Agregátor RSS

Amazon EC2 SSM Agent Flaw Patched After Privilege Escalation via Path Traversal

The Hacker News - 8 Duben, 2025 - 18:56
Cybersecurity researchers have disclosed details of a now-patched security flaw in the Amazon EC2 Simple Systems Manager (SSM) Agent that, if successfully exploited, could permit an attacker to achieve privilege escalation and code execution. The vulnerability could permit an attacker to create directories in unintended locations on the filesystem, execute arbitrary scripts with root privileges,Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

12 věcí o Nintendo Switchi 2, které jste možná nepostřehli: výdrž baterie, kompatibilita hardwaru nebo velikost her

Živě.cz - 8 Duben, 2025 - 18:45
Nintendo kolem své nově oznámené konzole mlží, po internetu kolují nepřesné informace... je to docela chaos. Proto jsme posbírali to nejdůležitější, o čem se při oznámení nemluvilo a co by vám nemělo uniknout.
Kategorie: IT News

WhatsApp flaw can let attackers run malicious code on Windows PCs

Bleeping Computer - 8 Duben, 2025 - 18:21
Meta warned Windows users to update the WhatsApp messaging app to the latest version to patch a vulnerability that can let attackers execute malicious code on their devices. [...]
Kategorie: Hacking & Security

Cryptocurrency Miner and Clipper Malware Spread via SourceForge Cracked Software Listings

The Hacker News - 8 Duben, 2025 - 18:07
Threat actors have been observed distributing malicious payloads such as cryptocurrency miner and clipper malware via SourceForge, a popular software hosting service, under the guise of cracked versions of legitimate applications like Microsoft Office. "One such project, officepackage, on the main website sourceforge.net, appears harmless enough, containing Microsoft Office add-ins copied from aRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Netflix a 30 nejoblíbenějších filmů a seriálů. V dubnu 2025 je to třeba Cassandra, Adolescent nebo superdrahá Pasáž. A Mimoni

Živě.cz - 8 Duben, 2025 - 17:45
Tyto filmy a seriály jsou v současnosti na českém Netflixu nejpopulárnější. Nebereme v úvahu žánr, rok vzniku ani hodnocení na filmových stránkách. Jedná se o celkovou popularitu za několik posledních týdnů, kterou sleduje web FlixPatrol.
Kategorie: IT News

New Mirai botnet behind surge in TVT DVR exploitation

Bleeping Computer - 8 Duben, 2025 - 17:33
A significant spike in exploitation attempts targeting TVT NVMS9000 DVRs has been detected, peaking on April 3, 2025, with over 2,500 unique IPs scanning for vulnerable devices. [...]
Kategorie: Hacking & Security

AWS rolls out ML-KEM to secure TLS from quantum threats

Bleeping Computer - 8 Duben, 2025 - 16:54
Amazon Web Services (AWS) has added support for the ML-KEM post-quantum key encapsulation mechanism to AWS Key Management Service (KMS), AWS Certificate Manager (ACM), and AWS Secrets Manager, making TLS connections more secure. [...]
Kategorie: Hacking & Security

Llama 4 je podle Mety lepší než GPT-4o. Kolem schopností nové AI ale panují pochybnosti

Živě.cz - 8 Duben, 2025 - 16:45
Meta před pár dny uvedla novou generaci velkých jazykových modelů Llama 4 . Přijdou ve čtyřech verzích lišících se schopnostmi. Zatím jsou venku dvě slabší, a i ty slibují, že jsou lepší než většina konkurence. Llama v aktuální verzi poprvé nabízí nativní multimodální režim, takže umí pracovat ...
Kategorie: IT News

Nový mainframe IBM z17

AbcLinuxu [zprávičky] - 8 Duben, 2025 - 15:55
Společnost IBM představila nový mainframe IBM z17 poháněný procesorem IBM Telum II.
Kategorie: GNU/Linux & BSD

