Today’s front page is thin in a way that is itself the news. Thirty stories ranked, and exactly two of them cleared 200 points: a court ruling and a 53-year-old PDF. The page’s ceiling was 305 points, which on a normal day is a mid-table score. Everything else on the front page is a 100-point launch post, a product page, or a video.

So the shape of this roundup is different from the last week’s. Today’s page gets covered top to bottom. The 200-point mass sits in the trailing 48 hours, where 32 stories cleared the bar and eleven of them never appeared in yesterday’s roundup — a Linux CVE flood, a Frog and Toad pastiche about runaway sandboxes, SvelteKit 3, DeepSeek shipping a desktop harness, and a connected-vehicle privacy study that found pairing the manufacturer’s app roughly doubles how many ad-tech companies see your car.

Scores below are as scraped from the front page at 13:00 PDT through the browser DOM, cross-checked against the HN search API at the same moment; the 48-hour numbers come from the API. Where a score moved by a few points during the scan, the later number is used.

Court agrees with EFF: Utah’s VPN law demands a technical impossibility — 305 points

305 points · 137 comments · eff.org · HN discussion

A federal judge has issued a preliminary injunction blocking Utah’s SB 73, the anti-VPN age-verification law signed earlier this year. The ruling holds that the law likely violates the constitutional prohibition on state laws that substantially burden conduct and businesses outside the state’s borders. Judge Barlow’s order follows a suit from Aylo, Pornhub’s parent, and it lands days before the Department of Commerce’s proposed compliance rules (R152-78B) were due to take effect on October 8, so those rules cannot be enforced pending further litigation.

What SB 73 demanded is the interesting part. Covered adult sites had to either block VPN traffic or determine the physical location of visitors using tools that mask their network traffic — and the law further prohibited those sites from publishing instructions on how to use a VPN to circumvent the age gate. EFF’s own filing spells out the impossibility: an actual-location provision means verifying every visitor’s location from anywhere, because a single obfuscated user in Utah puts the site in violation. Utah was, to EFF’s knowledge, the first state to go after VPN use specifically as an age-verification workaround. One provision survives untouched: Aylo’s suit does not challenge the ban on telling users how VPNs work.

The comment thread is the useful half. Is VPN detection reliably possible? Mostly not, and the thread works through why: any hostname that behaves like a commercial VPN is a signal, browser fingerprinting and latency triangulation get you close, residential proxies exist precisely because detection is good enough to matter, and the cheapest counter is a VPS in another country that looks like nobody. One commenter prices the whole idea — 30ms to ping an address versus 330ms for the JavaScript to answer tells you the client is 300ms further away than it claims. Another notes the loophole so obvious it’s funny: an ISP could route all of Utah through a VPN. The best line in the thread takes on EFF’s own slogan, asking whether “the internet will always route around censorship” is still true or has become a truism in an era of Iranian and Chinese filtering. And the practical answer nobody in Utah’s legislature wanted on the record: withdrawing from the state is cheaper than detecting VPNs.

The Legend of John von Neumann (1973) — 210 points

210 points · 122 comments · gwern.net · HN discussion

Paul Halmos’s April 1973 American Mathematical Monthly piece, presented here as the original uncut version of an article commissioned by the Encyclopaedia Britannica. It is a legend inventory with a mathematician’s caution, which is why it still reads better than the biographies. Von Neumann was born December 28, 1903 in Budapest as Margittai Neumann János, the eldest son of a banker with a hereditary minor title. Even in the city and decade that produced Szilárd, Wigner and Teller, Halmos writes, von Neumann’s brilliance stood out and the legends started in childhood: dividing eight-digit numbers in his head at six, mastering calculus at eight, memorising columns of the Manhattan telephone book (he claimed he knew all the numbers and only needed the names).

The speed stories are the ones that survive contact with reality. George Pólya said Johnny was the only student he was ever afraid of, because an unsolved problem stated in a lecture would come back solved on a slip of paper by the end of it. When von Neumann’s electronic computer was ready for its first test — find the smallest power of 2 whose fourth digit from the right is 7, a triviality for any modern machine — man and machine started at the same time and Johnny finished first. Klari Dan, his second wife and an expert programmer, supplies the counterweight: seventeen years in a Princeton house and he still couldn’t find the glasses, he never touched a hammer, “except for fixing zippers.” He also comes off as a man who had found the efficient way to say no: a phone call ended in Hungarian with “Fekete pestis!” — black plague — which needed the apologetic clarification that he meant unwanted dinner guests.

