Hacker News

New stories

Live mirror
30 storiesupdated just nowView source snapshot
  1. The Power of AI: Mass Collaboration(cppdepend.com)
    discuss
  2. Show HN: DeutschDNA – German Tutor Skill for Claude Code and Codex(github.com/ahmtsahin)
    discuss
  3. Show HN: Busbar self-hosted execution boundary for Agentic Apps(github.com/getbusbar)
    discuss
  4. Show HN: Whiteboard (YC W26) – an open-source IDE for thoughtful software design(github.com/devdotfast)
    discuss
  5. Show HN: Devc – an alternate CLI for launching devcontainers(github.com/rameshvarun)
    discuss
  6. Open AI in the Wild: Adoption and Adaptation of Open Models on R/LocalLLaMA(acm.org)
    discuss
  7. Return-to-office policy in 2026: 8 of 75 top UK employers require 5 office days(wfhjobs.co.uk)
    1comments
  8. Paper2agent Turns Static Papers into Live AI Tools(ieee.org)
    discuss
  9. 35 years ago I did it all myself(twitter.com/jasonfried)
    discuss
  10. For Computer Use, the harness matters as much as the model(stagehand.dev)
    2comments
  11. Meta employees don't like to be filmed with there own glasses [video](youtube.com)
    discuss
  12. Show HN: Guardmcp – I scanned the official MCP registry with a config scanner(github.com/berkantacun)
    discuss
  13. Developer ported Word for Windows 1.1a from 1990 to run natively on Windows 11(neowin.net)
    discuss
  14. Does Georgism Work? Five Years Later(astralcodexten.com)
    discuss
  15. "Antedisciplinary" Science (2005)(plos.org)
    discuss
  16. Why does a Nix store path survive garbage collection?(labcraft.dev)
    discuss
  17. Show HN: ThimbleDb, an encrypted lightweight low latency open source database(github.com/jason-doyle)
    discuss
  18. We Have Named Arguments at Home(corrode.dev)
    1comments
  19. OpenRouter: Server Tools Marketplace(openrouter.ai)
    discuss
  20. Shared Memory for Coding Agents(getbelay.vercel.app)
    discuss
  21. Lifestreams: A storage model for personal data: ACM SIGMOD Record: Vol 25, No 1(acm.org)
    discuss
  22. US plan for 90 day diesel export ban could have significant impact on Europe(politico.eu)
    1comments
  23. Open OCI spec for agent sandboxes(linux.com)
    discuss
  24. LLMs can write tool workflows. Will they choose to?(github.com/kukushko)
    discuss
  25. The International AI Race May Not Be Won by the Smartest AI(phroneses.com)
    discuss
  26. S.F. Democratic Party stands behind Flock surveillance cameras in vote(missionlocal.org)
    12comments
  27. Gemini 3.8 Live with Live Avatar(blog.google)
    discuss
  28. One day of AI reading: 5.7M crawler reads of a 60M-company index, by engine(engagemii.com)
    discuss
  29. The Download: a bid to scrap the virtual wall and AI hits Climate Week(technologyreview.com)
    discuss
  30. Pinocchio, make copilot agents real by giving them memory(github.com/chiedo)
    discuss

GitHub has not removed malicious imitation software after 3 weeks

98 pointsby 1h agosuccessfulsoftware.net
29 comments
54m agoHN ↗

If it's your software send a DMCA. They have a legally required timeframe to process those. If it's open source, however, then you don't have any valid DMCA claim.

49m agoHN ↗

Code can be open source while the name and logos are copyrighted and still enforceable via DMCA

43m agoHN ↗

That’s not how open source works.

Open source code is still copyrighted. What the license defines is rights that people have in distributing that code. If an unofficial repository is using open source code to ship malware, and the license that software had didn’t allow that, then the unofficial repository is still breaking copyright law despite the code being open source.

29m agoHN ↗

Also open source license doesn't grant use of trademarks, but I'm not sure that means DMCA applies.

