SShortSingh.
0
ProgrammingDEV Community ·

Developer finds 4 client domains near expiry while testing RDAP-based monitor on agencies

A developer built a domain expiry monitoring tool and tested it against client sites publicly listed by 30 US web design agencies, checking 65 domains via RDAP rather than traditional WHOIS. The audit found one domain had already expired 60 days prior, three were within 45 days of expiry — one with just three days remaining — while the rest had between 46 days and several years left. RDAP, which returns structured JSON over HTTPS unlike WHOIS's inconsistent free-text output, proved more reliable, though gaps exist: some TLDs like .de and .co have no authoritative RDAP endpoint, meaning any expiry date shown for them is an estimate. The developer also documented pitfalls such as miscrawled third-party links being mistaken for client domains and multi-part suffixes like co.uk being incorrectly parsed. The agency and domain names were withheld to avoid publicly exposing clients' renewal vulnerabilities.

0
IndiaNDTV ·

Trinamool Rebels Invite Mamata to Contest Nandigram Bypoll Unopposed

Rebel Trinamool Congress leader Ritabrata Banerjee has extended an offer to Chief Minister Mamata Banerjee to contest the Nandigram assembly seat. The rebels stated they would not field a candidate against her in the upcoming bypoll scheduled for October 6. Banerjee expressed that the dissident faction wants Mamata to have a presence in the state assembly. The offer comes amid ongoing political tensions within the Trinamool Congress party over the Nandigram constituency.

0
ProgrammingDEV Community ·

Developer shares 8 free adversarial probes to red-team LLM apps in 35 seconds

A developer who built an autonomous agent handling security decisions from untrusted input has published a free, eight-probe battery for red-teaming large language model applications before they reach users. The tool runs via a single curl command and returns a 0–100 risk score along with raw prompts and model replies within roughly 35 seconds. During the author's own self-scan, the system scored 27/100 (medium risk), with a cross-language, politely worded probe — not an aggressive jailbreak — triggering a partial system prompt leak. The eight probes cover attack types including direct and encoded jailbreaks, system prompt extraction, indirect injection, tool abuse, PII exfiltration, cross-language bypass, and multi-turn drift. A 15-probe starter kit is available under the MIT license on Gitee, and all scan results are hash-verifiable for independent reproduction.

0
IndiaNDTV ·

Indian-Origin Woman Stalked and Killed in California by Rejected Suitor

Shalini, a woman of Indian origin, was killed in California after being stalked for nearly a year by a man named Rohit. Her mother, Sudesh Kumari, revealed that Rohit had used an AirTag and a duplicate key to track and harass her daughter. Rohit had reportedly wanted to marry Shalini, but she had rejected him due to their age difference. The prolonged stalking campaign ultimately culminated in her death.

0
ProgrammingDEV Community ·

How Path-Based Routing Lets Multiple Servers Share One Domain Seamlessly

Developers often need to serve different applications under a single domain without exposing separate servers or using subdomains. A reverse proxy like Nginx sits between the user and backend servers, silently routing requests to the correct application based on the URL path. For example, a Next.js website at the root domain and a WordPress blog on a separate server can both appear under one unified domain such as mypastries.com and mypastries.com/blog. Unlike redirects, which instruct the browser to request a new URL, a reverse proxy forwards the request internally and returns the response without the user ever knowing. This approach allows multiple independent applications to behave as a single cohesive website from the user's perspective.

0
ProgrammingDEV Community ·

Developer Ships 1,000 Deployments in a Month Using AI With Direct Infrastructure Access

A developer shipped 1,000 production deployments for his app Klyf, an AI-powered YouTube analytics tool, without manually opening the codebase. Instead of the typical copy-paste workflow, he connected Claude Code to his entire stack — including GitHub, Supabase, Vercel, Sentry, and Stripe — via Model Context Protocol (MCP), allowing the AI to interact directly with each service. This two-way access meant Claude Code could push commits, monitor CI pipelines, read error logs, and roll back failed deployments autonomously. The key distinction from conventional AI coding assistance is that the AI could observe the results of its own actions and self-correct, removing the human relay step entirely. The developer describes the setup not as hype but as a practical demonstration of what closed-loop AI development looks like when the model has real infrastructure access rather than just generating code snippets.

