SShortSingh.
0
ProgrammingDEV Community ·

Developer builds free tool to flag USPS hazmat fees before shippers buy labels

USPS can retroactively charge shippers a $50 hazardous materials noncompliance fee after a package has already been delivered, with no prior warning at the counter. A developer discovered the fee rules are spread across conflicting official documents — including Federal Register notices, Industry Alerts, and Postal Bulletins — that most sellers would never think to consult. In response, they built CanWeShip, a free pre-shipping compliance checker that lets users select a product type and receive side-by-side USPS, UPS, and FedEx verdicts with cited official sources. Unlike AI chatbots, the tool uses a deterministic rule engine backed by versioned, traceable rule sets, and explicitly flags gaps in information rather than guessing. A separate rule update also notes that USPS Returns shipments will become subject to the fee starting February 1, 2027.

0
WorldBBC World ·

Bulgaria Probes Weapons Site Fire Amid Sabotage Claims

Bulgarian authorities are investigating a fire that broke out at a weapons facility in the country. Officials have not ruled out the possibility of outside interference in connection with the incident. The company that owns the site has gone further, directly claiming the blaze was an act of sabotage. No additional details about casualties or the extent of the damage have been confirmed at this stage.

0
WorldBBC World ·

Celine Dion Returns to Paris as Fans Rally for Comeback Concert

Canadian singer Celine Dion is preparing for a highly anticipated comeback concert in Paris. Fans gathered outside her hotel on Saturday to greet her as she made a public appearance. The event marks a significant moment in Dion's return to the stage after a period away from performing. Her supporters showed strong enthusiasm, turning out in numbers to welcome her arrival in the city.

0
ProgrammingDEV Community ·

Silent key update broke 40 verified records, exposing a gap in dual-tool checks

A developer discovered that 40 signed records failed verification after a cryptographic key row was edited in place rather than retired and replaced with a new entry. Both independent verification tools correctly reported failure, but neither could detect that the key material had changed since the records were originally signed. The root cause was a database row update that overwrote the public key and scheme fields under the same key ID, making legitimately signed records indistinguishable from forgeries. The issue went unnoticed for a day, highlighting that two independent tools share the same blind spots when both read from the same flawed source. The fix involved adding the retired key as a second row rather than deleting anything, and the writer was updated to loudly log key material on every run to surface future changes immediately.

0
IndiaTimes of India ·

Anthropic CEO Urges Slower AI Development, Altman and Musk Express Support

Anthropic CEO Dario Amodei has called for a more measured pace in artificial intelligence development, warning that unchecked progress could undermine human understanding and control of powerful AI systems. His concerns have drawn backing from OpenAI CEO Sam Altman and Tesla chief Elon Musk, signaling rare agreement among major tech leaders. The call comes after recent AI testing reportedly exposed troubling behaviors and potential cybersecurity vulnerabilities. Amodei argues that a cautious, deliberate approach to development is essential to ensuring AI ultimately delivers meaningful benefits to humanity.

0
IndiaTimes of India ·

Zuckerberg Returns to X After 3 Years to Promote Meta's New AI Model Muse

Meta CEO Mark Zuckerberg returned to Elon Musk's social media platform X in 2026 after a three-year absence. His comeback was driven by Meta's engineering team, who saw value in engaging with technical communities present on the platform. Zuckerberg used the return to announce Meta's latest AI innovation, Muse, targeting developers and researchers. By re-engaging on X, he aims to amplify Meta's AI initiatives and tap into the platform's pool of engineering talent and research communities.

0
ProgrammingDEV Community ·

Smart TVs Track Everything on Screen via ACR; Samsung and LG Settle Lawsuits

A 2024 study by researchers from UC Davis, University College London, and Universidad Carlos III de Madrid found that Samsung and LG smart TVs continuously capture on-screen content using Automatic Content Recognition (ACR), regardless of whether the source is a streaming app, live broadcast, or an external device connected via HDMI. Samsung TVs transmitted this data to company servers roughly every minute, while LG TVs did so every 15 seconds. In December 2025, Texas Attorney General Ken Paxton sued five major TV manufacturers — Samsung, Sony, LG, Hisense, and TCL — alleging ACR captures screenshots as frequently as every 500 milliseconds without adequate user consent. Samsung settled in February 2026, committing to obtain informed consent before collecting ACR data, followed by a similar LG settlement in May 2026, while cases against the remaining three manufacturers remain ongoing. Experts advise users to manually disable ACR-related settings — such as LG's 'Live Plus' — across multiple menu layers, as a single opt-out toggle is often insufficient.

0
IndiaTimes of India ·

Dustin Johnson and Paulina Gretzky: A Look at the Couple's 2026 Net Worth

Golf star Dustin Johnson and Paulina Gretzky, daughter of hockey legend Wayne Gretzky, have built substantial individual fortunes through distinct career paths. Johnson accumulated his wealth primarily through PGA Tour winnings, his move to LIV Golf, and lucrative sponsorship deals. Gretzky, meanwhile, developed her own financial profile via modeling, entertainment projects, and brand partnerships. Together, the couple represents a notable combined net worth heading into 2026, reflecting success across both professional sport and the entertainment industry.

