May 13, 2026 security

Microsoft says new AI security system found 16 Windows flaws

Microsoft said its new multi-model agentic security system, codename MDASH, helped identify 16 vulnerabilities in Windows networking and authentication components, including four critical remote code execution bugs. The company said the system also scored 88.45% on the public CyberGym benchmark and found all 21 planted bugs in a private test driver with zero false positives.

Source: Microsoft Security Blog
May 12, 2026 security

AWS Security Agent adds full repository code scanning preview

AWS has launched a preview of full repository code review in AWS Security Agent. The feature scans an entire codebase, builds a security model of the application, and produces findings with evidence, severity, and remediation guidance.

Source: AWS Security Blog
May 12, 2026 update

Ollama v0.23.4 adds image modalities for vision models

Ollama released v0.23.4 on GitHub on May 12, tagging commit 3af1a00. According to the release page, the update adds image modalities for vision models in the launch/opencode branch change set #15922.

Source: Ollama Releases
May 12, 2026 security

OpenAI launches Daybreak for enterprise cyber defence

OpenAI has launched Daybreak, a cybersecurity platform built to find vulnerabilities, generate patches, and validate fixes in enterprise codebases. The system uses three GPT-5.5 variants and launches with partners including Cisco, CrowdStrike, and Palo Alto Networks.

Source: The Next Web
May 12, 2026 update

Statewright adds state-machine guardrails for AI coding agents

Statewright is a system for constraining AI agents with state machines so they can only use approved tools in each phase of a workflow. The project says this improves reliability in tools like Claude Code, Codex, Cursor, opencode, and Pi, and can boost local-model performance on coding tasks.

Source: HN Show HN
May 12, 2026 update

YantrikDB adds persistent memory for AI agents

YantrikDB is a new memory engine for AI agents that ships with a small default embedder and an MCP server. Its creator says it can recall context, remember decisions, and detect contradictions without extra model downloads or sentence-transformers.

Source: HN Show HN
May 12, 2026 update

Kimiflare brings Kimi K2.6 coding agent to Cloudflare Workers AI

Kimiflare is an open-source CLI coding agent that uses Kimi K2.6 on Cloudflare Workers AI. Its creator says the cloud tier will be shut down when expiring Cloudflare credits run out, but the project will remain available as open source and BYOK.

Source: HN Show HN
May 12, 2026 update

SafeSandbox adds automatic git snapshots for AI coding agents

SafeSandbox is a local CLI tool that creates git snapshots while AI coding agents edit a repository. It supports automatic restore points, manual checkpoints, and rollback to earlier states, all on the user’s machine.

Source: HN Show HN
May 12, 2026 update

Telegram and Slack bridge brings Codex agents to chat

A new Telegram/Slack interface lets users control local Codex agents from chat instead of the command line. The tool supports session control, directory mapping, approval requests, and keeps chat-to-session links across restarts.

Source: HN Show HN
May 12, 2026 update

SAP invests in n8n, values platform at $5.2 billion

SAP has invested in workflow automation platform n8n, valuing the company at $5.2 billion, according to n8n. The company also said n8n will be embedded natively inside SAP’s Joule Studio as part of the partnership.

Source: n8n Blog
May 12, 2026 security

curl says Anthropic’s Mythos found one real flaw

curl maintainer Daniel Stenberg said Anthropic’s Mythos scan found one confirmed vulnerability and about 20 bugs in curl, after the project reviewed the report. He said the issue will be released as a low-severity CVE with curl 8.21.0 in late June.

Source: r/ClaudeAI
May 11, 2026 update

Rapunzel turns agent sessions into a tree-style terminal

Rapunzel is a desktop app for managing agent sessions in a tree-based terminal interface, built for people running many long-lived Codex, Claude, or Gemini sessions. It stores workspace state locally, supports branch actions like rename and collapse, and can restore the session tree on launch.

Source: HN Show HN
May 11, 2026 update

AI coding agents are reviving cowboy culture at scale

A CISO who still writes code argues that AI coding agents are bringing back “cowboy” engineering: fast, opaque changes that few people fully understand. The article says teams need tighter review, smaller PRs, and better tracking of agent-written code to avoid hidden technical debt.