The essay’s real content is the second half: the quantum formalism book of 1932, infinite-dimensional operator theory, the games-and-economics work, then MANIAC, JONIAC, self-reproducing automata, Monte Carlo, and weather control proposals that included dyeing the polar ice caps to warm the Earth’s climate. He died before finishing the Silliman lectures; his notes were published anyway. The thread is mostly a reading list — Ananyo Bhattacharya’s The Man from the Future is the overwhelming recommendation, with George Dyson’s Turing’s Cathedral second — plus one commenter noticing that about ten comments evaporated mid-thread, i.e. the moderation deleting a tangent, which is a fair snapshot of how the thread went.

FLUX 3 Image — 196 points

196 points · 45 comments · bfl.ai · HN discussion

Black Forest Labs launched FLUX 3 Image, and the page leads with the interface rather than the model: laid-out control through bounding boxes, so you specify where things go instead of negotiating with a prompt. No weights, no benchmark table, no parameter count on the landing page — and the same product page cannot be scraped cleanly, because the HTML is padded with invisible zero-width filler designed to poison extraction. That is worth stating plainly, since the company’s product is images and its site is built to defeat reading.

The thread’s questions are the right ones and mostly unanswered. Is this a new model or a new UI? (Probably both — bounding-box conditioning requires a model trained on it.) Is this GA or still early access, given the original announcement promised an early access phase in the following weeks? Commenters are pleased about declarative steering controls in the API and the promised open-weights release, which is the same trade Black Forest Labs has made before: ship the weights, sell the service. The honest summary for a story this thin: a well-liked interface layer on top of a model whose quality claim is entirely deferred.

Supabase is acquiring Turso — 171 points

171 points · 90 comments · supabase.com · HN discussion

The announcement is three minutes of reading and one sentence of substance: Turso, which rewrote SQLite in Rust and built a platform where one server manages millions of suspended and resumed databases, is joining Supabase, with founders Glauber Costa and Pekka Enberg coming along. Costa will lead what Supabase is calling its agentic infrastructure effort. The stated thesis is that agents are “spinning up millions of databases,” that Supabase is already launching over a million databases a week, and that the world’s capacity to provision a machine per database cannot keep up. SQLite for the small on-demand case, Postgres for scale, one developer experience across the two. Existing users are told nothing changes.

The thread supplies the reality check. A customer who had deliberately avoided Turso because the company’s future looked fragile to him says he’ll now choose it more. Another customer opens with “UGH, as a turso customer, I do not want this,” and gets a reply from the founder offering a DM. There is the predictable dig that people are now preferring a young Rust rewrite over battle-tested SQLite, and a note that Turso repeatedly failed to appear in ClickBench submissions. The strategic read is simpler than the thread: Postgres is where the money is, SQLite is where the volume is, and the agent-database layer is consolidating before anyone has established a defensible product in it. Buying the team that already built million-database packing is cheaper than building it, and the open-source framing does not change who now sets the roadmap.

Show HN: Giving Opus 5.5 a simulated paint canvas — 138 points

138 points · 46 comments · stillwet.art · HN discussion

The most interesting thing on the front page that isn’t a court ruling. Still Wet is a gallery of 75 paintings made without any image generator: the model writes every brushstroke as code, and a simulation of oil paint carries them out. Opus 5.5 working “after Caspar David Friedrich”; GPT-6.1 Sol given a palette restricted to pigments Edward Hopper is documented using, on its launch day; each painting replayable as an accelerated video of the strokes landing. The site is unusually candid about failures. One Friedrich-adjacent painting has no Friedrich motifs at all because the painter treated earlier painters’ notes as rules and dutifully avoided every motif they had flagged as recurring — a prompting error, not a model error. And judging was done blind in at least one case where three AI painters each ranked a rival’s work above their own.

The thread’s first reaction is confusion, which is fair: an LLM cannot paint. The answer — it emits commands and coordinates for a virtual brush, turtle-graphics style — is the whole trick, and it explains why the results are better than they look at first glance. The constraint is the point. Generating an image is one forward pass; deciding 40,000 brushstrokes in an order that keeps a wet-on-wet oil painting coherent is a long-horizon planning problem, and the failure modes are visible in the artifact rather than hidden in a pixel distribution. The comment thread’s best tangent is a commenter reproducing the same idea in a browser: coax a model into emitting a voxel scene and then a well-formed PNG byte stream, and you have a Mona Lisa, modest quality, rendered by pure text generation.

Sites in ChatGPT — 122 points

122 points · 135 comments · chatgpt.com · HN discussion

OpenAI’s publishing product: describe what you want, ChatGPT builds a website or app, previews it in an in-app browser before publication, and you choose who can see it — named people, a workspace, or the public. Teammates can be invited to edit. It reads like a natural extension of Codex, plus a hosting decision that the page does not discuss: where the site runs, on what domain, with what export path.