Vybrali jsme 32 stavebnic a programovatelných robotů pro děti a jejich rodiče

Živě.cz - 8 Duben, 2025 - 15:45
** Získejte děti pro techniku a programování ** Anebo se sami naučte kódovat a prototypovat ** Vybrali jsme stavebnice a roboty pro malé caparty i budoucí experty
Kategorie: IT News

Scattered Spider stops the Rickrolls, starts the RAT race

The Register - Anti-Virus - 8 Duben, 2025 - 14:45
Despite arrests, eight-legged menace targeted more victims this year

Despite several arrests last year, Scattered Spider's social engineering attacks are continuing into 2025 as the cybercrime collective targets high-profile organizations and adds another phishing kit to its arsenal along with a new version of Spectre RAT malware.…

Kategorie: Viry a Červi

Nabídka Start ve Windows 11 se zvětší a lépe zpřístupní všechny nainstalované programy

Živě.cz - 8 Duben, 2025 - 14:45
Nabídku Start ve Windows 11 čeká redesign . Od prvního vydání v říjnu 2021 se prakticky nezměnila. Přibyly složky , dostali jsme možnost zvětšit prostor pro připnuté aplikace na úkor sekce s posledními dokumenty, resp. obráceně. Chystaná iterace nabídku zvětší. Pořád nevíme, jestli budeme moct ...
Kategorie: IT News

How Apple thinks about the 6G evolution

Computerworld.com [Hacking News] - 8 Duben, 2025 - 14:36

With its C1 5G chip and huge networking tech development division, Apple is in the networking business. So, the company is heavily enmeshed in the development of the next-generation 6G networking standard.

Apple shared its vision and priorities for the in-development 6G standard at a recent 3GPP workshop session in Seoul, where it stressed the need for good user experiences, stable and consistent networking operations, backwards compatibly and energy efficiency in 6G.

It also stressed that once 6G is introduced, the feature and devices it is supposed to support should be available from day one.

Apple’s now-confirmed appeal against the UK’s deeply authoritarian and technologically dangerous attack on personal data encryption proves privacy and security are important to the company. That’s why it is calling for user privacy to be a “cornerstone for 6G architecture.”

(The request may turn out to be moot, given the sheer scale of data picked up by mobile telcos.)

The presentation made at the workshop delves into extensive detail, but one of the shortcomings it thinks needs to be fixed in 6G, as compared to 5G, is consistency.

6G for the rest of us

You see, when the latter standard became available it arrived in several “flavors,” not all of which were used. This created confusion and likely dampened adoption/delivery of relevant use cases. Think about the 5G in your phone? Is it really 5G? It depends on which flavor you use.

Apple, which has been working on 6G for years, thinks 6G needs to ship with extra simplicity and should support most devices from the get-go. Somewhat surprisingly, faster connectivity isn’t as important to the company as consistent coverage, good battery life, and lack of latency. 

In other words, it wants 6G to be as consistent and easy to use/deploy as any Apple product. And given its unique position as a mobile device vendor, Apple is also urging standards setters to push for low energy — because it knows that decreasing energy requirements for networking technology dramatically extends battery life.

When it comes to architecture, Apple is pushing for AI/ML support within and by this standard, integrated sensing and communications (ISAC), spectrum sharing, and wide radio support. It also wants better integration between satellite and terrestrial networks, and casts shade on the idea of new 6G spectrum being made available.

When it comes to backwards compatibility, the company notes that while 6G is not expected to be backward-compatible, it should support later-introduced 5G features and use cases from the start. It must also be forward-compatible, meaning new features, services, and use cases can be rolled out over time.

The company stressed that this may be particularly important for new AI-driven networking features. But to my mind, it makes the networking tech something that can be improved incrementally over time, just like any other software-driven tech should be.

