Agregátor RSS

CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited

The Hacker News - 5 Srpen, 2026 - 09:40
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of vulnerabilities is as follows - CVE-2026-9198 (CVSS score: 9.8) - A code injection vulnerability in Langflow that allows unauthenticated attackers to achieve full remote Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Srovnávací test dvoudiskových NASů. Tradičním značkám šlape na paty levný vyzyvatel z Amazonu

Živě.cz - 5 Srpen, 2026 - 08:45
Dvoudisková síťová úložiště jsou ideální pro použití v domácnosti. Jejich ceny jsou hluboko pod 10 tisíci a nevyžadují ani vysokou investici do samotných disků. Přitom nabízí rychlá 2,5Gb/s rozhraní a výkonné procesory.
Kategorie: IT News

QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer

The Hacker News - 5 Srpen, 2026 - 07:47
Cybersecurity researchers have disclosed what has been described as a "long-standing supply chain attack" on QuickFox, a virtual private network (VPN) and network acceleration tool designed for overseas Chinese users. According to Fortinet FortiGuard Labs, the supply chain attack has been ongoing since at least August 2025 and involves a trojanized version of the application to deliver FDMTP, aRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Malý sodíkem chlazený reaktor ARC 100 míří k prvnímu nasazení. Nabídne výkon 100 MW a staví na osvědčeném konceptu

Živě.cz - 5 Srpen, 2026 - 07:45
Americká firma plánuje v roce 2029 spuštění nového modulárního reaktoru • Reaktor využívá tekutý sodík a navazuje na prověřený historický koncept • Zařízení posílí vývoz technologií a zajistí stabilní elektřinu pro datacentra
Kategorie: IT News

Herní výkon Zen 6 bude 15-18 % nad Zen 5, na úrovni Zen 5 X3D

CD-R server - 5 Srpen, 2026 - 07:40
S příchodem informací o herním výkonu Zen 6 nastává čas se také zastavit nad herním výkonem Zen 6 s X3D. Dosavadní indicie totiž naznačují, že nárůst výkonu s X3D by mohl být nižší než u Zen 5…
Kategorie: IT News

AI researchers let models off the leash – then watched as they tried to add malware to a FOSS project

The Register - Anti-Virus - 5 Srpen, 2026 - 03:55
The UK’s AI Security Institute has observed AI models performing what it calls “unsanctioned action” 19 times during security tests. The Institute (AISI) revealed the incidents in a Tuesday post and technical report that details tests it conducted to see if AI models can solve a cyber security challenge. “We ran this challenge 122 times across several models,” the post states, before revealing that "in 10 of those runs, an AI agent took autonomous, unsanctioned action on the live internet, targeting real people and organisations.” GitHub was the target of the tests. The org found 19 unsanctioned actions in all, 15 of them conducted by Anthropic's Mythos 5, and the other pair perpetrated by OpenAI's GPT-5.6-Sol. “In the most serious case, an agent tried to insert malicious code into an open-source project, the post states. “In an attempt to get the code approved, the agent engaged in social engineering – creating fake online identities and using them to pressure the project's maintainer to approve the code.” Thankfully, a human maintainer “caught and refused to approve the malicious code.” Other actions AI took during the test included: Attempts to deceive and target real people, by contacting them directly and “sending messages and files through an online file-transfer service to persuade them, or their own AI coding tools, to run malicious code. Some messages carried harmful payloads, and some were attempts at social engineering; targeted at real people – something we’ve never previously observed.” Attempts to plant and prompt-inject malicious code. The agent tried to insert malicious instructions where it reasoned that other automated AI systems might pick them up and execute them. Collaboration between independent agents being assessed simultaneously. One agent left public messages on GitHub offering collaboration with other agents working on the same challenge. It also provided instructions to reuse accounts and artefacts it had left behind, which were discovered and used by subsequent agents. The Institute rated the tests “the first time we have seen risks around autonomy and deception manifest this clearly, without specific prompting, in the real-world.” That’s scary, but the news isn’t all bad because AISI allowed the models it tested to access the internet and turned off guardrails, conditions it notes do not reflect the way AI model operators make their wares available to the public. The outfit’s findings therefore represent a very different outcome compared to the situation when OpenAI agents discovered and exploited a zero-day to reach the internet during a test set up to take place in sandbox. “This incident should be interpreted with caution and nuance,” the outfit advises. “To some degree, our evaluation design choices and specific configurations enabled the behaviour. Nonetheless, the activity undertaken by the agent show signs of novel, potentially deceptive behaviours, and were to an extent and severity we did not anticipate.” AISI can’t say if the results it observed suggest AI will take similar actions under different circumstances. “We cannot yet be certain when the agent understood it was taking real world action, or to what extent it believed it was in a fictional test scenario,” the post adds. “Our analysis so far presents a mixed picture and is ongoing.” “What we can say is that the behaviour was possible, sustained, and new; that alone warrants attention.” AISI thinks its findings represent “a shift in the risk landscape.” “Harm may arise not only when people deliberately misuse publicly available models, but when capable agents operating in an internal research or privileged-access setting take unintended action beyond their authorised scope,” it wrote. It doesn’t have advice on how to cope with this sort of thing, other than to endorse its own mission. “Incidents of this kind reflect the speed at which AI is developing,” the post concludes. “As capabilities advance, the work of understanding these systems, and ensuring their safety, must keep pace alongside them.” ®
Kategorie: Viry a Červi

