Microsoft Copilot Cowork Exfiltrates Files

https://framerusercontent.com/images/kHZd3Js9GlfaXoscY6Iv1aL8Rg.png
Microsoft Copilot Cowork is vulnerable to file exfiltration attacks via indirect prompt injection due to insecure automatic action approvals. This allows attackers to exfiltrate files by sending emails and Teams messages that trigger network requests when opened.

Norway's 2 petabytes of Huawei flash storage and LLM training

https://image.blocksandfiles.com/5244935.webp?imageId=5244935&x=0.00&y=0.00&cropw=100.00&croph=100.00&width=960&height=576&format=jpg
Norway's National Library is developing a sovereign AI model trained in Norwegian language using 2 PB of Huawei storage. The project aims to create a locally trained AI that understands Norway's history, news, and culture, which a globally trained English-speaking AI would not know.

Exit IP VPN servers mitigation rollout

https://mullvad.net/press/MullvadVPN_logo_Round_RGB_Color_positive.png
Below are the servers with the new mitigation applied.

California moves to exempt Linux from its age-verification law after backlash

https://cdn.mos.cms.futurecdn.net/CBt66kAwURokqymNekYL97.jpg
California lawmakers may exempt most open-source operating systems from age-verification requirements. The proposed amendment would exclude software distributed under open-source licenses from the Digital Age Assurance Act.

Show HN: Write your BPF programs in Go, not C

https://opengraph.githubassets.com/1d1e3f35fb352adc0d2833437d2825d47c4b4deb3b00d57a3cbd076d6b513953/boratanrikulu/gobee
gobee is a Go tool that transpiles a subset of Go into BPF C, generating typed Go bindings for the userspace side and gating loads against the running kernel. It reuses clang's mature BPF backend for codegen, BTF, and CO-RE relocations.

Magnifica Humanitas

https://www.vatican.va/etc/designs/vatican/library/clientlibs/themes/vatican-v2/images/logo-vatican.png
The Church calls for a shared discernment process to navigate the challenges of emerging technologies and build a more just world. Christians must choose between constructing a Tower of Babel or rebuilding Jerusalem, prioritizing human dignity and communion over profit and self-sufficiency.

Ninth Circuit Panel Goes Out of Its Way to Question Section 230–DOE vs. Meta

https://blog.ericgoldman.org/wp-content/uploads/2026/02/IMG_2022-300x300.jpg
The Ninth Circuit ruled in favor of Meta Platforms Inc. in a case involving the Rohingya minority's claims against Facebook for its role in violent attacks. The court applied Section 230 to dismiss the claims, citing the law's purpose of promoting the internet and interactive computer services.

Toshifumi Suzuki, founder of Seven-Eleven Japan, has died

https://www.referenceforbusiness.com/biography/images/idbb_04_img0282.jpg
Toshifumi Suzuki revolutionized Japan's retail sector by introducing franchising and transforming the convenience store industry with Seven-Eleven Japan. He implemented innovative data systems and streamlined distribution, improving productivity and profitability.

Hacker News front page as a site

https://thefrontpage.dev/image?url=https%3A%2F%2Fmullvad.net%2Fpress%2FMullvadVPN_logo_Round_RGB_Color_positive.png
The article discusses various topics including Mullvad's solutions, gobee, Riscrithm, HetznerCloud, Gnutella, film reviewer A.S. Hamrah, and more, highlighting technical approaches and innovations in data integrity, AI, and software development. It also covers news on Microsoft, Firefox, NordVPN, DeepSeek API, scams, and other topics related to technology, security, and innovation.

Jensen–Shannon Divergence

The Jensen-Shannon divergence is a method of measuring the similarity between two probability distributions, based on the Kullback-Leibler divergence, and is symmetric and always has a finite value. It is bounded by 0 and 1 for two discrete probability distributions.

C extensions, portability, and alternative compilers

C code often relies on non-standard behaviors and language extensions to work around bugs and gaps in different compilers and libraries. Many codebases attempt to support various environments through preprocessor checks and guards, but these attempts are often finicky or broken.

Japan's New Hypersonic Engine Could Make 2-Hour Flights to the US a Reality

https://www.bgr.com/img/gallery/japans-new-hypersonic-engine-could-make-2-hour-flights-to-the-us-a-reality/intro-1779312403.jpg
Japanese engineers have successfully tested a ramjet engine for a Mach-5 hypersonic aircraft, a key step towards commercial passenger service by the 2040s. The test could lead to flights from Tokyo to Los Angeles taking around two hours, slashing transit time and transforming long journeys into day trips.

Everyone Against Us (2023)

https://www.chicagomag.com/wp-content/uploads/2023/03/C202304-Everyone-Against-Us-Excerpt-topper.jpg
A former Cook County public defender, Allen Goodman, describes the injustices he witnessed in the US justice system. He worked in the Cook County public defender's office from 1996 to 2004, handling cases from Chicago's North and West Sides.

Yoti age checks share facial photos and device fingerprints with third parties

We’re checking your connection to prevent automated abuse

Weave (YC W25) is hiring ML, AI, product, & design engineers

https://app.ashbyhq.com/api/images/org-theme-wordmark/8c055073-ed97-4980-a925-eecf79fbde90/89560b07-0c51-4946-9d59-1e98694a0a99/4ca57cd9-b858-4790-bb7c-19cb9def3755.png
Weave Jobs

Launch HN: Chert (YC P26) – Twilio for iMessage

https://www.trychert.com/_next/image?url=%2Fcompanies%2Fvela.png&w=3840&q=75&dpl=dpl_FkDhuC28xsHkSpJ7fBXnDs7Uner2
Twilio's Chert delivers peer-to-peer iMessage threads with blue bubbles, read receipts, and tapbacks, offering higher open and reply rates than A2P SMS. It exposes a REST API and webhooks for integration with CRMs, sales tools, and data stores.

