Hacker News with Generative AI: GitHub

Accessing private GitHub repositories via MCP (invariantlabs.ai)
Invariant has discovered a critical vulnerability affecting the widely-used GitHub MCP integration (14k stars on GitHub). The vulnerability allows an attacker to hijack a user's agent via a malicious GitHub Issue, and coerce it into leaking data from private repositories.
Claude 4 and GitHub MCP will leak your private GitHub repositories (twitter.com)
Something went wrong, but don’t fret — let’s give it another shot.
GitHub MCP exploited: Accessing private repositories via MCP (invariantlabs.ai)
Invariant has discovered a critical vulnerability affecting the widely-used GitHub MCP integration (14k stars on GitHub). The vulnerability allows an attacker to hijack a user's agent via a malicious GitHub Issue, and coerce it into leaking data from private repositories.
Show HN: We built an AI to review your pull requests (infinitcode.ai)
Watch how our AI reviews code in real-time, providing instant feedback and actionable suggestions through intuitive visualizations.
GitHub issues is almost the best notebook in the world (simonwillison.net)
GitHub issues is almost the best notebook in the world.
U.S. Dept of Defense GitHub marked as archived, with it projects like ATAK-CIV (github.com/deptofdefense)
MinIO Guts Management Dashboard (github.com/minio)
harshavardhana merged 1 commit into minio:master from bexsoft:simplify
Job Hunting Scripts (github.com/CajuM)
These scripts are used to scrap GitHub for info on organizations. In the end you will be left with a TSV file that contains the name of the organization, it's URL, it's declared location and the number of stars of its select repositories.
Please don't upload my code to GitHub (codeberg.page)
This is a call to open source developers to not upload the work of others to GitHub.
Ask HN: Can you give tips on writing a README for project? (ycombinator.com)
I'm currently finishing up the initial version of my experimental embeddable library designed for creating web applications without a build step.
Show HN: I built a more productive way to manage AI chats (contextch.at)
Easily set up multiple projects with web, file, and GitHub context. Start a new chat, and leverage your saved context to get instant answers and insights
ESP32 MCP Server (ycombinator.com)
Hello!<p>https://github.com/horw/esp-mcp<p>This MCP server has already been published on https://github.com/punkpeye/awesome-mcp-servers .
Show HN: GetStack.dev – Track GitHub open-source trends (getstack.dev)
Show HN: High-resolution surface analysis with Lidar data (github.com/r-follador)
High-resolution surface analysis with LiDAR data
Watching AI drive Microsoft employees insane (reddit.com)
Jokes aside, GitHub/Microsoft recently announced the public preview for their GitHub Copilot agent.
Open Source Maintainers Demand Ability to Block Copilot-Generated Issues and PRs (socket.dev)
Open source maintainers are urging GitHub to let them block Copilot from submitting AI-generated issues and pull requests to their repositories.
Allow us to block Copilot-generated issues (and PRs) from our own repositories (github.com/orgs)
Kilo: A text editor in less than 1000 LOC with syntax highlight and search (github.com/antirez)
Kilo is a small text editor in less than 1K lines of code (counted with cloc).
GitHub Copilot Coding Agent (github.blog)
Backlog getting you down? Drowning in technical debt? Delegate issues to Copilot so you can focus on the creative, complex, and high-impact work that matters most. Copilot coding agent makes this possible.
GitHub Copilot: Meet the new coding agent (github.blog)
We are excited to introduce a new coding agent for GitHub Copilot. Embedded directly into GitHub, the agent starts its work when you assign a GitHub issue to Copilot or prompt it in VS Code. The agent spins up a secure and fully customizable development environment powered by GitHub Actions.
RepoRoulette: Randomly sample repositories from GitHub (github.com/gojiplus)
Spin the wheel and see which GitHub repositories you get!
Catalog of Novel Operating Systems (github.com/prathyvsh)
Catalogue of novel operating systems
GitHub Models API now available (github.blog)
You can now use the GitHub Models REST API to programmatically explore and run inference with models hosted on GitHub.
New open source AI projects on GitHub (github.blog)
Every day, new public and open source repositories appear on GitHub, and navigating the sheer amount of activity can be a challenge for the best of us. Luckily, we’ve done the heavy lifting for you.
Prompts for our Grok chat assistant and grok bot on X (github.com/xai-org)
Prompts for our Grok chat assistant and @grok bot on X.
Catalogue of Novel Operating Systems (github.com/prathyvsh)
Catalogue of novel operating systems
Show HN: Real-Time Gaussian Splatting (github.com/axbycc)
LiveSplat is an algorithm for realtime Gaussian splatting using RGBD camera streams.
GitHub AI protection denies access to users without account (infosec.exchange)
Updated rate limits for unauthenticated requests (github.blog)
To provide a secure and dependable experience on GitHub, we’re rolling out updates to rate limits for requests made without authentication.
You can no longer browse open source code on GitHub without logging in first (github.com/orgs)
"I'm experiencing an issue when trying to access files from a GitHub repository without logging in. After 3 attempts, I receive an Error 429 (Too Many Requests) and the page fails to load. I've tried accessing different repositories and files, but the issue persists."