
Security researchers have disclosed new “Plug and Pwn” attacks that abuse the Windows Plug and Play feature to trigger Windows into installing vulnerable or insecure vendor software and gain SYSTEM privileges. […]


Lead times of nine to 12 or even 18 months. Costs rising by 35%, 45%, even 50% to 200%. More than halfway through 2026, the market for IT infrastructure that’s crucial for enterprise projects, including those involving artificial intelligence, is strapped. Memory is at the root of the shortages. Memory prices “have risen by 50%…
Hackers who steal compromising images of you from social media and personal accounts are selling them on the dark web. Here’s how to protect yourself.
Google’s new flagship Pixel series was just announced, and T-Mobile has plenty of preorder offers to choose from.
We’ve got the scoop on where you can preorder the latest Google devices announced at Made by Google, including the Pixel 11 lineup and the Pixel Watch 5.

Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privileges associated with the user an attacker could then install…

A vulnerability has been discovered in Zoom Clients that could allow for remote code execution. Zoom is a cloud-based communications platform that allows users to connect via video, audio, chat, and content sharing. Successful exploitation could allow an attacker to target meeting participants, execute code without user interaction, steal data, activate cameras or microphones, and…

Generative artificial intelligence (GenAI) has rapidly changed software development by allowing developers to generate functional code faster and at greater scale. However, Veracode’s 2026 GenAI Code Security Report reveals a disconnect between improvements in AI coding capability and improvements in security. Although modern large language models (LLMs) can produce syntactically correct code almost perfectly, their…

Researchers have found three vulnerabilities in the popular Zoom meeting platform that could let one meeting participant attack another through malicious collaboration data. The vulnerabilities, tracked as CVE-2026-53413, CVE-2026-53414, and CVE-2026-53415, affect the code Zoom uses to process annotation data shared during meetings. The researchers named the set of flaws “Zoomsday.” Affected applications are: Zoom…
A couple of days ago, Xavier posted about Atuin to gain more insight into the command history. Atuin does a great job of better organizing what is usually handled by “bash_history” and collecting meaningful additional data. Our reader David commented that this can also be done quite well with Linux’s kernel process accounting feature, and I…
Google’s latest Pixel phones are here, and we found the best cases to protect your new Pixel 11, Pixel 11 Pro, Pixel 11 Pro XL, or Pixel 11 Pro Fold.
The exploited zero-day flaw could allow an attacker to gain system privileges on a Windows PC.
The FBI warns that cybercriminals are targeting adults’ and children’s social media and other online accounts to steal sexually explicit images or videos. […]

A massive set of 737 free VPN and proxy extensions have been found to mainly target Russian-speaking users seeking access to blocked services with an aim to intercept browser traffic and route them through a proxy infrastructure. The extensions, published across at least 40 Chrome Web Store developer accounts, racked up 75,486 installs. Of those…
The Google Pixel Watch 5 is a big upgrade over its predecessor, but is it enough to take on the Apple Watch Series 11?
Fake remote workers can exploit gaps between hiring checks, device delivery, and account access to enter organizations under false identities. Specops Software explains how document verification and biometric liveness checks can help organizations confirm that the person receiving access is the legitimate new hire. […]
The two Google and Apple phones go neck to neck against each other, but only one will suit your needs.
Strength training is all the buzz. Google built a special exercise experience into the Pixel Watch 5 to make it easier to get started.
If you passed on the Pixel 10 in favor of your Pixel 9, you may find the latest Google Pixel 11 a more compelling upgrade.
Verizon is offering several deals on the Pixel 11 line – find out how to preorder yours now.
The Pixel 11 and the Galaxy Z Fold 8 offer very different user experiences. Which is for you? Here’s how they compare.
Although the design is largely unchanged, the Pixel 11 packs meaningful upgrades, including the Tensor G6 chip and improved cameras.
I compared the top Android smartwatches of the year arriving to the market only weeks apart.
Samsung’s Galaxy Z Fold 8 is one of my favorite phones of the year. Here’s how it compares to Google’s new book-style foldable.
Both models are large and boast the best from each manufacturer, but which one makes the most sense for your needs?
Google’s new finder tags use an emerging Bluetooth technology to stand apart from competing devices made by Apple and Samsung.
Google’s new Pixel 11 Pro Fold comes hot on the heels of Samsung’s successful Ultra foldable. Here’s how the two stack up.
Google’s new Pixel 11 Pro has a lot going for it, but how does it stack against Samsung’s Galaxy S26?
Google’s latest Pixel lineup is a little pricier, has a new LED lighting feature, and debuts alongside a new finder tag.
It’s not as cutesy and charming as the Galaxy Z Fold 8, but the latest Pixel foldable is still the top choice for key aspects.

