Vercel April 2026 security incident

https://www.bleepstatic.com/content/hl-images/2026/04/19/vercel-header-lg.jpg
Vercel disclosed a security incident after threat actors claimed to have breached its systems and are selling stolen data. The company is investigating and notifying affected customers, advising them to review environment variables and rotate secrets.

Vercel says internal systems hit in breach

https://decipher.sc/wp-content/uploads/2025/09/engin-akyurt-A9_IsUtjHm4-unsplash-600x600.jpg
Vercel disclosed a breach of its internal systems affecting a limited subset of customers. The company is investigating with incident response experts and notifying affected customers directly.

Notion leaks email addresses of all editors of any public page

Something went wrong, but don’t fret — let’s give it another shot. Some privacy related extensions may cause issues on x.com. Please disable them and try again.

The seven programming ur-languages (2022)

The user explains that programming languages can be grouped into seven fundamental "ur-languages" that share common patterns and characteristics, and that learning a language from the same ur-language is easier than learning one from a different ur-language. The user suggests learning a language from the ALGOL family (such as Python or Java), then learning a language from the Prolog family ...

Ask HN: How did you land your first projects as a solo engineer/consultant?

You started a solo consultancy helping SMEs with back-office issues and are looking for advice on getting your first project. You're offering 10 hours free to the first 5 clients to help them get started.

Airline worker arrested after sharing photos of bomb damage in WhatsApp group

https://images.lbc.co.uk/images/806846?crop=16_9&width=660&relax=1&format=webp&signature=mESK8Kwqu6SF495l5tlABdnNplA=
A Dubai airline worker was arrested for sharing bomb damage photos in a private WhatsApp group, charged with publishing information harmful to state interests. He remains in detention, highlighting concerns over Dubai's surveillance operations and access to private communications.

The world in which IPv6 was a good design (2017)

The user attended an IETF meeting to learn about TCP BBR and observed the ongoing debate about IPv6 replacing IPv4, which led them to investigate the history of networking protocols and their complexities. The user discovered that the intertwining of ethernet and IP protocols has resulted in a complicated system, making it difficult to imagine a network without MAC addresses and IP addresses, ...

Swiss authorities want to reduce dependency on Microsoft

https://www.swissinfo.ch/content/wp-content/uploads/sites/13/2026/04/597174916_highres.jpg?ver=ad661a45
Switzerland aims to reduce its dependency on Microsoft products, citing concerns over data security. A feasibility study shows replacing Microsoft with open-source software is possible, with Germany serving as a reference.

Changes in the system prompt between Claude Opus 4.6 and 4.7

Anthropic published system prompts for their chat system, with updates from Claude 3 to Opus 4.7, showing changes in child safety, tool usage, and response style. The new prompt includes tools like Claude in Chrome and a tool search mechanism to resolve ambiguities.

The RAM shortage could last years

https://platform.theverge.com/wp-content/uploads/sites/2/2025/02/Terrence-OBrien-headshot-1.jpg?quality=90&strip=all&crop=0%2C0%2C100%2C100&w=2400
Memory makers will meet only 60 percent of demand by 2027 due to production shortages. New fabrication capacity won't be online until 2027 or 2028, exacerbating the RAM shortage.

Keep Pushing: We Get 10 More Days to Reform Section 702

https://www.eff.org/files/banner_library/NSA-eagle-2_0.png
Lawmakers blocked a reauthorization of Section 702 with no changes, pushing for a 10-day extension to pass real reform. They want probable cause warrants for FBI access to collected information, not just a blanket reauthorization.

SPEAKE(a)R: Turn Speakers to Microphones for Fun and Profit [pdf] (2017)

A new type of malware called SPEAKE(a)R can covertly turn headphones, earphones, or simple earbuds connected to a PC into microphones when a standard microphone is not present, muted, taped, or turned off. The malware can record human speech of intelligible quality and eavesdrop from nine meters away, posing a significant cyber security threat.

The creative software industry has declared war on Adobe

https://platform.theverge.com/wp-content/uploads/sites/2/chorus/author_profile_images/195820/JESSICA_WEATHERBED.0.jpg?quality=90&strip=all&crop=0%2C0%2C100%2C100&w=2400
Adobe's Creative Cloud is facing competition from free alternatives like Autograph and Canva, which offer similar design tools at no cost. Industry rivals like Apple and DaVinci Resolve are also undercutting Adobe's pricing with affordable subscription options.

