Hacker Newsnew | past | comments | ask | show | jobs | submit | joeguilmette's commentslogin

You just send a few unmanned missions first with fuel and supplies?

"Supplies" as in, self-assembling landing and launch pads?

People have successfully dropped autonomous robots onto Mars before. Wouldn't be out of the question to do so again, except that instead of rovers, the robots could be programmed to open up crates (dropped at the same time, or by a previous or future mission) and assemble what's inside into a landing or launch pad.

Would take a lot of prep missions, and might not be worth the cost, but in theory it's doable. Curiosity massed 900 kg and Perseverance massed 1025 kg according to Wikipedia, so dropping a metric ton of supplies for the robot to assemble would, again in theory, be feasible. (In practice the equipment for landing the supply crates safely would take up a good chunk of the mass budget, but there should be something left over in the mass budget for the crates to contain).


If you have robots like this, why send humans in the first place then? You've already got the bots that can do pretty much everything a human could want to do and you don't have to get them back off Mars.

It would possibly be more practical to store the return trip fuel in orbit around Mars.

You still have to land all the fuel to get the people off of Mars

Yes, but that's a lot less fuel than a return trip from Mars.

Mass-wise, yes, but long term fuel storage and transfer in a vacuum is all completely theoretical at this point

This just seems like the most basic and obvious form of regulatory capture. Want to start an AI company? Great! Now you just need to raise an additional $50m to cover your embedded evaluator costs, with rules and processes written by Anthropic.

Yes! Yes!!

I have had Kindles since v1. And the pattern was always the same: Read some books and then get to a boring patch in one and stop and then dont read anything for 6-24mo.

When we had my son we decided we wanted to create an environment where he was more likely to make reading a habit (over touchscreen brainrot etc).

We figured the best way to do that would be to:

1. Make sure he saw us reading for pleasure, often. 2. We read to him regularly as a habit. 3. Create spaces ideal for reading. 4. Put books everywhere.

Even before you get to point 4, it’s clear that physical books are just simply the best possible solution.

So I just bought a ton of books, hooked Openclaw up to my Goodreads and had it regularly scan the inventory of local used bookstores, bought some bookcases, and set aside time every morning and evening to read.

And you know what, I’ve never read as much or enjoyed it as much as now. And I attribute it entirely to having a beautiful wall of books next to a nice comfortable chair right in the middle of the living room.

I see my book on my bedside table every day. It’s a book, not another device. Another nice benefit is when people come over we invariably end up standing in front of the book shelf talking about books. And then they often leave with one to borrow.

Physical books have their issues and drawbacks etc but they definitely have changed our family’s life for the better.


what business are you in?

Ironically, the antiquated model of a bunch of source code and a database sitting on a computer is something coding agents really like.

WordPress and a nice page builder with MCP is actually a joy to use, and the absolutely enormous catalog of plugins that are easily extensible and endlessly modifiable makes it so easy to work with when building via agent.

Having worked with WordPress for over a decade, I find it hilarious that WooCommerce (the bane of my existence that has inexplicably paid my rent for a gigantic chunk of my adult life) is easier to use and better positioned for building with AI than Shopify.

The future is actually pretty bright for WordPress I think.


The absolutely enormous catalogue is an absolute security (and often maintenance) disaster in 2026.

Those who have ever delivered actual WP sites know the pain of it. Typical WP setups grow very fast growing towards completely entangled mess of plugins and template hacks as the project matures.


I have worked professionally in the WordPress space for over a decade, running teams that make plugins used on probably close to a million sites, I’m a (former?) regional WordCamp organizer, and I’ve built and deployed sites on WordPress for clients, our products, and personal projects ranging in complexity from single page brochure sites to ecommerce/hybrid SaaS monstrosities.

The security issues with WordPress aren’t fake, but they are not nearly as bad as the reputation is. The main reason WordPress gets a bad rap is companies like Patchstack have a financial incentive to abuse CVEs and scare people into buying their products.

