Agregátor RSS

Microsoft plans to improve Windows 11 driver quality in 2026

Bleeping Computer - 19 Květen, 2026 - 18:22
Microsoft plans to raise the quality bar of Windows 11 drivers, as drivers "sit at the heart of every Windows experience" and connect the OS to the "silicon, components, and peripherals." [...]
Kategorie: Hacking & Security

Microsoft blames macOS update for undismissible Teams location prompts

Bleeping Computer - 19 Květen, 2026 - 18:10
Microsoft has confirmed user reports that the Teams team collaboration app is displaying non-dismissible location prompts on some macOS systems. [...]
Kategorie: Hacking & Security

Coming Bright Up: Apple’s AI moment looms

Computerworld.com [Hacking News] - 19 Květen, 2026 - 18:04

Apple has confirmed this year’s Worldwide Developers Conference (WWDC) will take place June 8-12. The show begins with a keynote speech likely to be Tim Cook’s final public appearance as Apple’s CEO. His successor, John Ternus, will also be in the spotlight, but perhaps not quite as much as Apple’s promised smart Siri successor.

Getting AI right is incredibly important to the company this year, and Apple seems to recognize that. The official media invitation features a brightly glowing Swift logo with the tagline “Coming Bright Up,” which some see as a hint at the advanced AI capabilities Apple intends making available. It also hints at the new Siri user interface Apple is building, while the use of a Swift suggests the introduction of additional Foundation Models with which developers can add AI tools to their products.

On the developer website, Apple’s media images all show that bright glow, which also hints at potential improvements to Liquid Glass. There’s no doubt at all that the entire industry will be tuned into WWDC to find out where Apple is going with AI. So, no pressure there, right?

AI tools developers can use

The company told developers to expect more than 100 new videos about tools, technologies, and design, many of them to be revealed during the Platforms State of the Union address, which follows the keynote.

“WWDC26 will kick off June 8 with the Keynote and Platforms State of the Union, introducing incredible updates for Apple platforms, including AI advancements and exciting new software and developer tools,” Apple said, announcing the event.

Apple knows the world is watching and seems unlikely to want to disappoint its audience again, though the way it framed this in suggests some of the improvements will be for developers, with end users to benefit later. This is the approach Apple has taken with Foundation Models so far, though it isn’t yet clear if the company intends introducing a paid tier of APIs for developers. I’d consider that a risk at this stage, given the perception Apple faces.

What’s at stake?

A confluence of challenges means Apple is perceived as having fallen behind on AI. That’s got to hurt. The company is under a lot of pressure to push back against that viewpoint, and while that’s a challenge, it’s also a big opportunity. 

Wedbush Securities analyst Dan Ives says Apple is a “sleeping tech giant” poised for growth if it gets the mix right, predicting the company’s ecosystem could become the “consumer hub” of AI, to the extent that 20% of the global population will use Apple to access it. At Morgan Stanley, analyst Erik Woodring thinks what Apple is about to introduce will prompt a mass upgrade and sees revenue potential in AI services for the company. In general, people seem to agree that Apple’s ecosystem is more than capable of handling the demands of AI; the challenge is properly integrating it within Apple’s environment.

What is Apple Planning?

At the moment, strong speculation suggests Apple has added new Writing Tools, improved image generation on its devices, and has worked with Google Gemini to extend the number of available APIs developers can use, as well as enhancing contextual understanding by Siri.

Any one of these things would have impressed us all at one time, but in an AI world of Claude, Gemini, or even Grok, some will likely see even these enhancements as weak sauce. Additional key expectations include:

  • Siri will become a chatbot-style assistant in the form of an LLM-enhanced app, built in partnership with Google Gemini.
  • Apple will give users a choice of AI apps, including the ability to make whatever they choose the default on their system.
  • Siri will gain a new interface hosted in the Dynamic Island on devices that support it.
  • Siri might also gain the ability to string instructions together using a combination of text/speech and Shortcuts abilities. 
  • You should see improved contextual awareness; Siri will be able to “see’”what’s on your screen and take relevant actions across one or more third-party apps.
  • Those functions are likely to be delivered by App Intents, which permits developers to make app functions available across the system without opening the apps.
  • Visual Intelligence will let the iPhone camera app identify more options, including objects and passes, such as for events and public transit.
  • Multitasking on iPads should improve, while macOS might gain some touch-based interface improvements. That could set the scene for better integration between iPad and Mac, and, of course, make a touchscreen Mac possible.

Most recently, there’s been chatter about Apple introducing an iMac equipped with an M5 processor. If so, this could emerge at, or slightly before, WWDC.

As it does each year, the conference will feature the Apple Design Awards, Swift Student Challenge, Labs, and an in-person, 1,000 people gathering in Cupertino for the keynote. 

Watch it in real time

The keynote will be available to stream on Apple’s website. It will also be hosted on the Apple TV app and Apple’s YouTube channel, with playback on-demand after the event.

