Vue normale

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.
Aujourd’hui — 7 août 20264sysops

Cloudflare shares jump 17% after Q2 beat and raised 2026 guidance

Par : IT News
7 août 2026 à 12:08
Cloudflare shares jump 17% after Q2 beat and raised 2026 guidance
Cloudflare shares surged 17% after hours after the web security and connectivity provider beat second-quarter 2026 revenue and earnings estimates and raised its full-year outlook. Revenue increased 36% year over year to $696.1 million, sending the stock above its previous 52-week high.

Source

Google’s surprising AI downfall

Par : IT News
7 août 2026 à 12:08
Google’s surprising AI downfall
Google helped create many of the technologies behind modern artificial intelligence, yet the company appears to have struggled to turn that advantage into sustained product leadership. Matthew argues that Google’s dependence on Search, caution about disrupting its advertising business, and internal organizational friction contributed to a surprising decline in its AI position.

Source

CISA adds WinRAR CVE-2025-8088 to ransomware warning

Par : IT News
7 août 2026 à 11:59
CISA adds WinRAR CVE-2025-8088 to ransomware warning
CISA has confirmed that attackers are using the WinRAR vulnerability CVE-2025-8088 in ransomware attacks, months after adding the flaw to its actively exploited list. Organizations still running versions older than WinRAR 7.13 should treat archive handling as a potential ransomware entry point.

Source

GitHub’s sixth August incident sends Actions and Pages into a multi-hour outage

Par : IT News
7 août 2026 à 11:59
GitHub’s sixth August incident sends Actions and Pages into a multi-hour outage
GitHub Actions suffered a multi-hour outage on August 6, with failed workflows, REST API errors, rate limiting, and delayed webhooks. The disruption also spread to GitHub Pages, Copilot code review, the Copilot coding agent, hosted runners, and Enterprise Importer migrations—making it the platform’s sixth incident in the first six days of August.

Source

Agent Plugins 1.0 lets one AI extension run across ChatGPT, Copilot, and Cursor

Par : IT News
7 août 2026 à 11:59
Agent Plugins 1.0 lets one AI extension run across ChatGPT, Copilot, and Cursor
Amazon, Cursor, Microsoft, OpenAI, and Vercel have released Agent Plugins 1.0.0, an open standard for packaging AI-agent extensions once and deploying them across competing tools. The format combines reusable Agent Skills with optional MCP server configurations, targeting compatibility with ChatGPT, Codex, GitHub Copilot, VS Code, Cursor, and Amazon Kiro.

Source

Microsoft’s code-testing-generator checks whether AI-written unit tests actually work

Par : IT News
7 août 2026 à 11:59
Microsoft’s code-testing-generator checks whether AI-written unit tests actually work
Microsoft’s open-source code-testing-generator does more than create unit tests: it compiles and runs them, checks their assertions, and uses mutation-style checks to determine whether they can detect real code changes. The AI agent supports.NET, Python, Go, TypeScript, Java, and Rust through GitHub Copilot CLI and preview plugin support in Visual Studio Code.

Source

Patch Claude Code and Gemini CLI before GitHub issues reach CI secrets

Par : IT News
7 août 2026 à 11:59
Patch Claude Code and Gemini CLI before GitHub issues reach CI secrets
A malicious GitHub issue could reach CI workflow secrets and execute code through Anthropic’s Claude Code and Google’s Gemini CLI. Both vulnerabilities are patched, but OpenAI’s related Codex issue has no product update to install and requires workflow changes instead.

Source

Malware can turn Windows Hello keys into persistent Entra ID access

Par : IT News
7 août 2026 à 11:59
Malware can turn Windows Hello keys into persistent Entra ID access
Malware running inside a user’s signed-in Windows session can invoke Windows Hello for Business keys without stealing the PIN, extracting a TPM key, or triggering biometric approval. The resulting authentication may satisfy phishing-resistant MFA and let attackers register their own device, obtain long-lived Entra ID tokens, and add credentials where tenant policies permit.

Source

NatJack finds every tested NAT implementation vulnerable to attack

Par : IT News
7 août 2026 à 11:41
NatJack finds every tested NAT implementation vulnerable to attack
NatJack research presented at Black Hat USA 2026 found exploitable behavior in all 32 tested NAT products and configurations, spanning Windows, Linux, and macOS. The attack class can hijack active connections, poison DNS responses, or disable connectivity without requiring IP spoofing or Layer 2 access.

Source

TONTOU attack bypasses Spectre v2 fixes to leak Linux password hashes

Par : IT News
7 août 2026 à 11:41
TONTOU attack bypasses Spectre v2 fixes to leak Linux password hashes
A new TONTOU “interrupt injection” attack can re-poison branch predictors after Spectre v2 defenses run, allowing unprivileged code to extract sensitive data from Linux kernel memory. An AMD kernel fix is already available, but shared hosts remain at risk until administrators deploy it and review workload isolation.

Source

Swiss government rebuilds SharePoint servers after 200-account breach

Par : IT News
7 août 2026 à 11:41
Swiss government rebuilds SharePoint servers after 200-account breach
Switzerland’s federal IT office is reinstalling its on-premises Microsoft SharePoint servers after attackers compromised about 200 user and technical accounts. External access remains blocked while investigators determine which SharePoint vulnerability was exploited and whether anything beyond credentials was accessed.

Source

Broadcom brings air-gapped malware analysis and AI assistants to VMware Cloud Foundation

Par : IT News
7 août 2026 à 11:41
Broadcom brings air-gapped malware analysis and AI assistants to VMware Cloud Foundation
Broadcom is adding on-premises malware sandboxing, offline threat-intelligence updates, and AI-assisted operations to VMware Cloud Foundation. The VMware vDefend and Avi Load Balancer updates also introduce a guided security deployment workflow and native API protection for virtual machines, Kubernetes services, and AI workloads.

Source

Microsoft admits OneDrive Photos was force-installed on Windows 11 PCs

Par : IT News
7 août 2026 à 11:41
Microsoft admits OneDrive Photos was force-installed on Windows 11 PCs
After weeks of silence, Microsoft has acknowledged that OneDrive Photos was force-installed on Windows 11 PCs, including systems that were not enrolled in Windows Insider. The AI-powered app’s rollout also reached enterprise devices managed through Intune, despite being designed for personal Microsoft accounts.

Source

Claude Fable 5 cuts biology fallbacks by 85%

Par : IT News
7 août 2026 à 11:41
Claude Fable 5 cuts biology fallbacks by 85%
Anthropic says a rewritten Claude Fable 5 biology classifier has reduced false-positive fallbacks by about 85% across its products. Users should see fewer switches to Opus 5 for health, lab-result, symptom, educational, and routine clinical questions, while high-risk biology research remains restricted.

Source

How to prepare for August 2026 Patch Tuesday Apocalypse

Par : IT News
7 août 2026 à 11:41
How to prepare for August 2026 Patch Tuesday Apocalypse
Microsoft’s August 2026 Patch Tuesday is expected to remain large, but the more urgent development is how administrators should respond: stop treating every CVE as an emergency and prioritize exploited, Internet-facing, and business-critical exposures. The guidance follows July’s record-breaking release and a newly confirmed SharePoint exploit.

Source

❌
❌