Feed aggregator

Show HN: Infoseclist.com – Compare 90 cybersecurity tools ranked by practition

Hacker News - Fri, 02/13/2026 - 5:34pm

Hey HN, I built InfoSecList.com because I got tired of the way security teams evaluate tools.

Every time we needed a new DAST scanner or pentest vendor, it was the same drill: Google around, read SEO-optimized listicles written by people who never used the tools, sit through 3-5 sales demos, and hope for the best.

InfoSecList is a directory of 90+ cybersecurity tools and services across 21 categories. Every listing gets two scores from practitioners:

- Market Score (1-5): industry adoption and brand recognition - Value Score (1-5): actual value for money based on usage

You can browse by category (DAST, SAST, SCA, pentest services, bug bounty platforms, etc.), compare tools side-by-side, or look up alternatives to specific products.

A few things that might be interesting technically:

- Data lives in a Google Sheet, served via a PHP proxy as CSV, parsed client-side - Pages are dynamic SPA-style but with clean URLs for SEO - Each tool/alternative/category page generates its own structured data and meta tags from the CSV data at runtime - No framework, no build step. Plain HTML, CSS, vanilla JS

No accounts, no gated content, no pay-to-rank. Happy to answer any questions about the approach or the security tool landscape.

Stack: Apache, vanilla JS, Google Sheets as CMS, Let's Encrypt

Follow-up Comment (if asked about data/methodology)

The scores come from a combination of: - Gartner/Forrester positioning for Market Score - Community sentiment (Reddit, HN, security forums) for both scores - Direct practitioner feedback from CISOs and security engineers - Pricing transparency and free tier availability for Value Score

We deliberately keep it simple with two 1-5 scores rather than trying to build a complex weighted system. The goal is to help someone go from "I need a DAST tool" to a shortlist of 3-4 options in under 5 minutes.

Open source tools like Nmap, OWASP ZAP, and Trivy tend to score 5/5 on Value. Enterprise tools like CrowdStrike and Mandiant score 5/5 on Market but lower on Value due to pricing.

Follow-up Comment (if asked about business model)

Right now it's free with no monetization. Long term we're considering: - Featured listings (clearly marked, doesn't affect scores) - Lead gen for vendors (opt-in only, buyer initiates contact)

We won't do pay-to-rank. The scores stay independent.

Comments URL: https://news.ycombinator.com/item?id=47008757

Points: 1

# Comments: 0

Categories: Hacker News

Grub 2.0

Hacker News - Fri, 02/13/2026 - 5:33pm

Article URL: https://grubcrawler.dev

Comments URL: https://news.ycombinator.com/item?id=47008748

Points: 2

# Comments: 0

Categories: Hacker News

Cmux: Tmux for Claude Code

Hacker News - Fri, 02/13/2026 - 5:31pm

Article URL: https://github.com/craigsc/cmux

Comments URL: https://news.ycombinator.com/item?id=47008732

Points: 2

# Comments: 1

Categories: Hacker News

Google Might Think Your Website Is Down

Hacker News - Fri, 02/13/2026 - 5:30pm
Categories: Hacker News

Show HN: TrustVector – Trust evaluations for AI models, agents, & MCP

Hacker News - Fri, 02/13/2026 - 5:28pm

We built TrustVector (trustvector.dev for website) because “which model/agent/tool should we trust?” keeps getting answered with vibes, marketing, or outdated benchmarks. And a lot of our enterprise customers kept asking about it.

TrustVector is an open-source evaluation framework + public directory where each system gets a multi-dimensional trust score across: - Security (prompt injection/jailbreak resistance, data leakage) - Privacy & compliance - Trust & transparency (hallucination/bias, documentation quality) - Performance & reliability - Operational excellence

Key idea: every score is evidence-based (sources + confidence), and you can re-weight dimensions CVSS-style depending on your use case.

Current coverage: 100+ evaluations across models, agents, and MCP servers.

GitHub + methodology are linked from the site. I’d love feedback on: 1) whether the dimensions/weighting are sane, 2) what evidence sources we’re missing, 3) What contribution workflow would make this actually community-maintained?

(Also: this project is not affiliated with trustvector.ai.)

Comments URL: https://news.ycombinator.com/item?id=47008687

Points: 1

# Comments: 1

Categories: Hacker News

Show HN: First Embeddable Web Agent

Hacker News - Fri, 02/13/2026 - 5:26pm

Rover is the world's first Embeddable Web Agent, a chat widget that lives on your website and takes real actions for your users. Clicks buttons. Fills forms. Runs checkout. Guides onboarding. All inside your UI.

One script tag. No APIs to expose. No code to maintain.

We built Rover because we think websites need their own conversational agentic interfaces as users don't want to figure out how your site works. If they don't have one then they are going to be disintermediated by Chrome's or Comet's agent.

We are the only Web Agent with a DOM-only architecture, thus we can setup an embeddable script as a harness to take actions on your site. Our DOM-native approach hits 81.39% on WebBench.

Beta with embed script is live at rtrvr.ai/rover.

Built by two ex-Google engineers. Happy to answer architecture questions.

Comments URL: https://news.ycombinator.com/item?id=47008663

Points: 1

# Comments: 0

Categories: Hacker News

Resist and Unsubscribe

Hacker News - Fri, 02/13/2026 - 5:23pm

Article URL: https://www.resistandunsubscribe.com

Comments URL: https://news.ycombinator.com/item?id=47008631

Points: 3

# Comments: 1

Categories: Hacker News

Auto CPU freq rust port

Hacker News - Fri, 02/13/2026 - 5:23pm
Categories: Hacker News

Business email compromise feeds on professional email norms -- and exploits emotions such as fear or urgency. Learn what BEC is, how it works and how to prevent it.

Security Wire Daily News - Fri, 02/13/2026 - 4:48pm
Business email compromise feeds on professional email norms -- and exploits emotions such as fear or urgency. Learn what BEC is, how it works and how to prevent it.

Ask HN: Any useful open source software maintained or created by AI?

Hacker News - Fri, 02/13/2026 - 4:44pm

With all the agents coming into existance I am wondering if there are any good OSS projects published by agents gaining traction. Web Frameworks, libraries or even programming languages?

Comments URL: https://news.ycombinator.com/item?id=47008251

Points: 1

# Comments: 0

Categories: Hacker News

Pages