// stories

671 stories · editorial analysis with viewpoints and sources

Canvas LMS Down After ShinyHunters Breach Threatens Student Data Leak

May 14

▸ ShinyHunters — the group behind prior AT&T and Ticketmaster breaches — claims to have compromised Instructure's Canvas LMS and is threatening to leak ...

Security / Privacy Cloud / Infrastructure breaking

Valve Drops Steam Controller CAD Files — Hardware Open Source Done Right

May 14

▸ Valve released the full CAD files for the Steam Controller under a Creative Commons license, making it one of the most significant consumer hardware o...

Hardware / Chips Open Source clear_take

Amazon Devs Are 'Tokenmaxxing' — Gaming AI Metrics Instead of Shipping Code

May 14

▸ Amazon employees coined 'tokenmaxxing' — inflating AI tool usage stats to satisfy management pressure to adopt AI coding assistants.

Career / Industry AI / ML clear_take

Gmail Registration Now Demands You Text Google First

May 14

▸ Google has reversed its SMS verification flow: instead of receiving a code, new account registration now requires you to scan a QR code and send a tex...

Politics / Regulation Security / Privacy clear_take

Meta Kills E2EE for Instagram DMs — Privacy Theater Gets a Curtain Call

May 14

▸ Meta is removing end-to-end encryption from Instagram direct messages, reversing its own privacy commitment made when rolling out E2EE across its mess...

Politics / Regulation Security / Privacy clear_take

.de Goes Dark: DNSSEC Failure Takes Germany's TLD Offline

May 14

▸ Germany's .de TLD — the world's largest country-code domain with ~17 million registrations — suffered a DNSSEC validation failure, causing resolution ...

Security / Privacy Cloud / Infrastructure breaking

Bambu Lab Took From Open Source. It's Not Giving Back.

May 14

▸ Jeff Geerling documents how Bambu Lab built a billion-dollar 3D printer business on GPL-licensed Marlin firmware while failing to release modified sou...

Hardware / Chips Politics / Regulation Open Source clear_take

DuckDB Gets a Network Protocol — and That Changes Everything

May 14

▸ DuckDB's new Quack protocol adds client-server capability to what was previously an embedded-only analytical database.

Data / Analytics Open Source Backend / APIs explainer

Bun Is Rewriting Its Core from Zig to Rust — Here's Why It Matters

May 14

▸ Bun has begun porting its JavaScript runtime internals from Zig to Rust, confirmed by commits landing in the main oven-sh/bun repository.

Open Source Backend / APIs clear_take

Agent Skills: The Quiet Standard War That's Already Over

May 13

▸ Anthropic's Agent Skills spec — a folder with a SKILL.md file — has been adopted by 35+ tools including Cursor, GitHub Copilot, VS Code, OpenAI Codex,...

DevOps / Platform Engineering Open Source AI / ML explainer

GitLab Kills Its CREDIT Values. The Handbook Era Is Over.

May 13

▸ GitLab is cutting staff and officially retiring CREDIT — the Collaboration, Results, Efficiency, Diversity, Iteration, Transparency framework that def...

DevOps / Platform Engineering Open Source Career / Industry clear_take

AI Slop Is Poisoning the Communities Developers Depend On

May 13

▸ AI-generated low-effort content — 'slop' — is flooding Stack Overflow, Reddit, GitHub issues, and technical forums, drowning out genuine human experti...

Career / Industry AI / ML Open Source clear_take

You Didn't Get a UUID Collision. Here's What Actually Happened.

May 13

▸ A developer reported a duplicate UUID v4 in production, sparking an HN thread with 337+ points — but the math makes a true collision essentially impos...

DevOps / Platform Engineering Backend / APIs explainer

Debian Finally Says 'Must': Reproducible Builds Are No Longer Optional

May 13

▸ A debian-devel-announce post formally argues Debian must require all shipped packages to be bit-for-bit reproducible — elevating a decade-long 'should...

Security / Privacy Open Source DevOps / Platform Engineering clear_take

Matklad's Guide to Learning Architecture: Build Compilers, Not Diagrams

May 13

▸ Alex Kladov (matklad) argues that software architecture is best learned by studying well-built systems — not by reading architecture books or memorizi...

Backend / APIs Open Source Career / Industry explainer

Healthcare.gov Marketplaces Sent Citizenship and Race Data to Ad Tech

May 13

▸ US healthcare marketplace websites embedded tracking pixels that transmitted applicants' citizenship status, race, and ethnicity data to advertising p...

Politics / Regulation Security / Privacy clear_take

Your AI Agent Doesn't Need Better Prompts — It Needs an If Statement

May 13

▸ The biggest bottleneck in AI agent reliability isn't prompt quality — it's the absence of deterministic control flow between LLM calls.

AI / ML Backend / APIs clear_take

Mercury Has 2M+ Lines of Haskell in Production. Here's What That Looks Like.

May 13

▸ Mercury, the fintech startup handling billions in deposits, runs one of the largest known production Haskell codebases at roughly 2 million lines.

Career / Industry Backend / APIs Startups / Launches explainer

TanStack npm Supply-Chain Compromise: What Happened and What To Do

May 12

▸ Multiple TanStack packages were published with malicious postinstall scripts that exfiltrated environment variables and secrets to an attacker-control...

Open Source Security / Privacy Frontend / UI breaking

Your Obsidian Vault Might Be Compromised: Phantom Pulse RAT Hid in a Plugin

May 12

▸ A malicious Obsidian community plugin was weaponized to deploy the Phantom Pulse remote access trojan, giving attackers persistent access to developer...

Security / Privacy Open Source clear_take
← newer page 4 of 34 older →