Skip to content
View in the app

A better way to browse. Learn more.

hosang I.T.

A full-screen app on your home screen with push notifications, badges and more.

To install this app on iOS and iPadOS
  1. Tap the Share icon in Safari
  2. Scroll the menu and tap Add to Home Screen.
  3. Tap Add in the top-right corner.
To install this app on Android
  1. Tap the 3-dot menu (⋮) in the top-right corner of the browser.
  2. Tap Add to Home screen or Install app.
  3. Confirm by tapping Install.

Tech

Tech Articles from a wide variety of topics and categories
A vulnerability misclassified five months ago as a denial-of-service issue in F5 BIG-IP Access Policy Manager (APM) turned out to be a critical pre-authentication remote code execution flaw that is now under active exploitation. Hackers are using it to deploy a persistent malware program that runs with root privileges.
The CVE-2025-53521 vulnerability was first disclosed in October 2025 as a DoS issue with a CVSS severity score of 7.5. F5 updated the advisory Friday, reclassifying it as remote code execution and raising its score to CVSS 9.8 in light of “new information” it has received. The same day, CISA added the flaw to its Known Exploited Vulnerabilities (KEV) catalog and the Netherlands Cyber Security Centre reported seeing active exploitation.
BIG-IP APM is F5’s secure access solution that allows enterprises, service providers, and government agencies to control authentication, authorization, and VPN access across remote, mobile, and cloud environments. The Shadowserver Foundation currently tracks over 240,000 F5 BIG-IP instances on the internet, but it’s not clear how many run vulnerable versions.
“When F5 CVE-2025-53521 first emerged last year as a denial-of-service issue, it didn’t immediately signal urgency, and many system administrators likely prioritized it accordingly,” Benjamin Harris, CEO of offensive security firm watchTowr, told CSO. “Fast-forward to today’s big ‘yikes’ moment: The situation has changed significantly. What we’re observing now is pre-auth remote code execution and evidence of in-the-wild exploitation, with a CISA KEV listing to back it up. That’s a very different risk profile than what was initially communicated.”
Patching is only part of the equation and the immediate focus for security teams should be on determining whether the flaw has already been exploited in their environments, Harris noted.
The vulnerability affects BIG-IP APM versions 17.1.0 to 17.1.2, 17.5.0 to 17.5.1, 16.1.0 to 16.1.6, and 15.1.0 to 15.1.10. F5 released patches in versions 17.1.3, 17.5.1.3, 16.1.6.1, and 15.1.10.8. The company also published a knowledge base article with indicators of compromise, attacker TTPs, and hardening guidance against the observed malware.
How the attack works
BIG-IP APM is only affected when configured on a virtual server, which is a limiting factor for the attacks, but is not an unusual deployment. Successful exploitation grants attackers root-level access and full control of the underlying operating system.
The company tracks the deployed malware program as “c05d5254” and notes that it creates files at /run/bigtlog.pipe and /run/bigstart.ltm and makes changes to system binaries, including /usr/bin/umount and /usr/sbin/httpd. Attackers have also been observed modifying the sys-eicheck utility, which relies on RPM integrity checks to verify on-disk executables.
Log analysis can reveal patterns related to the attack. The user “f5hubblelcdadmin” accessing the iControl REST API from localhost, SELinux disable commands in auditd logs and Base64-encoded data written to files followed by execution of `/run/bigstart.ltm` all indicate successful intrusion. F5 also observed threat actors using HTTP 201 response codes with CSS content-type headers to disguise malicious traffic.
Mitigation
Organizations that applied the October 2025 updates are already protected, as the original patches also address the RCE vector, but systems running vulnerable versions require immediate patching and compromise assessment.
Organizations should not assume their systems are clean based solely on patching because UCS backup files from compromised systems can contain copies of the malware. F5 recommends rebuilding configurations from scratch rather than restoring from backup if the compromise timeframe is uncertain.
The sys-eicheck utility can identify integrity failures in /usr/bin/umount and /usr/sbin/httpd, though attackers have targeted the components this tool relies on.
View the full article
Just ahead of the launch of the AirPods Max 2, Apple has released new firmware for the headphones. The updated firmware is version number 8E251.


The ‌AirPods Max 2‌ include the H2 chip, an upgrade over the H1. The H2 brings several new features like Live Translation, Adaptive Audio, Loud Sound Reduction, Voice Isolation, and more. The new firmware likely optimizes some of these new features.

Customers who buy the ‌AirPods Max 2‌ can follow Apple's steps to get the new firmware.

