1323
811
XZ backdoor: "It's RCE, not auth bypass, and gated/unreplayable."
https://bsky.app/profile/filippo.abyssdomain.expert/post/3kowjkx2njy2b
10 months ago
538
313
Xz: Can you spot the single character that disabled Linux landlock?
https://git.tukaani.org/?p=xz.git;a=blobdiff;f=CMakeLists.txt;h=d2b1af7ab0ab759b6805ced3dff2555e2a4b3f8e;hp=76700591059711e3a4da5b45cf58474dac4e12a7;hb=328c52da8a2bbb81307644efdb58db2c422d9ba7;hpb=eb8ad59e9bab32a8d655796afd39597ea6dcc64d
535
128
Xz/liblzma: Bash-stage Obfuscation Explained
https://gynvael.coldwind.pl/?lang=en&id=782
526
341
Xz: A microcosm of the interactions in open source projects
https://robmensching.com/blog/posts/2024/03/30/a-microcosm-of-the-interactions-in-open-source-projects/
520
330
IrfanView
https://www.irfanview.com/
467
256
Roll-Invert-Unroll: An easier way to replace a duvet cover
https://danverbraganza.com/writings/an-easier-way-to-replace-a-duvet-cover
396
267
Garbage collection for systems programmers (2023)
https://bitbashing.io/gc-for-systems-programmers.html
320
192
Someone has been attempting to DDoS us for weeks and we do nothing
https://tableplus.com/blog/2024/03/how-we-deal-with-ddos.html
301
59
Running OCR against PDFs and images directly in the browser
https://simonwillison.net/2024/Mar/30/ocr-pdfs-images/
281
202
Notes on El Salvador
https://mattlakeman.org/2024/03/30/notes-on-el-salvador/
245
123
About the Tailscale.com outage on March 7, 2024
https://tailscale.com/blog/tls-outage-20240307
221
107
Paint.net
https://www.getpaint.net/
214
77
Prolog language for PostgreSQL proof of concept
https://github.com/tatut/pgprolog
211
76
Git as a debugging tool
https://lucasoshiro.github.io/posts-en/2023-02-13-git-debug/
201
44
Mamba Explained
https://thegradient.pub/mamba-explained/
191
17
Veloren, an open source game, release 0.16
https://veloren.net/blog/release-0-16/
176
152
How GitHub replaced SourceForge as the dominant code hosting platform
https://graphite.dev/blog/github-monopoly-on-code-hosting
170
24
Iowa fertilizer spill kills nearly all fish across 60-mile stretch of rivers
https://www.nytimes.com/2024/03/29/us/iowa-spill-fish-kill.html
73
Toni Morrison's Rejection Letters
https://lareviewofbooks.org/article/there-is-no-point-in-my-being-other-than-honest-with-you-on-toni-morrisons-rejection-letters/
169
91
Why Has Figma Reinvented the Wheel with PostgreSQL?
https://medium.com/@magda7817/why-has-figma-reinveted-the-wheel-with-postgresql-3a1cb2e9297c
161
40
The Mongolian Meta
https://docs.google.com/document/d/1W_QK69BXMHUZXI5VdNH93_aLhTd9SQzNYhRLrh_-ZVA/edit?usp=sharing&ref=thebrowser.com
150
31
An unusual 7400-series chip implemented with a gate array
https://www.righto.com/2024/03/idt-gate-array.html
149
99
Kolmogorov Complexity and Compression Distance (2023)
https://smunshi.net/kolmogorov-complexity-and-compression-distance.html
148
Debian on xz-utils: revert to version that does not contain changes by bad actor
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1068024
95
The jobs being replaced by AI – an analysis of 5M freelancing jobs
https://bloomberry.com/i-analyzed-5m-freelancing-jobs-to-see-what-jobs-are-being-replaced-by-ai/
45
Full-scale file system acceleration on GPU [pdf]
https://dl.gi.de/server/api/core/bitstreams/7c7a8830-fd81-4e56-8507-cd4809020660/content
140
26
When will the eclipse happen? A multimillennium tale of computation
https://writings.stephenwolfram.com/2024/03/when-exactly-will-the-eclipse-happen-a-multimillennium-tale-of-computation/
133
78
Mathematician who made sense of the universe's randomness wins Abel Prize
https://www.smithsonianmag.com/smart-news/mathematician-who-made-sense-of-the-universes-randomness-wins-maths-top-prize-180984020/
131
61
NetBSD 10.0 Released
https://www.netbsd.org/releases/formal-10/NetBSD-10.0.html
111
DeWitt and Stonebraker's "MapReduce: A major step backwards" (2009)
