Agenda

What is happening in the industry?

Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.

Search
6 sources, 1011 stories last updated 17.09.2026 01:28
Security The Hacker News

Microsoft links 30+ rotating domains to MacSync Stealer infrastructure

Microsoft Defender Experts linked over 30 rotating domains to MacSync Stealer, an information stealer targeting macOS. The analysis correlated recurring endpoint and network signals across shifting infrastructure to map activity from delivery to data collection and exfiltration; MSPs should monitor mac endpoints, DNS logs and suspicious domains.

19 Aug 2026 thehackernews.com
Security BleepingComputer

Microsoft fixes Windows Defender crash issue

Microsoft corrected a bug that caused Windows Defender to crash on some systems with 0xc0000005 access violation after a recent security update. Administrators should install the fix and verify endpoint protection remains operational on servers and client devices.

19 Aug 2026 bleepingcomputer.com
Security BleepingComputer

Critical RCE in Windows IKE Service Extensions being actively exploited

CISA reports active exploitation of a critical remote code execution flaw in the Windows IKE Service Extensions component. Prioritize patching systems that handle VPN/IKE, follow vendor guidance and monitor for unusual connections or command activity on managed infrastructure.

19 Aug 2026 bleepingcomputer.com
Security BleepingComputer

Support for Windows 11 24H2 Home and Pro ends in two months

Microsoft says update support for Windows 11 24H2 Home and Pro will cease in two months. Because affected devices will stop receiving security fixes, MSPs and sysadmins should plan upgrades, run compatibility tests and schedule deployments to avoid exposure.

19 Aug 2026 bleepingcomputer.com
Infrastructure / Cloud The Register

Cerebras CS-4: Rack-level chip densification boosts AI throughput

The Cerebras CS-4 doubles per-chip performance and packs three times as many chips into a rack, raising aggregate AI throughput. That density increases demands on power, cooling and networking, so MSPs should reassess rack space, electrical capacity and integration before buying.

19 Aug 2026 theregister.com
Artificial Intelligence The Register

OpenAI to raise costs by about 20% for some workloads with added security checks

OpenAI is introducing expanded, multistage inspection of internal reasoning for its frontier models to boost safety; that increases compute overhead and may raise costs by roughly 20% for certain inference workloads. MSPs and sysadmins should review API billing, capacity planning and latency implications and choose the monitoring level that fits their customers.

19 Aug 2026 theregister.com
Security The Hacker News

Three Copilot Personal flaws could allow one-click data exfiltration

Varonis Threat Labs disclosed three vulnerabilities in Microsoft Copilot Personal, dubbed CoSnitch. A crafted link can let an attacker, with one click, quietly pull data from apps and other data available to the user's Copilot session by abusing an undocumented URL parameter. MSPs should review app connectors, revoke tokens and apply vendor fixes when available.

18 Aug 2026 thehackernews.com
Security The Hacker News

MLflow SSRF exploited to steal cloud credentials

An SSRF bug in MLflow is being actively scanned and exploited to obtain cloud account credentials and other sensitive data. Separate vulnerabilities in FUXA are also seeing scanning and exploitation, with watchTowr and VulnCheck reporting malicious activity. Apply patches promptly, restrict metadata access and tighten network segmentation.

18 Aug 2026 thehackernews.com
Security The Hacker News

Ransom Busters asks victims for $20,000–$60,000 claiming to remove data from ransomware servers

An affiliate calling itself Ransom Busters has been emailing victim organizations, claiming it can remove stolen data held on ransomware operators' servers in return for fees between $20,000 and $60,000. GuidePoint Research flagged the outreach as unusual; MSPs and sysadmins should avoid negotiating with unknown intermediaries, preserve evidence and backups, and involve law enforcement and incident response teams.

18 Aug 2026 thehackernews.com
Security The Register

Researchers: expired cards can still work in some payment flows

Researchers showed that when expiry-date checks are weak, cards past their expiry can still be used to complete transactions. Sysadmins and MSPs should tighten expiry validation, CVV and 3DS enforcement, tokenization and anomaly monitoring in gateways, POS software and integrations.

18 Aug 2026 theregister.com
Security The Hacker News

16 typosquatted RubyGems packages used to exfiltrate browser and crypto wallet data on Windows

OpenSourceMalware uncovered the campaign on August 15, 2026 and tracks it as StubMaker. Sixteen typosquatted gems delivered a Windows-targeted info stealer that can exfiltrate browser credentials and crypto wallet data. Example package names: ubnuler, ubnlder, ri18nr, reaker, rakier, orakw, joxn.

18 Aug 2026 thehackernews.com
Security Microsoft

MacSync Stealer: Microsoft uncovered 30+ domains using behavioral pivots

MacSync Stealer evades detection by rapidly rotating domains, while its malicious behaviors remain consistent. Microsoft applied durable behavioral pivots to link and reveal more than 30 related domains. MSPs and sysadmins should prioritize behavior-based monitoring and hunting alongside signature detections to catch fast-moving infrastructure.

18 Aug 2026 microsoft.com
Security Microsoft

Microsoft tracked MacSync Stealer infrastructure using behavioral pivots

Microsoft linked over 30 domains to MacSync Stealer by relying on persistent behavioral pivots despite the malware's frequent domain churn. For MSPs and sysadmins this underlines that domain blocklists alone aren’t enough and behavior-based detection and monitoring of endpoints and DNS are essential.

18 Aug 2026 microsoft.com
Security The Hacker News

Single server has scraped Salesforce and ServiceNow portals since 2025

Research by Reco shows a campaign called City Forum used one server to pull records from Salesforce and ServiceNow customer portals since 2025. MSPs and sysadmins should investigate traffic from 158.220.87.79, review API logs and session anomalies, and apply IP blocks, WAF rules and key rotation as immediate mitigations.

18 Aug 2026 thehackernews.com
Security BleepingComputer

Comcast turns Xfinity WiFi into in-home motion detector

Comcast is adding a feature to Xfinity Shield that uses WiFi signals to sense motion inside homes without cameras or separate sensors. For MSPs and sysadmins this creates operational and privacy implications: you may need to apply router/client updates, review telemetry and consent settings, and reassess wireless segmentation on customer networks.

18 Aug 2026 bleepingcomputer.com
Infrastructure / Cloud Cloudflare

RFC 9234 adoption: measurements of BGP Roles and OTC deployment

Cloudflare studied deployment of RFC 9234's BGP Roles and the Only to Customer (OTC) attribute and found two Tier 1 networks unexpectedly stripping OTC. That can weaken route-leak protections; MSPs and network admins should audit peer behavior and peering configs to ensure RFC 9234 functions correctly.

18 Aug 2026 blog.cloudflare.com
Security The Hacker News

SafePal order-tracking plugin flaw exposed data of about 39,798 customers

SafePal reported that an authorization bug in an order-tracking plugin exposed names, emails, shipping addresses, phone numbers and purchase details for roughly 39,798 customers. For sysadmins and MSPs: review third-party plugin permissions and logs, watch for phishing or fraud using the leaked PII, and ensure vendor notifications, credential rotations and mitigations are in place.

18 Aug 2026 thehackernews.com
Infrastructure / Cloud The Register

Filtered Live Captions extended for government Teams users

Microsoft has delayed removing profanity and sensitive-content filtering in Live Captions for government customers, so captions will remain filtered. That can affect accessibility and meeting transcript accuracy; MSPs and sysadmins should inform customers and review recording and compliance settings.

18 Aug 2026 theregister.com

Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.