Agregátor RSS

Tahle klávesnice nahradí i myš. Tlačítka fungují jako velký touchpad

Živě.cz - 28 Srpen, 2026 - 08:45
Clevetura integrovala velký touchpad přímo pod klávesy. • Podporuje nativní gesta ve Windows, macOS i Linuxu. • Unikátní klávesnice je však drahá a má i nevýhody.
Kategorie: IT News

Firma ještě nevznikla, zakladatelka už ale převedla polovinu podílu. Podle soudu je to platné

Lupa.cz - články - 28 Srpen, 2026 - 08:30
Podepsat zakladatelskou listinu ještě neznamená, že firma skutečně existuje. Nejvyšší soud nyní rozhodl, že i v mezidobí lze převést budoucí podíl. Nový majitel ho však získá až zápisem společnosti do obchodního rejstříku.
Kategorie: IT News

X se snaží ukončit open-source frontend Nitter

AbcLinuxu [zprávičky] - 28 Srpen, 2026 - 08:14
Firma X zaslala předžalobní výzvu vývojáři projektu Nitter (Wikipedia), open-source alternativního frontendu k sociální síti X (ex-Twitter), a provozovatelům instancí jako XCancel, které umožňovaly číst příspěvky bez přihlášení, reklam a javascriptu. Údajně se dopouštějí „sběru dat“. Zdrojový kód Nitteru vývojář archivoval. Vývoj již dříve přerušil v roce 2024 po tehdejším omezení API X. X je dceřiná společnost SpaceXAI Elona Muska, provozující mj. kontroverzního chatbota Grok.
Kategorie: GNU/Linux & BSD

Šéf CIA letěl do Moskvy obřím transportérem. Uvnitř mohl být stříbrný karavan nebo speciální kontejner pro VIP

Živě.cz - 28 Srpen, 2026 - 07:45
Šéf CIA John Ratcliffe zkraje týdne odcestoval do Moskvy a média celý týden přemítala, jaký byl skutečný účel zvláštní mise. Vojenští a letečtí blogeři pro změnu spekulovali, proč si Ratcliffe pro cestu zvolil těžkotonážní nákladní stroj Boeing C-17 Globemaster III a nikoliv jeden z mnoha ...
Kategorie: IT News

Socket AM5 počítá s APU Medusa. Vysvětluje to integrovanou grafiku v desktopu

CD-R server - 28 Srpen, 2026 - 07:40
Klasický Zen 6 pro AM5 desktop, Olympic Ridge, nejspíš nebude vybaven integrovanou grafikou. Ta však v desktopu nadále bude přítomna: Na produktu, který může nabídnout až 22 jader / 44 vláken…
Kategorie: IT News

Print management outfit PaperCut is under 0-day attack, and it’s drawing customers’ blood

The Register - Anti-Virus - 28 Srpen, 2026 - 07:29
Nothing smarts like a paper cut, but being attacked after leaving an application’s web interface exposed to the internet might be just as painful. Such attacks are the risk to which users of PaperCut print management software find themselves exposed today, after the company revealed a university’s security teams alerted it to an attack. The company analyzed info provided by the university and found a vulnerability in its PaperCut NG and PaperCut MF products, which manage access to printers, track use, and enable printing from myriad client devices. “We are aware of confirmed customer incidents and are treating this matter with the highest priority,” states an urgent security advisory issued on Thursday. Unusually, the advisory is silent on the nature of the flaw and the risk it poses. It looks like the web interface to the company’s products enables access deeper into a user’s networks, because among the indicators of compromise are altered log files, plus alerts from intrusion detection software, endpoint security tools, and network monitoring packages. The company has cooked up an emergency patch but warns it is not an official release. “We have not gone through our usual release process,” states an FAQ. “This is an emergency patch for customers with public-facing PaperCut servers who are unable to take other mitigating action.” Thankfully, those other actions aren’t hard to take: users need to get their PaperCut servers’ web interfaces off the public internet, by allowing access only from trusted internal IP addresses. Fashioning a potent and rapid response to a zero-day attack is never easy. Communicating the nature of the problem can be even harder, as discussing the nature of a flaw invites more attackers to take a shot at a stricken product. PaperCut says it’s working on a better fix and will advise users once it lands. For now, the company is asking customers to apply its wonky patch or take their servers offline ASAP. The Register fancies most users will go for the latter fix, as aside from the issue of finding a change window in which to apply a patch, running unvalidated emergency software is not an appetizing approach. ®
Kategorie: Viry a Červi

