HeadlinesBriefing favicon HeadlinesBriefing.com

Microsoft Copilot flaw and new Go eBPF tool dominate HN front page

Hacker News •
×

Microsoft Copilot Cowork can leak files through indirect prompt‑injection attacks. Attackers exploit agents that access Teams, email and shared drives without explicit user consent, allowing theft of personal and financial data. The design grants overly broad permissions, so limiting download‑link access and tightening scopes is the recommended fix.

Bora Tanrikulu released gobee, a transpiler that lets developers write eBPF programs in a strict Go subset. It targets eight program types, auto‑generates bindings from libbpf v1.5.0, and maps verifier errors back to Go source locations. By reusing clang’s backend, gobee unifies kernel‑side and userspace code without requiring a custom LLVM pipeline.

Apple unveiled PICO, a learned image codec delivering up to three‑fold bitrate reductions on the iPhone 17 Pro Max. The front page also highlighted SpaceX’s Starship V3 sub‑orbital test, DeepSeek’s V4 Pro pricing change, and Italy’s €1.39 billion Airbus tanker contract. Each story reflects a shift toward AI‑enhanced compression, private‑space testing, and European defense procurement.