OpenAI, Anthropic AI agents targeted real people and systems in cyber tests

Bleeping Computer - 5 Srpen, 2026 - 01:39
OpenAI and Anthropic have confirmed that their AI models were involved in separate, newly disclosed third-party cybersecurity testing incidents that resulted in a real website being breached and social engineering attacks against people outside the intended testing boundaries. [...]
Kategorie: Hacking & Security

TP-Link patches Omada ZTP flaws allowing hackers to breach networks

Bleeping Computer - 5 Srpen, 2026 - 00:18
TP-Link has patched 15 vulnerabilities in the zero-touch provisioning (ZTP) mechanism of its Omada network devices that could be chained with previously disclosed flaws to achieve remote code execution (RCE). [...]
Kategorie: Hacking & Security

Direct Fidoo Multibanking: Všechny firemní účty na jednom místě. První start se docela povedl (TEST)

Lupa.cz - články - 5 Srpen, 2026 - 00:00
Spravujete účty u několika bank nebo vedle živnosti provozujete také s. r. o.? Direct Fidoo Multibanking je dokáže spojit do jednoho přehledu a na jednom místě zobrazit zůstatky, transakce i základní vývoj cash flow. V praktickém testu nás potěšilo přehledné rozhraní, narazili jsme ale také na pomalejší aktualizaci dat, nejasná chybová hlášení a dosud omezenou automatickou kategorizaci.
Kategorie: IT News

Softwarová sklizeň (5. 8. 2026): bezpečnostní laboratoř za pár sekund

ROOT.cz - 5 Srpen, 2026 - 00:00
Vyměníme verze JDK jedním kliknutím, nacpeme si do jedné binárky desítku vývojářských nástrojů od hashů po ASCII art, vypíšeme si rozšíření RISC-V procesoru ve stylu neofetche a nakonec si zahrajeme Doom v Malování.
Kategorie: GNU/Linux & BSD

Pády Battlefield 6 s GeForce vyřešeny, netýkaly se jen vodní hladiny na RTX 5000

CD-R server - 5 Srpen, 2026 - 00:00
Po třech měsících přichází řešení na nestabilitu Battlefield 6 v kombinaci s GeForce RTX, zejména řadou 5000. DICE uvádí, že situací, ve kterých docházelo k pádům ovladače, bylo více než se uvádělo…
Kategorie: IT News

Lidé preferují povídky od AI. Zvlášť, když si myslí, že je napsal člověk

OSEL.cz - 5 Srpen, 2026 - 00:00
Výzkum obliby lidských a AI povídek naplno obnažil rozporuplný postoj dnešní společnosti k umělým inteligencím. Lidé považují povídky od AI za kvalitnější a také je víc zaujmou. Ale hodnotí AI povídky ještě mnohem lépe, když jim namluvíte, že jsou od lidských autorů. Co to tohle asi udělá s literaturou.
Kategorie: Věda a technika

Jak udržet Zemi obyvatelnou, až Slunce zemře?