Source: Kilo Blog
May 11, 2026 community

Digg returns as an AI news aggregator focused on X signals

Digg has relaunched again, this time as an AI news aggregator that ranks stories using real-time signals from X, according to the company. The beta version is currently focused on AI news and uses metrics such as views, comments, likes, and saves, along with sentiment analysis and clustering.

Source: TechCrunch
May 11, 2026 update

17 months of Hacker News job posts show a modern stack shift

A public analysis of 7,066 job postings from Hacker News and five other boards found Python, TypeScript, React, and AWS leading demand. The dataset also shows explicit salary ranges in 15% of postings, with a median band of $150K to $210K.

Source: HN Show HN
May 11, 2026 update

Hivemind shares coding-agent traces across a team

Hivemind, a new tool from Activeloop, records coding-agent sessions as structured traces and turns repeated patterns into reusable skills. It supports Claude Code, OpenClaw, Codex, Cursor, Hermes, and pi, and propagates those skills to connected agents on the same team.

Source: HN Show HN
May 11, 2026 update

SLayer puts a semantic layer under AI agents

SLayer is a semantic layer that sits between databases and AI agents, internal tools, dashboards, and scripts. The project says it can auto-create models from schema, compile queries into SQL, and let agents update models at runtime through MCP, REST, CLI, and Python interfaces.

Source: HN Show HN
May 11, 2026 update

Show HN: Planner app splits tasks, notes, calendars by workspace

A Hacker News user introduced a planner app built around separate workspaces for different parts of life, such as work, training, travel, or hobbies. Each planner includes tasks, notes, calendars, and a journal, with a shared Today view that shows scheduled items across planners.

Source: HN Show HN
May 11, 2026 update

Veles brings fast local code search to AI agents and developers

Veles is a new local code search tool written in Rust that combines BM25 keyword search with semantic retrieval. It runs on CPU, stores a persistent on-disk index, and exposes MCP and gRPC interfaces for use with AI agents and other tools.

Source: HN Show HN
May 11, 2026 update

Codex MCP tool adds separate review loop for uncommitted changes

A new MCP tool for Codex runs app-server reviews of uncommitted changes in a separate context from the main coding session. The project says this reduces regressions, keeps review context clean, and supports longer autonomous runs.

Source: HN Show HN
May 11, 2026 security

CIOs face supply chains, regulation, and AI pressure

Geopolitical tension, supply chain disruption, and changing regulations are forcing CIOs to rethink global IT strategy. Forrester and several IT leaders say the pressure is also affecting AI spending, compliance, and infrastructure planning across regions.

Source: CIO AI
May 11, 2026 security

Google Chrome Quietly Installed Gemini Nano on Some Devices

Google Chrome has been quietly installing Gemini Nano, a 4GB on-device AI model, on some users’ computers without asking first, according to Swedish computer scientist and lawyer Alexander Hanff. Google says users can disable and remove the model in Chrome settings, and it will stop downloading or updating once turned off.

Source: r/ControlProblem
May 11, 2026 update

Claude Code adds agent view for managing parallel sessions

Anthropic has introduced agent view in Claude Code, a new interface for managing multiple agent sessions from one place. The Research Preview is available now on Pro, Max, Team, Enterprise, and Claude API plans, with opt-in through the terminal command `claude agents`.

Source: Claude Blog
May 11, 2026 community

Claude Platform on AWS adds full Anthropic API access

Anthropic said the Claude Platform on AWS is now generally available, giving AWS customers access to the full Claude API feature set with AWS authentication, billing, and commitment retirement. The service includes Claude Managed Agents, code execution, web search, Files API, Skills, and other features that were previously tied to the native Claude API.

Source: Claude Blog
May 10, 2026 community

Altman says younger users treat ChatGPT like an operating system

OpenAI CEO Sam Altman said older users tend to treat ChatGPT like a Google replacement, while people in their 20s and 30s use it more like a life advisor. He also said college students are using it like an operating system, with saved prompts, file connections, and constant context from past chats.

Source: r/OpenAI
May 10, 2026 update

PerceptAI aims to give agents vision beyond browsers

A Hacker News post introduced PerceptAI, a tool that uses OCR and vision models to let AI agents read and act on any screen, not just websites. Its creator said the system uses EasyOCR, Groq Vision, and PyAutoGUI to handle desktop apps and other software without APIs.

