Software

As if PCs weren’t expensive enough already, Microsoft is reportedly now charging OEMs more for Windows licenses

Taiwanese news site United Daily News reports that, according to one source, Microsoft is charging Original Equipment Manufacturers (OEMs) significantly more for Windows licensing fees this year than in previous years (via Wccftech). These are the fees that PC makers, for instance, must pay to Microsoft to package their machines with the operating system. UDN […]

As if PCs weren’t expensive enough already, Microsoft is reportedly now charging OEMs more for Windows licenses Read More »

Cisco warns of high-severity ClamAV flaws with public exploits

Cisco warned of two high-severity vulnerabilities affecting the Secure Endpoint Connector that allow threat actors to crash the ClamAV scanning process in denial-of-service (DoS) attacks. The security flaws (tracked as CVE-2026-20337 and CVE-2026-20338) were found in the ZIP archive parser of ClamAV (Clam AntiVirus), the open-source and cross-platform engine used to scan files for malware.

Cisco warns of high-severity ClamAV flaws with public exploits Read More »

Firefox stunts on Edge as Microsoft gears up to neuter adblockers: ‘uBlock Origin isn’t going anywhere’

Earlier this year, Google Chrome annoyed a whole lot of adblock users by killing support for Manifest V2 extensions. It’s a Manifest V3 world now, which means the permissions and APIs that thoroughgoing adblockers like uBlock Origin rely on are a thing of the past on Chrome (it’s since been replaced by a pared-down version:

Firefox stunts on Edge as Microsoft gears up to neuter adblockers: ‘uBlock Origin isn’t going anywhere’ Read More »

US and South Korea warn of Gunra ransomware targeting govt agencies

U.S. federal agencies and South Korea’s National Policy Agency warned government and critical infrastructure organizations worldwide to secure their systems against Gunra ransomware attacks. In a Monday joint advisory, they said the ransomware group uses a malware variant based on the Conti ransomware source code leaked in February 2022, in attacks targeting a wide range

US and South Korea warn of Gunra ransomware targeting govt agencies Read More »

When Credentials Are No Longer Enough: Device Trust in the AI Era

Identity security is under growing strain. The passwords, multi-factor authentication (MFA) responses, IP reputation, geolocation and browser characteristics organizations have traditionally used to judge whether a login is legitimate are becoming easier for attackers to steal, imitate or work around. AI is adding to that pressure, not by creating a completely new class of attack,

When Credentials Are No Longer Enough: Device Trust in the AI Era Read More »

CISA: SonicWall SMA1000 flaws now exploited by ransomware gangs

CISA has confirmed that ransomware gangs have begun exploiting two recently patched SonicWall SMA1000 vulnerabilities, including a maximum-severity server-side request forgery (SSRF) flaw. ​SMA1000 is an enterprise-grade secure remote access gateway used by large corporations, government agencies, and Managed Service Providers (MSSPs) to provide VPN access to internal applications and corporate networks. SonicWall released patches

CISA: SonicWall SMA1000 flaws now exploited by ransomware gangs Read More »

New StormEncryptor ransomware used by former Medusa affiliate

A financially motivated threat actor previously associated with the Medusa ransomware operation is now deploying a new ransomware strain called StormEncryptor. Microsoft Threat Intelligence is tracking the actor as Storm-1175 and says the recent attacks were likely preceded by exploitation of an authentication-bypass vulnerability (CVE-2026-18577) in the N-central remote monitoring and management (RMM) tool. Storm-1175

New StormEncryptor ransomware used by former Medusa affiliate Read More »

OpenAI releases ChatGPT 5.6 Cyber, but it’s only for approved users

OpenAI has developed a new model called “GPT 5.6 Cyber,” designed for vulnerability research, penetration testing, and incident response. OpenAI says GPT 5.6 Cyber is only available to select companies, including Accenture, IBM, Capgemini, Cognizant, EY, KPMG, PwC, NCC Group, and SpecterOps. It’s also rolling out to supported security vendors, including Palo Alto Networks, CrowdStrike,

OpenAI releases ChatGPT 5.6 Cyber, but it’s only for approved users Read More »

BdThemes plugins supply-chain hack creates rogue WordPress admins

A threat actor compromised the upstream infrastructure of BdThemes, a developer of premium WordPress web-design tools, and modified a remote JSON feed delivered to administrators’ browsers to create rogue admin accounts. Starting Saturday, the affected BdThemes products were no longer available for download after the WordPress Plugins team closed all of them pending a full

BdThemes plugins supply-chain hack creates rogue WordPress admins Read More »

Hackers breached a small Polish energy plant via private APN last year

Hackers used a dedicated mobile gateway to compromise a second facility during the destructive cyberattacks that hit Poland’s energy sector last year. The second target was a small combined heat-and-power (CHP) plant that supplies heat to around 50,000 residents, resulting in the steam turbine and the water treatment system being shut down. The Polish Computer

Hackers breached a small Polish energy plant via private APN last year Read More »