Apple is consistent

To a great extent, Apple’s priorities in 6G development reflect its wider approach to everything it makes: user simplicity, low energy consumption, and consistent experiences. It’s no surprise it wants the same in next-gen networking tech – a “clean and lean design from day one.”

Apple’s thoughts are likely to be adopted by some of the many companies that form the 3GPP 6G working groups, particularly because it now has some highly-respected networking standard experts on its staff. But we won’t know whether its attempt succeeds until the first set of specifications are published at the end of 2029.

It’s clear Apple would like the spec to be active by 2030, and the urgency with which it sees consistency and full standard support suggests it will not be late to ship a 6G iPhone.

You can read more about Apple’s approach here, with an extensive (recommended) report that looks at the many more submissions from others in the space made at the workshop and available from Telecom TV.

You can follow me on social media! Join me on BlueSky,  LinkedIn, and Mastodon.

Kategorie: Hacking & Security

China’s rare earth export controls threaten enterprise IT hardware supply chains

Computerworld.com [Hacking News] - 8 Duben, 2025 - 14:35

China has announced immediate export controls on seven more rare earth elements critical to enterprise IT hardware manufacturing, firing a fresh salvo in the ongoing tech trade war. This move could significantly impact tech giants including Dell Technologies, HP, Apple, and IBM, along with semiconductor leaders such as Intel, Samsung, and TSMC.

The new controls issued by China’s State Council require export licenses for samarium, gadolinium, terbium, dysprosium, lutetium, scandium, and yttrium — along with their alloys, oxides, and compounds. These materials are essential components in data center storage systems, networking equipment, and semiconductors.

Kategorie: Hacking & Security

Co by mohlo přijít po dotykových displejích. Brýle, gesta a AI s asistenty, kterým postačí hlas

Živě.cz - 8 Duben, 2025 - 13:45
** Blíží se doba, ve které už dotykový telefon nebude hrát stěžejní roli ** Transformace však zřejmě potrvá dlouho, dotyků se nebudeme chtít jen tak vzdát ** Telefony by mohly být nahrazeny AR brýlemi, dotyky zase gesty či hlasovými povely
Kategorie: IT News

Ubuntu pro OrangePi RV2

AbcLinuxu [zprávičky] - 8 Duben, 2025 - 13:19
Canonical představil Ubuntu optimalizované pro jednodeskový počítač OrangePi RV2 s 8jádrovým RISC-V AI CPU.
Kategorie: GNU/Linux & BSD

Americká firma tvrdí, že vytvořila klony pravlka obrovského. Vědci oponují, že jde jen o DNA napodobeninu

Živě.cz - 8 Duben, 2025 - 13:03
** Americká firma Colossal Biosciences tvrdí, že vytvořila klony pravlků obrovských. ** Vědci varují, že tato zvířata jsou jen genetickým napodobením. ** Obnova vyhynulých druhů vyvolává etické otázky a nejasnosti.
Kategorie: IT News

Agentic AI in the SOC - Dawn of Autonomous Alert Triage

The Hacker News - 8 Duben, 2025 - 13:00
Security Operations Centers (SOCs) today face unprecedented alert volumes and increasingly sophisticated threats. Triaging and investigating these alerts are costly, cumbersome, and increases analyst fatigue, burnout, and attrition. While artificial intelligence has emerged as a go-to solution, the term “AI” often blurs crucial distinctions. Not all AI is built equal, especially in the SOC. [email protected]
Kategorie: Hacking & Security

Účty Fialy a Spolu na síti X byly napadeny

AbcLinuxu [zprávičky] - 8 Duben, 2025 - 12:23
Účty Fialy a Spolu na síti 𝕏 byly napadeny, objevily se na nich falešné příspěvky. Příspěvky informovaly třeba o útoku na české vojáky ruskou armádou nebo odvetách za americká cla. Dle mluvčího ODS měly účty dvoufázové ověření a další pokročilá zabezpečení.
Kategorie: GNU/Linux & BSD
Syndikovat obsah