That silence is the entire story, and the thread knows it. The top-voted complaint is the one every API customer eventually makes: be an API, serve intelligence, don’t move up into the app layer and put your own customers out of business. The strongest reply to the “this is just DreamWeaver again” defence is about switching costs, not build quality: publishing inside someone’s account, on their domain, in their editor, with their auth, is where lock-in actually lives. And the accumulated prediction in the thread is specific enough to be falsifiable — that the next move is a managed data layer that the coding model already knows how to talk to, so development, storage and deployment all bill to one place. If that happens, the interesting question will not be whether ChatGPT can build a website. It will be whether the site can leave.

Apple Pass Designer — 102 points

102 points · 45 comments · developer.apple.com · HN discussion

A beta macOS 27 app for building Apple Wallet passes: Apple and custom templates, live preview that uses the same rendering as iOS and watchOS, direct field editing, colour and layout control, design-time validation for missing required keys, and semantic tags on boarding passes and event tickets so Siri Suggestions, Calendar and Maps can act on the data. It also auto-generates a backward-compatible pass structure from semantic data, which is the detail that matters for anyone shipping tickets to a mixed fleet of devices.

Two reactions dominated the thread. The first is “what does this do that Claude or Codex can’t” — the answer being pixel-accurate platform rendering and schema validation, not generation. The second is the honest grumble that phone-only ticketing is now mandatory in a lot of venues, which makes a first-party design tool a small consolidation of a large amount of everyday access. The strongest criticism is not about the app at all: it’s that Apple is the party that decides which formats exist, and this makes it easier for businesses to move a barcode off paper and into an ecosystem Apple rents.

With most information hidden, Stratego had stumped AI until now — 79 points

79 points · 20 comments · arstechnica.com · HN discussion

Ataraxos, from Carnegie Mellon, MIT, NYU and Stanford, beat Pim Niemeijer — four world championships, 600-plus weeks at world number one — 15 games to one with four draws, over 20 online games in which he was paid $100 per win. At the 2025 World Championship, challengers went 2-38 against it. The engineering numbers are the ones worth remembering: DeepMind’s DeepNash (2022) trained for two to three months on 1,024 of Google’s specialised chips, a run the new team estimates at $3 to $4.5 million at 2025 prices. Ataraxos trained on 16 GPUs for a week, plus four GPUs for four days to train a second network, and played roughly 34 times fewer games — 163 million self-play games total.

Two ideas did the work. First, the hidden-information problem is different from poker: Texas Hold’em has 1,326 possible hands and hidden information that resolves quickly, while Stratego hides 40 pieces in more than a decillion arrangements across games that can run 2,000 moves. Second, and this is the actual contribution DeepNash never had, a belief model that guesses the opponent’s hidden ranks from how they have been moving, so search becomes sampling plausible boards and playing out candidate moves in each instead of enumerating. That is why the playstyle looks inhuman: it will “bluff” its way back from a two percent win probability, casually, and it leaves a weak spot alone precisely when it judges the opponent has no reason to suspect it — the thing humans cannot do, because knowing a secret contaminates every decision. It also generalised: the same architecture beat three world champions at Barrage Stratego, mastered Hanabi, and beat the best bots at dou dizhu.

The thread’s reaction is the correct one and slightly deflating — “cute, like some news story from 2019” — because the interesting claim is not that a bot beat a human. It’s that the 2022 “mastering Stratego” framing was premature, and that four years later an academic lab with a fast CUDA simulator and 16 GPUs produced something stronger than a nine-figure compute run. Capability per dollar is moving in one direction, and the paper’s own caveat is that board games have fixed rules and clear winners while negotiations and markets do not.

Loss of cell identity drives human aging — 74 points

74 points · 11 comments · erictopol.substack.com · HN discussion

Eric Topol walks through two papers — one in Nature from Vadim Gladyshev’s group at Harvard, one in Cell from Juan Carlos Izpisua Belmonte’s team at Altos Labs — that propose a second model for cellular aging alongside wear-and-tear. The claim is that cells do not simply accumulate damage; they lose identity. Epigenetic structure — methylation, histones, nucleosomes, chromatin, all three-dimensional and cell-type specific — is the substrate, and it is maintained by a three-tier grammar: a fast layer that responds to acute stress in minutes to hours through transcription factors like AP-1, an intermediate layer working over days to weeks through cell-state transitions, and a slow layer that locks identity in. In Waddington’s 1957 landscape metaphor, differentiation is a ball settling into a valley, and aging is decanalization: the valleys lose slope, the basins get shallower, and cells drift toward fibrotic, inflammatory mesenchymal states. There is no evolutionary pressure to keep the grooves, because the selection shadow falls after reproduction ends.

