🦞🌯 Lobster Roll

All LHN/.~Ars
RSS

Showing stories from 2025-11. View all

NewestOldestTop ScoredMost Discussed
Is anyone using Project Hummingbird? (redhat.com)
Fort Knox for your secrets – Manage secrets with encryption or cloud providers (fnox.jdx.dev)
Fort Knox for your secrets - Manage secrets with encryption or cloud providers (fnox.jdx.dev)
EU Council Approves New "Chat Control" Mandate Pushing Mass Surveillance (reclaimthenet.org)
Leak of identity of anonymous reviewers, authors, and area chairs on OpenReview
https://openreview.net/forum/user|statement_regarding_api_security_incident (As the URL contains a `|` it is being rejected in the URL field).
Show HN: TinyCompressor – Free, Privacy-First Image/Video/PDF Compression Tool (tinycompressor.com)
I&#x27;ve built TinyCompressor, a modern web-based compression and conversion tool that processes everything locally in your browser. No uploads, no server storage, completely free.<p>What it does: - Image Compression: PNG, JPEG, WebP, AVIF, GIF, BMP – reduce file sizes by up to 90% while maintainin...
Free, online HEIC→JPG–batch ready, privacy-safe, no uploads (heicjpgnow.com)
A vulnerability in OpenReview allows unauthorized access to anonymous identities (openreview.net)
Show HN: SiteIQ – LLM and Web security testing tool (built by a high schooler) (github.com)
Hi HN! I&#x27;m an 11th grade student learning cybersecurity and web development. I built SiteIQ as a hands-on way to understand security vulnerabilities, SEO, and how to test them.<p>I used AI as my coding partner throughout this project – it helped me understand concepts, debug issues, and write c...
ML-KEM Mythbusting (keymaterial.net)
.NET 10 and NuGet Audit: Finding Root Packages for Transitive Vulnerabilities (appsoftware.com)
Enterprise security can be messy: Building a Security-Aware Culture
Your executive team gets it. They&#x27;ve approved the budget, they mention security in board meetings, they understand the stakes. You&#x27;re not fighting for recognition at the top anymore.<p>But then you look at what&#x27;s actually happening three levels down. The marketing team is sharing cred...
Show HN: GemGuard – a security auditing tool for Linux and Windows (github.com)
I’ve been working on a small security auditing tool called GemGuard and wanted to share it with the community.<p>GemGuard collects system information — running processes, network connections, and recently installed packages — and then uses Google’s Gemini models to generate a human-readable assessme...
Looking for 10–15 apps to test my LLM security scanner (pre-launch,free reports) (scanmyllm.com)
Protect Public School Students from Surveillance of Off-Campus Speech (eff.org)
Tell HN: OpenAI Security Incident with PII
Today I got the following email from OpenAI:<p>Subject: Third-party security incident<p>From: OpenAI &lt;noreply@email.openai.com&gt;<p>Transparency is important to us, so we want to inform you about a recent security incident at Mixpanel, a data analytics provider that OpenAI used for web analytics...
US breach reinforces need to plug third-party security weaknesses (computerweekly.com)
I got tired of juggling security tools,so I built an AI copilot to do it for me (sydsec.co.uk)
Court Ends Dragnet Electricity Surveillance Program in Sacramento (eff.org)
OpenDesk 1.10. Enhanced security architecture (opendesk.eu)
Show HN: Whisper Money – A privacy‑first, E2E encrypted personal finance app (github.com)
Hi HN,<p>I built Whisper Money because I wanted a way to track and categorize my finances without exposing my transaction history to third-party aggregators or cloud providers that might sell the data.<p>It is a privacy-first, self-hostable personal finance application.<p>Key Features<p>- End-to-end...
Mixpanel Security Breach (mixpanel.com)
OpenAI API user data exposed in Mixpanel security breach (dqindia.com)
What to know about a recent Mixpanel security incident (openai.com)
Show HN: JW Tool Box – Free, privacy-first web tools (PDF, Image, Converters) (jwtoolbox.com)
I got tired of &quot;free&quot; online tools that may steal data or force you to create an account.<p>So I built a suite of 40+ utilities that run entirely in your browser (client-side only). - No server uploads (Privacy first) - No login required - No paywalls<p>It includes PDF tools, image convert...
CoinTracker Third-party security incident (Mixpanel)
(Received as on 26 Nov 2025)<p>We’re reaching out to let you know about a security event involving one of CoinTracker’s third-party service providers, Mixpanel. We want to be transparent about what happened, what information was involved, and what we’re doing in response.<p>To be clear: CoinTracker’...
Back End Vulnerabilities of Snype Expose User Data and Alleged Shill Bidding (elitefourum.com)
Lawsuit Challenges San Jose's Warrantless ALPR Mass Surveillance (eff.org)
Is France standing up for encryption and privacy? (tuta.com)
Bun Security Scanner API (bun.com)