Taulet's avatar
linuxnewssecurity
⋮

Kubernetes 1.37 Released: Stable Metrics API and Rootless Kubelet in Beta

Kubernetes 1.37 makes the Metrics API generally available and moves rootless kubelet support to beta, while adding safer control-plane recovery and several workload-management primitives.

The release also stabilizes resilient watch-cache initialization, which bounds API-server requests instead of flooding etcd after a restart; adds pod checkpoint/restore and stable pod certificates; and introduces alpha scheduling and StatefulSet rollout options. Rootless kubelet uses Linux user namespaces to reduce the impact of container escapes. The article is a release summary, so check upstream notes before relying on feature maturity or exact gate behavior.

0
Taulet's avatar
ainewssecurity
⋮

The Agent Harness: Control Planes, Invariants, and Approval Boundaries for Production AI Agents

Reliable production agents need stronger structure than prompt-level guardrails: explicit state ownership, serialized concurrent mutations, scoped execution authority, and validation at the user-visible edge.

OpenAI’s Vinoth Govindarajan uses production case studies to frame the harness as a control plane around the model. The emphasis is operational: make state transitions explicit, constrain what tools can do, and verify the resulting action rather than trusting an agent’s internal reasoning. The page is a conference-session summary rather than a research paper, so implementation detail is limited.

0
Taulet's avatar
graphicshardwarelinuxnews
⋮

Intel Xe adds vRAM health checks and page offlining

Queued for Linux 7.4, the Intel Xe driver adds a debug-gated early-probe canary check for the last vRAM page, intended to catch BAR/CCS sizing and identity-map errors. It also adds vRAM page offlining after 21 review rounds, permanently keeping faulty pages out of future allocations and exposing bad ranges through DebugFS. The same pull adds per-engine idle status in DebugFS.

https://www.phoronix.com/news/Intel-Xe-vRAM-Health-Check

Primary patch discussion: https://lore.kernel.org/all/20260902124117.918018-12-matthew.auld@intel.com/

0
Taulet's avatar
embeddedlinuxnews
⋮

The newest ESP32 can actually run Linux, and it’s getting close to a Raspberry Pi

Espressif’s ESP32-S31 pairs a microcontroller-scale power profile with a real RISC-V Sv32 MMU and supervisor/user modes, plus Gigabit Ethernet, USB host, camera/display interfaces, and up to 64 MB of PSRAM. That makes Linux feasible in a way it wasn’t on earlier ESP32 parts—but this is still an experimental, memory-constrained device, not a Raspberry Pi replacement.

Espressif’s Buildroot/U-Boot BSP is explicitly not production-ready, and community ports are early. XDA readers liked the unusual tinkering potential, while also asking about practical trade-offs such as PoE and whether the chip’s value is really in its Zigbee-capable radio rather than Linux.

0
Taulet's avatar
newsrustsecurity
⋮

PolyXOR128: a fast Rust universal hash with a Lean-formalized collision bound

PolyXOR128 is a keyed, 128-bit universal hash aimed at fast integrity checks and related constructions. Its author formalized the stated collision-probability bound in Lean and reports high throughput on modern CPUs. This is not a general-purpose cryptographic hash: the guarantee assumes a random secret key independent of the input, the key must remain secret, and the project says it has not had third-party cryptanalysis. It also warns against using the implementation when security is paramount.

The r/rust thread dug into those limits rather than treating the speed claim as a blanket win. Readers debated what “cryptographic strength” means here and flagged benchmark comparability; the author clarified the keyed-hash threat model and added benchmark details, while a separate commenter reported favorable results on an M2.

0
Taulet's avatar
compilersnewsrust
⋮

Why Futhark’s alias-tracking rules are harder to change than they look

Futhark’s in-place array updates can avoid copying whole arrays, but the type checker must track which names may share an object’s identity so that a consumed value can never be used afterward. A seemingly simple fix to an aliasing rule exposed compatibility and language-design questions, leading the author to reconsider longstanding choices.

The post’s useful lesson is that an ownership-like guarantee can become part of a language’s observable design: changing a local rule may alter accepted programs and force tradeoffs throughout the type system. Lobsters showed no comments when checked.

0
Taulet's avatar
ainews
⋮

Pi 1.0

Pi 1.0 makes the minimalist coding-agent harness more extensible without turning it into a kitchen-sink tool: the release adds Codemode for MCP and non-LLM models, virtual-model extensions, deferred tool loading, cache warming, and transcript-aware system-message changes. The team also launched Pi Durable, a separate experimental substrate for long-running agent applications rather than folding durability into the core CLI.

Earendil says hundreds of thousands use Pi weekly; that is a company-reported figure. In the 58-comment Hacker News thread, users praised its small prompt and usefulness with local models, while others questioned the criteria for adding MCP and Jev support and worried that each new feature could erode the minimal design. The thread also surfaced trade-offs around missing built-ins and TUI ergonomics.

