Skip to main content

Cletus's Blog

Cyber - 2026-08-03 - EVE

## Symantec Enterprise Blogs

View Articles

1602 - Search - Internet of Things (IoT) security(3)

1603 - Search - Cyberattacker techniques, tools, and infrastructure(167)

1604 - Search - Microsoft Defender for Office 365(38)

1605 - Search - Microsoft Defender for Cloud Apps(22)

1606 - Search - Microsoft Defender External Attack Surface Management(4)

1607 - Search - Microsoft Defender Experts for XDR(8)

1608 - Search - Microsoft Defender Experts for Hunting(7)

1609 - Search - Microsoft Purview Insider Risk Management(1)

1610 - Search - Microsoft Purview Data Lifecycle Management(1)

1611 - Search - Cloud C² — Command & Control

1612 - Search - Essential, Elite and Red Team

1613 - Search - Terms of Service & Policies

1614 - Search - PAYLOAD AWARDSGet your payload in front of thousands and enter to win. Nearly $10,000 in annual Hak5 prizes!

1615 - Search - DUCKYSCRIPT COURSELearn directly from the creators! Unlock your creative potential with this comprehensive course.

1616 - Search - only for BIS license exception ENC favorable treatment countries

1617 - Search - Core Email ProtectionGet industry-leading threat protection via API or gateway

1618 - Search - Email Fraud DefenseProtect your brand, increase deliverability, and identify lookalike domains

1619 - Search - ZenGuideDeliver targeted, risk-based security awareness training

1620 - Search - Secure Email RelaySecure application email and implement DMARC faster

1621 - Search - Account Takeover ProtectionDetect, investigate, and respond to account takeovers

1622 - Search - Data Security for AISecure data across shadow and approved AI

1623 - Search - Enterprise DLPPrevent data loss across email, cloud, and endpoints

1624 - Search - Adaptive Email DLPPrevent misdirected emails and hidden data exfiltration

1625 - Search - Insider Threat ManagementGet visibility into risky behavior by careless, malicious, and compromised users

1626 - Search - Data Security Posture ManagementDiscover, classify, and protect sensitive data across cloud and hybrid environments

1627 - Search - Digital Communications GovernanceIntelligently capture, retain, and discover digital communications

1628 - Search - Secure AI Usage by PeopleGet visibility and control around employees’ use of AI

1629 - Search - Secure AI Usage by AgentsUnderstand AI agent intent and control their use of other AI tools

1630 - Search - Secure MCP Across Your EnterpriseUnify MCP discovery, authorization, and monitoring

1631 - Search - Proofpoint NexusAdvanced AI and threat intel to detect threats and assess data risk

1632 - Search - Proofpoint ZenIntegrated control points to protect people and data anywhere

1633 - Search - Proofpoint SatoriThe power behind agentic security operations

1634 - Search - Proofpoint 365 Total ProtectionEnabling the channel, protecting humans and agents

1635 - Search - Ensure Acceptable GenAI UseEmpower your workforce with safe GenAI practices

1636 - Search - Govern Claude AI ActivityIntegrate Proofpoint with Claude Compliance API

1637 - Search - Secure Microsoft 365Implement flexible security and compliance for M365

1638 - Search - Ransomware PreventionStop attacks by securing ransomware’s top vector

1639 - Search - Combat Email and Cloud ThreatsProtect your people with a smart, holistic approach

1640 - Search - Protect Cloud AppsEliminate threats and data loss across cloud apps

1641 - Search - Change User BehaviorHelp your users identify, resist, and report attacks

1642 - Search - Modernize Compliance and ArchivingManage your risk and data retention requirements

1643 - Search - Authenticate Your EmailProtect your email deliverability with DMARC

1644 - Search - Federal GovernmentEnable your agency with FedRAMP certified security

1645 - Search - Higher EducationProtect your campus, people, data, and research

1646 - Search - HealthcareProtect clinicians, patient data, and intellectual property

1647 - Search - Internet Service ProvidersDeliver leading email protection for your networks and customers

1648 - Search - State and Local GovernmentSecure your institutions, services, and communities against cyberthreats

1649 - Search - Financial ServicesProtect your institution while meeting compliance requirements

1650 - Search - Mobile OperatorsProtect your messaging environments and subscribers at scale

1651 - Search - Small and Medium BusinessesStrengthen your business with enterprise-grade security built to grow with you

1652 - Search - Proofpoint ServicesLeverage our expertise to maximize your investment

1653 - Search - Advisory ServicesMaintain control with expert guidance and recommendations

1654 - Search - Applied ServicesGet hands-on execution, guidance, and measurable impact

1655 - Search - Resource libraryResearch, insights, and resources from Proofpoint experts.

1656 - Search - BlogKeep up with the latest news and expert insights

1657 - Search - Customer StoriesRead how customers solve their toughest security challenges

1658 - Search - Cybersecurity AcademyBecome a Proofpoint Certified Guardian

1659 - Search - EventsConnect and learn with peers at in-person events

1660 - Search - WebinarsBrowse our complete webinar library

1661 - Search - Threat glossaryLearn about the latest security threats and techniques

1662 - Search - PodcastsStay informed with our renowned threat researchers

1663 - Search - Threat Insight BlogDiscover actionable threat intel and expert analysis

1664 - Search - IP Address Blocked?Best practices for email delivery, authentication, and troubleshooting

1665 - Search - Support ServicesGet help with current incidents with Proofpoint products

1666 - Search - Why ProofpointProofpoint provides intent-based protection for every human, every AI agent, across all data

1667 - Search - LeadershipLearn about the executive team leading Proofpoint’s strategy and vision

1668 - Search - ESGLearn about our environmental, social, and governance principles

1669 - Search - Comparing ProofpointEvaluating security vendors? Check out side-by-side industry comparisons

1670 - Search - News CenterRead press releases, news, and media highlights about Proofpoint

1671 - Search - CareersMake a difference at one of the world’s leading security companies

1672 - Search - AboutLearn more about the team driving human and agent-centric security

1673 - Search - AI, Privacy and TrustLearn about our data handling, privacy, and compliance

1674 - Search - English: Europe, Middle East, Africa

1675 - Search - Corporate NewsJuly 23, 2026Sumit DhawanThe “Future” Agentic Workspace Is Here. Proofpoint’s Record Quarter Reflects What Customers Need Today (and Tomorrow)

1676 - Search - Threat InsightJuly 23, 2026Greg Lesnewich, Nick Attfield, Konstantin Klinger, Saher Naumaan, Mark Kelly, and the Proofpoint Threat Research TeamTA488 Targets Zimbra Mailservers with Half-Click Exploits

1677 - Search - Threat InsightJuly 23, 2026Greg Lesnewich, Nick Attfield, Konstantin Klinger, Saher Naumaan, Mark Kelly, and the Proofpoint Threat Research TeamOperation RoundPress Rolls on with More Half-Click Webmail Zero-Days from TA458

1678 - Search - Human Resilience & Security Awareness

1679 - Search - July 07, 2026Greg Lesnewich, Mark Kelly, and the Proofpoint Threat Research TeamOne Email Closer to the Edge: UNK_MassTraction & the Physics of Exploitation

1680 - Search - June 22, 2026Ryan KalemberProofpoint Joins the OpenAI Daybreak Cyber Partner Program to Advance Responsible AI-Powered Cyber Defense

1681 - Search - June 16, 2026Ryan KalemberSeeing the Full Picture: How to Measure Email Security Effectiveness the Right Way

1682 - Search - Identity & Access Mgmt Security

1683 - Search - Attackers Exploit N-able Patch Bypass Flaw on RMM Servers

1684 - Search - CISA Issues Fresh SBOM Guidance. Did They Get It Right?

1685 - Search - Heard It From a CISO

1686 - Search - Anthropic: Claude Attacks Result of Security Gaps, Not Model Issues

1687 - Search - Chinese Actor Weaponizes Deepseek AI Agent to Attack Security Firm

1688 - Search - Interpol Leverages Global System to Curtail Fraud Payments

1689 - Search - Minnesota Water Utility Attacks Expose Sector’s Cyber-Risks

1690 - Search - AI Harnesses Burst With Potential Exploit Opps

1691 - Search - Claude Mythos — Hype vs. Reality: What Security Teams Need to Know

1692 - Search - SE Asian Cybercriminal Syndicates Become a Global Power

1693 - Search - ‘Flying Eagle’ Full-Service Mobile RAT Builder Wings Across China

1694 - Search - OpenAI’s Rogue Model Claims More Victims Beyond Hugging Face

1695 - Search - Red Agents vs. Blue Agents: How to Make AI Better at Defense

1696 - Search - Who’s Liable When AI Agents Escape? Hugging Face Breach Raises Hard Questions

1697 - Search - Patch-Resistant ‘RufRoot’ Flaw Can Unleash Malicious AI Agent Swarms

1698 - Search - Thousands of Data Center Controllers Open to Takeover

1699 - Search - When AI Agents Escape Sandboxes, Old Security Rules Apply

1700 - Search - Stronger AI Safety Requires Peeking Inside the ‘Black Box’

1701 - Search - ‘Certighost’ Flaw Haunts Microsoft Active Directory Certificates

1702 - Search - AI Agent Drives Espionage Attack on Thai Ministry of Finance

1703 - Search - ‘Confused Deputy’ Flaws Persist in Google Cloud, Microsoft Azure

1704 - Search - FBI: Breaking Affiliate Trust Sped Along LockBit’s Takedown

1705 - Search - Escape Artists: ‘Incorrigible’ AI Models Resist Rehabilitation

1706 - Search - Vatican’s Official Prayer App Leaks 700K+ Global Users’ PII

1707 - Search - Default Azure Automation Setting Enables Cross-Tenant Identity Takeover

1708 - Search - Europe’s Multilingual Reality Exposes AI Security Gaps

1709 - Search - Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets

1710 - Search - Brazilian Banking Trojan Actively Spreading in Portugal

1711 - Search - Ransomware Attack Puts a Chill on Japanese Frozen-Food Chain

1712 - Search - Attackers Are Learning to Live Off the AI Toolchain

1713 - Search - Fake Bahrain Alert App Deploys Android Surveillance Malware

1714 - Search - When AI Attacks: OpenAI Models Autonomously Hack Hugging Face

1715 - Search - EU Financial Institutions Leak Data Through Cookie Trackers

1716 - Search - Ransomware Is Accelerating, but It’s Not Because of AI

1717 - Search - Using LLMs to Find & Prioritize Vulnerabilities Is No Easy Task

1718 - Search - Hacker Turns AI Jailbreaks Into Offensive Attack Platform

1719 - Search - When AppSec Scanners Become a Supply Chain Attack Vector

1720 - Search - The Future of the Datacenter

1721 - Search - The State of Storage 2026

1722 - Search - MediaTek lines up $5B war chest for AI datacenter pushTaiwanese silicon biz believes it can take up to 20% of $80B market with upcoming ASIC chips, but analysts are sceptical

1723 - Search - IT boss left root session open for bring-your-kid-to-work dayDaddy, I typed a Unix command! Was it a bad one?

1724 - Search - NASA boss balks at billion-dollar estimate for recycled Moon roverTurning two Mars testbeds into one lunar explorer may prove anything but cheap

1725 - Search - As Larry Ellison bets the farm, Oracle says it loves AI-written code, just not in OpenJDKUse it to debug and review, says Big Red, but don’t submit its output

1726 - Search - The AI bubble is already popping; we just don’t know it yetWeird times in earnings-land, and we’re talking about it on The Reg’s home grown podcast, Kettle

1727 - Search - Microsoft says 8 GB of RAM should be enough for anyone running Windows 11Redmond adds new items to its make-Windows-better list

1728 - Search - Police National Legal Database confirms data theft after dark web leakExfilSquad claims 135,000 contact records weeks after hitting the Department for Education

1729 - Search - SOFTWARETechie lured out of retirement to support software only he remembered

1730 - Search - NETWORKSThree becomes one as Vodafone buys out merger partner

1731 - Search - DEVOPSDev who gave HashiCorp its name returns with a faster terminal multiplexer

1732 - Search - AI AND MLOpen source project fools AI scrapers with poisoned font

1733 - Search - IBM: Three Demonstrations Prove Quantum Advantage Has Been Reached

1734 - Search - AI Dominates The Microsoft Conversation, But Not The Company’s Business

1735 - Search - Just How Rosy Are Those AI Infrastructure Spending Forecasts?

1736 - Search - With The Carina System, QuiX Pushes Photonic Quantum Computing Forward

1737 - Search - Kioxia’s nearly faster than Optane SSD

1738 - Search - Kioxia has a profitable yen for SSDs

1739 - Search - Storage News Ticker - 31 July

1740 - Search - For Samsung, HBM is the gift that keeps on giving

1741 - Search - Dev who gave HashiCorp its name returns with a faster terminal multiplexer

1742 - Search - How AI drove Shopify back to clean code

1743 - Search - Zig creator calls Bun’s Claude Rust rewrite ‘unreviewed slop’

1744 - Search - HTTP gets a QUERY method so complex searches can stop pretending to be POST

1745 - Search - DON’t MISSLinux kernel team publishes 432 CVEs in two daysSunday-to-Monday onslaught fuels speculation over AI-assisted bug reports

1746 - Search - NASA’s Swift rescue slips to late August as LINK battles its spin3 days ago

1747 - Search - Curiosity rover spots field of giant honeycomb on Mars – but no giant space bees4 days ago

1748 - Search - NASA Swift rescue mission spins into trouble during commissioning5 days ago

1749 - Search - How to access the Dark Web using the Tor Browser

1750 - Search - How to enable Kernel-mode Hardware-enforced Stack Protection in Windows 11

1751 - Search - How to use the Windows Registry Editor

1752 - Search - How to backup and restore the Windows Registry

1753 - Search - How to start Windows in Safe Mode

1754 - Search - How to remove a Trojan, Virus, Worm, or other Malware

1755 - Search - How to show hidden files in Windows 7

1756 - Search - How to see hidden files in Windows

1757 - Search - Reach out to get featured—contact us to send your exclusive story idea, research, hacks, or ask us a question or leave a comment/feedback!