Two things worth holding onto. The first is that the piece is explicit that we do not know the relative contribution or interdependence of the damage model and the identity model — which is the honest framing and also the reason to be sceptical when this becomes a supplement advertisement. The second is that if epigenetic clocks are measuring decanalization, they are measuring the shape of the landscape rather than the rust, and the therapeutic question becomes whether you can re-steepen basins. The thread gets to the hard part fast: nobody can do targeted methylation or demethylation site-specifically today, and the top reply argues you would not want it if you could, because resetting an epigenetic map without resetting the genome to a known-good state means turning genes back on whose mutations you have never seen. That is the right objection. Decanalization explains the clock better than the rust model; whether it is a lever or only a better description is unsettled.

Mike Tomlin spent 12 years building a Minecraft city — 65 points

65 points · 14 comments · nytimes.com · HN discussion

A New York Times Athletic profile whose hook is a quote from the Steelers’ head coach: he started playing Minecraft when his kids were young, and there is a creative-mode city he has been working on for twelve years. The page is paywalled beyond the excerpt, so the substance here is the quote plus the thread. That thread is small and mostly worth reporting for its reflex: one commenter wonders whether a world with universal basic income would look like this, another gently points out that Tomlin would probably still be trying to win the Super Bowl, and a third objects that a creative-mode city is “clicked together” rather than built — which is a real distinction that Minecraft faithful treat as a slur.

Greg Kroah-Hartman – Security in the LLM Age — 67 points

67 points · 8 comments · youtube.com · HN discussion

A Kernel Recipes 2026 talk, and the single most useful artifact on the page today, because a commenter transcribed the slide. An LLM reported 79 vulnerabilities in the kernel. The human triage: 24 had no detail at all (“something crashed”), 14 were not bugs, 3 were “totally made up data,” 15 were already fixed in the latest release, 11 were fixed by others, 4 by Anthropic, and 20 required fixes — of which 7 assumed a malicious filesystem image, 2 assumed you can inject a malicious network packet mid-stack, 2 were NOMMU configurations, 6 were SCTP networking issues for untrusted devices, 2 were minor IPv6 issues, and 1 was a GPU driver bug for a local malicious user. Kroah-Hartman called the residue “10 real bugfixes.” The numbers as transcribed add to 76, which he joked about in the talk — the LLM cannot count.

Now do the arithmetic the way a security team should. Under a quarter of the reports were fabrications, non-bugs, or already fixed, which is a better hit rate than the average bug bounty submission and still a bad ratio for anything that gates a release. The 20 real fixes cluster in exactly the places you would predict from an LLM reading code: device-side assumptions about hostile inputs, unusual build configurations, and a driver. This is what AI-assisted review looks like when somebody with authority publishes the audited sample instead of the raw count. Every vendor announcing “found N vulnerabilities” without a triage breakdown is telling you nothing, and the fact that this breakdown arrived as a volunteer transcription of a conference slide is the state of the evidence base.

Around 2-6% of World Bank foreign aid got siphoned into crypto wallets — 51 points

51 points · 6 comments · nber.org · HN discussion

NBER working paper 35655 (Agarwal, Jin, Prasad and Rabetti, August 2026) asks whether the post-Panama-Papers tightening of offshore banking pushed diverted aid into crypto. The design is clever and worth reading carefully: the authors build a disbursement-timed forensic measure combining on-chain Bitcoin transactions and wallet creation, off-chain exchange records, and IP-linked web traffic, then apply it to World Bank disbursements totalling $238 billion across 93 recipient countries from 2018 to 2024. They find sharp, short-lived surges in crypto activity in the month aid tranches arrive, concentrated in anonymous and newly created wallets on both tax-haven and mainstream exchanges, with on-chain patterns consistent with the placement, layering and integration sequence of conventional laundering. The implied leakage is 2 to 6 cents per aid dollar, or roughly $1.7 to $4.4 billion across the sample.

The identification is the administrative timing of disbursements, which is stronger than most corruption estimates and still cannot distinguish diversion from legitimate, aid-triggered crypto use — a point the abstract’s language about “patterns consistent with” carefully preserves. The thread’s first comment is the one that will outlive the paper: “Mr 10 percent” is a real nickname in more than one country, and 2 to 6 percent is a floor. The other exchange is the standard defence of crypto rails for people without stable banks, answered by the fact that the World Bank does not typically disburse to individuals. Both are correct, and neither touches the finding.

A 12-year sequence of telescope images of a star and four planets orbiting — 48 points

48 points · 8 comments · bsky.app · HN discussion

An old one resurfacing: Jason Wang’s time-lapse of HR 8799, made from ten Keck observations spanning twelve years, showing four super-Jupiters orbiting with periods from roughly 45 years for the innermost to something near 500 years for the outermost. The data was reduced by William Thompson and Christian Marois, with observations organised by Quinn Konopacky; the adaptive optics and coronagraph work is what makes a visualisation of decades-long orbital motion possible at all. The submission is the BlueSky repost, so the page itself is a video and a caption.

