2. GitHub 源代碼洩露事件——TeamPCP 聲稱已獲取內部源代碼 GitHub Source Code Breach - TeamPCP Claims Access to Internal Source Code (cybersecuritynews.com)
3. 如果你就那樣坐在那裡無所事事,那至少要把這無所事事做得像樣點 If you''re just going to sit there doing nothing, at least do nothing correctly (devblogs.microsoft.com)
5. 我建立了一個虛擬博物館,裡面幾乎囊括了你能想到的所有操作系統 I''ve built a virtual museum with nearly every operating system you can think of (www.youtube.com)
13. 關於基於屬性的測試在驗證形式化規格說明方面的“不可思議的有效性” On the Unreasonable Effectiveness of Property-Based Testing for Validating Formal Specifications (proofsandintuitions.net)
14. pg_deltax:一款基於Apache許可證的PostgreSQL時間序列擴展 pg_deltax: Apache-licensed time-series extension for PostgreSQL (github.com)
18. 我們在強化 Turso 安全性的過程中,如何利用 Quint 發現 SQLite 中超過 10 個漏洞 How we used Quint to find over 10 bugs in SQLite while hardening Turso (turso.tech)
19. 技術揭秘:構建實時和絃識別器 Under the Hood: Building a Real-Time Chord Recognizer (whatchord.earthmanmuons.com)
26. 一個用 C 語言編寫的自平衡跳躍表(又稱“splay-list”)庫 A self-balancing skip-list (aka "splay-list") library in C (codeberg.org)
27. Lime,一款可在運行時合併語法的解析器生成器 Lime, a parser generator that can merge grammars at runtime (codeberg.org)
28. Noxu DB,Berkeley DB Java Edition 的 Rust 移植版 Noxu DB, a Rust port of Berkeley DB Java Edition (codeberg.org)
29. ProseMirror 模型在富文本轉換中的超乎尋常的有效性 The Unreasonable Effectiveness of ProseMirror Model in Rich Text Transformation (smoores.dev)
30. Windows DLL 加載器鎖:Rust 線程如何導致 JVM 掛起 The Windows DLL loader lock: how a Rust thread can hang your JVM (questdb.com)
35. 利用代數和大型語言模型在Lean中驗證飛行計劃漏洞修復 Using algebra and LLMs to verify a flight-plan bug fix in Lean (jameshaydon.github.io)
39. Casuarina Linux 簡介:一款基於 glibc 的 Chimera Linux 衍生版 Introducing Casuarina Linux: A glibc-Based Chimera Linux Derivative (casuarina.org)
41. CISA管理員在GitHub上洩露了AWS GovCloud密鑰 CISA Admin Leaked AWS GovCloud Keys on Github (krebsonsecurity.com)
44. cargo-crap:在 AI 生成的 Rust 代碼中發現未經測試的複雜性 cargo-crap: Finding Untested Complexity in AI-Generated Rust Code (minikin.me)
55. 瀏覽器標籤頁中的類Linux內核——深入解析BrowserPod架構 A Linux-like kernel in a browser tab - deep dive in the BrowserPod architecture (labs.leaningtech.com)
59. 使用 OpenCode、Llama.cpp 和 Qwen 3.6 查找您代碼中的錯誤 Find bugs in YOUR code using OpenCode, Llama.cpp and Qwen3.6 (wtarreau.blogspot.com)
60. FediMeteo、HAProxy 與不浪費 snac 線程的藝術 FediMeteo, HAProxy, and the art of not wasting snac threads (it-notes.dragas.net)
62. Calvin - 決定論、分佈式 ACID 事務(2020) Calvin - Determinism, Distributed ACID transactions (2020) (www.mydistributed.systems)
65. 研究人員稱微軟在BitLocker中秘密植入了後門 Researcher says Microsoft secretly built a backdoor into BitLocker (www.techspot.com)
66. 使用 Claude Code 對 Android 惡意軟件進行逆向工程 Reverse engineering Android malware with Claude Code (zanestjohn.com)
80. 克勞德·科德成功讓 Adobe Lightroom 在 Linux 上運行起來 Claude Code managed to get Adobe Lightroom working on Linux (github.com)