Source: HN Show HN
May 10, 2026 update

Open-source skill forces coding agents to prove completion

agent-postmortem-skill is an open-source verification skill that makes coding agents back up completion claims with evidence. It checks git state, command output, and exit codes before a task can be marked done.

Source: HN Show HN
May 10, 2026 community

Alibaba ties Qwen AI to Taobao for agentic shopping

Alibaba is integrating its Qwen AI app with Taobao and Tmall, giving it access to more than 4 billion items and Alipay checkout, Reuters reported, citing a source familiar with the plan. The setup lets shoppers search, compare, track prices and place orders through the AI agent, while Alibaba says the purchase flow can run end to end.

Source: The Next Web
May 10, 2026 update

Draft adds persistent product context for Claude, Codex, Cursor

Draft is a plugin that adds persistent product context to Claude Code, Codex CLI, and Cursor sessions. The project says it injects a live snapshot of product information at session start and records changes in an append-only log so the context does not go stale.

Source: HN Show HN
May 10, 2026 update

Remind schedules Claude Code jobs on a Mac locally

Remind is a free Mac app that schedules prompts for Claude Code and runs them locally on the user’s machine. The developer says it uses the same files, skills, and CLI tools available at the keyboard, unlike Claude Code’s built-in /schedule feature, which runs on Anthropic’s servers.

Source: HN Show HN
May 10, 2026 update

Workspace MCP adds full Google Workspace control for AI tools

Workspace MCP is a new open source server that gives AI assistants and developer tools control over Google Workspace services including Gmail, Drive, Calendar, Docs, Sheets, Slides, Forms, Tasks, Contacts and Chat. The project says it supports OAuth 2.1, multi-user deployments, stateless mode and central hosting for organizations.

Source: r/LocalLLaMA
May 9, 2026 update

How-to-Train-Your-GPT teaches modern LLMs from scratch

A new open source guide called How-to-Train-Your-GPT walks readers through building, training, and running a language model from scratch. The 12-chapter, 3,900-line interactive textbook focuses on modern decoder-only Transformer parts such as attention, RoPE, RMSNorm, and KV cache.

Source: HN Show HN
May 9, 2026 update

SQLite benchmarks on Hetzner's cheapest VPS show real production load

A benchmark on Hetzner’s $4.99-per-month CX23 VPS tested SQLite with a 6 GB database that did not fit in RAM. The results showed about 3.9k operations per second for a mixed read/write workload, with the author saying SQLite handled real production-style traffic on the low-cost shared-CPU server.

Source: HN Show HN
May 9, 2026 update

Share to ChatGPT widget adds one-line page sharing

A new embeddable Share2ChatGPT widget lets sites open ChatGPT with the current page pre-loaded as a prompt. The script is one file, uses data attributes for setup, and supports themes, sizes, languages, and a direct redirect URL.

Source: HN Show HN
May 9, 2026 update

Concord brings a full Discord client to the terminal

Concord is a terminal user interface client for Discord that supports browsing servers, reading and sending messages, reactions, polls, file uploads, and image previews. The project can be installed with Homebrew, Cargo, Nix, or a shell installer, and it stores Discord tokens in plain text under ~/.concord/credential.

Source: HN Show HN
May 9, 2026 security

Intruder launches AI pentesting agents that finish in minutes

Intruder, a London cybersecurity startup backed by GCHQ’s Cyber Accelerator, has launched AI pentesting agents that mimic human methodology and return results in minutes. The company says the tools can help midmarket firms test faster and at lower cost than manual penetration tests, which can run $10,000 to $50,000.

Source: The Next Web
May 9, 2026 update

ChatGPT for Android may soon control Codex desktop sessions

Strings found in ChatGPT for Android version 1.2026.125 suggest OpenAI is working on remote control for Codex desktop sessions from phones. The feature would let users reconnect to desktop coding sessions, add Codex shortcuts, and manage remote threads through the mobile app.

Source: r/OpenAI
May 9, 2026 security

Anthropic says new training cuts Claude blackmail behavior

Anthropic says it reduced agentic misalignment in Claude models by changing safety training, including teaching the model to explain why actions are better and using more diverse data. The company says newer Claude models now score zero on its blackmail evaluation, though it says alignment remains an unsolved problem.