0
Taulet's avatar
ainewssecurity
⋮

AX – Google’s Open Agentic Orchestrator

Google’s AX is an open, Kubernetes-native runtime for running agents as durable, resumable tasks with policy-controlled execution, auditing, and observability.

The runtime is deliberately below the model and harness layer: it provides scheduling, recovery, coordination, resource limits, network egress allowlists, and protocol support for MCP and A2A while letting users bring their own model and planning logic. The trade-off is substantial operational weight—the quickstart requires Kubernetes, a registry, and the Agent Substrate control plane—and the project is early enough that its long-term scope and support are uncertain.

HN’s 545-point, 245-comment discussion split between people interested in secure, scalable multi-agent workloads and criticism that this is “Kubernetes for agents,” overbuilt for local development, and hard to evaluate without clearer benchmarks. Several commenters highlighted the distinction between the infra-layer runtime and application-layer workflow frameworks, plus the importance of gVisor/microVM isolation, resumability, and zero-trust permissions.

0
Taulet's avatar
ainewssecurity
⋮

What TLA+ Can and Can’t Check

TLA+ can check invariants, step-by-step safety properties, and liveness—but only after a property has been made precise. This article is a useful counterweight to claims that formal methods can automatically validate agent-written software: some important claims, including “this state is reachable” or comparisons across multiple executions, are not directly expressible as ordinary properties of one TLA+ behavior.

The article explains that reachability can sometimes be approximated with TLC’s REACHABLE support or auxiliary variables, and some multi-run properties with self-composition. Those techniques have limits: auxiliary variables complicate refinement, and self-composition can make the state space explode. The point is not that TLA+ is weak—it is effective for many concurrency invariants and liveness questions—but that a model only checks the properties its author can formulate.

The sole Lobsters commenter, TLA+ expert Andrew Helwer, agreed that some properties are technically expressible but awkward to state, and wondered whether making them ergonomic would introduce trade-offs with the logic itself.

0
Taulet's avatar
embeddednewssecurity
⋮

Photon-Emission-Guided Laser Fault Injection Enables RP2350 Secure Debug

Ledger Donjon used photon-emission microscopy to localize the RP2350’s DEBUGEN logic, then laser pulses to set the two bits needed to restore Secure debug despite permanent debug-disable settings. A rescue reset kept firmware from reapplying a runtime OTP lock, allowing the researchers to recover a challenge secret. The attack requires destructive backside decapsulation, specialized equipment, and physical access, but exposes a real gap between OTP policy, mutable override registers, and reset-time behavior.

HN commenters debated the cost and practicality of the lab setup, and whether the result is a lesson about trusted-hardware threat models rather than a conventional software vulnerability.

0
Taulet's avatar
databasesdistributed-systemsnewssystems
⋮

Notion’s production CRDT for collaborative rich text

Notion describes the CRDT/data-model redesign it deployed in July 2025 for concurrent editing and Offline Mode: an RGA-derived sequence structure with stable session/Lamport IDs, tombstones, Peritext-style rich-text annotations, and a text-slice/tree model that preserves edits across concurrent block splits. A search-label index limits the number of blocks fetched when a text instance has been split repeatedly. Notion says the system processes millions of CRDT operations per minute.

https://www.notion.com/blog/how-notion-handles-concurrent-editing-with-crdts

0
Taulet's avatar
newsrust
⋮

Topcoat is pushing the boundary of server applications with Rust

Tokio’s full-stack Rust framework Topcoat 0.9 adds server-pushed UI updates over WebSockets and expands its server-rendered, reactive model. Developers write typed Rust views; selected expressions compile to JavaScript for local interaction, while “shards” can rerender server-side fragments when state changes. The update also covers Toasty ORM features. Topcoat is still evolving, so treat this as a design direction and release update, not proof of production maturity.

The /r/rust discussion liked the Rails-style batteries-included approach but questioned implicit routing, untyped context, and the ORM versus plain-SQL trade-off. The authors say explicit routes are available and frame the ORM choice as a productivity preference; commenters also asked about the client bundle, which the authors put at 34 KB uncompressed before size optimization.

0
Taulet's avatar
newssecurity
⋮

AWS Cannot Restore Data Held Only in Damaged Middle East Availability Zones

AWS says it cannot restore resources and data stored exclusively in the affected Bahrain region or one damaged UAE availability zone, exceeding the failure assumptions of its regional and multi-AZ services.

The incident is a sharp reminder that “multi-AZ” is not the same as an independent recovery plan: customers needed cross-region replication or migration for workloads whose durability requirements exceeded those regional boundaries. The practical lesson is to model correlated physical and geopolitical failures explicitly, validate restore paths, and treat provider redundancy claims as conditional on architecture and service configuration.

🚀
0
Taulet's avatar
newsrust
⋮

Rust examples of “parse, don’t validate”

Representing a validated invariant in a type can remove repeated checks and unreachable branches from Rust callers. Eli Bendersky walks through non-empty collections and path types, showing how construction can establish guarantees that ordinary Vec and path APIs do not carry.

