Agregátor RSS

Americký Qnetic staví 200 kWh setrvačníkový systém pro ukládání energie

OSEL.cz - 26 Červenec, 2026 - 00:00
Jak ukládat energii bez chemických látek? Mechanické řešení nabízí setrvačník, masivní, s magnetickou levitací a vakuovou komorou. Qnetic brzy rozjede 200 kWh prototyp setrvačníku pro ukládaní energie Pulsar. Podobná úložiště by mohla téměř okamžitě dodat velmi vysoký výkon pro rozvodnou síť.
Kategorie: Věda a technika

Vylepšení pro knihovnu Glycin a cenzura PDF pro GNOME, Wine řeší nejen běh Hedgewars

ROOT.cz - 26 Červenec, 2026 - 00:00
Týden v KDE a nejen automatické zamknutí RDP sezení při ztrátě připojení, týden v GNOME a opět Sophie s Loupe + Glycin či applovské menu Kiwi, vývojová verze Wine 11.14 a konverze 7.1 zvuku.
Kategorie: GNU/Linux & BSD

Email Spoofing Techniques That Bypass Human Detection

LinuxSecurity.com - 25 Červenec, 2026 - 21:20
You've probably trained your team to look for red flags. Odd sender names, urgent language, mismatched links. But a well-crafted spoofed email won't trip any of those wires. It looks legitimate, sounds legitimate, and often comes from a domain that passes every automated check you throw at it.
Kategorie: Hacking & Security

Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable

The Hacker News - 25 Červenec, 2026 - 20:48
A malvertising operation dubbed SourTrade is making victims' browsers build the final Windows executable themselves, using a legitimate Bun runtime as its base instead of serving one complete malicious file from a fixed URL. Confiant, which detailed the campaign on July 23, 2026, said it has operated since late 2024 and impersonated TradingView, Solana, and Luno to target retail traders and Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Microsoft v červenci opravil 627 děr. AI mění pravidla hry a instalace záplat se nesmí moc odkládat

Zive.cz - bezpečnost - 25 Červenec, 2026 - 17:45
**AI zrychluje objevování zranitelných míst v kódu. **Microsoft ve svých produktech v červenci opravil 627 zranitelných míst. **Doporučuje, aby se instalace záplat neodkládala déle než tři dny.
Kategorie: Hacking & Security

Microsoft v červenci opravil 627 děr. AI mění pravidla hry a instalace záplat se nesmí moc odkládat

Živě.cz - 25 Červenec, 2026 - 17:45
AI zrychluje objevování zranitelných míst v kódu. • Microsoft ve svých produktech v červenci opravil 627 zranitelných míst. • Doporučuje, aby se instalace záplat neodkládala déle než tři dny.
Kategorie: IT News

Malicious sites use JavaScript to build malware in browser memory

Bleeping Computer - 25 Červenec, 2026 - 17:21
A massive malvertising campaign is using fake Solana, Luno, and TradingView webpages with malicious JavaScript that instructs browsers to assemble malware directly in memory. [...]
Kategorie: Hacking & Security

ShinyHunters data leaks fuel $2,000 sextortion email scam

Bleeping Computer - 25 Červenec, 2026 - 16:16
Threat actors are using email addresses exposed in data breaches leaked by the ShinyHunters extortion group to send sextortion emails demanding $2,000 in Bitcoin. [...]
Kategorie: Hacking & Security

This Week’s Awesome Tech Stories From Around the Web (Through July 25)

Singularity HUB - 25 Červenec, 2026 - 16:00
Artificial Intelligence

OpenAI Says Its AI Models Went Rogue and Attacked a Digital Library
Kate Conger | The New York Times ($)

“The trial was designed to keep the models in a safe testing environment, known as a sandbox, OpenAI said. But the models found a vulnerability that allowed them to escape the sandbox and connect to the internet. Then they targeted Hugging Face because they inferred that the library, which contains millions of AI models, could hold clues about how to successfully pass the evaluation.”

