Agregátor RSS

Google Play Early Access Abused to Push Thousands of Deceptive Android Apps

The Hacker News - 10 Září, 2026 - 16:36
Bad actors are misusing Google Play's Early Access program to push deceptive apps that claim to offer money, rewards, casino winnings, and premium content. Early Access apps are apps that haven't been released on the official Android app marketplace. The main idea behind the program is for developers to solicit user feedback for new applications or features they may be working on before their Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

New 'BlueMoon' kit exploited Windows and Chrome zero-day flaws

Bleeping Computer - 10 Září, 2026 - 16:11
Multiple cyber-espionage groups deployed an exploit kit dubbed "BlueMoon" that leveraged zero-day vulnerabilities in Microsoft Windows and Google Chrome. [...]
Kategorie: Hacking & Security

The Top 4 Threats We Found by Investigating Every Alert for a Quarter

Bleeping Computer - 10 Září, 2026 - 16:00
Identity was the target in roughly half of all confirmed malicious activity. Prophet Security breaks down the four main attack patterns seen across customer environments between May and July 2026, and explains why some attacks succeeded while others were blocked. [...]
Kategorie: Hacking & Security

20 novinek ze světa Lego. Zahoďte nudný fíkus z Ikey a postavte místo něj superdestruktor

Živě.cz - 10 Září, 2026 - 15:44
Podzimní nabídka Lego přináší velké modely Star Wars, Marvelu, her i filmů • Mezi novinkami nechybí Executor, PlayStation, Bradavice či Wednesday • Podzim doplňují vánoční ozdoby, adventní kalendář, dýně a umělecký model
Kategorie: IT News

ShinyHunters expose 6.4M in attack on medical supplier McKesson

The Register - Anti-Virus - 10 Září, 2026 - 15:13
McKesson's cyberattack last month affected roughly 6.4 million individuals, according to Have I Been Pwned (HIBP). The breach notification service added data leaked by serial extortionists ShinyHunters, revealing the scale of the attack for the first time. ShinyHunters initially claimed to have stolen 284 million documents from the medical and pharmaceutical supply company in August, although HIBP did not confirm that figure. The cybercriminals told The Register that they issued a $55.2 million extortion demand to prevent the release of McKesson's data – a sum that apparently was not paid, given the subsequent publication of the data. HIBP said: "The impacted data related to a range of individuals and roles, including marketing campaign recipients, patients, staff, and healthcare provider contacts." The types of information exposed vary between individuals, but the records collectively include names, email and physical addresses, genders, dates of birth, phone numbers, employer details, and sensitive health information. This is broadly consistent with ShinyHunters' claims that the stolen data included appointment dates and notes, as well as sensitive medical details such as the locations of patients' cancers. ShinyHunters also claimed to have stolen Social Security numbers (SSNs) as part of the breach, but HIBP did not include these in its analysis of the leaked corpus. The Register asked McKesson to comment on HIBP's assessment. The company, which supports 3,300 oncology providers in 29 states, has not publicly confirmed the scale of the breach or issued further details since the last update from its CIO and CTO on August 29. Medical device maker Boston Scientific disclosed a cyberattack at around the same time as McKesson, but has suffered a different kind of fallout. While McKesson is informing the millions of individuals affected by its breach, Boston Scientific told shareholders that disruption from its attack means it expects to miss its sales and earnings guidance for Q3. An update issued on Wednesday said manufacturing, order fulfillment, and shipping operations had been fully restored, although work to restore some business applications continued. Healthtech company Veradigm also disclosed a cyberattack to US regulators this week, days after ransomware group The Gentlemen claimed responsibility. Veradigm said attackers obtained credentials from a third-party vendor's environment and used them to access a company API, stealing patient data without disrupting operations. The Gentlemen claimed to have stolen around 3.5 million records containing personally identifiable information (PII), including SSNs. ®
Kategorie: Viry a Červi

Qualcomm’s next Snapdragon mobile chip comes into focus with on-device AI

Computerworld.com [Hacking News] - 10 Září, 2026 - 15:01

Qualcomm is taking an unusual approach to the launch of its next-generation premium Snapdragon mobile platform this year. Instead of holding everything for its annual Snapdragon Summit in Maui happening later this month, the company has been methodically disclosing the architecture that will power the next wave of flagship Android phones over the past couple of weeks.