The Bromine Chokepoint

https://warontherocks.com/wp-content/uploads/2025/06/Cogs-Icon-3.png?v=1773080986
A global semiconductor memory supply chain is vulnerable to a bromine shortage due to Israel's reliance on bromine imports and limited conversion capacity outside the country. A disruption would immediately impact global memory production, affecting consumer devices, military systems, and AI infrastructure.

Notes from the SF peptide scene

https://substackcdn.com/image/fetch/$s_!cqqs!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d75b920-be72-4935-9cd3-c051b6053b85_1016x723.png
The author visited the Bay Area and observed a culture of extreme sincerity, where people take everything seriously, including absurd conversations and behaviors. They attended a "spring gay peptide party" where people injected each other with peptides for weight loss and other purposes.

Turtle WoW classic server announces shutdown after Blizzard wins injunction

https://cdn.mos.cms.futurecdn.net/Ba252N3UzmCkmpAK2B5t3j.jpg
Turtle WoW, a popular World of Warcraft private server, is shutting down on May 14 after a cease and desist from Blizzard. The server will close its servers to the final patch and associated social media channels will shut down later this year.

When moving fast, talking is the first thing to break

Prioritizing speed over communication can lead to faulty designs and system inconsistencies. This approach can create technical debt and hinder future collaboration, ultimately harming the organization.

Show HN: Faceoff – A terminal UI for following NHL games

https://www.vincentgregoire.com/faceoff/assets/faceoff_logo.png
This project was inspired by Playball, a similar terminal application for following MLB baseball games. This project is not affiliated with, endorsed by, or in any way officially connected with the National Hockey League (NHL), any of its teams, or any of its affiliates. All NHL logos, trademarks, and data are the property of the NHL and its teams.

PM Carney declares U.S. ties now a 'weakness' in address to Canadians

https://www.ctvnews.ca/resizer/v2/https%3A%2F%2Fcloudfront-us-east-1.images.arcpublishing.com%2Fbellmediainc%2F73ADFPGONBALVCYIY27S4YVKM4.jpg?smart=true&auth=2e8c8b7cdedd5ec7dc5159ad28e7f22c4b40fd8b493cdf3acbf646b7e46217c1&width=600
In a direct address to the nation, Prime Minister Mark Carney has reframed Canada's long-standing relationship with the United States as a 'weakness' that must be urgently corrected under the shadow of the Trump presidency.

Russia's doping program is run by the same FSB team that poisoned Navalny

https://theins.press/_next/image?url=http%3A%2F%2Fstorage%2Fstorage%2Fcontent_image%2Foriginal%2F69e%2F69e20714e76742.69340186%2FR22jC6S1Ixl4WlzYX1iWcyU6MZPMDrAkEFY0Ka7y.jpg&w=3840&q=100
Dmitry Kovalev, an FSB colonel, has been involved in Russia's doping program and has testified on behalf of Russia in international sports cases. He also works for the FSB's Directorate for the Protection of the Constitutional Order, which is responsible for eliminating political opponents using nerve agents.

Banned by Anthropic?

https://avatars.githubusercontent.com/u/126809856?s=160&v=4
Users experienced Anthropic's safety filter restrictions due to misinterpreted language, including technical terms and metaphors, resulting in lost access, missed deadlines, and financial losses. Users are calling for improved safety filters that understand human context and expression.

Show HN: Prompt-to-Excalidraw demo with Gemma 4 E2B in the browser (3.1GB)

Gemma 4 E2B generating Excalidraw diagrams from text prompts, running entirely in desktop Chrome via WebGPU. KV cache compressed 2.4× using TurboQuant's polar+QJL algorithm reimplemented in WGSL compute shaders. Requires Chrome 134+ on desktop — Safari/iOS not supported.

Binary GCD

https://en.algorithmica.org/hpc/algorithms/img/euclid.svg
The binary GCD algorithm is a variant of Euclid's algorithm that uses binary shifts, comparisons, and subtractions to find the greatest common divisor of two numbers, which is ~2x faster than the C++ standard library's gcd function. The algorithm's performance can be further optimized by using __builtin_ctz to reduce the number of iterations and by rearranging the assembly code to take ...

CEOs admit AI had no impact on employment or productivity

https://fortune.com/img-assets/wp-content/uploads/2026/02/GettyImages-521488522-e1771352623863.jpg?format=webp&w=1440&q=100
Economists are concerned that AI adoption is not translating to productivity gains, echoing Robert Solow's 1987 observation of the "productivity paradox." Despite firms expecting AI to boost productivity, data shows little impact on employment or productivity.

