Recon

RECON

Updated 4m ago
High-Signal Security Intelligence

2026-04-25

Simon Willison45 · 4d ago

Quoting Romain Huet

Since GPT-5.4, we’ve unified Codex and the main model into a single system, so there’s no separate coding line anymore. GPT-5.5 takes this further, with strong gains in agentic coding, computer use, and any task on a computer. — Romain Huet , confirming OpenAI won't release a GPT-5.5-Codex model Tags: generative-ai , gpt , openai , ai , llms
The Hacker News25 · 4d ago

Researchers Uncover Pre-Stuxnet ‘fast16’ Malware Targeting Engineering Software

Cybersecurity researchers have discovered a new Lua-based malware created years before the notorious Stuxnet worm that aimed to sabotage Iran's nuclear program by destroying uranium enrichment centrifuges. According to a new report published by SentinelOne, the previously undocumented cyber sabotage framework dates back to 2005, primarily targeting high-precision calculation software to tamper
BleepingComputer17 · 4d ago

Threat actor uses Microsoft Teams to deploy new “Snow” malware

A threat group tracked as UNC6692 uses social engineering to deploy a new, custom malware suite named 'Snow' which includes a browser extension, a tunneler, and a backdoor. [...]
Threatninja.net17 · 4d ago

Hack The Box: Sorcery Machine Walkthrough – Insane Difficulty

Recently, I completed the “Sorcery” machine on Hack The Box (Insane difficulty), which provided a deep, multi-layered challenge combining modern web exploitation, internal pivoting, and complex privilege escalation. The attack began with reconnaissance of a self-hosted Gitea instance, where exposed source code revealed the application architecture. This led to identifying a Cypher injection vulnerability in functionality backed by Neo4j, which enabled SSRF to leak sensitive data such as passw...
The Register (Security)17 · 4d ago

Crime crew impersonates help desk, abuses Microsoft Teams to steal your data

Coming in cold with custom Snow malware A previously unknown threat group using tried-and-tested social engineering tactics - Microsoft Teams chat invitations and helpdesk staff impersonation - is also using custom malware in its data-stealing attacks, according to Google's Threat Intelligence Group.…
Hacker News Frontpage15 · 3d ago

DeepSeek-V4 on Day 0: From Fast Inference to Verified RL with SGLang and Miles

Article URL: https://www.lmsys.org/blog/2026-04-25-deepseek-v4/ Comments URL: https://news.ycombinator.com/item?id=47905768 Points: 15 # Comments: 0
Hacker News Frontpage15 · 3d ago

Framework Laptop 13 Pro: Major Upgrades and Linux Front and Center

Article URL: https://boilingsteam.com/framework-laptop-13-pro-announced/ Comments URL: https://news.ycombinator.com/item?id=47902816 Points: 5 # Comments: 0
Hacker News Frontpage15 · 3d ago

Iran caused more extensive damage to U.S. military bases than publicly known

Article URL: https://www.nbcnews.com/world/iran/iran-caused-extensive-damage-us-military-bases-publicly-known-rcna331853 Comments URL: https://news.ycombinator.com/item?id=47902746 Points: 14 # Comments: 0
Hacker News Frontpage15 · 3d ago

Using coding assistance tools to revive projects you never were going to finish

Article URL: https://blog.matthewbrunelle.com/its-ok-to-use-coding-assistance-tools-to-revive-the-projects-you-never-were-going-to-finish/ Comments URL: https://news.ycombinator.com/item?id=47902525 Points: 223 # Comments: 121
Hacker News Frontpage15 · 3d ago

Niri 26.04 was just released (scrollable-tiling Wayland compositor)

Article URL: https://github.com/niri-wm/niri/releases/tag/v26.04 Comments URL: https://news.ycombinator.com/item?id=47902416 Points: 7 # Comments: 3
Hacker News Frontpage15 · 4d ago

UK to permanently ban future generations from buying cigarettes

Article URL: https://nypost.com/2026/04/21/world-news/uk-to-permanently-ban-future-generations-from-buying-cigarettes/ Comments URL: https://news.ycombinator.com/item?id=47901993 Points: 7 # Comments: 4
HackerNoon15IoCs DETECTED · 4d ago

Everything You Need to Know About Automatic Cipher Suite Ordering

The Go standard library provides crypto/tls, a robust implementation of Transport Layer Security (TLS), the most important security protocol on the Internet, and the fundamental component of HTTPS. In Go 1.17 we made its configuration easier, more secure, and more efficient by automating the priority order of cipher suites.
Hacker News Frontpage15 · 4d ago

A Collection of Chronic Medical Conditions Common in Autistic and ADHD Adults [pdf]