Hry zadarmo, nebo se slevou: Forza Horizon 6 poprvé ve slevě a přežívání s nesmrtelnou slepicí ve vesmíru zdarma

Živě.cz - 28 Srpen, 2026 - 07:10
Na všech herních platformách je každou chvíli nějaká slevová akce. Každý týden proto vybíráme ty nejatraktivnější, které by vám neměly uniknout. Pokud chcete získat hry zdarma nebo s výhodnou slevou, podívejte se na aktuální přehled akcí!
Kategorie: IT News

Australian cops cuff alleged TeamPCP masterminds

The Register - Anti-Virus - 28 Srpen, 2026 - 05:33
The Australian city of Perth is by some measures the world’s most isolated major metropolis, but is still sufficiently connected to US law enforcement authorities that the FBI was able to help Australia’s Federal Police (AFP) to find two men they believe were the masterminds of TeamPCP, a cybercrime crew that conducted prominent supply chain attacks. According to the AFP, two men aged 21 and 23 arrested on Wednesday “were principal participants in the activities of the cybercrime syndicate and received payments in cryptocurrency for their roles in the illegal activity.” An FBI Facebook post names one of the arrested men as Ruben Thomson and describes him as “the alleged leader of the cybercriminal group TeamPCP.” Australian media named the second man as 23-year-old Louis Michael Gaebler. Investigations into the pair started in April 2026, after Australian authorities and the FBI “received information from multiple cyber threat assessment companies regarding a syndicate that allegedly inserted malicious code into software available on an open-source repository, which was then unwittingly used by other developers.” Researchers detected some of those activities before April: In March, we reported that researchers spotted a supply chain attack on the open source scanner Trivy. Another of TeamPCP’s attacks was the Shai-Hulud worm, which attacks npm packages, tries to infect them and goes looking for credentials to major public clouds or services like GitHub. If the worm burrowed into its targets, it would either try to replicate to continue its attacks, or wipe the environment out of spite. The AFP’s “We cuffed ‘em!” announcement estimates that TeamPCP’s supply chain attacks “potentially compromised more than 1000 organisations globally, enabling the theft of more than 500,000 credentials, and the exfiltration of at least 300 gigabytes of data.” Australia’s Feds estimate “the financial impact includes global remediation costs estimated to be hundreds of millions of dollars.” As is often the case in such matters, the arrested men were found with electronic devices and other items which authorities seized. “A large volume of data seized is being forensically examined and the investigation remains ongoing,” the AFP wrote, adding “Further arrests and charges have not been ruled out.” Indeed, the Feds note that they arrested the two at different locations in the suburbs of Perth and searched a third property nearby. ® Bootnote: Perth is considered the site of the original “Black Swan” event, as swans there – and across much of Australia – are black. Early European explorers who explored Australia's west coast were astounded when they saw the black birds, as the “fact” that all swans are white was at the time a metaphor for the existence of absolute truths.
Kategorie: Viry a Červi

GTA 6 ohromilo půlhodinovou ukázkou. Známe detaily o velikosti mapy, délce příběhu i honičkách s policií

Živě.cz - 28 Srpen, 2026 - 05:06
Premiéra ukázky z GTA 6 přilákala tolik diváků, že spadl Netflix. • Herní mechaniky zahrnují více než 600 000 animací a akci vidíme pouze z třetí osoby. • Rockstar slibuje obrovský otevřený svět s interaktivitou a množství různých aktivit.
Kategorie: IT News

Ubuntu 26.04.1 LTS

AbcLinuxu [zprávičky] - 28 Srpen, 2026 - 02:31
Bylo vydáno Ubuntu 26.04.1 LTS, tj. první opravné vydání Ubuntu 26.04 LTS s kódovým názvem Resolute Raccoon. Přehled novinek a oprav na Discourse.
Kategorie: GNU/Linux & BSD

Zpráva o stavu kybernetické bezpečnosti ČR za rok 2025

AbcLinuxu [zprávičky] - 28 Srpen, 2026 - 02:13
Národní úřad pro kybernetickou a informační bezpečnost (NÚKIB) vydal Zprávu o stavu kybernetické bezpečnosti ČR za rok 2025 (pdf). Incidentů ubylo, sofistikovanost útočníků roste.
Kategorie: GNU/Linux & BSD

AMD ROCm 10.0

AbcLinuxu [zprávičky] - 28 Srpen, 2026 - 00:57
Open source softwarový stack AMD ROCm (Wikipedie) pro vývoj AI a HPC na GPU od AMD byl vydán v nové major verzi 10.0. S ROCm.AI. Přehled novinek v aktualizované dokumentaci.
Kategorie: GNU/Linux & BSD

Týden na ScienceMag.cz: Můžeme za počítač pokládat i chemickou reakci?