http://craig-henderson.blogspot.com/2009/11/dewitt-and-stonebrakers-mapreduce-major.html
127
43
The Ken Thompson Hack
https://wiki.c2.com/?TheKenThompsonHack
126
22
Significant performance and correctness improvements to the kernel
https://www.redox-os.org/news/kernel-10/
206
Novo Nordisk facing pressure as study finds $1k drug can be made for $5
https://fortune.com/europe/2024/03/28/ozempic-maker-novo-nordisk-facing-pressure-as-study-finds-1000-appetite-suppressant-can-be-made-for-just-5/
124
117
Some notes on Firefox’s media autoplay settings in practice as of Firefox 124
https://utcc.utoronto.ca/~cks/space/blog/web/FirefoxMediaAutoplaySettingsIV
122
The Canadian government's plan to plant two billion trees
https://www.cbc.ca/newsinteractives/features/two-billion-trees
119
21
Reported Supply Chain Compromise Affecting XZ Utils Data Compression Library
https://www.cisa.gov/news-events/alerts/2024/03/29/reported-supply-chain-compromise-affecting-xz-utils-data-compression-library-cve-2024-3094
116
96
US appeals court kills ban on plastic containers contaminated with PFAS
https://www.theguardian.com/us-news/2024/mar/30/pfas-ban-plastic-containers-court
115
8
Linear Algebra of Types (2019)
https://www.philipzucker.com/linear-algebra-of-types/
114
34
Models all the way down
https://knowingmachines.org/models-all-the-way
16
XZ Utils Backdoor
https://tukaani.org/xz-backdoor/
11
Proteins let cells remember how well their last division went
https://arstechnica.com/science/2024/03/proteins-let-cells-remember-how-well-their-last-division-went/
109
30
The roller ship was not an effective way to cross the high seas
https://hackaday.com/2024/03/27/the-roller-ship-was-not-an-effective-way-to-cross-the-high-seas/
Jails banned visits in "quid pro quo" with prison phone companies, lawsuits say
https://arstechnica.com/tech-policy/2024/03/jails-banned-family-visits-to-make-more-money-on-video-calls-lawsuits-claim/
106
How well can LLMs write COBOL?
https://bloop.ai/blog/evaluating-llms-on-cobol
101
America's Drivers Agree: LED Headlights Are Just Too Bright
https://www.wsj.com/lifestyle/car-led-headlights-too-bright-safety-driving-df0dd05e
25
Xz format inadequate for long-term archiving (2016)
https://www.nongnu.org/lzip/xz_inadequate.html
97
42
From scratch OpenGL and shaders with raw Xlib
https://hereket.com/posts/x11_window_with_shaders/
3
Popular songs are simpler and more repetitive than they used to be
https://www.science.org/content/article/popular-songs-are-simpler-and-more-repetitive-they-used-be
94
58
Ask HN: How to secure website for public launch
https://news.ycombinator.com/item?id=39874201
62
Ask HN: Anybody Using Htmx on the Job?
https://news.ycombinator.com/item?id=39875374
93
Return-to-Office Mandates: How to Lose Your Best Performers
https://sloanreview.mit.edu/article/return-to-office-mandates-how-to-lose-your-best-performers/
92
162
Why Ireland's housing bubble burst
https://worksinprogress.co/issue/why-irelands-housing-bubble-burst/
90
51
The Set-Up-to-Fail Syndrome (1998)
https://hbr.org/1998/03/the-set-up-to-fail-syndrome
89
57
TSMC was founded by Morris Chang when he was 55 years old
https://www.wsj.com/tech/tsmc-morris-chang-taiwan-semiconductor-chips-entrepreneurship-506fcbc4
23
Anakin – Automatically Kill Orphans
https://github.com/Timmmm/anakin
87
12
Tom's Essay (2008)
https://archive.nytimes.com/opinionator.blogs.nytimes.com/2008/09/23/toms-essay/
83
Type Inference Was a Mistake
https://borretti.me/article/type-inference-was-a-mistake
81
65
British water company dumps sewage, claims "no right to swim in the sea"
https://inews.co.uk/news/environment/public-no-right-swim-sea-firm-dumped-sewage-2981778
80
135
Playboy image from 1972 gets ban from IEEE computer journals
https://arstechnica.com/information-technology/2024/03/playboy-image-from-1972-gets-ban-from-ieee-computer-journals/