FDA Grants Quick Review For 3 Psychedelic Drug Trials
Read more of this story at Slashdot.
Read more of this story at Slashdot.
Read more of this story at Slashdot.
Read more of this story at Slashdot.
Read more of this story at Slashdot.
Read more of this story at Slashdot.
https://techcrunch.com/2026/04/28/at-his-openai-trial-musk-relitigates-an-old-friendship/
https://techcrunch.com/2026/04/28/amazon-is-already-offering-new-openai-products-on-aws/
Texas Instruments graphing calculators have helped many a student with algebra, pre-calculus and upside-down anatomical slang. Now, the company is back with an upgrade for the modern world, the TI-84 Evo. The new device lets you get your math on with a faster processor, a new icon-based home screen and a redesigned keypad.
TI is marketing it as something akin to the Light Phone of calculators. Unlike calculator apps on phones or computers, the "distraction-free" TI-84 Evo is a single-purpose device "designed to do one thing exceptionally well — math." Without notifications, social media apps or even Wi-Fi, there's less to draw your focus away from the math problems at hand. (However, there will always be the sidesplittingly funny "58008" to relieve your boredom.)
Texas InstrumentsThe new model's processor is three times faster than its predecessor. It also adds 50 percent more graphing space, a simplified keypad and USB-C charging. There's also a new feature that lets you trace along a graph to find points of interest.
The TI-84 Evo is available now. Individual customers will pay $160. (School districts can contact the company for bulk pricing.) The calculator ships in a modern array of colors: white (the standard model), mint, pink, purple, teal, raspberry and silver.
This article originally appeared on Engadget at https://www.engadget.com/mobile/texas-instruments-made-a-new-flagship-graphing-calculator-the-ti-84-evo-201903438.html?src=rssApple reportedly plans to fix bugs and expand the capabilities of Apple Intelligence with the release of iOS 27, iPadOS 27 and macOS 27 year, and it seems like tweaks to the company's AI could go beyond a more functional version of its Siri assistant. Bloomberg reports that this year's software updates will also include new AI-powered photo editing tools that will let users change things like the background and framing of images, too.
You can currently use the Photos app across Apple's operating systems to adjust things like saturation and contrast, apply filters, crop photos or use AI to remove objects with the Clean Up tool. Clean Up will apparently be one of several "Apple Intelligence Tools" after these new updates roll out, Bloomberg writes. Along with Clean Up, users will be able to use "Extend" to expand the background of the photo with generative AI, "Enhance" to automatically improve things like lighting and image quality and "Reframe" to shift the perspective of a photo after it's taken, primarily for Apple's spatial photos.
The new features, if released, will bring Apple's photo-editing tools more in line with competitors like Google and Samsung, though both companies still lap Apple in their willingness to create entirely generated images. Google's Magic Editor feature, which debuted in 2023, still takes the cake in terms of giving users leeway to radically add to and change their photos.
Other than new photo tools, Apple is reportedly also debuting its new version of Siri powered by Google's Gemini models, a standalone Siri app and AI-powered search inside its apps. Apple will likely introduce many of these new features during its WWDC keynote on June 8.
This article originally appeared on Engadget at https://www.engadget.com/ai/ios-27-will-reportedly-come-with-new-ai-powered-photo-editing-tools-194119562.html?src=rssNVIDIA is releasing a new variant of its 5070 GPU for laptops. Nestled in a blog post about the latest version of its Game Ready Drivers, the company notes its partners will soon start selling 5070 laptops with 12GB of VRAM, alongside the 8GB model that NVIDIA has offered since the launch of the 50-series.
"Demand for GeForce RTX remains strong, and memory supply is contrastrained. In order to maximize memory availability, we are releasing the GeForce RTX 5070 Laptop GPU 12GB configuration with 24Gb G7 memory. This gives our partners access to an additional pool of memory to complement the 16Gb G7 supply that currently ships with most GeForce GPUs," NVIDIA said.
The first 12GB 5070-equipped laptops are slated to start shipping sometime in June, with manufacturers like ASUS, Lenovo and MSI likely to offer the video card as an option in some of their models. NVIDIA has yet to confirm pricing, but outlets like NotebookCheck are reporting that 12GB 5070 laptops could cost as much as their 5070 Ti counterparts. Right now, a 5070 Ti-equipped PC like the Acer Predator Helios Neo 16S AI can set you back as much $2,650, depending on the amount of RAM on offer. New 12GB 5070 laptops likely won't cost as much, given manufacturers will probably configure them with less RAM.