AbcLinuxu [články] - 28 Srpen, 2026 - 00:01

Jako Tolkien: Umělá inteligence vymýšlí nové jazyky. Matematický model ukazuje, co rozhoduje o tom, zda se fáma na sociálních sítích udrží. I váš kód může běžet na sondě Hera. V jedné galaxii byly poprvé objeveny tři superhmotné černé díry.

Kategorie: GNU/Linux & BSD

Dluhy pod kontrolou. Kde zjistit půjčky, soudní řízení i exekuce

Lupa.cz - články - 28 Srpen, 2026 - 00:00
Dluhy můžete mít u banky, státu i jiných věřitelů. Ukážeme, kde je bezpečně dohledat a jak nenaletět falešným registrům dlužníků.
Kategorie: IT News

Nvidia: Chystáme NVHBM. Analytik: Více marketingu než technologie

CD-R server - 28 Srpen, 2026 - 00:00
Nvidia ohlásila NVHBM, což má být vlastní proprietární varianta HBM pamětí, kterou Nvidia nasadí za éry HBM4e. Přestože investoři reagují nadšeně, po technologické stránce nejde o žádnou revoluci…
Kategorie: IT News

Přízračné sonické mikroboty se pohybují bez baterií a motorů

OSEL.cz - 28 Srpen, 2026 - 00:00
Miniaturizace bývá omezená velikostí pohonu. Na švýcarské technice EPFL postavili maličké čluny, nanodrony a další zařízení bez klasických baterií a motorů, ale s akustickými rezonátory. Díky Helmholtzově rezonanci důmyslně využívají zvukové vlny k vytváření tahu a k pohybu.
Kategorie: Věda a technika

Krotitelé duchů: Fyzici zobrazili kvantové fluktuace prázdného prostoru

OSEL.cz - 28 Srpen, 2026 - 00:00
Vědci už dlouho předpovídají, že kvantové pole zrní náhodnými fluktuacemi jako televizní obrazovka. Tým z Cambridge nedávno zkrotil kvantové duchy a fluktuace v kvantovém poli přímo zobrazil. Jejich výzkum rovněž otevírá nové možnosti pro pokročilé laboratorní simulace relativistických polí.
Kategorie: Věda a technika

LibreOffice 26.8: nejen odstavcový sazeč značně vylepšující formátování textu

ROOT.cz - 28 Srpen, 2026 - 00:00
Letošní srpnové vydání LibreOffice, výrazně zlepšuje formátování textů ve Writeru, podporu souborů z MS Excelu, přináší aktualizované vzory pro prezentace i vylepšení podpory skriptování a spoustu dalších novinek.
Kategorie: GNU/Linux & BSD

Nearly 700 rogue AI agents coordinated in the Hugging Face attack

Bleeping Computer - 27 Srpen, 2026 - 23:38
New details about the July attack on Hugging Face reveal that hundreds of AI agents driven by OpenAI's internal IM1 model coordinated the compromise through an unauthorized message board. [...]
Kategorie: Hacking & Security

