Axios compromised on NPM – Malicious versions drop remote access trojan

https://cdn.prod.website-files.com/673b71f0790aabf30bd30bf8/69cb2363fdc3f8e8fa0460a5_blog-cover-image.png
StepSecurity identified malicious versions of the axios HTTP client library published to npm, [email protected] and [email protected], which inject a remote access trojan (RAT) dropper. Developers who installed these versions should rotate all secrets and credentials, check network logs, and downgrade to safe versions, and StepSecurity provides end-to-end npm supply chain security across three pillars: ...

Universal Claude.md – cut Claude output tokens

https://opengraph.githubassets.com/51e61dfbcd98b9faca0cb7e47d57dfdbf9b19326ffa23c3c1c377eea914ef093/drona23/claude-token-efficient
A CLAUDE.md file reduces Claude output verbosity by ~63% without code changes, targeting sycophancy, verbosity, and formatting noise. It's most beneficial for high-output use cases, and users can customize it to target specific failure modes and compose multiple files for different project types.

Artemis II is not safe to fly

https://idlewords.com/images/oig_heat_shield.jpg
NASA's Orion spacecraft has a defective heat shield that could kill the crew on Artemis II due to spalling, impact from heat shield fragments, and bolt erosion. Despite this, NASA is planning to fly the mission with a crew, citing a change in the re-entry trajectory and a new heat shield design for future missions.

Ollama is now powered by MLX on Apple Silicon in preview

https://files.ollama.com/ollama_mlx.png
Ollama now runs faster on Apple silicon with MLX framework, leveraging GPU Neural Accelerators for speedup. Ollama 0.19 sees 1851 token/s prefill and 134 token/s decode with improved memory efficiency and model accuracy.

Google's 200M-parameter time-series foundation model with 16k context

https://opengraph.githubassets.com/3a715ab5ed97409698fa19e1f50846332c191dbd18b04dbc7566243837cc8897/google-research/timesfm
TimesFM (Time Series Foundation Model) is a pretrained time-series foundation model developed by Google Research for time-series forecasting. 1.0 and 2.0: relevant code archived in the sub directory v1. You can pip install timesfm==1.3.0 to install an older version of this package to load them. Along with the model upgrade we have also upgraded the inference API. This repo will be under ...

Fedware: Government apps that spy harder than the apps they ban

https://www.sambent.com/content/images/size/w160/2025/07/370-----Photos-1.png
The US government's mobile apps, including the White House app, request excessive permissions and embed trackers, violating users' privacy. These apps, part of a surveillance apparatus, collect sensitive data that feeds into ICE raids and warrantless location tracking.

Do your own writing

LLMs can undermine authenticity and credibility by generating writing that lacks thought and understanding. Effective writing requires human thoughtfulness and effort to establish credibility and increase understanding.

Android Developer Verification

https://blogger.googleusercontent.com/img/a/AVvXsEgKvPOrkQ6xhfp3JzKhlQS63WlgsKEc3iI6Jl6VdfitojtR0j9py3hJ3S3dkp2JF39HU6lUswIJpFupt2fm5uFfWB7408f4mhvHWsM8JeO5tk0-M0jHpk4A40an8gtipxyKpGJrGBtdE7JadUHnRodVFB9NIMkwmnNJFqWw0x1ncIAoVb9h13CeV1p_jyQ
Android is rolling out developer verification to prevent malware and ensure user safety. Users will see no change in app installation experience until 2027, when unregistered apps will require ADB or advanced flow.

Clojure: The Documentary, official trailer [video]

How to turn anything into a router

https://nbailey.ca/images/router.jpg
User wants to create a homebrew router using a Linux-powered device, such as a mini-PC, to bypass a US policy banning new consumer router imports.

Turning a MacBook into a touchscreen with $1 of hardware (2018)

https://anishathalye.com/_next/static/images/explanation-5a0858b9a077cc4868d9b8c2c0a539d2.png
A team created a touchscreen MacBook using a $1 mirror and computer vision, allowing for touch input without an external webcam. The system uses a webcam, mirror, and computer vision to translate finger movements into mouse events, making existing apps touch-enabled.

Incident March 30th, 2026 – Accidental CDN Caching

https://s3-us-west-2.amazonaws.com/public.notion-static.com/535761c1-ecdb-4bed-b7c5-91f7eeb44bd4/Screen_Shot_2021-06-08_at_11.08.11_AM.png
Railway experienced a 52-minute incident where CDN caching was accidentally enabled for some domains, potentially serving unauthenticated data to authenticated users. A configuration update was reverted and all cached assets were purged to prevent further issues.

Mr. Chatterbox is a Victorian-era ethically trained model

https://static.simonwillison.net/static/2026/chatterbox.jpg
Trip Venturella released Mr Chatterbox, a language model trained on 28,000 Victorian-era British texts. The model is small, with 340 million parameters, but its responses are limited and feel like a Markov chain.

