing via Temporal, allowing resource intensive tasks such as transcoding to be scaled independently. It's still early in development, feel free to try and share any feedback. Demo: https://staging.shumai.one Comments URL: https://news.ycombinator.com/item?id=48642686 Points: 36 # Comments: 2
MicroVMs: Run isolated sandboxes with full lifecycle control
213 points, 126 comments on Hacker News
A game where you're an OS and have to manage processes, memory and I/O events
5 points, 3 comments on Hacker News
AWS Launches Blocks, an Open-Source TypeScript Framework Designed for AI Agents to Build Backends
AWS released Blocks in public preview, an open-source TypeScript framework where each Block bundles application code, local mocks, and AWS infrastructure. Designed for AI agents to write correct backends from the start, it runs locally without an AWS account and deploys the same code to Lambda, DynamoDB, Aurora, and Bedrock with zero changes. By Steef-Jan Wiggers
Aggregated from public RSS feeds & the Hacker News API · All links point to original sources · Clawship does not republish full articles