Agregátor RSS

This Week’s Awesome Tech Stories From Around the Web (Through October 10)

Singularity HUB - 10 Říjen, 2026 - 16:00
Artificial Intelligence

‘Breathtaking,’ ‘Devastating’: Mathematics Reels After New OpenAI ReleaseSiobhan Roberts | The New York Times ($)

“Talking to mathematicians after the release, it is clear that it is a highly conflicting environment, motivating a wild range of reactions. …’The solutions announcement, [Dr. Bridson] added, ‘will be exciting for many, frightening for others, and devastating for some. ‘In all cases,’ he said, ‘the struggle to wrestle human understanding from the machines’ formalities will unleash greater ambition for what we achieved (working with AI agents) in this new era of mathematics.'”

Artificial Intelligence

OpenAI’s Math Solutions Aren’t Meeting the Field’s Standards YetTim Fernholz | TechCrunch

“OpenAI fell short of … standards [called for by an advisory group of elite mathematicians], particularly where the mathematicians emphasized the need for human understanding of a mathematical result. That’s especially concerning after a new paper highlighted gaps between the natural language and formally expressed solution to a million-dollar problem ostensibly solved by OpenAI’s models.”

Biotechnology

Cancer Vaccines Are the NIH’s Next ‘Big Bet’Gina Kolata | The New York Times ($)

“The vaccines are treatments that are unique to each patient by prompting the immune system to attack a patient’s specific cancer. The injections teach the immune system’s T cells to home in on aberrant proteins found on a patient’s tumor and nowhere else.”

Tech

SpaceX Makes Big Play to Become a Wireless CarrierPatience Haggin and Drew FitzGerald | The Wall Street Journal ($)

“SpaceX reached a deal to buy cellular spectrum licenses from investment firm Grain Management, its biggest move yet into a wireless market dominated by traditional telecom companies. …The spectrum could serve SpaceX’s stated ambition of moving its Starlink satellite service beyond broadband into the wireless market to compete with the likes of AT&T and Verizon.”

Artificial Intelligence

Aligning AI With Human Goals Might Be Impossible, Says AI Prof. Stuart RussellRocket Drew | The Information ($)

“As a result, the AI industry’s decision to pursue large language models ‘could easily be a $10 trillion mistake,’ he said. It could be that ‘pursuing a technology path that can never support the guarantees of safety that we will need when systems become sufficiently capable to be of really high value to us—it’s a wrong turn that we took,’ so further investment in these models is ‘throwing good money after bad,’ he said.”

Tech

Oracle, Broadcom and SpaceX Seek Blockbuster Debt Deals to Pay for AI ChipsAnissa Gardizy, Matt Wirz, and Justin Baer | The Wall Street Journal ($)

“Cloud providers such as Amazon Web Services and Oracle have traditionally financed computing hardware through their own cash flows. For their AI build-outs, the companies issued hundreds of billions of dollars of bonds, pushing the public debt market to its limits. Now, some buyers are turning to Wall Street investment firms to help fund purchases totaling tens of billions of dollars per deal.”

Science

At 194, Jonathan the Giant Tortoise Knows About AgingMonique Brouillette | The New York Times ($)

“The researchers were committed to the idea … because they were curious if Jonathan’s DNA held secrets about aging or longevity. Just think: When this tortoise was presumably born in 1832, Charles Darwin was only 22 years old and hadn’t yet visited the Galápagos Islands, where he would dream up his theory of natural selection.”

Future

AI Companies Are Preparing to Shape the Rules After Everything Goes WrongBruce Gil | Gizmodo

“They anticipate [within the next six to 12 month] a large-scale event such as a cyberattack that could disrupt access to financial services, the internet, or even electricity and water. Whether it’s AI going rogue or hackers using the technology to carry out an attack, the companies behind the tech expect to shoulder much of the blame if something goes wrong, and they need to know how they’ll spin the fallout if that’s the case.”

Future

UN Warns Against Technology Used to Read Citizens’ MindsJonathan Moens | The New York Times ($)

“The scenarios sound like science fiction: Police officers accessing data contained in suspects’ brains to forcefully extract information, or to predict if offenders might plan to commit future crimes. But the secretary general of the United Nations warned on Thursday for the first time that neurotechnologies are advancing so rapidly that governments’ ability to access and manipulate people’s brains could one day pose a threat to fundamental human rights.”

Future

Muse Creates Detailed Profiles of All Your Friends and FamilyLily Hay Newman | Wired ($)

“‘These [AI assistant] tools are actively soliciting users to plug their whole lives in—their emails, calendars, financial institutions, everything in order to be helpful assistance,’ Bogen says. ‘That’s dramatically more information than people might have otherwise given to some of these companies. The breadth of access to information that these tools have will lead to a ballooning of what they know about users.'”

