<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: kjok</title><link>https://news.ycombinator.com/user?id=kjok</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 03 Sep 2026 09:47:48 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=kjok" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[Container Speed. VM-Level Security]]></title><description><![CDATA[
<p>Article URL: <a href="https://edera.dev">https://edera.dev</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=48393335">https://news.ycombinator.com/item?id=48393335</a></p>
<p>Points: 8</p>
<p># Comments: 2</p>
]]></description><pubDate>Thu, 04 Jun 2026 03:22:35 +0000</pubDate><link>https://edera.dev</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=48393335</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48393335</guid></item><item><title><![CDATA[New comment by kjok in "CAPTCHAs can still detect AI agents"]]></title><description><![CDATA[
<p>I should have been clearer and specific: state management is done on the backend, but collecting behavioral biometrics and device fingerprint is done using JavaScript, which can be manipulated.</p>
]]></description><pubDate>Fri, 29 May 2026 20:11:57 +0000</pubDate><link>https://news.ycombinator.com/item?id=48328562</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=48328562</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48328562</guid></item><item><title><![CDATA[New comment by kjok in "CAPTCHAs can still detect AI agents"]]></title><description><![CDATA[
<p>Adversaries do not have to wait for LLM models to evolve to mimic human process, they can simply evade the detection JavaScript that evaluates similarity. JavaScript is visible, can easily be reverse-engineered.</p>
]]></description><pubDate>Fri, 29 May 2026 18:05:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=48326959</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=48326959</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48326959</guid></item><item><title><![CDATA[New comment by kjok in "Mini Shai-Hulud Strikes Again: 314 npm Packages Compromised"]]></title><description><![CDATA[
<p>Please also collect responses from people, you'd find a pattern: a new attack is launched, people make noise, and later go back to installing packages the same way. Enterprises already use private registries to combat such attacks, vulnerable folks include individual devs and small teams.</p>
]]></description><pubDate>Tue, 19 May 2026 16:58:28 +0000</pubDate><link>https://news.ycombinator.com/item?id=48195986</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=48195986</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48195986</guid></item><item><title><![CDATA[New comment by kjok in "Postmortem: TanStack NPM supply-chain compromise"]]></title><description><![CDATA[
<p>> Compare this to Android where you can run malware and it cannot do anything except for annoying you with notifications.<p>Are you sure it cannot do anything? Looking through various past malware/exploits, this doesn't seem to be the case.</p>
]]></description><pubDate>Tue, 12 May 2026 15:52:42 +0000</pubDate><link>https://news.ycombinator.com/item?id=48110056</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=48110056</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48110056</guid></item><item><title><![CDATA[One Agent Sandbox Is Not Enough]]></title><description><![CDATA[
<p>Article URL: <a href="https://multikernel.io/2026/03/25/sandlock-mcp-per-tool-sandboxing/">https://multikernel.io/2026/03/25/sandlock-mcp-per-tool-sandboxing/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=48086744">https://news.ycombinator.com/item?id=48086744</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Sun, 10 May 2026 18:59:44 +0000</pubDate><link>https://multikernel.io/2026/03/25/sandlock-mcp-per-tool-sandboxing/</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=48086744</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48086744</guid></item><item><title><![CDATA[New comment by kjok in "Show HN: Tilde.run – Agent sandbox with a transactional, versioned filesystem"]]></title><description><![CDATA[
<p>Why should they be open source?</p>
]]></description><pubDate>Thu, 07 May 2026 18:04:34 +0000</pubDate><link>https://news.ycombinator.com/item?id=48052675</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=48052675</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48052675</guid></item><item><title><![CDATA[New comment by kjok in "Bitwarden CLI compromised in ongoing Checkmarx supply chain campaign"]]></title><description><![CDATA[
<p>Cooldown sounds like a good idea ONLY IF these so called security companies can catch these malicious dependencies during the cooldown period. Are they doing this bit or individual researchers find a malware and these companies make headlines?</p>
]]></description><pubDate>Thu, 23 Apr 2026 22:07:09 +0000</pubDate><link>https://news.ycombinator.com/item?id=47882761</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47882761</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47882761</guid></item><item><title><![CDATA[New comment by kjok in "I am building a cloud"]]></title><description><![CDATA[
<p>How difficult is it to build a second startup on the side?</p>
]]></description><pubDate>Thu, 23 Apr 2026 05:48:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=47872605</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47872605</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47872605</guid></item><item><title><![CDATA[New comment by kjok in "Ask HN: Can anyone suggest me a SaaS product idea?"]]></title><description><![CDATA[
<p>Are you a bot?</p>
]]></description><pubDate>Wed, 15 Apr 2026 06:55:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=47775582</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47775582</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47775582</guid></item><item><title><![CDATA[New comment by kjok in "Ask HN: What are you building that's not AI related?"]]></title><description><![CDATA[
<p>Building automated analysis tool that help identify the use of GPL-licensed SDKs in mobile apps, promoting license compliance and supporting sustainable open-source development.</p>