84. Fast16:這款早於“震網”病毒的破壞工具旨在破壞核武器模擬系統 Fast16: Pre-Stuxnet Sabotage Tool Was Built to Subvert Nuclear Weapons Simulations (www.security.com)
87. DeepSeek-V4-Flash 意味著大型語言模型(LLM)的引導技術再次引起關注 DeepSeek-V4-Flash means LLM steering is interesting again (www.seangoedecke.com)
91. 多語言Lisp:Common Lisp、Racket、Clojure、Emacs Lisp Hyperpolyglot Lisp: Common Lisp, Racket, Clojure, Emacs Lisp (hyperpolyglot.org)
95. Tomy Tutor 與 1983 年的家用電腦現狀 The Tomy Tutor and the state of 1983 home computers (oldvcr.blogspot.com)
102. triad:面向 River Wayland 合成器的數據導向型窗口管理器 triad: data-oriented window manager for the River Wayland compositor (github.com)
103. 近期內核漏洞利用、攻擊面縮減、IPSEC示例 Recent Kernel exploits, attack surface reduction, example IPSEC (www.openwall.com)
104. 《系統編程入門》第一部分:程序員編寫程序(2025) Starting Systems Programming, Pt 1: Programmers Write Programs (2025) (eblog.fly.dev)
105. 一款適用於 Unix/Linux 系統的 X11 平臺、風格類似 90 年代 Keygen 的工具 A 90''s era Keygen-like for X11 for Unix/Linux (github.com)
108. 第13屆“Virtual Bevy”線上聚會的錄像現已發佈在YouTube上 Virtual Bevy Meetup 13 Recordings now on YouTube (rustunit.com)
110. 廉價智能門鈴存在全車隊賬戶接管和通話劫持漏洞 Cheap smart doorbell allows fleet-wide account takeover and call hijacking (www.abgeo.dev)
114. 使用 Rust 解析 Godot 的 .tres 文件並遍歷資源圖 Using Rust to parse Godot .tres files and walk the resource graph (assethoard.com)
118. CVE-2026-40369:通過 NtQuerySystemInformation 實現內核地址任意遞增 CVE-2026-40369: Arbitrary Kernel Address Increment via NtQuerySystemInformation (github.com)
124. 針對 Pixel 10 的零點擊漏洞利用鏈:一扇門關上,另一扇窗打開 A 0-click exploit chain for the Pixel 10: When a Door Closes, a Window Opens (projectzero.google)
126. 錯誤考古學:藉助大型語言模型破解一個長達十年的 Swift/C 謎題 Bug Archeology: Solving a decade-old Swift/C mystery (with LLMs) (samkhawase.com)
131. 舊的科技世界正在消亡,而新的卻無法誕生 The old world of tech is dying and the new cannot be born (www.baldurbjarnason.com)
135. claude-for-legal:一套用於法律工作流的插件 claude-for-legal: A suite of plugins for legal workflows (github.com)
136. Volkswagen——可檢測測試在持續集成(CI)服務器上運行時的情況,並確保測試通過(2015) Volkswagen- detects when your tests are being run in a CI server, and makes them pass (2015) (github.com)
141. ssh-keysign-pwn:以無特權用戶身份讀取 root 擁有的文件 ssh-keysign-pwn: Read root-owned files as an unprivileged user (github.com)
143. 在保持對科技工作的熱愛的同時,你是否以某種方式踐行著科技極簡主義? In what way if any are you a tech minimalist while maintaining your job/love for tech? (lobste.rs)
148. “這是由法學碩士寫的”這類評論應被標記為跑題 "This is written by an LLM" comments should be flagged as off-topic (lobste.rs)
151. PostgreSQL 18.4 和 17.10 修復了 11 個 CVE PostgreSQL 18.4, 17.10 closing 11 CVEs (www.postgresql.org)
153. 首個針對 Apple M5 的公開 macOS 內核內存損壞漏洞利用 First public macOS kernel memory corruption exploit on Apple M5 (blog.calif.io)
154. Linux 安全漏洞、禁運令的破裂以及日益縮短的補丁窗口期 Linux Compromises, Broken Embargoes, and the Shrinking Patch Window (www.askbaize.com)
