Agregátor RSS
Klasický Zen 6 pro AM5 desktop, Olympic Ridge, nejspíš nebude vybaven integrovanou grafikou. Ta však v desktopu nadále bude přítomna: Na produktu, který může nabídnout až 22 jader / 44 vláken…
Nothing smarts like a paper cut, but being attacked after leaving an application’s web interface exposed to the internet might be just as painful. Such attacks are the risk to which users of PaperCut print management software find themselves exposed today, after the company revealed a university’s security teams alerted it to an attack. The company analyzed info provided by the university and found a vulnerability in its PaperCut NG and PaperCut MF products, which manage access to printers, track use, and enable printing from myriad client devices. “We are aware of confirmed customer incidents and are treating this matter with the highest priority,” states an urgent security advisory issued on Thursday. Unusually, the advisory is silent on the nature of the flaw and the risk it poses. It looks like the web interface to the company’s products enables access deeper into a user’s networks, because among the indicators of compromise are altered log files, plus alerts from intrusion detection software, endpoint security tools, and network monitoring packages. The company has cooked up an emergency patch but warns it is not an official release. “We have not gone through our usual release process,” states an FAQ. “This is an emergency patch for customers with public-facing PaperCut servers who are unable to take other mitigating action.” Thankfully, those other actions aren’t hard to take: users need to get their PaperCut servers’ web interfaces off the public internet, by allowing access only from trusted internal IP addresses. Fashioning a potent and rapid response to a zero-day attack is never easy. Communicating the nature of the problem can be even harder, as discussing the nature of a flaw invites more attackers to take a shot at a stricken product. PaperCut says it’s working on a better fix and will advise users once it lands. For now, the company is asking customers to apply its wonky patch or take their servers offline ASAP. The Register fancies most users will go for the latter fix, as aside from the issue of finding a change window in which to apply a patch, running unvalidated emergency software is not an appetizing approach. ®
Na všech herních platformách je každou chvíli nějaká slevová akce. Každý týden proto vybíráme ty nejatraktivnější, které by vám neměly uniknout. Pokud chcete získat hry zdarma nebo s výhodnou slevou, podívejte se na aktuální přehled akcí!
The Australian city of Perth is by some measures the world’s most isolated major metropolis, but is still sufficiently connected to US law enforcement authorities that the FBI was able to help Australia’s Federal Police (AFP) to find two men they believe were the masterminds of TeamPCP, a cybercrime crew that conducted prominent supply chain attacks. According to the AFP, two men aged 21 and 23 arrested on Wednesday “were principal participants in the activities of the cybercrime syndicate and received payments in cryptocurrency for their roles in the illegal activity.” An FBI Facebook post names one of the arrested men as Ruben Thomson and describes him as “the alleged leader of the cybercriminal group TeamPCP.” Australian media named the second man as 23-year-old Louis Michael Gaebler. Investigations into the pair started in April 2026, after Australian authorities and the FBI “received information from multiple cyber threat assessment companies regarding a syndicate that allegedly inserted malicious code into software available on an open-source repository, which was then unwittingly used by other developers.” Researchers detected some of those activities before April: In March, we reported that researchers spotted a supply chain attack on the open source scanner Trivy. Another of TeamPCP’s attacks was the Shai-Hulud worm, which attacks npm packages, tries to infect them and goes looking for credentials to major public clouds or services like GitHub. If the worm burrowed into its targets, it would either try to replicate to continue its attacks, or wipe the environment out of spite. The AFP’s “We cuffed ‘em!” announcement estimates that TeamPCP’s supply chain attacks “potentially compromised more than 1000 organisations globally, enabling the theft of more than 500,000 credentials, and the exfiltration of at least 300 gigabytes of data.” Australia’s Feds estimate “the financial impact includes global remediation costs estimated to be hundreds of millions of dollars.” As is often the case in such matters, the arrested men were found with electronic devices and other items which authorities seized. “A large volume of data seized is being forensically examined and the investigation remains ongoing,” the AFP wrote, adding “Further arrests and charges have not been ruled out.” Indeed, the Feds note that they arrested the two at different locations in the suburbs of Perth and searched a third property nearby. ® Bootnote: Perth is considered the site of the original “Black Swan” event, as swans there – and across much of Australia – are black. Early European explorers who explored Australia's west coast were astounded when they saw the black birds, as the “fact” that all swans are white was at the time a metaphor for the existence of absolute truths.