53m agoHN ↗

Not exactly the same, but I've noticed a pretty sizable uptick in the number of spam/scam PR comments being left on GitHub (and a longer delay before they're removed after report).

Not the worst thing in the world, they're easy to spot, but I'd like to see GitHub invest more time in protecting their users from falling victim to these bad actors.

52m agoHN ↗

In the future just issue a DMCA takedown right away for cases like this, IMO.

49m agoHN ↗

Author of the post here. Github finally took the offending page down approximately 10 minutes after the post appeared on the front page of HN. Total coincidence. I'm sure!

Moral of the story. If you want even the most basic level of support from Github, you need to get on the front page of HN first.

And it seems they are able to do things very quickly, when they want to. Bastards.

48m agoHN ↗

It might not be a willingness issue as much as a bandwidth issue.

46m agoHN ↗

unwilling to provide proper support?

Just seems like a silly rational response to the same problem.

45m agoHN ↗

Yes,evidently bandwidth from HN unblocks takedown requests of malicious content.

42m agoHN ↗

Prioritization and escalation exists in most companies. I guarantee you that once an issue hits the HN front page, even engineers who might have totally different talks will get involved. (Never worked at GH or have talked to anyone there in years but this is how everything works pretty much everywhere)

38m agoHN ↗

The public shaming will continue until the internal incentives improve. Make sure to drop that HN thread link into the internal task tracker y'all. Don't forget to report to journalists if the severity warrants it (Brian Krebs, 404media, etc).

"Show me the incentive and I'll show you the outcome."

43m agoHN ↗

Good thing HN provided them some bandwidth to do their jobs.

41m agoHN ↗

Bandwidth can be bought with money, of which Microsoft made an extra $133.7 billion this year.

39m agoHN ↗

Sounds like they can afford elite customer support.

38m agoHN ↗

We know that coding agents have been pushing GH to its limits. Scaling is hard - especially staff. Maybe they aren't trying to scale support but I think it's reasonable to give them the benefit of doubt here, given what we know publicly

33m agoHN ↗

That’s a self-inflicted issue they should have properly planned for.

32m agoHN ↗

You’re saying this is a problem money can’t solve?

There’s no need for benefit of the doubt when it comes to the level of support provided by tech companies.

Bad support by tech companies is a conscious profit-preserving choice.

18m agoHN ↗

Microsoft is not some plucky upstart company with 12 employees and an unexpectedly popular product. We do not, in fact, need to give them the benefit of the doubt here.

21m agoHN ↗

Never thought I'd see the day when Microsoft is elite.

29m agoHN ↗

Moral of the story. If you want even the most basic level of support from Github, you need to get on the front page of HN first.

This also works for Google support.

And it seems they are able to do things very quickly, when they want to. Bastards.

I wouldn’t chalk any of this up to malicious intent. I’m sure they are swamped with such requests.

It was already a problem before agents could automatically perform these actions.

And it’s not something you can really automate on their end either. At least not the judgement call on the removal. Imagine if there was a fully automated process and it inadvertently took down a legit project.

21m agoHN ↗

I wouldn’t chalk any of this up to malicious intent. I’m sure they are swamped with such requests.

Stalling in the hope that reporters won't escalate, instead of allocating a tiny bit of their billions in profit to hiring for this, is malicious in my book.

8m agoHN ↗

I mean we are in the thread of evidence right now?

28m agoHN ↗

Just send DMCA if you want their attention, they act harshly and quickly. Even when it's false one.

44m agoHN ↗

why would anyone host commercial binary software on github or any other third party domain?

39m agoHN ↗

Pirates and crackers generally don't host stuff on their own domains. They don't want to pay for the bandwidth and they don't want to be traced.

7m agoHN ↗

I think they’re alluding to OP not hosting their own downloads.

29m agoHN ↗

They’re presumably too busy with keeping availability above nine sixes