OSEL.cz - 5 Srpen, 2026 - 00:00
Slunce tu nebude věčně. Co bychom měli dělat, až spálí své hvězdné palivo, a my tady ještě budeme? Nebo nějaké podobné druhy? Gabriel Harry navrhuje zůstat na Zemi a snažit se ji co nejlépe ochránit před červeným obrem, do něhož se Slunce promění. Vyhořelé Slunce by podle něj nahradili plynní obři Sluneční soustavy, jejichž vodík a helium bychom spalovali ve fúzních reaktorech.
Kategorie: Věda a technika

Phishing service spoofs RingCentral to steal Microsoft 365 accounts

Bleeping Computer - 4 Srpen, 2026 - 23:45
The Greatness phishing-as-a-service (PhaaS) platform has expanded from credential phishing to adversary-in-the-middle attacks and device-code phishing targeting Microsoft 365 accounts. [...]
Kategorie: Hacking & Security

Heat Is an Orbital Data Center’s Greatest Foe. These Tiles Dump It at the Source.

Singularity HUB - 4 Srpen, 2026 - 22:10

Sophia Space and Caltech want to fold the bulky parts of a space-based data center—solar cells and radiators—into all-in-one tiles with chips.

Every time you ask ChatGPT a question, computer chips in a massive data center whirl into action. In the blink of an eye, they ping back answers. Behind the scenes, though, AI data centers consume enormous amounts of electricity, heat, and water.

The AI boom is impacting communities. After welcoming 37 data centers, residents in Virginia’s Henrico County were hit with skyrocketing electrical bills. Schools and government buildings were asked to turn off lights, shut down computers, and avoid using space heaters to ease strain on the power grid and keep costs down.

Henrico isn’t alone. A growing backlash is prompting many states to consider legislation curbing new facilities. “No data center” signs have sprouted on lawns and alongside roads. Yet as AI demand continues to surge, so does the need for more computing power.

This has top AI companies looking skyward. Instead of routing requests to terrestrial data centers, future queries could be handled by thousands of solar-powered satellites orbiting above. The results would then be beamed back, with users none the wiser.

But there’s a major hurdle: heat.

Space’s frigid vacuum may seem like the perfect place to cool chips, but it’s not that simple. Lacking air and water to carry heat away, orbital data centers would have to use thermal radiation. Here, heat is converted into infrared energy and radiated into space, often requiring bulky hardware that adds weight, cost, and complexity.

With these challenges in mind, California Institute of Technology and Sophia Space, a California startup developing orbital computing, recently unveiled a patent for a chip cooling system designed to radiate heat into deep space. Called Sophia TILE, thousands of these chips could be linked to form large orbital data centers or organized into smaller, distributed clusters.

Powered by abundant sunlight, the chips could operate continuously without eating up Earth’s resources. The team hopes to test their vision by 2030.

“This patent reflects a different way of thinking about computer infrastructure in space,” said Leon Alkalai, founder and chief technology officer at Sophia Space, in a press release. “Instead of beaming down energy to Earth from orbit, we decided to consider putting computing in space and beam[ing] down data.”

The project joins a growing international push towards orbital computing. ADA Space, working with Zhejiang Lab, has already launched satellites for its Three-Body Computing Constellation and plans to expand into a much larger network. Meanwhile, US companies including SpaceX, Starcloud, and Blue Origin are seeking regulatory approval for constellations that could eventually grow to include up to a million AI-capable satellites.

Without doubt, the race is on.

Space Cadet

Orbital data centers would consist of high-performance computer chips housed in protective enclosures designed to withstand the harsh conditions of space. In orbit, they would collect uninterrupted solar power. In contrast, solar panels on Earth require batteries to store energy for use after sunset.

Solar power in space is hardly new. The International Space Station, satellites, and other spacecraft have long relied on solar panels. More recently, engineers have developed flexible, lightweight designs such as NASA’s Roll-Out Solar Arrays, which launch tightly rolled and unfurl in orbit.

AI, however, demands far more power. One long-standing idea for harvesting continuous solar power suggests we collect solar energy in space and beam it down to Earth. But that approach doesn’t completely appease the growing ire against data centers. They’d still consume energy on the ground and take up land and other resources. A newer idea flips the question. Rather than delivering energy to computers, why not bring computers nearer to the energy source?

The argument in favor of sending data centers skyward is growing stronger. A recent Gallup poll found roughly 70 percent of Americans oppose data centers in their backyard, while experts agree that meeting AI’s future energy demands on Earth alone will become increasingly unsustainable.

