Agenda

What is happening in the industry?

Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.

Search
6 sources, 1000 stories last updated 16.09.2026 16:45
Security Microsoft

Microsoft Defender isolated QNET endpoint in 128 seconds and stopped ransomware

Microsoft Defender automatically isolated a compromised QNET endpoint within 128 seconds, preventing a multi-stage attack from persisting or spreading. The incident highlights for MSPs and sysadmins that automated containment and correct EDR configuration are crucial to halt attack progression.

04 Aug 2026 microsoft.com
Security BleepingComputer

Greatness PhaaS spoofs RingCentral to target Microsoft 365 accounts

Greatness PhaaS is using RingCentral-themed lures to steal Microsoft 365 accounts. It has advanced from credential harvesting to AiTM and device-code/OAuth traps that can circumvent MFA. MSPs should monitor OAuth device flows, app consents and RingCentral-related phishing activity.

04 Aug 2026 bleepingcomputer.com
Security The Hacker News

cPanel privilege escape allowed hosting accounts to run SQL as database root

cPanel fixed a vulnerability that let an authenticated hosting account execute SQL with the database root identity, breaking the isolation between customer accounts and the server database admin. The issue is tracked as CVE-2026-58048 (CVSS 4.0: 9.4); the targeted security release also addresses two other account-boundary bypasses. Administrators should deploy the patch promptly.

04 Aug 2026 thehackernews.com
Security BleepingComputer

New XCSSET variant targets macOS developers via compromised Xcode projects and GitHub

A new XCSSET variant is reaching thousands of macOS users by embedding malicious code in tampered Xcode project files and GitHub repositories. Compromised build environments can be used to pivot into customer infrastructure — audit repositories, validate project files, and harden CI and endpoint defenses.

04 Aug 2026 bleepingcomputer.com
Security BleepingComputer

77 Open VSX extensions collecting developer environment data

Seventy-seven extensions on the Open VSX marketplace masqueraded as legitimate developer tools and transmitted information about the hosts and development environments where they ran. For MSPs and sysadmins this creates risks of environment metadata leakage, supply‑chain exposure and unauthorized exfiltration; audit extensions and limit network egress.

04 Aug 2026 bleepingcomputer.com
Security The Hacker News

DOUBLECUP LaaS stages hidden PNGs via ClickFix lures to deploy CountLoader alongside DeviceManager RAT

A Russian-linked LaaS called DOUBLECUP uses ClickFix lures to plant steganographic PNGs in browser cache that reveal and launch a second-stage payload, delivering CountLoader and a previously undocumented RAT named DeviceManager. For MSPs and sysadmins, this highlights the need to audit browser cache handling, tighten EDR detections and apply network filtering to catch the chain.

04 Aug 2026 thehackernews.com
Security The Register

Tennessee congressional candidate arrested over alleged shooting of plate cameras

A Tennessee congressional candidate was arrested after allegedly shooting Flock license-plate cameras. The incident underscores the risk of physical attacks on LPR equipment for MSPs and sysadmins; review camera placement, tamper-detection, evidence logging and coordination with law enforcement.

04 Aug 2026 theregister.com
Infrastructure / Cloud The Register

CAF Bank restores online service; warns of possible intermittent outages

CAF Bank has brought its online service back after more than ten days offline. The bank warns traffic may be limited at certain times and further interruptions are possible. MSPs and sysadmins should check payment integrations, scheduled jobs and customer notifications, and confirm monitoring and contingency plans are in place.

04 Aug 2026 theregister.com
Infrastructure / Cloud Cloudflare

wrangler dev produces structured local traces for Workers

wrangler dev now emits structured tracing data for each local Worker request. That lets tooling or coding agents query a single API to locate failures and causes without deploying, speeding up debugging and reducing the risk of changes in customer environments.

04 Aug 2026 blog.cloudflare.com
Infrastructure / Cloud Cloudflare

Cloudflare Agents: centralized view for deployed agent sessions

Cloudflare Agents consolidates deployed agent sessions into a unified dashboard and provides metrics and alerts about agent performance. MSPs and sysadmins can more quickly spot agent health, latency or connectivity issues and simplify troubleshooting across large deployments.

04 Aug 2026 blog.cloudflare.com
Artificial Intelligence Cloudflare

Cloudflare launches Codex to enforce engineering standards with AI

Cloudflare built the Cloudflare Codex, a governed set of engineering rules that AI agents reference across development. By combining formal RFCs with automated agent reviews, it standardizes code, documentation and incident write-ups. For MSPs and sysadmins this can improve policy compliance, speed post‑mortems and simplify audits.

04 Aug 2026 blog.cloudflare.com
Infrastructure / Cloud Cloudflare

TypeScript-based CI/CD on Cloudflare with Workflows and CI SDK

Cloudflare offers running isolated, customizable CI/CD pipelines on its platform using Workflows, Artifacts and the CI SDK. Teams can move away from large YAML files toward TypeScript-defined steps and employ AI agents that try to recover from failures automatically. This simplifies configs and helps MSPs standardize and host customer builds securely.

04 Aug 2026 blog.cloudflare.com
Infrastructure / Cloud Cloudflare

Cloudflare Wallets: programmable web wallet for AI agents

Cloudflare Wallets offers a programmable wallet that lets AI agents transact and present verifiable identity on the web. Using the x402 protocol, agents can autonomously purchase APIs and content while Cloudflare enforces safety and control measures. MSPs and admins should prepare for changes in identity, billing and access controls.

04 Aug 2026 blog.cloudflare.com
Artificial Intelligence Cloudflare

Agent Development Lifecycle and new primitives arrive on Cloudflare

Cloudflare introduced the Agent Development Lifecycle and accompanying primitives for building and managing agents. As autonomous agents accelerate code creation and deployment, MSPs and sysadmins should revisit governance, deployment pipelines and security controls to manage operational and review risks.

04 Aug 2026 blog.cloudflare.com
Security The Hacker News

CISA adds N-able N-central flaw CVE-2026-18577 to KEV

CISA added CVE-2026-18577 (CVSS 8.2), a high-severity issue affecting N-able N-central, to its KEV list after reports of active exploitation and customer compromises. The flaw stems from incomplete remediation of CVE-2026-18556. MSPs running N-central should verify patch status and apply mitigations immediately.

04 Aug 2026 thehackernews.com
Security BleepingComputer

ChainDrop supply-chain attack impacts 1,300+ npm packages

ChainDrop, a self-propagating malware, has infected over 1,300 packages in the npm registry. The affected packages represent roughly 2 billion downloads per month, raising the risk that client projects will pull compromised dependencies; audit dependency trees, pin versions and monitor builds.

04 Aug 2026 bleepingcomputer.com
Security The Register

UK considers requiring consent before installing bossware

The UK is weighing rules that would require employers to get consent or provide notice before deploying worker surveillance tools like AI productivity scoring, keystroke logging and biometric tracking. For MSPs and sysadmins this may force changes to how monitoring agents are deployed, how data is handled and how client contracts document consent.

04 Aug 2026 theregister.com
Infrastructure / Cloud The Register

China broadens legal definition of integrated circuits to bolster domestic chip protection

China has revised the legal scope of 'integrated circuits' to strengthen protection for domestic chip designs and production. The move could shift IP and supply-chain dynamics; service providers should reassess hardware sourcing and compatibility risks for customer infrastructure.

04 Aug 2026 theregister.com

Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.