Feed aggregator

I Don't Like LLMs

Hacker News - Thu, 09/17/2026 - 9:57am
Categories: Hacker News

Show HN: Dnswer – browser-based DNS change approval and multi-provider sync

Hacker News - Thu, 09/17/2026 - 9:56am

Imagine you have to manage DNS for domains spread across multiple DNS providers. You want to apply consistent DNS settings across your zones but the only way is applying the same change manually zone by zone (using multiple control panels). Tedious and a mistake is bound to happen. You want to delegate permissions to other teams but many times the only way is handing out access to everything. If something breaks you have no idea who did it and what exactly was changed.

The existing solution is IaC. Tools like OctoDNS or DNSControl can help you with some of the problems described above. But they require the whole team to feel at home with setting up pipelines, command line tools and git.

With dnswer I want to provide the same level of structure, but in a browser:

- staging / preview before publishing DNS changes (edit and publish are separate roles)

- reusable blocks of records with per-zone variables (not a one-off template: update once, bulk-upgrade every zone that uses it)

- granular access control from full access down to write access on just a single record

- multi-provider sync with drift detection and resolution

- provision new zones at your provider(s), not only importing existing ones

- nameserver verification after changes (verifies that the change is live)

- for providers without an API, a shareable change request with on-demand re-verification (viewable without a dnswer account)

- modern record types (HTTPS/SVCB) and DANE/TLSA for mail, with cert-drift monitoring

- a zone logbook showing what changed, who did it, and why

There are a few ways you can learn more about it:

- Learn: https://dnswer.net/show/ (walkthroughs; annotated screenshots explaining how to use key features)

- Try it: https://app.demo.dnswer.net/ (sandbox with mock providers, free; sign up and verify your email to get in)

- Pricing: https://dnswer.net/pricing

If you want to try it with your own zones and API access to your DNS provider(s): I'm looking for up to ten teams (ideally managing 20+ domains across multiple providers) willing to manage real zones using dnswer. Not a big beta: I want to watch how it actually gets used and adapt things quickly. Free for the first 3 months, and early users keep their price for 2 years even after it goes up for new customers. If you're interested, reach out by emailing joost@dnswer.net.

A few things worth knowing before you do. dnswer is not in your resolution path: your records stay at your provider and your nameservers keep answering. If dnswer is down, DNS keeps resolving and you can still change records directly in your provider's control panel, you just lose the workflow on top until it is back. You can leave whenever you like: every zone exports as a BIND file with your record descriptions preserved as comments, so your documentation comes with you. Your provider credentials are encrypted at rest.

I've built it to solve the DNS problems I ran into in the last 20 years. I'd like to learn about other people's DNS problems as well.

Tech stack: Django/DRF, PostgreSQL, NATS, Lit web components, deployed with Ansible.

Comments URL: https://news.ycombinator.com/item?id=49740831

Points: 1

# Comments: 0

Categories: Hacker News

Show HN: One-shot resolve: package managers as graph schedulers (2x faster)

Hacker News - Thu, 09/17/2026 - 9:53am

How one-shot resolve, critical-path download scheduling, coalesced postinstalls and built-in observability can make a package manager 2x faster

Comments URL: https://news.ycombinator.com/item?id=49740792

Points: 1

# Comments: 0

Categories: Hacker News

Comp AI Raises $34 Million for AI-Native Compliance and Security

Security Week - Thu, 09/17/2026 - 9:00am

The company plans to expand into continuous cybersecurity, offering security testing across applications and infrastructure.

The post Comp AI Raises $34 Million for AI-Native Compliance and Security appeared first on SecurityWeek.

Categories: SecurityWeek

ISC Patches 14 Vulnerabilities in BIND 9 Security Update

Security Week - Thu, 09/17/2026 - 8:39am

Attackers could exploit the flaws to increase resource usage, trigger an unexpected program exit, or terminate the named process.

The post ISC Patches 14 Vulnerabilities in BIND 9 Security Update appeared first on SecurityWeek.

Categories: SecurityWeek

Ransomware Attacks on Manufacturers Surge as Supply Chain Risk Grows

Security Week - Thu, 09/17/2026 - 8:29am

Research shows attacks on manufacturers rose 40% in early 2026, as ransomware groups increasingly exploit the supply-chain disruption caused by operational shutdowns.

The post Ransomware Attacks on Manufacturers Surge as Supply Chain Risk Grows appeared first on SecurityWeek.

Categories: SecurityWeek

Cisco Fixes Dozens of Flaws Across FMC, ISE and Nexus Dashboard

Security Week - Thu, 09/17/2026 - 8:17am

The vulnerabilities may lead to root access, command execution, bypasses, SQL injection, and remote code execution.  

