Feed aggregator
A career in technology was inconceivable to a young Sheridan Ash - but the opportunities that career has offered show why diversity of both thought and workforce are essential to the future of tech
Context is everything - especially in a world driven by AI
Critical Orkes Conductor Vulnerability Exploited in Attacks
CVE-2026-58138 is an unauthenticated remote code execution vulnerability that attackers can exploit via inline workflow definitions.
The post Critical Orkes Conductor Vulnerability Exploited in Attacks appeared first on SecurityWeek.
Gyazo screen capture tool confirms data breach
What to Read to Stay Grounded Amidst AI Doomerism
Article URL: https://buttondown.com/maiht3k/archive/what-to-read-to-stay-grounded-amidst-ai-doomerism/
Comments URL: https://news.ycombinator.com/item?id=49751430
Points: 1
# Comments: 0
The Entity Service Antipattern
Article URL: https://www.michaelnygard.com/blog/2017/12/the-entity-service-antipattern/
Comments URL: https://news.ycombinator.com/item?id=49751398
Points: 1
# Comments: 0
One AWS Bill Went from Almost $8k a Month Toward $6k
Article URL: https://greenops.cloud/blog/blog-cost-drop-8k-to-6k
Comments URL: https://news.ycombinator.com/item?id=49751374
Points: 1
# Comments: 0
Has World War III Already Started?
Article URL: https://www.nytimes.com/2026/08/25/opinion/has-world-war-iii-already-started.html
Comments URL: https://news.ycombinator.com/item?id=49751371
Points: 2
# Comments: 0
Targeting 25 years of Windows with Visual Studio 2019
Article URL: https://building.enlyze.com/posts/targeting-25-years-of-windows-with-visual-studio-2019/
Comments URL: https://news.ycombinator.com/item?id=49751365
Points: 1
# Comments: 0
The Cost of AI Is Now My Main Blocker
Article URL: https://www.vincentschmalbach.com/cost-of-ai-is-now-my-main-blocker/
Comments URL: https://news.ycombinator.com/item?id=49751356
Points: 1
# Comments: 0
BuiltByVibe – Directory of vibe-coded apps with a free MCP server
Article URL: https://builtbyvibe.dev/
Comments URL: https://news.ycombinator.com/item?id=49751338
Points: 1
# Comments: 0
Altman, Huang: "trust me; gonna b fine"; Sanders: "AI more dangerous than nukes"
Article URL: https://garymarcus.substack.com/p/sam-altman-says-trust-me-jensen-huang
Comments URL: https://news.ycombinator.com/item?id=49751322
Points: 3
# Comments: 2
Fake parcel delivery messages steal your card and bank details
Parcel delivery phishing campaigns appear around the world under different courier names. In the United States, the messages commonly impersonate USPS and claim that a package has an invalid address or could not be delivered. Similar messages impersonate Colissimo and Chronopost in France, Correos in Spain, Poste Italiane in Italy, and PostNL in the Netherlands.
The details vary, but the aim is usually the same: to persuade you to visit a fake courier website and provide personal and financial information.
A fake bpost delivery emailA recent campaign targeting customers of the Belgian postal service bpost begins with an email claiming that a package could not be delivered because €4.95 in customs duties has not been paid.
A phishing email, in Dutch, pretending to be from bpost.In English, the subject and message read:
Undelivered package—customs duties due (tracking no. 3232116291*******).
Your package could not be delivered on September 9, 2026, because the customs duties (€4.95) have not been paid.
The amount is small enough that recipients may pay without giving it much thought. However, the website does not stop at collecting the supposed fee. It asks for personal information, card details, and banking information.
How the scam worksThe link first passes through a URL-shortening service (hxxps://qr[.]paps[.]jp/1GWsa) before redirecting to a fake bpost site. The campaign used several fake bpost domains, including:
hxxps://bpost[.]be-pakje-ontvangen-nl-recevoir-colis-fr[.]my[.]id/
bpost[.]center, which is the domain shown in the screenshots below.