169. Classic 7 是一款 Windows 10 LTSC 修改版,其外觀與 Windows 7 完全一致 Classic 7 is a Windows 10 LTSC mod to look 1:1 to Windows 7 (classic7.lol)
174. 5年過去,耗資500萬美元:為Web開發發明一種新編程語言是個錯誤 Wasp 5 Years and 5M Later: Inventing a New Programming Language for Web Development Was a Mistake Wasp (wasp.sh)
176. 利用一個存在18年的漏洞實現NGINX遠程代碼執行 Achieving NGINX Remote Code Execution via an 18-Year-Old Vulnerability (depthfirst.com)
178. rqlite 是如何(以及為何)接管 SQLite 的預寫日誌的 How (and why) rqlite takes control of the SQLite Write-Ahead Log (philipotoole.com)
184. 撤銷 Python 3.14 和 3.15 中的增量垃圾回收 Reverting the incremental GC in Python 3.14 and 3.15 (discuss.python.org)
190. Sovereign Tech Fund 向 KDE 軟件開發投資逾 100 萬歐元 Sovereign Tech Fund invests over 1 million in KDE software development (kde.org)
192. Claude Code RCE:通過設置注入利用深度鏈接處理程序 Claude Code RCE: Exploiting Deeplink Handlers via Settings Injection (0day.click)
195. Dart Live:一款通過 Wasm 在網頁端實現的編譯器、虛擬機、分析器及熱重載工具 Dart Live, a compiler, VM, analyzer and hot reload on the web via Wasm (modulovalue.github.io)
196. MacBook Neo 評測:專為普通用戶打造的筆記本電腦 MacBook Neo Review: The Laptop For The Rest Of Us (fireborn.mataroa.blog)
197. Tolaria、Rust,以及關於“什麼樣的 Mac 應用能讓我感到舒適”的思考 Tolaria, Rust, and Questions About What Makes a Mac App Feel Good to Me (shapeof.com)
198. 不依賴啟發式的確定性全靜態二進制文件翻譯 Deterministic Fully-Static Whole-Binary Translation without Heuristics (arxiv.org)
199. 面向有志成為高級用戶的用戶,關於Kakoune的詳細介紹 A detailed introduction to Kakoune for the aspiring power user (ficd.sh)
201. Stack Overflow 上那 262,715 個正則表達式問題未能解答的究竟是什麼 what 262,715 regex questions on stack overflow haven''t answered (iev.ee)
203. Pycco:一款支持100行文本的文學風格並排文檔渲染器 Pycco: 100-line literate-style side-by-side documentation renderer (pycco-docs.github.io)
204. 壓縮 OxCaml js_of_ocaml 軟件包:從 285 MB 縮減至 4 MB Shrinking the OxCaml js_of_ocaml bundle: 285 MB to 4 MB (kcsrk.info)
205. BeBox:BeOS 硬件、照片以及那樁未成行的蘋果交易 The BeBox: BeOS Hardware, Photos, and the Apple Deal That Wasn''t (www.jdhodges.com)
206. 很快,我們終於可以將 JavaScript 驅逐到“陰影領域”了 Soon We Can Finally Banish JavaScript to the ShadowRealm (css-tricks.com)
208. “dnsmasq 中存在六個嚴重安全漏洞的 CVE” "six CVEs for serious security vulnerabilities in dnsmasq" (lists.thekelleys.org.uk)
211. 枚舉轉字符串的開銷:C26 反射與傳統方法的對比 cost of enum-to-string: C26 reflection vs the old ways (vittorioromeo.com)
213. Bambu Lab 正在濫用開源社會契約 Bambu Lab is abusing the open source social contract (www.jeffgeerling.com)
216. “殺死一隻Cow”讓我的 JSON 格式化器速度提升了 42% Killing a Cow made my JSON formatter 42% faster (jacobasper.com)
217. Rockstar是如何將整座城市塞進PlayStation 2內存中的 How Rockstar fit an entire city into PlayStation 2 memory (www.youtube.com)
219. 在較新版本的 Android 系統上,任何應用都可能洩露某些流量 Any app on recent Android versions can leak certain traffic (mullvad.net)
224. 《在 Linux 和 Unix 系統上編譯 Emacs 以提升性能的技術指南》 A Technical Guide to Compiling Emacs for Performance on Linux and Unix systems (www.jamescherti.com)