First, the company disclosed its new Oryon CPU architecture, followed by a major overhaul of its Adreno GPU. Today, Qualcomm is detailing the next-generation Hexagon NPU that will serve as the platform’s primary AI engine.

Taken together, the disclosures give us a pretty good picture of where Qualcomm is going before we even know the chip’s official name.

There is obviously a strong performance story here, anchored by a 5GHz CPU, but the more interesting theme running through the architecture is memory locality and specialized AI acceleration. Qualcomm is trying to keep more data close to the compute resources that need it, while distributing AI workloads across the CPU, GPU and NPU.

These architectural changes are important as the company continues to drive on-device AI beyond relatively simple generative features toward more persistent, agentic workloads.

Oryon hits 5GHz, bolstered by FlexCache

Qualcomm disclosed in August that its next Oryon CPU will be the first mobile CPU to reach 5GHz. The eight-core design includes two 5GHz Prime cores and six Performance cores, with Qualcomm attributing the frequency gains to its fully custom Oryon microarchitecture, an in-house Arm-based CPU design that gives the company full control over the cores, cache and memory hierarchy, branch prediction and CPU subsystem.

The 5GHz headline is certainly going to get attention. However, Qualcomm’s new FlexCache architecture may ultimately have a larger impact on sustained performance. FlexCache allows Oryon’s Prime and Performance cores to tap into the same shared cache pool, with capacity dynamically allocated based on the workload. So rather than a demanding core being limited to a fixed slice of cache, it can draw on more of the available pool when needed. This keeps larger working data sets close to the CPU cores and reduces high-latency trips out to system memory.

This approach should benefit everything from gaming and multitasking to content creation, but it also aligns well with agentic AI workloads, where tasks may move through several stages of processing and across different CPU cores. The basic goal is straightforward: keep the CPU fed and avoid expensive trips to external memory.

Qualcomm’s next-gen Adreno GPU adds dedicated AI engines

Qualcomm’s next disclosure focused on graphics, where the company is making one of the more significant changes to its Adreno GPU engine in recent years. The new GPU adds dedicated Adreno Matrix Cores for running AI models directly inside the graphics pipeline. They’re paired with 18MB of Adreno High-Performance Memory, or HPM, which provides low-latency local storage for tile-based rendering, frame buffers and GPU compute.

Qualcomm claims HPM provides a 12% power improvement compared to its previous-gen Snapdragon 8 Elite Gen 5.

The more visible feature for users, however, may be Adreno Neural Fusion, which combines AI super resolution, neural processing and frame generation in a unified graphics pipeline. There are obvious parallels here to what NVIDIA, AMD and others are doing with neural rendering on the PC, though Qualcomm’s next-gen Snapdragon SoC has to operate within a much tighter mobile power envelope.

Qualcomm claims enabling Neural Fusion reduces power consumption by up to 40% in its internal testing using the company’s Dragon Alley graphics demo. That’s an impressive number, though as always, we’ll want to see how the technology behaves across actual shipping games and devices before drawing any definitive conclusions.

Qualcomm has also helped integrate Neural Fusion technology into Unity and Unreal Engine, which may ultimately be just as important as the underlying hardware. Developer adoption determines whether features like this become meaningful platform advantages or just another tick box on a spec sheet.

Qualcomm’s Hexagon NPU is being reworked for agentic AI

Qualcomm

The most recent disclosure centers on Qualcomm’s Hexagon NPU, where the broader architecture starts to come together. The company’s next-generation Hexagon introduces a new Element Accelerator designed for transformer workloads, alongside its existing vector and scalar processing resources. Qualcomm says the new block is optimized for fast action loops, key-value (KV) cache acceleration and context lengths of up to 32K.

Hexagon is also getting 50% more shared memory, and again, that memory complement is important. Model state, context and KV-cache data can generate substantial memory traffic, particularly with larger language models. Keeping more of that data close to the NPU can reduce latency and power consumption. Qualcomm says the architecture is designed for long-context reasoning, multimodal models, concurrent agents and low-latency action loops.

