// stories

1499 stories · editorial analysis with viewpoints and sources

MIT Loses 20% of Incoming Grad Students. The Talent Pipeline Is Breaking.

May 17

▸ MIT President Sally Kornbluth disclosed a 20% decline in incoming graduate students, driven by federal funding cuts and chilling effects on internatio...

Politics / Regulation AI / ML Career / Industry clear_take

A Security Researcher Ripped the Modem Out of His RAV4. Here's How.

May 17

▸ Security researcher arkadiyt published a step-by-step guide to physically removing the cellular modem (DCM) and GPS module from a 2024 Toyota RAV4 Hyb...

Hardware / Chips Security / Privacy explainer

Meta Kills Instagram DM Encryption — What It Means for Your App's E2EE Strategy

May 17

▸ Meta is removing end-to-end encryption from Instagram direct messages, reversing a feature it spent years building and rolling out.

Politics / Regulation Security / Privacy clear_take

Europe's Gov Sites Are a Security Disaster: The Numbers Are Brutal

May 17

▸ The Internet Cleanup Foundation scanned European government domains and found ~3,000 sites with third-party trackers, ~1,000 exposed phpMyAdmin panels...

Defense / GovTech Security / Privacy Politics / Regulation clear_take

Six New CVEs Hit dnsmasq — Patch Your DNS Infrastructure Now

May 17

▸ CERT/CC is coordinating disclosure of six CVEs targeting dnsmasq, the lightweight DNS/DHCP server embedded in millions of routers, containers, and Lin...

Cloud / Infrastructure DevOps / Platform Engineering Security / Privacy breaking

What Gowers' ChatGPT 5.5 Pro Test Actually Reveals About LLM Reasoning

May 17

▸ Fields Medalist Timothy Gowers published a detailed account of testing ChatGPT 5.5 Pro on mathematical problems, finding the model impressive on surfa...

Career / Industry AI / ML clear_take

The Wayback Machine Is Under Threat. Developers Should Care.

May 17

▸ A grassroots campaign at savethearchive.com is pressuring the NYT, The Atlantic, and USA Today to stop legal actions that threaten the Wayback Machine...

Open Source Politics / Regulation clear_take

The Curl Maintainer Who Called AI Bug Reports Garbage Just Got Proven Wrong

May 17

▸ Mythos, an AI vulnerability-hunting tool, found a legitimate security flaw in curl — notable because curl maintainer Daniel Stenberg has been one of t...

Security / Privacy AI / ML Open Source clear_take

Project Zero's Pixel 10 0-Click Chain: From RCS Message to Root

May 16

▸ Google Project Zero published a full 0-click exploit chain targeting Pixel 10 devices — no user interaction required for complete device compromise.

Security / Privacy Hardware / Chips explainer

Bun Is Rewriting Itself in Rust — and It Already Passes 99.8% of Tests

May 16

▸ Bun's experimental Rust rewrite passes 99.8% of the existing test suite on Linux x64 glibc, signaling the Zig-to-Rust migration is far more than a pro...

Backend / APIs Open Source clear_take

California Says You Can't Just Kill a Game People Paid For

May 16

▸ A California bill would require publishers to release patches enabling offline play — or issue refunds — when shutting down online game servers.

Politics / Regulation Backend / APIs clear_take

Android's VPN Kill Switch Doesn't Kill Everything — GrapheneOS Fixed It

May 16

▸ Android leaks traffic outside VPN tunnels even with 'Always-on VPN' and 'Block connections without VPN' enabled — including connectivity checks and DN...

Security / Privacy Open Source clear_take

Agent Skills: The Standard 35 AI Tools Agreed On While You Weren't Looking

May 16

▸ Anthropic's Agent Skills spec — a folder with a SKILL.md file — has been adopted by Cursor, GitHub Copilot, OpenAI Codex, Gemini CLI, and 30+ other ag...

AI / ML DevOps / Platform Engineering Open Source clear_take

Meta's AI Pivot Has a People Problem Nobody Wants to Talk About

May 16

▸ Meta's all-in AI reorg is reportedly demoralizing employees across non-AI teams as headcount, prestige, and resources shift to generative AI projects.

AI / ML Career / Industry multiple_viewpoints

Your Privacy VPN Is a Tracking Beacon: Mullvad Exit IPs as Fingerprints

May 16

▸ Mullvad's small pool of exit IPs combined with its tiny user base means websites can narrow 'anonymous' VPN users to a remarkably small anonymity set.

Security / Privacy Open Source explainer

The Line Between Vibe Coding and Agentic Engineering Is Dissolving

May 16

▸ Simon Willison argues that agentic engineering workflows are exhibiting the same 'trust the AI, skip the review' patterns that define vibe coding — ju...

AI / ML Career / Industry multiple_viewpoints

GitLab Kills Its Famous CREDIT Values and Cuts Staff in 'Act 2' Reset

May 16

▸ GitLab is retiring its CREDIT values (Collaboration, Results, Efficiency, Diversity Inclusion & Belonging, Iteration, Transparency) — the cultural fra...

Career / Industry DevOps / Platform Engineering clear_take

Turso Kills Its Bug Bounty Program. Blame the AI Slop.

May 16

▸ Turso, the libSQL edge database company, is shutting down its bug bounty program because AI-generated vulnerability reports have made it unsustainable...

Open Source AI / ML Security / Privacy clear_take

84 Malicious TanStack Packages Hit npm Via GitHub Actions Exploit Chain

May 15

▸ An attacker exploited pull_request_target, GitHub Actions cache poisoning, and OIDC token extraction to publish 84 malicious versions across 42 @tanst...

Security / Privacy Open Source breaking

Your AI Calls Don't Need to Leave Your Machine

May 15

▸ A unix.foo post arguing local AI should be the default — not the exception — hit 1,200+ points on HN, the highest signal we've seen on this topic in m...

Security / Privacy AI / ML DevOps / Platform Engineering clear_take
← newer page 44 of 75 older →