Full July 2026 Summary: https://www.bleepingcomputer.com/microsoft-patch-tuesday-rep...
HN user
kingforaday
It's going to continue to suck getting prompt rejections on their overly aggressive "benign" safety margin thresholds [1]. Without a clear understanding of what triggers it, I guess we will pay for input/output tokens on the usage credits and not get refunds? As others on HN, I found very limited utility during the Fable 5 week in early June for my benign-engineering tasks and don't look forward to this new release, but I will try.
Would you consider .aero, .cat, .asia, .info novelties? They have been around for 20+ years. Sure, there are over 1500 gTLDs now, but when does something stop becoming a novelty? .ai a ccTLD, that Google recognizes as a gTLD, is that a novelty? These are a bit rhetorical.
They have an impressive set of investors [1]. Also, HN Headline [2] from the other day with 100+ comments.
"He was a hacker-turned-security consultant who, later in life, helped shape the modern white-hat."
They left out convicted criminal.
You should be safe in Australia since they actually need to be friends with China.
As a non-Australian, I enjoyed very much reading about Australia in a book by Tim Marshall titled "The Power of Geography". I didn't quite realize just how vulnerable they become with China's ambitions and expanse in the South Pacific due to their reliance on vital sea lanes for trade with its Asian partners. After reading that book, I can appreciate your comment much more.
I was just looking for something to watch tonight. Thanks for the recommendation!
This is certainly a fun exercise in economics. By taking a shortened work-week, should the companies then pay us 80% of our current comp? Or maybe a little less since they will have to pay for the added tokens we are now using as part of our job that we used to do manually (i.e. time)? Or perhaps we are able to justify that now they can save overhead by reducing facilities costs by 20% as well. Oh but maybe their business lease has a continuous occupancy clause and now the reduction in foot traffic causes them to get penalized so they need to reduce our salaries even more. Slippery slope my friend.
From your statement and the parent comment, just learned that "cargo cult" is a thing, but cargo-culting as a compound is something AI has made up? [1].
As I was educating myself, I found Richard Feynman's Commencement Speech at Caltech in '74 [2] that might have coined this for our industry? If you would rather listen than read [3]. Posting this for others curious on the term.
1. https://trends.google.com/trends/explore?q=Cargo-culting&hl=...
By default Windows 11 will not run an untrusted .exe/PE file - it's governed by Microsoft Defender SmartScreen that will present a pop-up scaring people away and it actually isn't intuitive to click-through to run the program unless you've done it before.
It's fun to think about tile dilation per the exif captured Create Date: "2026:04:03 00:27:39.26". I know it's negligible over the trip, but when they took it, was their time really "2026:04:03 00:27:39.25"?
Their master diagram example in #3 contains a #2 mistake with an unconnected resource (the stripe account). Maybe a double validation of why the master diagrams can be hard to maintain.
For cross-compilation ease it makes sense if you don't care about the size explosion.
"Many of our security bugs are detected using AddressSanitizer, MemorySanitizer, UndefinedBehaviorSanitizer, Control Flow Integrity, libFuzzer, or AFL."
Interesting they are listing archived projects and not OSS-Fuzz. What's the reason for this?
Is this an openclaw created account and openclaw post of its own self-created work?
..But it says "Available to all Claude Code users on subscription plans (Pro/Max/Team/Enterprise) and Claude Console."
Is this wrong?
To add, it's also strictly forbidden by all the major ISPs Acceptable Use Policy. At least in the US.
Congrats on the first batch shipment! What an accomplishment. As someone who just crossed 10 years as a first time foray into HW, I'd like to tell you it gets easier. It doesn't but keep going anyway! Good luck.
Google shows a samaple of the IOCs but Google Trust Services have issued a number of the SSL certs for those domains that have not been revoked (yet?).