MAGA Is Winning Its War Against U.S. Science

https://substackcdn.com/image/fetch/$s_!4PGo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe389830f-7fa3-4cd0-b7d9-5c3528c81a14_1240x492.png
The Trump administration's budget proposal severely cuts research funding and reduces the approval rate of research grants, threatening US scientific research. This anti-science turn is part of a broader Republican hostility to science, driven by disagreements with the scientific consensus on issues like evolution and climate change.

Why Zip drives dominated the 90s, then vanished almost overnight

https://static0.xdaimages.com/wordpress/wp-content/uploads/2026/04/zip-drive-and-laptop.jpg?&fit=crop&w=1600&h=900
Zip drives were a popular portable storage format in the 90s with high capacity and speed, but they failed due to frequent failures known as the "click of death". The format eventually lost market presence to CDs and USB flash drives, leading to Iomega's downfall and the eventual removal of its branding from products.

A. J. Ayer – ‘What I Saw When I Was Dead’ (1988)

https://hobgobgraphics.wordpress.com/wp-content/uploads/2013/09/alfred_jules_ayer.jpg
Ayer recounts his near-death experience, where he died for four minutes, and upon revival, had vivid memories of a red light and attempting to fix space-time. His experience suggests consciousness may continue after death, but does not necessarily imply a future life.

Blue Origin's rocket reuse achievement marred by upper stage failure

https://cdn.arstechnica.net/wp-content/uploads/2026/04/GettyImages-2271539021-640x413.jpg
Blue Origin's New Glenn rocket successfully reused a booster but failed to reach its intended orbit due to an upper stage issue. The mission's payload, a cellular broadband satellite, was placed into an inaccurate orbit and will be de-orbited.

Matt Mullenweg Overrules Core Committers; Puts Akismet on WP 7's Connector List

https://www.therepository.email/wp-content/uploads/2025/07/300x250px-display-ad.jpg
Matt Mullenweg overruled core committers to register Akismet on WordPress 7.0's Connectors screen. The decision sparked controversy over process and contribution recognition, with Mullenweg defending Automattic's contributions to WordPress.

Ex-CEO, ex-CFO of bankrupt AI company charged with fraud

Please enable JS and disable any ad blocker

Uber's AI Push Hits a Wall–CTO Says Budget Struggles Despite $3.4B Spend

https://s.yimg.com/os/en/Benzinga/246d9497cb7440254a59e945355618c2
Uber spent $3.4 billion on AI research and development, exhausting its budget early in 2026 due to rapid adoption and high costs. The company is now testing OpenAI's Codex to expand its AI stack and aims for AI to handle coding and deployment tasks.

Show HN: Google Gemini Is Scanning Your Photos – and the EU Said No

Google's Personal Intelligence feature now uses Google Photos, Gmail, and YouTube data to generate AI images, but users must opt-in. Some users are moving their data to alternative services like Ente and Immich due to concerns over data collection.

2,100 Swiss municipalities showing which provider handles their official email

https://mxmap.ch/og-image.jpg
Each municipality's official domain is checked via 11 signals from DNS records, SMTP banners, ASN lookups, and a public Microsoft API endpoint, then classified by provider type with confidence scoring. Disclaimer: DNS records indicate mail routing and authorized senders, not necessarily where data is stored.

Six Levels of Dark Mode (2024)

https://cssence.com/assets/og.jpg
The author discusses six levels of dark mode in CSS, starting with a meta tag that allows browsers to follow user color scheme preferences. They then explore CSS color-scheme declarations, light-dark() color functions, and media queries for maximum customization.

I wrote a CHIP-8 emulator in my own programming language

https://opengraph.githubassets.com/2cbdba71675eb5affac97af60e080bd10592689dad263ffb519eb1cb267ad12e/navid-m/chip8emu
Chip8 Emulator. Contribute to navid-m/chip8emu development by creating an account on GitHub.

A Brief History of Fish Sauce

https://www.legalnomads.com/wp-content/uploads/2016/07/P1066245-1024x766.jpg
Fish sauce has a long history, with ancient Greeks and Romans producing garum and liquamen, while Southeast Asians independently developed nuoc mam and nam pla. The origins of fish sauce are unclear, but it remains a crucial condiment in Southeast Asian cuisine, with various regional variations and uses.

Claude Brain

https://raw.githubusercontent.com/memvid/claude-brain/main/logo.png
User needs help with GitHub plugins setup and code review. They should send their .mv2 file for assistance.