1758 - Search - Welcoming the Nepalese Government to Have I Been Pwned

1759 - Search - Weekly Update 514: This Week in Data Breaches

1760 - Search - Weekly Update 513: Clauding The Home Network

1761 - Search - Weekly Update 512: IoT Lockout Fail

1762 - Search - Weekly Update 511: Live from my Riad in Marrakech

1763 - Search - Swimming Pools, Pee, and Trying to Delete Your Data From the Internet

1764 - Search - Weekly Update 510: Live From Mallorca with Scott Helme

1765 - Search - Data breach disclosure 101: How to succeed after you’ve failed

1766 - Search - Data from connected CloudPets teddy bears leaked and ransomed, exposing kids’ voice messages

1767 - Search - Here’s how I verify data breaches

1768 - Search - When a nation is hacked: Understanding the ginormous Philippines data breach

1769 - Search - How I optimised my life to make my job redundant

1770 - Search - U.S. Army Entering Era of Acquisition Concurrency

1771 - Search - Providing the Cross-Domain Contact Layer

1772 - Search - 3D Printing Opens the Door for Rapid Capability Delivery

1773 - Search - The Layered Defense Model: How the Army Is Attempting To Achieve This Approach

1774 - Search - The JIOP Is Jumping for Innovative Technology

1775 - Search - NATO’s ‘Digital Lethality Branch’ Breaks Records in Drive for Alliance-Wide Interoperability

1776 - Search - Multinational C2 Interoperability of the Lithuanian Brigade

1777 - Search - Project Dynamis Is Rewriting How Marines Fight and Share Data

1778 - Search - On Point: Q&A With Brig. Gen. Jack (Shane) Taylor

1779 - Search - President’s Commentary: The Road to a Perpetual State of Modernization

1780 - Search - Disruptive By Design: MTSA Cybersecurity Requirements: A Culture Shift for Maritime Security

1781 - Search - STEM Innovation in the Classroom

1782 - Search - AFCEAN of the Month, August 2026

1783 - Search - U.S. Space Force To Launch Sensing and Targeting Capabilities

1784 - Search - Teeing Off for STEM: Raising Funds for Students and Teachers

1785 - Search - U.S. Needs Much More To Defeat the Drones

1786 - Search - The U.S. Navy Breaks New Ground With Unmanned Autonomy

1787 - Search - CISA and Partners Revise Iranian-Affiliated PLC Threat Advisory

1788 - Search - Cyber Shield 2026 Tackles OT Vulnerabilities in the Power Sector

1789 - Search - Cyber Defense Agencies Release Advisory on Russian State-Sponsored Targeting

1790 - Search - AI-Driven Silent Breach: A Ghost Within Your Organization

1791 - Search - NDU Adds Its Sixth College

1792 - Search - Stealth in the Face of Adversaries: Integrating Intelligence Data Into Cyber Operations

1793 - Search - New Leader at the Defense Intelligence Agency

1794 - Search - Five Key Takeaways From the Five Eyes Discussion

1795 - Search - New Possible Battlefield ‘Game Changer’ on Display at the NTC

1796 - Search - NSF Prepares To Announce Artificial Intelligence Coordination Hubs

1797 - Search - U.S. Navy: Trading Time for Impact Through AI Capabilities

1798 - Search - AI Brings Speed to Law Enforcement

1799 - Search - NATO Prioritizes Data-Centricity for Digital Sovereignty, Interoperability

1800 - Search - NATO and EDA Eye 2030 Deadline for Cloud, AI and Emerging Technology

1801 - Search - GenAI.mil: How AI Is Freeing Warfighters To Focus on the Mission

1802 - Search - Building an Intelligent Network Fabric for Command, Control and Defense

1803 - Search - Rethinking the Meeting Experience With Mission-Embedded, AI-Enabled Collaboration Infrastructure

1804 - Search - Advancing Geo Simulation Technology for Precision Missions

1805 - Search - Bridging the Divide: How Grandinetta Group Is Redefining Military Transition

1806 - Search - Data Centricity for Decision Advantage in Space: Unifying Operations in the Ultimate High Ground

1807 - Search - From Carrier Pigeons to Sensor Fusion - Speed Matters in Information

1808 - Search - Wireless Common Vulnerabilities and Exposures Continue To Escalate

1809 - Search - Software Overlay Provides Identity-Based Security Layer to OSI Model

1810 - Search - Communications: Enabling Next-Generation Command and Control

1811 - Search - Hunt the Cyber Threat— Before It Hunts You

1812 - Search - Cross-Cloud Collaboration Paves the Way for Data Transparency: OPM’s Groundbreaking Analytics Solution

## Krebs on Security

View Articles

1813 - Search - Read This Before You Buy That TV Streaming Stick

1814 - Search - LG to Ban Residential Proxies from Smart TV Apps

1815 - Search - Microsoft Patches a Record 570 Security Flaws

1816 - Search - Lessons Learned from CISA’s Recent GitHub Leak

1817 - Search - Felons, Fraudsters Flog Offensive Cybersecurity Startup

1818 - Search - FBI Seizes NetNut Proxy Platform, Popa Botnet

1819 - Search - Scattered Spider Hackers Plead Guilty on Day 1 of Trial

1820 - Search - gave interviews to the media

1821 - Search - mass SMS phishing campaign during the summer of 2022

1822 - Search - ‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm

1823 - Search - bundle or come pre-installed with software

1824 - Search - Who Runs the Ransomware Group ‘The Gentlemen?’

1825 - Search - A Record-Breaking Patch Tuesday for June 2026

1826 - Search - How to Break Into Security

## Varonis Blog

View Articles

1827 - Search - Reprompt: The Single-Click Microsoft Copilot Attack that Silently Steals Your Data

1828 - Search - From CPU Spikes to Defense: How Varonis Prevented a Ransomware Disaster

1829 - Search - How Attackers can Abuse Shadow Resources in Google Cloud Dataflow

1830 - Search - Varonis ProductsIntroducing Agent Intent-Based Access ControlNolan Necoechea4 min readDiscover how Varonis Atlas Agent IBAC helps enterprises bridge the gap between “agent deployed” and “agent trusted"Nolan Necoechea4 min read

1831 - Search - Varonis ProductsData Security Scanning Performance: Why Full Coverage Doesn’t Mean Slow ScansAmanda Wicks6 min read

1832 - Search - Threat ResearchWhen AI Assistant Share Links Become Public ExposureVaronis Threat Labs2 min read

1833 - Search - 5 AI Security Challenges in 2026 and Why They Matter

1834 - Search - Dolphin X Stealer Targets 300+ Apps and Profiles Users with AI

1835 - Search - A Look Inside the Hugging Face Breach

1836 - Search - Email SecurityJul 20, 2026Email Security Needs Proof, Not Static Detection: Takeaways from SACR’s Email Security ReportStatic email defenses are falling short as attackers abuse identity, trust, and business workflows. Learn how the future of email security depends on context, investigation, and proof.Meagan Huebner4 min read

1837 - Search - AI SecurityJul 14, 2026AI Agents Are Creating a New Class of Employee RiskAI agents pose a unique security risk because they act autonomously and execute actions on sensitive enterprise data.Ron Bennatan2 min read

1838 - Search - AI SecurityVaronis ProductsJul 14, 2026Varonis Atlas Extends Coverage Across the Claude Enterprise Suite — From Claude Cowork to Claude CodeVaronis Atlas extends coverage to Claude Cowork and Claude Code, giving security teams visibility and control across the entire Anthropic agentic portfolio.Nolan Necoechea3 min read

1839 - Search - AI SecurityVaronis ProductsJul 08, 2026Varonis Atlas Secures Cursor and the Agentic Development LifecycleDiscover how Varonis Atlas secures Cursor and the AI development lifecycle, ensuring safe adoption while enhancing visibility and control over coding agents.Nolan Necoechea4 min read

1840 - Search - AI SecurityThreat ResearchJul 07, 2026Rogue Agent: How a Single Code Block Could Hijack Your AI Conversations in Google’s DialogFlowAI chatbots widen the attack surface. We took over one to steal data and gain toeholds for launching campaigns.Daniel Reyhanian6 min read

1841 - Search - DSPMJul 02, 2026Varonis Recognized as a Customers’ Choice for Data Security Posture Management for Third Consecutive YearVaronis is the only vendor to be named a Customers’ Choice for three consecutive years running.Avia Navickas2 min read

## Pentest Partners Blog

View Articles

1842 - Search - Artificial IntelligenceIf you’re going to vibe code it, why not vibe pen test it?17 Min ReadJul 31, 2026

1843 - Search - Social EngineeringClick. Click. Fake it until they make it… inside7 Min ReadJul 23, 2026

1844 - Search - Aviation Cyber SecurityHardware HackingFlying with the Flipper Zero7 Min ReadJul 10, 2026

1845 - Search - Cyber RegulationHardware HackingInternet Of ThingsEN 303 645 is the baseline, not the finish line for IoT security17 Min ReadJul 03, 2026

1846 - Search - Hardware HackingDecoding Rust strings7 Min ReadJun 23, 2026

1847 - Search - Shameless Self PromotionPTP Cyber Fest 2026. Built for people to get involved6 Min ReadJun 12, 2026

1848 - Search - Digital Forensics and Incident ResponseClickFix, CrashFix and the growing family of copy and paste attacks13 Min ReadJun 10, 2026

1849 - Search - Hardware HackingVulnerabilities and DisclosuresShelly Wall Display exposed RPC over Bluetooth4 Min ReadMay 26, 2026

1850 - Search - OT, ICS, IIoT, SCADAOT pen test findings that plant teams can actually use16 Min ReadMay 14, 2026

1851 - Search - Artificial IntelligenceDigital Forensics and Incident ResponseAI can help in DFIR, but it cannot replace investigator judgement10 Min ReadApr 21, 2026

1852 - Search - OT, ICS, IIoT, SCADAYou can pen test OT networks without breaking them11 Min ReadApr 09, 2026

1853 - Search - Cyber RegulationGRC Consultancy AdviceDigital Operational Resilience Act (DORA)9 Min ReadMar 31, 2026

1854 - Search - Cloud SecurityInsecure IAM is the root of many cloud security failures6 Min ReadMar 24, 2026

1855 - Search - Hardware HackingHow TosReverse EngineeringTaming the dragon: reverse engineering firmware with Ghidra14 Min ReadMar 12, 2026

1856 - Search - How TosRed TeamingVirtual EnvironmentsBreaking Out of Citrix and other Restricted Desktop Environments25 Min ReadMar 02, 2026

1857 - Search - Automotive SecurityOpinionsEV batteries as grid infrastructure and the security risk that follows6 Min ReadFeb 24, 2026

1858 - Search - Internet Of ThingsVulnerabilities and DisclosuresShelly IoT door controller config fail: leaving your garage, home and security exposed8 Min ReadFeb 11, 2026

1859 - Search - Social EngineeringCovert recording is easy, which is the problem5 Min ReadFeb 03, 2026

1860 - Search - OpinionsMovie breakdown: Hackers (1995)6 Min ReadJan 30, 2026

1861 - Search - Cyber RegulationPreparing for the EU Cyber Resilience Act (CRA)8 Min ReadJan 22, 2026

1862 - Search - PasswordsVulnerabilities and DisclosuresCarlsberg… probably not the best cybersecurity in the world7 Min ReadJan 16, 2026

1863 - Search - Cloud SecurityCompromising a multi-cloud environment from a single exposed secret6 Min ReadJan 13, 2026

1864 - Search - Artificial IntelligenceVulnerabilities and DisclosuresAI noise and the effect it’s having on vulnerability disclosure programs5 Min ReadJan 09, 2026

1865 - Search - Digital Forensics and Incident Response2025, the year of the Infostealer12 Min ReadJan 06, 2026

1866 - Search - Cloud SecurityBeyond cloud compliance dashboards, what’s next?6 Min ReadJan 05, 2026

1867 - Search - Artificial IntelligenceVulnerabilities and DisclosuresEurostar AI vulnerability: when a chatbot goes off the rails19 Min ReadDec 22, 2025

1868 - Search - Digital Forensics and Incident ResponseHow TosThe built-in Windows security features you should be using6 Min ReadDec 04, 2025

1869 - Search - AndroidAndroid Activities 1019 Min ReadNov 27, 2025

1870 - Search - Cloud SecurityHow TosCommon Kubernetes misconfigurations and how to avoid them6 Min ReadNov 18, 2025

1871 - Search - Internet Of ThingsExploiting AgTech connectivity to corner the grain market6 Min ReadNov 13, 2025

