Agenda

What is happening in the industry?

Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.

Search
6 sources, 1000 stories last updated 16.09.2026 16:45
Artificial Intelligence The Register

Ex-US Cyber Director: Asimov's robot rules were justified

The former US Cyber Director argued that strict rules for robots and AI are necessary and warned society will face the consequences of the models it permits. Strong governance, monitoring and clear deployment responsibility should be priorities for MSPs and sysadmins.

07 Aug 2026 theregister.com
Security BleepingComputer

Levi Strauss: Data stolen after social engineering targeted three employees

Levi Strauss & Co. reported attackers used social engineering on three employees to gain access to and steal corporate data from their machines. MSPs and system administrators should reassess endpoint defenses, MFA, phishing awareness training and incident response procedures.

07 Aug 2026 bleepingcomputer.com
Security The Register

Former Merseyside officer convicted for unauthorised queries of associates' records

A former Merseyside police officer was convicted under the Computer Misuse Act after using police IT systems to query records on acquaintances and was dismissed. The incident highlights insider risk and reinforces the need for tight access controls, comprehensive logging and staff-declaration processes for MSPs and sysadmins.

07 Aug 2026 theregister.com
Security BleepingComputer

H1 2026: Banking malware via compromised business email and clipboard-based crypto diversion

Gen's H1 2026 report describes two distinct attack chains: one used compromised corporate email accounts and browser tampering to deliver banking-focused malware; the other monitored clipboard contents and swapped copied cryptocurrency addresses to redirect payments. For MSPs and sysadmins this highlights the need to strengthen email and browser defenses, enforce endpoint protection, and manually verify payment addresses.

07 Aug 2026 bleepingcomputer.com
Security BleepingComputer

North Carolina Ports Authority confirms cyberattack; port operations slowed

North Carolina Ports Authority confirmed a cyberattack impacted IT systems at Port of Wilmington, Port of Morehead City and Charlotte Inland Port. The incident slowed operations and caused service disruptions; MSPs and sysadmins should promptly check client infrastructure status and review access controls, backups and incident response plans.

07 Aug 2026 bleepingcomputer.com
Security The Register

China starts unexplained review of Palo Alto Networks product security

Chinese authorities have opened an unexplained review into the security of Palo Alto Networks products and have not provided a reason; a similar action was previously taken against Micron. Such probes can signal supply-chain and regulatory exposure; MSPs and sysadmins should monitor vendor advisories, verify patches and certificates, and review contingency plans.

07 Aug 2026 theregister.com
Artificial Intelligence The Register

Cloudflare: Machine traffic could dominate the internet within five years

A Cloudflare executive warned machine-originated traffic may grow by about 1000x over the next five years. For MSPs and sysadmins this implies increased bandwidth and cost pressure and a need to revise logging, rate-limiting and bot/abuse protections.

07 Aug 2026 theregister.com
Security The Register

How USENIX Security is managing an increase in AI-influenced paper submissions

USENIX Security is seeing more submissions influenced by AI and has adjusted reviewer and triage processes to cope. Automated content or ethical abuses are not yet widespread, but the heavier review load and verification of results are emerging concerns for the conference and its community.

07 Aug 2026 theregister.com
Security The Hacker News

Zapscape KVM flaw could allow L1 guest escape to host (CVE-2026-64561)

A new Linux kernel vulnerability called Zapscape (CVE-2026-64561) can be exploited when nested virtualization is exposed, allowing a privileged actor in an L1 guest to abuse KVM/x86's shadow MMU and execute code on the host. This breaks isolation for hosts and tenant VMs; providers should apply patches, limit nested-virtualization exposure and tighten admission controls.

06 Aug 2026 thehackernews.com
Security The Hacker News

Cisco fixes 12 Catalyst SD‑WAN and IOS XE vulnerabilities; three at CVSS 9.8

Cisco has released updates to remediate 12 vulnerabilities in Catalyst SD‑WAN and IOS XE software. The SD‑WAN issues affect devices regardless of their configuration, while IOS XE is vulnerable when running in standalone or controller roles. Three flaws score CVSS 9.8 — prioritize patches and verify affected devices promptly.