NVIDIA has yet to share the full spec list for the 12GB 5070, but as the company notes, it’s using 24Gb G7 memory, instead of 16GB G7 memory, for the new model. The two memory types are made using different manufacturing processes. The former uses 3GB memory modules, while the latter uses 2GB ones. Either way the company is tapping into a different supply of memory that, in recent months, Samsung and Micron have managed to produce more consistently at scale. That said, unless NVIDIA has redesigned the 5070 to equip it with a wider 192-bit bus interface, which seems unlikely in this case, the new model won't be able to access that additional memory as fast as the 5070 Ti and other models above it in NVIDIA's stack. For most games that shouldn't matter too much, but it does mean the new model isn't quite the upgrade it seems if you just look at the amount of raw VRAM.
This article originally appeared on Engadget at https://www.engadget.com/computing/laptops/nvidia-starts-offering-a-12gb-version-of-the-5070-for-laptops-180057515.html?src=rssGames Done Quick, the charity video game speedrunning series, is making its European debut in a live event at Germany’s Gamescom this summer.
GDQ’s marathon event will run for the duration of the three-day show in Cologne, starting August 28-30, and will feature popular runners and an on-site live audience. The event will be broadcast on Twitch and YouTube, with programming kicking off at 4am ET (one for all you early risers) daily and running until 2pm.
"We’re thrilled to expand Games Done Quick globally and to bring a live event to gamescom in Germany, an opportunity that’s incredibly meaningful to our team," said Ashley Farkas, Games Done Quick’s Owner and Business Director. "This partnership not only supports an amazing initiative, but also creates space for more runners to participate, especially those who haven’t previously had the opportunity to travel to the US."
Games Done Quick was established in 2010 and has since raised more than $60 million for charities worldwide. Its first event of this year took place back in January, and featured live speedruns of Super Mario Sunshine, Hades II and Clair Obscur: Expedition 33, to name a few.
This article originally appeared on Engadget at https://www.engadget.com/gaming/games-done-quick-will-host-its-first-ever-event-in-europe-170637194.html?src=rssIt was only a matter of time before they found a way to use AI agents as corporate shills. On Tuesday, Snapchat rolled out AI Sponsored Snaps, a "new way for brands to show up in Chat through AI agents." Or, put another way, it's conversational advertising. (Yay?)
AI Sponsored Snaps will appear in the app's Chat tab (with a light gray "Ad" notation next to the brand name). After opening the chat, you can ask the agent questions about the brand it represents. Snap showed an example from its first partner for the initiative, Experian. The bot offers to answer your questions on saving money, improving your credit score and — there it is — exploring loans and credit cards.
Whether through credit card offers or other means, the AI agent will presumably try to guide you toward behavior that makes money for the sponsor. So, it isn't clear why this would be better for consumers than asking a general-purpose chatbot like Gemini or Claude the same questions. Maybe the answer is as simple as, "It isn't... but they know people will use it anyway."
Snap"Conversation is becoming the most valuable real estate in advertising," Snap's Chief Business Officer, Ajit Mohan, wrote in a press release. "AI is accelerating that shift, turning chat into the place where people discover products, ask questions, and make decisions in real time. The real opportunity isn't just putting ads into those environments, it's designing formats that feel native to how people already talk."
Snap says more than half a billion people have messaged its My AI feature since it launched three years ago. That was despite a shaky start, where the bot told researchers and journalists posing as young teenagers how to mask the smell of alcohol or cannabis and set the mood for sex.
This article originally appeared on Engadget at https://www.engadget.com/ai/snapchat-is-rolling-out-sponsored-ai-agents-162720124.html?src=rsshttps://www.engadget.com/ai/snapchat-is-rolling-out-sponsored-ai-agents-162720124.html?src=rss
Microsoft's code hosting shack Github has published a lengthy mea culpa about its availability and reliability woes - one that includes the words "we are sorry."...
https://go.theregister.com/feed/www.theregister.com/2026/04/29/github_says_sorry_and_says/
GoDaddy is currently investigating claims that it handed complete control of a valid 27-year-old domain to another customer, without requiring them to pass any authentication processes or upload any supporting documents....
