GitLab发布紧急安全更新 修复高危XSS与API拒绝服务漏洞
GitLab紧急修复四项高危漏洞,XSS与API拒绝服务风险需立即升级
GitLab紧急修复四项高危漏洞,XSS与API拒绝服务风险需立即升级
OpenAI开源基于MuJoCo的高性能Python机器人模拟库,加速你的研究开发。
We’re open-sourcing a high-performance Python library for robotic simulation using the MuJoCo engine, developed over our past year of robotics research.
纯Rust、零依赖实现LibreOffice核心功能,文档读写转换渲染速度提升100倍,支持多种格式
Hey HN, I built libreoffice-rs: a pure-Rust, std-only library + CLI for reading, writing, converting, and rendering office documents — with *zero* LibreOffice, Java, or C dependencies. 100x faster... …
OpenAI开源机器人模拟软件,与Gym无缝集成,快速上手强化学习研究。
We are releasing Roboschool: open-source software for robot simulation, integrated with OpenAI Gym.
知名开源团队聊天工具Zulip宣布转型为独立非营利基金会,创始人加入Anthropic,确保项目长期稳定发展。
Article URL: https://blog.zulip.com/2026/05/15/announcing-zulip-foundation/ Comments URL: https://news.ycombinator.com/item?id=48152168 Points: 281 # Comments: 73
去中心化的Git代码协作平台,赋予开发者完全的数据主权。
Article URL: https://radicle.dev/ Comments URL: https://news.ycombinator.com/item?id=48147603 Points: 247 # Comments: 87
开源项目Stera将普通iPhone升级为研究级空间数据采集系统,并开源10M帧数据集,为具身AI世界模型提供高质量训练数据。
We are releasing Project Stera - an open source, end-to-end pipeline that turns a commodity iPhone into a research-grade capture system for embodied AI training data. Today, we're open-sourcing the wh…
Astro 2.0 混合渲染,为每个页面自由切换静态或服务器渲染,兼得性能与灵活性。
New in Astro 2.0: Hybrid rendering unlocks the best of both worlds—choose between the performance of static pages or the full flexibility of server rendering for each page of your website.
历时一年多开发,Nuxt 3 Beta 正式发布,集成 Vue 3、Vite 及全新服务器引擎,开启全栈能力。
468 days after the first commit, the Nuxt 3 beta has finally arrived. Discover what's inside and what to expect from it. Yes, it includes Vue 3 and Vite ⚡️
Rust WebAssembly目标即将移除--allow-undefined标志,现有项目可能受影响,需及时了解变更细节与应对策略。
Rust's WebAssembly targets are soon going to experience a change which has a risk of breaking existing projects, and this post is intended to notify users of this upcoming change, explain what it is, …
Node.js 19 正式发布,亮点包括 V8 引擎更新至 10.7、HTTP(s)/1.1 KeepAlive 默认开启,以及实验性 node --watch 功能。
pyforce-1.0.0 发布,专为多物理问题数据驱动降阶设计的Python框架
arXiv:2605.18082v1 Announce Type: new Abstract: pyforce is a Python package implementing Data-Driven Reduced Order Modelling techniques for applications to multi-physics problems, mainly set in the Nu…
基于3.96亿乌克兰法院引用,揭示20年间共引预测能力随时间衰减的规律。
arXiv:2605.17639v1 Announce Type: new Abstract: Co-citation structure is widely assumed to provide stable retrieval signal in legal information systems. We test this assumption longitudinally by const…
针对视觉语言模型的单样本黑盒成员推理攻击,利用跨模态语义对齐检测模型记忆风险,为数据隐私安全提供新评估方法。
arXiv:2605.17341v1 Announce Type: new Abstract: Vision-Language Models (VLMs) have achieved remarkable success, yet their reliance on massive datasets and unintended memorization of training data rais…
为Rust应用提供限流、熔断、超时等组合弹性策略,轻松实现异步容错处理。
Resilient is an async toolkit for rust that handles fault tolerance for your rust Apps that often call other services or database queries frequently. Resilient supports rate limiting, circuit breaker,…
安全研究员发现CISA承包商员工竟在GitHub上公开了明文凭证,包括云密钥和访问令牌,差点引发重大数据泄露。
The federal cybersecurity agency left plaintext passwords in a spreadsheet uploaded to a public GitHub repository, per a report by independent journalist Brian Krebs.