1872 - Search - Digital Forensics and Incident ResponseFinding your path into DFIR9 Min ReadNov 11, 2025

1873 - Search - Cyber RegulationWhat testers need to know about the changes to the CHECK scheme4 Min ReadNov 04, 2025

1874 - Search - Consumer AdviceHow TosSecurity awareness: four pillars for staying safe online12 Min ReadOct 30, 2025

1875 - Search - How TosHardening your home lab16 Min ReadOct 23, 2025

1876 - Search - Consumer AdviceHow TosStop payroll diversion scams before they start6 Min ReadOct 21, 2025

1877 - Search - Digital Forensics and Incident ResponseThe logs you’ll wish you had configured if (when) you are breached…7 Min ReadOct 17, 2025

1878 - Search - How TosCompiling static Nmap binary for jobs in restricted environments8 Min ReadOct 14, 2025

1879 - Search - Security BlogWhat Speed 2 gets right and wrong about ship hacking8 Min ReadOct 08, 2025

1880 - Search - Digital Forensics and Incident ResponseHoneypotsSpot trouble early with honeypots and Suricata12 Min ReadOct 02, 2025

1881 - Search - Digital Forensics and Incident ResponseDiscord as a C2 and the cached evidence left behind11 Min ReadSep 16, 2025

1882 - Search - Cyber RegulationSecurity BlogA buyer’s guide to CHECK in 20255 Min ReadSep 10, 2025

1883 - Search - Hardware HackingHow TosStart hacking Bluetooth Low Energy today! (part 3)11 Min ReadSep 04, 2025

1884 - Search - AndroidHow TosAndroid Broadcast Receivers 1016 Min ReadSep 02, 2025

1885 - Search - Hardware HackingHow TosStart hacking Bluetooth Low Energy today! (part 2)9 Min ReadAug 27, 2025

1886 - Search - Hardware HackingHow TosStart hacking Bluetooth Low Energy today! (part 1)15 Min ReadAug 21, 2025

1887 - Search - Cloud SecurityTerraform Cloud token abuse turns speculative plan into remote code execution12 Min ReadAug 15, 2025

1888 - Search - Digital Forensics and Incident ResponseThumbnail forensics. DFIR techniques for analysing Windows Thumbcache7 Min ReadAug 08, 2025

1889 - Search - Cloud SecurityHow TosHow to transfer files in AWS using SSM4 Min ReadAug 05, 2025

1890 - Search - Digital Forensics and Incident ResponseDFIR tools and techniques for tracing user footprints through Shellbags9 Min ReadJul 31, 2025

1891 - Search - Cyber Liability InsuranceRethinking cyber insurance questions to find real risk5 Min ReadJul 30, 2025

1892 - Search - Shameless Self PromotionOur capabilities. A story about what we can achieve15 Min ReadJul 28, 2025

1893 - Search - AndroidHow TosAndroid Services 1019 Min ReadJul 25, 2025

1894 - Search - Internet Of ThingsLeaked data. Continuous glucose monitoring5 Min ReadJul 22, 2025

1895 - Search - Artificial IntelligenceDigital Forensics and Incident ResponseUsing AI Chatbots to examine leaked data4 Min ReadJul 18, 2025

1896 - Search - Vulnerabilities and DisclosuresFramework 13. Press here to pwn5 Min ReadJul 16, 2025

1897 - Search - Digital Forensics and Incident ResponseSil3ncer Deployed – RCE, Porn Diversion, and Ransomware on an SFTP-only Server7 Min ReadJul 11, 2025

1898 - Search - How TosHow to conduct a Password Audit in Active Directory (AD)11 Min ReadJul 08, 2025

1899 - Search - Consumer AdvicePet microchip scams and data leaks in the UK6 Min ReadJul 04, 2025

1900 - Search - Automotive SecurityHow we turned a real car into a Mario Kart controller by intercepting CAN data9 Min ReadJun 26, 2025

1901 - Search - How TosCSP directives. Base-ic misconfigurations with big consequences9 Min ReadJun 23, 2025

1902 - Search - Cyber RegulationHow TosPrepare for the UK Cyber Security and Resilience Bill4 Min ReadJun 19, 2025

1903 - Search - AndroidArtificial IntelligenceAndroid AI UX is great until it leaks your data8 Min ReadJun 17, 2025

1904 - Search - Shameless Self PromotionPTP Cyber Fest 2025. More than just another conference4 Min ReadJun 13, 2025

1905 - Search - Vulnerabilities and DisclosuresFire detection system been pwned? You’re not going to sea10 Min ReadMay 30, 2025

1906 - Search - How TosHow to load unsigned or fake-signed apps on iOS10 Min ReadMay 28, 2025

1907 - Search - Digital Forensics and Incident ResponseShameless Self PromotionWar stories from the DFIR front line11 Min ReadMay 27, 2025

1908 - Search - OT, ICS, IIoT, SCADAFully segregated networks? Your dual-homed devices might disagree9 Min ReadMay 22, 2025

1909 - Search - Artificial IntelligenceRed TeamingBypass SharePoint Restricted View to exfiltrate data using Copilot AI and more…17 Min ReadMay 20, 2025

1910 - Search - How TosVNC. RDP for all to see5 Min ReadMay 16, 2025

1911 - Search - Cyber RegulationSustainabilityNew cybersecurity rules for smart heat pump manufacturers5 Min ReadMay 13, 2025

1912 - Search - Hardware HackingVulnerabilities and DisclosuresRCEs and more in the KUNBUS GmbH Revolution Pi PLC15 Min ReadMay 08, 2025

1913 - Search - Artificial IntelligenceRed TeamingExploiting Copilot AI for SharePoint10 Min ReadMay 07, 2025

1914 - Search - Digital Forensics and Incident ResponseThe remote desktop puzzle. DFIR techniques for dealing with RDP Bitmap Cache8 Min ReadMay 01, 2025

1915 - Search - PasswordsHiding behind a password5 Min ReadApr 29, 2025

1916 - Search - Consumer AdviceThe dangers of web based messaging apps6 Min ReadApr 25, 2025

1917 - Search - Digital Forensics and Incident ResponseUnallocated space analysis5 Min ReadApr 23, 2025

1918 - Search - Digital Forensics and Incident ResponseNot everything in a data leak is real3 Min ReadApr 15, 2025

1919 - Search - How TosDon’t use corporate email for your personal life5 Min ReadApr 09, 2025

1920 - Search - Cyber RegulationInternet Of ThingsPreparing for the EU Radio Equipment Directive security requirements3 Min ReadApr 03, 2025

1921 - Search - How TosBackdoor in the Backplane. Doing IPMI security better7 Min ReadMar 31, 2025

1922 - Search - Digital Forensics and Incident ResponseThe first 24 hours of a cyber incident. A practical playbook6 Min ReadMar 24, 2025

1923 - Search - OpinionsCybersecurity communities. Small hacker groups, big impact5 Min ReadMar 19, 2025

1924 - Search - How TosTake control of Cache-Control and local caching4 Min ReadMar 12, 2025

1925 - Search - GRC Consultancy AdviceHow I became a Cyber Essentials Plus assessor10 Min ReadMar 06, 2025

1926 - Search - How TosDNSSEC NSEC. The accidental treasure map to your subdomains9 Min ReadMar 04, 2025

1927 - Search - Hardware HackingA dive into the Rockchip Bootloader8 Min ReadFeb 26, 2025

1928 - Search - Aviation Cyber SecurityPen testing avionics under ED-203a3 Min ReadFeb 21, 2025

1929 - Search - How TosWatch where you point that cred! Part 18 Min ReadFeb 18, 2025

1930 - Search - Cyber RegulationMaritime Cyber SecurityNew mandatory USCG cyber regulations. What you need to know4 Min ReadFeb 14, 2025

1931 - Search - GRC Consultancy AdvicePCI DSS v4.0 Evidence and documentation requirements checklist6 Min ReadFeb 13, 2025

1932 - Search - GRC Consultancy AdvicePCI DSS. Where to start?4 Min ReadFeb 11, 2025

1933 - Search - OT, ICS, IIoT, SCADAICS testing best results. Hint: Blend your approach6 Min ReadFeb 07, 2025

1934 - Search - How TosA tale of enumeration, and why pen testing can’t be automated7 Min ReadFeb 05, 2025

1935 - Search - Digital Forensics and Incident ResponseHow Garmin watches reveal your personal data, and what you can do8 Min ReadJan 28, 2025

1936 - Search - Maritime Cyber SecurityCyber security guidance for small fleet operators10 Min ReadJan 24, 2025

1937 - Search - Hardware HackingHow to secure body-worn cameras and protect footage from cyber threats4 Min ReadJan 21, 2025

1938 - Search - Consumer AdviceSecurity flaws found in tiny phones promoted to children9 Min ReadJan 15, 2025

1939 - Search - Artificial IntelligenceDigital Forensics and Incident ResponseTackling AI threats. Advanced DFIR methods and tools for deepfake detection14 Min ReadJan 13, 2025

1940 - Search - Aviation Cyber SecurityThe unexpected effects of GPS spoofing on aviation safety8 Min ReadJan 09, 2025

1941 - Search - Digital Forensics and Incident Response10 Non-tech things you wish you had done after being breached5 Min ReadJan 07, 2025

## The Register

View Articles

1942 - Search - ai and mlChina turns up the heat with open model blitz as US model makers panicFor the first time, Alibaba’s Qwen team is letting its ‘Max’ model out of the API pen; meanwhile, DeepSeek V4-Flash gives new meaning to cheap and cheerful competition

1943 - Search - Google dev kit spurs first-ever agent-on-agent violencePoisoned pull requests contain prompt injection that allows one to control another

1944 - Search - AI slop pollutes the CVE pipeline with fake vulnsWith NIST still buried under its backlog, expect AI-generated bogus reports to continue

1945 - Search - Russian spies turn public Wi-Fi into malware delivery systemsKeyloggers, audio-visual surveillance, and token theft on CaptivePortal’s agenda as hospitality sector put on alert

1946 - Search - SecurityWater system cyberattacks spread to Georgia, Michigan amid US-Iran conflictTrump rejects Tehran theory, blames ‘grossly incompetent’ governor of Minnesota instead

1947 - Search - Google Earth’s AI makeover survives one trip around the SunTurns out letting anyone rewrite the planet with a prompt had drawbacks

1948 - Search - SECURITYUK government investment arm cops to 40-hour leak of officials’ contact detailsEmployee failed to follow security policy, leaving internal management file open to the public

1949 - Search - Sci-fi authors Scalzi and Stross decry AI’s dystopian impact on their craftLLMs are theft by ‘absolute scum’ who make life harder for writers by putting them in copyright peril

1950 - Search - Claude Code is revolutionizing digital archaeology. Enterprise better dig it’As a big AI skeptic, you just blew my mind’

1951 - Search - AI is ‘both the weapon and the target’ in latest wave of cyberattacksCrowdStrike tracks 89% surge in machine-assisted activity as patch windows shrink to 48 hours

1952 - Search - Meta straps on a ‘Kick Me’ sign by mistakenly taking down video by India’s prime ministerPLUS: DeepSeek to double peak hour prices for new model; Australia hikes fines for Big Tech; Japan’s next moonshot to ride local rocket; and more!

1953 - Search - OFFBEATMeet the ‘internet radical’ who helped Microsoft get email and AT&T get onlineTom Evslin on Bill Gates, the birth of Exchange, and dragging Ma Bell onto the web

1954 - Search - Unexpected item in the bagging area as Windows Activation error pops up at check-inBags weighed down by a Microsoft license key

1955 - Search - SYSTEMSA deep dive into Nvidia’s Vera CPU and the Olympus cores that power it88 custom cores, 176 funky threads, 1.5 TB of laptop RAM, and 1.8 TB/s of NVLink connectivity — this isn’t your typical datacenter chip

1956 - Search - OFF-PREMEnterprise cloud infrastructure uptake shows no sign of slowingCloud revenue now north of $143 billion a quarter, and growth is accelerating

1957 - Search - DEVOPSDev who gave HashiCorp its name returns with a faster terminal multiplexerPersistent sessions could be just the beginning

1958 - Search - Airbus takes flight from AWS. What happens next is criticalWhich way to the Land of the Free again?Rupert Goodwins

1959 - Search - Amazon Web Services’ most vocal customer now runs EC2Retail foundation leader Dave Treadwell takes over as senior leader and 19-year vet Dave Brown departs for pastures unknownCorey Quinn

1960 - Search - The Star Wars cantina scene shows we need a new hope for the agentic webMark Pesce

1961 - Search - How do you solve a problem like Capita?Lindsay Clark

1962 - Search - Microsoft is losing the battle to protect license lucre. It better get used to the feelingRupert Goodwins

1963 - Search - It’s an AI web, and we’re just rats in the wallsSteven J. Vaughan-Nichols

1964 - Search - BOFH: Cross-department AI pitches are easier to swallow with a pint in handSimon Travaglia

1965 - Search - Media Over QUIC can scale real-time streaming and carry the world’s vidsBruce Davie

1966 - Search - Insert token to continue, says AI. Yeah, about that…Rupert Goodwins

1967 - Search - securityThe most famous brand in physical security got pwned by ShinyHuntersHopefully the company secures houses better than it locks down SaaS systems