Article URL: https://allbrainsbelong.org/wp-content/uploads/2023/08/CLINICIAN-GUIDE-Everything-is-Connected-to-Everything-Project-All-Brains-Belong-VT-8.15.23.pdf Comments URL: https://news.ycombinator.com/item?id=47901469 Points: 18 # Comments: 3
Hacker News Frontpage15 · 4d ago

Only One Side Will Be the True Successor to MS-DOS – Windows 2.x

Article URL: https://blisscast.wordpress.com/2026/04/21/windows-2-gui-wonderland-12a/ Comments URL: https://news.ycombinator.com/item?id=47900451 Points: 24 # Comments: 21
SecurityWeek15 · 4d ago

China-Linked APT GopherWhisper Abuses Legitimate Services in Government Attacks

Dubbed GopherWhisper, the group relies on multiple Go-based backdoors alongside custom loaders and injectors. The post China-Linked APT GopherWhisper Abuses Legitimate Services in Government Attacks appeared first on SecurityWeek .
Hacker News Frontpage15 · 4d ago

Martin Galway's music source files from 1980's Commodore 64 games

Article URL: https://github.com/MartinGalway/C64_music Comments URL: https://news.ycombinator.com/item?id=47900398 Points: 5 # Comments: 0
Hacker News Frontpage15 · 4d ago

Open source memory layer so any AI agent can do what Claude.ai and ChatGPT do

Article URL: https://alash3al.github.io/stash?_v01 Comments URL: https://news.ycombinator.com/item?id=47897790 Points: 18 # Comments: 1
unSafe.sh - 不安全15 · 4d ago

A beginner's guide to the Qwopus-glm-18b-merged-gguf model by Kylehessling1 on Huggingface

嗯,用户让我帮他总结一篇文章,控制在100字以内,而且不需要用“文章内容总结”或者“这篇文章”这样的开头。直接写描述就行。首先,我需要仔细阅读用户提供的文章内容。 看起来这篇文章主要是关于AIModels.fyi这个平台的介绍。里面多次提到“Among other things, launching AIModels.fyi ... Find the right AI model for your project - https://aimodels.fyi”。所以,主要信息应该是这个平台帮助用户找到适合他们项目的AI模型。 接下来,用户要求总结在100字以内,所以要简洁明了。同时,不需要特定的开头,直接描述内容。我应该突出平台的作用和它的目标用户。 可能的结构是:平台名称、功能、目标用户。例如,“AIModels.fyi是一个平台,帮助用户找到适合其项目的AI模型。”这样既简洁又涵盖了主要信息。 再检查一下字数,确保不超过限制。这样应该能满足用户的需求了。 AIModels.fyi是一个平台,帮助用户找到适合其项目的AI模型。
Phoronix (Linux)13 · 3d ago

LACT 0.9 Released With UI Updates, Voltage-Frequency Curve Editor For NVIDIA

LACT, one of the leading open-source solutions to provide a graphics card management GUI that works across AMD / NVIDIA / Intel graphics hardware on Linux, is out with a major update this weekend...
Phoronix (Linux)13 · 4d ago

Microsoft Reportedly Looking At Rebasing Azure Linux On Fedora

Microsoft's in-house Azure Linux operating system used within Azure and for WSL and other purposes is reportedly pursuing an overhaul where it would be derived from Fedora Linux...
Phoronix (Linux)13 · 4d ago

Linux 7.1 Brings Audio Support For The Line6 POD HD PRO & NexiGo N930W Webcam

Following last week's Linux 7.1 sound subsystem feature pull that added bus keeper support in working toward better Apple Silicon support along with a variety of other new audio hardware support, a secondary set of sound updates were merged as we approach the end of the Linux 7.1 merge window...
Phoronix (Linux)13 · 4d ago

New NTFS Driver Sees A Number Of Fixes Ahead Of Linux 7.1-rc1

With the Linux 7.1-rc1 kernel release due out tomorrow to cap off the Linux 7.1 merge window, one of the most notable additions this cycle is the introduction of the new NTFS driver that aims to provide better performance and more modern features than the existing NTFS3 in-kernel driver that was originally contributed by Paragon Software...
The Hacker News13 · 4d ago

CISA Adds 4 Exploited Flaws to KEV, Sets May 2026 Federal Deadline

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added four vulnerabilities impacting SimpleHelp, Samsung MagicINFO 9 Server, and D-Link DIR-823X series routers to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The list of vulnerabilities is below - CVE-2024-57726 (CVSS score: 9.9) - A missing authorization vulnerability in
The Verge12 · 3d ago

Trump fires the entire National Science Board

Multiple sources are reporting that the Trump administration has dismissed the entire National Science Board (NSB). The NSB advises the president and Congress on the National Science Foundation (NSF), which has already been funding research at historically low levels and has seen significant delays in doling out that funding. The NSF has been fundamental in […]
The Verge12 · 4d ago