You can follow me on social media! Join me on BlueSky,  LinkedIn, and Mastodon.

Kategorie: Hacking & Security

Clear your calendar, Drupal user: You have a critically urgent patch to install

The Register - Anti-Virus - 19 Květen, 2026 - 17:56
Updated: If you use Drupal, get ready to patch without delay. The org behind the popular open source content management system is warning of a highly critical vulnerability in Drupal core that is serious enough for it to tell users ahead of Wednesday’s patch release to set aside time to install the fix immediately. The Drupal Security Team’s Monday PSA announcing the imminent patch for Drupal core doesn’t include any specifics, with the PSA noting that Drupal isn’t willing to share additional information until the announcement is made alongside the patch release. That, says Drupal, will happen at some point between 1700 and 2100 UTC on Wednesday, May 20. To reiterate, this vulnerability is found in Drupal core, the bare-bones version of Drupal designed for developers, and not Drupal CMS, the preconfigured version for those who want Drupal but don’t have coding skills. Drupal noted that sites using Drupal Steward, its paid web application firewall service, are protected against known attack vectors, though it still recommends Steward customers update their core instances in case additional exploit methods emerge. “The Drupal Security Team urges you to reserve time for core updates at that time because exploits might be developed within hours or days,” the advisory warns. Drupal also recommends users update to the latest supported release prior to Wednesday’s patch “so that you can address any other upgrade issues before the security window." While it won’t get specific on the nature of the vulnerability, Drupal did share its severity score based on NIST’s standard scoring methodology, and it’s not good: The bug scored 20 out of a max of 25 on that scale, as defined by Drupal’s own documentation. More specifically, it’s trivially easy to leverage, doesn’t require any privilege level to exploit, could make all non-public data on an affected site accessible to the attacker, and could allow an attacker to modify or delete whatever they wanted. The only two things preventing it from scoring a perfect 25/25 are the fact that a known exploit doesn’t exist yet and that it doesn’t affect all configurations, only those using “uncommon module configurations.” Drupal noted that security releases will be published on Wednesday for all currently supported core branches (11.3.x, 11.2.x, 10.6.x, and 10.5.x), as well as unsupported Drupal 11.1.x and 10.4.x branches for sites that have not yet upgraded from older 10.x and 11.x releases. Drupal users on 8.9 and 9.5 are also getting patches “given the potential severity of this issue,” though the advisory warns 8.9 and 9.5 users will need to install those updates manually, which “might introduce other bugs or regressions,” leading Drupal to recommend a full upgrade to a supported core branch. “Drupal 8 and 9 include numerous other, previously disclosed, security vulnerabilities that will not be addressed by either Drupal Steward or the best-effort patch files,” the advisory said. Drupal 7 users are safe. Given the fact that not all Drupal core environments will be affected, the advisory recommends all Drupal core users set aside time on Wednesday to determine whether they’re part of the vulnerable class, and take action immediately if so. ® Updated to add on May 20: The Drupal Security Team has been in contact to warn that, while Core is the primarily vulnerable product, Core's inclusion in Drupal CMS means those environments might be vulnerable too, so anyone running Drupal will need to be sure their site is secure. As for the patch itself, Drupal told us it can be installed in "minutes or maybe seconds depending on the site," which likely won't need to be taken offline in order to install the patch.In other words, you really ought to be sure this gets installed before you're caught being a straggler.
Kategorie: Viry a Červi

Letitý kolos za pomoci Čechů ukazuje, že i v Evropě lze vyvíjet AI na světové úrovni

Živě.cz - 19 Květen, 2026 - 17:45
Šéf gigantu SAP Christian Klein varuje před zaostáváním Evropy a sází na novou generaci byznysových modelů pro práci s daty • . • Vývojové centrum SAP Labs v Brně se stává klíčovým hráčem při tvorbě umělé inteligence určené pro řízení moderních podniků. • Německá skupina masivně investuje do ...
Kategorie: IT News

DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability

The Hacker News - 19 Květen, 2026 - 16:56
Proof-of-concept (PoC) exploit code has now been released for a recently patched security flaw in the Linux kernel that could allow for local privilege escalation (LPE). Dubbed DirtyDecrypt (aka DirtyCBC), the vulnerability was discovered and reported by the Zellic and V12 security team on May 9, 2026, only to be informed by the maintainers that it was a duplicate of a vulnerability that had
Kategorie: Hacking & Security

DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability

The Hacker News - 19 Květen, 2026 - 16:56
Proof-of-concept (PoC) exploit code has now been released for a recently patched security flaw in the Linux kernel that could allow for local privilege escalation (LPE). Dubbed DirtyDecrypt (aka DirtyCBC), the vulnerability was discovered and reported by the Zellic and V12 security team on May 9, 2026, only to be informed by the maintainers that it was a duplicate of a vulnerability that had Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Alza má nové držáky na monitory. Ten nejlepší unese dvě těžké obrazovky a funguje i jako dokovací stanice

