Matched "Hacker News"Found in Description
LLM Usage in Debian: Three Proposals
120 points 109 comments on Hacker News · debian.org
Explore
Showing results for:
"Hacker News"
1,284 results • Page 57 of 107
Matched "Hacker News"Found in Description
120 points 109 comments on Hacker News · debian.org
Matched "Hacker News"Found in Description
270 points 166 comments on Hacker News · theguardian.com
Matched "Hacker News"Found in Description
273 points 69 comments on Hacker News · github.com
Matched "Hacker News"Found in Source
A malvertising operation dubbed SourTrade is making victims' browsers build the final Windows executable themselves, using a legitimate Bun runtime as its base instead of serving one complete malicious file from a fixed URL. Confiant, which detailed the campaign on July 23, 2026, said it has operated since late 2024 and impersonated TradingView, Solana, and Luno to target retail traders and
Matched "Hacker News"Found in Description
400 points 316 comments on Hacker News · tobi.knaup.me
Matched "Hacker News"Found in Description
386 points 168 comments on Hacker News · refp.se
Matched "Hacker News"Found in Description
257 points 145 comments on Hacker News · radicle.network
Matched "Hacker News"Found in Source
Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba's JSON library for Java. In affected Spring Boot applications, a malicious JSON request can execute code without authentication, with the privileges of the Java process. Tracked as CVE-2026-16723, the vulnerability carries an Alibaba-assigned CVSS score of 9.0. The confirmed chain requires
Matched "Hacker News"Found in Content
Hugging Face said the hack was done at superhuman speed by an AI with little or no human guidance.
Matched "Hacker News"Found in Source
Security researchers at depthfirst published working exploit code on July 24 for a GitLab flaw that GitLab patched six weeks earlier, on June 10. It runs commands as git on any self-managed 18.11.3 server that has not taken the update. Any authenticated user who can push to a project can run it. The attacker commits a crafted Jupyter notebook and opens its commit diff, which leaks a heap
Matched "Hacker News"Found in Source
For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into entering usernames and passwords, attackers collected the credentials, and accounts were compromised later when an opportunity arose. That model is changing. Recent investigations into insurance-focused phishing operations reveal a more immediate approach. Instead of harvesting
Matched "Hacker News"Found in Source
Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest) ransomware campaign are exploiting flaws in internet-exposed PTC Windmill and FlexPLM deployments as part of a new data extortion campaign. "Attackers chain a pre-authentication information disclosure in the FlexPLM WSDL endpoint with a server-side flaw in the Windchill login servlet, enabling
Hacker News
“GPT-5.5's API pricing is reshaping how startups build AI products”