1968 - Search - CYBER-CRIMEUS bank places trust in ransomware crew that promised to delete its dataHistory suggests this was not wise

1969 - Search - SECURITYAnthropic and OpenAI are competing to see whose agents can go rogue harderWhoever wins, we lose

1970 - Search - SOFTWAREUpdate Teams mobile app by October or lose your calendarA nice little summer job for someone

1971 - Search - SECURITYCharities remain locked out of CAF Bank online accountsA week into shutdown, 14,000 customers still have no restoration date and some are struggling to pay staff

1972 - Search - SCIENCENASA’s Swift rescue slips to late August as LINK battles its spinEngineers make progress in stabilizing mission but push back the rendezvous date

1973 - Search - NETWORKSThree becomes one as Vodafone buys out merger partner£4.3B deal gives telco full control of Britain’s largest mobile operator

1974 - Search - cyber-crimeScotland’s university procurement center confirms cybercrooks broke inAPUC investigating after criminals claim historical data theft

1975 - Search - AI AND MLTech buyers are baking in sovereignty from day one, says ForresterEuropean firms feel the greatest pressure as US giants dominate cloud and AI infrastructure

1976 - Search - SYSTEMSUK wants datacenters to pay a fee for grid connection requestsRefundable charge intended to discourage time wasters from filing applications that will never be realized

1977 - Search - OFFBEATAirport sign fails to boot, officers already on the sceneBork! Bork! That’s the sound of the police

1978 - Search - SOFTWARETechie lured out of retirement to support software only he rememberedThe first job was lucrative and went well, but a pension was preferable to rolling projects

1979 - Search - AI AND MLAnthropic’s Claude escaped test sandbox to attack three organizationsWrote and published malware during tests, which is apparently OK because leaky test environments were the real problem

1980 - Search - PAAS AND IAASAmazon’s Q2 was great, but the earnings release is packed with baloney"Tell me lies, tell me sweet little lies”

1981 - Search - ai and mlLinkedIn realizes its users have been bathing in AI slop, offers a showerAI-riddled social network adds button to report sloppy posts, ditches AI rewrite tools, and promises more to come

1982 - Search - AI AND MLOracle adds Google Gemini to the agent menuChocolate Factory LLMs join Big Red’s Fusion automation party

1983 - Search - STORAGEGPUs could explode to multiple TB with new storage-inspired memory techHigh-bandwidth flash promises SSD-like capacities with HBM-like speeds, but it’s not all unicorns and rainbows

1984 - Search - AI AND MLOpen source project fools AI scrapers with poisoned fontShieldFont is available today if you’ve got copy that needs protecting

1985 - Search - SecurityJailed Flock vandal wipes out three cameras, racks up thousands in damagesA lesson for aspiring vandals: Take out all the cameras, not just the ones that flout your ideals

1986 - Search - personal techAmericans give all-day school phone bans a ringing endorsementPolling suggests patience with handsets in the classroom is running shorter than a teenager’s battery life

1987 - Search - From individual achievement to partner impactPARTNER CONTENT: Databricks survey data suggests certified professionals lift partner delivery capacity, customer credibility, and AI readiness well beyond the individuals who earn the credential

1988 - Search - SYSTEMSSamsung warns memory crunch will last through 2028 as profit rises 19-foldTech giant counts record piles of cash while buyers face years of elevated prices

1989 - Search - cyber-crimeAmazon links four poisoned npm packages to one North Korean crewResearchers say Sapphire Sleet socially engineered maintainers before publishing malicious updates through trusted accounts

1990 - Search - ON-PREMMicrosoft makes Copilot harder to miss in Classic OutlookNew button beside the ribbon promises consistency – and more questions for admins

1991 - Search - LegalHims & Hers accused of sharing health secrets and hiding the cancel buttonFTC says Meta and Snap received sensitive patient information while customers faced unexpected prescription charges

1992 - Search - DATABASESMariaDB again faces questions over Galera’s open source futureSupport for the MySQL build ends in September as the company develops separate premium replication technology

1993 - Search - securityRussian spies take their half-click email attack from Zimbra to OutlookOpening a booby-trapped message unleashes a browser implant that can survive password changes and device rebuilds

1994 - Search - OFF-PREMThe majority of corporate IT is now off premises for the first timeSurvey finds more workloads run off-site than at in-house corporate facilities for the first time

1995 - Search - OFFBEAT30 years ago, AT&T gave Internet Explorer the default advantageNetscape still ruled the browser market, but Microsoft had Windows 95, WorldNet, and a very valuable foothold

1996 - Search - OFFBEATBrighton gig screen goes One Step Beyond with an update pop-upInstall now or remind me later? Neither belongs in the House of Fun

1997 - Search - SecurityHeadteacher had the most guessable username-password combo you could imagineSchools often don’t prioritize or understand cybersecurity

1998 - Search - LEGALExcuses like ‘AI did it’ don’t exist in the eyes of the lawIf your AI goes rogue, better have a good lawyer

1999 - Search - virtualizationVeeam adds support for six more hypervisors in case you are up for a new oneYes, this is mostly about VMware migrations

2000 - Search - SCIENCECuriosity rover spots field of giant honeycomb on Mars – but no giant space beesPosisbly cracked mud, therefore more evidence Red Planet was once less horrible

2001 - Search - systemsQualcomm won’t be a big datacenter player anytime soonBut AI has come along just in time to cover being dumped by Apple

2002 - Search - ON-PREMCisco ‘retires’ its Azure Local offering rather than catch up to Microsoft’s changed hardware requirementsRedmond now allows only locked-down rigs with joint software and hardware support for its on-prem hyperconverged cloud and Switchzilla won’t go there

2003 - Search - SOFTWAREMicrosoft’s cloud brings rain of revenue but modest M365 AI revenue harvestCapex spending? What? Me worry?

2004 - Search - HPCNOAA ditches weather-predicting supercomputers for Google CloudGovernment agency will use Google Cloud H4D VMs to replace HPE Cray machines

2005 - Search - offbeatBig vacuum is watching as robo-cleaners put humans behind the wheelLike a Waymo mated with a Roomba

2006 - Search - PUBLIC SECTORUncle Sam sees the light, offers GlobalFoundries $300M to pursue silicon photonics while taking 1% stakeMeanwhile, the other state-backed foundry, Intel, wraps up RAMP-C defense test chip program

2007 - Search - AI and MLClosed models refuse to help researcher swat Linux bug"I’m sorry, Dave. I’m afraid I can’t do that" is an effective sales pitch for open source

2008 - Search - securityWord worm crawls into Copilot, spreads chaosResearcher says months of coordination with Microsoft have yet to produce a robust mitigation

2009 - Search - applicationsMoscow slaps Telegram founder on wanted list, Durov responds with one-finger saluteFSB claims Ukrainian spies use chat platform to recruit Russians for sabotage and arson

2010 - Search - STORAGEMinIO pitches persistent memory for agents with work to finishAIStor keeps context, files, and secrets under customer control so interrupted jobs can pick up where they left off

2011 - Search - SystemsEurope built sovereign clouds to escape US control. Then forgot about the processorsIntel ME and AMD PSP: The silicon layer nobody certifies

2012 - Search - SecurityNobody believes the ‘criminals and scumbags’ who hacked Canvas really deleted stolen student dataOther than Instructure execs - maybe?

2013 - Search - Europe wants out from under US tech – but first it has to find the exitsReport maps the weak points in cloud, identity, and public sector procurement

2014 - Search - Digital sovereignty is real in Europe. The UK? Not so much

2015 - Search - Sovereign AI is ’nonsense,’ says Doctorow

2016 - Search - Europe’s chip ambitions won’t break dependence on US cloud and software, says Forrester

2017 - Search - Another German state heads down the open source sovereignty road

2018 - Search - Confidential computing’s trust mechanism is broken. The fix may not exist

2019 - Search - France’s digital sovereignty push is struggling to escape the Microsoft gravity well

2020 - Search - Dutch chip startup claims all-European fab flow – with help from a very American friend

2021 - Search - Neo4j plots Palantir alternative with GraphAware acquisition

2022 - Search - The VMware deadline that could reshape your IT strategyPARTNER CONTENT: With vSphere 8 support ending in 2027, IT leaders must navigate tight timelines and costs to modernize on their terms.

2023 - Search - SCIENCENASA Swift rescue mission spins into trouble during commissioningTwo reaction wheels are out and comms sporadic as controllers work to stabilize LINK

2024 - Search - SecurityIran-linked CyberAv3ngers suspected in attacks on Minnesota water systemsMore than 30 facilities disrupted in ‘coordinated cyberattack,’ though officials have yet to name a culprit

2025 - Search - STORAGEAI storage boom is keeping Seagate’s hard drives spinningCloud operators have already claimed most of its nearline capacity through 2028

2026 - Search - SOFTWAREMicrosoft faces competition probe over Copilot subscription price hikeWatchdog asks whether customers were clearly told how to avoid the costlier AI-equipped plans

2027 - Search - AI AND MLAI insiders ask Uncle Sam to help slow the race they startedMore than 1,200 industry staff sign petition seeking international guardrails for automated research

2028 - Search - DATABASESAfter rewriting SQLite in Rust, Turso turns its sights on PostgresCloud database upstart wants one virtual machine core to power multiple SQL frontends

2029 - Search - StorageBack of the NetApp: Latest exec signing scores $34M compensation packageProduct chief shoots straight to the top of the pay league, out-earning CEO in fiscal ‘26

2030 - Search - PUBLIC SECTORNHS England rapped over inaccurate Palantir patient data disclosurePrivacy guardian warns public trust quickly erodes when supplier access comes as a surprise

2031 - Search - OFFBEATAI digs through 3,700 accounts of dreams and waking life, finds method in the madnessResearchers uncover patterns in how sleeping minds recombine memories, people, and places

2032 - Search - PUBLIC SECTORBurnham’s spanner in the works leaves UK government tech scattered across WhitehallSplitting up responsibility for digital transformation and procurement while AI gets a seat at Cabinet risks incoherency

2033 - Search - Why the ‘patchpocalypse’ demands immediate isolationPARTNER CONTENT: Attackers automated, but your 30-day patch window didn’t

2034 - Search - Big Tech demanding deals that smooth out memory prices, says SK HynixDon’t worry about an AI bust, monster profits and huge margins are here to stay

2035 - Search - Intel knows it needs to ‘leapfrog’ ARM and AMD, says CEO Lip-Bu TanChipzilla changes PC biz name to reflect belief edge and robots could be as valuable one day

2036 - Search - AMD and Cerebras join forces against Nvidia’s Groq LPUsThe enemy of my enemy is my friend

2037 - Search - AMD attacks the rack with Helios systems that rival Nvidia’sSpec for spec, the House of Zen’s first rack-scale AI compute platform is bigger and faster than Nvidia’s Vera Rubin by nearly every metric, but that’s only on paper

2038 - Search - Nvidia shows off Vera Rubin platform for tokenmaxxingIf your AI Factory sells tokens, why not optimize token emission?

2039 - Search - Intel fortifies Foundry with an actual customer: FortinetFirewall maker looks to safeguard its custom ASIC production with homegrown silicon

2040 - Search - offbeatAirbus keeps an A350 flying for 24 hoursUltra long range edition should enable 22-hour nonstop Australia-to-Europe flights next year

2041 - Search - securityAmerica bans imported robots due to supply chain and security risksDocs point to China’s Unitree as prime example of the foreign clanker threat

2042 - Search - StorageA requiem for Optane, Intel’s KV cache killer that could have eased the RAM price crunchWith microscopic latencies and otherworldly write endurance, it was perfect for today’s AI workloads – but gone before they arrived

2043 - Search - AI and MLMCP gets an enterprise makeoverNow happier running in a conventional K8s environment, with `an easier-to-live-with lifecycle

2044 - Search - SecurityJFrog’s 0-days let OpenAI’s models hack Hugging FaceOpenAI confirms the link

2045 - Search - ai and mlPerplexity’s tokenmaxxing Model Council gives you multiple bot perspectivesUp to 8 AI models running in the cloud weighing in on ambiguous business issues? Sounds affordable

2046 - Search - AI and MLWar machines can run amok with AI in controlTour of the AI kill chain maps the risks of ubiquitous surveillance and flawed algorithms

2047 - Search - SecurityMicrosoft and Wiz mind-meld agents catch more than 90% of bugsSecret to their success: Using the right model for the right security job

2048 - Search - AI and MLAI is storage’s biggest opportunity – and biggest threatFaster access and more secure recoveries are driving business, but mishaps and attacks can endanger data

2049 - Search - ai and mlCollege prof hides prompt to catch AI cheaters, finds human nature is pretty much as we thought

2050 - Search - securityDEF CON bans Meta-style ‘pervert glasses’More organizers prohibit camera-equipped specs, even with prescription lenses

2051 - Search - SECURITYAI-found bugs aren’t proving any easier to exploit despite the hypeVulnCheck says fewer than 2% of AI-assisted vulnerability discoveries have been weaponized, casting doubt on claims frontier models are handing attackers a major advantage

2052 - Search - SECURITYBank for charities pulls online services over security fearsCustomer funds safe, but 14,000 organizations may have to phone in time-sensitive payments

2053 - Search - SCIENCEDeep space dishes dodge devastation from Spanish wildfiresNASA reports some cable damage near Madrid as its antennas and ESA’s Cebreros station emerge largely intact