Only looking at the:
- a8d3b9e1f5c7024d6e0b7a2c9f1d83e5.com
- af4760df2c08896a9638e26e7dd20aae.com
- cfe47df26c8eaf0a7c136b50c703e173.com
Looks like a standard MD5 hash domain pattern of which currently there are:
user@host:/data/domains/2026/01/30$ zgrep -iE '^[a-f0-9]{32}\.com$' com.txt_domains.gz | wc -l
3005
If you look at some of the others (not listed in Google's IOC), they tend to have a pattern with their SSL certs e.g.:- 0e6f931862947ad58bf3d1a0c5a6f91f.com
X509v3 Subject Alternative Name:
DNS:0e6f931862947ad58bf3d1a0c5a6f91f.com, DNS:effc538138d9342c547c5df42b03d81e.com, DNS:gulfclouds.site, DNS:xinchaobccgba.net
- 17e4435ad10c15887d1faea64ee7eac4.com X509v3 Subject Alternative Name:
DNS:0dcbdf154c39288c91feb076795715e1.com, DNS:0e8843e8f10f20eeef59f0076e4feb83.shop, DNS:1014a1fb60e1b91404682e572ede6b4f.com, DNS:178281a79266d2faa3e578f23c8a361e.com, DNS:17e4435ad10c15887d1faea64ee7eac4.com, DNS:19f75b2642320e0606f5e38ce9fbcf17.com, DNS:1vxe.com, DNS:292893d0b31941e1c0d8eb01235be4eb.com, DNS:2b1e642f3a60130d1b2cf244891bef0d.info, DNS:354542342b7d2ddb66c97240d0c770dc.com, DNS:37d993ba8c9284bedad2a3177dfc44a6.info, DNS:3857036aaeedf670bbcca926945b50dd.com, DNS:3961f3fa3a6bacc5c4f28e81c60f4169.com, DNS:3eb4b3a3f8722b60d6ba2de7dd5f2523.org, DNS:42a17c71c0d6f2a6d7e135f8e869ab3f.com, DNS:4edd3793da3080640431430a4da57a86.org, DNS:4f5667d51451a2060067a97bcddf077f.info, DNS:5006cc38aff1ebc7d1232037fd592c60.net, DNS:54c35ec930f5b52fd9505778bb9c3f00.com, DNS:60255ec5427c2ba9a80b9c7648dd62e9.com, DNS:638d0e352728a04bb56ca102e54b8c9b.xyz, DNS:69234f9b18c0b4d572dc553dbfdb8f52.com, DNS:6934addf679d79a79f0bfc2ff090b104.com, DNS:694b64c9b41c17a229d92156d14a4ffd4.com, DNS:6eba8c4def89561e1cee02bb3c9b373d.info, DNS:7050f8c6563ff47465932e3838dc06fd.com, DNS:72ad0de0a556f763e0629c64c694df4c.com, DNS:86f7020358afaf71baeee5782b6264e4.xyz, DNS:88f2f20d26dcabeafd2f9d24e7ea4e50.com, DNS:911f4bf053ee3dadae1ca6bfdf40a817.com
would there be any reason any of these would be legitimate?If the author sees this, 403 on your services offering: https://fearsoff.org/services/
Awesome! After I generate, where can I take that super res image and get a high quality photo print to frame?
Coincidence.
Appreciate the write up. If Claude presents a multi part shell questionnaire (as it does in planning). Would this miss other questions?
QUESTION=$(echo "$EVENT_DATA" | jq -r'.tool_input.questions[0].question')Just like on a piece of hardware that doesn't have a RTC, we rely on NTP. Maybe we just need an NTP MCP for the agents. Looks like there are several open-source projects already but I'm not linking to them because I don't know their quality or trust.
LSL4 was my favorite.
If you think about it, they should give the hardware away as a lease to Uber, lyft, taxi drivers and pay them per mile. They are likely going to go the most diverse routes than say you or I that drive to work, home, the grocery store, and the park every now and then.
Keep in mind dnsmasq has been around for over two decades by that great person, but... all good things come to an end?
You should look into dnscrypt[0][1]. Easy and lots of options. jedisct1, cofyc, and many others have done a great job over the last decade here.
This would have been helpful for Sam Cooke.