Riscrithm – An intuitive RISC-V assembler and optimizer coded in Go

https://opengraph.githubassets.com/82af63f2e09eddc07c420dc9b74c6c0c9f406667199ac9364db6f5c01580e1a5/ghetea-patrick/riscrithm
Hey there. If you're looking at this, you are probably getting your hands dirty with Riscrithm, a high-level macro-assembly dialect that compiles straight down to pure RISC-V assembly. Think of it as a bridge between the readability of a high-level language and the raw, deterministic control of bare-metal hardware. Let's dive straight into how the compiler works, the syntax rules, and ...

Building an AWS Lambda-Like Runtime with Firecracker MicroVMs

https://miro.medium.com/v2/resize:fit:700/1*sSIaVY_rPGoibddQu8oHgw.png
The user built a custom serverless platform using Firecracker and learned about the underlying engineering problems, including cold start latency, snapshotting, and IPC design. They implemented warm runtime reuse, achieved 5,400 requests per second and 1ms latency, but had to balance isolation and throughput, making it the most technically difficult and educational project they've worked on.

IBM Spins Off the First Pure-Play Quantum Chip Foundry

https://futurumgroup.com/wp-content/uploads/2026/02/Screenshot-2026-02-11-at-5.09.51-PM-1024x585.png.webp
IBM's Anderon foundry receives $1 billion in CHIPS incentives to establish a 300mm quantum wafer fabrication facility. The funding structure creates a two-tier quantum ecosystem, favoring superconducting silicon architectures over competing modalities.

Gnutella: A Protocol Outliving the World That Created It

https://rickcarlino.com/notes/images/limewire-search-results.png
Gnutella is a decentralized file-sharing protocol that scaled to millions of users in the early 2000s, but its popularity declined as the internet and user behavior changed. Despite being largely forgotten, Gnutella remains operational today, thanks to its robust design and ability to adapt to new technologies and challenges.

Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks

https://krebsonsecurity.com/wp-content/uploads/2026/05/fiod-mirhosting.png
Dutch authorities arrested two men, Andrey Nesterenko and Youssef Zinad, for violating sanctions law by aiding Russia's cyberattacks. They were arrested for their roles in operating MIRhosting and WorkTitans, which provided infrastructure for pro-Russian cyberattacks.

CPPL: A Circuit Prompt Programming Language

https://arxiv.org/static/browse/0.3.4/images/arxiv-logo-fb.png
CPPL is a compiler-mediated design framework that uses LLMs for hardware generation, making it statically checkable and reliable. It improves functional correctness and reduces synthesis complexity compared to direct Verilog and CIRCT IR generation.

The bootstrapper's EU stack for under €10 per month

https://cdn.eualternative.eu/img/alplink.png
You can build a EU infrastructure stack close to zero cost using providers like Hetzner Cloud and Netcup for cheap compute. Several EU providers offer free tiers for email, analytics, uptime monitoring, forms, and payment processing to help you save money.

Canada losing top talent as workers head to the U.S.

https://www.bnnbloomberg.ca/resizer/v2/JO5YP74PS5DCHMLAKFPOGOH64Q.png?auth=5483b8cb4a3cfcc8cf34f87bce38523d8236ee5e045d274f1dd22f78e6426647&width=800&height=450
A new TD Economics report warns Canada is quietly losing highly skilled workers, entrepreneurs and STEM graduates to the United States through work visas, tech recruitment and stronger economic opportunities. BNN Bloomberg spoke with Francis Fong, managing director at TD Economics, about how Canada’s tax structure, productivity challenges and lack of business scale are contributing to the ...

Didgeridoo playing as alternative treatment for obstructive sleep apnoea (2006)

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/4763/1360393/f2f8801c1568/puhm309211.f1.jpg
Didgeridoo playing reduced daytime sleepiness and apnoea-hypopnoea index in patients with moderate obstructive sleep apnoea syndrome. It also improved sleep quality for partners.

Ferrari Luce, Maranello's first ever electric car

https://www.topgear.com/sites/default/files/2026/05/Luce_30rtv2_Lightson_0.jpg
Ferrari's first all-electric car, the Luce, boasts 1,035bhp, 0-62mph in 2.5 seconds, and a 330-mile range. It features a spaceship-like design, rear-hinged doors, and a highly considered interior with a focus on versatility and usability.

Show HN: Audiomass – a free, open-source multitrack audio editor for the web

https://audiomass.co/icon.jpg
AudioMass is a free, open source web-based audio editor running in the browser with no plugins required. It supports various audio operations and effects, with key shortcuts using Shift + key combos.

DeepSeek reasonix, DeepSeek native coding agent with high caching and low cost

Reasonix is a terminal-based AI coding agent for DeepSeek, engineered for prefix-cache stability. It's a free, MIT-licensed project with a paid DeepSeek API key.

Migrating from Go to Rust

Go developers considering Rust are often motivated by correctness guarantees, runtime tradeoffs, and developer ergonomics, rather than performance. Rust's type system and borrow checker provide stronger guarantees and more explicit control over runtime behavior, but can be more verbose and require a different mindset.

He Lost It at the Movies

https://www.theideasletter.org/wp-content/uploads/2026/05/20260514-nackstrand-sweden-movie-theater-3000-1024x683.jpg
A.S. Hamrah is a film critic known for his idiosyncratic and often combative style, which reflects his disdain for commercial interests and mainstream culture. His writing often prioritizes his own opinions and emotions over clear critical philosophy or accurate descriptions, leading to a sense of frustration and confusion in readers.