2054 - Search - AI AND MLHugging Face rebuilt a third of its infrastructure after OpenAI agents ran amokPostmortem offers finer details on the ‘unprecedented’ attack that’s reshaping approaches to security

2055 - Search - NETWORKSUncle Sam needs you to fight for 6G leadership and security, lest Beijing get there firstWashington rallies allies to shape next-generation networks after spending 18 months rattling them

2056 - Search - AI and MLToo many AI agents can get in each other’s wayFor enterprise agents, less is more

2057 - Search - On-PREMHyperscale, hypersensitive: US teacher cuffed for applauding datacenter criticsPublic meeting over proposed AI bit barn ended with zoning approval, a physics teacher arrested, and fresh questions over whether clapping now counts as disorderly conduct

2058 - Search - SCIENCESignals are grim for Jodrell Bank Observatory after UK science funding decisionSupport for e-MERLIN ends 2028 unless the historic radio astronomy center can find another source of cash

2059 - Search - SecurityArista patches actively exploited VeloCloud bug as CISA puts admins on the clock

2060 - Search - NETWORKSOpenreach nudges another 112 exchange areas toward full fiberLatest batch takes the copper sales restrictions to 1,572 locations and 15.4 million premises

2061 - Search - NETWORKSCisco close to releasing more AI models, this time for deep networking opsToken costs not quite sorted, but on-prem will be an option

2062 - Search - AI AND MLChina fights back in AI spat with claim US AI companies distil Chinese modelsBeijing happy to ‘take all necessary measures’ if sanctioned

2063 - Search - SOFTWAREGNOME can look like Windows – and Flashback can do it without extensionsNew ‘Simple-taskbar’ is an option, but there’s a simpler, stabler way

2064 - Search - A moment of silence, please, for the final release of Debian on x86-32New Debian versions hit FOSSland in the form of 13.6 and 12.15

2065 - Search - Baddies caught exploiting extensions bugs with perfect 10 scores on vulnerable Joomla websitesFlaws in iCagenda, Balbooa Forms extensions can impact open source CMS that powers a million sites worldwide

2066 - Search - Frame: A new X11 server – implemented directly in assemblyJoins yserver, Phoenix, and of course XLibre – and outlier Arcan

2067 - Search - ai and mlLeading AI models (even Grok) are all a bunch of leftist punksAI seems to have a liberal bias

2068 - Search - AI + MLJensen puts his thumb on the scales against open-weights fearmongeringAmerican AI flag bearers get in line, at least on paper

2069 - Search - DEVOPSMicrosoft lays out a buffet of Windows goodies for JavaScript DevelopersJust don’t call the WinRT projection for Node.js a lock-in

2070 - Search - AI and MLImpostor Chinese models pretend they’re ClaudeResearchers find GLM and Kimi can adopt Claude’s identity, but the evidence stops short of proving distillation

2071 - Search - SecurityMicrosoft’s solution to AI security: more AI and more acronymsMDASH stuffed with MAI-Cyber-1-Flash and a side of GPT-5.4

2072 - Search - ai and mlTech giants link hands to praise open AI models after OpenAI - Hugging Face attackThe Open Security AI Alliance says the Hugging Face/OpenAI mess proves frontier labs can’t be trusted to properly secure sensitive systems

2073 - Search - OFFBEATCassette simulator rewinds digital audio to a more analog time in hiss-toryIs there a simulator for the wail when you realize your precious one-off bootleg has just been chewed up?

2074 - Search - AI has changed data architecture, but storage hasn’t caught upSPONSORED FEATURE: AI’s hunger for data outstrips storage smarts, leaving GPUs famished

2075 - Search - PATCHESMicrosoft Defender for Endpoint leaves some Linux boxes defenseless after updateOne bug disabled the security service on restart, another blocked installation on hardened RHEL systems

2076 - Search - AI AND MLTech sector pours $1T into AI and sends customers the billHistory’s biggest infrastructure build-out is pushing up hardware and software prices, analyst says

2077 - Search - OFFBEATBritish Army finds a new eye in the sky after Watchkeeper woesTekever AR5 drone regarded as more up-to-date answer to provide battlefield surveillance for soldiers

2078 - Search - ai and mlOpenAI’s Hugging Face debacle makes a great case for open modelsIf you think OpenAI and Anthropic are the only ones with these capabilities, think again

2079 - Search - SOFTWAREMicrosoft seeks Supreme Court lifeline in pre-owned license battle£270M ValueLicensing case remains mostly paused while Redmond pursues permission to appeal

2080 - Search - OFFBEATThe roller coaster works, but the Six Flags kiosk has gone off the railsWould you like an error with your terror?

2081 - Search - columnistsFOSS smashed one Microsoft monopoly. After 20 years of failure, it’s time to smash anotherWord up

2082 - Search - SecurityGoogle goes it alone with a new cybercrime crew taxonomySo much for Microsoft and CrowdStrike’s plans for consistent names across the industry

2083 - Search - softwareManager showed off his DOS prowess – with a command that wiped dataNever believe a suit who says they’re handy with tech

2084 - Search - scienceSpaceX just about nails Starship test flight 13Super Heavy booster had a super heavy landing, but other reusability tech did the trick

2085 - Search - personal techTech support chap told angry customer to think inside the box – and solved the problem

2086 - Search - OFFBEATBackup and running? Not this digital sign

2087 - Search - on-premDatacenter MacGyver saved the biggest football match of the year

2088 - Search - personal techUser swore hacker called General Failure had invaded his PCMaybe they were looking for Private Data

2089 - Search - securitySecurity boss thought MFA would be too much security

2090 - Search - Personal techUsers claimed they’d never seen a spell checker and panicked at the sight of red squiggles

2091 - Search - Personal TechThis is your BIOS speaking. Please fix me. Your PC is broken

2092 - Search - OffbeatTech support chap hauled out to help SWAT team saw his life flash before his eyes

2093 - Search - AI + MLThe truth nobody wants to admit: Chinese or not, open models are competitive nowHey Uncle Sam, if you thought GPT-5.6 and Claude Fable 5 were scary, get a load of Kimi K3

2094 - Search - Connecting AI agents to outside services explodes the risk radiusConnect all the things and watch what happens

2095 - Search - If you want Claude to speak nicely to you, try Hindi or ArabicAnthropic finds Claude expresses different values across languages

2096 - Search - Google fixing Android lock screen bug that lets Gemini send SMS without a PINA specific multi-touch gesture bypasses an authentication prompt, allowing anyone to send messages

2097 - Search - ‘The bots are alive!’ Jailbroken Gemini spun up new C2 server for Russian fraudster in just 6 minutesHuman did 10% of the job, AI did 90%

2098 - Search - Anthropic’s extravagant tokenizer complicates AI pricingToken consumption doesn’t tell the whole tale but it shouldn’t be ignored

2099 - Search - Bug in top AI coding agents shows that Unix-era security headaches never really die’GhostApproval’ problem highlights human-in-the-loop fails

2100 - Search - virtualizationFoxconn unit drops VMware, adopts hyperconverged upstart Arcfra for workloads including AIPLUS: New CEO for Infosys; China fines Trip.com; India demands GitHub remove Jack Dorsey’s distributed social network; And more!

2101 - Search - ON-premTrump expands voluntary pledge to keep datacenter costs off household power billsPinkie promise gains 200-plus new participants and precisely zero enforcement

2102 - Search - SCIENCEThe last Space Shuttle returned to Earth 15 years agoSo, how are those commercial replacements working out for you, NASA?

2103 - Search - devopsHow AI drove Shopify back to clean codeTurns out, agents just want the same things as humans: easily-readable code, explicit contracts, and helpful feedback

2104 - Search - AI AND MLAnti-AI open source has an enemy in common, but almost nothing elseBuilding bot-free alternatives may require lefties, libertarians, and culture warriors to share code

2105 - Search - BOFHBOFH: This printer engineer knows every trick in the bookBut so does this customer

2106 - Search - AI and MLAnthropic debuts Opus 5 at half the price of its Fable siblingAnd as a bonus, it doesn’t require data retention

2107 - Search - SecurityPope’s official prayer app commits cardinal sin, leaks 700K+ users’ info(Security) hole-ier than thou

2108 - Search - ai and mlAMD vibe codes its way past the CUDA moat with ROCm.AIHey Claude, optimize this model for me

2109 - Search - SecurityEuropol flags 4,340 ‘horrific’ URLs linked to The ComStop the spread (of online recruiting and propaganda)

2110 - Search - AI and MLTech leaders issue letter to train Uncle Sam about value of open weight AICan you guess who didn’t sign on to the group letter?

2111 - Search - OS PLATFORMSDev accidentally commits Copilot binary to FreeBSD ports repoGit is aptly named: it isn’t easy – but there are alternatives

2112 - Search - SecuritySneaky Windows stealer targets 300+ apps, gives crims an AI profiler to maximize profitsMove over Flipper. There’s a new Dophin X in town

2113 - Search - SecurityGreedy ransomware crews return for seconds after victims cough up first extortion paymentsSome never saw their files again either, infosec biz Proofpoint finds

2114 - Search - SECURITYCouncil worker spared prison after four-day data-snooping spreeHerefordshire employee handed suspended sentence for breach of Computer Misuse Act

2115 - Search - AI AND MLOpenAI admits it was the source of the agent swarm that attacked Hugging FaceSandboxed experiment found itself a zero day, escaped onto the open internet and validated scary predictions about rogue agents

2116 - Search - Cisco’s open-weight bug busters take on Google and OpenAIDon’t call them chatbots

2117 - Search - AI and MLAI’s cheatin’ heart will make you weepTrust but verify doesn’t work when verification is difficult

2118 - Search - SecurityKratos phishing-as-a-service kit loses its battle with international law enforcementAlleged developer arrested in Indonesia after more than 200 servers slain

2119 - Search - securityAI music platform Suno hits bum note as 55M users exposed in data breach, claims infosec expertHave I Been Pwned confirms scale for first time

2120 - Search - Police National Legal Database confirms data theft after dark web leak

2121 - Search - ai and mlChatGPT wants access to your health records so it can be a better not-doctorFeature launches a day after lawsuit alleges chatbot advice contributed to near-fatal embolism

2122 - Search - offbeatFlock cameras go up in flames as cops hunt suspected firebugsTwo license plate readers torched in Georgia amid backlash against the surveillance network

2123 - Search - AI and MLVeterans Affairs signs $1.6B deal for an army of Salesforce AI agentsMakes agreement under nose of Oracle, which gets its own $7 billion defense deal

2124 - Search - SCIENCESpaceX to try its luck again with Starship Flight 13 after engines and weather say noReplacement Raptors head for liftoff without a static fire test

2125 - Search - SecurityUncle Sam tells overseas cybercrooks their visas are canceledPolicy targets online scammers, sextortionists, and potentially their immediate families

2126 - Search - PERSONAL TECHLG kills McAfee pop-up after Windows boss steps inAdvert gets the chop, but the silent app installation mechanism remains untouched

2127 - Search - NETWORKSEU telcos ask: Huawei going to afford to replace Chinese equipment?Proposed cybersecurity legislation may force a cull of high-risk network technology, costing tens of billions

2128 - Search - public sectorFujitsu joins £14.9B UK framework despite public sector bid freezeSupplier says the Horizon-era pause only stops it chasing work from new government customers

2129 - Search - offbeatBurnham wants Big Ecommerce to bankroll Britain’s pubsOnline marketplaces could find themselves buying the next round as the PM looks to tax ecommerce to save the local

2130 - Search - ON-PREMGoogle meets the neighbors and gets both barrels over its new UK datacenterThe Reg was there as locals aired grievances over poor communication, noise, and light pollution at Waltham Cross facility

2131 - Search - LegalGoogle breaks Alibaba’s record for Europe’s largest DMA fine€890 million slap – just 0.25% of revenue – for making itself the subject of search results, and hiding app store alternatives

2132 - Search - SoftwareSupport newbie figured out how to avoid all-nighters, and his colleagues hated him for it

2133 - Search - off-premAnyone with a shed, an extension cord, a couple of GPUs and an overdraft is building datacenters. Fujitsu just offloaded five‘Digital transformation’ is a better bet, apparently, so private equity gets a turn

2134 - Search - off-premIran says it’s struck offline AWS facility in Bahrain … againAWS’ me-south-1 region has been offline for months, so more like beating a dead cloud

2135 - Search - off premGoogle Cloud outage shows it’s still hard to understand hyperscalers’ real resilience regimesUPDATED: Single datacenter and just three services taken down by ‘upstream’ power problem and failure of diesel generators

2136 - Search - off-premAWS customer learns the hard way how even the smallest oversight can be mission-criticalAn expired card, overzealous spam filter, and broken authenticator create havoc with a very clear moral

2137 - Search - off-premBilling software error sends billion-dollar AWS estimatesAmazon asks users not to panic as it works to fix the bug

2138 - Search - Off-premTop EU court clips YouTube’s intermediary defense over reviewed contentYou can’t claim to be a passive host after vetting a creator’s channel, Google warned

2139 - Search - off-premAWS CloudFront outage serves errors instead of websitesStorm sends winds whipping beyond cloud giant, knocking out services including Hugging Face and the UK’s National Lottery

2140 - Search - off premIndia’s tech services giant HCL is getting into the AI datacenter businessStarting small with $37m and maybe 50MW but reckons full-stack service plan can succeed

2141 - Search - Microsoft fiber foul-up cut off Azure California for almost five hoursMaintenance mistake caused immediate issues and took out 27 services

2142 - Search - SecurityOpenAI-Hugging Face attack doesn’t mean agents are evil – unless you tell them to beAttack models gonna attack

2143 - Search - SecurityResearchers replace downloaded macOS apps with evil twins, Apple shrugsGatekeeper has one job and it’s not doing it for some software

2144 - Search - ai and mlOpenAI won’t let some customers export their chats, but this tool willChatGPT Business and Enterprise users lack the standard chat export option, so third-party utilities like scrapemychats fill the gap

2145 - Search - AI and MLCodeberg gives vibe-coded projects the toss, promotes human FLOSSAI no longer welcome in human-focused community

2146 - Search - PatchesYear-long Russian attacks infect users as soon as they look at an emailPhishing for dummies

2147 - Search - DEVOPSModel Context Protocol prepares to break with its stateful pastBiggest overhaul since launch ditches sessions, guts little-used features, and leaves homebrew implementations facing a slog

2148 - Search - securityMillions of California-bought cars can be hijacked via BluetoothAftermarket dealer-installed KARR/SWDS security systems all use the same secure key, say UCSD researchers

2149 - Search - SecurityOracle drops 1,449 security patches like it’s the new normalExperts say the era of AI bug hunting is here, so defenders will simply have to adapt to busier workloads

2150 - Search - IT boss left root session open for bring-your-kid-to-work day

2151 - Search - Comment in code read ‘Dear future me, sorry I wrote this’

2152 - Search - User crippled a network while trying to learn Nmap

2153 - Search - Apprentice developer defied orders – then got a job supporting her weird code

2154 - Search - Sysadmin broke hardware worth more than he made in a month – and lied his way out of the mess

2155 - Search - How dare you stop data loss – that’s not your job!