Premiéra ukázky z GTA 6 přilákala tolik diváků, že spadl Netflix. • Herní mechaniky zahrnují více než 600 000 animací a akci vidíme pouze z třetí osoby. • Rockstar slibuje obrovský otevřený svět s interaktivitou a množství různých aktivit.
Bylo vydáno Ubuntu 26.04.1 LTS, tj. první opravné vydání Ubuntu 26.04 LTS s kódovým názvem Resolute Raccoon. Přehled novinek a oprav na Discourse.
Národní úřad pro kybernetickou a informační bezpečnost (NÚKIB) vydal Zprávu o stavu kybernetické bezpečnosti ČR za rok 2025 (pdf). Incidentů ubylo, sofistikovanost útočníků roste.
Open source softwarový stack AMD ROCm (Wikipedie) pro vývoj AI a HPC na GPU od AMD byl vydán v nové major verzi 10.0. S ROCm.AI. Přehled novinek v aktualizované dokumentaci.
Jako Tolkien: Umělá inteligence vymýšlí nové jazyky. Matematický model ukazuje, co rozhoduje o tom, zda se fáma na sociálních sítích udrží. I váš kód může běžet na sondě Hera. V jedné galaxii byly poprvé objeveny tři superhmotné černé díry.
Dluhy můžete mít u banky, státu i jiných věřitelů. Ukážeme, kde je bezpečně dohledat a jak nenaletět falešným registrům dlužníků.
Nvidia ohlásila NVHBM, což má být vlastní proprietární varianta HBM pamětí, kterou Nvidia nasadí za éry HBM4e. Přestože investoři reagují nadšeně, po technologické stránce nejde o žádnou revoluci…
Miniaturizace bývá omezená velikostí pohonu. Na švýcarské technice EPFL postavili maličké čluny, nanodrony a další zařízení bez klasických baterií a motorů, ale s akustickými rezonátory. Díky Helmholtzově rezonanci důmyslně využívají zvukové vlny k vytváření tahu a k pohybu.
Vědci už dlouho předpovídají, že kvantové pole zrní náhodnými fluktuacemi jako televizní obrazovka. Tým z Cambridge nedávno zkrotil kvantové duchy a fluktuace v kvantovém poli přímo zobrazil. Jejich výzkum rovněž otevírá nové možnosti pro pokročilé laboratorní simulace relativistických polí.
Letošní srpnové vydání LibreOffice, výrazně zlepšuje formátování textů ve Writeru, podporu souborů z MS Excelu, přináší aktualizované vzory pro prezentace i vylepšení podpory skriptování a spoustu dalších novinek.
New details about the July attack on Hugging Face reveal that hundreds of AI agents driven by OpenAI's internal IM1 model coordinated the compromise through an unauthorized message board. [...]