Živě.cz - 19 Květen, 2026 - 16:45
Na trhu je pět nových držáků AlzaErgo v cenách od 2490 do 4890 Kč. • Nejvyšší model má plynové pružiny, vysokou nosnost a unese dva monitory. • Tahákem je také integrovaná dokovací stanice v základně.
Kategorie: IT News

New Shai-Hulud malware wave compromises 600 npm packages

Bleeping Computer - 19 Květen, 2026 - 16:30
Threat actors earlier today published more than 600 malicious packages to the Node Package Manager (npm) index as part of a new Shai-Hulud supply-chain campaign. [...]
Kategorie: Hacking & Security

OpenBSD 7.9

AbcLinuxu [zprávičky] - 19 Květen, 2026 - 16:25
Bylo vydáno OpenBSD 7.9. Po dlouhé době opět se songem: Diamond in the Rough.
Kategorie: GNU/Linux & BSD

7-Eleven confirms data breach claimed by the ShinyHunters gang

Bleeping Computer - 19 Květen, 2026 - 16:16
Convenience store chain giant 7-Eleven confirmed that its systems were breached in a cyberattack claimed by the ShinyHunters extortion group last month. [...]
Kategorie: Hacking & Security

Oneplay a 30 nejoblíbenějších filmů a seriálů v květnu 2026. Tohle Češi na bývalém Voyo nejvíc sledují

Živě.cz - 19 Květen, 2026 - 16:15
Tyto filmy a seriály jsou teď na Oneplay (dříve Voyo) nejoblíbenější. Nerozlišujeme žánr, stáří ani hodnocení na filmových webech. Jde o souhrnnou oblíbenost za poslední týdny, kterou zjišťuje a počítá web FlixPatrol.
Kategorie: IT News

Firefox 151.0

AbcLinuxu [zprávičky] - 19 Květen, 2026 - 16:07
Byl vydán Mozilla Firefox 151.0. Přehled novinek v poznámkách k vydání a poznámkách k vydání pro vývojáře. Řešeny jsou rovněž bezpečnostní chyby. Nový Firefox 151 bude brzy k dispozici také na Flathubu a Snapcraftu.
Kategorie: GNU/Linux & BSD

Critical Microsoft Vulnerabilities Doubled: From Exposure to Escalation

Bleeping Computer - 19 Květen, 2026 - 16:00
Microsoft's total vulnerability count stayed steady in 2025, but critical flaws surged year over year. BeyondTrust breaks down why attackers are increasingly focused on privilege escalation and identity abuse. [...]
Kategorie: Hacking & Security

Na jadernou elektrárnu ve Spojených arabských emirátech zaútočil dron. Následný požár nezpůsobil únik radiace

Živě.cz - 19 Květen, 2026 - 15:43
Dronový útok zapálil elektrický generátor blízko jaderné elektrárny Baráka • Při incidentu naštěstí nebyl nikdo zraněn a neunikla žádná radiace • K útoku se nikdo nepřihlásil, nicméně úřady podezřívají především Írán
Kategorie: IT News

MPSV chystá rychlé úpravy superdávky. Mají ochránit seniory, samoživitele i domácnosti s drahým bydlením

Lupa.cz - články - 19 Květen, 2026 - 15:03
Ministerstvo práce a sociálních věcí má hotovou analýzu dopadů superdávky. Výsledek? Bez některých úprav si značná část příjemců dávky pohorší.
Kategorie: IT News

Nejlevnější elektrická Škoda oficiálně. Poslouží jako obří powerbanka pro dům a má vyjímatelný frunk

Živě.cz - 19 Květen, 2026 - 14:45
O nejlevnějším elektrickém modelu značky Škoda víme už více než dva roky. Dnes je tu oficiálně, známe veškeré parametry, ceny firma zveřejní o den později (středa 20. května). Z českého pohledu je zajímavé i to, že se novinka bude vyrábět v továrně poblíž španělského města Navarra – společně s ...
Kategorie: IT News

MXDR Provider Selection for Linux Environments and Security Services

LinuxSecurity.com - 19 Květen, 2026 - 14:22
Managed Extended Detection and Response (MXDR) has become one of the most sought-after security services in the enterprise market — and with good reason. It promises the holy grail: broad visibility across endpoints, network, cloud, email, and identity, combined with the 24/7 human expertise most organizations simply cannot build in-house.
Kategorie: Hacking & Security

Webinar: The hidden bottlenecks in network incident response

Bleeping Computer - 19 Květen, 2026 - 14:14
IT teams are increasingly overwhelmed by alerts from disconnected systems, forcing responders to manually coordinate investigations during network incidents. This webinar explores how automation and AI-assisted workflows can help reduce response delays and improve operational coordination. [...]
Kategorie: Hacking & Security
Syndikovat obsah