To get the new firmware, make sure your AirPods are in range of your iPhone, iPad, or Mac and are connected via Bluetooth. From there, connect the Apple device to Wi-Fi, then connect the AirPods Max to power with a USB-C cable. Keep the AirPods Max in Bluetooth range of the Apple device, and wait at least 30 minutes for the firmware to update.

From there, reconnect the AirPods to the Apple device, and check the firmware version to see if it's updated. Apple says if the firmware doesn't install, to restart the AirPods Max and try again.Related Roundup: AirPods Max 2Buyer's Guide: AirPods Max (Buy Now)Related Forum: AirPods
This article, "Apple Releases New Firmware for AirPods Max 2" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Google on Monday said it's officially rolling out Android developer verification to all developers to combat the problem of bad actors distributing harmful apps while "hiding behind anonymity." The development comes ahead of a planned verification mandate that goes into effect in Brazil, Indonesia, Singapore, and Thailand this September, before it expands globally next year. As part of thisView the full article
Back in October, we showed how Docker Model Runner on the NVIDIA DGX Spark makes it remarkably easy to run large AI models locally with the same familiar Docker experience developers already trust. That post struck a chord: hundreds of developers discovered that a compact desktop system paired with Docker Model Runner could replace complex GPU setups and cloud API calls.
Recently at NVIDIA GTC 2026, NVIDIA is raising the bar with NVIDIA DGX Station and we’re excited to add support for it in Docker Model Runner!  The new DGX Station brings serious performance, and Model Runner helps make it practical to use day to day. With Model Runner, you can run and iterate on larger models on a DGX Station, using the same intuitive Docker experience you already know and trust.
From NVIDIA DGX Spark to DGX Station: What has changed and why does this matter?
NVIDIA DGX Spark, powered by the GB10 Grace Blackwell Superchip, gave developers 128GB of unified memory and petaflop-class AI performance in a compact form factor. A fantastic entry point for running models.
NVIDIA DGX Station is a different beast entirely. Built around the NVIDIA GB300 Grace Blackwell Ultra Desktop Superchip, it connects a 72-core NVIDIA Grace CPU and NVIDIA Blackwell Ultra GPU through NVIDIA NVLink-C2C, creating a unified, high-bandwidth architecture built for frontier AI workloads. It brings data-center-class performance to a deskside form factor. Here are the headline specs:

DGX Spark (GB10)
DGX Station (GB300)
GPU Memory
128 GB unified
252 GB
GPU Memory Bandwidth
273 GB/s
7.1 TB/s
Total Coherent Memory
128 GB
748 GB
Networking
200 Gb/s
800 Gb/s
GPU Architecture
Blackwell (5th-gen Tensor Cores, FP4)
Blackwell Ultra (5th-gen Tensor Cores, FP4)
With 252GB of GPU memory at 7.1 TB/s of bandwidth and a total of 748GB of coherent memory, the DGX Station doesn’t just let you run frontier models,  it lets you run trillion-parameter models, fine-tune massive architectures, and serve multiple models simultaneously, all from your desk.
Here’s what 748GB of coherent memory and 7.1 TB/s of bandwidth unlock in practice:
Run the largest open models without quantization. DGX Station can run the largest open 1T parameter models with quantization. Serve a team, not just yourself. NVIDIA Multi-Instance GPU (MIG) technology lets you partition NVIDIA Blackwell Ultra GPUs into up to seven isolated instances. Combined with Docker Model Runner’s containerized architecture, a single DGX Station can serve as a shared AI development node for an entire team — each member getting their own sandboxed model endpoint. Faster iteration on agentic workflows. Agentic AI pipelines often require multiple models running concurrently — a reasoning model, a code generation model, a vision model. With 7.1 TB/s of memory bandwidth, switching between and serving these models is dramatically faster than anything a desktop system has offered before. Bottom line: The DGX Spark made that fast. The DGX Station makes it transformative. And raw hardware is only half the story. With Docker Model Runner, the setup stays effortless and the developer experience stays smooth, no matter how powerful the machine underneath becomes.
Getting Started: It’s the Same Docker Experience
For the full step-by-step walkthrough check out our guide for DGX Spark. Every instruction applies to the DGX Station as well.
NVIDIA’s new DGX Station puts data-center-class AI on your desk with 252GB of GPU memory, 7.1 TB/s bandwidth, and 748GB of total coherent memory. Docker Model Runner makes all of that power accessible with the same familiar commands developers already use on the DGX Spark. Pull a trillion-parameter model, serve a whole team, and iterate on agentic workflows. No cloud required, no new tools to learn.
How You Can Get Involved
The strength of Docker Model Runner lies in its community, and there’s always room to grow. To get involved:
Star the repository: Show your support by starring the Docker Model Runner repo. Contribute your ideas: Create an issue or submit a pull request. We’re excited to see what ideas you have! Spread the word: Tell your friends and colleagues who might be interested in running AI models with Docker. Learn More
Read our original post on Docker Model Runner + DGX Spark  Check out the Docker Model Runner General Availability announcement Visit our Model Runner GitHub repo Get started with a simple hello GenAI application View the full article
Apple's first-generation AirTag 4-Pack has dropped to $59.99 this week on Amazon, down from the original price of $99.00.