SAP is prohibiting the use of its APIs to integrate with AI systems outside its endorsed architectures, raising concerns that it is locking out third-party AI tools from customers' SAP data....
https://go.theregister.com/feed/www.theregister.com/2026/04/29/new_sap_api_policy_provokes/
BORK!BORK!BORK! The keynote gods are a fickle bunch, as SUSE discovered at its annual shindig in Prague. What should have been a slick edge demo instead served up error pages to unsuspecting attendees, while keynote presentations attracted some unwelcome visitors....
https://go.theregister.com/feed/www.theregister.com/2026/04/29/never_anger_the_keynote_demo/
Thirty ClawHub skills published by a single author are silently co-opting AI agents and creating a mass cryptocurrency mining swarm – without any malware or user consent....
https://go.theregister.com/feed/www.theregister.com/2026/04/29/30_clawhub_skills_mine_crypto/
https://www.cnet.com/culture/entertainment/new-on-hulu-in-may-2026/
https://www.cnet.com/tech/services-and-software/the-boys-season-5-supernatural-reunion-episode/
https://www.wired.com/story/fi-mini-and-tractive-smart-cat-tracker/
https://www.wired.com/story/phone-notifications-reveal-more-than-you-realize-how-to-lock-them-down/
https://www.wired.com/story/which-litter-robot-is-right-for-you/
https://www.zdnet.com/article/government-adoption-of-ai-agents-may-outpace-the-private-sector/
https://www.zdnet.com/article/microsoft-open-sources-dos-1-0-much-more-than-the-code/
We tested 10 leading project management tools and found monday.com best overall for its multiple views and extensive customization. ClickUp shines for affordability, while Confluence excels in project documentation.
The post 9 Best Project Management Software in 2026 appeared first on TechRepublic.
https://www.techrepublic.com/article/project-management-software/
A hardcoded ClickUp API key exposed hundreds of corporate and government emails for over a year, raising new SaaS security concerns.
The post ClickUp Data Leak Exposes Enterprise Emails for Over a Year appeared first on TechRepublic.
https://www.techrepublic.com/article/news-clickup-api-key-email-exposure/
Xpeng’s flying car factory is moving from prototype to production, but certification gaps still separate delivery plans from public passenger service.
The post Xpeng Flying Car Deliveries Target 2027 as Certification Gaps Remain appeared first on TechRepublic.
https://www.techrepublic.com/article/news-apac-xpeng-flying-car-deliveries-2027/
ADT confirmed a data breach exposing customer names, addresses, phone numbers, and partial SSNs, with millions of records reportedly affected.
The post ADT Confirms Major Data Breach Exposing Millions of Names, Partial SSNs appeared first on TechRepublic.
https://www.techrepublic.com/article/news-adt-data-breach-millions-customer-records/
Samsung’s rumored smart glasses may challenge Meta with AI features, display-free design, leaked pricing, and a possible 2027 AR roadmap.
The post Samsung Galaxy Glasses Leak: Pricing, Specs, and Launch Timeline Revealed appeared first on TechRepublic.
https://www.techrepublic.com/article/news-samsung-smart-glasses-ai-leak/
https://www.techradar.com/pro/why-insurance-innovation-ambitions-keep-stalling
https://www.techradar.com/pro/the-ai-illusion-why-businesses-are-spending-big-but-fixing-nothing
Read more of this story at Slashdot.
Read more of this story at Slashdot.
Read more of this story at Slashdot.
Read more of this story at Slashdot.
Read more of this story at Slashdot.
https://www.theregister.com/security
GoDaddy is currently investigating claims that it handed complete control of a valid 27-year-old domain to another customer, without requiring them to pass any authentication processes or upload any supporting documents....
Thirty ClawHub skills published by a single author are silently co-opting AI agents and creating a mass cryptocurrency mining swarm – without any malware or user consent....
https://go.theregister.com/feed/www.theregister.com/2026/04/29/30_clawhub_skills_mine_crypto/
Organizations hit by the wave of Trivy and LiteLLM supply-chain compromises that paid Vect in hopes of recovering their data likely did not get much back, according to Check Point Research. That's because the ransomware Vect uses isn't actually ransomware at all, but a wiper that destroys any file larger than 128KB....
https://go.theregister.com/feed/www.theregister.com/2026/04/28/dont_pay_vect_a_ransom/
Updated Logistics technology company Pitney Bowes, which makes franking machines for US postage, is the latest scalp claimed by ShinyHunters and its ongoing spree of pay-or-leak attacks against major organizations....
