Security-Portal.cz je internetový portál zaměřený na počítačovou bezpečnost, hacking, anonymitu, počítačové sítě, programování, šifrování, exploity, Linux a BSD systémy. Provozuje spoustu zajímavých služeb a podporuje příznivce v zajímavých projektech.

Kategorie

FBI: Ongoing FortiBleed attacks lock out FortiGate VPN admins

Bleeping Computer - 8 min 14 sek zpět
The FBI is warning that FortiBleed attacks are still ongoing, targeting exposed Fortinet FortiGate firewalls and SSL VPN gateways and locking out legitimate administrators. [...]
Kategorie: Hacking & Security

Hackers hijack Google domains after breaching ccTLD registries

Bleeping Computer - 46 min 55 sek zpět
Hackers obtained unauthorized HTTPS certificates for several Google domains and hijacked domains in the country-code top-level domains (ccTLDs) for Ghana, American Samoa, and Sierra Leone after compromising third-party operators and modifying authoritative DNS records. [...]
Kategorie: Hacking & Security

Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains

The Hacker News - 2 hodiny 48 min zpět
Attackers compromised three country-code top-level domains (ccTLDs) and obtained unauthorized HTTPS certificates for several Google domains, Google said on October 6. Google's own systems were not breached, but any domain ending in .gh (Ghana), .sl (Sierra Leone) or .as (American Samoa) was put at risk. With such a certificate, an attacker could pose as the real site over an encrypted Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer

The Hacker News - 3 hodiny 53 min zpět
Cybersecurity researchers have disclosed details of a long-running npm supply chain malware campaign that pushes information stealers and remote access trojans (RAT) to compromised hosts. The campaign has been codenamed MALFEX by CloudSEK and Checkmarx. The activity is assessed to be the work of a lone threat actor who appears to have published 12 packages since August 2023, eight of which haveRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances

The Hacker News - 5 hodin 19 min zpět
SonicWall has released hotfixes for four flaws in its SMA1000 appliances, the gateways that give remote workers access to a company's network and applications. The most serious could allow an attacker without a login to send requests through the appliance and reach internal functions. SonicWall rates it 10.0 on the CVSS scale and says it has no evidence that any of the four flaws is being Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Microsoft Outlook to block MSIX attachments starting November

Bleeping Computer - 5 hodin 52 min zpět
Microsoft announced that it will add .msix and .msixbundle attachments to the list of blocked attachments in Outlook Web and the new Outlook Windows client starting next month. [...]
Kategorie: Hacking & Security

Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely

The Hacker News - 6 hodin 2 min zpět
A critical vulnerability in LMCache, open-source software that speeds up large language model (LLM) servers such as vLLM, lets an attacker run code on the cache server without logging in, and no fixed version is available. The flaw is in LMCache's multiprocess mode, where the cache runs as a standalone server that LLM workers reach over the ZeroMQ messaging library. A single network Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

PoeLLM Malware Infects 3,400+ Servers to Expand Crypto Mining Botnet

The Hacker News - 6 hodin 3 min zpět
Cybersecurity researchers are calling attention to a new malware family that has been observed targeting exposed artificial intelligence (AI) and large language model (LLM) infrastructure with an aim to deploy cryptocurrency miners and further expand the scale of the botnet. The financially motivated campaign, dubbed Canto Incognito, has been found to install cryptocurrency miners, including Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Cisco brings collaborative agents and Claude into Webex chats

Computerworld.com [Hacking News] - 6 hodin 1 min zpět

Cisco is adding AI agents to Webex group chats so colleagues can assign them work and share the results, part of a wider revamp of the Webex app.

Announced at the WebexOne conference Wednesday, users will soon be able to @mention agents in Webex “spaces” to help schedule meetings, take notes, and track tasks.

“You work with AI, but your teammates may never see that work — they can’t build on it, contribute to it, or reuse it,” said Amit Barave, Cisco vice president and general manager for Webex Suite and AI, in a blog post. “With Webex, agents become part of the team, participating where the work is happening.”

“This makes AI a shared capability for the team,” said Snorre Kjesbu, Cisco vice president and general manager for collaboration, in a separate blog post. “It can help people prepare together, carry decisions forward, and coordinate the next steps without losing the context of the conversation.”

As well as Webex spaces, the collaborative agents will be accessible during video and voice calls via the AI Assistant side panel, though these will only be visible to individual users, rather than teams, a Cisco spokesperson said.

Cisco’s announcement reflects the growing push from collaboration software vendors to bring AI agents directly into their applications, said Irwin Lazar, principal analyst at Metrigy. By positioning agents where employees are already collaborating, they are able to perform tasks such as managing meeting agendas, facilitating, and providing contextual information into meetings.