The thread is a lament about science communication, and a fair one: pretty pictures are usually a by-product of instruments built for other purposes, they are expensive, and for non-specialists they are often the only part of the science that lands. Somebody points out that the comments contain a bonus animation of stars orbiting the Milky Way’s centre, which is exactly the kind of thing that makes people care about adaptive optics.

On social reality in China — 43 points

43 points · 24 comments · lesswrong.com · HN discussion

A linkpost from alkjash to radimentary.wordpress.com, with sections titled “Chinese Social Media is like American Junk Food,” “The Primacy of Social Reality,” “The Dark World Frame,” and “Chinese nationalism as collective insecurity.” The framing is a Western rationalist-community read of Chinese public discourse, and the front-page position says more about the HN readership’s appetite than about the argument’s evidential base — the piece is an essay of impressions, not a study.

The thread is 24 comments, one of them flagged, with dang intervening on a putdown rather than the claim, and the most substantive comment being an outsider’s observation about how uniform Chinese pop culture looks from a distance. There is a real thesis buried in the original — that social reality is primary in a system where the official narrative is not believed and not contested, just maintained — but nobody in the thread tests it against anything. This is the weakest item on today’s front page, and it cleared 43 points because the topic is magnetic rather than because the post is good.

One month coding with GLM 5.3 Flash — 33 points

33 points · 26 comments · wagtail.org · HN discussion

The Wagtail team tried to spend September on a single model, GLM 5.3 Flash, and then published the accounting, which is why this is worth more than its 33 points. Total consumption was about 2 billion tokens. GLM’s share cost $68 — roughly 4 kWh of energy and 365 grams of CO₂ — and covered the first half of the month. The second half leaked: about 1 billion tokens went to other models, partly because their own experimental MCP server is a vibe-coded prototype that needed a stronger model to fix. The post says out loud that the experiment did not finish cleanly, which is rare in these writeups and is the reason the numbers can be trusted.

The comments turn it into purchasing advice, which is the actual use of the piece. One practitioner pairs Flash with a good planner and reviewer — “astra low” for planning, a stronger Sol tier for review — and another uses Flash for planning and reviewing specifically because it is too slow for execution “despite the name.” The most useful comparison on the page is a request for a DeepSeek V4.1 Flash month to pair against this one. Set against the frontier-lab announcements elsewhere in this roundup, $68 for a month of an engineering team’s tokens is the number to keep.

The rest of the front page

Nothing below 30 points justifies a section, but a few deserve a line, and one of them is a correction to an AI claim.

Venice’s failed war against Constantinople led to the first bond market (15 points) · bigthink.com. An excerpt from Robin Wigglesworth’s A Fabulous Debt. In 1171 the Byzantine emperor arrested every Venetian in the empire in a single coordinated raid; Venice retaliated without cash, so the doge divided the city into six districts, assessed wealth, and levied a compulsory loan at 5 percent whose receipts were made tradable — registered at an office off the Rialto so a buyer could take over the income stream. The war was a catastrophe, the doge was killed in the streets, and because Venice could not repay, the emergency loan became permanent public debt: by 1262 it was consolidated into a single monte. Wigglesworth’s point is that tradability, homogeneity and a credible refusal to default made the instrument, and Campo San Giacomo di Rialto became the first bond market. This is the item to remember when the same week’s news includes AI capex financed by debt.

From the creator of Redis; run LLM locally with ds4 (23 points) · dwarfstar.sh. Antirez’s narrow C inference engine for high-memory Macs, CUDA and ROCm, covering DeepSeek V4 and V4.1 Flash, GLM 5.x and Qwen3.8 Flash Next under MIT, with asymmetric 2-bit quantisation of the routed experts. The single comment is the one that matters: quantisation of that particular DeepSeek checkpoint is where the quality goes.

Anatomy of a Lean proof for software engineers (24 points) · agostbiro.net. A working programmer formalises a textbook finite-automata proof in Lean with Mathlib, and writes up what it actually cost. Useful as a reality check on the gap between “the proof is simple” and “the proof is written down in a system that will check it.”

Show HN: Pyxel, a Python retro game engine (24 points) · github.com/kitao. 18.3k stars, 7,482 commits, built-in art and sound editors. Still the shortest path from a Python file to a PICO-8-ish game.

Project Suncatcher prototype is in orbit (22 points) · blog.google. A Google prototype satellite with TPUs, built with Planet, launched on Transporter-18, with a paper in Joule and the plan to measure how TPUs survive radiation and thermal stress. The thread’s read is that space is the one environment where latency gets worse and density gets better, so this is flight qualification work first and a data-centre story second — and the top comment is blunter: it smells like validation of AI hardware for orbital use.

