Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.
Microsoft found that this month's security updates caused Remote Desktop Services (RDS) failures and released emergency out-of-band Windows updates. The patches also address Hyper‑V and USB audio problems on certain Windows builds; admins running remote access or virtualization should test and deploy them quickly to avoid disruptions.
Japan's Digital Agency reported that a VPN vulnerability may have exposed around 246,000 records belonging to government employees. For MSPs and sysadmins this underlines the need to review VPN configurations, audit access logs and authentication controls, and enforce patching and credential rotation to limit impact.
Homebrew 7.0.0 is released with a native BrewUI graphical interface and an integrated vulnerability scanner. This helps admins tighten install policies, audit package security and reduce risks in deployments.
Some customers' passport and selfie photos and transaction histories were reportedly passed to third parties after Revolut complied with fraudulent government-style requests. Attackers demanded 10,000 Bitcoin; MSPs and sysadmins should review identity verification, legal checks and data-sharing controls immediately.
A cross-store Twitch browser extension named 'Twitch Enhanced Viewer | JeetBot' leaked OAuth tokens for roughly 31,000 users to proxy servers linked to a Russian commercial bot service. Admins and MSPs should treat the leak as account compromise—revoke exposed tokens, remove the extension from endpoints, block related network destinations and review extension policies to limit further abuse.
The Python core has moved Rust support from mandatory to optional. For server admins and MSPs this may affect build pipelines, packaging choices and how Rust-based components are evaluated for security and deployment.
The article argues that existential AI fears are being amplified by groups seeking regulatory advantage. That narrative can directly impact MSPs and sysadmins by changing compliance requirements, procurement choices and project costs and timelines.
Attackers combine social-engineering with rogue OAuth apps to reach Google Workspace without stolen credentials. The webinar examines two attack cases, explains the attack flow and outlines mitigations such as app whitelisting, permission reviews and token revocation.
Microsoft acknowledged that its September 2026 security patches are causing Remote Desktop Services (RDS) to fail on some Windows Server installations. This can disrupt remote administration and customer access, so MSPs and admins should test updates and have rollback plans before deployment.
Revolut reported that an attacker posing as a government body gained access to data for some customers. Reported exfiltrated items include financial records and passport copies, raising risks of identity theft and account fraud. MSPs and admins should review identity-verification and customer checks.
Figures including Amodei, Altman, Nadella and Musk support the 'Pace the frontier' proposal that seeks industry input to steer AI regulation. For providers and sysadmins this may lead to rules favoring large vendors, new compliance and access controls, and changes to procurement and reporting obligations.
Microsoft disclosed two campaigns in which attackers abused third-party email delivery services to send over one million scam messages between August 3–5, 2026, and used passkey-focused social engineering to take over cloud accounts and exfiltrate data. For MSPs and admins this means reviewing email-provider trust, monitoring passkey approval flows and session activity, and ensuring fast revocation and conditional access controls.
Developers used precise timing and software tricks to coax chiptunes from the ZX Spectrum's one-bit speaker that mimic multiple channels. For admins and MSPs this demonstrates techniques for extracting more from constrained hardware, timing-sensitive coding and approaches useful for emulation or legacy device support.
AI tools accelerate discovery of code, configurations and hidden assets, making obscurity-based defenses unreliable. For MSPs and sysadmins, secrets management, strong authentication and explicit security controls must be prioritized.
The guide explains how to make Xfce resemble various desktop styles by installing and configuring Panel Profiles plus the required plugins. Panel Profiles automates most configuration steps, helping MSPs and sysadmins speed up consistent desktop provisioning and image preparation.
A China-linked espionage group is exploiting CVE-2026-51990 in Sogou Input Method for Windows to install the GrayRabbit backdoor. Sysadmins and MSPs should apply patches immediately, hunt for suspicious processes and C2 traffic in telemetry, and check customer systems for persistence indicators.
The U.S. CISA has added five vulnerabilities affecting JFrog Artifactory, ConnectWise ScreenConnect and MikroTik RouterOS to its KEV catalog after reports of active exploitation. MSPs and sysadmins should urgently deploy fixes for CVE-2026-42016 (CVSS 8.1) and related issues, restrict exposure where possible, and audit logs for signs of compromise.
Widespread use of AI agents and employees signing into consumer AI tools is creating a new, rapidly growing class of alerts in SOCs. The outcome is more false positives, blind spots and potential data exposure — SOCs must inventory agents, improve logging and identity controls, and retune detection playbooks.
Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.