0
SportsESPNcricinfo ·

Surrey beat Somerset by one wicket to reach T20 Eliminator

Surrey secured a dramatic one-wicket victory over Somerset with three balls to spare to advance to the T20 Eliminator. The win came despite impressive centuries from Somerset's Niamh Holland and Sophie Luff, who gave their side a strong total to defend. Surrey managed to chase down the target, holding their nerve in a tense finish. The result eliminates Somerset from the competition while Surrey progress to the next knockout stage.

0
TechnologyBBC Tech ·

Silicon Valley Skeptical Despite Growing Insider Warnings on AI Dangers

A wave of serious warnings about the risks of artificial intelligence has recently emerged from within the tech industry. However, these cautionary messages have failed to resonate with many executives and investors in Silicon Valley. The stark alerts, described as dramatic by some observers, have been met with notable scepticism from those driving AI development and funding. The disconnect highlights a growing divide between those raising alarms about AI safety and those focused on its commercial potential.

0
IndiaTimes of India ·

Hockey India President Suspends Director General's Powers, Issues Show-Cause Notice

Hockey India's president has stripped the organization's Director General of all official powers with immediate effect. The decision was communicated formally through advocate Himanshu Chaturvedi, with a copy of the notice obtained by the Times of India. All authority ordinarily exercised by the Director General has been placed in abeyance pending further review. The action is being taken under the provisions of Hockey India's Bye-Laws. A show-cause notice has also been issued to the Director General as part of the proceedings.

0
SportsESPNcricinfo ·

Armitage century seals Durham's final Charlotte Edwards Cup win over Warwickshire

Hollie Armitage scored a century to lead Durham to a victory in their final Charlotte Edwards Cup match against Warwickshire. Bess Heath provided strong support with a half-century, forming a key partnership that powered Durham's innings. Despite the defeat, Warwickshire's Katie George also scored a hundred, though her effort ultimately proved insufficient. The win rounded off Durham's campaign on a high note, with Armitage's knock being the decisive contribution of the match.

0
ProgrammingDEV Community ·

AI Coding Tools Routinely Ship Broken Access Controls, Open-Source Scanner Aims to Prove Fixes Work

A common security flaw in AI-generated code allows any user to access another user's private data simply by changing an ID in a URL, because AI tools default to using service-role keys that bypass row-level security. This vulnerability has been observed repeatedly in apps built with tools like Lovable, Bolt, v0, Cursor, and Claude Code. An open-source scanner called auditai-scanner was built specifically to detect and verify fixes for this flaw, going beyond flagging potential issues by reproducing them in a sandboxed environment with synthetic test users. Rather than relying on the same AI model to both write and evaluate a fix, the tool independently confirms whether a cross-tenant data leak is actually closed before marking a finding as resolved. The project also generates a regression test from each reproduction, ensuring the vulnerability cannot be silently reintroduced in future code changes.

0
ProgrammingDEV Community ·

Agentic AI Coding Tools Demand Better Design, Tests, and Guardrails: Developers

Software engineers are expressing fatigue over AI hype, job market uncertainty, and the growing push toward agentic coding tools. While AI agents can rapidly modify large codebases, their effectiveness depends heavily on well-documented code, clear requirements, and defined success criteria. Without automated UI and integration tests, validating agent-driven changes at scale remains unreliable, posing risks to production stability. Quality assurance engineers are being urged to upskill in test automation to keep pace with aggressive AI-generated code changes. Despite concerns about an AI bubble, open-source LLMs are expected to persist, with companies increasingly likely to self-host models for internal use.

0
ProgrammingDEV Community ·

Developer Tests Three AI Coding Agents for 30 Days on Real Projects

A software developer spent 30 days evaluating Claude Code, GitHub Copilot CLI, and Cursor in agent mode on real-world projects, including a SaaS API, a data pipeline, and a legacy Node.js service. The tests showed significant time savings for boilerplate tasks, with routine REST endpoint generation dropping from 45 minutes to around 8 minutes. However, complex logic such as multi-step payment flows failed on the first attempt roughly 60% of the time, and agents performed poorly when debugging production-only bugs. Larger codebases caused context-tracking issues across all three tools, with agents occasionally referencing methods or types that no longer existed. The author concluded that AI coding agents offer genuine productivity gains for structured, repetitive work but still require human review for anything beyond straightforward scaffolding.

0
ProgrammingDEV Community ·

Researcher Built a Canary Executable to Spy on VirusTotal Sandboxes

A developer created a Rust-based executable with a fake identity — dubbed 'ZeroToken Engine' — and submitted it to VirusTotal to observe the analysis environments that ran it. The program collected metadata such as OS version, CPU and memory specs, uptime, hostname, and running process names, then reported findings via DNS heartbeats and HTTPS dossiers to the researcher's own infrastructure. It used two reporting channels: compact encoded DNS lookups and fuller CBOR-formatted HTTPS payloads, each tagged with a random eight-byte run ID. The experiment captured 353 event rows across 21 run IDs over a roughly five-hour window on September 12, 2026. The researcher noted that the binary installed nothing, harvested no credentials or documents, and intentionally disclosed the canary's true behavior in the project's README alongside its cover identity claims.

← NewerPage 1143 of 5222Older →