2156 - Search - Chinese e-tailer claimed 14-inch box stretched the size of a 9-inch tablet

2157 - Search - Consultant mistakenly deleted a ton of data – but reported it as a bug

2158 - Search - Techie expensed a bag of oranges and then juiced up a stupid security incident

2159 - Search - Under-trained techie didn’t claim overtime for mistakenly failing to phone it in

2160 - Search - Backup script ingested an accidental asterisk and deleted everything

2161 - Search - Lab worker built a fake PC to nuke his lunch

2162 - Search - Hope your holiday was horrid: You botched the last thing you did before leaving

2163 - Search - PowerPoint punishment sent users into an infinite loop after lunch

2164 - Search - ‘Invisible mouse’ made a mess of PC rebuild

2165 - Search - IT manager approved downtime over lunch, but made a meal of it

2166 - Search - The developer who came in from the cold and melted a mainframe

2167 - Search - Security contractor blew the whistle on support crew’s viral indifference

2168 - Search - Junior disobeyed orders and tried untested feature during a live robot demo

2169 - Search - Brilliant backups that kept data alive for ages landed web developer in big trouble

2170 - Search - Bug that wiped customer data saved the day – and a contract

2171 - Search - Server crashes traced to one very literal knee-jerk reaction

2172 - Search - Work experience kids messed with manager’s PC to send him to Ctrl-Alt-Del hell

2173 - Search - Final step to put new website into production deleted it instead

2174 - Search - Tech support chap invented fake fix for non-problem and watched it spread across the office

2175 - Search - Techie’s one ring brought darkness by shorting a server

2176 - Search - Marketing ‘genius’ destroyed a printer by trying to fix a paper jam

2177 - Search - ATM maintenance tech broke the bank by forgetting to return a key

2178 - Search - Techie banned from client site for outage he didn’t cause

2179 - Search - Techie turned the tables on office bullies with remote access rumble

2180 - Search - New boss was bad, his attitude was ugly, so the tech team pranked him good

2181 - Search - Techie ‘forgot’ to tell boss their cost-saving idea meant a day of gaming

2182 - Search - Untrained techie broke the rules, made a mistake, and found a better way to work

2183 - Search - Web dev’s crawler took down major online bookstore by buying too many books

2184 - Search - Dev’s last-day-of-contract code helped to crash app used by 350,000 people

2185 - Search - Developer made one wrong click and sent his AWS bill into the stratosphere

2186 - Search - Techie ran up $40,000 bill trying to download a driver

2187 - Search - ‘ERP down for emergency maintenance’ was code for ‘You deleted what?’

2188 - Search - Frustrated consultant ‘went full Hulk’ and started smashing hardware

2189 - Search - Company that made power systems for servers didn’t know why its own machines ran out of juice

2190 - Search - Techies tossed appliance that had no power cord, but turned out to power their company

2191 - Search - Techie found an error message so rude the CEO of IBM apologized for it

2192 - Search - Intern had no idea what not to do, so nearly mangled a mainframe

2193 - Search - Bored developers accidentally turned their watercooler into a bootleg brewery

2194 - Search - After deleting a web server, I started checking what I typed before hitting ‘Enter’

2195 - Search - Playing ball games in the datacenter was obviously stupid, but we had to win the league

2196 - Search - I was a part-time DBA. After this failover foul-up, they hired a full-time DBA

2197 - Search - CIO made a dangerous mistake and ordered his security team to implement it

2198 - Search - Teen interns brute-forced a disk install, with predictable results

2199 - Search - NetworksChina advances plans for national single-stack IPv6 network, and its own surveillance-friendly version of the protocolIPv6+ could make it easier to censor netizens or block traffic, and Beijing is already exporting it

2200 - Search - networksNTP server that traveled back in time caused massive Aussie mobile outage

2201 - Search - networksHands off our VPNs, privacy groups tell UK ministers

2202 - Search - NetworksTelstra outage: Failed emergency services calls, train chaos, payment systems down

2203 - Search - DevOpsGitHub slashes public bug bounty payouts as AI report flood buries its security teamCode shack also putting new limits on first-time researchers, and reserving the biggest rewards for a hand-picked group of proven hunters

2204 - Search - SECURITYIran-linked crews are probing more flavors of US industrial kitCISA widens alert beyond Rockwell controllers as intruders target internet-facing devices across critical infrastructure

2205 - Search - OffbeatTesla burns through a billion as Musk bets the farm on chips and botsOptimus remains ‘very complex’ and Robotaxis will try not to flatten your cat

2206 - Search - SecurityOne ChatGPT link could smuggle a rogue AI agent into your companyResearchers say OpenAI flaw let phishing bait create an autonomous corporate mole armed with employee access

2207 - Search - SecuritySwiss train maker tells ransomware crooks to get off at the next stopStadler refuses $12.3M demand after thieves swipe technical data through supplier platform

2208 - Search - softwareIBM insists AI didn’t kill software deals, just delayed themBig Blue says customers postponed rather than abandoned major purchases as hardware soaked up enterprise budgets

2209 - Search - SOFTWAREFirefox 153 contains itself while Thunderbird 153 fixes almost everythingMozilla walls off your online identities as MZLA unleashes a bumper repair job

2210 - Search - PUBLIC SECTORStats watchdog prescribes stronger caveats for NHS Palantir claimsHealth service told to ensure ministers don’t mistake before-and-after comparisons for cause and effect

2211 - Search - ai and mlAmazon’s AGI department finds humans are optional

2212 - Search - offbeatUK pumps £708 million into its future fighter jetTempest cash lands alongside hypersonic target contract and BAE’s ’loyal wingman’ drone reveal

2213 - Search - ON-PREMBritain isn’t considering datacenters’ thirst for water in its ‘AI superpower’ ambitionsGrand compute push could end up as dry as England’s reservoirs unless ministers act fast

2214 - Search - SECURITYTalking smack about a doctor got him access to private medical filesWho needs a working security badge when you know how to talk your way into the records room?

2215 - Search - aI AND MLSenior White House official claims China’s K3 model stolen from AnthropicAnd accuses Thailand hosting hardware that may have helped distillation attack

2216 - Search - AI AND MLGoogle is hoarding TPUs to chase artificial general intelligenceYet the Chocolate Factory is also buying more third-party compute capacity to handle high demand for the G-Cloud

2217 - Search - AI and MLOpenAI scored an own goal with Hugging Face attack, showing how open Chinese models are winningClosed models with guardrails can still cause harm, but may also not be able to fix problems they caused

2218 - Search - PAAS AND IAASGoogle Cloud is killing itIt’s Alphabet’s fastest-growing business and now makes up more than a fifth of the juggernaut’s revenue and operating profit

2219 - Search - offbeatWeb app turns your old phone into a new smart displayScreenWall’s creator tells El Reg he doesn’t want those obsolete devices going to waste

2220 - Search - Latest Musk merch drop runs entirely on child laborA Tesla fan and their money are easily parted

2221 - Search - US Marines’ latest anti-drone toy is an AI turret that uses regular machine gunsDon’t worry - it can attack ground targets, too

2222 - Search - Microsoft open-sources Comic Chat, its cartoon IRC curiosityStep back three decades to ‘a period when software teams were willing to color outside the lines’

2223 - Search - Software bloat? This elevator needs an 8 GB Core i5This elevator is headed for floor Bork

2224 - Search - Engineer shoves Linux peg through Sega 32X-shaped hole’Performance is abysmal, bus contention is bonkers, but it does work’

2225 - Search - Excel competition goes extreme, makes spreadsheet geeks compete from the streetDefending world champ Diarmuid Early wins again despite being forced to solve puzzles outdoors

2226 - Search - Lucky 13: SpaceX aims for July 16 Starship flight testHopefully, the rocket won’t go in the same direction as the company’s share price

2227 - Search - Photovoltaics are still running after a year under Swiss trainsSolar boss reckons challenges are regulatory, not technological

2228 - Search - Police intercept tipsy teens after Waymo snitches for shooting Orbeez out of the carArmed response and canine support called in for troublemaking duo ratted out by driverless car’s array of cameras

2229 - Search - C programmers commit fresh crimes against readabilityPrepare to be befuddled and bamboozled – and probably bewitched

2230 - Search - Connect, disconnect, or just have a lovely beerSeeking a deeper meaning to a network error

2231 - Search - An artificial cell with a full lifecycle has been created for the first timeSpudCell can feed, divide, and even outcompete its siblings. It’s not truly alive, its creator tells us, but it could still transform the bioengineering world

2232 - Search - NASA unsure Boeing Starliner will ever be certified for human flightInspector General’s report says time is running out for the Calamity Capsule

2233 - Search - Boffins peg narcissistic leadership as the real driver behind ‘return to office’ demandsIt’s not about productivity; it’s about bosses missing their daily ego fix

2234 - Search - Meta’s non-surgical mind reading machine improves on prior projects, but still isn’t great61% word accuracy is progress, but the system still relies on users typing and can’t yet support real-time communication. Implanted BCIs remain well ahead

2235 - Search - HS2’s latest reset ditches autonomous train tech to get project back on trackBritain’s most expensive train set loses some of its best toys in bid to actually leave the station

2236 - Search - Blue Origin insists New Glenn will rise from the ashes this year after explosion deleted launchpadCEO says reconstruction has begun, though the timetable looks ambitious

2237 - Search - Portuguese bank sign’s storage is about to cash outTime to switch back to paper and harvest that suddenly valuable RAM

2238 - Search - US auto regulators want to kill robotaxi brake pedalsRequiring driverless vehicles to keep human brake controls impedes innovation, the NHTSA says

2239 - Search - Space Shuttle Endeavour stacks up nicely for new California exhibitFull launch configuration recreated ahead of Samuel Oschin Air and Space Center’s November opening

2240 - Search - They’ve read the scroll thing! AI helps decipher ancient document charred by Vesuvius’Having certainly strained ourselves to the utmost through research and learning, we will no longer be inferior to them,’ reads a scroll virtually unwrapped with the help of AI

2241 - Search - Perseverance rover finds even more signs of extinct life on MarsScientists remain skeptical, plead for someone to bring the rocks home

2242 - Search - Ordering a trip back to 2009, with a side of nostalgiaA time when Windows 7 was Microsoft’s latest and greatest

2243 - Search - Space Force goes to (pretend) orbital war following record-fast Rocket Lab launchLess than 17 hours after receiving orders, Rocket Lab put Pioneer in orbit for close-range maneuvers with True Anomaly’s Jackal satellite

2244 - Search - Digital indigestion: Fizzy Coca-Cola display chokes on full storageUbuntu warning bubbles up on an Azores advertising screen

2245 - Search - Ukraine puts its Russian war trophies online for allies to pick apartTrophyLab bad for Vlad as battlefield losses spill the secrets they had

2246 - Search - Inspired by musical greeting cards, DARPA demands tiny, cheap, self-modifying systemsOne can’t help but see a very clear instance of the triple constraint problem in action here

2247 - Search - Small island nation tries bold tech education strategyIs the UK’s social media ban for kids just reverse psychiatry?

