TheRegister
The never-ending supply chain attacks worm into SAP npm packages, other dev tools
The wave of supply chain attacks aimed at security and developer tools has washed up more victims, namely SAP and Intercom npm packages, plus the lightning PyPI package.…
Govern your bots carefully or chaos could ensue
With the average Global Fortune 500 enterprise expected to run more than 150,000 AI agents by 2028, up from fewer than 15 today, there’s plenty of room for chaos. Analyst firm Gartner says that, without proper governance, those agents will multiply and run amok.…
Firefox maker torches Google for building Prompt API into browser
Mozilla has reiterated its opposition to Google's decision to build AI plumbing into its Chrome browser, though rather belatedly now that the technology, known as the Prompt API, is already being tested in Chrome and Microsoft Edge.…
Bot her emails: most modern phishing campaigns are AI-enabled
Give a man a phishing kit and he might get lucky a couple of times; teach an AI to phish and it'll change the landscape, if KnowBe4's latest phishing trends report is accurate.…
FBI cyber boss: China's hacker-for-hire ecosystem 'out of control'
China's "hacker-for-hire ecosystem has gotten out of control," according to Brett Leatherman, assistant director of the FBI's cyber division.…
Phone users know when to hold ’em, delay upgrades amid inflation
Remember the early days of the smartphone revolution when, even after six months, your phone felt outdated? Not anymore. Smartphone replacement cycles are getting longer as discretionary household budgets come under pressure from inflation, with demand for new devices expected to fall for the rest of this year.…
Bandwidth hogs rejoice, Celestica's latest switch is bristling with 64 ports of 1.6 Tbps Ethernet
If you thought 800 Gbps Ethernet was fast, just wait. Celestica's latest switches cram 64 1.6 Tbps ports into a single chassis.…
Google's fix for critical Gemini CLI bug might break your CI/CD pipelines
If you use Gemini CLI, watch out: Google has patched a CVSS 10.0 vulnerability in its command-line AI tool and is warning anyone running it in headless mode, or through GitHub Actions, to review their workflows.…
French prosecutors link 15-year-old to mega-breach at state’s secure document agency
French prosecutors say police detained a 15-year-old on April 25 over the alleged theft of millions of records from France Titres (ANTS), the agency handling secure documents.…
Zed team releases version 1.0 of Rust-built editor: Traditional editor and AI tool
The Rust-built Zed editor has reached version 1.0, released yesterday, with development led by former members of the Atom team at GitHub.…
AWS says acute server memory shortage is driving customers to the cloud
The great memory shortage is having yet another effect, pushing enterprises into the waiting arms of the cloud operators as they can't secure enough on-prem compute themselves.…
Survey says no, American workers are not keen on Microsoft's AI
The Coalition for Fair Software Licensing has published research showing that US workers reckon Microsoft is using its productivity tools to lock their employers into the company's AI services.…
SAP user group slams 'uncertainty' in ERP giant's API policy
An influential SAP user group has criticized the vendor's API policy update, saying it lacks clarity and potentially prevents users from starting new projects and innovating on their SAP platforms.…
Microsoft boss tells investors the company is working to 'win back fans'
Microsoft boss Satya Nadella told investors during an earnings call last night that the company needs to "win back" its fans.…
Fewer users, fatter wallets is why Anthropic tops OpenAI in LLM revenue stakes
Anthropic is pulling in more LLM revenue than OpenAI, despite having a fraction of the users.…
Nearly half of UK businesses pwned last year as phishing keeps doing the job like it's 2005
Nearly half of UK businesses are still getting breached, and in many cases, the attacker's big breakthrough is an employee clicking "sure, why not" on a fake login page.…
What type of 'C2 on a sleep cycle' do they leave behind? Novel Chinese spy group found in critical networks in Poland, Asia
Exclusive A novel China-linked threat group infiltrated more than a dozen critical networks in Poland, Asian countries, and possibly beyond, beginning in December 2024 and with activity uncovered as recently as this month.…
Bug of the year (so far): Nasty cPanel vulnerability probably exploited as a 0-day
Emergency patches are available for a critical vulnerability in cPanel and WHM that allows attackers to bypass authentication and gain root access to servers managed using it.…
Met Police's Palantir deployment has its own officers watching their backs
London cops are being told by their staff association to be "extremely cautious" about carrying work devices off duty, after the Metropolitan Police Service (MPS) deployed Palantir's technology to investigate hundreds of its own officers.…
Britain's £6B armoured sickener Ajax cleared for duty despite injuring troops
Britain's notorious Ajax armored vehicles are being accepted back from the manufacturer after investigations found no single cause for the symptoms plaguing crews, meaning soldiers will need to grin and bear it.…