]]></description><pubDate>Fri, 10 Apr 2026 03:50:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=47713402</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47713402</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47713402</guid></item><item><title><![CDATA[Ask HN: Founders/investors, what AI bet you made in 2022 and how it is going?]]></title><description><![CDATA[
<p>In 2022, many founders and investors made strong bets on AI: new companies, pivots, or funding theses. Now that we have had time to see what actually played out, what did you bet on and how is it doing today? We learn a lot from failure, so especially interested in (and would appreciate) honest stories about what did NOT work and why.</p>
<hr>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=47693990">https://news.ycombinator.com/item?id=47693990</a></p>
<p>Points: 6</p>
<p># Comments: 1</p>
]]></description><pubDate>Wed, 08 Apr 2026 18:06:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=47693990</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47693990</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47693990</guid></item><item><title><![CDATA[New comment by kjok in "LLM scraper bots are overloading acme.com's HTTPS server"]]></title><description><![CDATA[
<p>How do you know that they were LLM scrapers? The reason I ask is because user agents could easily be spoofed?</p>
]]></description><pubDate>Wed, 08 Apr 2026 06:53:40 +0000</pubDate><link>https://news.ycombinator.com/item?id=47686305</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47686305</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47686305</guid></item><item><title><![CDATA[New comment by kjok in "LLM scraper bots are overloading acme.com's HTTPS server"]]></title><description><![CDATA[
<p>For those who have deployed Cloudflare in front, what are pros and cons? How's the user experience? Do they offer free bot protection?</p>
]]></description><pubDate>Wed, 08 Apr 2026 06:24:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=47686111</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47686111</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47686111</guid></item><item><title><![CDATA[New comment by kjok in "LLM scraper bots are overloading acme.com's HTTPS server"]]></title><description><![CDATA[
<p>How are you measuring this? Does your solution rely on user agent or device fingerprinting? Curious to know what tools are available today and how accurate they are.</p>
]]></description><pubDate>Wed, 08 Apr 2026 06:19:45 +0000</pubDate><link>https://news.ycombinator.com/item?id=47686074</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47686074</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47686074</guid></item><item><title><![CDATA[New comment by kjok in "Launch HN: Freestyle – Sandboxes for Coding Agents"]]></title><description><![CDATA[
<p>Thanks for sharing your approach!<p>> It is nothing special. We keep X number of machines in a warm pool.<p>I'd love to better understand the unit economics here. Specifically, whether cost is a meaningful factor.<p>The reason I ask is that many startups we've seen focus heavily on optimizing their technology to reduce cold/boot startup times. As you pointed out, perceived latency can also be improved by maintaining a warm pool of VMs.<p>Given that, I'm trying to determine whether it's more effective to invest in deeper technical optimizations, or to address the cold start problem by keeping a warm pool.</p>
]]></description><pubDate>Mon, 06 Apr 2026 21:54:41 +0000</pubDate><link>https://news.ycombinator.com/item?id=47667757</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47667757</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47667757</guid></item><item><title><![CDATA[New comment by kjok in "Show HN: Zerobox – Sandbox any command with file, network, credential controls"]]></title><description><![CDATA[
<p>> The problem is that those underlying frameworks can very easily be misconfigured.<p>Agreed. I'm sure a number of these sandboxing solutions are vibe-coded, which makes your concerns regarding misconfigurations even more relevant.</p>
]]></description><pubDate>Wed, 01 Apr 2026 18:59:44 +0000</pubDate><link>https://news.ycombinator.com/item?id=47605031</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47605031</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47605031</guid></item><item><title><![CDATA[New comment by kjok in "Show HN: Zerobox – Sandbox any command with file, network, credential controls"]]></title><description><![CDATA[
<p>> There are dozens of projects like this emerging right now. They all share the same challenge: establishing credibility.<p>Care to elaborate on the kind of "credibility" to be established here? All these bazillion sandboxing tools use the same underlying frameworks for isolation (e.g., ebpf, landlock, VMs, cgroups, namespaces) that are already credible.</p>
]]></description><pubDate>Wed, 01 Apr 2026 18:22:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=47604585</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47604585</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47604585</guid></item><item><title><![CDATA[New comment by kjok in "Axios compromised on NPM – Malicious versions drop remote access trojan"]]></title><description><![CDATA[
<p>And this is exactly why we see noise on HN/Reddit when a supply-chain cyberattack breaks out, but no breach is ever reported. Enterprises are protected by internal mirroring.</p>
]]></description><pubDate>Wed, 01 Apr 2026 03:31:35 +0000</pubDate><link>https://news.ycombinator.com/item?id=47596482</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47596482</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47596482</guid></item><item><title><![CDATA[New comment by kjok in "Axios compromised on NPM – Malicious versions drop remote access trojan"]]></title><description><![CDATA[
<p>I mean that agents can scan the code to find anything "suspicious". After all, security vendors that claim to "detect" malware in packages are relying on LLMs for detection.</p>
]]></description><pubDate>Tue, 31 Mar 2026 18:31:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=47591537</link><dc:creator>kjok</dc:creator><comments>https://news.ycombinator.com/item?id=47591537</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47591537</guid></item></channel></rss>