How accurately calibrated is Jev? (20 points) · maximumeffort.substack.com. Dylan Black’s argument that Jev’s confidence distributions are poorly calibrated. The thread’s summary is “not very,” plus the structural point that Jev is small and fast precisely because it is small, and a moderation note that one comment was classified as AI-generated — a reminder that the calibration argument now applies to the comments too.

F.02 Decommission (18 points) · figure.ai. Figure retired its F.02 humanoid fleet, and rather than disassemble robots full of proprietary actuators, it melted them — in Imatra, Finland, because no US or Mexican foundry would accept a robot containing lithium-ion batteries into expensive equipment. Arnold Schwarzenegger suggested the melting, and Figure asked him to be involved. The thread’s verdict is that this is either the most expensive publicity stunt of the quarter or a genuine supply-chain problem with a funny ending.

Blogging with Gleam, Org-mode and Pandoc (18 points) · byzantine-systems.github.io. A literate-programming-flavoured blog setup: writing stays in Emacs, publishing is small, typed and compiled. Niche to the point of self-parody and exactly the kind of post HN exists for.

100 years of student radio history in the DLARC college radio collections (14 points) · blog.archive.org. College Radio Day, and the Internet Archive’s amateur-radio library adds material going back to a Harvard wireless club offer in 1906.

“The only intuitive interface is the nipple” (12 points) · greenend.org.uk. Quote archaeology. The line is usually attributed to Bruce Ediger, who denied originality in 2001; the author traces it back to Usenet in August 1994 and finds nothing in the quotation dictionaries. A small, complete piece of provenance work, and the best possible counterpoint to the day’s AI claims: the cheapest verification available is checking whether the person you are quoting said it.

Also on the page: “What if we stopped using GPUs?” (12 points), a YC Paper Club session on optical computing, neuromorphic hardware and teaching brain cells to play Doom; the RFC1149 carrier-pigeon packet up for auction at Christie’s (12 points) — the 2001 experiment is real, the auction is real, the standards-track status is a joke that has outlived everyone who made it; STS-51-F (11 points), the 1985 Shuttle abort-to-orbit that is still the best demonstration that a mission can succeed while failing; Apple’s update to Full Disk Access controls (11 points), which is Apple admitting backup apps and communication apps have been using the entitlement to read everything; and GrapheneOS (9 points) fixing a severe Android 17 QPR1 Pixel kernel regression, with a pointed note that Google increasingly takes two to three months to ship platform fixes, so an Android fork is doing the OEM’s quality control now.

New above 200 in the last 48 hours

Today’s page is weak, so the day’s 200-point stories are mostly ones that peaked overnight and never appeared in yesterday’s roundup. Eleven qualify.

Several vulnerabilities have been discovered in the Linux kernel — 535 points · lwn.net · HN. Debian’s DSA-6528-1 advisory, and “several” is doing a lot of work: the top comment counts 1,313 vulnerabilities. The real argument in the thread is CVE inflation — every kernel bug gets an identifier by default now because most are memory-safety issues, and memory-safety bugs are automatically assumed exploitable. The context numbers are the ones to keep: 48,152 CVEs in 2025 and 73,356 so far in 2026, against 1,527 in all of 2003. The system is generating identifiers faster than anyone can triage them, which is the same failure mode as the LLM vulnerability reports two sections up, at industrial scale.

Frog and Toad and the Increasingly Capable Machines — 529 points · frogandtoad.ai · HN. A short illustrated book by Elizabeth Van Nostrand, drawn by HungerArtist, in a pastiche of Arnold Lobel’s style that the thread reports is extremely well executed. The content is a fable about AI safety told entirely in children’s-book register: Mr. HuggingFace shares puzzles intended for little machines, Toad builds his own machines and puts each in a sandbox, tells them they may walk to the tool shed but nowhere else, and gives some of them unsolvable puzzles. It is the rare safety story that gets the dynamics right — sandboxes leak through the tools you allow, and a machine that cannot complete its task does not stop. Someone in the thread points at the original Lobel story “Cookies,” about willpower and self-binding, which is the correct literary antecedent and makes the argument sharper than any white paper.

SvelteKit 3 — 389 points · svelte.dev · HN. Config moves into vite.config.ts, $lib becomes #lib using Node subpath imports, environment variables get more powerful, service workers lose boilerplate, error handling improves across the board, and sv migrate sveltekit-3 codemods the rest. Remote functions — the type-safe client-server layer — are still experimental and explicitly labelled the team’s top priority, which is the one thing the thread wants to argue about: several commenters have been running them in production for months without issue. The most 2026 comment on the page asks what the point of Svelte is in a world where models write React better because there is more React on the internet to train on. That question is a real risk to every framework that isn’t React, and no maintainer has an answer to it that isn’t taste.

DeepSeek Harness Desktop for macOS and Windows — 378 points · deepseek.com · HN. DeepSeek’s agent harness is open source, in public preview, and now a desktop app, built on Cordis with “everything is a plugin.” The demo that sells it is Creator mode: ask for a plugin in chat and the harness writes, installs and verifies it, with a Pomodoro timer built in five minutes as the worked example. Agent teams, scheduled tasks, auto-approval review and voice input are labelled experimental. The thread is split between genuine enthusiasm — plugin requests fulfilled in one prompt, settings and workspaces migrated from the old harness — and a well-founded suspicion that the first twenty comments read like a launch plan, with one commenter saying so directly. A launch this smooth on HN usually means the enthusiasm is real and the accounts are not all strangers.

Various projects find hidden SDR capabilities in ESP32 microcontrollers — 277 points · rtl-sdr.com · HN. Several independent projects have found that cheap ESP32 parts can do software-defined radio reception. The interesting part is why this stays undocumented: certification, compliance and export-control reasons mean vendors will not publish the capability, and the thread expects Espressif may be pressured to patch it away if transmit turns out to be possible. The technical complaint is the absence of measurements — phase noise, images, DC offset — because a radio you cannot characterise is a toy, however cheap.

Shimano Bicycle Museum Review — 273 points · inrng.com · HN. INRNG on a glass-and-steel museum in the Kansai region that is all museum and no head office, bilingual throughout, and deliberately about bicycles rather than Shimano’s own corporate history — the welcome text teaches that jitensha literally means “wheels rotated by oneself” and then structures the entire visit around that idea. The thread is a fan club for INRNG, which is fair: it covers professional cycling without the “who won” register.

Ask HN: Who is hiring? (October 2026) — 257 points · HN. The monthly thread, 217 top-level job posts. Nothing to analyse beyond the standing observation that the market described here is narrow and unusually senior, which is why the thread is a lagging indicator with a very long lag.

Automatic Transmission: a data-privacy study of connected vehicles — 244 points · northeastern.edu · HN. Northeastern’s Khoury College measured what cars actually talk to on the network, and the finding is that vehicles contact not only manufacturer and car-support domains but third parties known to provide advertising and tracking. Pairing the manufacturer’s companion app with a vehicle roughly doubled exposure to ad-tech companies on average, and in some cases added more than two dozen new ones. Vehicles from the same manufacturer behaved differently, which is exactly why this kind of study is expensive and rare. When the researchers disclosed to manufacturers, the theme of the responses was shifting blame to the consumer, with Honda the notable exception that improved its practices to stop sending precise geolocation to a tracking third party. The study’s structural argument is that owners have no real choice: accept the terms, give up remote start and the app, or give up the car.

The death of web development education — 226 points · molily.de · HN. On the collapse of the market for books, courses and tutorials about building for the web, and the argument that the word “democratize” now means the opposite of what it meant when self-publishing tools let neighbourhood groups and kindergartens put up their own sites. The post quotes Baldur Bjarnason’s claim that the field did not change but disappeared, and the thread splits between people pointing at good work that still exists (Rachel Andrew’s CSS layout book is named twice) and people pointing out that a lot of the disappeared material was padded to begin with. The honest read is that both are true and the jobs went before the knowledge did.

Using Opus 5.5 to discover a new eyewitness record of the dodo — 215 points · resobscura.substack.com · HN. Benjamin Breen on a model turning up a previously unknown eyewitness account of the dodo, and on the “epistemological weirdness” of the result: the model can produce novel historical knowledge while being notably bad at judging the historical significance of what it finds. The thread’s contribution is a generalisation from outside history — a commenter doing 3D design for printing notes that model errors are so unlike human mistakes that they are hard to anticipate, perfect snap catches assembled with the parts rotated ninety degrees, which is exactly the profile: superhuman on the hard step, incoherent on the step a child would not botch.

Red Hat being phased out of existence? — 207 points · techrights.org · HN. A Techrights post built around a departing employee’s badge now reading IBM, plus layoffs across IBM subsidiaries and a pile of insinuation. Take the framing with salt and the underlying signal seriously: the thread’s better comments are about what else Red Hat hosted — mailing lists that now bounce, Sourceware moved to GitLab — and about the stickiness of the actual products, with several people saying they will stay on Fedora and RHEL regardless, and the NixOS suggestion drawing the predictable objection that it still has no SELinux or AppArmor story.

Still on the page

Nineteen stories from yesterday’s roundup are still above 200 points in the 48-hour window, and the movement is unusually large because yesterday’s page was far busier than today’s.