“We’ve seen similar efforts by Slack, with Claude Tag, and with Zoom via ZoomMate,” said Lazar. “Like the others, the strength of the agent is dependent on its access to information, so the key is enabling connectivity to external data sources such as CRM, ERP, project management, etc.”

The changes are part of a wider Webex app refresh app that includes a new personalized landing page to highlight work priorities and upcoming meetings, as well as suggest follow-up actions, such as responding to messages or reviewing meeting recaps.

“The new assistant literally knows what you are doing and your upcoming schedule and knows more than other major providers,” said Jim Lundy, CEO of Aragon Research. “In fact, I’d say that their assistant could be sold unbundled.”

width="1024" height="657" sizes="auto, (max-width: 1024px) 100vw, 1024px">

Cisco

In addition, Cisco is extending the range of third-party agents accessible from Webex, too. Anthropic’s Claude Managed Agents — cloud-hosted agents that process multi-step tasks in the background — can be added to group conversations as a team member to complete tasks, as well as OpenAI’s recently announced “dot” agents.

Cisco also unveiled more of its own native Webex agents. Personal Agents for Webex Calling can screen calls to help users avoid missing an important call when they’re unavailable to speak. The agents can “converse with callers to understand their needs and determine urgency, prioritize what matters most, and take action on your behalf,” Barava said. Personal Agents for Webex Calling will be available in the first quarter of 2027, alongside the new Webex app, collaborative agents, third-party agents.

A previously announced Translator agent is now in “controlled availability” ahead of a general release in November. This provides real-time translation in the Webex app, as well as Cisco 9800 Series Desk Phones, with support for ten languages: English, French, German, Hindi, Italian, Japanese, Korean, Mandarin, Portuguese, and Spanish.

An AI Coach agent for Vidcast — Cisco’s tool for short form, asynchronous video messaging in Webex — is aimed at helping users improve communication performance. “The AI Coach watches and listens while a presenter delivers, reacts to pacing, tone, and word choice as they happen, and asks the questions a live audience would,” said Barave. The AI Coach agent is available now.

Metrigy’s Lazar said he has witnessed an uptick in business demand for agentic tools in collaboration applications generally. “They offer the potential to bring context into meetings, saving time and increasing focus. Cisco’s aim is to ensure that the Webex App can remain the place where people work, rather than other apps or AI interfaces like Claude Cowork,” he said. “I would say the only weakness in the Cisco portfolio now is ability to capture data from non-Webex meetings. They lack the capability that Zoom now has to capture audio from third-party or external meetings.”

A Cisco spokesperson said that some Webex AI capabilities are available at no extra cost in Webex Suite, which costs $25 per user each month, and Enterprise tiers. More advanced features — such as Polling and Translator agents, the Personal Agents for Calling, and collaborative agent functionality — will require a new “Enhanced AI Offer for AI” add-on. This will be available in the coming weeks, Cisco said, though pricing for the add-on was not provided.

Cisco didn’t specify if any of the AI features will require any additional, usage-based costs on top of fixed subscription fees. The company recently stated that the Translator agent provides 50 minutes of translation per user each month, with additional usage requiring an “add-on.”

Kategorie: Hacking & Security

PoeLLM malware infects exposed AI servers in cryptomining attacks

Bleeping Computer - 6 hodin 33 min zpět
A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads. [...]
Kategorie: Hacking & Security

Ransomware has a new target. Is your backup ready?

Bleeping Computer - 7 hodin 35 min zpět
Ransomware groups are increasingly targeting backup infrastructure to eliminate recovery options and increase pressure on victims to pay. Kaseya explains why organizations need isolated, immutable, and regularly tested backups that attackers cannot easily reach. [...]
Kategorie: Hacking & Security

Hackers exploit critical Atlassian flaw after public PoC release

Bleeping Computer - 8 hodin 48 min zpět
A critical vulnerability (CVE-2026-21589) affecting multiple Atlassian product families, including Jira, Confluence, and Bitbucket, is being exploited in attacks that do not require authentication. [...]
Kategorie: Hacking & Security

The Sixth Voice of the CISO Data Shows Cyber Risk Has Moved Inside the Workflow

The Hacker News - 9 hodin 40 min zpět
The 2026 findings are not just a year-over-year shift. They mark the latest point in a five-year arc where resilience, AI governance, human risk, and board scrutiny are converging inside the systems where work actually happens. For years, the enterprise cybersecurity story has been told as a straight line of escalation: more attacks, more data loss, more pressure, and more urgency. That [email protected]
Kategorie: Hacking & Security