Researchers say we’re talking less than ever

Researchers at the University of Missouri-Kansas City and the University of Arizona say that between 2005 and 2019, the number of words we speak out loud to another human being fell by nearly 28 percent. And that has likely only gotten worse following the pandemic. The researchers actually counted the number of words we were […]
Freek Van der Herten12 · 4d ago

Understanding Traceroute

A clear walkthrough of how traceroute works under the hood. It explains the TTL trick, the ICMP replies routers send back, and even rebuilds the core idea in Rust. Read more
unSafe.sh - 不安全12 · 4d ago

Claude APK reverse engineering

Claude APK reverse engineering
Hacker News Frontpage10 · 3d ago

USB Cheat Sheet (2022)

Article URL: https://fabiensanglard.net/usbcheat/index.html Comments URL: https://news.ycombinator.com/item?id=47904876 Points: 204 # Comments: 49
Hacker News Frontpage10 · 3d ago

America's Geothermal Breakthrough

Article URL: https://oilprice.com/Alternative-Energy/Geothermal-Energy/Americas-Geothermal-Breakthrough-Could-Unlock-a-150-Gigawatt-Energy-Revolution.html Comments URL: https://news.ycombinator.com/item?id=47903945 Points: 90 # Comments: 102
Hacker News Frontpage10 · 3d ago

Mine, an IDE for Coalton and Common Lisp

Article URL: https://coalton-lang.github.io/mine/ Comments URL: https://news.ycombinator.com/item?id=47903173 Points: 80 # Comments: 33
Hacker News Frontpage10 · 3d ago

Amateur armed with ChatGPT solves an Erdős problem

https://www.erdosproblems.com/1196 Comments URL: https://news.ycombinator.com/item?id=47903126 Points: 148 # Comments: 80
Hacker News Frontpage10 · 3d ago

Hokusai and Tesselations

Article URL: https://dl.ndl.go.jp/pid/1899550/1/11/ Comments URL: https://news.ycombinator.com/item?id=47902993 Points: 9 # Comments: 3
Hacker News Frontpage10 · 3d ago

Simulacrum of Knowledge Work

Article URL: https://blog.happyfellow.dev/simulacrum-of-knowledge-work/ Comments URL: https://news.ycombinator.com/item?id=47902987 Points: 110 # Comments: 41
Hacker News Frontpage10 · 3d ago

What's Missing in the 'Agentic' Story

Article URL: https://www.mnot.net/blog/2026/04/24/agents_as_collective_bargains Comments URL: https://news.ycombinator.com/item?id=47902339 Points: 29 # Comments: 7
Hacker News Frontpage10 · 4d ago

Jumping into cold water can stop your heart

Article URL: https://jorgenmelau.substack.com/p/the-first-sixty-seconds Comments URL: https://news.ycombinator.com/item?id=47901884 Points: 15 # Comments: 5
Hacker News Frontpage10 · 4d ago

GPT 5.5 biosafety bounty

Article URL: https://openai.com/index/gpt-5-5-bio-bug-bounty/ Comments URL: https://news.ycombinator.com/item?id=47901734 Points: 6 # Comments: 0
Hacker News Frontpage10 · 4d ago

HEALPix

Article URL: https://en.wikipedia.org/wiki/HEALPix Comments URL: https://news.ycombinator.com/item?id=47901312 Points: 10 # Comments: 0
Hacker News Frontpage10 · 4d ago

Lambda Calculus Benchmark for AI

Article URL: https://victortaelin.github.io/lambench/ Comments URL: https://news.ycombinator.com/item?id=47900506 Points: 8 # Comments: 1
Hacker News Frontpage10 · 4d ago

Discret 11, the French TV encryption of the 80s

Article URL: https://fabiensanglard.net/discret11/ Comments URL: https://news.ycombinator.com/item?id=47900478 Points: 11 # Comments: 1
Hacker News Frontpage10 · 4d ago

A web-based RDP client built with Go WebAssembly and grdp

Article URL: https://github.com/nakagami/grdpwasm Comments URL: https://news.ycombinator.com/item?id=47900440 Points: 9 # Comments: 3
Hacker News Frontpage10 · 4d ago

Escrow Security for iCloud Keychain

Article URL: https://support.apple.com/guide/security/escrow-security-for-icloud-keychain-sec3e341e75d/web Comments URL: https://news.ycombinator.com/item?id=47899334 Points: 20 # Comments: 4
Hacker News Frontpage10 · 4d ago

New 10 GbE USB adapters are cooler, smaller, cheaper

Article URL: https://www.jeffgeerling.com/blog/2026/new-10-gbe-usb-adapters-cooler-smaller-cheaper/ Comments URL: https://news.ycombinator.com/item?id=47899053 Points: 11 # Comments: 1
Hacker News Frontpage10 · 4d ago

