Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.
In some UK Tesco stores, scale units or their web services became unreachable, returning 404 or access-denied responses. When in-store IoT or service endpoints fail or are misconfigured it impacts sales and checkout flows; monitoring, access control and prompt patching are essential.
Microsoft is trialing new Windows 11 settings that let users and admins control desktop apps' access to camera, microphone and precise location. For MSPs and sysadmins this brings stronger endpoint privacy options, potential app compatibility checks and a need to review management policies (Group Policy/MDM).
CISA reports a critical flaw in self-hosted Gitea instances is being actively exploited for code-injection attacks. Service operators should apply available patches immediately, tighten access controls, review logs and repositories for unexpected changes, and be ready to follow incident-response procedures.
Perplexity is turning attention to on-premises and enterprise deployments amid talk of a potential Nvidia tie-up. This shift could force MSPs and sysadmins to reassess GPU capacity, data residency, latency and operational monitoring when running models outside the cloud.
Intel's 256-core Xeon 7 CPUs have been hit by delivery delays and reported technical issues, yet they offer very high core density for heavy compute workloads. Service providers and sysadmins should validate compatibility, firmware/OS support, and power/cooling requirements before deploying to production.
The U.S. Department of the Treasury announced sanctions on Iranian cyber actors accused of intrusions into critical infrastructure. By targeting financial channels the move seeks to disrupt attacker funding; MSPs and sysadmins should update threat intel, review access controls and assess compliance effects.
Apple introduced a new Mac mini line despite ongoing memory supply challenges. Higher memory prices push up the total cost for ML and memory-heavy workloads, so MSPs and sysadmins should reassess pricing and capacity planning for customer deployments.
Oasis Security disclosed a flaw in NVIDIA NemoClaw that could allow a malicious webpage to access a local Ollama instance without authentication and inject hidden instructions into the model serving an AI agent. Administrators should isolate model services, restrict access and monitor for NVIDIA patches.
Meta rolled out support for multiple passkeys per WhatsApp account, enabling phishing-resistant sign-ins across iOS and Android devices. This reduces reliance on passwords, eases managing access across several devices, and helps mitigate account takeover risks. Over 1 billion users already use passkeys; Android support launched in October 2023.
Los Angeles County Museum of Art (LACMA) disclosed that a breach last year released social security numbers and medical information for customers and staff. For MSPs and sysadmins this underscores the need to protect PII and health data with encryption, strict access controls, monitoring and a rapid incident response and notification process.
Threat actors are placing malicious HTML on npm repositories and mirrors that impersonate Cloudflare CAPTCHA to redirect users to attacker-controlled sites. For MSPs and sysadmins this is dangerous because the content can appear to come from trusted sources, enabling credential theft or unwanted redirects; monitor mirror content and block suspicious redirects.
A new PhaaS called AnonyMousKIT leverages voice-based AI agents to automate harvesting of verification codes used to open locks on stolen iPhones and circumvent Activation Lock. For MSPs and sysadmins this raises the need to reinforce customer Apple ID protections, device tracking and defenses against social engineering.
Microsoft warns the time between finding vulnerabilities and applying patches is shrinking, creating a need for protections that work while issues remain unpatched. For MSPs and sysadmins this means implementing a control plane to enforce compensating controls, automation and centralized telemetry between discovery and fixes.
Two authentication-bypass flaws in the Xecurify miniOrange SAML 2.0 Single Sign On plugin let attackers log in as any WordPress user, including administrators. Patchstack disclosed the issues and CVE-2026-61979 is rated high severity. Service providers and sysadmins should apply updates, review sessions and access logs, and enforce extra access controls until patched.
Ukraine revealed a fast, lightweight jet-powered counter-drone platform designed for rapid field deployment and compact enough to be moved in a pickup. MSPs and data centre operators should assess how such tactical systems could affect hosted sites and update airspace monitoring, physical security and incident response procedures.
A large DDoS campaign that began on Monday disrupted shared online services used by Norway's public agencies, causing outages across government platforms. For MSPs and sysadmins this highlights the need to review DDoS defenses, capacity planning, failover arrangements and monitoring to reduce customer impact.
CISA added CVE-2026-21962 to its Known Exploited Vulnerabilities list after evidence of active exploitation. The CVSS 10.0 flaw in Oracle HTTP Server and Oracle WebLogic Server can allow unauthenticated attackers to access critical data over HTTP; apply patches, restrict network exposure and monitor logs urgently.
Attackers are leveraging sponsored search listings and fake OpenAI Codex ads to trick Mac users into downloading ClickFix malware. This developer-focused lure can bypass casual checks, so endpoint protection, download verification and monitoring ad-related traffic should be prioritized by service providers.
Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.