Most security stories start with something broken. This one starts with everything working as designed. Researchers at Reco have been tracking a campaign they call City-Forum, named after a domain registered in 2002, abandoned, and now resolving to a generic rented server from a German hosting provider. From that server, someone has been pulling records…
Both are astonishingly capable, but subscription choices, coding environments, and hidden ecosystem advantages could make one better for you personally.
Microsoft’s August 2026 Patch Tuesday addresses 421 Microsoft vulnerabilities, including 62 rated Critical. One Windows vulnerability has been exploited in the wild by the Lazarus group to gain SYSTEM privileges. The August update is smaller than July’s record-breaking release, but it’s still among Microsoft’s largest Patch Tuesday batches. More importantly, it includes several flaws likely…

Signal has introduced a feature called automatic key verification, giving users a new way to confirm that nobody has secretly interfered with their encrypted chats. “Signal is always end-to-end encrypted, and automatic key verification provides an additional, streamlined way to confirm that there’s no unexpected party between you and the other ‘end’ of an end-to-end…

ScienceLogic has announced Skylar AI 2.5, expanding secure deployment options for organizations with stringent security, sovereignty, and compliance requirements, while introducing enhancements that strengthen AI performance, operational intelligence, and enterprise integrations. The release further improves AI accuracy, platform performance, and natural language user experience across the ScienceLogic AI Platform. Serving as the intelligence layer of…

Deloitte has expanded AI Controls and Assurance services and solutions designed to help organizations confidently adopt, scale and govern AI across the enterprise. From early exploration to enterprise deployment, Deloitte’s enhanced services provide end-to-end support across the AI lifecycle, combining advisory and assurance services across governance frameworks and AI-enabled transformation to help organizations manage risk…
Every day, your SOC drowns in isolated alerts — a suspicious login here, an odd process spawn there, a strange outbound connection somewhere else. Individually, each one looks like noise. Together, they might be the early signature of a coordinated adversary campaign already unfolding inside your environment. The problem isn’t a lack of data —…
ThreatDown found that 74% of organizations are exposed to shadow AI, highlighting a widening governance gap as employees adopt unsanctioned AI tools beyond the visibility of IT and security teams. Shadow AI exposure reveals enterprise visibility gaps Shadow AI refers to the unsanctioned use of AI tools, models, and browser features by employees without organizational…
Cisco has disclosed a high-severity vulnerability in Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) software that is already being exploited in the wild. Tracked as CVE-2026-20349, the flaw carries a CVSS score of 8.6 and allows an unauthenticated remote attacker to force an affected firewall to reload, resulting in a…
Microsoft’s August 2026 Patch Tuesday addresses hundreds of security vulnerabilities, but one issue stands out because attackers were already exploiting it before a fix became available. CVE-2026-68820 is a high-severity elevation-of-privilege vulnerability in the Windows Ancillary Function Driver for WinSock, or AFD.sys, that can allow a local attacker to escalate privileges to SYSTEM. The flaw…
Aptoide Games just landed in the Play Store – no sideloading required. I tested it, and caution is advised.

Apple is in the process of tweaking its business models to cope with the unyielding memory price and availability crisis. Its response is now emerging across multiple fronts. Finance or lease The company’s recently-introduced Apple Upgrade scheme in partnership with Klarna is a smart response to the reality that as devices inevitably become more expensive, consumers will…

Security information and event management (SIEM) solutions help organizations collect and analyze data across IT and cybersecurity systems to detect threats, investigate suspicious activity, and manage security risks. The best SIEM solutions also support real-time monitoring, compliance requirements, and faster incident response by giving security teams greater visibility into their environments. To help you find…

The North Korea-linked Lazarus group is using fake job offers, trojanized PDF software and a Windows zero-day in attacks aimed primarily at the defense sector, Check Point researchers have found. The activity is part of Operation Dream Job, a long-running campaign in which attackers pose as recruiters and lure targets with job opportunities at well-known…

A newly disclosed flaw in the way OpenAI, Anthropic, and Google carried hidden AI reasoning between API calls let researchers recover internal reasoning and secrets from session logs, including API keys and passwords. The weakness affected encrypted reasoning objects used by the providers’ reasoning APIs, where a block created in one session could be replayed…

Enterprise defenses are tuned to catch the attacks that make noise. This year’s data shows attackers winning by making none. According to Picus Labs’ new Blue Report 2026, which measured more than 338 million real attack simulations across actual client production environments in the first half of 2026, defenses are having one of their strongest…
The main reason I switched to Mint was that the service uses the same 5G and LTE networks as T-Mobile. So why pay a lot more for basically the same service?