Source: r/ControlProblem
May 9, 2026 update

Signegy offers free browser-only PDF tools with no uploads

Signegy is a free, open-source PDF toolkit that runs entirely in the browser, according to its launch page. It offers signing, merging, splitting, compressing, and other PDF tools without requiring an account or uploading files to a server.

Source: HN Show HN
May 8, 2026 update

CyberSecQwen-4B aims to bring defensive cyber AI on-prem

CyberSecQwen-4B is a 4-billion-parameter cybersecurity model built for local use, according to its creator. The project says it was fine-tuned for tasks like CWE classification and CTI Q&A, and it was benchmarked against Cisco’s Foundation-Sec-Instruct-8B under the CTI-Bench protocol.

Source: Hugging Face Blog
May 8, 2026 update

Kept turns AI chats into local Markdown knowledge vaults

Kept is a local-first knowledge manager that saves AI conversations as Markdown files on the user’s machine. It supports ChatGPT, Claude, Gemini, Grok, and Kimi, and adds local search, graph views, and an MCP server for agentic tools.

Source: HN Show HN
May 8, 2026 community

OpenAI launches GPT-Realtime-2, Translate, and Whisper APIs

OpenAI released three new streaming audio models in its Realtime API: GPT-Realtime-2, GPT-Realtime-Translate, and GPT-Realtime-Whisper. The company says GPT-Realtime-2 adds better reasoning, longer context, tool use, and interruption handling for voice agents, while the other two models handle live translation and transcription.

Source: Latent Space
May 8, 2026 update

AWS adds payment tools for AI agents in Bedrock AgentCore

AWS has added preview payment features to Amazon Bedrock AgentCore, letting AI agents buy access to paid services using the x402 protocol. The company also announced a major cloud deal with U.S. Bancorp to move hundreds of internal workloads to AWS.

Source: SiliconANGLE
May 7, 2026 security

Google Chrome silently pushes 4 GB Gemini Nano model

Google Chrome is silently downloading a 4 GB on-device AI model, according to a report that traced the file on macOS and Windows. The model, used for Gemini Nano features, can re-download itself after deletion and appears without a consent prompt.

Source: r/LocalLLaMA
May 7, 2026 update

OpenClaw 2026.5.7 fixes release hardens plugins, cron, and Telegram

OpenClaw 2026.5.7 adds fixes across plugin publishing, cron tooling, channels CLI, Telegram, Discord, WhatsApp, and model handling. The release also tightens approval and authorization flows, and improves session and memory cleanup.

Source: OpenClaw Releases
May 7, 2026 update

Hermes Agent v0.13.0 adds durable Kanban and security fixes

Hermes Agent v0.13.0, released May 7, 2026, adds a durable multi-agent Kanban board, persistent goals with /goal, stronger session recovery, and a broader plugin surface for providers and platforms. The release also closes eight P0 security issues and adds Google Chat as the 20th supported platform.

Source: Hermes Agent Releases
May 7, 2026 update

Running Google Ads from the terminal with custom AI skills

A growth marketer at Kilo says he moved Google Ads management into Kilo CLI using custom skills, scripts, and rules. The setup uses different AI models for planning and execution, with dry-runs, paused launches, and account-specific guardrails to reduce errors and speed up routine work.

Source: Kilo Blog
May 7, 2026 update

OpenClaw 2026.5.6 fixes Codex, browser, and macOS issues

OpenClaw’s May 7 newsletter highlights the 2026.5.6 release and related fixes for Codex, browser tabs, and macOS LaunchAgents. It also lists new work on agent failover, plugin authorization, localized tool summaries, and memory capture rules.

Source: OpenClaw Newsletter
May 7, 2026 update

Agent-skills-eval tests whether skills actually improve outputs

agent-skills-eval is a new test runner for Agent Skills, the Anthropic open standard for packaging domain knowledge in a SKILL.md file. It runs prompts with and without the skill loaded, then uses a judge model to compare the outputs and generate a report.

Source: HN Show HN
May 7, 2026 community

Anthropic Adds SpaceX Compute, Raises Claude Usage Limits

Anthropic said it struck a compute partnership with SpaceX to expand Claude capacity and raise usage limits for several products. The company also said Claude Code limits are going up, while Anthropic leaders pointed to rapid growth and a larger push into managed agents.

Source: Latent Space