Surely no brand is more hated by web users that Cloudflare

Cloudflare's security measures cause frustration for users when blocking site access, despite being free advertising for developers. Site owners can control how often users see Cloudflare captchas, but users still experience frequent interruptions.

C++26: Reflection, Memory Safety, Contracts, and a New Async Model

https://imgopt.infoq.com//fit-in/218x500/filters:quality(100)/filters:no_upscale()/sponsorship/topic/d58c0af7-ef37-4bcc-b8ff-e8c8ebae3311/HarnessWebinarMay28-RSB-1776245906280.png
C++26 introduces reflection, memory safety enhancements, contracts, and a unified concurrency framework. It simplifies evolution and improves performance, safety, and concurrency with no runtime overhead.

Europe has 'maybe six weeks of jet fuel left'

https://ichef.bbci.co.uk/news/480/cpsprodpb/906c/live/0300a830-398e-11f1-a2bb-f5510bc30f8a.jpg.webp
Europe's jet fuel stocks may last six weeks, with potential flight cancellations if supplies remain blocked. The International Energy Agency warns of shortages if Europe can't replace at least half of its Middle Eastern imports by June.

Got an Old Kindle? It Might Not Work Anymore

https://d34mvw1if3ud0g.cloudfront.net/65282/Amazon-Kindle--2024-_20250418-053045_full.jpeg
Amazon will stop supporting older Kindle and Fire devices released in 2012 or earlier on May 20. Users can upgrade to a new Kindle with a 20% discount and $20 e-book credit until June 20.

Bipartisan Bill to Tighten Controls on Sensitive Chipmaking Equipment

https://baumgartner.house.gov/wp-content/themes/baumgartner-theme/dist/img/logo.png
Congressman Michael Baumgartner introduced the MATCH Act to strengthen US national security by closing gaps in export controls on semiconductor manufacturing equipment. The bipartisan bill aims to create a level playing field for US and allied toolmakers and prevent China from dominating the semiconductor supply chain.

Scientific datasets are riddled with copy-paste errors

https://storage.ghost.io/c/ba/88/ba885ce2-6877-4f70-9886-fcfa8ede8c06/content/images/size/w160/2026/03/IMG_2024_10_10-21_20_05_7290_8C8B8599-1-1-1.JPG
A software detected 18 cases of potential data errors in 600 open-access datasets, with 15 cases posted on PubPeer. The true error rate is likely higher than the estimated 3% due to undetectable errors and less lazy methods of data fabrication.

Critical flaw in Protobuf library enables JavaScript code execution

https://www.bleepstatic.com/content/hl-images/2026/04/17/protobuf.jpg
A critical remote code execution flaw in protobuf.js has been published, allowing attackers to inject arbitrary code via unvalidated schema-derived identifiers. The issue affects versions 8.0.0/7.5.4 and lower, and can be fixed by upgrading to 8.0.1 and 7.5.5.

Hot Wiring the Lisp Machine

https://scheatkode.com/assets/img/heaviest-objects-in-the-universe.png
The user created a static website generator called opd that uses Emacs's Org-mode to generate HTML from Org files without any external dependencies. The generator uses a routing layer to handle different types of content and a two-pass compiler to resolve links and generate URLs, and it has a flexible and composable API that allows users to define custom routes and filters.

Gender reassignment significantly increases psychiatric morbidity

https://onlinelibrary.wiley.com/pb-assets/hub-assets/pericles/mobilehublogo-1690978876347.png

Aliens.gov will be running as a WordPress multisite

This is a multisite, but a site was not found at the requested URL. Please check the URL and domain mapping and try again.

Discord Read Receipts Exploit: When, How Often, How Long

https://paul.koeck.dev/writeups/discord.jpg
The user discovered a bug in Discord's link preview feature that allows them to track when and how often a message is read by others, including the time it was visible. They created a proof-of-concept app that exploits this bug, allowing them to track message reads with a high degree of accuracy.

Reminder: Enable ZRAM on your Linux system to optimize RAM usage

https://www.cnx-software.com/wp-content/uploads/2026/04/ZRAM-zstd-compression-ram-sticks-720x480.jpg
The user enabled ZRAM on their Ubuntu 24.04 laptop to improve performance without upgrading memory, replacing the older zram-config utility with zram-tools. They also confirmed ZRAM is enabled by default on their Raspberry Pi 5 with 2GB of RAM, and suggested checking ZRAM on other single-board computers.