0
ProgrammingDEV Community ·

Why LinkedIn shows blank cards for React apps and how to fix it

Social media crawlers like LinkedInBot and Twitterbot do not execute JavaScript, meaning they only read the raw HTML returned by the server. React or Vite apps without server-side rendering inject OpenGraph meta tags after client hydration, which happens too late for bots to capture. To display proper link previews, meta tags must be present in the initial HTML, achievable through frameworks like Next.js, Remix, or Astro. A developer encountered this issue and built ogcraft.dev, a tool that scrapes raw initial HTML to preview what crawlers see and generates dynamic OG images via a single embed tag without requiring headless browsers. The tool uses CDN caching and reads existing page tags to render optimized social preview cards on the fly.

0
ProgrammingDEV Community ·

Beginner Python Tutorial Covers Basic Commands, Print Function, and Variables

A beginner-level Python tutorial introduces how to run Python 3 on Linux and check software versions using the command line. It explains a common mistake where users type the terminal command 'clear' inside the Python interpreter, causing a NameError, and shows the correct way to exit Python before running terminal commands. The tutorial also demonstrates the difference between using a comma and a plus sign in print statements, noting that commas add a space while concatenation with plus does not. Additionally, it covers basic concepts such as identifiers and reference variables, using simple name-assignment examples. The lesson concludes with a brief mention of function overloading as a topic relevant to beginner-level interview preparation.

0
ProgrammingDEV Community ·

typing.cast() silently passes None as bool, exposing a hidden approval-bypass risk

In Google's adk-python SDK, a tool-call confirmation mechanism relies on cast(bool, await ...) to signal whether human approval is needed, but typing.cast() is a no-op at runtime and simply returns its argument unchanged. If the awaited expression resolves to None, the caller receives None, which evaluates as falsy and silently skips the confirmation step. The issue mirrors a previously filed coercion bug in openai-agents-python, though it arrives via type declaration rather than explicit conversion. The author also notes that multi-line formatting of cast() calls caused their grep-based detection tool to miss the pattern entirely, and that correct line numbers were initially reported for the wrong code branches. No live failure path was confirmed through full call-graph tracing, so the concern reflects what the code structurally permits rather than an observed exploit.

0
ProgrammingHacker News ·

Nvidia's dominance in AI infrastructure draws comparisons to a central bank

The Economist has published an in-depth analysis comparing Nvidia to a central bank within the artificial intelligence ecosystem. The piece examines how Nvidia's control over critical AI hardware and infrastructure gives it outsized influence over the broader AI industry. Much like a central bank regulates monetary supply, Nvidia's grip on GPU supply and computing power shapes the pace and direction of AI development. The article, published in September 2026, generated discussion on Hacker News, attracting points and reader comments. The comparison underscores growing scrutiny of Nvidia's strategic position as AI investment and demand continue to surge.

0
ProgrammingDEV Community ·

Why Hard Spend Caps Beat Budget Alerts for Fintech API Security

A technical analysis highlights the critical difference between budget alerts and hard spend caps in managing cloud API costs for financial services. Budget alerts notify operators when spending approaches a limit, but can be delayed or missed, whereas hard spend caps actively block new billable work once a threshold is reached. For payment services handling leaked credentials, experts recommend using spend caps as the firm enforcement boundary and alerts as an early warning signal, each with separate owners and tests. The guidance also stresses defining distinct identities per deployment environment to keep spending ledgers clear and attributable. A structured drill sequence — detect, freeze, revoke, observe, and release — is proposed to ensure every decision leaves an auditable record.