For example, we have had numerous CVEs from them stating that they found an RCE in our plugins (!). Oh no! CVE filed. Reproduction steps:

1. Log in as a site admin with full access to the database and file system of the site. 2. Scroll past an input field in our plugin where you can type in arbitrary PHP and have it executed. 3. Do some magical incantation to fire some useless hook.

——

Hello Toyota, I found a security problem- the center console inside the car can be opened by unauthorized users. As some vehicle owners may place valuables there, it exposes them to the possibility of theft.

Steps to reproduce:

1. Unlock the car door and enter the vehicle using your key.

2. Open the center console.

Proposed security fix: Require the vehicle’s key, an RSA fob, and iris scan to open the center console. You have 15 days to recall all vehicles in your fleet that have an unsecured center console. Here are several blog posts that will be going live after the deadline:

• All Toyota Cars Insecure And Anything You Put Inside Can Be Stolen By Anyone Unless You Give Us $50/mo

• Toyota Car Alternatives Because of Vulnerability

• How To Secure Toyota Cars

• Safe Toyota Cars Near Me

• Toyota Car Discount Code Security

——

Their whole business model is to file CVEs, get to them to rank on Google, and then blast out press releases scaring people into paying for their garbage plugin.

There have been real issues, like the Bricks thing, where actual sites did get hacked. But this is a fact of life, if you expose your server/data to the internet at some point it very well may get compromised. I’m sure a few people had a bad day, but if you have a WordPress site and care about security literally all you need to do is put it on a half decent host and they will use a WAF and won’t have to worry about anything.

There are plenty of household names running WordPress at scale like Rolling Stone, Time, the White House, Techcrunch, etc. They aren’t doing much different from what a $5/mo blog on GoDaddy gets in terms of security, and they certainly aren’t running Patchstack (I really hope someone doesn't sniff their sites or tell me they are providing a WAF for them etc and prove me wrong lol).


I’m the CEO of Patchstack. We don’t accept vulnerabilities in our program that require admin privileges (even though there have been real cases where such vulnerabilities cause serious damage to multisite networks). The plugin vulnerability issues in WordPress have become significantly worse, as low severity issues are now chained together that become a severe issue. On top of that, these vulnerabilities are being exploited faster than ever before. WordPress now also has an issue with supply chain attacks - which has started to happen quite a lot more compared to past years.

“Their whole business model is to sign CVEs” - please don’t make up random stuff. We were invited to the CVE program and therefore have an obligation to assign CVEs.

“Get to rank them on Google” - what?

Also, we don’t send press releases about vulnerabilities. There are cases where publications reach out to us and ask for comments when there are severe issues disclosed - but that’s very much different from the picture you’re trying to paint here.

Also, your “get a half decent host with a WAF” argument shows how disconnected you’re from the reality. There are web hosts that say they offer secure hosting when promoting free SSL. We’ve tested the web hosts with independent reviewers and what you’re claiming is a widespread myth that has been debunked: https://patchstack.com/articles/myth-of-secure-hosting-only-...


i’ve found this for myself as well, when its time for me to write creatively

heyyyyy are you still on Koh Tao or did you guys move?


They have a saying here in Thailand:

Siam was never colonized by Europe, it was colonized by Bangkok.


This site feels like AI slop, and it’s also not something I’d be able to send without feeling like asshole.

I found this blog post to be much better at getting the point across: https://tombedor.dev/human-attention-and-human-effort/


41yo, lifelong casual gamer who has 100s of hours on many games and also goes years without playing any but also frequently jump in here and there.

I recently bought a PS5 Pro in anticipation of GTA6. I’m pretty shocked at how boring and lifeless big modern AAA games are. I feel like I’m basically playing a cinematic sequence in a Marvel-slop movie.

“ A game idea should be at least 90% mechanics and less than 10% story. Any more than 10% story is a red flag.” -Tynan Sylvester

Everything is just an Unreal engine demo now?


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: