Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
runtimepanic
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
31.
▲
by
runtimepanic
9mo ago
I think the real conversation isn’t about whether AI eliminates entry-level jobs, but how it reshapes the skills those jobs require. Historically, new technology doesn’t just destroy work, it transforms it: tasks get automated, but new role
32.
▲
by
runtimepanic
9mo ago
Instead of a key, this type of lock system requires a numerical code to grant entry to a facility or property. The code is punched in by users via a numerical pad, similar to those on a basic calculator. If the correct code is entered, the
33.
▲
by
runtimepanic
9mo ago
Having Claude directly in the browser is convenient, but extensions live in a very sensitive part of the stack. Once an AI tool runs as a browser extension, the questions quickly shift from “how useful is this?” to “what data can it see, an
34.
▲
by
runtimepanic
9mo ago
Nice idea. I like the “local-first, no account” approach, especially for something as sensitive as time tracking. Auto-detecting the project from the git repo feels like the right level of magic to me. It removes friction without hiding wha
35.
▲
by
runtimepanic
9mo ago
This resonates. Spreadsheets work until they don’t, especially once you’re juggling timelines, follow-ups, and different application states. I’m curious what you found most painful to manage in a spreadsheet that pushed you to build somethi
36.
▲
by
runtimepanic
9mo ago
Cloudflare Radar is always interesting to skim, but I tend to read these reports as much as a reflection of Cloudflare’s vantage point as of “the Internet” itself. That said, having consistent longitudinal data from the same infrastructure
37.
▲
by
runtimepanic
9mo ago
That’s fair. I mostly stick with Burp because I’m very familiar with its workflows and tooling, and that familiarity matters a lot in day-to-day work. That said, I genuinely appreciate having credible competitors to Burp. New tools entering
38.
▲
by
runtimepanic
9mo ago
This feels like a classic case of extensions having incentives that don’t align with user expectations. Browser extensions sit in a uniquely privileged position, and once they start touching AI chats, they’re no longer just dealing with URL
39.
▲
Using Abuse Case Scenarios to Find Authorization and Business Logic Flaws
(blog.nviso.eu)
1 points
by
runtimepanic
9mo ago
|
0 comments
40.
▲
by
runtimepanic
9mo ago
What’s interesting to me is how functional this is, not just decorative. The fake food isn’t about realism for its own sake, but about reducing ambiguity: you instantly understand portion size, ingredients, and even relative price without s
41.
▲
Breaking LZW: Interactive Exploration of a PDF Decompression DoS
(aydinnyunus.github.io)
2 points
by
runtimepanic
9mo ago
|
1 comments
42.
▲
by
runtimepanic
9mo ago
PDF files rely on compression algorithms like LZW and ZLIB to reduce size, but these choices can have security implications. In this post, I analyze CVE-2025-66019, a Denial of Service vulnerability in pypdf’s LZW decompression logic. I wal
43.
▲
by
runtimepanic
9mo ago
Burp Suite can do much of this as well, but the intent feels different. Charles is very much about observing and understanding raw HTTP(S) traffic with minimal friction, which makes it handy for quick debugging, mobile app inspection, or cl
44.
▲
by
runtimepanic
9mo ago
I don’t work on web apps at all. Most of my time goes into security tooling and analysis pipelines. A lot of it is closer to systems work than application development: parsing large datasets, automating analysis, dealing with flaky inputs,
45.
▲
by
runtimepanic
9mo ago
This is tragic, but it’s probably worth slowing down before drawing any conclusions. The NY Post isn’t exactly known for careful reporting, and early details in cases like this are often incomplete or revised later. Hopefully more reliable
46.
▲
by
runtimepanic
9mo ago
“Dual-use” here usually isn’t about novel attack techniques, but about lowering the barrier to execution. The same improvements that help defenders reason about exploit chains, misconfigurations, or detection logic can also help an attacker
47.
▲
by
runtimepanic
9mo ago
This feels less like an “anti-AI” stance and more like a trust and control issue. For browsers especially, users have very different threat models and performance expectations, and “always on” AI features blur that line quickly. An explicit
48.
▲
by
runtimepanic
9mo ago
I’ve always felt this argument works best in small, stable codebases with low team churn. Self-documenting code is a great goal, but in real systems the why often matters more than the what, and that context rarely survives in variable name
49.
▲
by
runtimepanic
9mo ago
Interesting move. One thing I’m curious about is how opinionated the standard is supposed to be. In practice, agent “skills” tend to blur the line between capabilities, tools, and workflows, especially once statefulness and retries enter th
50.
▲
Show HN: PassDetective – Scan your shell history for leaked passwords and secret
(aydinnyunus.github.io)
1 points
by
runtimepanic
9mo ago
|
0 comments
51.
▲
by
runtimepanic
9mo ago
This resonates with how compiler work looks outside textbooks. Most of the hard problems aren’t about inventing new optimizations, but about making existing ones interact safely, predictably, and debuggably. Engineering effort often goes in
52.
▲
by
runtimepanic
9mo ago
As sports betting became mainstream in the US, it was only a matter of time before major news networks joined the orbit. The problem is that betting partnerships pull journalism away from public-interest reporting and toward a monetized pro
53.
▲
by
runtimepanic
9mo ago
Rust adoption in privacy tooling always feels like watching an old fortress quietly replace its wooden beams with steel ones. Tor’s codebase has carried decades of security assumptions, C-era tradeoffs and performance scars, so a gradual Ru
54.
▲
by
runtimepanic
9mo ago
The interesting part isn’t the if-statement count but how quickly the compiler and branch predictor erase the differences. It’s a nice demo of why “manual cleverness” rarely beats modern toolchains.
55.
▲
by
runtimepanic
9mo ago
For SMEs, clarity and actionable output are the most important signals. Having a simple CLI that emits SARIF/JUnit for automated pipelines is great, but adding a minimal “human readable summary” with clear pass/fail thresholds and
56.
▲
by
runtimepanic
9mo ago
The Zelda example is a good reminder that emotion in software often comes from consistency and responsiveness. Those games feel immersive because the underlying systems behave predictably, inputs map cleanly to actions, and the world reacts
57.
▲
by
runtimepanic
9mo ago
Observability that can produce causal explanations rather than just timelines. We have great tooling for logs/metrics/traces, but very little that helps engineers understand why a distributed system behaved the way it did. Automat
58.
▲
by
runtimepanic
9mo ago
Nice idea. Release notes are surprisingly time-consuming. How does it deal with large PRs that combine multiple changes?
59.
▲
by
runtimepanic
9mo ago
The experience feels fragmented because Google has multiple overlapping developer consoles and product boundaries. Gemini just exposes that underlying fragmentation more clearly than other APIs.
60.
▲
by
runtimepanic
9mo ago
Totally agree! Even as adults, the sense of scale hits differently when you interact with it. Your daughter will probably love discovering it too.
More ›