0
ProgrammingDEV Community ·

Fresh Graduate Uses Tencent EdgeOne Makers to Deploy First Web Project

A recent Information Systems graduate deployed their tutoring management web app, called '1st Course', using Tencent EdgeOne Makers as part of a developer challenge. The system, built with Laravel 11, PHP, MySQL, and Tailwind CSS, manages student records, tuition payments, and financial data for a non-formal tutoring institution. Since EdgeOne primarily supports static hosting, the developer could not deploy the full Laravel application and instead created a static demonstration page showcasing the project's features. The deployment was connected via GitHub, with the main branch set as the production branch, giving the developer hands-on experience with Git-based deployment workflows. The exercise helped the developer understand the architectural difference between dynamic server-side applications and static web deployments.

0
WorldBBC World ·

15-Year-Old Boy Rescued After Days Adrift in Alaska; Two Relatives Dead

A 15-year-old boy was rescued after spending several days adrift in Alaskan waters following a boat capsize. He was one of three passengers aboard a fishing vessel that overturned. The other two occupants, identified as his brother and his cousin, did not survive. Rescuers located the teenager after a search operation in the remote Alaskan waters. The incident highlights the dangers of fishing in the region's harsh and unpredictable conditions.

0
ProgrammingDEV Community ·

Developer builds Mac-native AI assistant Moe that works hands-free in the background

A developer has created Moe, a macOS AI assistant that sits unobtrusively at the screen notch and can be activated via voice wake word, keyboard shortcut, or held key — without requiring a separate chat window. Unlike typical AI tools, Moe performs tasks directly on the Mac using accessibility APIs, executing actions in background windows while leaving the user's cursor undisturbed. It prioritises less intrusive methods before resorting to clicks, and only pauses for user confirmation before irreversible actions like sending messages or making payments. Moe draws on NVIDIA's Parakeet for speech recognition and Nous Research's Hermes Agent for its runtime, connecting to whichever AI model the user already has, such as Claude, ChatGPT, or a local model. The app is free, requires macOS 15 on Apple silicon, and is currently available in beta at moebot.app.

0
ProgrammingDEV Community ·

Honest Chart tool displays SHA-256 fingerprint to verify CSV data integrity

A developer has built Honest Chart, a free browser-based tool that converts CSV files into charts while displaying a SHA-256 fingerprint of the uploaded file. The fingerprint allows users to confirm that the source data has not been altered between uploads, ensuring the chart accurately reflects the original file. The tool is aimed at anyone creating quick visualizations for slides or sharing purposes who wants an added layer of data transparency. Honest Chart is available as a demo page on GitHub and requires no installation or sign-up. The developer is seeking community feedback on practical use cases and potential limitations of the approach.

0
ProgrammingDEV Community ·

TokenPrint Lets Developers Visualize LLM Inference Layer by Layer in 3D

A developer has released TokenPrint, a free open-source tool that lets users visually explore how transformer-based large language models process tokens during inference. The interactive 3D environment allows users to navigate through each layer of a model and inspect individual operations such as attention scores, embeddings, normalization, and MLP projections. Rather than presenting the model as a static diagram or raw code, TokenPrint frames inference as a step-by-step computational journey through the network. Users can select any component to view plain-language explanations, mathematical equations, tensor dimensions, parameter counts, and actual model data. The project is available to try online at tokenprint.in and its source code is hosted publicly on GitHub.

0
ProgrammingDEV Community ·

Stackness Launches as a Social Platform for Developers to Share Their Tech Stacks

A developer named Gordeychuk has launched Stackness, a new social platform designed for developers to showcase the tools and technologies they use. The platform allows users to display their tech stack and explain how they incorporate each tool in their work. Stackness was simultaneously listed on Product Hunt, where it is beginning to attract its first users. The creator is actively seeking feedback from the developer community to improve the platform.

← NewerPage 1129 of 5202Older →