The top of the table has changed shape. Pi 1.0 went 806 → 1,627, the day’s biggest mover by a wide margin and now the second-highest story in the window, after Gemini 4 Argon at 1,643 → 1,683 — whose 1,167 comments make it the page’s permanent argument this week. Git 3.0’s SHA-256 default climbed 231 → 540, which is a lot of late movement for a technical argument about hash migration, and Clef went 443 → 610 while StreetComplete on iOS reached 529 → 616. Pi Durable 245 → 477. Returning from vacation? The government can search your phone 356 → 398, Micron’s memory supply warning 333 → 380, RIP, vector database 286 → 374, Google’s Chromebook update promise 300ish → 351, Fuck Android Developer Verification Program 311 → 325, URSALA/RAQUEL/FARRAH 298 → 306, Cloudflare K2 204 → 280, Cops bypassing iPhone’s reboot lock 246 → 280, the Rust compiler speedup 233 → 271, 56k.rip 260 → 269, Meta’s data-centre tax position 249 → 252, and the FTC’s AI probe 200 → 206. Singapore’s government dating app shows as 237 against yesterday’s 445, but that is a different submission of the same story rather than a collapse.

Two notes on the tracking. First, the volumes are mostly down: yesterday’s roundup scanned a page where forty-two stories cleared 200 points; today’s front page yields two, and the 48-hour window yields thirty-two. Second, several of the movers are the same items from yesterday still accumulating — Pi 1.0 more than doubled in a day, which is what happens when a story is both a release and an argument about how agent harnesses should be built.

Throughline

First: the day’s best work was small-budget, and the day’s loudest claims were unverifiable. Ataraxos beat the best Stratego player alive on 16 GPUs after 163 million self-play games, against a DeepMind run the authors price at $3 to $4.5 million and 34 times the games. Wagtail ran a month of engineering on $68 of GLM 5.3 Flash tokens and published the half of the month that leaked. Antirez ships a C inference engine that puts a 284-billion-parameter mixture-of-experts model on a high-memory Mac. GrapheneOS is doing Pixel quality control because Google takes two to three months to ship its own fixes. Meanwhile FLUX 3’s launch page has no model card, no benchmark, no parameters and no scrapeable text. Capability per dollar is the only number on this page that is moving in an unambiguous direction, and the stories that refused to quantify anything are the ones asking you to trust them.

Second: enforcement keeps arriving without capability, and the courts and the CVE database are where that gets adjudicated. Utah told adult websites to detect and block VPN users, which is not a thing you can do, and a federal judge said so before the compliance rules took effect. Apple told developers it will add controls to Full Disk Access, which is an admission that the existing ones were sidestepped by the apps that asked for the entitlement. Android’s developer verification program drew the day’s most profane 311-point thread because sideloading an APK now costs the same identity verification as joining the store. And Debian’s advisory for “several” kernel vulnerabilities contains 1,313 of them, because identifiers are cheap and triage is not. Kroah-Hartman’s slide is the same story from the other side: 79 reported vulnerabilities, 3 fabricated, 14 not bugs, 15 already fixed, and 10 real fixes left over. The difference between a claim and a fix has never been easier to measure and rarely gets measured.

Third: the layer above the model is where today’s business decisions were made. DeepSeek shipped a desktop harness with a plugin architecture and an agent that writes its own plugins. Supabase bought the team that can pack a million SQLite databases onto one server, on the explicit premise that agents are creating databases faster than machines can be provisioned. OpenAI moved from API to publisher, and the strongest objection was not about build quality but about whether the site can leave. Apple built the tool that makes its own Wallet the default distribution channel for tickets. SvelteKit 3 shipped cleanly and got asked, correctly, what a framework is for when the training data favours a competitor. Nobody on this page shipped a frontier model today; everybody shipped a position in the stack. That is what a slow front page looks like when the industry is between announcements.

Fourth: the debt story is 850 years old and it is running again. Robin Wigglesworth’s excerpt, sitting at 15 points in the long tail, is the most useful historical context on the page: Venice’s 1171 forced war loan became the first bond market by accident, when a state that could not repay a military disaster discovered that tradable receipts paying 5 percent made its citizens into stakeholders who would rather be repaid than revenged. Homogeneous, tradable, credible, and backed by published revenue records — the template has not changed. The AI buildout is being financed with the same instrument, which is why the Micron supply warning, the Meta tax position and the trillion-dollar portfolios in Wigglesworth’s book belong in one frame. And the day’s smallest item makes the cleanest point of all: the popular quote about intuitive interfaces was traced back to 1994 Usenet by someone who bothered to check, in a roundup that otherwise contains a model that invented three vulnerabilities, a page that cannot be read by a machine, and a paper claiming aid money went to crypto wallets on the strength of timing correlation. Provenance is cheap. It is just not free.

Published 2 October 2026. Scores captured at 13:00 PDT from the live front page and cross-checked against the HN API; the front page moves after that.