Hacker News

Top stories

Live mirror
30 storiesupdated just nowView source snapshot
  1. San Francisco Onion Futures Company(onionfutures.com ↗)
    35comments
  2. Android 17 is the first since 3.x to add new APIs without releasing to the AOSP(grapheneos.social ↗)
    357comments
  3. SDCC – Small Device C Compiler(sourceforge.net ↗)
    12comments
  4. Typesafe-computer-use drives a Mac toward a goal for 1/50th of a cent per step(github.com/awlevin ↗)
    9comments
  5. Human brain is two separate organs, Stanford Medicine-led research finds(stanford.edu ↗)
    2comments
  6. Science Is Open Software(jepedersen.dk ↗)
    22comments
  7. Cloudflare Quick Tunnels(cloudflare.com ↗)
    272comments
  8. How OpenAI Used Its Own LLMs to Design Its Jalapeño Chip(ieee.org ↗)
    74comments
  9. Saving another 100TB of RAM(cloudflare.com ↗)
    59comments
  10. Why building a Rust LSP is hard(rust-glancer.github.io ↗)
    18comments
  11. NASA-IBM Lunar Foundation open-Source Geospatial AI Model(usra.edu ↗)
    discuss
  12. How to Write with an LLM(sockpuppet.org ↗)
    309comments
  13. You can run Git on object storage if you re-make packfiles(tigrisdata.com ↗)
    1comments
  14. Goroutine Leak Profiles(go.dev ↗)
    2comments
  15. Xcode 27.1 Beta Release Notes(developer.apple.com ↗)
    84comments
  16. The first new cat species discovered in 100 years(nationalgeographic.com ↗)
    89comments
  17. Show HN: Cactus Needle 3: 8-29MB automation models can match DeepSeek V4 Flash(cactuscompute.com ↗)
    83comments
  18. OpenJev(openjev.com ↗)
    255comments
  19. Photon-Emission-Guided Laser Fault Injection Enables RP2350 Secure Debug(ledger.com ↗)
    64comments
  20. The Farnese letter(simonklee.dk ↗)
    6comments
  21. Cache-to-Cache: Direct Semantic Communication Between LLMs (2025)(arxiv.org ↗)
    12comments
  22. Minimal Phone 2(minimalcompany.com ↗)
    206comments
  23. Cyclomatic Complexity in C#(ndepend.com ↗)
    17comments
  24. Claude Code now reads AGENTS.md if there is no Claude.md(claude.com ↗)
    214comments
  25. LispBM is a concurrent Lisp for microcontrollers with message passing(lispbm.com ↗)
    3comments
  26. Inside ZCode: Silently uploading your Git history to the cloud(ferstar.org ↗)
    96comments
  27. Warez: The Infrastructure and Aesthetics of Piracy (2021)(archive.org ↗)
    43comments
  28. Alibaba open-sources AI model that can detect cancer and nearly 150 conditions(scmp.com ↗)
    11comments
  29. How SpaceX streamlined the Raptor engine(construction-physics.com ↗)
    68comments
  30. The Implications of Linguistic Illegibility for LLM Security(arxiv.org ↗)
    26comments

Is Multi Level Security the Answer to Our InfoSec Woes?

2 pointsby 5y ago
1 comments
It seems to me that for some reason almost everyone in the tech community doesn't know about Multi Level Security. (AKA Capability Based Security)

Multi-Level Security was developed in the 1970s after there were problems with air traffic control/flight plan data processing issues related to security classification levels during the Viet-Nam war.

Operating Systems that supported Capabilities such as GNOSIS were in operation in the 1970s. Multics was planned to add Capability Object support.

Unix short-circuited history, and for the most part, Capabilities were forgotten, because they were seen as unnecessary and wasteful of resource.

I believe it is time to re-examine these beliefs, and start a push towards widely deploying Multi Level Secure systems.

References:

https://en.wikipedia.org/wiki/Multilevel_security https://en.wikipedia.org/wiki/Bell%E2%80%93LaPadula_model https://en.wikipedia.org/wiki/KeyKOS https://en.wikipedia.org/wiki/Genode http://cap-lore.com/CapTheory/KK/

[Edit: Formatting/Spelling]

5y agoHN ↗

I want to know if I'm on the right path, or there is some aspect of this that I'm wildly wrong about.