Drop is a rootless Linux sandbox that isolates programs and agents without disrupting the user's environment, using existing distributions and disposable environments. It supports gVisor for enhanced security and runs without requiring root privileges, making sandboxing easier and safer. (droprun.sh)
A reconstructed source code of the notorious cyber-weapon Stuxnet has been made available on GitHub. The repository includes files, documentation, and licensing details related to the malware. (github.com)
The daily digest
Today's best Hacker News stories, summarized and screenshotted, one email a day.
Have I Been Proxied? allows users to quickly check if their public IP has been used in a residential proxy network. The tool helps identify potential unauthorized use of home connections for proxy traffic and provides guidance on next steps. (haveibeenproxied.com)
The daily digest
Today's best Hacker News stories, summarized and screenshotted, one email a day.
A self-decrypting HTML file encryption method packages encryption and decryption into a single web page with no dependencies. It uses embedded OpenPGP signatures and HTML manipulation to enable secure, auditable file sharing without network access. (cms-sfx-demo.apeleg.com)
The daily digest
Today's best Hacker News stories, summarized and screenshotted, one email a day.
Syq is a fast, programmable file transfer tool that allows copying, reorganizing, and removing files locally or across machines without needing an SSH server on the client. It supports scripting via JSON API or Python SDK and can replace or complement rsync with its own protocol. (greaber.github.io)
Aylesaylesfeed demonstrates running complex programs like DOOM inside the Linux kernel using eBPF, bypassing traditional constraints. The project, BPF Capsule, transforms large C, C++, or Rust code into a form accepted by the kernel verifier, enabling in-kernel application logic testing. (ayles.github.io)
ForensicDbg is a modern post-mortem debugger for Windows that supports debugging crash dumps, live processes, and integrates with AI tools for automated analysis. It features an intuitive UI, advanced data interpretation, and AI compatibility to help identify hard-to-catch bugs efficiently. (forensicdbg.com)
Apiaxess offers a zero-setup, browser-based proxy tool for capturing and analyzing API traffic on mobile and web devices. It allows users to intercept, resend, and fuzz requests with live control and export options. (apiaxess.dev)
Aura is a Rust-based agent designed to investigate and fix production incidents automatically. It aims to improve system reliability by providing real-time incident response capabilities. (github.com)
IHaveBeenClawed is a public archive documenting incidents where AI coding agents caused data loss, leaks, or financial damage, with lessons learned from each case. It aims to help developers avoid such issues by sharing real-world examples and safety tips. (ihavebeenclawed.com)
A web page can learn extensive information about a browser, device, and user without scripts or permission, using techniques like headers and styles. This data is collected locally and only shared with servers in specific demonstrations, revealing details such as IP addresses and device capabilities. (sessioncontext.org)
Hamilton is an Android health dashboard app that consolidates data from multiple fitness sources via Health Connect, providing a single view of key metrics. The app operates without internet access, ensuring data privacy and security. (play.google.com)
Corral is a tool designed to kill every command started by an AI agent, enhancing control over automated processes. It aims to improve security and safety in AI-driven workflows. (github.com)
Seal is a tool that allows users to securely store letters and passwords that can be accessed by family members after their death. It aims to provide a safe way to pass on important information in estate planning. (github.com)
VolAnti is an open-source acoustic detector designed for fibre-optic FPV drones. It aims to enhance drone security by detecting acoustic signals associated with drone operation. (github.com)
Agentic OS is a Rust-based Linux binary that creates isolated sandbox environments with SQLite databases for each entity. It aims to improve security and modularity by managing multiple entities within a single binary. (github.com)
Setec Astronomy offers a BGP-based blackhole system that can be set up in minutes for $59/month, providing real-time threat blocking upstream. It requires only a configurable router with BGP support and a tunnel to their network, with no need for existing peering relationships or multihoming. (setecastronomyinc.com)
The MCP-auth-keydris-template allows external tools to authorize MCP calls without sharing agent credentials. It enhances security by enabling credentialless access for external integrations. (github.com)
Kekoso is a macOS app that provides on-device speech-to-text transcription without cloud services or subscriptions. It supports dictation, file and link transcription, call recording, and local AI agent integration, all running entirely on the user's Mac. (kekoso.app)
Checking 1 million free proxies revealed that one in five injects malicious scripts. This highlights security risks in using free proxy services. (github.com)
ToluTag is an open-source passive NFC tag that signs data using ECDSA and verifies signatures on-chain. It enables secure, decentralized authentication for NFC devices. (github.com)
Vajba's browser-based tool analyzes photos for signs of editing, AI generation, hidden metadata, and compression artifacts without uploading files. It detects cryptographic content provenance and verifies signatures to assess the authenticity of images. (vajba.com)
EterDB is a Postgres fork that enables transaction-level undo, allowing precise recovery from incidents like bad transactions, migrations, or dropped tables. It tracks dependencies and reads to revert specific changes without restoring the entire database. (eterdb.com)
Dbmask is a tool designed to discover, mask, and verify sensitive data within SQL databases. It helps organizations protect privacy and comply with data security standards. (github.com)
A new tool named ContextVeil allows agents to read files containing secrets while redacting sensitive values to protect privacy in large language model contexts. The project aims to improve security when handling confidential information in AI workflows. (github.com)
AppLocker is an open-source macOS application blocker that utilizes Apple Endpoint Security to control app access. It aims to enhance security by providing a transparent and customizable way to manage application permissions. (github.com)