Feed aggregator

Wonder how smart Jev is? Ask him directly

Hacker News - Sat, 09/19/2026 - 7:09am

Article URL: https://ouijev.com/

Comments URL: https://news.ycombinator.com/item?id=49765502

Points: 1

# Comments: 0

Categories: Hacker News

Forget the AI Slowdown—the Vulnerability Explosion Is Already Happening

Wired Security - Sat, 09/19/2026 - 7:00am
AI labs are toying with an industry-wide pact to slow development. Meanwhile, widely available AI chatbots are already helping uncover a tidal wave of security flaws.
Categories: Wired Security

TimeCodeSecurity – Deterministic AST SAST and Auto-Remediation for Python

Hacker News - Sat, 09/19/2026 - 6:59am

Hi Hacker News! I built TimeCodeSecurity (TCS), an open-source static security engine for Python.

Most existing open-source SAST tools rely on regex patterns or LLMs, leading to high false-positive rates and alert fatigue. TCS takes a compiler-level deterministic approach: it parses Python's Abstract Syntax Tree (AST) and tracks dataflow from function parameters directly into sensitive execution sinks (subprocess.run, raw SQL cursors, and path operations).

Key highlights: - Deterministic AST taint tracking (Zero regex / Zero AI guessing) - Closed-loop remediation: Patches are validated via AST syntax compilation and re-scanned in-memory before touching disk - Chronological visual proof graphs: Source -> Taint -> Sink - Sub-second execution (~700ms)

You can run it directly in your terminal:

pip install git+https://github.com/kushigaur3103-svg/time-code-security.git tcs scan ./your_project --fix GitHub: https://github.com/kushigaur3103-svg/time-code-security

Would love feedback on the AST traversal and in-memory verification approach! https://github.com/kushigaur3103-svg/time-code-security And that's my linkdin link https://www.linkedin.com/in/ayush-gaur-1488b1420?utm_source=share_via&utm_content=profile&utm_medium=member_android

Comments URL: https://news.ycombinator.com/item?id=49765426

Points: 2

# Comments: 0

Categories: Hacker News

Pages