Feed aggregator
Show HN: Wide Events – Rails telemetry for agents and humans in a DB you own
Article URL: https://github.com/adammiribyan/wide_events
Comments URL: https://news.ycombinator.com/item?id=49168262
Points: 1
# Comments: 0
Aligning 800 audiobooks (8k hours) to text in 6 days, no LLM in the loop
Article URL: https://tale.fyi/@sam/aligning-800-audiobooks-8-000-hours-to-text-in-6-days-no-llm-in-the-loop?from=hn
Comments URL: https://news.ycombinator.com/item?id=49168259
Points: 1
# Comments: 0
Microsoft Vaporized a Trillion Dollars, Pt. 3
Article URL: https://isolveproblems.substack.com/p/how-microsoft-vaporized-a-trillion-f67
Comments URL: https://news.ycombinator.com/item?id=49168251
Points: 1
# Comments: 0
Buckminsterfullerene
Article URL: https://en.wikipedia.org/wiki/Buckminsterfullerene
Comments URL: https://news.ycombinator.com/item?id=49168244
Points: 1
# Comments: 0
Show HN: The agent-to-codebase interface is broken. I tried to fix it
I’d be glad to hear what you think, including where you disagree, and answer any questions.
Comments URL: https://news.ycombinator.com/item?id=49168225
Points: 1
# Comments: 0
Apple's New CEO Taps Retired Hardware Executive for Management Team
What Codex Actually Sends to the Model
Article URL: https://www.0xkato.xyz/what-codex-actually-sends-to-the-model/
Comments URL: https://news.ycombinator.com/item?id=49168213
Points: 1
# Comments: 0
We built an AI model router that cut LLM costs by 94%
Article URL: https://swordhealth.com/research/reduce-enterprise-ai-costs
Comments URL: https://news.ycombinator.com/item?id=49168179
Points: 1
# Comments: 1
Fragments: August 4
Article URL: https://martinfowler.com/fragments/2026-08-04.html
Comments URL: https://news.ycombinator.com/item?id=49168164
Points: 1
# Comments: 0
No Meat Proxy
Article URL: https://nomeatproxy.com/
Comments URL: https://news.ycombinator.com/item?id=49168157
Points: 1
# Comments: 0
Show HN: A plugin to monitor OpenCode cache hits
Article URL: https://github.com/nmdra/opencode-cache-stats
Comments URL: https://news.ycombinator.com/item?id=49168155
Points: 1
# Comments: 0
Show HN: Sign a dataset so anyone can verify it offline, without trusting you
Article URL: https://surframe.dev
Comments URL: https://news.ycombinator.com/item?id=49168136
Points: 2
# Comments: 0
US Military asks troops for 'creative and unconventional' ideas to punish Iran
Article URL: https://www.cnn.com/2026/08/03/politics/us-military-iran-war-troops-punish
Comments URL: https://news.ycombinator.com/item?id=49168084
Points: 2
# Comments: 2
Legal firms have been invited to participate in the new Legal Services AI Growth Lab to reduce barriers to the use of artificial intelligence in legal services
UAE energy giant embeds artificial intelligence across its value chain as it moves from experimentation to operational scale
What determines whether an IT transformation will enable you to thrive or fail?
Travelers targeted when logging into hotel Wi-Fi networks
Microsoft has warned that hotel, conference, and other hospitality Wi-Fi networks are being actively abused by a Russian group to target travelers worldwide. The campaign, dubbed “CaptiveCrunch” turns a routine Wi-Fi login moment into an opportunity to compromise corporate accounts and devices.
From the user’s perspective, nothing looks out of the ordinary: they connect to hotel Wi-Fi, get the usual captive portal prompt, and perhaps see a familiar‑looking message about needing to update something before they can browse. However, behind the scenes, the allegedly state-linked group position themselves in the network path and manipulate DNS (Domain Name System) and HTTP traffic from captive‑portal Wi-Fi.