https://go.theregister.com/feed/www.theregister.com/2026/04/28/pitney_bowes_is_the_latest/
European-based SUSE devoted much of the annual SUSECON event to its sovereignty-focused pitch - even as reports swirl that its majority stakeholder is exploring a $6 billion sale which could land the Linux vendor in American hands....
https://go.theregister.com/feed/www.theregister.com/2026/04/28/sovereignty_its_all_about_the/
NCEES explains why licensure matters for engineers and answers your top questions about the FE and PE exams. Source Views: 15
La entrada Thinking About Becoming a Licensed Engineer? Start Here. se publicó primero en CISO2CISO.COM & CYBER SECURITY GROUP.
https://ciso2ciso.com/thinking-about-becoming-a-licensed-engineer-start-here/
View our compilation of online stories and resources highlighting the Hispanic community and their contributions to STEM. Source Views: 14
La entrada Celebrate Hispanic Heritage Month With SWE se publicó primero en CISO2CISO.COM & CYBER SECURITY GROUP.
https://ciso2ciso.com/celebrate-hispanic-heritage-month-with-swe/
Source: www.cyberdefensemagazine.com – Author: News team Software supply chain attacks have emerged as a serious threat in the rapidly evolving field of cybersecurity, especially in medical devices. As these devices become more and more interconnected and dependent on complex software ecosystems, the potential for exploitation through the supply chain has grown exponentially. One powerful tool [...]
La entrada The Critical Role of Sboms (Software Bill of Materials) In Defending Medtech From Software Supply Chain Threats – Source: www.cyberdefensemagazine.com se publicó primero en CISO2CISO.COM & CYBER SECURITY GROUP.
Source: www.cyberdefensemagazine.com – Author: News team It’s common knowledge in the cybersecurity industry that ransomware is on the rise, with median demands rising 20% year-over-year across virtually all industries. But it’s not only the ransom sums themselves that are escalating; threat actors are engaging in increasingly aggressive tactics and techniques to extort their victims. It’s [...]
La entrada Ransomware Tactics Are Shifting. Here’s How to Keep Up – Source: www.cyberdefensemagazine.com se publicó primero en CISO2CISO.COM & CYBER SECURITY GROUP.
Source: www.darkreading.com – Author: Rob Wright CERT-FR’s advisory follows last month’s disclosure of a zero-day flaw Apple said was used in “sophisticated” attacks against targeted individuals. Original Post URL: https://www.darkreading.com/vulnerabilities-threats/french-sheds-light-apple-spyware-activity Category & Tags: – Views: 12
La entrada French Advisory Sheds Light on Apple Spyware Activity – Source: www.darkreading.com se publicó primero en CISO2CISO.COM & CYBER SECURITY GROUP.
https://hackread.com/us-estonian-suspect-arrest-scattered-spider-cyberattacks/
https://hackread.com/cursor-ai-ide-vulnerability-code-execution-git-hooks/
https://hackread.com/ai-powered-vendor-risk-management-platforms-saas-companies-2026/
https://hackread.com/dhl-phishing-scam-attack-chain-steal-passwords/
https://hackread.com/decoding-q1-2026s-152-9b-crypto-custody-concentration/
https://www.debian.org/security/
https://msrc.microsoft.com/update-guide/vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-34591
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23388
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-31619
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-31658
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-31592
https://www.ncsc.nl/alerts/kwetsbaarheid-in-microsoft-system-center
https://www.ncsc.nl/nieuws/tweede-kamer-stemt-in-met-cyberbeveiligingswet
https://www.ncsc.nl/nieuws/anthropics-frontiermodel-mythos-vraagt-om-directe-actie
https://www.ncsc.nl/alerts/kwetsbaarheid-in-adobe-acrobat-dc-acrobat-reader-dc-en-acrobat-2024
https://www.ncsc.nl/alerts/kwetsbaarheid-in-forticlient-ems-van-fortinet
https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-0880
https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1233
https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1304
https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1310
https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1309
https://thehackernews.com/2026/04/critical-cpanel-authentication.html
https://thehackernews.com/2026/04/cisa-adds-actively-exploited.html
https://thehackernews.com/2026/04/litellm-cve-2026-42208-sql-injection.html
https://thehackernews.com/2026/04/researchers-discover-critical-github.html
https://thehackernews.com/2026/04/brazilian-lofygang-resurfaces-after.html
https://techrepublic.com/topic/security
A hardcoded ClickUp API key exposed hundreds of corporate and government emails for over a year, raising new SaaS security concerns.