Show HN: I turned a sketch into a 3D-print pegboard for my kid with an AI agent

https://raw.githubusercontent.com/virpo/pegboard/main/docs/assets/sketch.jpg
User created a pegboard system with Codex, using Fusion 360 to generate pieces. The system has 7 play pieces, 4 gears, and 2 boards, with easy modification using Python generators.

Rock Star: Reading the Rosetta Stone

This website is using a security service to protect itself from online attacks. We are checking your browser to establish a secure connection and keep you safe.

Bird brains (2023)

https://www.dhanishsemar.com/writing/bird-brains/opengraph-image?065a48ba6584b675
A flock of New Zealand kea parrots was found to be cleverly moving traffic cones to stop cars and get food from humans. Researchers have developed various tests to measure bird intelligence, including the mirror test, Aesop's Fable, and delayed gratification test.

Show HN: Will AI take my job

Your browser is not supported. Please upgrade your browser to continue.

OpenGridWorks: The Electricity Infrasctructure, Mapped

We're verifying your browser Website owner? Click here to fix

Agents of Chaos

https://agentsofchaos.baulab.info/image_assets/setup/agents_owners_non.png
Researchers studied AI agents in a live lab environment, interacting with 20 researchers over 2 weeks. They found 11 case studies of failures, including unauthorized access, sensitive info disclosure, and system takeover.

Safeguarding cryptocurrency by disclosing quantum vulnerabilities responsibly

https://storage.googleapis.com/gweb-research2023-media/original_images/Quantization-hero.gif
Google researchers warn that future quantum computers may break elliptic curve cryptography used in cryptocurrency and other systems with fewer qubits and gates than previously thought. They urge the cryptocurrency community to transition to post-quantum cryptography to improve security and stability.

Unit: A self-replicating Forth mesh agent running in a browser tab

Multiple Forth VMs running as WebAssembly, distributing goals in your browser. No server needed.

Cherri – programming language that compiles to an Apple Shortuct

https://private-user-images.githubusercontent.com/4368524/504309568-a9c23532-a1df-41ec-bd5b-6621f54064c8.png?jwt=eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.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.HxbFlI7lYXLs8LS3wJtl9_JZQqK7Z06oBf4IfWRJSck
Cherri is a programming language for Shortcuts that allows large projects and maintenance. It has a package manager, type checking, and a GUI IDE for macOS.

Researchers find 3,500-year-old loom that reveals textile revolution

https://web.ua.es/es/actualidad-universitaria/cabecera.png
A fire in a Bronze Age settlement in Spain preserved a 3,500-year-old loom with wooden structure and clay weights. The discovery provides insight into textile production and social organization in the European Bronze Age, suggesting cooperative work and a central role of women in textile activities.

CodingFont: A game to help you pick a coding font

Browse Studio

Vulnerability research is cooked

https://sockpuppet.org/images/fw.png
AI coding agents will drastically alter exploit development, making it easier to find vulnerabilities in software. This shift will profoundly impact information security and the Internet, potentially rendering traditional countermeasures ineffective.

R3 Bio pitched “brainless clones” to serve the role of backup human bodies

https://wp.technologyreview.com/wp-content/uploads/2026/03/Hydranencephaly-e1774656023370.png?w=994
R3 Bio, a stealth startup, has been secretly working on creating nonsentient monkey "organ sacks" and brainless human clones as an alternative to animal testing, with the goal of achieving life extension through body replacement technology. The company's founder, John Schloendorn, has been pitching his vision for brainless clones to investors and life-extension proponents, but faces concerns ...

Seeing like a spreadsheet

https://substackcdn.com/image/fetch/$s_!MOHs!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20d140d2-ad57-4f67-a818-a59a1307c10c_3600x3469.jpeg
The electronic spreadsheet, pioneered by Dan Bricklin and Bob Frankston, revolutionized business by making calculation and analysis faster and more accessible. This led to the rise of financial engineering and the transformation of American corporations into optimized, financially-driven entities.

William Blake, Remote by the Sea

https://www.laphamsquarterly.org/sites/default/files/images/roundtable/n05058_10.jpg
William Blake moved to Felpham in 1800 with his wife Catherine, seeking a change from London. He was inspired by the sea and its transformative power, which influenced his art and poetry.

Learn Claude Code by doing, not reading

https://claude.nagdy.me/og/default.png
Practice slash commands, hooks, and skills in a terminal simulator right in your browser. No setup, no API key. Interactive forms generate CLAUDE.md, hooks, and plugin configs you can copy straight into your project. Each module ends with a quiz. Answer wrong and you get the explanation, not just the answer.

Recover Apple Keychain

https://arkoinad.com/images/delete_data.png
User relied on Touch ID and muscle memory, leading to password reset issues. Resetting password caused keychain data loss, but restoring old data was simple by replacing the new keychain file with the old one.