2248 - Search - EU won’t force publishers to grant dead video games an afterlifeStop Killing Games campaign suffers setback as European Commission favors industry code of conduct over legal obligation

2249 - Search - Britain sending Ukraine an extra 30,000 drones – now 150,000 all upMissiles and radars also included in £752M aid package

2250 - Search - Waymo hits the brakes after robotaxis keep missing the signs for freeway construction zonesNearly 4,000 vehicles recalled for driving past closure warnings and between cones marking shut lanes

2251 - Search - Rockstar Games faces full hearing over alleged union bustingTribunal rejects bid to strike blacklisting claims, with proceedings due to conclude shortly before GTA VI launches

2252 - Search - Microsoft once used its own brand of ‘Lego’ to optimize WindowsMaking software feel snappier when you only have 12 MB RAM

2253 - Search - SCIENCEViking 1 landed on Mars 50 years agoAnd would have lasted longer if some code hadn’t trampled on places it shouldn’t

2254 - Search - SCIENCESpaceX Starship Flight Test 13 takes issue with the ‘flight’ bit

2255 - Search - SCIENCENASA’s Artemis III will need three rockets to do the job Apollo did with oneBlue Origin and SpaceX get their turn to prove they can dock, loiter, and not blow up the launch pad

2256 - Search - AI AND MLAI power binge delivers best half since 2022 for climate tech venture fundingLow-carbon projects reap accidental windfall as billions chase compute infrastructure

2257 - Search - SCIENCESun sets on Vulcan Centaur as NASA moves SunRISE to SpaceX Falcon HeavySolar observatory awaits a new launch date after its original ride hit booster trouble

2258 - Search - scienceIndia’s crewed space mission is ready for splashdown, but not launchGaganyaan was supposed to fly in 2022 and make the country only the fourth to put people into orbit

2259 - Search - SCIENCEAstronomers find sugar near the creamy center of the Milky Way (no caramel, though)First interstellar monosaccharide suggests some of life’s ingredients may be scattered across the galaxy

2260 - Search - scienceScientist models way to make sure no one’s violating the ban on nuclear weapons in spaceThere is a long-standing international treaty in place but we can’t be the only ones side-eyeing world’s current crop of politicos

2261 - Search - ScienceNew Horizons Pluto probe just woke itself up after 321 days of hibernationGood luck getting your PC to do that after lunch

2262 - Search - BOFH: Amnesty means never having to say you’re sorryThere’s no I in team, but there is one in insurance fraud

2263 - Search - BOFH: For one ambitious security type, chaos is a ladderMission Control sends its regards

2264 - Search - BOFH: Vibe-coded solutions arrive for problems nobody hasThe Boss gives common sense an AI wrapper

2265 - Search - BOFH: Nothing says ‘business continuity’ like a dry wooden broomNo sparks, no glory

2266 - Search - BOFH: Arrr, I smell piracy … and it’s comin’ from a machine with executive privilegesHang on, can’t we just turn off the internet?

2267 - Search - BOFH: If the meatbags can’t agree on aircon, AI will decide for themHow were we to know Bikram Choudhury was in the training data?

2268 - Search - BOFH: Are you ready to raise our expense account limits now?Yet another AI sales creep ruined by PFY’s manual reading tactics

2269 - Search - BOFH: What physics defines as impossible, sales calls a challengeThe Boss imagineers a new laptop spec with help from AI

2270 - Search - AI and MLFresh off AI layoffs, Block now wants to whack Slack with agent-human collab toolBecause what could be more appealing to humans than sharing virtual space with AI?

2271 - Search - SCIENCEAstronomers spot exomoon candidate that’s almost as massive as JupiterObject orbits a brown dwarf, which circles another star, confusing the cosmic taxonomy

2272 - Search - AI AND MLGrok muscles into Excel with an AI add-in of its ownxAI’s sidebar agent promises analysis and financial models – for a price

2273 - Search - AI and MLOpenAI tries the consulting path with ‘Presence’, charging enterprises boots-on-the-ground prices to deploy agentsAs AI models become commoditized, maybe there’s margin in the plumbing

2274 - Search - Do not share my personal information

2275 - Search - Linux kernel team publishes 432 CVEs in two daysSunday-to-Monday onslaught fuels speculation over AI-assisted bug reports

2276 - Search - OVH reveals semi-secret plan to fix critical Januscape hypervisor bug with mass reboots – and an Australian crash-test dummyFrench cloud backported a patch into Debian and didn’t seek customer consent, despite chance of downtime

2277 - Search - Attackers pummel critical WordPress vuln to create all sorts of mischiefPlus dozens of PoCs in the public domain

2278 - Search - Scammers impersonate FBI on social media, prey on crime victimsIC3 says any account claiming to represent it is fake

2279 - Search - Malicious cloud customers can bring down the power gridDatacenters tax utilities normally, so just imagine what they could do if workloads were designed to destroy

2280 - Search - Frontier LLMs couldn’t help Hugging Face fight off evil agentsChinese open-weight model GLM 5.2 happily obliged

2281 - Search - Microsoft 365 calendars become spy drop boxes in HOLLOWGRAPH campaignMalware hides commands in appointments set for 2050 and uses Redmond’s own cloud to phone home

2282 - Search - Infosec expert: Paidwork users’ data pwned after 23M-record database dumped onlineHIBP claims leaked info includes bank account numbers, payout histories, and personal details

2283 - Search - Chinese President Xi Jinping wants emergency response systems to keep AI in checkPLUS: Korean e-tailer Coupang’s warehouse burns and burns; Australian Uni expels VMware; India’s first private rocket flies first time; And more!

2284 - Search - AI spam filters are getting suckered by old-school text saltingTurns out decades-old email tricks still work against some LLM-powered email filters

2285 - Search - Attackers target critical FortiSandbox flaws as CISA issues patch orderCommand injection vulns land on exploited list after researchers spot abuse attempts

2286 - Search - Ransomware curdles production at Coca-Cola’s Fairlife dairy bizNo use crying over spilled milk when US plants can’t bottle it in the first place

## Security Affairs

View Articles

2287 - Search - AI Runs the Hack: Chinese Actor Automates Cyberattacks With DeepSeek

2288 - Search - River Bank obtained assurances from the attackers that the stolen data in the June attack was deleted

2289 - Search - PNLD Confirms Data Breach Affecting UK Police and Justice Staff

2290 - Search - Alleged Żabka Breach Exposes Jira Data, Source Code, and API Keys

2291 - Search - Ruby on Rails Patches Critical Active Storage Vulnerability Affecting Image Processing

2292 - Search - CareCloud Breach Exposes Medical and Financial Data of 345,000

2293 - Search - SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 108

2294 - Search - Security Affairs newsletter Round 588 by Pierluigi Paganini – INTERNATIONAL EDITION

2295 - Search - CISA Urges Utilities to Remove Internet-Exposed PLCs After Minnesota Attacks

2296 - Search - Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens

2297 - Search - Adobe fixed a maximum-severity vulnerability flaw in Campaign Classic

2298 - Search - South Korea Warns of State-Backed Watering Hole Attacks

2299 - Search - Google AI Supercharges Chrome Security, Fixing 1,072 Bugs

2300 - Search - What an LLM Can Find: A Practical, Cheap Path to Code-level Threat Discovery

2301 - Search - Anthropic Finds Claude Breached Real Companies During Security Evaluations

2302 - Search - SilverFox Targets Japanese Manufacturer With Advanced ValleyRAT Campaign

2303 - Search - Why brand impersonation is becoming an initial access vector

2304 - Search - Cybercriminals Are Leveraging Autonomous AI Offensive Security Agents

2305 - Search - Analog Devices Discloses Data Breach After Unauthorized System Access

2306 - Search - FCC Restricts New Foreign Robots and Inverters Over Security Risks

2307 - Search - Hackers access Booking.com user data, company secures systems

2308 - Search - Inside ZionSiphon: politically driven malware aims at Israeli water systems

2309 - Search - RAMP Uncovered: Anatomy of Russia’s Ransomware Marketplace

2310 - Search - Checkmarx supply chain attack impacts Bitwarden npm distribution path

2311 - Search - Critical CrowdStrike LogScale bug could have allowed file access, but no exploitation was observed

## The Hacker News

View Articles

2312 - Search - 18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool UsersAug 03, 2026Malware / Software Supply ChainCybersecurity researchers have discovered a new set of malicious npm packages that target users of Alibaba developer tools with a cross-platform remote access trojan (RAT) as part of a sophisticated, targeted software supply chain attack targeting Chinese-speaking environments. One of the packages in question is " lib-mtop ," an unscoped package with the same name as a private Alibaba package under the “@ali” scope. Although the npm package was first published sometime in November 2023 with no functionality, three new versions (v1.0.1, v1.0.2, and v1.0.3) were uploaded earlier this March and April. It’s currently not clear if this was the result of a maintainer account takeover or the project developer opting to go rogue. Regardless of how the malicious changes were pushed, the newly added changes feature a loader that’s designed to fetch a remote JavaScript payload using curl and then execute it. The same maintainer account " ch4ce ," whic…

2313 - Search - Google Password Manager Attacks Could Let Malware Hijack Passkey-Protected AccountsAug 03, 2026Authentication / Web SecurityMalware running as an ordinary user on a Windows machine can sign into a victim’s passkey-protected accounts without a fingerprint, a PIN, or anything at all appearing on the victim’s screen. Unit 42 detailed three attack paths against Chrome’s Google Password Manager cloud authenticator, which it calls Pass-ta-key , Silver Pass-ta-key and Golden Pass-ta-key ; the strongest targets the master key protecting the user’s synced passkeys. None of this breaks the cryptography. The attacks go after the code around the passkey: how Chrome stores its device keys, how it re-enrolls a device after that state disappears, and whether the site you are signing into bothers to check that a human was verified at all. The attacks can silently obtain a valid authentication assertion, install an attacker-controlled user-verification key, or extract the 32-byte Security Domain Secret (SDS) used to decrypt synced passkey private keys. The researchers said the last two paths can p…

2314 - Search - INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 FlawsAug 03, 2026Vulnerability / CybercrimeThe INC Ransomware operation has emerged as the “dominant threat actor” exploiting the recently disclosed security flaws in SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances. In a report published over the weekend, Resecurity said it observed the INC Ransomware accelerating its activity since the beginning of August 2026, listing multiple victims on its data leak site. Per statistics listed on Ransomware.Live, the group has claimed 885 victims to date, with the most recent victim listed on August 2, 2026. The attacks are suspected to involve the exploitation of CVE-2026-15409 and CVE-2026-15410 , which could be chained to facilitate arbitrary command execution and take over susceptible devices. Fixes for the vulnerability pair were released by SonicWall in mid-July 2026. The two shortcomings are assessed to have been weaponized as zero-days, with Rapid7 noting that the attacks leveraged the foothold to extract high-value credentials, active session dat…

2315 - Search - ⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS HijacksAug 03, 2026Cybersecurity / HackingThis week kept coming back to permission. A model crossed a boundary. A wallet trusted bad randomness. Webmail kept an intruder around. Public systems, package feeds, hotel networks, and login flows all gave away more than intended. Some of it was clever. Most of it was just access left lying around: old bugs, exposed gear, poisoned dependencies, weak defaults, and tooling that moved from forum chatter to real targets. The full weekly recap report follows. ⚡ Threat of the Week Anthropic Disclosed its Models Targeted 3 Organizations - Anthropic revealed that three of its models, including Claude Opus 4.7, Mythos 5, and an unnamed research model, breached three unnamed organizations during cybersecurity testing without its knowledge. The AI firm said the earliest incidents date back to April 2026, adding it made the discoveries after launching a “large-scale retrospective review” in response to the recent Hugging Face incident. “After reviewing 141,006 evaluatio…

2316 - Search - FOMO in the SOC: Where AI Platforms like Claude Actually FitAug 03, 2026Artificial Intelligence / Enterprise SecurityAI is moving incredibly fast, and every security leader is feeling the pressure to keep up. AI platforms like Claude, Codex and Cursor are already helping security teams write detections, investigate alerts, summarize incidents, and automate repetitive work. The conversation has evolved from whether AI belongs in the SOC, to where each type of AI delivers the most value. With so many new AI products entering the market, it’s easy to assume one tool can solve every problem. In reality, different types of AI are designed for different jobs. Understanding that difference is what transforms AI FOMO into better security outcomes. Join AI SOC: Where Claude belongs in the SOC AI is changing security operations The way security teams work is changing quickly. Attackers are already using AI to generate phishing campaigns, automate malware development, and move faster than ever before. At the same time, defenders are using AI to triage alerts, create detection rules, automate …

2317 - Search - Chinese Threat Actor Uses Leaked DarkSword Kit to Deploy GHOSTBLADE on iOSAug 03, 2026Mobile Security / VulnerabilityAn unknown Chinese-speaking threat actor has been observed running a campaign targeting Apple iOS devices by leveraging a publicly leaked version of the DarkSword exploit kit. Attack surface management platform Censys said it identified the threat actor running more than 100 web properties, most of which are fake Amazon Web Services (AWS) sign-in pages on a domain that also hosts the exploit toolkit. “The hosting concentrates in Hong Kong but reaches into Japan, the United States, and Europe,” Censys researcher Aidan Holland said in an analysis published on July 31, 2026. DarkSword, discovered and detailed earlier this year by Google Threat Intelligence Group (GTIG), iVerify, and Lookout, refers to a full-chain exploit kit that is believed to have been used by commercial surveillance vendors and suspected state-sponsored actors in disparate campaigns targeting Saudi Arabia, Turkey, Malaysia, and Ukraine since at least November 2025. The kit, which specifically tar…