For INT4 quantized models, the company claims up to a 50% improvement in pre-fill performance versus its previous-generation Snapdragon 8 Elite Gen 5. Qualcomm is also targeting Mixture-of-Experts, or MoE, models as large as 30 billion parameters. In its example, the company points to a 30B model that activates only about 3 billion parameters during a given token-generation step. That selective approach is a natural fit for the tight power and memory constraints of a handset.

Qualcomm isn’t suggesting that a smartphone will simply run a 30B dense model entirely from DRAM, however. By activating only the experts needed for a particular task, MoE architectures can dramatically reduce active compute and memory bandwidth requirements, potentially making much larger classes of AI models practical on mobile hardware.

Qualcomm’s next-gen Snapdragon mobile impact

There is a larger competitive story here as well. For years, flagship smartphone competition largely came down to CPU, GPU, modem performance and power efficiency. AI is now another major area of differentiation, and Qualcomm is clearly designing its next-gen Snapdragon mobile platform around this need.

Apple has the advantage of controlling its silicon, operating system and software stack end-to-end. MediaTek continues to push aggressively into premium Android devices as well. Qualcomm’s response is to make its custom Oryon CPU, Adreno GPU and Hexagon NPU work more like a fully integrated compute platform, tuned for modern AI and agentic workloads.

This is a solid advantage for Android handset OEMs because many don’t have the resources to engineer this level of silicon integration themselves. Qualcomm can effectively provide its Android OEM partners, including Samsung, Xiaomi, Honor and others, with a common hardware foundation for on-device AI, advanced graphics and agentic computing. It also gives Qualcomm another way to defend its premium Snapdragon position.

The company’s custom Oryon architecture now spans smartphones and Windows PCs, and soon servers, while AI acceleration is distributed across its CPU, GPU and NPU. For business users, that could mean more AI processing happens locally, reducing cloud and network dependence, improving response times and keeping more potentially sensitive data on-device. And for IT organizations, Qualcomm now has an opportunity to provide a more consistent AI compute foundation across Windows PCs with Snapdragon X and premium Android handsets.

There is still plenty we don’t know, however. Qualcomm hasn’t disclosed the complete SoC specifications, final performance or power characteristics, or which devices will ship with it initially. Many of these AI experiences will also depend heavily on Android, app developers and the models themselves.

The new 5GHz mobile CPU may generate the biggest headline at Snapdragon Summit, but the more important developments may be what sit around it: more local memory, specialized AI acceleration and tighter integration between the CPU, GPU and NPU.

If Qualcomm can translate this architecture into better sustained performance, enhanced power efficiency and useful on-device AI experiences, it could strengthen its position in premium Android phones while putting more competitive pressure on Apple. For business users, the payoff could be more capable local AI without sacrificing the performance and battery life expected of a flagship device.

That is the part I’ll be watching most closely when the complete silicon picture is unveiled at Snapdragon Summit later this month. And I may even get some hands-on time with it in some benchmarks, as we have in years past, so we shall see.

Kategorie: Hacking & Security

Nvidia s cenou grafik uletěla více než AMD. Za stejné peníze dostanete o třídu rychlejší Radeon než GeForce

Živě.cz - 10 Září, 2026 - 14:45
GeForce zdražují více než konkurenční Radeony. • RTX 5070 už je dražší než výrazně rychlejší RX 9070 XT. • Srovnali jsme, jak výhodné jsou všechny karty aktuální generace.
Kategorie: IT News

Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE

The Hacker News - 10 Září, 2026 - 13:45
Check Point has patched two critical vulnerabilities in the way its firewall and management products handle VPN certificates. The company says both could allow an unauthenticated remote attacker to run code, but only "under specific conditions" that it has not described. One flaw affects Check Point's Security Gateways, its firewall appliances. The other affects those gateways and the Security
Kategorie: Hacking & Security

Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE

The Hacker News - 10 Září, 2026 - 13:45
Check Point has patched two critical vulnerabilities in the way its firewall and management products handle VPN certificates. The company says both could allow an unauthenticated remote attacker to run code, but only "under specific conditions" that it has not described. One flaw affects Check Point's Security Gateways, its firewall appliances. The other affects those gateways and the Security Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Nejlepší vtípky na účet iPhonu Duo. Věděli jste, že Apple už jeden ohebný iPhone měl?