But while power is abundant in space, heat is the main problem. Without air or water to carry heat away, computers in space must rely on thermal radiation. That means adding large, heavy radiators to an already bulky, solar-powered setup. In space, weight is money, and scaling orbital data centers will take a lot of it (to put it mildly).

Hot and Cold

TILE tackles the cooling problem with a specialized material that converts heat into infrared radiation. The concept may seem alien, but everything warmer than absolute zero cools this way. Our bodies, stovetops, and car engines all shed heat as invisible infrared light.

Each TILE combines solar cells, thermal insulation, processors, memory, and optical communication hardware into a single module. Beneath the electronics sits a custom heat-spreading layer that prevents dangerous hot spots. Like placing a scorching pan onto a baking sheet, it distributes heat over a much larger surface before channeling it to the radiator.

The modules are designed to work together. Thousands of TILES could link into a giant computing mosaic, each acting as a mini computer connected to its neighbors. Like a modern power grid, the distributed architecture improves reliability—if one TILE fails, others can jump in—while simplifying power distribution and thermal management.

The modular design also solves a practical challenge: Rockets don’t have much cargo space. Similar to NASA’s Roll-Out Solar Arrays, a TILE-based data center could launch in a compact configuration before unfolding into a large, flat computing platform in orbit.

Looking further ahead, the team envisions launching multiple interconnected arrays in succession, like strings of pearls. Each could function as an independent data center that exchanges data with others, effectively extending cloud computing into orbit.

Sophia Space is targeting a demonstration mission in late 2027. By 2030, the team estimates an array of 2,000 TILEs could deliver up to a megawatt of dedicated computing power. To put that in perspective, a single ground-based data center can deliver hundreds of megawatts of computing power, and future data centers will stretch that number into the thousands.

There are challenges beyond the purely technical. Earth orbit is crowded with active spacecraft and debris, raising the risk of collisions. SpaceX’s Starlink satellites, for example, perform frequent collision-avoidance maneuvers after a close call in 2019. The breakup of a Chinese Long March rocket in 2024 threatened an estimated 1,000 satellites. Large constellations of data centers—SpaceX has plans for up to a million in low Earth orbit—would add even more traffic.

Beyond collisions, astronomers are worried that expanding satellite numbers could hinder our ability to study the universe by interfering with telescope observations and radio astronomy.

For now, orbital data centers are unlikely to replace their terrestrial counterparts. Instead, they’re more likely to complement them, processing data collected by spacecraft and beaming only the results back to Earth. Although the field is ridden with hype and controversy, there’s also promise and momentum is clearly building.

“It’s just kind of exploding,” Sergio Pellegrino, a Caltech engineer who collaborates with Sophia Space, told The New York Times. “We need to become more comfortable with space doing things for us.”

The post Heat Is an Orbital Data Center’s Greatest Foe. These Tiles Dump It at the Source. appeared first on SingularityHub.

Kategorie: Transhumanismus

New XCSSET variant targets macOS devs via compromised Xcode projects

Bleeping Computer - 4 Srpen, 2026 - 21:03
A new version of the XCSSET malware is targeting thousands of macOS users through compromised Xcode projects and GitHub repositories. [...]
Kategorie: Hacking & Security

77 Open VSX extensions found harvesting developer info

Bleeping Computer - 4 Srpen, 2026 - 20:50
77 extensions on the Open VSX marketplace impersonated legitimate developer tools while transmitting information about the systems and development environments where they were installed. [...]
Kategorie: Hacking & Security

FFmpeg 9.0 "Lei"

AbcLinuxu [zprávičky] - 4 Srpen, 2026 - 20:48
Jean-Baptiste Kempf na svém blogu představil novou verzi 9.0 "Lei" kolekce svobodného softwaru umožňujícího nahrávání, konverzi a streamovaní digitálního zvuku a obrazu FFmpeg (Wikipedie).
Kategorie: GNU/Linux & BSD

NVIDIA sponzorem služby Linux Vendor Firmware Service (LVFS)

AbcLinuxu [zprávičky] - 4 Srpen, 2026 - 20:16
Richard Hughes oznámil, že službu Linux Vendor Firmware Service (LVFS) umožňující aktualizovat firmware zařízení na počítačích s Linuxem, nově sponzoruje také společnost NVIDIA.
Kategorie: GNU/Linux & BSD
Syndikovat obsah