Space

Who Owns the Moon?Selam Gebrekidan | The New York Times ($)

“The Outer Space Treaty declared that countries could not claim outer space ‘by means of use or occupation.’ Space exploration, the treaty said, should benefit all countries. …But nearly 60 years after the treaty was ratified, some questions still need answers. What jurisdiction can a state claim on a moon base? Can a company profit from the moon’s wealth? Can a nation or a company set up a perimeter and keep others out?”

The post This Week’s Awesome Tech Stories From Around the Web (Through October 10) appeared first on SingularityHub.

Kategorie: Transhumanismus

Dnes se mění kořenové klíče internetu. A teprve podruhé v historii. Co to vlastně je a jak to funguje

Zive.cz - bezpečnost - 10 Říjen, 2026 - 15:56
Internet v neděli dostane nové kořenové klíče. Zkontrolujte své DNS resolvery, píše na blogu CZ.NIC jeho výkonný ředitel Ondřej Filip. A i když ve své prosbě míří především na správce sítí a běžní smrtelníci si vůbec ničeho nevšimnou (pokud tedy oni správci neudělají nějakou tu kulišárnu), pojďme ...
Kategorie: Hacking & Security

Dnes se mění kořenové klíče internetu. A teprve podruhé v historii. Co to vlastně je a jak to funguje

Živě.cz - 10 Říjen, 2026 - 15:56
Internet v neděli dostane nové kořenové klíče. Zkontrolujte své DNS resolvery, píše na blogu CZ.NIC jeho výkonný ředitel Ondřej Filip. A i když ve své prosbě míří především na správce sítí a běžní smrtelníci si vůbec ničeho nevšimnou (pokud tedy oni správci neudělají nějakou tu kulišárnu), pojďme ...
Kategorie: IT News

Criminal IP Introduces AITEM as the Next Evolution of Attack Surface Management

Bleeping Computer - 10 Říjen, 2026 - 14:30
Traditional attack surface management helps organizations discover exposed assets, but visibility alone is not enough to address threats. Criminal IP introduces AITEM, an AI-powered approach that connects exposure discovery with investigation, risk prioritization, and response. [...]
Kategorie: Hacking & Security

Dokumenty Google přidávají nativní podporu pro Markdown. Nechybí živá spolupráce

Živě.cz - 10 Říjen, 2026 - 13:45
Dokumenty a Disk Google podporují Markdown. • Dokumenty ale neznají všechny formátovací funkce. • Po nahrání do úložiště už soubor aspoň nemusíte konvertovat.
Kategorie: IT News

The Third-Party Agent Problem: Why Security Built for AI You Chose Misses the Agents You Didn't

The Hacker News - 10 Říjen, 2026 - 13:00
In environments studied for the 2026 State of Agent Security Report, roughly 1,280 third-party products now embed AI. About 282 of them sit behind single sign-on. The other thousand are invisible to identity infrastructure by default, not because anyone hid them, but because an identity stack can only govern what authenticates through it, and most agents never do. That gap is the clearest [email protected]
Kategorie: Hacking & Security

Two characters open up a world of typosquatting opportunities in Chromium browsers