The post Cisco Fixes Dozens of Flaws Across FMC, ISE and Nexus Dashboard appeared first on SecurityWeek.

Categories: SecurityWeek

Government pledges planning guidance by Christmas and environmental impact assessments for schemes of more than 50MW, with Scotland’s committed pipeline at 14 schemes and 2.4GW

Computer Weekly Feed - Thu, 09/17/2026 - 8:03am
Government pledges planning guidance by Christmas and environmental impact assessments for schemes of more than 50MW, with Scotland’s committed pipeline at 14 schemes and 2.4GW
Categories: Computer Weekly

12 celebrity deepfake websites seized by Manhattan DA

Malware Bytes Security - Thu, 09/17/2026 - 7:20am

The Manhattan District Attorney’s Office has seized the domains of 12 deepfake websites in what it called the largest known seizure of celebrity deepfake sites in history.

The sites, which marketed themselves as deepfake pornography platforms, hosted AI-generated videos of over 1,200 people, including those in the public eye, ranging from politicians to actors, musicians, and social justice advocates. At least one allowed users to create their own deepfakes by grafting real faces and bodies onto sexual imagery.

The term non-consensual intimate imagery (NCII) is increasingly used instead of pornography when the person depicted has not given permission. Deepfake NCII is growing, due in part to the ease with which it can be created. It only takes one photo to generate it, as we discussed on the Lock and Code podcast in June.

MrDeepFakes was previously the largest site for this kind of content. Its operators shut it down in May 2025, citing data loss. An Australian man who posted explicit deepfakes to the site was arrested, fined for contempt of court, and charged with publishing obscene material.

But other deepfake NCII sites continue to compete for attention online.

Deepfake technology can cause real harm when misused, and its effects continue to spread. Manhattan District Attorney Alvin Bragg warned that domestic abusers are threatening to release deepfake NCII depicting their victims. The FBI has also warned that sextortion attackers are using AI to turn social media photos of minors into sexually explicit images.

Legal action is growing

Law enforcement has been working hard to stem the flood of deepfake NCII sites. In June, the Department of Justice and the Department of Homeland Security seized two domains hosting hundreds of thousands of forged images and videos. San Francisco City Attorney David Chiu’s office also sued 16 deepfake sites in August 2024, managing to get ten of them taken offline or made inaccessible in California. New York state also passed legislation prohibiting the distribution of intimate deepfake images and videos in 2023.

At the federal level, the TAKE IT DOWN Act, enacted in May 2025, made certain intentional publication of NCII, including sexual deepfakes, a federal crime.

Seizing a deepfake site stops the immediate distribution of its content, but operators can migrate quickly to other infrastructure. A report from the Institute for Strategic Dialogue (ISD) found that the deepfake ecosystem is made of many parts, from AI tool providers through to hosting companies and cryptocurrency payment processors. It called for a multi-sector collaboration to stop the production and spread of this material.

Bragg’s office said it will continue monitoring the seized websites to stop them reappearing under different domains.

What can you do?

If someone creates or threatens to share intimate deepfakes of you, save the evidence and report it to the police. Do not pay someone who threatens to publish the images, as payment does not guarantee that the threats will stop.

Bragg’s office said many of the victims it approached did not realize that action could be taken. It urged anyone affected by the seized websites to contact its Cyber Crime Bureau at 212-335-9600.

You can learn more in the Malwarebytes guide to deepfakes. UN Women also provides useful resources for people affected by AI-powered abuse.

Scammers don’t need to hack you. They just need you to click once. 

Malwarebytes Identity Theft Protection catches suspicious activity before it becomes a problem.

Categories: Malware Bytes

Human-centric technology empowers us all - and that experience is more important than ever today as the risk from bad actors using AI becomes a global conversation

Computer Weekly Feed - Thu, 09/17/2026 - 6:50am
Human-centric technology empowers us all - and that experience is more important than ever today as the risk from bad actors using AI becomes a global conversation
Categories: Computer Weekly

Female cyber security leaders from government, finance, research and international organisations share how opportunity, inclusion and confidence are helping shape the next generation of cyber talent across the Middle East and beyond

Computer Weekly Feed - Thu, 09/17/2026 - 6:50am
Female cyber security leaders from government, finance, research and international organisations share how opportunity, inclusion and confidence are helping shape the next generation of cyber talent across the Middle East and beyond
Categories: Computer Weekly

Fans of the England men's football team may have suffered 60 years of hurt, but for IT author Mark Hillary it's been a wild ride through a time of transformative change

Computer Weekly Feed - Thu, 09/17/2026 - 6:50am
Fans of the England men's football team may have suffered 60 years of hurt, but for IT author Mark Hillary it's been a wild ride through a time of transformative change
Categories: Computer Weekly

Pages