226. Kettle:用於可驗證軟件溯源的經過驗證的構建方案 Kettle: Attested builds for verifiable software provenance (arxiv.org)
228. floci:輕量、靈活,且完全免費——AWS Local Emulator 的替代方案 floci: Light, fluffy, and always free - The AWS Local Emulator alternative (github.com)
229. 熱門 Go 庫 fsnotify 因維護者訪問權限變更引發供應鏈安全警報 Popular Go library fsnotify raises supply chain alarms after maintainer access changes (socket.dev)
232. 第12屆Plan 9國際研討會註釋摘要 An annotated digest of the 12th International Workshop on Plan 9 (n-gate.com)
242. 反極簡主義的反撲,才是Oxygen重振雄風背後的真正原因 The anti-minimalist backlash is the bigger story behind Oxygen’s revival (filipfila.wordpress.com)
244. devenv 2.1:通過 libghostty 支持 zsh、fish 和 nushell 的 Nix - devenv devenv 2.1: Nix with zsh, fish, and nushell via libghostty - devenv (devenv.sh)
251. omlx:一款支持連續批處理和 SSD 緩存的 LLM 推理服務器,專為 Apple Silicon 設計——可通過 macOS 菜單欄進行管理 omlx: LLM inference server with continuous batching & SSD caching for Apple Silicon — managed from the macOS menu bar (github.com)
252. 基於可編程白名單的配置:在 Go 中嵌入 Rye Programmable Whitelist-based Configs: Embedding Rye in Go (ryelang.org)
255. 使用 systemfd 將終端輸出重定向到瀏覽器 Piping terminal output to the browser using systemfd (blog.izissise.net)
258. 最高支持 256 MB 的 FERRIT 模塊化 F-RAM 存儲設備,可將關鍵數據保存長達 200 年 Up to 256 MB FERRIT modular F-RAM storage device preserves critical data for up to 200 years (www.cnx-software.com)
259. 《Factorio》如何通過網絡同步上百萬個物體 How Factorio Syncs A Million Objects over the network (www.youtube.com)
264. 在不使用 TIOCSTI 的情況下替換 Bash 中的 Ctrl-R Replacing Ctrl-R in Bash without TIOCSTI (blog.rickardlindberg.me)
266. Tiny-Lua-Compiler:可能是迄今為止最小的 Lua 編譯器 Tiny-Lua-Compiler: Possibly the smallest Lua compiler ever (github.com)
267. ClaudeBleed:Claude瀏覽器擴展中的一個漏洞允許任何擴展程序劫持它 ClaudeBleed: A Flaw In Claude''s Browser Extension Allows Any Extension to Hijack It (layerxsecurity.com)
274. 使用 Swift 訓練大型語言模型(LLM),第一部分:將矩陣乘法性能從 Gflop/s 提升至 Tflop/s Training an LLM in Swift, Part 1: Taking matrix multiplication from Gflop/s to Tflop/s (www.cocoawithlove.com)
275. wayland.fyi 極簡主義 Wayland 特別興趣小組 wayland.fyi minimalist wayland special interest group (wayland.fyi)
281. 宇宙射線是量子計算機的剋星——軟件或許能解決這一難題 Cosmic Rays Are Quantum Computers'' Kryptonite—Software might just solve the problem (spectrum.ieee.org)
282. 《雙重迪菲-赫爾曼問題及其應用》(2009) The Twin Diffie-Hellman Problem and Applications (2009) (eprint.iacr.org)
285. 用一個 10 MB 的 FST(有限狀態轉換器)二進制文件替換一個 3 GB 的 SQLite 數據庫 Replacing a 3 GB SQLite database with a 10 MB FST (finite state transducer) binary (til.andrew-quinn.me)
287. 《優質的首個問題:提交你的首個開源貢獻》 Good First Issue: Make your first open-source contribution (goodfirstissue.dev)
298. Aurora:一種適用於矩形矩陣的考慮權重關係的優化器 Aurora: A Leverage-Aware Optimizer for Rectangular Matrices (blog.tilderesearch.com)
300. 讓大型語言模型“喝醉”以發現遠程 Linux 內核 OOB 寫入(及其他) Getting LLMs Drunk to Find Remote Linux Kernel OOB Writes (and More) (heyitsas.im)