Tech

Be Skeptical of OpenAI’s Rogue Hacker Agent Story
John Thickstun | The Guardian

“OpenAI remains hungry for ever larger investments, and the company increasingly seeks privileged regulatory status as defense against competition. AI is so powerful that investors should buy OpenAI, even at a trillion-dollar valuation; AI is so dangerous that only trusted actors like OpenAI should be permitted to possess and operate this technology. Step back from these doomsday warnings and consider who might benefit from them.”

Biotechnology

Can This New Enzyme Turn Back the Clock in the Human Body?
K.R. Callaway | The New York Times ($)

“In a recent study, scientists devised a way of reversing the buildup of compounds that lead to some age-related diseases. …After several cycles of guided evolution, the novel enzyme, called CMLase, became very good at removing AGEs [advanced glycation end products] from human tissue samples. ‘In the most extreme case, we took 70-year-old human skin and brought the levels back to that of a 30-year-old,’ Dr. Cravens said.”

Tech

Silicon Valley Is Completely Divided Over Chinese AI
Lauren Goode | Wired ($)

“Having access to open-source software allows startups to scale, scale, scale—and deal with the consequences down the road. Meanwhile, the AI labs and hyperscalers that make proprietary platforms, like OpenAI, Anthropic, Google, Microsoft, Meta, and XAI, stand to benefit greatly if their systems remain protected and dominant. The bigger question that none of these companies seem to be asking is what best serves the 99 percent of us who don’t have their financial future fully staked on advancing AI.”

Science

Neuron Discovery Could Explain Why Some People Don’t Get Alzheimer’s
Pranjal Malewar | Refractor

“This kind of strategy may open up novel avenues for the prevention of cognitive decline generally or for protecting against Alzheimer’s-related vulnerability/resilience. Salta states, ‘Cognitive resilience is extremely exciting. If we understand what protects these brains, it could eventually lead to new therapeutic strategies. For now, the message is clear: the aging brain may be more adaptable and more complex than we once thought.'”

Space

India’s First Privately Developed Rocket Reaches Orbit on Dramatic Debut Launch
Stephen Clark | Ars Technica

“Indian space officials celebrated the debut flight of Skyroot Aerospace’s Vikram-1 rocket, India’s first fully commercial satellite launcher, as a ‘grand success’ Saturday after an on-target climb into a 280-mile-high orbit following liftoff from an island spaceport in the Bay of Bengal.”

Tech

Kagi Brings Back Old-School Search, One Human-Made Website at a Time
David Nield | Wired ($)

“As Kagi explains it, searching the web is always going to cost you—it’s just a question of whether you pay directly with dollars, by giving up data about your online activity, or by sifting through an increasing number of ads and sponsored links. Besides making search more private, Kagi also wants to make it better by serving up results that aren’t influenced by paid promotions or whatever Google’s favored business practices happen to be from month to month.”

Artificial Intelligence

Now, Defenders Are Embracing the prompt Injection, Too
Dan Goodin | Ars Technica

“Researchers from Tracebit on Monday said they found that placing prompt injections alongside passwords, cryptographic keys, and other secrets stored on Amazon Web Services was often all that was needed to shut down attacks from AI hacking agents.”

Artificial Intelligence

What the New Kimi K3 Model Really Means for the US-China AI Race
Alix Coutures, Rocket Drew, and Aaron Holmes | The Information ($)

“Greenblatt estimates that Kimi K3 is 10 months behind Anthropic in terms of pre-training. ‘My basic takeaway is it’s probably not that competitive with the best recent pre-trains from OpenAI and Anthropic,’ he said. ‘It’s some evidence that the model is more behind than people might have otherwise thought.'”

The post This Week’s Awesome Tech Stories From Around the Web (Through July 25) appeared first on SingularityHub.

Kategorie: Transhumanismus

Krabix je český generátor krabiček pro 3D tisk. Má šablony pro Raspberry Pi a model stáhnete v STL a 3MF

Živě.cz - 25 Červenec, 2026 - 15:45
Návrh krabičky na míru pro 3D tisk je sice tradiční disciplína začátečníků, kteří se potřebuji naučit CAD, ale co si budeme povídat, ne každý má čas trávit hodiny ve Fusionu a dalších nástrojích. Kutilové proto v posledních letech připravili několik horších i lepších automatických webových ...
Kategorie: IT News

Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available

The Hacker News - 25 Červenec, 2026 - 14:52
Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba's JSON library for Java. In affected Spring Boot applications, a malicious JSON request can execute code without authentication, with the privileges of the Java process. Tracked as CVE-2026-16723, the vulnerability carries an Alibaba-assigned CVSS score of 9.0. The confirmed chain requires Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

CVE-2026-64600 aneb RefluXFS, lokální eskalace práv v XFS

AbcLinuxu [zprávičky] - 25 Červenec, 2026 - 14:27
Byly zveřejněny informace o kritické zranitelnosti CVE-2026-64600 pojmenované RefluXFS (technické detaily) v XFS. Je tam již od verze Linuxu 4.11, tj. rok 2017. Jedná se o lokální eskalaci práv. Neprivilegovaný uživatel může editovat libovolný soubor, například klidně zrušit rootovské heslo v /etc/passwd. Videoukázka na Vimeo. V upstreamu je zranitelnost opravena.
Kategorie: GNU/Linux & BSD

Výpadky OpenAI

AbcLinuxu [zprávičky] - 25 Červenec, 2026 - 13:46
OpenAI / ChatGPT má dnes výpadky (OpenAI Status, DownDetector).
Kategorie: GNU/Linux & BSD

Slováci chtějí vyrábět led ze slunce. Potřebujete solární panely, sud s vodou a kompresor

Živě.cz - 25 Červenec, 2026 - 13:45
Počet hodin s nulovou či dokonce zápornou cenou elektřiny přibývá, zejména v letních měsících. Zásluhu na tom mají hlavně fotovoltaické elektrárny – produkují množství energie, kterou v daný moment nemá kdo spotřebovat. To sráží tržní cenu klidně i do záporných hodnot, tzn. někdo vám zaplatí za to, ...
Kategorie: IT News

Stanovisko Codeberg k využívání LLM

AbcLinuxu [zprávičky] - 25 Červenec, 2026 - 13:00
Poskytovatel hostingu svobodných/open-source projektů Codeberg po hlasování na valné hromadě vydal stanovisko k využívání LLM. Kvůli vytěžování infrastruktury a rostoucím cenám hardwaru, ale také hrozbám pro spolupráci v komunitě se k LLM staví kriticky. Nebude poskytovat hosting projektů vytvářených LLM agenty.
Kategorie: GNU/Linux & BSD

Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git

The Hacker News - 25 Červenec, 2026 - 12:14
Security researchers at depthfirst published working exploit code on July 24 for a GitLab flaw that GitLab patched six weeks earlier, on June 10. It runs commands as git on any self-managed 18.11.3 server that has not taken the update. Any authenticated user who can push to a project can run it. The attacker commits a crafted Jupyter notebook and opens its commit diff, which leaks a heap Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking

The Hacker News - 25 Červenec, 2026 - 12:14
For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into entering usernames and passwords, attackers collected the credentials, and accounts were compromised later when an opportunity arose. That model is changing. Recent investigations into insurance-focused phishing operations reveal a more immediate approach. Instead of harvesting The Hacker Newshttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE

The Hacker News - 25 Červenec, 2026 - 12:14
Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest) ransomware campaign are exploiting flaws in internet-exposed PTC Windmill and FlexPLM deployments as part of a new data extortion campaign. "Attackers chain a pre-authentication information disclosure in the FlexPLM WSDL endpoint with a server-side flaw in the Windchill login servlet, enabling Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts

The Hacker News - 25 Červenec, 2026 - 11:53
The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to build payloads, oversee earnings, and manage various aspects related to victims. Swiss cybersecurity company PRODAFT is tracking the centrally administered RaaS operation under the name Funky Mantis. "The portal combined build generation, finance, Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Nalezení života ve vesmíru je opět o kousek blíž. Astronomové potvrdili atmosféru u kamenné exoplanety

Živě.cz - 25 Červenec, 2026 - 11:45
Vědci poprvé potvrdili existenci atmosféry u kamenné exoplanety v obyvatelné zóně • Zajímavým úkazem je časově proměnlivý únik plynného helia z horních vrstev • Nový objev výrazně posouvá lidstvo k nalezení mimozemského života ve vesmíru
Kategorie: IT News
Syndikovat obsah