What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0
1

AI 에이전트가 블록체인 스마트 계약 취약점에서 460만 달러를 찾아냄
------------------------------
- *AI 모델* 이 실제 블록체인 스마트 계약 취약점을 악용해 *460만 달러 상당의 손실 가능성* 을 시뮬레이션으로 입증
- 연구팀은 2020~2025년 사이 실제로 해킹된 405개 계약을 기반으로 한 *SCONE-bench 벤치마크* 를 구축해 평가 수행
- *Claude Opus 4.5, Sonnet 4.5, GPT-5* 가 최신 지식 차단 시점 이후 계…
------------------------------
https://news.hada.io/topic?id=24844&utm_source=googlechat&utm_medium=bot&utm_campaign=1834

0
1
0

Sometimes I stumble over absolutely classical bug reports. Glibc bug report, 'glibc doesn't work right when filesystems have 0 inodes in directories'. Opened 2010, closed 2010 WONTFIX by who you think, reopened in 2016 under a new maintainer, fixed 2022-09 for readdir() and 2024-09 for readdir64_r().

sourceware.org/bugzilla/show_b

I discovered this via this Go bug about the same issue, github.com/golang/go/issues/76 (which has a 'how you can get this yourself' example due to gvfs/FUSE).

0
0
0
0
0
0
2
0

I find it disillusioning to see the casual use of "AI" slowly creeping into our hacker circles. Most of the discussions about AI focus on the quality of its output. I think we're not doing a good job communicating its more fundamental dangers.

In this blog post I write about how tools shape who we are and why the resource intensiveness of AI is ingrained in its purpose. About the devaluation of skills, and power cycles.

Let me know what you think.

fokus.cool/2025/11/25/i-dont-c

0
0
0
0
0
0
0
0

I find it disillusioning to see the casual use of "AI" slowly creeping into our hacker circles. Most of the discussions about AI focus on the quality of its output. I think we're not doing a good job communicating its more fundamental dangers.

In this blog post I write about how tools shape who we are and why the resource intensiveness of AI is ingrained in its purpose. About the devaluation of skills, and power cycles.

Let me know what you think.

fokus.cool/2025/11/25/i-dont-c

0
0
0
1
0
0

絵師さん以外でもになるかもだけど、
生業にしてる人の母数が増えた業界は

大多数の中から
自分を選んでもらうための
その業界の能力とは別な要素が
必要になってしまう側面はあるやね
:ameownod:

それはコミュ力でもいいし
キャラクター性でもいいし
突出した「わかりやすさ」でもいいし、

その人が無理せず発揮し続けやすいものが
何かあると一助になると思うます
:ameownod:

1
0

@IPXFongRafaelito 🦤 Haircut day today. No exciting new Northern NM Spanish for me, but we did have a nice discussion of farolito vs. luminaria, and how my great aunt the (Polish) Catholic nun knew about luminaria, but by way of the Latin not Spanish, and not as “landing lights for baby jeebus,” as I put it, and maybe got a funny cut in the back of my hair by cracking up my barber. ’Tis the season, I guess.

0

대한항공 등 한진그룹 5개사, 스타링크로 기내 와이파이 제공
(서울=연합뉴스) 임성호 기자 = 대한항공과 아시아나항공을 비롯한 한진그룹 산하 5개 항공사가 기내 와이파이로 미국 스페이스X의 위성 인터넷 서...
yna.co.kr/view/AKR202512050584

0
1

now supports atomic partial updates using the PATCH method: give it a subdirectory and it will update its contents without touching anything else

you can use it to e.g. upload previews of built documentation without having to maintain giant git checkouts with stale files for thousands of pull requests. and it's efficient, too!

see codeberg.org/whitequark/whiteq for an example workflow

whitequark.codeberg.page/
whitequark.codeberg.page/previ

With feature patch: In response to a PATCH request, the server partially updates a site with new content. The URL of the request must be the root URL of the site that is being published.
The request must have a application/x-tar, application/x-tar+gzip, or application/x-tar+zstd body, whose contents is merged with the existing site contents as follows:
A character device entry with major 0 and minor 0 is treated as a "whiteout marker" (following unionfs): it causes any existing file or directory with the same name to be deleted.
A directory entry replaces any existing file or directory with the same name (if any), recursively removing the old contents.
A file or symlink entry replaces any existing file or directory with the same name (if any).
In any case, the parent of an entry must exist and be a directory.
The request must have a Race-Free: yes or Race-Free: no header. Not every backend configuration makes it possible to perform atomic compare-and-swap operations; on backends without atomic CAS support, Race-Free: yes requests will fail, while Race-Free: no requests will provide a best-effort approximation.
If a PATCH request loses a race against another content update request, it may return 409 Conflict. This is true regardless of the Race-Free: header value. Whenever this happens, resubmit the request as-is.
If the site has no contents after the update is applied, performs the same action as DELETE.
0
1