2318 - Search - PNLD Breach Exposes U.K. Police and Government Contact Details on Dark WebAug 03, 2026Data Breach / Dark WebThe Police National Legal Database (PNLD) has confirmed that police, government and customer contact information was compromised and published on the dark web. The data included names, organisations and work email addresses belonging to police officers, police staff, criminal justice professionals, government partners and customers. The incident, identified on July 26, also exposed some names and email addresses belonging to people who had submitted questions through Ask the Police. That exposure could make phishing messages targeting named officers appear more convincing, according to UK government guidance . PNLD said, “There is no evidence to suggest that passwords or other security credentials have been compromised.” The service provides legal information, products and services to UK police forces and criminal justice organisations. It is not the Police National Computer or the Police National Database, is not a crime-recording system, and does not hold confidentia…

2319 - Search - Thermo Fisher Patches Flaw That Could Make DNA File Tampering Nearly UndetectableAug 03, 2026Data Security / VulnerabilityThermo Fisher Scientific has patched a flaw in select Applied Biosystems human identification software that could allow data files to be altered before analysis software loads them. The vendor’s July 31 security bulletin says nearly undetectable changes to .fsa and .hid outputs could occur if laboratory controls are circumvented. Thermo Fisher tracks the issue as CVE-2026-17583 and rates it High with a CVSS v4.0 score of 8.2. Five supported product lines have received updates that add digital signatures, while three end-of-life data collection products will receive no vendor update. Thermo Fisher credits Nathan Adams, Kevin Dyer and Laura Gaydosh Combs, together with the U.S. Cybersecurity and Infrastructure Security Agency, with identifying the issue and coordinating disclosure. Thermo Fisher urged customers to install the applicable updates. For customers unable to implement the updates or use another third-party analysis platform, the company recommends controls coverin…

2320 - Search - N-able Says Attackers Take Over N-central Servers After Initial Fix Proves IncompleteAug 03, 2026Vulnerability / Endpoint SecurityN-able said attackers exploited an authentication bypass in N-central to gain remote administrative access and reach the customer systems managed through those servers. Its first fix was incomplete. CVE-2026-18577 affects N-central builds prior to 2026.3.1.7. N-able shipped build 2026.3.1.7 on August 2 as the first unaffected version. N-central is the remote monitoring and management platform managed service providers and IT teams use to administer customer endpoints. After compromising an N-central server, the attackers used Take Control to reach managed endpoints and registered Cloudflare tunnels as services on the devices. The tunnels connect outbound to Cloudflare’s edge, so they need no inbound firewall rule or open listening port. Running them as services lets them survive a reboot. N-able said the tunnels preserved access after the route through the N-central server was revoked. Nothing in the disclosure suggests Cloudflare was compromised; the attackers abused it…

2321 - Search - Hugging Face Diffusers Flaws Could Let Model Repositories Execute Arbitrary CodeAug 03, 2026Vulnerability / AI SecurityThree high-severity security flaws have been disclosed in Hugging Face’s Diffusers library that could allow crafted model repositories to stealthily execute arbitrary code on machines that load it, opening the artificial intelligence (AI) supply chain to security risk. “These vulnerabilities are bypassing trust_remote_code, the safeguard designed to stop unreviewed code from running in the custom pipelines loading process,” Zafran Labs researchers Gal Zaban and Ido Shani said in an analysis published last week. The shortcomings have been collectively named FaceHugger . With Hugging Face becoming the “GitHub of the AI era” and its libraries and repositories prevalent in enterprise environments, vulnerabilities in libraries like Diffusers can grant attackers extensive access owing to how the library is embedded into production pipelines, CI/CD systems, and container images. Diffusers is a Python package that serves as a library of state-of-the-art (SOT…

2322 - Search - Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 MinutesAug 01, 2026Vulnerability / Threat IntelligenceAn attacker drained 1,196 Bitcoin addresses in 41 minutes on July 30, taking 1,082.65 BTC worth about $70.2 million at the time. Galaxy Research mapped the sweep and tied it to a firmware flaw in Coldcard , the Bitcoin-only hardware wallet made by Canadian firm Coinkite . A March 2021 firmware integration error routed seed generation to a deterministic software pseudorandom number generator (PRNG) instead of the STM32 hardware random number generator (RNG). Block says an attacker who can determine or sufficiently constrain the device UID, timer state, and prior RNG-call history can reproduce candidate output streams offline without accessing the device. Candidate seeds can then be checked by deriving their addresses and comparing them with public blockchain data. Coinkite shipped emergency firmware for every affected model and release track on July 31, but installing it does not repair an existing seed. Coinkite tells owners with exposed seeds to generate a new one on patched f…

2323 - Search - Hackers Poison Adform Script to Swap Crypto Wallet Addresses Across Customer SitesAug 01, 2026Web Security / Supply Chain AttackAttackers modified a JavaScript file served by advertising technology company Adform , turning it into a browser-side tool that rewrites cryptocurrency wallet addresses. Adform detected the incident on July 27, 2026, removed the malicious code, notified affected clients, and reported it to authorities. Anyone who visited a site carrying the affected script on July 27 and copied a Bitcoin, Ethereum, or Tron address may have pasted a different address inserted by the malicious code instead. Adform is telling people to clear their browser cache because the altered file may remain cached after the fix, and to check any wallet address before sending funds. Adform says the code was not designed to install software or establish persistence and operated only while an affected page remained open. The captured sample also rewrites addresses entered directly into form fields, so clipboard copying was not the only path to replacement. The public timeline is unresolved. Adform’s noti…

2324 - Search - Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User InteractionAug 01, 2026Vulnerability / Enterprise SecurityAdobe has released security updates to address a maximum-severity security flaw in Campaign Classic (ACC), its enterprise-focused marketing automation platform, that could result in arbitrary code execution. The vulnerability, tracked as CVE-2026-48449 , carries a severity score of 10.0 on the CVSS scoring system. It has been described as a case of incorrect authorization that could result in arbitrary code execution in the context of the current user without requiring any user interaction. The update also resolves another high-severity flaw ( CVE-2026-48448 , CVSS score: 8.6) stemming from SQL injection that could pave the way for arbitrary file reads. “This update addresses critical vulnerabilities that could result in arbitrary code execution and arbitrary file system read,” Adobe said in an advisory. The company noted that it’s not aware of any of the flaws being exploited in the wild. Both shortcomings have been addressed in ACC v7: 7.4.3 build 9398 for W…

2325 - Search - Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance MalwareAug 01, 2026Malware / Cyber EspionageA fake browser update served over hijacked hotel Wi-Fi has been used to deliver CornFlake , a remote access trojan (RAT) that can capture webcam images, microphone audio, and keystrokes, Microsoft said in its latest report. Researchers track the operation as CaptiveCrunch and attribute it to Storm-2945 . It assesses Storm-2945 to be an operational sub-cluster of Midnight Blizzard , also known as APT29 and Cozy Bear. The U.S. and U.K. governments attribute the broader actor to Russia’s Foreign Intelligence Service (SVR). On the compromised networks ReliaQuest investigated, the captive portal gateway also served as the DNS resolver assigned to connected devices. Administrative control of that gateway let the attackers forge Domain Name System (DNS) answers and redirect the resulting traffic. They could then redirect a laptop’s automatic connectivity check to a fake browser or operating system update. Some pages use ClickFix instructions that tell victims to open a termina…

2326 - Search - New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an Exploit

2327 - Search - Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCs

2328 - Search - Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC

2329 - Search - AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code

2330 - Search - Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail Logs

2331 - Search - Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review Agents

2332 - Search - OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark

2333 - Search - Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data

2334 - Search - Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs

2335 - Search - Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs

2336 - Search - Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers

2337 - Search - Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files

2338 - Search - ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories

2339 - Search - Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say

2340 - Search - Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry

2341 - Search - ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link

2342 - Search - Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller

2343 - Search - Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git

2344 - Search - Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available

2345 - Search - Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable

2346 - Search - How AI-Assisted Attacks Are Breaking Legacy SIEM ToolsAugust 3, 2026Read ➝

2347 - Search - A Look Inside Lasso’s AI Security PlatformJuly 27, 2026Read ➝

2348 - Search - Claude Runs Across Six Surfaces in Your Company. Your Security Team Sees One.July 27, 2026Read ➝

2349 - Search - How to Make Social Engineering UnprofitableJuly 22, 2026Read ➝

## ThreatPost

View Articles

2350 - Search - Student Loan Breach Exposes 2.5M Records

2351 - Search - Watering Hole Attacks Push ScanBox Keylogger

2352 - Search - Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms

2353 - Search - Ransomware Attacks are on the Rise

2354 - Search - Inside the Hackers’ Toolkit – Podcast

2355 - Search - Being Prepared for Adversarial Attacks – Podcast

2356 - Search - The State of Secrets Sprawl – Podcast

2357 - Search - A Blockchain Primer and a Bored Ape Headscratcher – Podcast

2358 - Search - Security Innovation: Secure Systems Start with Foundational Hardware

2359 - Search - Securely Access Your Machines from Anywhere – Presented by Keeper Security

2360 - Search - Log4j Exploit: Lessons Learned and Risk Reduction Best Practices

2361 - Search - How to ID and Protect Sensitive Cloud Data: The Secret to Keeping Secrets

2362 - Search - Cloud Security: The Forecast for 2022

2363 - Search - 2021: The Evolution of Ransomware

2364 - Search - Healthcare Security Woes Balloon in a Covid-Era World

2365 - Search - 2020 in Security: Four Stories from the New Threat Landscape

2366 - Search - Cybercriminals Are Selling Access to Chinese Surveillance Cameras

2367 - Search - Twitter Whistleblower Complaint: The TL;DR Version

2368 - Search - Firewall Bug Under Active Attack Triggers CISA Warning

2369 - Search - Fake Reservation Links Prey on Weary Travelers

2370 - Search - iPhone Users Urged to Update to Patch 2 Zero-Days

2371 - Search - Is your Java up to date?

2372 - Search - Top 5 Tips to Avoid Viruses and Spyware

2373 - Search - U.S. needs to investigate cyberweapons

2374 - Search - Six months later, DNS still taking a hit

2375 - Search - Pwn2Own 2009: Browsers and smart phones are targets

2376 - Search - Telegram Fraudsters Ramp Up Forged COVID-19 Vaccine Card Sales

2377 - Search - How the Pandemic is Reshaping the Bug-Bounty Landscape

2378 - Search - A Cyber ‘Vigilante’ is Sabotaging Emotet’s Return

2379 - Search - Black Hat USA 2020: Critical Meetup.com Flaws Reveal Common AppSec Holes

2380 - Search - Encryption Under ‘Full-Frontal Nuclear Assault’ By U.S. Bills

2381 - Search - Cyber-Spike: Orgs Suffer 925 Attacks per Week, an All-Time High

2382 - Search - PYSA Emerges as Top Ransomware Actor in November

2383 - Search - Encrypted & Fileless Malware Sees Big Growth

2384 - Search - Innovative Proxy Phantom ATO Fraud Ring Haunts eCommerce Accounts

2385 - Search - Women, Minorities Are Hacked More Than Others

2386 - Search - Threatpost Podcast & Video Hub: Going Beyond the Headlines

2387 - Search - Wikileaks Alleges Years of CIA D-Link and Linksys Router Hacking Via ‘Cherry Blossom’ Program

2388 - Search - Bash Exploit Reported, First Round of Patches Incomplete

2389 - Search - Threatpost News Wrap, February 21, 2014

2390 - Search - Jeremiah Grossman on His New Role as CEO of WhiteHat Security

2391 - Search - Threatpost News Wrap, January 24, 2014

2392 - Search - Rich Mogull on the Target Data Breach

2393 - Search - Threatpost News Wrap, January 10, 2014

2394 - Search - 2013: The Security Year in Review

2395 - Search - Lyceum APT Returns, This Time Targeting Tunisian Firms

2396 - Search - National Surveillance Camera Rollout Roils Privacy Activists

2397 - Search - Malware Gangs Partner Up in Double-Punch Security Threat

2398 - Search - How Email Attacks are Evolving in 2021

2399 - Search - Patrick Wardle on Hackers Leveraging ‘Powerful’ iOS Bugs in High-Level Attacks

2400 - Search - Ransomware and IP Theft: Top COVID-19 Healthcare Security Scares

2401 - Search - Experts Weigh in on E-Commerce Security Amid Snowballing Threats

2402 - Search - Cybercriminals Step Up Their Game Ahead of U.S. Elections

2403 - Search - 2020 Cybersecurity Trends to Watch

2404 - Search - Top Mobile Security Stories of 2019

2405 - Search - Facebook Security Debacles: 2019 Year in Review

2406 - Search - Biggest Malware Threats of 2019

2407 - Search - Top 10 IoT Disasters of 2019

2408 - Search - 2019 Malware Trends to Watch

2409 - Search - Top 2018 Security and Privacy Stories

2410 - Search - 2019: The Year Ahead in Cybersecurity

2411 - Search - 2018: A Banner Year for Breaches

## CSO Online

View Articles

2412 - Search - blogCSO Security CouncilExpert insights and strategic guidance for CISOs on emerging threats, AI risks, zero trust and enterprise security leadership. This blog is part of the Foundry Expert Contributor Network. Want to join? Learn more here: https://www.csoonline.com/exper...201 articles

## Troy Hunt

View Articles

2413 - Search - why I chose to use Ghost

## AFCEA Signal Media

View Articles

2414 - Search - The Cyber Edge Writing Award