CRPx0 hacking service for dummies claims victim count more than quintupled

The Register - Anti-Virus - 27 Srpen, 2026 - 23:24
CRPx0, a cybercrime crew that has rapidly evolved from a scam service to a ClickFix-delivered ransomware and crypto-theft business over the summer, claims its victim count jumped from fewer than 10 in June to 48 organizations on its clear-web leak site at the time of publication. Keep in mind: criminals aren’t always the most trustworthy bunch, so take their claims with a healthy dose of salt. Still, the ransomware biz’s expanding operations, unique payload, and white-label hacking service make it one to watch, and a few recent analyses provide tips for defenders to keep the crooks out of their IT environments. Rakesh Krishnan, a threat-intel analyst who writes about cybercrime investigations on TheRavenFile blog, was one of the first researchers to publish details about CRPx0 at the beginning of the month, including previously unreleased malware samples. The operators offer a hacking service, providing “complete database extraction” from victim organizations and “optional public leak coordination upon request.” This platform also advertises full network compromise, “from initial access, through lateral movement, to full domain compromise,” plus persistent access across the victim’s infrastructure. A second, white-label, ransomware-as-a-service platform makes it really easy for wannabe crooks to get into the data-theft and extortion biz. CRPx0 builds, deploys, and configures everything from command-and-control infrastructure to the negotiation panel and malware, allowing its criminal customers to bring their own brand identity to their operations - and originally offered these services for a $10,000 one-time fee. At first, the operators promised to allow affiliates to keep 100 percent of their profits - this is unheard of in ransomware-as-a-service operations. This has since shifted to a 70-30 model, with affiliates receiving 70 percent of the extortion payments (after a one-time $333 enrollment fee) and the remaining 30 percent going to the operators. CRPx0 rules prohibit affiliates from infecting Commonwealth of Independent States (CIS) member countries and organizations based in these countries. This is a pretty common rule among Russia-based ransomware operations, and in an earlier interview with The Register, Recorded Future threat intelligence analyst Allan Liska called it the “first rule of ransomware club: you don't attack organizations in the Commonwealth of Independent States.” The gang also prefers Monero (XMR) payments, rather than Bitcoin (BTC). ClickFix ransomware delivery Affiliates can also customize their own ClickFix payload delivery. The operators offer two lures, a fake Windows Update and a fake Google reCAPTCHA, to socially engineer victims into executing the initial command, according to a Ransom-ISAC research team analysis published on Thursday. The Windows lure tricks a victim into pasting a PowerShell command into the Run dialog. This drops a DLL stager chain and ultimately deploys Python-based ransomware. The macOS lure, however, uses a curl|bash command that downloads portable Python and the ransomware directly. The lures and the rest of CRPx0’s malware run on Windows and macOS, and according to the researchers, there are four payload formats: “the two HTML lures plus a standalone DLL and a standalone EXE, both of which discard the social engineering step entirely.” All four deliver the same ransomware: a 1,769-line Python script that steals high-value files before encrypting them with AES-128-CBC (Fernet). The malware moves laterally via WMI/schtasks, and delivers a ransom note that gives victims a 48-hour deadline to pay up - or see their files leaked. 'Complete, professional offensive control center' On August 23, the CRPx0 operators published a v3.0 update note on the group’s clearnet leak site, promising “a complete, professional offensive control center for managing compromised remote machines from a single web dashboard.” It provides crims with tools to steal valuable files, credentials, and wallet recovery phrases and keys, while “watching stolen cryptocurrency wallet addresses flow in.” This service also provides scripts to run remote commands, and the control panel sets up “automated attack reactions that fire on their own when something valuable happens on a target.” As the operators note: “Everything is built to be operated by a human with no technical background: point-and-click panels, plain-language rules, and clear status indicators. The underlying attack engine is hidden behind a clean, dark-themed interface.” CRPx0’s hacking and ransomware services, enabling everything from crypto theft to encryptors and full network compromise, “could be a strategic move to attract new recruits, or a scam targeting a range of affiliate hopefuls seeking cybercrime services,” according to an August 12 analysis from Jade Brown, a threat researcher at Bitdefender. What defenders should do Still, “other threat actors may attempt to adopt similar techniques,” she warns. “This is a reminder that organizations should balance detection capabilities in preparation for different types of compromises, configuring technologies to detect and block malicious behavior that aligns with both crypto theft and encryption processes.” The Ransomware-ISAC team says defenders should prioritize five actions, in this order. “The first three cost nothing and blunt the entire ClickFix class of attack, not just CRPx0,” they note. First: remove the Run dialog for standard users - this will entirely block the Windows path. For macOS users: restrict Terminal via MDM for non-technical staff. Next, the threat-intel analysts advise defenders to alert on RunMRU writes containing powershell, curl or long base64 strings. “Every ClickFix victim leaves a trace at HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU,” they wrote. “This is the highest-fidelity ClickFix detection available and it is trivial to deploy.” The team also lists adversary network indicators and suggests blocking those. Make sure to hunt for indicators and malicious behavior in the pre-encryption exfiltration window. “Data leaves before a single file is encrypted, so .crpx0 extensions and ransom notes are a post-mortem indicator, not a warning,” according to the Ransomware-ISAC. Finally, confirm backups are unreachable from the account that would be compromised, and treat anything reachable with the victim's credentials as destroyed. ®
Kategorie: Viry a Červi
Syndikovat obsah