source&pool
A daily wire of long-form journalism, video, and discourse — filed, tagged, and laid out flat.
VOL. I·NO. 01
WEDNESDAY, SEPTEMBER 16, 2026
Hacker News3583X 主题热门3480MacRumors78CNBC70YahooFinance639to5Mac59Kotaku44Verge42IGN339to5Google32aihot31NintendoLife30Gematsu29TechCrunch25Engadget24Eurogamer24BusinessInsider23Guardian20CNET15NBC15FoxBusiness14NPR14Fortune13Polygon13SeekingAlpha13bgr12Gizmodo12CBS11Wccftech11Investor'sBusinessDaily10Mashable10TechPowerUp10USAToday10WIRED10PushSquare9CNN8NintendoEverything8Notebookcheck8NewYorkPost8CrudeOilPricesToday8VideoGamesChronicle8ABC7ArsTechnica7Fox7GameInformer7WindowsCentral7BleepingComputer6Deadline5GamesIndustry.biz5PetaPixel5Variety5Yahoo5AndroidPolice4AppleInsider4DigitalFoundry4DroidLife4MotleyFool4GameRant4Jalopnik4PureXbox4SamMobile4Hacker4AlJazeera3AP3CanonRumors3ChromeUnboxed3CoinDesk3GSMArena3Motor13Blizzard3XBOXWire3PCMag3PCWorld3SeattleTimes3SlashGear3Register3TweakTown3YGOrganization3ZDNET324/7WallSt.2Aftermath2AndroidCentral2AwfulAnnouncing2BleedingCool2BuzzFeed2CTech2DualShockers2DW2EventHubs2Futurism2GameDeveloper2Hodinkee2Independent2Lifehacker2MassivelyOverpowered2MyNintendo2Nature2Newser2Newsweek2PaulKrugman2PokémonGOHub2RoadtoVR2RPGSite2Space2Conversation2NextWeb2Tom'sGuide2UploadVR2VideoCardz2WarhammerCommunity2WindowsLatest2YourTango2404Media143rumors1ABC111AboveLaw1ageofempires1AndroidHeadlines1AOL1AVClub1Benzinga1BikeRadar1Billboard1BloodyDisgusting1Borderlands1Bungie1Yahoo!FinanceCanada1CineD1CnEVPost1comicbook1CreativeBloq1CyberSecurityNews1DCRainmaker1derekthompson1DigitalCameraWorld1Draftsim1CNN1Euronews1flatpanelshd1FrequentMiler1GAMINGbible1garymarcus.substack1GearPatrol1GeekWire1GeekyGadgets1Hackaday1HollywoodReporter1InsiderGaming1InterconnectsAI1InterestingEngineering1JapanTimes1KITCO1KrebsonSecurity1KSL1LosAngelesTimes1Lloyd'sList1WPLGLocal101Macworld1Maxroll1Mediaite1MiddleEastEye1MonochromeWatches1MPR1SemiAnalysis1Newsshooter1NoMan'sSky1nylon.com.sg1NYT1OregonLive1PCGamesN1PersonaCentral1Pokemon1politico.eu1PittsburghPost-Gazette1QuantaMagazine1qz1RockPaperShotgun1SammyGuru1ScienceAlert1ScientificAmerican1SouthChinaMorningPost1Semafor1SFGATE1YahooFinanceSingapore1YahooSingapore1SportsIllustrated1SimpleFlying1Sources1supercarblondie1Tedium1TelecomTalk1GameBusiness1TheGamer1Intercept1Times1LongmontTimes-Call1TmoNews1TopGear1TwistedVoxel1YahooFinanceUK1UnHerd1vox1WhatHi-Fi?1WPBF1WRAL1
  1. 001Hacker NewsSEP · 15English

    Show HN: MergeMe – 1 Slack card per PR/MR. Supports GitHub/GitLab(+ self hosted)

    MergeMe is a Slack integration that mirrors GitHub and GitLab pull/merge requests as single, updating cards per PR/MR, eliminating notification spam and keeping teams informed in their existing Slack channels. It supports GitHub.com, GitLab.com, and self-hosted GitLab, with features like label-based routing, username mapping, threaded comments, and scheduled reminders for stale PRs/MRs.

    By maruan21
  2. 002Hacker NewsSEP · 15English

    The Git Cheat Sheet

    A Git cheat sheet guide explaining Git as a distributed version control system that tracks file changes across four stages: working directory, staging area, local repository, and remote repository. The article covers Git basics, configuration, and workflow including commits, branches, and remote collaboration.

    By Lukas Aichbauer
  3. 003RegisterSEP · 15English

    Perfect-10 GitLab bug under attack days after patch lands

    A critical GitLab vulnerability is being actively exploited just days after a security patch was released. The flaw poses immediate risk to on-premises GitLab installations.

    By Carly Page
  4. 004BleepingComputerSEP · 14English

    CISA: Hackers now exploit max severity GitLab flaw in attacks

    CISA warned that hackers are actively exploiting a maximum-severity GitLab vulnerability (CVE-2026-85706) that allows unauthenticated attackers to read credentials and sensitive data. GitLab released patches on Thursday, and CISA added the flaw to its catalog of exploited vulnerabilities, requiring federal agencies to patch within three days.

    By Sergiu Gatlan
  5. 005Hacker NewsSEP · 13English

    AI Tools Accelerates Coding, but Not Overall Software Delivery – GitLab Research

    GitLab's 2026 AI Accountability Report reveals an AI Paradox: while 78% of developers report faster coding, overall software delivery hasn't accelerated due to testing and review bottlenecks. Organizations lack governance and traceability to answer critical questions about AI-generated code, with 85% citing a shift in bottlenecks from coding to validation and review.

    By Sergio De Simone
  6. 006Hacker NewsSEP · 12English

    Novgraph: Persistent Knowledge Graph for Codebases

    Novgraph is a knowledge graph engine for codebases that records the rationale behind code changes, syncs with GitHub and GitLab commits, flags stale files, and achieves 78-99.74% token savings by integrating with AI coding tools like Claude Code and Codex.

    By Shourya_55
  7. 007Hacker NewsSEP · 12English

    Show HN: Liniora – Ever thought about replacing your project manager?

    Liniora is a project management platform that integrates tickets, branches, pull requests, and team discussions into a unified workspace with AI to connect context across projects and codebases. It offers features like automated branching, pull request syncing, AI meeting summaries, and one-click migration from tools like Jira and Asana.

    By omarammura
  8. 008BleepingComputerSEP · 12English

    GitLab urges users to patch max severity path traversal flaw

    GitLab urged users to immediately patch a maximum-severity path traversal vulnerability (CVE-2026-85706) in its repository commits API that allows unauthenticated attackers to read arbitrary data from vulnerable servers. Cybersecurity firm watchTowr reported that attackers are already probing for unpatched GitLab instances. The company also patched a second critical deserialization vulnerability (CVE-2026-87719) affecting GitLab Enterprise Edition.

    By Sergiu Gatlan
  9. 009HackerSEP · 11English

    GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

    GitLab released patches for CVE-2026-85706, a maximum-severity path traversal flaw in the repository commits API allowing unauthenticated users to read arbitrary files. The vulnerability has already been probed in-the-wild within hours of disclosure, affecting multiple GitLab Community and Enterprise Edition versions. A second critical flaw, CVE-2026-87719, an insecure deserialization bug in GitLab EE, was also patched.

    By The Hacker News