开源终端AI编码代理Codeep,支持GLM、GPT、Claude、DeepSeek等多模型提供商,升级2.0版本。
Article URL: https://github.com/VladoIvankovic/Codeep Comments URL: https://news.ycombinator.com/item?id=48196569 Points: 1 # Comments: 0
本地LLM运维仪表板,集成路由、日志、监控,轻松管理多个模型上游。
Article URL: https://github.com/ndom91/llama-dash Comments URL: https://news.ycombinator.com/item?id=48196202 Points: 1 # Comments: 0
单64KB超向量承载无限LLM记忆,支持离线可验证与GDPR遗忘,AI代理记忆的突破性方案。
Article URL: https://github.com/OpenAgentic-Labs/echoform-ghost-memory Comments URL: https://news.ycombinator.com/item?id=48192963 Points: 1 # Comments: 0
用Markdown文件夹轻松打造个人主页、博客甚至商城,一个命令行工具搞定多合一发布。
Article URL: https://github.com/sentilis/cli Comments URL: https://news.ycombinator.com/item?id=48195585 Points: 1 # Comments: 0
本地模拟OpenAI和Gemini API,助力CI与测试无缝集成。
Article URL: https://github.com/harshaneel/localaik Comments URL: https://news.ycombinator.com/item?id=48195306 Points: 1 # Comments: 2
本地优先AI代理自动处理Ollama依赖,安装模型启动一气呵成,适合不想折腾环境的开发者。
pip install autodidact && autodidact init Comments URL: https://news.ycombinator.com/item?id=48194739 Points: 4 # Comments: 0
粘贴GitHub仓库就能秒出AI使用效率评分,无需注册,适合工程团队自检
Article URL: https://costlens.dev/score Comments URL: https://news.ycombinator.com/item?id=48194736 Points: 2 # Comments: 0
一键移除AI水印:支持SynthID、C2PA、EXIF等,无需安装即可用命令行清理。
Article URL: https://github.com/wiltodelta/remove-ai-watermarks Comments URL: https://news.ycombinator.com/item?id=48200569 Points: 77 # Comments: 50
检查仓库结构而非代码的快速linter,助你维护项目规范与卫生。
Hi HN, I have been working on alint for the last little while. It is a linter for the shape of a repository rather than the code inside it. clippy, ruff, eslint, and others already handle the AST and …
开源事件协议+LLM爬虫聚合分散活动信息,免费云架构。
Article URL: https://github.com/robertoranon/tokoro Comments URL: https://news.ycombinator.com/item?id=48191657 Points: 1 # Comments: 0
在 Neovim 里玩魔方?ASCII 等轴渲染、计时器与自动求解,让编辑器变身益智利器。
Article URL: https://github.com/xiangnongWu2233/rubiks-cube.nvim Comments URL: https://news.ycombinator.com/item?id=48194909 Points: 2 # Comments: 0
多LLM协同交易系统,结合实时排行榜,在Alpaca纸交易环境中验证AI策略表现。
Article URL: https://github.com/achaljhawar/1rok Comments URL: https://news.ycombinator.com/item?id=48144911 Points: 2 # Comments: 0
开源AI控制平面Recursant新增OpenClaw支持,提供授权、PII编辑与速率限制等治理能力
Article URL: https://clawhub.ai/plugins/openclaw-recursant Comments URL: https://news.ycombinator.com/item?id=48148866 Points: 2 # Comments: 0
为AI代理设计的Token高效UUID替代方案,生成人类可读的ID,提升交互效率。
Article URL: https://github.com/vostride/id-agent Comments URL: https://news.ycombinator.com/item?id=48191852 Points: 10 # Comments: 15
用Docker即可本地模拟Google BigQuery,方便开发者离线测试与调试,省时省力。
Article URL: https://github.com/goccy/bigquery-emulator Comments URL: https://news.ycombinator.com/item?id=48191770 Points: 1 # Comments: 0
CISA大量明文密码、SSH密钥等敏感凭证在GitHub公共仓库中暴露数月,安全失误令人震惊。
SSH keys, plaintext passwords, other sensitive data had been up since November 2025.