From there, several things can happen:
- Logins are stolen: The user’s browser session is redirected to attacker‑controlled phishing pages, like fake Microsoft login prompts, where credentials, device codes, or OAuth tokens are harvested.
- Malware is downloaded: The user is presented with fake update or ClickFix dialogs that download malware. In these cases, usually a remote access trojan (RAT) plus an infostealer.
- A machine-in-the-middle attack (MitM) where traffic is quietly proxied through attacker infrastructure, putting the user in a position for further credential theft.
Reportedly, one of the main malware strains used in these attacks is called CornFlake, a remote access trojan (RAT) that can capture webcam images, microphone audio, and keystrokes.
The infostealer was identified as ChocoShell, a fileless Powershell-based information stealer which primarily goes after browser session cookies, saved passwords, Microsoft 365 Single Sign-On (SSO) tokens, and Wi-Fi credentials from compromised systems.
Microsoft lists a set of fake dialogs that may appear once you connect to compromised Wi‑Fi:
- winupdate: A bogus Windows Update window with “Working on updates… Don’t turn off your computer.”
- defender: A fake Windows Security virus scan.
- directx: “DirectX End‑User Runtime Web Installer.”
- vcredist: A Microsoft Visual C++ redistributable installer.
- sysopt: A disk optimization utility.
- netfix: A Windows Network Diagnostics ‘fix’ tool.
- browser: A browser update prompt.
- pdfview: A document/PDF viewer installer.
Malwarebytes has long warned about the safety of public Wi-Fi. Here’s how you can stay safe while traveling:
- Use your own phone’s hotspot instead of using the public Wi‑Fi. A mobile connection, especially with an eSIM and a reputable carrier, significantly reduces the likelihood of an attack compared to an unknown hotel network.
- If you’re forced to use public Wi‑Fi, use a VPN with an active Kill Switch: Complete the authentication on the hotel portal first, then launch your VPN before opening any website or app. The Kill Switch feature will instantly block all internet traffic if the VPN disconnects even for a second, preventing cybercriminals from injecting malicious code out in the open. While CaptiveCrunch operates around captive portals and pre‑VPN flows, a VPN still reduces other risks and limits passive data collection once you’re online.
- Always inspect the certificate of any public Wi‑Fi login or ‘security’ portal that asks for more than a room number or basic credentials. These aren’t always a straight‑up giveaway, but sometimes they can be an obvious clue: mismatched hostnames, untrusted issuers, or plain HTTP are red flags that should stop you from proceeding.
- Many captive portals ask for an email address for registration or marketing. Even in benign cases, there is little value in handing over your real inbox. If you must provide an address, consider giving a fake one or a throwaway alias that is unrelated to your primary accounts.
- If you are asked to download software, a certificate, a browser update, or a fix tool in order to connect, stop. You should never have to download anything just to log into Wi‑Fi.
- Don’t rush to follow instructions on a webpage or prompt, especially if it asks you to run commands on your device or copy-paste code. Be cautious of pages urging immediate action: sophisticated ClickFix pages add countdowns, user counters, or other pressure tactics to make you act quickly.
- Secure your devices. Use an up-to-date, real-time anti-malware solution with a web protection component.
- Avoid entering Microsoft 365, Google Workspace, or other high‑value credentials directly into any page reached via captive portal redirection. If you need to check corporate mail, follow known URLs rather than clicking through prompts.
And last but not least, update your browser, operating systems, and other important software before you travel. That reduces the chance of getting legitimate update requests while you’re away.
From reporting threats to removing them.
Cybersecurity risks should never spread beyond a headline. Keep threats off your devices by downloading Malwarebytes today.
Obsidian Security Raises $85 Million at $1.1 Billion Valuation
Obsidian Security has developed a platform for governing AI agents across third-party applications.
The post Obsidian Security Raises $85 Million at $1.1 Billion Valuation appeared first on SecurityWeek.
TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover
Forescout researchers have found 15 new vulnerabilities in the TP-Link Omada networking ecosystem.
The post TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover appeared first on SecurityWeek.
Online backlash ends in Google rolling back Google Earth AI tool after a day
Google has walked back an AI feature that allowed users to generate artificial images inside Google Earth, after a predictable flurry of deepfakes.
Google switched on the AI image generation feature inside Google Earth’s web version on July 30. It was available to everyone.
The system used Google’s Nano Banana 2 image generator to create its images. That tool can already generate images from simple text input, but the advantage of doing it in Google Earth is that it can use the real satellite images as the basis for its deepfake versions. That makes it easier to make AI pictures with real, accurate building and landscape details.
In its initial blog post on the launch, it said that students could use it to “bring history to life”, while realtors could use it to produce professional real estate plans. However, others warned that the system could be used to mislead people.
Within hours, researchers and press outlets demonstrated that the tool would happily produce photorealistic satellite imagery of things that did not happen in places where they did not happen.
Dutch open source intelligence researcher Henk van Ess explained: “I tried refugees at the Mexican border, a nuclear plant in Iran, a crash in Amsterdam, a hospital with a bomb crater in Gaza. Nothing was refused”.
Demonstrating what was possible with the new capability, NPR fabricated an image of fires in Iran, along with a deepfake of Washington, D.C. underwater. The BBC ran images of a collapsed Eiffel Tower and the Great Pyramid of Giza swallowed by a sinkhole. Even though the service had some guardrails in place, the BBC’s anti-disinformation Verify service was able to circumvent them by tinkering with basic AI prompts.
Google acknowledged the failure in a statement on X:
“We’ve seen geospatial professionals using this feature for a range of useful purposes, however we’ve also seen people sharing screenshots of generated imagery that appear to violate our policies. So we’re rolling back this feature in Google Earth while we work on implementing stronger guardrails.”
It didn’t commit to never re-introducing the idea.
Users were apparently unimpressed. “There is 0 chance that no one on your development team didn’t raise exactly this concern,” commented one. “You guys are living in a complete bubble,” accused another.
Google’s fallback safeguard was a SynthID watermark and the fact that generated images didn’t appear in the main Google Earth experience for others to see. SynthID is Google DeepMind’s watermarking system, an invisible signal baked into the pixels of AI-generated images so that a compatible detector can spot them later. Google positions it as one half of its provenance stack, sitting alongside the C2PA metadata standard the wider AI industry has settled on.
On paper, the signal is meant to hold up through compression and even social media re-uploads. However, these claims collapsed on contact with reality. The watermarks are detectable by Google’s AI services like Gemini. They are not visible to users, who can screenshot the images and share them anywhere. It’s unlikely that everyone will know to check for the provenance of an image. Researchers have also reported that Gemini could not reliably identify AI-generated images with a SynthID watermark.
What this means for youContent creators were already producing fake AI images showing events that didn’t happen. Traditionally, satellite imagery has been a key component of open source journalism. Fake it convincingly and you are attacking the reference layer reporters use to check whether something actually happened.
This also comes at a time when trust in AI is measurably eroding. According to our own research, released in June, 88% of people said it’s becoming harder to tell what content online is genuinely human or real, with 84% saying that even “convincing video evidence” no longer feels like proof.
The practical advice is to take a breath whenever a disturbing satellite image of a disaster, a weapon strike, or a border crossing hits your timeline. Check whether a wire service with a named reporter has published it. Look for a caption identifying the imagery provider. If the source is an anonymous account posting a single dramatic frame, assume you might be looking at something assembled in a browser tab last night.
For more information on how to identify AI images, check out our guide.
The industry’s shipping model now apparently treats users as the test group. Critical media literacy is now the only reliable tool that readers and viewers have.
From reporting threats to removing them.
Cybersecurity risks should never spread beyond a headline. Keep threats off your devices by downloading Malwarebytes today.
