Hacker News

Top stories

Live mirror
30 storiesupdated just nowView source snapshot
  1. San Francisco Onion Futures Company(onionfutures.com ↗)
    10comments
  2. Android 17 is the first since 3.x to add new APIs without releasing to the AOSP(grapheneos.social ↗)
    334comments
  3. Science Is Open Software(jepedersen.dk ↗)
    15comments
  4. SDCC – Small Device C Compiler(sourceforge.net ↗)
    8comments
  5. Cloudflare Quick Tunnels(cloudflare.com ↗)
    268comments
  6. How OpenAI Used Its Own LLMs to Design Its Jalapeño Chip(ieee.org ↗)
    69comments
  7. Typesafe-computer-use drives a Mac toward a goal for 1/50th of a cent per step(github.com/awlevin ↗)
    2comments
  8. Saving another 100TB of RAM(cloudflare.com ↗)
    58comments
  9. NASA-IBM Lunar Foundation open-Source Geospatial AI Model(usra.edu ↗)
    discuss
  10. How to Write with an LLM(sockpuppet.org ↗)
    304comments
  11. Show HN: Seal – Letters and passwords that open for your family after you die(github.com/jasonepage ↗)
    discuss
  12. Why building a Rust LSP is hard(rust-glancer.github.io ↗)
    11comments
  13. Xcode 27.1 Beta Release Notes(developer.apple.com ↗)
    75comments
  14. The first new cat species discovered in 100 years(nationalgeographic.com ↗)
    81comments
  15. Show HN: Cactus Needle 3: 8-29MB automation models can match DeepSeek V4 Flash(cactuscompute.com ↗)
    81comments
  16. Photon-Emission-Guided Laser Fault Injection Enables RP2350 Secure Debug(ledger.com ↗)
    61comments
  17. Harm Laundering in GPT Models: Gender Discrimination Transformed Rather Than(arxiv.org ↗)
    discuss
  18. OpenJev(openjev.com ↗)
    250comments
  19. The Farnese letter(simonklee.dk ↗)
    5comments
  20. Cache-to-Cache: Direct Semantic Communication Between LLMs (2025)(arxiv.org ↗)
    12comments
  21. Cyclomatic Complexity in C#(ndepend.com ↗)
    16comments
  22. Minimal Phone 2(minimalcompany.com ↗)
    199comments
  23. LispBM is a concurrent Lisp for microcontrollers with message passing(lispbm.com ↗)
    3comments
  24. Claude Code now reads AGENTS.md if there is no Claude.md(claude.com ↗)
    208comments
  25. Goroutine Leak Profiles(go.dev ↗)
    1comments
  26. Show HN: LiveWorld – Every 24/7 YouTube live camera on one globe(liveworld.info ↗)
    32comments
  27. Alibaba open-sources AI model that can detect cancer and nearly 150 conditions(scmp.com ↗)
    10comments
  28. Warez: The Infrastructure and Aesthetics of Piracy (2021)(archive.org ↗)
    39comments
  29. Inside ZCode: Silently uploading your Git history to the cloud(ferstar.org ↗)
    94comments
  30. How SpaceX streamlined the Raptor engine(construction-physics.com ↗)
    56comments

Is Multi Level Security the Answer to Our InfoSec Woes?

2 pointsby 5y ago
1 comments
It seems to me that for some reason almost everyone in the tech community doesn't know about Multi Level Security. (AKA Capability Based Security)

Multi-Level Security was developed in the 1970s after there were problems with air traffic control/flight plan data processing issues related to security classification levels during the Viet-Nam war.

Operating Systems that supported Capabilities such as GNOSIS were in operation in the 1970s. Multics was planned to add Capability Object support.

Unix short-circuited history, and for the most part, Capabilities were forgotten, because they were seen as unnecessary and wasteful of resource.

I believe it is time to re-examine these beliefs, and start a push towards widely deploying Multi Level Secure systems.

References:

https://en.wikipedia.org/wiki/Multilevel_security https://en.wikipedia.org/wiki/Bell%E2%80%93LaPadula_model https://en.wikipedia.org/wiki/KeyKOS https://en.wikipedia.org/wiki/Genode http://cap-lore.com/CapTheory/KK/

[Edit: Formatting/Spelling]

5y agoHN ↗

I want to know if I'm on the right path, or there is some aspect of this that I'm wildly wrong about.