Node.js 0.8.26 维护版发布,修复 HTTP 服务器安全漏洞,建议尽快升级。
一个确定性质量门控工具,专门验证AI生成的代码,无需依赖大模型,MIT开源。
Article URL: https://github.com/scanaislop/aislop Comments URL: https://news.ycombinator.com/item?id=48191872 Points: 2 # Comments: 0
为了帮孩子学数学,他放弃看视频,亲手开发了一个游戏——程序员爸爸的硬核育儿法。
So, my kids' math teacher sent home a YouTube video on place values and ascending order. It was good, but watching it wasn't doing much. So over the weekend I built them a game instead. It's called Tu…
Node.js安全赏金因外部资金终止暂停,影响开发者社区安全贡献积极性。
Node.js 4.9.1 维护版发布,修复 PPC little endian 环境的 ABI 兼容性问题。
Node.js 0.10.48 维护版发布,修复关键安全漏洞 CVE-2016-5180
一个开源CLI工具,自动同步AI agent技能到Cursor、Codex、Claude,解决技能分布问题
Article URL: https://github.com/hymhub/skill-indexer Comments URL: https://news.ycombinator.com/item?id=48191582 Points: 1 # Comments: 0
开源的Discord终端客户端,支持语音聊天,功能丰富,多种安装方式。
Concord, a terminal UI client for Discord written in Rust with Ratatui. The new update adds voice support. Concord can now join voice channels, play received voice audio! Other features include: - Gui…
快速文件复制工具的新版本,带来更多特性,提升效率。
Article URL: https://github.com/gekap/fast-copy Comments URL: https://news.ycombinator.com/item?id=48189870 Points: 1 # Comments: 0
一键测试ChatGPT是否会推荐你的产品,开源工具帮你优化AI可见性
Article URL: https://github.com/foodaka/openllmrank Comments URL: https://news.ycombinator.com/item?id=48196062 Points: 1 # Comments: 1
专为zot打造的轻量代码审查扩展,提升协作效率
Article URL: https://github.com/patriceckhart/zot-review Comments URL: https://news.ycombinator.com/item?id=48195075 Points: 7 # Comments: 0
React官方ESLint插件紧急发布7.1.1,修复7.1.0版本误删的component-hook-factories规则,已升级用户请及时更新。
Note: 7.1.0 accidentally removed the component-hook-factories rule, causing errors for users who referenced it in their ESLint config. This is now fixed. Add deprecated no-op component-hook-factories …
安全模拟OpenClaw升级流程的开源工具,降低实操风险
Article URL: https://github.com/haishmg/Clawback Comments URL: https://news.ycombinator.com/item?id=48005102 Points: 2 # Comments: 0
Node.js 0.12.17维护版发布,紧急修复c-ares单字节缓冲区覆盖漏洞(CVE-2016-5180)
Node.js 0.10.43维护版发布,修复OpenSSL低危漏洞及http_parser、domains关键问题。
开源项目Chunker能将文档转化为可导航的知识树,解决传统分块导致语义断裂的痛点。
Article URL: https://github.com/sermakarevich/chunker Comments URL: https://news.ycombinator.com/item?id=48190664 Points: 1 # Comments: 0
Datasette的LLM会计插件新版发布,修复了响应链跟踪bug,提升可靠性。
Release: datasette-llm-accountant 0.1a4 Fixed bug tracking chains of responses. Refs datasette-llm#7 Tags: llm , datasette
Node.js 0.8.27 维护版发布,修复 OpenSSL 高危漏洞并改进 UTF-8 处理