Agenda

What is happening in the industry?

Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.

Search
6 sources, 48 stories last updated 29.07.2026 13:28
Security BleepingComputer

Dysphoria botnet spreads to 200,000 devices, used for DDoS and traffic relay

The Dysphoria botnet has taken control of about 200,000 devices worldwide to conduct DDoS attacks and relay traffic. MSPs and sysadmins should watch for unusual outbound traffic and abuse, ensure vulnerable devices are patched or isolated, and apply edge filtering or rate limits to reduce impact.

27 Jul 2026 bleepingcomputer.com
Security Microsoft

Microsoft unveils Project Perception, a security stack for the AI era

Microsoft introduced Project Perception as a new cyber security stack tailored for the AI era. As AI workloads and threats evolve, telemetry, detection and control models need updating; managed service providers and sysadmins should plan for greater visibility and automation.

27 Jul 2026 blogs.microsoft.com
Security Cloudflare

Cloudflare open-sources pvcli CLI for testing OHTTP and privacy protocols

Cloudflare published pvcli as an open-source command-line tool that offers a curl-like interface to simplify testing of privacy protocols such as OHTTP. For server admins and MSPs it helps validate implementations, simulate requests, troubleshoot privacy proxies and integrate tests into automation.

27 Jul 2026 blog.cloudflare.com
Security Microsoft

Q2 2026 email threats: trends after Tycoon2FA disruption

Microsoft's action against Tycoon2FA coincided with declines in several common phishing methods. Attackers moved into Teams-based social engineering and increasingly used automated, multi-stage attack chains; MSPs and sysadmins should monitor Teams traffic, automation indicators and multi-stage attack signs rather than rely solely on email filters.

23 Jul 2026 microsoft.com
Security Microsoft

Microsoft and AXA XL launch collaboration on incident response

Microsoft is partnering with AXA XL to provide cyber insurance policyholders access to Microsoft Incident Response services. The alliance is designed to help organizations coordinate technical response, business actions and insurance workflows to strengthen resilience against incidents.

22 Jul 2026 microsoft.com
Security Krebs on Security

LG to ban residential proxy use in smart TV apps

LG Electronics USA plans to suspend smart TV apps that turn televisions into always-on residential proxy nodes. Researchers found about 42% of apps in the webOS store allowed third parties to route users' traffic, creating bandwidth, security and abuse risks that MSPs should watch for.

22 Jul 2026 krebsonsecurity.com
Security Cloudflare

Cloudflare WAF blocks two high-severity WordPress vulnerabilities

Cloudflare implemented two new WAF rules after the WordPress security team reported two high-severity flaws. The rules filter traffic for customers running affected WordPress versions, but administrators should still deploy the vendor patch immediately for their servers and clients.

17 Jul 2026 blog.cloudflare.com
Security Microsoft

Microsoft at Black Hat USA 2026: Focus on AI-era and supply chain threats

Microsoft Security will be at Black Hat USA 2026 with supply chain research, hands‑on security sessions, expert discussions and a reception. The event gives MSPs and sysadmins practical insight into AI-driven risks and supply‑chain attacks, plus training and networking opportunities.

17 Jul 2026 microsoft.com
Security Microsoft

Increase in ACR Stealer campaigns using ClickFix lures to steal credentials and documents

From late April to mid-June 2026 Microsoft Defender Experts recorded a rise in ACR Stealer activity. Campaigns use ClickFix-themed lures to harvest browser credentials, authentication tokens and sensitive documents; MSPs and sysadmins should prioritize credential/token protection and monitoring for related indicators.

16 Jul 2026 microsoft.com
Security Microsoft

Restricting AI agents with identity, access controls and tool binding

Microsoft highlights the need to limit privileges for autonomous AI agents using strong identity, access controls, tool binding and audit logging. For MSPs and sysadmins, scoping agent permissions and keeping audit trails lowers the risk of unauthorized access or harmful actions on customer infrastructure.

16 Jul 2026 microsoft.com
Security Krebs on Security

Microsoft releases patches for more than 570 security flaws

Microsoft issued updates that fix at least 570 vulnerabilities in Windows and other products, nearly three times the number patched last month. The company attributes part of the increase to AI-assisted discovery; MSPs and sysadmins should test and deploy these updates promptly and watch for compatibility or regressions.

14 Jul 2026 krebsonsecurity.com
Security Cloudflare

DNSSEC key rollover disrupted .al; 1.1.1.1 signals bypass with EDE 33

A failed DNSSEC key rollover caused an outage for the .al TLD. Cloudflare used a Negative Trust Anchor to restore resolution, and 1.1.1.1 now returns EDE 33 in DNS responses to indicate when DNSSEC validation was bypassed — useful for MSPs and sysadmins to detect and report validation skips.

14 Jul 2026 blog.cloudflare.com
Security Krebs on Security

CISA GitHub leak: contractor's AWS GovCloud keys exposed for months

A contractor left internal CISA credentials, including AWS GovCloud keys, in a public GitHub repository for nearly six months before the problem was reported. CISA’s postmortem points to shortcomings in the agency’s response and third-party oversight; MSPs should reinforce secret management, repository scanning and continuous monitoring to prevent similar incidents.

13 Jul 2026 krebsonsecurity.com
Security Krebs on Security

Startup buying zero-days run by individuals with criminal past

Krebs on Security reports a startup offering millions for zero-day flaws in popular software is operated by people with criminal records who previously ran fake intelligence firms and a defunct AI lobbying project under aliases. For MSPs and server admins this raises the risk from vulnerabilities traded via opaque buyers and underscores the need to review supplier trust, patching and monitoring practices.

08 Jul 2026 krebsonsecurity.com
Security Krebs on Security

FBI seizes NetNut proxy infrastructure and domains tied to Popa botnet

The FBI, working with industry partners, took control of hundreds of domains tied to NetNut. NetNut is a residential proxy service run by Alarum Technologies [NASDAQ: ALAR]; the move followed reporting that linked NetNut to the Popa botnet, which involves at least two million compromised devices. MSPs and server admins should monitor outbound proxies, tighten filtering and scan endpoints for compromise.

02 Jul 2026 krebsonsecurity.com

Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.