A convincing fake version of the widely used CCleaner utility is being used to deliver a multi-stage Windows malware that ultimately abuses Google Chrome for credential theft and surveillance. Researchers from Malwarebytes found the campaign distributing a malicious Chrome extension called GhostDesk, which can capture credentials, cookies, keystrokes, and screenshots while also allowing attackers to…

Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic that, if successfully exploited, could result in arbitrary code execution and privilege escalation. The most severe of the flaws are listed below – CVE-2026-48362 (CVSS score: 10.0) – An operating system command injection vulnerability in ColdFusion that could

It’s likely that many enterprises have created — or are at least considering — AI policies that clearly lay out approved AI tools and their uses, set up training programs for employees to help them use the tools in their jobs, and establish guardrails around those systems to avoid issues such as security vulnerabilities and…

Zaelab, a digital consultancy for complex enterprises modernizing CX and revenue operations, has been selected by Anthropic as a delivery partner to help enterprises turn AI pilots into production-ready solutions. Zaelab targets the AI pilot-to-production gap This combination will bring together Zaelab’s enterprise delivery experience with Anthropic’s Claude models, helping organizations move AI from proof…
July 2026 was full of executive shifts, including roles aimed at expanding platforms and global reach. Read more about the leadership appointments from organizations such as OpenAI, Databricks, and DDN below. Don’t forget to go back and check out Part 1 of our July 2026 Leadership Recap. OpenAI hires Philip Larson as Senior Director of…

OpenAI has released GPT-5.6-Cyber, a cybersecurity-specific model designed to handle advanced defensive work that general-purpose models often refuse, including exploit validation, vulnerability research, and exploit-chain development. The model is available through Daybreak Red, a restricted access tier for vetted defenders conducting authorized security testing. In OpenAI’s internal testing, GPT-5.6-Cyber completed 95% of advanced cyber requests,…

Technology provider C Spire has earned the Cisco Secure Networking Specialization in the US – one of four organizations in the country to achieve the designation. Specialization builds on a 19-year Cisco partnership In receiving this designation, the 19-year Cisco partner underwent a comprehensive three-day assessment of its technical capabilities, service delivery processes, and customer…

The MSP merger and acquisition market continues to attract private equity and strategic buyers, but service providers hoping to capitalize on that demand must prepare their businesses—and themselves—well before entering a transaction. MSP valuations remain at six to eight times EBITDA Speaking at GTIA ChannelCon 2026, Craig Fulton, M&A advisor at Evergreen, said buyer interest…
NVIDIA is bringing some of Wall Street’s biggest firms into the race to finance AI data centers and compute. The chipmaker has teamed up with BlackRock, Goldman Sachs and other financial heavyweights on a plan that could mobilize more than $500 billion for AI compute over time. The company has signed memorandums of understanding with…
As enterprises accelerate AI adoption, fragmented tools, inconsistent governance, and disconnected workflows are creating new operational challenges—and expanding the role of channel partners. Sandro Guedes, global director of partnerships at Pipefy, said partners are increasingly being called on not just to sell AI technologies, but to help customers integrate them, establish governance, and drive adoption…
Security work used to leave a trail without anyone trying. A developer who wanted an open source library went and got it, and the license came along. An analyst who closed a case wrote down why. The record was a byproduct of a person doing the work. Related: Part 2 — Deciding what an AI…

Intel is striking while the iron is hot, cashing in on its massive stock rally to finance the factories and technology needed for the next wave of computing. The chipmaker is taking advantage of its stock-market rebound to put nearly $20 billion more cash behind an increasingly expensive manufacturing strategy. In a press release, Intel…
Microsoft’s August 2026 Patch Tuesday delivered security fixes for 400+ vulnerabilities, including one that has been exploited in zero-day attacks (CVE-2026-68820) and three that were publicly disclosed prior to the release of the patches. Vulnerabilities of note CVE-2026-68820 is a use-after-free flaw that affects the Windows Ancillary Function Driver for WinSock (AFD.sys) and allows a…
If you regularly find yourself in a situation where you’ve left your glasses behind and you need to read fine print or something far away, Google has an app right up your alley.

Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO. The vulnerability in question is CVE-2026-59310 (CVSS score: 9.8), a directory-traversal vulnerability in the VMware vCenter server that a malicious actor with network access can exploit to execute arbitrary code. Patches for…

ConnectSecure has announced that Microsoft 365 Auto Remediation and AI-powered Training Assessments are now live on the ConnectSecure platform. The capabilities help managed service providers (MSPs) address supported M365 security findings, create and measure assessments, support client training and strengthen security posture from one platform. The launch advances ConnectSecure’s focus on proactive, unified protection for…

Artificial intelligence (AI) has quickly become a strategic priority for enterprise security teams. Yet despite growing investment in AI-driven security software, many enterprise SOCs are struggling to translate AI into measurable operational improvements. The issue isn’t whether AI belongs in the SOC. It does. The challenge is that many organizations are approaching AI adoption in…

CBTS has launched Penetration Testing as a Service (PTaaS), combining autonomous penetration testing with security expertise to help organizations continuously identify exploitable risks, validate attack paths, and prioritize remediation as their environments evolve. Cloud environments, SaaS applications, connected systems, third-party relationships and AI systems are expanding enterprise attack surfaces faster than traditional testing cycles can…

Crytica Security has developed a patented solution that delivers rapid, deterministic threat detection for operational technology (OT), protecting the embedded systems and connected devices that underpin critical infrastructure, national security, and healthcare without disrupting operations. The need is becoming increasingly urgent as cybersecurity moves toward machine speed. IBM’s Cost of a Data Breach Report 2026…

Google Chrome’s latest measures against abusive web push notifications include automatically revoking notification permissions for inactive and suspicious websites, helping reduce scams, phishing attempts, and other deceptive content. Abusive notifications (Source: Google) Chrome revokes notification permissions for websites users have not recently interacted with and for sites that Google Safe Browsing identifies as engaging in…

Kimwolf v7: The Android TV Botnet That Now Hides Its Traffic Behind Chrome Fingerprints and Ethereum Palo Alto Networks Unit 42 discovered Kimwolf v7 on February 3, 2026, while hunting threats following public disclosures of the botnet’s earlier activity. The new version substantially upgrades the DDoS capabilities and command infrastructure of a botnet that has…

Ask a security researcher what makes an AI agent dangerous, and the instinct is to talk about the model — what it will and won’t refuse, how easily it can be jailbroken, whether its weights can be trusted. That instinct is increasingly out of date. A growing body of security research — exploit demonstrations, independent…
A little wind noise, a little connectivity flakiness, and a little lip-sync issues from YouTube, but look at that view! 🤩 Back to business, it’s the Brinks Home FAQ I found most interesting this week. I mean, how do you write your own FAQ then fail to actually answer most of the questions?! Being conscious…
Chaotic Eclipse released a PoC for ShieldBreak, a Microsoft Defender zero-day that bypasses the CVE-2026-50656 patch and could enable SYSTEM-level code execution. Security researcher Chaotic Eclipse, also known as INFINITE NIGHTMARE, MSNightmare and Nightmare-Eclipse, released a PoC for ShieldBreak, a Microsoft Defender zero-day. The flaw bypasses the patch for CVE-2026-50656 (RoguePlanet), a race condition that…

Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed them. Threat intelligence firm CloudSEK now says a dataset it obtained, built from roughly 434,000 files the attackers captured, maps potential…
Threat monitoring serves as the vital connective tissue of modern security operations. It ensures that every function from triage to response operates effectively. To meet evolving threat challenges, SOC teams and MSSPs must transition from simple log collection to a proactive, intelligence-driven framework. ANY.RUN’s Threat Intelligence provides the essential solutions to power this transformation across…
Spanish police have arrested a man in Murcia accused of using deepfake software to trick a certificate provider’s video identity checks in an attempt to obtain digital signatures he could use for financial fraud. According to the police, the man made 38 attempts using this method on more than 30 citizens. Police haven’t said how…
AI video generation is moving beyond short experimental clips. Creators now expect these tools to handle more than a simple text prompt and a few seconds of animation.

SAP has released patches to address a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter) that could result in arbitrary code execution. The vulnerability, assigned the CVE identifier CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It has been described as a case of insufficient authorization checks and input validation. “SAP Commerce Cloud…