Software

CISA orders urgent action on actively exploited Langflow RCE flaw

The Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday ordered U.S. government agencies to prioritize patching an actively exploited vulnerability in the Langflow visual framework for building AI agents. Tracked as CVE-2026-0770, this critical security flaw allows unauthenticated threat actors to gain remote code execution as root in low-complexity attacks. “The specific flaw exists within […]

CISA orders urgent action on actively exploited Langflow RCE flaw Read More »

US judge closes the book on first big AI copyright suit, ordering Anthropic to pay $1.5 billion settlement

One reason I’m so anti-generative AI is because many models rely on a data set containing written or visual work used without the original creator’s permission. As a writer myself, it’s a small comfort then that the copyright suit brought against Anthropic has been settled in favour of the author plaintiffs. Anthropic leveraged a library

US judge closes the book on first big AI copyright suit, ordering Anthropic to pay $1.5 billion settlement Read More »

Valve puts some elbow grease into Steam Remote Play—maybe one day you won’t have to install additional tools to get the best in-home game streaming experience

I don’t think I’ve encountered anyone, in the wild, who actually uses Steam’s Remote Play game streaming feature since the days of the hardware Steam Link (and what tremendous days they were). In 2026, I think most people making use of in-home streaming tend to default to programs like Apollo and Moonlight. But Valve keeps

Valve puts some elbow grease into Steam Remote Play—maybe one day you won’t have to install additional tools to get the best in-home game streaming experience Read More »

Stop renting storage space — this lifetime 2TB plan is yours for $59

Cloud storage costs tend to creep up over time, since most services charge monthly or annually for as long as you use them. FileJump’s Lifetime Plan skips that model entirely, offering 2TB of cloud storage for a single payment of $59 (MSRP $467). The plan includes zero-knowledge encryption, meaning files are encrypted on your device

Stop renting storage space — this lifetime 2TB plan is yours for $59 Read More »

Microsoft to stop Exchange 2016 / 2019 security updates in October

Microsoft has reminded customers that it will stop shipping security updates for Exchange 2016 and 2019 through the Extended Security Update (ESU) program in October. This comes after a 6-month extension announced in April 2026 to the original ESU program, which began in October after Exchange Server 2016 and 2019 reached the end of support.

Microsoft to stop Exchange 2016 / 2019 security updates in October Read More »

Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era

Glow, a cybersecurity startup founded by former Meta and Snowflake executives, emerged from stealth as a unicorn, betting that artificial intelligence is reshaping how enterprises secure employee devices. The Palo Alto-headquartered startup on Wednesday said it raised $180 million in an all-equity Series A funding round that valued it at $1.2 billion, with backing from

Glow emerges from stealth at $1.2B valuation to challenge endpoint security in the AI era Read More »

Chick-fil-A discloses data breach after credential stuffing attacks

American fast food restaurant chain Chick-fil-A is notifying an undisclosed number of customers of a data breach after their accounts were hacked in a wave of recent credential stuffing attacks. Self-described as the third-largest quick-service restaurant company in the United States, Chick-fil-A operates a network of more than 3,000 restaurants and provides catering services across the

Chick-fil-A discloses data breach after credential stuffing attacks Read More »

OpenAI says its AI models hacked Hugging Face during testing

OpenAI says its AI models, including GPT‑5.6 Sol and a pre-release model, hacked into the Hugging Face artificial intelligence repository while being tested in a sandboxed testing environment. As the company explained, instead of focusing on finding a solution for the ExploitGym public AI cybersecurity benchmark on their own, the AI models tried to cheat

OpenAI says its AI models hacked Hugging Face during testing Read More »

Closing the Identity Gaps in Critical Infrastructure Security

In May 2021, the Colonial Pipeline ransomware attack showed how quickly a compromised account can become a national issue. The attackers reportedly achieved initial access through an inactive VPN account without multi-factor authentication (MFA), hit business systems including billing infrastructure, and triggered a shutdown that disrupted fuel supply across the U.S. East Coast. Five years

Closing the Identity Gaps in Critical Infrastructure Security Read More »

Critical wp2shell WordPress flaws exploited to install webshells

Hackers are exploiting the “wp2shell” critical vulnerability suite (CVE-2026-63030 and CVE-2026-60137) affecting WordPress Core to deploy persistent webshells and install malicious plugins on affected servers. The critical exploit chain abuses the WordPress REST API’s batch-processing feature, allowing remote attackers to execute code on vulnerable installations without the need to authenticate. Although the technical details were

Critical wp2shell WordPress flaws exploited to install webshells Read More »