The Register - Anti-Virus - 10 Říjen, 2026 - 12:15
Researchers say two characters available to typosquatters and phisherfolk can trick Chromium browsers into displaying lookalike URLs as genuine web addresses. Wangling a domain name to look an awful lot like that of a popular website is nothing new. We’ve all encountered phishing sites such as macrosoft[.]com and applle[.]com before in our daily struggles against spam. However, as browsers mature, new characters are always being made available for use. This opens up new opportunities for those whose languages contain characters/homoglyphs that aren’t ASCII-compliant, but it also introduces new ways for attackers to abuse display logic quirks in programs like Chrome and Edge. According to Ian Muscat and Leanne Briffa of Have I Been Squatted, there are still characters available to cyber-imposters that can reliably fool web users into trusting URLs that they certainly should not. The latest glyphs bypassing browser safety checks allow tricksters to run websites from a clearly fake domain name (when displayed in Punycode), although they appear just like the real deal in Unicode. The characters of note, in this case, are ө, which is found in various Cyrillic languages such as Kazakh, Mongolian, and Tatar, and the Latin K with hook, ƙ, used in Hausa and Karai-karai. Both are visually similar to the letters e/o, i, and k, respectively, and allowed the researchers to register 20 lookalike domain names. These included: aррӏө[.]com sрасөх[.]com oƙta[.]com niƙe[.]com Below are the URLs’ Punycode equivalents – how browsers should display them safely: xn--80a6aa68c8d.com xn--80a5aeq0fr0c.com xn--ota-f6a.com xn--nie-g6a.com You can try them out; they’re registered by Have I Been Squatted and are safe to visit. They take you to research demo pages set up by the researchers, and each page explains how exactly they bypass browser protections. Crucially, they all bypass the key security measures deployed by Chromium-based browsers. How the bypasses work Browsers deploy two main defense layers. The first is a set of seven sequential checks run by Chromium’s SafeToDisplayAsUnicode function, which check for a range of common spoofing methods. Vendors began introducing these checks in 2017 after researcher Xudong Zheng registered аррӏе.com – a domain consisting of all-Cyrillic characters. Chromium’s checks, which factor in a hardcoded list of known Cyrillic characters known to be used in place of Latin letters, can be seen as "all or nothing." Built to detect all-Cyrillic strings, the measure only takes action against domain names if every character in the string is on its hardcoded list. If one character is missing, the check is bypassed. Characters such as ө, ї, and ү, are known as “breakers,” as these are not present in the lookalike list, as of Chrome 154 (released to stable channel on September 22). Failing any of the seven display checks tells the browser that the characters are unsafe to display as Unicode and to instead display the Punycode, revealing just how dissimilar they are to the genuine domains they try to imitate. The second measure browsers take is to compare the domain name against a list of popular websites to see if it is trying to imitate one of them. In Chromium, these checks are handled by the GetSimilarTopDomain() function. This step converts a supplied domain name into a "skeleton," stripping its characters of diacritics, such as accents (ó becomes o), and checking the skeleton URL against a hardcoded list of popular websites. Chromium checks against almost 8,500, and if the skeleton matches any of them, then it displays Punycode. However, the Latin K with hook, ƙ, does not have an accent, and is added to the skeleton as a Latin k with an added combining mark, bypassing the security check. In this case, the skeleton is formed as: [o k ‘ t a . c o r n]. (The skeleton maps "m" to "rn"). Likewise, with аррӏө.com, the Cyrillic barred o retains its bar in the skeleton as a combining mark, meaning it does not match the genuine Apple domain. Its skeleton is formed as: [a p p l o - . c o r n]. Browsers are always working to stymie these tools of imposterment. Chrome 148 put an end to attackers being able to use ҏ and ӿ as breakers to imitate their Latin lookalikes, for example. The two main security checks are not the only lines of defense. Chromium also deploys warnings at the time of navigation called Safety Tips. An example domain that would bypass the two main checks is ínstagarm[.]com. The inflection on the beginning character is removed and what’s left is essentially the real Instagram domain with two letters swapped. The Instagarm domain does not match any of the hardcoded sites, nor does it contain any banned characters. In this case, Chrome will display one of two popups, asking the user if they meant to visit the genuine domain, warning that the current direction of travel appears fake. However, there are limits to this extra security layer. The warnings only trigger when an imitation domain is an exact-character match, a one-edit match, or a match with an adjacent swap from the genuine URL. Two or more changes, like with аррӏө[.]com, which has all-Cyrillic characters preceding the ".com," will not trigger these warnings. The warnings will also not trigger with domains consisting of fewer than five characters. Domains such as oƙta.com, which is only one edit from the real Okta, may not trigger defenses because of the one-edit rule and the fact that it is only four characters. Safety Tips also checks the skeleton against the sites users visit regularly, not just the hardcoded list of trusted sites. Frequently visited sites may trigger the same warnings, but for users who do not have a comprehensive visit history, the defense layer may fail. The defenses described here only apply to browsers. Email clients are even less picky with imitation domain strings. Websites like Gmail displayed each of the 20 domains HIBS fed the clients, which were a mix of lookalikes and genuine internationalized domain names (IDNs), as an attacker would want it to, all in Unicode. Outlook Web showed all 20 as Punycode, even the harmless ones, suggesting neither apply the right checks to properly inform users. To quantify the scale of the issue, the researchers looked at ICANN’s list of every .com domain. There are around 167 million of them, approximately 733,000 of which are IDNs, those that contain non-ASCII characters and are stored in Punycode form. The researchers took each of the IDNs and swapped their non-ASCII characters for ASCII equivalents to determine how many matches there were. They found around 162,000 pairs – IDNs that resemble plain ASCII domains. It should be said that this does not mean there are circa 162,000 typosquatted domains, just that many yield lookalikes. Some may be registered by businesses for defensive purposes; others may be owned by the same business that wants to operate multiple websites catering to different languages. However, organizations should be aware of the means available to typosquatters, and monitor registered domains accordingly. ®
Kategorie: Viry a Červi

Sekera v kokpitu letadla není zbraň, ale důležitá součást povinné výbavy. Může pomoci při požáru a evakuaci