06 Aug 2026 thehackernews.com
Security The Hacker News

INTERRUPT INJECTION attack can bypass Spectre v2 mitigations

MIT CSAIL researchers Daniël Trujillo and Mengjia Yan describe INTERRUPT INJECTION, where an unprivileged Linux process times a hardware interrupt to occur between kernel predictor sanitization and its next use, allowing the branch predictor to be re-contaminated. The technique can defeat Spectre v2 mitigations on Intel and AMD; tests on AMD Zen 2 with Linux 6.14 and default protections succeeded.

06 Aug 2026 thehackernews.com
Security The Hacker News

Weekly security roundup: Odysseus RCE, Samsung one-click takeover, iCloud backdoor dispute

Several vulnerabilities and exploit stories stood out this week: Odysseus RCE, claims of one-click account takeover affecting Samsung, and debate over an iCloud backdoor. Simple attack vectors—exposed servers, recycled bugs, malicious packages and poisoned agent instructions—pose risks to client infrastructure; prioritize access controls, patching and multi-factor checks.

06 Aug 2026 thehackernews.com
Artificial Intelligence BleepingComputer

OpenAI rolls out GPT-5.6 for ChatGPT: Sol for Plus/Pro, Luna for Free

OpenAI is deploying two GPT-5.6 variants for ChatGPT: Sol, a more reliable model for Plus and Pro subscribers, and Luna, which removes limits on text conversations for Free users. For MSPs and sysadmins this can mean longer sessions, higher traffic and increased auth/monitoring needs — review SLAs, resource allocation and security controls.

06 Aug 2026 bleepingcomputer.com
Security BleepingComputer

Go-based macOS infostealer in ClickFix campaign steals crypto assets

A Go-written malware delivered via the ClickFix campaign is targeting macOS hosts to exfiltrate crypto wallets, browser-stored passwords, Apple Keychain entries and cached credentials. MSPs and sysadmins should harden browser/Keychain access, rotate exposed credentials and monitor for unusual data exfiltration from client Macs.

06 Aug 2026 bleepingcomputer.com
Security The Hacker News

4,407 Rockwell PLCs exposed online; 22 located in water-attack cities

A Forescout scan on August 3 found 4,407 Rockwell PLCs reachable from the internet, including 2,844 in the United States. The scan located 22 controllers in cities hit by recent water utility attacks, 19 of which used the same mobile carrier network, though no compromises were confirmed. Administrators should audit remote access and enforce stronger network segmentation for industrial devices.

06 Aug 2026 thehackernews.com
Security The Hacker News

Weak CryptoJS RNG caused $5.7M drains from Ill Bloom wallets

Coinspect found that CryptoJS.lib.WordArray.random() produced insufficient randomness, leading to weak keys when Ill Bloom-based wallets generated recovery phrases. On-chain analysis indicates at least $5.7M was taken in two sweeps since late May; admins and MSPs should urgently audit dependencies and key-generation processes.

06 Aug 2026 thehackernews.com
Security The Hacker News

WebKit proxy bypasses can reveal real IPs in iCloud Private Relay

Researchers reported that iCloud Private Relay can leak a user's real IP via WebKit proxy bypasses. The dual-hop design that sends Safari requests via its two-relay path can be circumvented, undermining privacy guarantees and affecting IP-based access controls, logging and geofencing; administrators should monitor Apple fixes and review configurations.

06 Aug 2026 thehackernews.com
Security Krebs on Security

Canadian pleads guilty in extortion campaign targeting Snowflake customers

Connor Riley Moucka admitted to computer fraud and a conspiracy that targeted over 165 organizations using Snowflake, and confessed to stealing call and text history for more than 100 million AT&T customers. The scale underscores risks to cloud tenant security and the need for strict access controls, monitoring and incident response for MSPs and admins.

06 Aug 2026 krebsonsecurity.com

Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.