CRPx0, a cybercrime crew that has rapidly evolved from a scam service to a ClickFix-delivered ransomware and crypto-theft business over the summer, claims its victim count jumped from fewer than 10 in June to 48 organizations on its clear-web leak site at the time of publication. Keep in mind: criminals aren’t always the most trustworthy bunch, so take their claims with a healthy dose of salt. Still, the ransomware biz’s expanding operations, unique payload, and white-label hacking service make it one to watch, and a few recent analyses provide tips for defenders to keep the crooks out of their IT environments. Rakesh Krishnan, a threat-intel analyst who writes about cybercrime investigations on TheRavenFile blog, was one of the first researchers to publish details about CRPx0 at the beginning of the month, including previously unreleased malware samples. The operators offer a hacking service, providing “complete database extraction” from victim organizations and “optional public leak coordination upon request.” This platform also advertises full network compromise, “from initial access, through lateral movement, to full domain compromise,” plus persistent access across the victim’s infrastructure. A second, white-label, ransomware-as-a-service platform makes it really easy for wannabe crooks to get into the data-theft and extortion biz. CRPx0 builds, deploys, and configures everything from command-and-control infrastructure to the negotiation panel and malware, allowing its criminal customers to bring their own brand identity to their operations - and originally offered these services for a $10,000 one-time fee. At first, the operators promised to allow affiliates to keep 100 percent of their profits - this is unheard of in ransomware-as-a-service operations. This has since shifted to a 70-30 model, with affiliates receiving 70 percent of the extortion payments (after a one-time $333 enrollment fee) and the remaining 30 percent going to the operators. CRPx0 rules prohibit affiliates from infecting Commonwealth of Independent States (CIS) member countries and organizations based in these countries. This is a pretty common rule among Russia-based ransomware operations, and in an earlier interview with The Register, Recorded Future threat intelligence analyst Allan Liska called it the “first rule of ransomware club: you don't attack organizations in the Commonwealth of Independent States.” The gang also prefers Monero (XMR) payments, rather than Bitcoin (BTC). ClickFix ransomware delivery Affiliates can also customize their own ClickFix payload delivery. The operators offer two lures, a fake Windows Update and a fake Google reCAPTCHA, to socially engineer victims into executing the initial command, according to a Ransom-ISAC research team analysis published on Thursday. The Windows lure tricks a victim into pasting a PowerShell command into the Run dialog. This drops a DLL stager chain and ultimately deploys Python-based ransomware. The macOS lure, however, uses a curl|bash command that downloads portable Python and the ransomware directly. The lures and the rest of CRPx0’s malware run on Windows and macOS, and according to the researchers, there are four payload formats: “the two HTML lures plus a standalone DLL and a standalone EXE, both of which discard the social engineering step entirely.” All four deliver the same ransomware: a 1,769-line Python script that steals high-value files before encrypting them with AES-128-CBC (Fernet). The malware moves laterally via WMI/schtasks, and delivers a ransom note that gives victims a 48-hour deadline to pay up - or see their files leaked. 'Complete, professional offensive control center' On August 23, the CRPx0 operators published a v3.0 update note on the group’s clearnet leak site, promising “a complete, professional offensive control center for managing compromised remote machines from a single web dashboard.” It provides crims with tools to steal valuable files, credentials, and wallet recovery phrases and keys, while “watching stolen cryptocurrency wallet addresses flow in.” This service also provides scripts to run remote commands, and the control panel sets up “automated attack reactions that fire on their own when something valuable happens on a target.” As the operators note: “Everything is built to be operated by a human with no technical background: point-and-click panels, plain-language rules, and clear status indicators. The underlying attack engine is hidden behind a clean, dark-themed interface.” CRPx0’s hacking and ransomware services, enabling everything from crypto theft to encryptors and full network compromise, “could be a strategic move to attract new recruits, or a scam targeting a range of affiliate hopefuls seeking cybercrime services,” according to an August 12 analysis from Jade Brown, a threat researcher at Bitdefender. What defenders should do Still, “other threat actors may attempt to adopt similar techniques,” she warns. “This is a reminder that organizations should balance detection capabilities in preparation for different types of compromises, configuring technologies to detect and block malicious behavior that aligns with both crypto theft and encryption processes.” The Ransomware-ISAC team says defenders should prioritize five actions, in this order. “The first three cost nothing and blunt the entire ClickFix class of attack, not just CRPx0,” they note. First: remove the Run dialog for standard users - this will entirely block the Windows path. For macOS users: restrict Terminal via MDM for non-technical staff. Next, the threat-intel analysts advise defenders to alert on RunMRU writes containing powershell, curl or long base64 strings. “Every ClickFix victim leaves a trace at HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU,” they wrote. “This is the highest-fidelity ClickFix detection available and it is trivial to deploy.” The team also lists adversary network indicators and suggests blocking those. Make sure to hunt for indicators and malicious behavior in the pre-encryption exfiltration window. “Data leaves before a single file is encrypted, so .crpx0 extensions and ransom notes are a post-mortem indicator, not a warning,” according to the Ransomware-ISAC. Finally, confirm backups are unreachable from the account that would be compromised, and treat anything reachable with the victim's credentials as destroyed. ®
Can AI replace lawyers—at least in some circumstances?