Quirks of Human Anatomy

Article URL: https://www.sdbonline.org/sites/fly/lewheldquirk/figlegq6.htm Comments URL: https://news.ycombinator.com/item?id=47898660 Points: 5 # Comments: 0
Hacker News Frontpage10 · 4d ago

Turbo Vision 2.0 – a modern port

Article URL: https://github.com/magiblot/tvision Comments URL: https://news.ycombinator.com/item?id=47898597 Points: 78 # Comments: 12
Hacker News Frontpage10 · 4d ago

Firefox Has Integrated Brave's Adblock Engine

Article URL: https://itsfoss.com/news/firefox-ships-brave-adblock-engine/ Comments URL: https://news.ycombinator.com/item?id=47897891 Points: 158 # Comments: 69
Hacker News Frontpage10 · 4d ago

Replace IBM Quantum back end with /dev/urandom

Article URL: https://github.com/yuvadm/quantumslop/blob/25ad2e76ae58baa96f6219742459407db9dd17f5/URANDOM_DEMO.md Comments URL: https://news.ycombinator.com/item?id=47897647 Points: 117 # Comments: 16
unSafe.sh - 不安全10 · 4d ago

Kimi-K2.6 Brings Multimodal Agents to Coding

好,我现在需要帮用户总结一篇文章,控制在100字以内。用户给的原文看起来是关于AIModels.fyi这个平台的介绍,里面多次提到“Among other things, launching AIModels.fyi ... Find the right AI model for your project - https://aimodels.fyi”。这说明文章主要是在宣传这个平台,帮助用户找到适合他们项目的AI模型。 首先,我需要确定文章的核心内容。看起来作者在介绍一个新平台,旨在帮助用户选择合适的AI模型。因此,总结时应该包括平台名称、功能以及目标用户群体。 接下来,我要控制字数在100字以内。这意味着每个信息点都要简洁明了。例如,“介绍了一个新平台AIModels.fyi”已经涵盖了平台名称和基本动作。“该平台旨在帮助用户找到适合自己项目的AI模型”则说明了平台的功能和目标。 最后,检查是否有遗漏的重要信息。原文多次提到链接和功能,但没有其他关键点。因此,总结已经涵盖了所有必要的信息,并且符合用户的格式要求。 介绍了一个新平台AIModels.fyi,旨在帮助用户找到适合...
Hacker News Frontpage10 · 4d ago

Education must go beyond the mere production of words

Article URL: https://www.ncregister.com/commentaries/schnell-repairing-the-ruins Comments URL: https://news.ycombinator.com/item?id=47897349 Points: 51 # Comments: 13
shkspr.mobi8 · 4d ago

You can parse an .env file as an .ini with PHP - but there's a catch

The humble .env file is a useful and low-tech way of storing persistent environment variables. Drop the file on your server and let your PHP scripts consume it with glee. But consume it how? There are lots of excellent parsing libraries for PHP. But isn't there a simpler way? Yes! You can use PHP's parse_ini_file() function and it works. But… .env and .ini have subtly different behaviour which …
Phoronix (Linux)8 · 4d ago

LoongArch Improvements Land In Linux 7.1

Merged for the nearly-over Linux 7.1 merge window are a number of enhancements to the LoongArch architecture support for that Chinese CPU architecture inspired by MIPS and RISC-V...
Security Affairs7 · 4d ago

Over 400,000 sites at risk as hackers exploit Breeze Cache plugin flaw (CVE-2026-3844)

Attackers exploit a Breeze Cache flaw (CVE-2026-3844) to upload files without login. Wordfence researchers detected over 170 attacks. Threat actors are exploiting a critical flaw, tracked as CVE-2026-3844 (CVSS score of 9.8), in the Breeze Cache WordPress plugin, allowing them to upload files to a server without authentication. The vulnerability has already been used in […]
[DRAGNET]0 · 4d ago

Qilin Ransomware Targets KEMBA Indianapolis Credit Union

Qilin Ransomware Targets KEMBA Indianapolis Credit Union    DeXpose
[DRAGNET]0 · 4d ago

Qilin Ransomware Targets Priests for Life Organization

Qilin Ransomware Targets Priests for Life Organization    DeXpose
[DRAGNET]0 · 4d ago

Qilin Ransomware Group Strikes Progressive Propane

Qilin Ransomware Group Strikes Progressive Propane    DeXpose
[DRAGNET]0 · 4d ago

Qilin Ransomware Targets German Fashion Retailer Marc Cain

Qilin Ransomware Targets German Fashion Retailer Marc Cain    DeXpose