Živě.cz - 10 Říjen, 2026 - 11:45
Sekera v kokpitu slouží primárně k hašení skrytého požáru a evakuaci • Mezinárodní předpisy nařizují její povinné uložení na palubě každého letadla • Nedávný útok pilota však odhalil nebezpečné bezpečnostní riziko
Kategorie: IT News

Anthropic Cuts Live Internet Access for Internal AI Tests After Claude Exploits Injection Flaws

The Hacker News - 10 Říjen, 2026 - 11:18
Anthropic on Friday said it's cutting off live internet access for all its internal evaluations following the discovery of new incidents in which its artificial intelligence (AI) models exhibited misaligned behavior and targeted real websites. The AI company said it identified four broad categories of unintended model actions during evaluations and internal use of Claude - Claude Mythos Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Musk strká vařečku do hrnce mobilních operátorů. SpaceX kupuje frekvence a slibuje signál i tam, kde žádný není

Živě.cz - 10 Říjen, 2026 - 10:45
SpaceX od dvou firem kupuje frekvence v pásmech 2 GHz a 800 MHz. • Chce nabízet mobilní služby: satelity pokryjí pustiny, pozemní vysílače dodají signál do budov. • Trhy Muskovi věří, akcie amerických operátorů po oznámení oslabily.
Kategorie: IT News

Rentgen pro vaše Windows. Zkoumáme legendární Sysinternals a novinky v PowerToys

Živě.cz - 10 Říjen, 2026 - 09:45
27 praktických tipů a triků pro MS PowerToys a nástroje ze sady Sysinternals, které vám pomohou vytěžit z Windows 11 maximum.
Kategorie: IT News

Co se děje s asteroidem, když letí zemskou atmosférou. NASA popsala sedm fází až po dopad

Živě.cz - 10 Říjen, 2026 - 07:45
Vědci prozkoumali 75 meteoritů, jejichž dopad na Zemi byl pozorován • Na základě toho popsali, jak vypadá průlet tělesa zemskou atmosférou • Průlet rozdělili do sedmi fází
Kategorie: IT News

Boty na zimu až o 40 % levněji a polovina útraty za online zábavu zpět

Lupa.cz - články - 10 Říjen, 2026 - 06:00
Říjen je měsíc nákupů, které se nedají moc odkládat – doplnit domácí lékárničku, vyměnit dosluhující spotřebič, nachystat výzdobu na Halloween nebo objednat zásobu granulí pro psa. Vybrali jsme deset aktuálních akcí, u kterých se vyplatí zpozornět. U každé rovnou píšeme, do kdy platí a jaký kód si připravit.
Kategorie: IT News

Událo se v týdnu 41/2026

AbcLinuxu [články] - 10 Říjen, 2026 - 00:01
Ucelený přehled článků, zpráviček a diskusí za minulých 7 dní.
Kategorie: GNU/Linux & BSD

Jak mění oplození ve zkumavce dědičnou informaci dětí?

OSEL.cz - 10 Říjen, 2026 - 00:00
Dětí z umělého oplodnění přibývá. Jak a nakolik poznamená tento způsob početí jejich dědičnou informaci?
Kategorie: Věda a technika

Kolumbův džihád: Objevitelovy texty ukazují propojení dobývání a víry

OSEL.cz - 10 Říjen, 2026 - 00:00
Kryštof Kolumbus by významný mořeplavcem a objevitelem, současně ale také horlivým dobyvatelem a šiřitelem křesťanské víry. Pod vlivem španělského náboženského triumfalismu a zápalu po dobytí Granady šířil v Novém světě mečem víru z mesiášských pohnutek a kvůli financování křížové výpravy do Jeruzaléma. S místními lidmi se moc nemazal.
Kategorie: Věda a technika

Anthropic Launches AI Vulnerability Scanner for Open-Source Projects

LinuxSecurity.com - 9 Říjen, 2026 - 23:05
Open-source maintainers can now apply for free security scans from Anthropic.
Kategorie: Hacking & Security

Go Security Update Fixes 15 Flaws in Servers and Toolchains

LinuxSecurity.com - 9 Říjen, 2026 - 23:00
Go 1.27.2 and 1.26.9 arrived on Oct 8, 2026 with corrections for 15 security flaws.
Kategorie: Hacking & Security

CI/CD Security Flaw in AWS CDK Could Pull Host Files Into Builds

LinuxSecurity.com - 9 Říjen, 2026 - 22:45
A file on a build machine could end up in a cloud deployment bundle because of a flaw disclosed by Amazon Web Services (AWS) on Oct 8, 2026.
Kategorie: Hacking & Security
Syndikovat obsah