Last week, Australia’s Fair Work Commission ruled Gregory Baker, a computing academic at Macquarie University, should be treated as an ongoing, part-time employee, after the university had earlier declined his request to convert from a casual role.
It was immediately described as a “landmark” decision, the first test of Labor’s “employee choice pathway” reforms passed in 2024.
But the ruling also made headlines for other reasons. Baker represented himself at the tribunal and has said he won with the help of trained artificial intelligence agents. His success again has us asking: Can AI replace lawyers?
On closer scrutiny, Baker’s case looks less like evidence of AI replacing lawyers and more like a powerful illustration of how a highly capable user can employ AI tools to terrific effect.
Request Denied
Speaking to the Australian Financial Review following the ruling, Baker said it was actually an AI tool that alerted him to the possibility of converting his role from casual to permanent part-time in the first place.
He had been teaching computer science at Macquarie University over consecutive semesters from 2023 to 2025, and in November 2025, he gave the university the required notice that he believed his work no longer met the requirements of casual employment.
The university did not accept this notification and Baker lodged a dispute at the Fair Work Commission—without a lawyer—in December 2025. The parties could not reach agreement, and the case went to arbitration on May 12. A decision was handed down last Wednesday.
Expert Use of AI
Baker has said he won by using multiple paid AI agents, such as OpenAI’s paid offering, ChatGPT Pro. This “team” helped assemble his case, follow up references, and anticipate his employer’s counterarguments.
His victory has been celebrated as historic, with the Australian Financial Review describing it as “the first known successful use of technology by a self-represented person in the legal arena.”
However, a few things set this particular case apart. Baker’s IT background, expertise managing AI agents, and ability to optimize their use for his case represent a rare level of expertise in using AI in a legal context.
Details included in the Fair Work Commission’s decision also suggest he kept his legal argument narrowly focused on teaching he’d done in one particular unit.
Less expert use of AI in court often sees those bringing claims produce “kitchen sink”-style arguments, which include weak, exaggerated, and nonsense claims.
Baker’s dispute was also narrow, limited to the application of a casual conversion law that had not yet been tested. Importantly, the Fair Work Commission (a tribunal, not a court) is designed to be user-friendly, to enable workers to bring claims without a lawyer.
Less Positive Attention
Elsewhere, the use of generative AI in legal proceedings is attracting a lot of attention for less positive reasons.
Most of this attention centers on the damage caused by inaccuracies, hallucinations and “AI slop”, and how courts and tribunals should best respond.
By making it easier to put a case together, AI has removed traditional access barriers for some litigants. But while case numbers are going up, case precision and quality is going down, making it harder to manage disputes to resolution.
Courts and tribunals are struggling with the volume. At the Fair Work Commission alone, workload has reportedly increased by 70 percent over three years.
New challenges are emerging as time goes on. Reports suggest litigants and lawyers in some overseas jurisdictions are embedding prompts in digital documents (something called “prompt injection”) to overcome or manipulate AI-based review systems some courts use to process documents.
A Big Opportunity
Baker’s example shows us something significant. Used well, AI tools can empower people with narrow legal disputes and digital skills to achieve successful resolutions at low cost.