The post ClickUp Data Leak Exposes Enterprise Emails for Over a Year appeared first on TechRepublic.
https://www.techrepublic.com/article/news-clickup-api-key-email-exposure/
ADT confirmed a data breach exposing customer names, addresses, phone numbers, and partial SSNs, with millions of records reportedly affected.
The post ADT Confirms Major Data Breach Exposing Millions of Names, Partial SSNs appeared first on TechRepublic.
https://www.techrepublic.com/article/news-adt-data-breach-millions-customer-records/
Health data from 500,000 UK Biobank participants was found listed for sale online in China, raising concerns over research access misuse and data security.
The post Health Records of 500,000 UK Biobank Volunteers Listed Online in China appeared first on TechRepublic.
https://www.techrepublic.com/article/uk-biobank-data-500k-sale-china/
Learn what cloud security is, why it matters in 2026, and the best practices for protecting data, identities, workloads, and cloud infrastructure.
The post What Is Cloud Security? A 2026 Guide appeared first on TechRepublic.
https://www.techrepublic.com/article/what-is-cloud-security/
Enterprise VPN solutions are critical for connecting remote workers to company resources via reliable and secure links to foster communication and productivity. Read about seven viable choices for businesses.
The post The Top 8 Enterprise VPN Solutions appeared first on TechRepublic.
https://www.bleepingcomputer.com/
Beyond the "headline breach," modern enterprises face a persistent threat: steady-state data leakage. Learn why traditional privacy definitions fail and how "authorized" data flows in workplace apps create continuous legal and operational risk.
The post Data Privacy Leaks – The Drip, Drip, Drip of Exposure appeared first on Security Boulevard.
https://securityboulevard.com/2026/04/data-privacy-leaks-the-drip-drip-drip-of-exposure/
We're in Claude! Now everyone can use our threat intel to check suspicious links, phone numbers, or email addresses. We're committed to helping you spot scams.
The post Scam-checking just got a lot easier: Malwarebytes is now in Claude appeared first on Security Boulevard.
That’s a lot. No, it’s an extraordinary number:
Since February, the Firefox team has been working around the clock using frontier AI models to find and fix latent security vulnerabilities in the browser. We wrote previously about our collaboration with Anthropic to scan Firefox with Opus 4.6, which led to fixes for 22 security-sensitive bugs in Firefox 148.
As part of our continued collaboration with Anthropic, we had the opportunity to apply an early version of Claude Mythos Preview to Firefox. This week’s release of Firefox 150 includes fixes for 271 vulnerabilities identified during this initial evaluation...
The post Claude Mythos Has Found 271 Zero-Days in Firefox appeared first on Security Boulevard.
https://securityboulevard.com/2026/04/claude-mythos-has-found-271-zero-days-in-firefox/
Articles related to cyber risk quantification, cyber risk management, and cyber resilience.
The post AI Governance and Risk Insights for Enterprises | Kovrr appeared first on Security Boulevard.
https://securityboulevard.com/2026/04/ai-governance-and-risk-insights-for-enterprises-kovrr/
Articles related to cyber risk quantification, cyber risk management, and cyber resilience.
The post AI Governance and Risk Insights for Enterprises | Kovrr appeared first on Security Boulevard.
https://securityboulevard.com/2026/04/ai-governance-and-risk-insights-for-enterprises-kovrr-2/
https://krebsonsecurity.com/2026/04/scattered-spider-member-tylerb-pleads-guilty/
https://krebsonsecurity.com/2026/04/patch-tuesday-april-2026-edition/
https://krebsonsecurity.com/2026/04/russia-hacked-routers-to-steal-microsoft-office-tokens/
https://krebsonsecurity.com/2026/04/germany-doxes-unkn-head-of-ru-ransomware-gangs-revil-gandcrab/
https://krebsonsecurity.com/2026/03/canisterworm-springs-wiper-attack-targeting-iran/
This is so "peak 2026" - writing an equality policy to ensure people treat our AI bot with the same respect as they do their human counterparts. It's intentionally a bit tongue-in-cheek, but it's there for a purpose: we simply don't have
Looking back at this milestone video, it's the audience question towards the end I liked most: "are you happy"? Charlotte and I have chosen a path that's non-traditional, intense and at times, pretty stressful. There's no clear delineation of when work starts
I love cutting-edge tech, but I hate hyperbole, so I find AI to be a real paradox. Somewhere in that whole mess of overnight influencers, disinformation and ludicrous claims is some real "gold" - AI stuff that's genuinely useful and makes a meaningful difference. This blog
https://www.troyhunt.com/heres-what-agentic-ai-can-do-with-have-i-been-pwneds-apis/
I'm starting to become pretty fond of Bruce. Actually, I've had a bit of an epiphany: an AI assistant like Bruce isn't just about auto-responding to tickets in an entirely autonomous manner; it's also pretty awesome at responding with just a little
This week, more time than I'd have liked to spend went on talking about the trials of chasing invoices. This is off the back of a customer (who, for now, will remain unnamed), who had invoices stacking back more than 6 months overdue and despite payment terms of
That’s a lot. No, it’s an extraordinary number:
Since February, the Firefox team has been working around the clock using frontier AI models to find and fix latent security vulnerabilities in the browser. We wrote previously about our collaboration with Anthropic to scan Firefox with Opus 4.6, which led to fixes for 22 security-sensitive bugs in Firefox 148.