Australia says the world will follow social media ban as Meta starts blocking teens

Australia's internet regulator said a teen social media ban would be the first domino to fall in a global push to rein in Big Tech, as Meta's Instagram, Facebook and Threads began locking out hundreds of thousands of accounts ahead of a deadline next week.

reuters.com/world/asia-pacific




0

Your ltspice wrapped ⚡

- put the kettle on! you spent a combined 325 hours stepping Gmin and sources.
- you tried Alt or Shift clicking trace names to get the waveform summary 148 times. don't worry, you'll remember it's Ctrl one day.
- you pasted a large subckt directly into your schematic and immediately regretted it 52 times.
- your favourite net was 'V(n002)', making up 48% of all waveform traces.

0

이글루스가 살아났다고? 하고 찾아보니까 이글루스ai라는 블로그 사이트로 살아난듯. 근데... 진짜... 블로그 플랫폼이 맞는것 같은데 분명 이용자가 있는것 같은데 사람이 하나도 없는 것 같은 느낌. 그 뭐지? 인간이 아닌데 인간을 흉내내는, 약간의 바디 스내쳐 장르를 보고 온 느낌임. 거대한 백룸을 보고온것 같기도 하고. 사이트가 그런 느낌임;;; 무서움;;;

RE: https://bsky.app/profile/did:plc:tnanfzgguy5vxlo4w5ce2g7m/post/3m74woqeblc2g

0

LLM의 첫 번째 ‘다크 패턴’은 아첨(sycophancy)이다
------------------------------
- *대형 언어 모델(LLM)* 이 사용자에게 과도하게 *아첨하고 동의하는 경향* 을 보이며, 이는 인간-컴퓨터 상호작용에서의 첫 *‘다크 패턴’*
- *GPT-4o 업데이트* 이후 이 현상이 더욱 강화되어, 사용자가 자신을 “세상에서 가장 똑똑하고 매력적인 사람”이라 믿게 만들 수 있음
- 이러한 아첨은 *RLHF(…
------------------------------
https://news.hada.io/topic?id=24842&utm_source=googlechat&utm_medium=bot&utm_campaign=1834

0
0

This is unreal. The 2026 code4lib conference has been cancelled unilaterally by Carnegie Mellon University because the Department of Education raised issues with the diversity scholarships (which have been constant for at least a decade, if not longer):

> An applicant must be a member of a group not well-represented within the code4lib community, including but not limited to: women, people of color, LGBTQ+, ability/disability, non-binary gender identities, etc.

lists.clir.org/cgi-bin/wa?A2=i

2025.code4lib.org/general-info

0
0
0
0
0
0
0
0
0
0
0
0

“Don’t let anyone fool you with the so-called two-state solution. That train has already passed.”

Prof. Sami Al-Arian addressed more than 200,000 people in Lahore, Pakistan, in a mass rally for Palestine, denouncing Zionism as a settler-colonial project that has targeted Palestinians for over a century, and argued that accepting the two-state framework effectively legitimizes Israeli rule.

Al-Arian said the reality exposed by the genocide in Gaza proves that “there is no Palestinian problem, there is an Israeli problem,” condemning Western governments as complicit in Israeli crimes. He warned Pakistan against normalization, calling Israel “a threat to national and regional security.”

He concluded by urging the creation of a global popular movement to dismantle the Zionist system, affirming that liberation requires collective action:

“Every person has a role to play. Free Palestine”.

0
0
0
0

갑자기 이런 소리를 하면서 사실 중국인이 빼간거고 해킹 아니다 이런 소리 하는 인간들이 있던데요. (아 인간 아닌가?) 말 장난인거죠. 개인정보 유출은 해킹이 아닙니까? -_- 해킹 맞고 쿠팡이 잘못한게 맞습니다. 또 하나의 문제가 있는데, 정보보안 인증을 취득해 놓고도 가라로 관리를 하고 있었던게 보이는겁니다. 정보보안에 대한 각종 가이던스나 컴플라이언스를 갖추고 사고 발생 시 처리하는 방법이나 규정을 다 만들도록 한 시스템에 대한 인증을 주는게 ISO인데 그 신뢰를 조져놨으니 알아서 책임져야죠. 뭔 놈의 애국타령입니까.

"쿠팡이 베푼 편리함, 국민이 갚자" 갑자기 애국쿠팡 ...

0
0
0