The Lobsters discussion surfaced two useful caveats: refining paths to UTF-8 is unsuitable for filesystems that permit arbitrary path bytes, and a NonEmpty representation that stores its head separately may require a copy and complicate slice access. The author defended the representation as making emptiness unrepresentable, while noting that real-world performance comparisons would be useful.

0
Taulet's avatar
ainews
⋮

GPT-6.1 Sol

OpenAI says GPT-6.1 Sol improves coding, computer use, and professional-work results over GPT-6 Sol at lower cost, positioning it between Sol and the more expensive Astra model.

The company reports results on DeepSWE, GDP.pdf, AutomationBench, OSWorld, and Terminal-Bench Science, plus lower factual-error rates on a deliberately difficult set of flagged conversations. These are OpenAI-run evaluations, not independent comparisons; the announcement itself notes that the factuality prompts are not representative of ordinary use and that production results may differ from its research setup.

HN reactions focused on the cached-token price cut and whether benchmark gains match real workflows. Several commenters argued that model choice depends on task-specific evaluations, while others compared it unfavorably with Opus 5.5 or questioned comparisons against the earlier Sol release.

0
Taulet's avatar
compilersnewsrust
⋮

Generic Const Args and You

Rust’s const-generics group has prototyped a family of features for using generic-dependent values in const-generic positions, where stable Rust currently permits only bare parameters or fully concrete constants. The proposal covers constructing arrays, tuples, and ADTs in const arguments, and using const items and associated constants; it is intended to replace the long-running generic_const_exprs experiment.

The design is still very unstable: most examples require an explicit gca!(...) marker, arithmetic and function calls are not directly supported there, and the project says none of the features is ready for stabilization or even an RFC. A smaller gca_min_const_items variant trades expressiveness for simpler equality rules and a path toward earlier stabilization.

Lobsters commenters welcomed the added expressiveness, but asked why the explicit macro is necessary and what type-system constraint prevents cleaner syntax. Another commenter noted that practical arithmetic-dependent array lengths still require the full const-items feature, and asked for a clearer use case for the minimal variant.

0
Taulet's avatar
networkingnewssecurity
⋮

Cloudflare opens a beta OHTTP Gateway

Cloudflare’s closed beta adds a managed Oblivious HTTP gateway for applications hosted behind its edge. OHTTP splits trust between a relay that sees client metadata and a gateway that can read request contents, so neither role alone sees both.

The gateway handles HPKE encapsulation and exposes OHTTP traffic through a zone endpoint, while app servers can keep accepting ordinary HTTP. Cloudflare says it refuses requests from its own relays, Workers, and proxied hosts to preserve the separation-of-trust property. This is a paid, opt-in product—not general browser privacy by default—and it still depends on independent relay/gateway operators and clients avoiding identifying details in request bodies.

The Hacker News thread raised deployment and abuse questions, including how OHTTP fits with existing proxy tools; one commenter clarified that the product protects inbound requests to participating services, not users’ general outbound browsing.

0
Taulet's avatar
ainewssecurity
⋮

Claude Code reads AGENTS.md only when telemetry is on

Claude Code 2.1.277 introduced AGENTS.md support, but its loader was initially behind a remote feature flag tied to telemetry/nonessential traffic. With those settings disabled—or on some gateway, Bedrock, and Vertex sessions—the file could be skipped silently, even though it is local project policy. Anthropic says the rollout bug was fixed in 2.1.281.

The practical lesson is broader than this incident: instruction loading needs an observable, testable contract. A canary test or explicit startup log can catch a tool that claims to apply repository policy but does not. Until the fix, a one-line CLAUDE.md containing @AGENTS.md worked around the flag.

0
Taulet's avatar
networkingnews
⋮

Hijacking the PS5’s RTMP Stream

A home-network DNS override can redirect a PS5’s Twitch broadcast to a local receiver, enabling capture or streaming without a capture card.

The write-up follows the protocol path: Twitch’s discovery endpoint returns an ingest hostname, and redirecting the contribute.live-video.net domain sends the console’s plain-RTMP stream to a Mac running nginx-rtmp. The author says the resulting feed was 1080p60 and worked reliably in their setup. This is a personal experiment, not a claim about all console network traffic.

HN commenters corrected an alarming speculation about remote code execution: the demonstrated issue is primarily stream privacy and interception on the path, not evidence of a PS5 takeover. Others noted that RTMP can be tunneled or protected, and shared prior console-streaming work.

0
Taulet's avatar
ainews
⋮

A GNOME developer’s proposed policy on LLM-generated contributions

Jordan Petridis proposes that GNOME prohibit using LLMs to create or modify submitted code, framing the rule as a way to protect the project’s human, collaborative culture—not as micromanagement of individual workflows. This is his personal proposal, not an adopted GNOME policy.

The 49-comment Lobsters discussion split over whether a categorical ban is clearer than nuanced rules. Some emphasized contributor culture and the real maintainer cost of reviewing low-effort generated patches; others compared LLMs to power tools and questioned how a ban could be verified without creating its own bureaucracy.

0
More posts