As part of our continued collaboration with Anthropic, we had the opportunity to apply an early version of Claude Mythos Preview to Firefox. This week’s release of Firefox 150 includes fixes for 271 vulnerabilities identified during this initial evaluation...
https://www.schneier.com/blog/archives/2026/04/claude-mythos-has-found-271-zero-days-in-firefox.html
Two weeks ago, Anthropic announced that its new model, Claude Mythos Preview, can autonomously find and weaponize software vulnerabilities, turning them into working exploits without expert guidance. These were vulnerabilities in key software like operating systems and internet infrastructure that thousands of software developers working on those systems failed to find. This capability will have major security implications, compromising the devices and services we use every day. As a result, Anthropic is not releasing the model to the general public, but instead to a ...
Sent by a Spanish diplomat. Apparently people have been working on it since it was rediscovered in 1860.
https://www.schneier.com/blog/archives/2026/04/medieval-encrypted-letter-decoded.html
Science news:
Scientists have finally cracked a long-standing mystery about squid and cuttlefish evolution by analyzing newly sequenced genomes alongside global datasets. The research reveals that these bizarre, intelligent creatures likely originated deep in the ocean over 100 million years ago, surviving mass extinction events by retreating into oxygen-rich deep-sea refuges. For millions of years, their evolution barely changed—until a dramatic post-extinction boom sparked rapid diversification as they moved into new shallow-water habitats. ...
It was used to track a Dutch naval ship:
Dutch journalist Just Vervaart, working for regional media network Omroep Gelderland, followed the directions posted on the Dutch government website and mailed a postcard with a hidden tracker inside. Because of this, they were able to track the ship for about a day, watching it sail from Heraklion, Crete, before it turned towards Cyprus. While it only showed the location of that one vessel, knowing that it was part of a carrier strike group sailing in the Mediterranean could potentially put the entire fleet at risk...
https://www.schneier.com/blog/archives/2026/04/hiding-bluetooth-trackers-in-mail.html
Two supply chain attacks, same day, same command-and-control domain
Categories: Threat Research
Tags: Supply chain, Sophos X-Ops, pipeline, Bitwarden, Checkmarx
https://www.sophos.com/en-us/blog/supply-chain-attacks-hit-checkmarx-and-bitwarden-developer-tools
Our passkey rollout took three tries. Here's a playbook to make your implementation smoother.
Categories: Security Operations
Tags: CISO, playbook, toolkit, passkeys
https://www.sophos.com/en-us/blog/strengthening-authentication-with-passkeys-a-ciso-playbook
Check out the full release notes for more details and a list of fixes.
Categories: Products & Services
Tags: Firewall, network, v22
https://www.sophos.com/en-us/blog/sophos-firewall-v22-mr1-is-now-available
Following a long-established pattern, the fourth month of the year is one of the cruelest
Categories: X-ops, Threat Research
Tags: Patch Tuesday
https://www.sophos.com/en-us/blog/april-2026-microsoft-patch-tuesday
The use of hidden virtual machines (VMs) enables long-term access, credential harvesting, data exfiltration, and PayoutsKing ransomware deployment
Categories: Threat Research
Tags: virtual machine, QEMU, PayoutsKing, GOLD ENCOUNTER, CitrixBleed2
https://www.sophos.com/en-us/blog/qemu-abused-to-evade-detection-and-enable-ransomware-delivery