Agenda

What is happening in the industry?

Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.

Search
6 sources, 1000 stories last updated 16.09.2026 16:45
Security Microsoft

ASCII smuggling: using invisible characters to bypass email filters

Microsoft reports that the ASCII smuggling method—known from AI prompt injection—has been repurposed to evade email defenses using invisible Unicode chars. Attackers insert hidden characters inside words to disrupt content scanning and signature detection, so mail flow rules, spam/antiphishing controls and detection/incident procedures should be reviewed.

03 Sep 2026 microsoft.com
Security BleepingComputer

HPE patches ArubaOS-CX remote code execution flaw

HPE released a patch for a critical vulnerability in the ArubaOS-CX network OS that could enable remote code execution. MSPs and sysadmins should apply the update immediately; if patching isn't possible, restrict management access and monitor network traffic and device logs. Check the vendor advisory for affected versions.

03 Sep 2026 bleepingcomputer.com
Security The Hacker News

NSO Group's Pegasus infected a Serbian student movement member's iPhone

A joint analysis by Citizen Lab and the SHARE Foundation found NSO Group's Pegasus on an iPhone owned by a Serbian student movement member, delivered via an iMessage attack that required no user interaction. Because zero-click compromises can evade typical defenses, MSPs and sysadmins should review mobile device management, patching and monitoring for related indicators.

03 Sep 2026 thehackernews.com
Industry The Register

Uber exits Nigeria and Uganda markets

Uber has stopped operating in Nigeria and Uganda. For MSPs and sysadmins this requires reviewing region-specific services: decommissioning or migrating endpoints, handling credential and billing fallout, and checking integrations with local payments and data residency commitments to avoid customer impact.

03 Sep 2026 theregister.com
Infrastructure / Cloud The Register

Windows 11 update causes unintended dark theme switch on some desktops

A recent Windows 11 update caused some desktops to switch unexpectedly to a dark theme or altered color settings. MSPs and sysadmins should identify affected devices and plan rollbacks or use Group Policy/Intune/SCCM to restore settings and control the update centrally.

03 Sep 2026 theregister.com
Industry The Register

Windows 95 taskbar or NeXT Dock? New finding rules out both

A registry inspection prompted a renewed debate over whether the Windows 95 taskbar or the NeXT Dock came first; the evidence found does not support either being a direct predecessor. No immediate operational risk for admins, but a useful reminder that legacy artifacts and registry data can reveal surprising provenance details.

03 Sep 2026 theregister.com
Security The Hacker News

Chaotic Eclipse releases FalconFlank PoC showing privilege escalation in CrowdStrike Falcon

Researcher Chaotic Eclipse published a FalconFlank PoC that abuses the Office macro remediation mechanism in the CrowdStrike Falcon sensor to achieve local privilege escalation. This weakness could allow attackers to leverage endpoint protection to gain higher privileges and move within customer environments; MSPs and admins should monitor sensor updates and settings.

03 Sep 2026 thehackernews.com
Infrastructure / Cloud BleepingComputer

KB5120998: mouse settings reset bug affects only non-English Windows 11

Microsoft says the known issue that restores mouse preferences after installing KB5120998 (August 2026 preview) occurs only on non-English Windows 11 builds. Admins and MSPs should test the preview before wide deployment or consider delaying to avoid user configuration loss.

03 Sep 2026 bleepingcomputer.com
Artificial Intelligence BleepingComputer

OpenAI confirms ChatGPT and Codex outage ahead of Astra launch

OpenAI acknowledged a widespread outage affecting ChatGPT and Codex, with many features returning errors. The disruption occurred just before the 'Astra' model launch; MSPs and sysadmins should check API availability and prepare for higher support demand.

03 Sep 2026 bleepingcomputer.com
Artificial Intelligence BleepingComputer

Anthropic: Claude and several models experiencing outage

Anthropic's Claude service is currently experiencing an outage with requests failing across multiple models. If you operate services that depend on Claude, enable fallbacks, adjust retry logic and inform customers to limit disruption.

03 Sep 2026 bleepingcomputer.com
Security The Hacker News

CISA adds seven actively exploited flaws to KEV; SonicWall CVE-2026-83548 critical

CISA added seven actively exploited vulnerabilities to its KEV list. A prominent entry is CVE-2026-83548 (CVSS 10.0), an SSRF in SonicWall SMA 1000 that can permit unauthenticated remote actors to install malware or spawn reverse shells. MSPs should prioritize patches and monitor traffic and signs of crypto-mining.

03 Sep 2026 thehackernews.com
Infrastructure / Cloud BleepingComputer

KB5120998 update resets desktop settings on some Windows devices

Microsoft reported that installing the KB5120998 (August 2026) preview can result in loss of desktop layout and user settings on some Windows devices. Administrators should test and back up profiles before wide deployment and consider delaying rollout until Microsoft issues a fix or guidance.

03 Sep 2026 bleepingcomputer.com
Security BleepingComputer

Plex issues urgent update warning for desktop clients and media servers

Plex reported multiple security flaws in its desktop applications and media servers and is urging immediate application of released patches. For MSPs and system admins, unpatched hosts could enable unauthorized access or service disruption, so apply updates promptly and review access logs and permissions.

03 Sep 2026 bleepingcomputer.com
Infrastructure / Cloud BleepingComputer

New Outlook and Teams fail to start on ARM Windows after August updates

Microsoft has identified that New Outlook and Microsoft Teams may crash or fail to launch on ARM-based Windows machines after the August 2026 security updates and is working on a fix. Administrators and MSPs should be prepared to roll back or block the problematic updates and follow Microsoft's guidance to restore service for affected customers.

03 Sep 2026 bleepingcomputer.com
Artificial Intelligence The Register

Meta to release Muse model's open weights soon

Meta says it will publish Muse's weights soon and has trained the model to use fewer tokens and to be more likely to request assistance when needed. Open weights let MSPs and sysadmins run the model on their own infrastructure for better cost control and compliance, while token efficiency lowers inference expenses.

03 Sep 2026 theregister.com
Security The Hacker News

Google, Anthropic and OpenAI announce cyber AI models and access programs

Major AI vendors unveiled cybersecurity-focused models including Google’s Gemini 3.8 Flash Cyber and introduced restricted-access programs for trusted defenders. These releases expand defensive tooling but raise operational questions for MSPs and admins about integration, data handling and vendor controls.

02 Sep 2026 thehackernews.com
Infrastructure / Cloud The Register

VMware refocuses on low-end server virtualization; vows vSphere Standard upgrade

VMware says it has adjusted sales incentives that previously pushed customers toward full private clouds and is refocusing on lower-end server virtualization. Planned updates to vSphere Standard could affect licensing costs, migration choices and how MSPs manage existing infrastructure.

02 Sep 2026 theregister.com
Security The Register

Cyber Weapon Index finds Claude Mythos the only model able to execute full cyber kill chain

The Cyber Weapon Index report identified Claude Mythos as the sole examined model capable of carrying out a complete cyber kill chain, while other models handled only parts of an attack. For MSPs and sysadmins this raises urgency: AI-enabled attacks may accelerate, so review detection, access controls, patching and incident response processes.

02 Sep 2026 theregister.com

Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.