The page copies bpost’s branding and displays security claims such as “Secure SSL connection,” “256-bit SSL,” “SEPA compliant,” and “Secure payment.” These labels were added by the scammers and do not prove that the page or payment is secure.
We’ve translated the screenshots below from the original Dutch into English.
The first page asks for the recipient’s name, phone number, email address, and age:
That reference to receiving funds does not match the email’s claim that a customs fee must be paid. The next page asks for an IBAN, card number, expiry date, and payment amount:
Then it asks for the real target: full card and bank details.
The original Dutch version contained another mistake: One of its buttons read “Indian search” instead of “Betaal,” the Dutch word for “Pay.” Mistakes like this can expose a scam, but many phishing pages are built carefully enough that there will be no obvious typo or mistranslation.
Once submitted, card details may be used for fraudulent purchases or sold to other criminals. The personal and banking information may also be used to make later scams more convincing.
How to protect yourself- Check delivery claims independently. Open the courier’s official app or type its website address into your browser, then use your tracking number to check the delivery.
- Check the sender and destination. A message may use a courier’s name while coming from an unrelated email address or linking to a different domain.
- Be wary of unexpected fees or refunds. A small payment or promised refund can be used to persuade you to provide much more valuable information.
- Be wary of requests for extensive financial information. A request for an IBAN as well as card details should be treated with suspicion, particularly when it supposedly relates to a small delivery fee.
If you entered your card or banking information on a suspicious site, contact your bank or card provider immediately. Freeze the affected card if your banking app allows it, monitor your accounts for unfamiliar transactions, and change any password you entered on the site.
Malwarebytes tracks and blocks these campaigns as they appear. If you’re unsure about a message, Scam Guard—built into Malwarebytes for Windows, Mac, Android, and iOS—can check it for you. Paste in the message or link, or upload a screenshot, for an instant assessment.
Scam Guard can analyze a suspicious email, text, link, or screenshot and tell you whether it may be a scam. Something feel off? Check it before you click.Malwarebytes Scam Guard helps you analyze suspicious links, texts, and screenshots instantly.
Available with Malwarebytes Premium Security for all your devices, and in the Malwarebytes app for iOS and Android.
Fermi.gg – Daily game based on the "Fermi estimation" technique
Article URL: https://fermi.gg
Comments URL: https://news.ycombinator.com/item?id=49751283
Points: 1
# Comments: 0
Everything Feels Fake – Here's Why: The Power Elite Playbook [video]
Article URL: https://www.youtube.com/watch?v=P33-rjgOXzg
Comments URL: https://news.ycombinator.com/item?id=49751265
Points: 1
# Comments: 0
How to Unslop a Commit?
Philosophical question: You want to implement a feature for a FOSS project. During web research you stumble over virtually the same thing that
* was apparently produced with a LLM / gen AI thing - according to the commit message (co-authored by...). * was not upstreamed (yet) for reasons not clearly stated. might be due to project policy, neglect or something else. * is close to trivial in nature - it's not apparent how the same outcome could be achieved with a significantly different approach at the core of it.
How would one get themselves in a position to - in all conscience - submit the patch in a LLM-free form?
Comments URL: https://news.ycombinator.com/item?id=49751233
Points: 1
# Comments: 0
Plain Text Sports
Article URL: https://plaintextsports.com/
Comments URL: https://news.ycombinator.com/item?id=49751231
Points: 1
# Comments: 0
ProductFight – Productfight.lol
Two products face off, votes decide via Elo — never who paid more. A great place for founders to get real visibility and honest feedback on their idea.
Comments URL: https://news.ycombinator.com/item?id=49751229
Points: 2
# Comments: 0
Ask HN: What do your agents do?
I have been working for a few years in Computer Vision for manufacturing, so I have kinda been in a bubble as far as production goes. I am thinking of diversifying a bit and get to work on the trendy stuff: agents. However, I have still not found interesting applications (to me)... Besides replacing chatbots with "agentic RAG", and coding agents, what do your agents in production do? What do they control? What do they interact with?
Comments URL: https://news.ycombinator.com/item?id=49751228
Points: 1
# Comments: 0