FBI Warns FortiBleed Remains Active After Amassing 86,644 Fortinet Device Credentials

The Hacker News - 9 hodin 40 min zpět
The U.S. Federal Bureau of Investigation (FBI) and Secret Service (USSS) on Tuesday warned that the FortiBleed credential harvesting campaign remains an active threat aimed at internet-facing Fortinet FortiGate firewalls and secure socket layer (SSL) virtual private network (VPN) gateways. "The campaign exploits reused or leaked credentials and legacy SHA-256 password storage, enabling threatRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Atlassian Data Center Flaw Draws Exploitation Attempts Within Two Hours of Public Details

The Hacker News - 9 hodin 47 min zpět
Threat actors have begun to exploit a newly disclosed critical security flaw impacting Atlassian Data Center products that could allow access to sensitive files under certain conditions. The arbitrary file access flaw, tracked as CVE-2026-21589 (CVSS score: 9.3) affects multiple products, including Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira SoftwareRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

What Is Agentic Pentesting? What It Proves, and Where It Stops.

The Hacker News - 9 hodin 54 min zpět
If you’re evaluating an agentic pentesting solution right now, you’ve probably heard the same pitch more than once: point it at a target, and it discovers, validates, and exploits attack paths autonomously, the way a real attacker would. That promise is worth taking seriously. It’s also worth pressure testing, and three questions do the heavy lifting.  What can the assessment actually [email protected]
Kategorie: Hacking & Security

SonicWall warns of max severity SSRF flaw in SMA1000 gateways

Bleeping Computer - 10 hodin 1 sek zpět
SonicWall has released hotfixes to address a maximum-severity server-side request forgery (SSRF) flaw in SMA1000 series appliances. [...]
Kategorie: Hacking & Security

How to navigate the Windows Insider Program

Computerworld.com [Hacking News] - 10 hodin 37 min zpět

Are you a Windows fan? Do you like getting sneak peeks at features before they’re released to the public? Microsoft created its Windows Insider Program for you.

The program made its debut in October 2014 with the release of the Windows 10 technical preview. It provided a way for enthusiastic users, developers, and IT admins to test out — and, notably, give feedback on — the upcoming OS. After Windows 10 shipped, Microsoft kept the program going, and Insiders have had early access to new features being developed for all subsequent Windows 10 and Windows 11 versions, via releases known as Insider Preview Builds.

The Insider program has gone through numerous changes since those early days, with an increasingly complex array of options (“channels”) to designate what types of preview builds you want to get your hands on. But the purpose has remained the same: to give you a way to see upcoming features (or ones that Microsoft is experimenting with, anyway), and to report bugs, share your thoughts, and make suggestions for how to improve those features while they’re still being developed.

Earlier this year, the company gave the Insider program its biggest overhaul ever, with the stated goal of making it less confusing for participants. (Did they succeed? We’re not so sure.) So even if you think you know about Insider channels and how to handle them, if you haven’t checked recently, you’re out of date.

We’re here to help. In this article, we’ll explain how to handle Windows 11 previews and how to choose the right Insider channel(s) for you. (Note that you must be running Windows 11 to participate in the Insider program; there is no longer an Insider program for Windows 10.)

We’ve divided the piece into two sections, one for individuals and one for IT admins. So hunker down and get ready to master the ins and outs of Windows previews.

Individuals: From joining the program to testing new features

A word of warning: Before you join Insider, think long and hard about it — and about where you can safely install preview software. Preview builds can be buggy and can harm your system. The features they introduce may not work properly, or may not work at all. The overall operating system itself could become unstable, as could any applications running under it. Windows may freeze or crash.

So it’s best not to install Insider preview builds on your primary PC. You’d be safer using a second or third PC, or even running Windows 11 as a virtual machine and updating it there.

That being said, here’s how to enroll if you want to go ahead.

Join the Windows Insider Program

First, go to the Windows Insider Program page and sign up by clicking the Join Windows Insider button, then clicking Register now on the page that appears. It’s free to participate. (To join, you must have a Microsoft account.) Once you do that and follow the instructions, you’re part of the Windows Insider Program.

Configure your PC and choose a channel

But signing up is only the first step in the process. That just registers you. Next you’ll need to individually configure each PC on which you want to get Insider builds. That way, you can get the builds on some of your PCs but not others. You can even configure different PCs to get updates on different “channels” than others. (More on channels in a moment.)

To configure a PC to receive Insider updates, open its Settings app, choose Windows Insider Program > Get started, and follow the instructions. (When you click the button, you may get a message saying you need to link your Microsoft account to the Windows Insider program. Follow the simple instructions to do it.)