This is an important development in access to justice. In Australia, there is a huge gap between the number of people with legal problems and the very limited funding available for legal assistance.
Most of the community is in the “missing middle,” unable to afford private legal assistance but on incomes too high to qualify for free legal aid.
AI tools stand a good chance of helping people with sufficient legal capability with problems and cases—like Gregory Baker’s—that are a good fit for the solutions AI can offer. These are few and far between, however.
Where Might Things Be Headed?
We should expect case numbers and self-representation in courts and tribunals will continue to grow and expand beyond Fair Work.
While there will be some baseless cases, the growth also represents the natural consequence of removing one traditional access barrier to our formal justice institutions—getting in the front door to start proceedings.
The bigger picture challenges are persistent and raise important questions. Who will most benefit from the capacity of AI tools to enhance access to justice, and who will continue to struggle to get basic legal problems resolved?
For courts and tribunals, the challenge will be striking a balance between managing caseloads and delivering justice, while not wasting the opportunity to expand access to justice.
This article is republished from The Conversation under a Creative Commons license. Read the original article.
The post An ‘AI Legal Team’ Has Won Its First Case. It’s a Rare Victory for Access to Justice. appeared first on SingularityHub.
Patch work often gets declared finished at the package manager. The update installs, version inventory changes, the service restarts, and the ticket begins moving toward closed. That sequence is clean. Production rarely is.
Finanční skupina Partners se stala minulou neděli obětí kybernetického útoku, při kterém se útočníci dostali k některým osobním údajům klientů. Společnost o tom informovala ve čtvrtek. Ujišťuje, že peníze klientů nejsou v ohrožení. „Kybernetický útok zasáhl část IT infrastruktury naší společnosti. Ihned po zjištění útoku jsme s pomocí externích bezpečnostních odborníků začali intenzivně pracovat na minimalizaci škod. Útočníci se však bohužel dostali k osobním údajům klientů Partners Financial Services,“ uvedla skupina v e-mailu, který ve čtvrtek obdrželi její klienti. Zasaženy byly Partners Financial Services, pojišťovna Simplea, penzijní společnost Rentea, Partners investiční společnost a slovenská Simplea Financial Services. Samotnou Partners Banku ani její bankovní systémy útok nezasáhl [Novinky.cz, 𝕏].
PWNED Welcome back to PWNED, the weekly column where we explore the frightening and amusing world of foolish infosec errors. This week, it's all about a test site that exposed real information. Have a story about someone leaving a gaping hole in their network? Share it with us at [email protected]. Anonymity is available upon request. Our story comes courtesy of Mia Morin, Editor & AI Quality Analyst at Intimeros, a site that rates, reviews, and evaluates AI companions – yes, that means boyfriends and girlfriends, as well as other kinds of pals. The trouble started during a redesign when one of Morin’s colleagues was working on a test version of the site. The test site was supposed to be password-protected, but the colleague turned off the protection so they could show a client what they were working on. Password protection remained disabled for three weeks without anyone noticing. Then, one day, Morin noticed that the test site had been indexed by Google. Apparently, nobody thought to use a robots.txt file to exclude this beta-level domain from search. While the site was publicly accessible without password protection, anyone could see unpublished reviews, prices, and private product notes about the different AI companion services. That’s because the test site was connected to a real live version of the production database. This was all editorial content, so no user data was exposed. However, it could have allowed competitors to see everything that Intimeros was working on and to deduce their entire editorial strategy. After she noticed what was wrong, Morin took swift action to protect the test site from prying eyes. “We restored password protection, blocked search engines from indexing the draft pages and changed all the system access keys,” Morin said. “Now, we secure every test site just like our official website and run weekly automated scans to catch exposed pages.” What we can learn from this is kind of obvious. Never forget to lock down the test or staging versions of your websites. Make sure that they not only require logins, but also have tools in place to block search and AI crawling. Better still, place your staging site on a private server and require someone to use a VPN to get to it in the first place. ®
|