Živě.cz - 10 Září, 2026 - 13:45
Internet se baví reakcemi na skládací iPhone Duo • Největší radost má Duolingo, tradičně reagoval i Samsung • Je to však už druhý skládací iPhone a Apple si dělá legraci i sám ze sebe
Kategorie: IT News

PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances

The Hacker News - 10 Září, 2026 - 13:41
A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a recently disclosed pair of security flaws in PaperCut NG/MF and break into hundreds of instances. According to independent reports from Blackpoint Cyber and GreyNoise, the activity originates from "45.142.193[.]132," an IP address that has been linked to
Kategorie: Hacking & Security

PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances

The Hacker News - 10 Září, 2026 - 13:41
A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a recently disclosed pair of security flaws in PaperCut NG/MF and break into hundreds of instances. According to independent reports from Blackpoint Cyber and GreyNoise, the activity originates from "45.142.193[.]132," an IP address that has been linked to Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks

The Hacker News - 10 Září, 2026 - 13:33
The Gigabud banking trojan now installs a second Android app that creates a work profile on an infected phone and drops a tampered banking app inside it, security firm Group-IB said in a report published on September 9. A work profile is a separate space that Android typically reserves for employer apps, and what's inside it is kept separate from everything in the personal space. That
Kategorie: Hacking & Security

Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks

The Hacker News - 10 Září, 2026 - 13:33
The Gigabud banking trojan now installs a second Android app that creates a work profile on an infected phone and drops a tampered banking app inside it, security firm Group-IB said in a report published on September 9. A work profile is a separate space that Android typically reserves for employer apps, and what's inside it is kept separate from everything in the personal space. That Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Microsoft says September updates fix mouse settings reset issues

Bleeping Computer - 10 Září, 2026 - 13:14
Microsoft has fixed a known issue that wiped mouse settings on some Windows 11 systems after installing the KB5120998 August 2026 preview update. [...]
Kategorie: Hacking & Security

OpenAI tvrdí, že vyřešilo Millennium úlohu. Ve stejný den a stejnou neobvyklou cestou jako dva matematici

Živě.cz - 10 Září, 2026 - 12:45
OpenAI oznámilo řešení Navierovy–Stokesovy úlohy pomocí interního modelu. • Matematici Buckmaster a Alpöge zveřejnili ve stejný den vlastní výsledky. • Netransparentní AI řešení mohou kontaminovat rozvoj matematiky.
Kategorie: IT News

Julia 1.13.0

AbcLinuxu [zprávičky] - 10 Září, 2026 - 12:40
Byla vydána nová verze 1.13.0 dynamického programovacího jazyka Julia (Wikipedie) určeného zejména pro vědecké výpočty. Přehled novinek v příspěvku na blogu a v poznámkách k vydání. Aktualizována byla také dokumentace.
Kategorie: GNU/Linux & BSD

CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline

The Hacker News - 10 Září, 2026 - 12:36
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added three flaws, each impacting Cisco, Citrix, and Fortinet, to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the patches by September 12, 2026. The vulnerabilities are listed below - CVE-2026-20079 (CVSS score: 10.0) - An authentication
Kategorie: Hacking & Security

CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline

The Hacker News - 10 Září, 2026 - 12:36
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added three flaws, each impacting Cisco, Citrix, and Fortinet, to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the patches by September 12, 2026. The vulnerabilities are listed below - CVE-2026-20079 (CVSS score: 10.0) - An authentication Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Zrušení střídání času se opět odkládá. Vláda schválila pravidelné posouvání hodin až do roku 2031

Živě.cz - 10 Září, 2026 - 11:45
Česká vláda schválila nařízení o střídání letního a standardního času do roku 2031 • Posouvání ručiček vyžaduje stále platná evropská směrnice z roku 2001 • Členské státy se dosud nedohodly na zavedení jednoho trvalého času
Kategorie: IT News
Syndikovat obsah