Getting ready to receive Insider updates.

Preston Gralla / Foundry

Note: Microsoft requires that you allow your PC to send specific diagnostic data to Microsoft if you want to test Insider builds. To do it, go to Settings > Privacy & security > Diagnostics & feedback. Then in the “Send optional diagnostic data” section, move the slider from Off to On.

When you’ve done that, go back to Settings > Windows Update > Windows Insider Program and you’ll have several choices to make. First, choose which Insider channel you want to use. There are three of them:

  • Experimental channel: Here’s where Microsoft first releases new features and ideas, which frequently have long lead times and won’t soon end up in Windows. Many features it tries out here never make their way into Windows. Microsoft says this channel is best for “tech enthusiasts.” The company warns: “You should expect some rough edges and variable stability in this channel.”
  • Beta channel: If you don’t like the risks of living in the fast lane but still want to see updates before the general public, choose the Beta channel. This channel gives you a preview of fixes and new features that have been tested are not quite ready for prime time. Microsoft describes the channel this way: “The Beta channel is for early adopters and IT professionals who want to see what we plan to ship in the coming weeks and validate the latest Windows updates and features, but still need reliable updates.”
  • Release Preview channel: This channel gives you (and IT admins) a chance to preview an upcoming Windows update before it’s released to the general public. It’s basically the final version of the update that will go out to the public in a few days. Note that by default, the Release Preview channel doesn’t appear as an option when you’re choosing a channel. To make it appear, click the down arrow next to “Advanced options,” and in the “Show Release Preview” section, move the slider to On.

Choosing a channel and version for receiving Insider updates.

Preston Gralla / Foundry

Once you’ve chosen a channel, make sure you’re choosing updates for the right version of Windows 11. To do it, click the down arrow next to “Advanced options” and choose a version. These are the options available as I’m writing this, which will change as new versions of Windows roll out:

  • Windows 11, version 25H2/26H2: This option covers Windows 11 25H2, the standard version of Windows 11 that most people have now, and its successor, Windows 11 26H2, which is beginning to roll out now. This is the selection that most people will likely make.
  • Windows 11, version 26H1: This is a separate branch of Windows 11 from the mainstream 25H2/26H2. It’s only for people who have PCs with Qualcomm Snapdragon X2 Series processors purchased in 2026. People with 25H2 or 26H2 can’t switch to version 26H1, because their hardware won’t support it. Those with 26H1 can’t switch to 25H2 or 26H2.
  • Future Platforms: This option is available for Windows 11 25H2/26H2 and 26H1, but only if you’re in the Experimental channel. Aimed solely at developers and extremely sophisticated technical users, it’s the bleeding edge of Windows and can be highly unstable. Microsoft notes, “This build core version is aimed at highly technical users who want to preview platform changes that require a longer lead time before release. Examples include major changes to the Windows kernel and new APIs. The builds released to Future Platforms represent platform changes early in the development cycle and should not be seen as connected to any specific retail release of Windows.”

If you choose one of the latter two options, you’ll be placed in a specialized channel. For example, choosing Experimental and the standard Windows 11 version (currently 25H2/26H2) puts you in the main Experimental channel, but choosing Experimental and Future Platforms puts you in a channel called Experimental (Future Platforms).

What was that about making the channel system less confusing, Microsoft?

Test builds, provide feedback

Whichever channel you choose, you’ll begin receiving updates for that channel in Windows Update. Each build is documented with release notes in the Insider Flight Hub. Microsoft’s Windows Insider Blog typically announces each batch of new builds as they roll out, with direct links to the release notes for each channel’s latest build.

You’ll be invited to provide feedback on the preview builds you test via Microsoft’s Feedback Hub. For details, see Microsoft’s “Deeper look at feedback” info page.

A word about features in the Experimental channel

Perhaps the biggest source of confusion about Insider builds has been that you might not see all the features discussed in the documentation for a given build. That’s because Microsoft rolls some features out to different users gradually — a process it calls controlled feature rollouts (CFRs).

The idea is to test the features on a subset of devices that the system deems best able to handle them, monitor them to see how they perform, tweak them if needed, and eventually deliver them to everyone in the channel. This technique makes sense from Microsoft’s perspective, but it’s confusing and frustrating for Insiders who don’t know when they’ll get a feature that’s been announced.

The good news is that Microsoft no longer uses CFRs in the Beta channel. If you’re in the Beta channel, you’ll have access to all the features mentioned in the release notes for a build.

The Experimental channel, though, still uses CFRs. There is one possible workaround: you may be able to turn these delayed features on manually using a setting called feature flags. Feature flags also provide a way to turn off some experimental features that you don’t want to test. Here’s how it works.

