Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.
Manic is a newly observed Android threat active in multiple European countries that can, as a fallback, relay stolen data through nearby compromised devices. This enables lateral data leakage and makes detection and containment harder; MSPs should reassess Bluetooth/Wi‑Fi controls and device isolation measures.
US federal agencies warn attackers are employing AI-assisted tools to create and deploy exploit code against PLCs and other industrial control devices. For MSPs and sysadmins this raises the risk of faster weaponization of vulnerabilities and calls for stronger network segmentation, firmware/patch management, and detection and response measures.
On Cloudflare Workers, researchers demonstrated a remote Spectre side-channel that extracted a JSON Web Token (JWT) from a neighboring Worker instance with measured exfiltration up to 12 bits per second. The end-to-end test ran at about 360× the bandwidth of a 2021 proof‑of‑concept, highlighting co-tenancy and token exposure risks for hosted workloads.
OpenAI has paused reinforcement learning (RL) training for its Frontier models for two weeks while it expands defenses and monitoring to avoid another Hugging Face-like security event. For sysadmins and MSPs, this signals tighter scrutiny of model testing and deployment, with potential delays and stricter integration requirements.
SvelteKit 3 introduces Remote Functions to enable type-safe RPCs inside components, reducing client-server boilerplate and simplifying APIs. For sysadmins and MSPs this shifts attention to routing, security boundaries, runtimes and edge deployment implications.
Google is evaluating Marvell and Broadcom for its large-scale AI hardware needs; Marvell offered a $12.2B equity stake to influence the process. The supplier choice could shift server and networking sourcing, pricing and support expectations. MSPs should watch for supply-chain, compatibility and maintenance implications.
OpenAI confirmed a widespread outage affecting ChatGPT: users cannot sign in, create accounts, or access prior chats. MSPs and sysadmins should monitor the OpenAI status page, notify customers, and prepare to handle support requests or fallback procedures.
Researchers found the SilkParasite espionage group targeting government bodies in Central Asia using seven RAT families, five of which are new: DriveSilkRAT, CookiETagRAT, NomadRAT, GoginRAT and NodeEdgeRAT. For admins and MSPs this raises the urgency to review logging, network segmentation and endpoint detection to limit stealthy access and data exfiltration.
In Frost Radar 2026, Microsoft is positioned as a visionary leader in the Cloud Workload Protection Platforms category. The recognition reflects Microsoft Defender for Cloud's unified runtime protection for servers and containers, which is relevant for MSPs and sysadmins assessing cloud workload security solutions.
In the 2026 Frost Radar for Cloud Workload Protection Platforms, Microsoft was ranked as a leader, with Microsoft Defender for Cloud noted for its unified runtime security. MSPs and sysadmins should take this as a signal to reassess workload protection and runtime security options for customer environments.
A suspected ransomware affiliate is contacting victims before breaches become public using the Ransom Busters name, offering decryption and deletion of stolen data for a fee. For MSPs and sysadmins this increases the chance clients pay fraudsters and complicates incident response. Review notification procedures, communication channels, and no-payment policies.
The StopAndProtect campaign uses roughly 2,000 compromised WordPress sites worldwide to deliver malware, seize infected hosts and store exfiltrated files, screenshots and operational logs. Because the group employs a toolkit of multiple malicious components, MSPs and sysadmins should monitor site integrity, unusual outbound connections and keep WordPress core and plugins patched.
Japanese cloud and data-center provider Sakura Internet reported unauthorized access to its sales management system, exposing customer contract and membership information for up to 1.36 million accounts. For MSPs and sysadmins this raises risks of phishing, account abuse and regulatory notifications; review access controls, rotate credentials and audit logs.
CISA added four critical vulnerabilities that are being exploited in the wild to its KEV list, affecting macOS, SharePoint, vCenter and Microsoft IKE. Include CVE-2026-65400 in your emergency response: prioritize patches, verify asset inventory and apply network/access mitigations immediately.
Cloudflare re-examined remote Spectre exploitation against its Workers platform in 2024–2025 and identified new building blocks such as Spectre gadgets, remote timers, and techniques for achieving co-location. Additional mitigations were deployed to harden Workers; hosting providers and admins should reassess isolation and defenses against timing attacks for tenant workloads.
GitHub said an 8-hour outage occurred after a monitoring gap let traffic spiral, overloading load balancers and preventing autoscaling from responding; the problem was worsened by a high-volume retry storm from VS Code clients. For sysadmins and MSPs this highlights the need to review monitoring coverage, autoscaling rules and client retry behavior.
DataVita secured £300M to expand datacenter capacity in Scotland's AI Growth Zone, while Dell is supplying office/desk equipment for the initiative. The extra capacity increases options for hosting AI and cloud workloads — MSPs should track power, cooling and colocation opportunities.
A recruiter says advertised pay for SAP consultants can be up to about 12% higher than the offers candidates actually receive. For MSPs and sysadmins this influences budgeting, outsourcing costs and project pricing, so hiring and negotiation approaches may need to be adjusted.
Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.