Before installing a new Experimental channel update, go to Settings > Windows Update > Windows Insider Program > Feature flags. You’ll see a list of features that you can turn on or off. (By default, new features are turned on in the Experimental channel, except if they’re under controlled feature rollout.) You can use the available flags to manually turn the features on and off, “even if CFR is being used to gradually roll out that feature,” Microsoft says.

width="1024" height="719" sizes="auto, (max-width: 1024px) 100vw, 1024px">

Turning new features off in the Experimental channel.

Microsoft

Note that feature flags are not available for all of a build’s features — only those that Microsoft allows. Bug fixes and overall system improvements, for instance, often don’t have feature flags that you can turn off or on.

If you turn a feature on or off, you can later change it back from the same page.

Switching between Insider channels

To a limited extent, you can switch from one Insider channel to another. You can only switch between channels for your specific Windows version — as I write this, either Windows 11 25H2/26H2 or 26H1. You also can’t switch in and out of the Experimental (Future Platforms) channel.

So you can go directly from the Release Preview channel to the Beta or Experimental channel, for instance, or from the Beta (26H1) channel to Experimental (26H1) or Release Preview (26H1). To do it:

  1. Go to Settings > Windows Update > Windows Insider Program.
  2. Select Choose your Insider settings.
  3. Choose the button next to the channel to which you’d like to switch. You’ll get the update for your new channel the next time one is ready.

You can’t move directly out of the Experimental channel to another channel. If you want to switch to another channel if you’re in Experimental, you’ll first have to wipe your PC, then re-install Windows, and then enroll in another channel.

IT administrators: Joining Insider and choosing the right channel

IT administrators need to know what changes are being made to Windows before they happen so they can prepare to support them. To help them, Microsoft offers a separate Windows Insider Program for Business, which has additional features and tools geared toward enterprise needs. Admins can choose to install Insider preview builds on individual PCs or virtual machines for testing, or they can centrally manage Insider builds on multiple devices across an organization using a variety of management tools.

To get started, head to the Windows Insider Program for Business page, click Register, and follow the instructions. Microsoft’s “Start running Windows Insider Preview Builds as a business” documentation page walks you through how to set up individual PCs or virtual machines to test Insider builds, and “Manage Insider Preview builds across your organization” provides in-depth information on registering your Entra ID domain and managing test devices through Group Policy, Intune, and other management tools.

When it comes to choosing Insider channels for test devices, IT has the same options as individuals. For more details about each, see the channel descriptions in the previous section of this article. However, there are a few additional things IT admins need to know about each channel:

  • Experimental channel: This may not be the best channel for IT administrators to use, and not just because it’s the buggiest. Microsoft introduces features and settings in this channel that it eventually discards, which means that IT admins will be wasting their time checking out and preparing for features they’ll never use.
  • Beta channel: This channel may be the best choice for IT admins. Not only does it tend to be fairly stable, but by the time a feature reaches the Beta channel, it is intended for the next Windows release, not some nebulous future date. Choosing this channel, admins can get a heads up about what’s coming in Windows in the near future without wasting their time testing capabilities that may never make it into the operating system. And they will also have the most influence over the direction of Windows, because they’ll be commenting on features or bugs at a time when they can be changed or fixed.
  • Release Preview channel: This is the most conservative choice for IT. It’s the most stable version, and what’s here ends up in the next Windows update. IT professionals can use the Release Preview channel to make sure their applications and infrastructure will be ready for new Windows updates when they ship. Go to Microsoft’s “Validate upcoming releases in the Release Preview Channel” documentation for details.

One last resource admins should know about is the Windows Insider Program Tech Community forum, where IT pros from around the world post feedback, share tips, and discuss problems and workarounds for the Insider builds they’re testing.

This story was originally published in September 2017 and most recently updated in October 2026.

See more Microsoft tips and tutorials

Kategorie: Hacking & Security

Musician sent to prison for $10 million streaming fraud using AI bots

Bleeping Computer - 11 hodin 1 min zpět
A North Carolina musician was sentenced to 18 months in prison for collecting more than $10 million in royalties from Spotify, Apple Music, Amazon Music, and YouTube Music in a massive streaming royalty fraud scheme. [...]
Kategorie: Hacking & Security

Advantest confirms personal information stolen in ransomware attack

Bleeping Computer - 11 hodin 9 min zpět
Advantest Corporation is notifying affected individuals that a ransomware attack earlier this year exposed their personally identifiable data. [...]
Kategorie: Hacking & Security
Syndikovat obsah