Note: MacRumors is an affiliate partner with Amazon. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

Overall, this is an all-time low price on the AirTag 4-pack. This model has been fluctuating in and out of stock on Amazon for the past few days, so be sure to grab it soon if you're interested.

$39 OFFAirTag 4-Pack for $59.99

Apple recently debuted the all-new AirTag, featuring longer range for tracking items and a louder speaker. We haven't tracked any notable discounts on the new second generation models as of yet, so anyone who wants to save money should keep looking into the original models.

If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.


Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "AirTag 1 Hits All-Time Low Price on Amazon With 4-Pack at $59.99" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple today added the MacBook Air (13-inch, 2017) to its "vintage" products list, meaning the device is now only eligible for repairs at Apple Stores and Apple Authorized Service Providers if parts remain available.


The MacBook Air (13-inch, 2017) was the final MacBook Air model released before Apple redesigned the laptop and gave it a Retina display in 2018.

Apple also added all iPad mini 4 and Apple TV (32GB) configurations to its "obsolete" products list, meaning those devices are no longer eligible for service whatsoever.

iPad mini 4 launched in 2015, and it was discontinued in 2019.

Apple TV HD was first released in 2015 and discontinued in October 2022, when the third-generation Apple TV 4K launched. However, only Apple TV HD units with 32GB of storage are considered obsolete for now.

A "vintage" device was last distributed by Apple for sale more than five years ago, while for "obsolete" that timeframe rises to seven years.Related Roundups: Apple TV, iPad mini, MacBook AirTag: Vintage and Obsolete Apple ProductsBuyer's Guide: Apple TV (Don't Buy), iPad Mini (Caution), MacBook Air (Buy Now)Related Forums: Apple TV and Home Theater, iPad, MacBook Air
This article, "Apple Says Three More Products Are Now 'Vintage' or 'Obsolete'" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
The updated version of Siri that Apple plans to release in iOS 27 may be able to handle multiple commands in a single query, reports Bloomberg. With the feature, users would be able to make multi-step requests that ‌Siri‌ would carry out, such as getting directions to a location and then sending those directions to someone in a message.


‌Siri‌ has long been limited to a single command for most requests, and the personal assistant is not able to parse queries with multiple components. ‌Siri‌ can answer follow-up questions without being activated via wake word, but the requests still need to be separate.

The ability to handle multiple requests will be part of the Apple Intelligence update that Apple has been working on since June 2024. ‌Siri‌ will have more personal context than before, will understand what's on the user's screen, and will be able to do more in and between apps. ‌Siri‌ will be able to access the web to summarize information, a feature that Apple could call World Knowledge Answers, and it may gain image generation capabilities with Image Playground integration.

Apple is also testing an updated version of the keyboard that would integrate AI. The keyboard could suggest grammar fixes and alternative words in addition to fixing typos, but Apple hasn't decided on whether to include it in ‌iOS 27‌.

Apple plans to turn ‌Siri‌ into a chatbot that can compete with Claude, ChatGPT, and Gemini. Chatbots have no problem parsing natural language requests with multiple variables and actions that need to be completed. Apple is designing a standalone ‌Siri‌ app for chatbot interactions, but the personal assistant will be deeply integrated into iOS, iPadOS, and macOS.

The updated version of ‌Siri‌ will be part of ‌iOS 27‌, iPadOS 27, and macOS 27, software updates that Apple plans to preview at WWDC. WWDC 2026 begins on June 8 with a keynote event.

There's no word on whether the ‌Siri‌ features will be immediately available when Apple provides the first beta of ‌iOS 27‌ to developers, or if it will take some time for the updates to roll out. Apple is planning to introduce the smarter version of ‌Siri‌ by September, but that doesn't mean that some features can't be held until an ‌iOS 27‌ update next spring. As with some of the initial ‌Apple Intelligence‌ features, the new ‌Siri‌ capabilities will likely have a "Preview" label, indicating they are not finished.Related Roundup: iOS 27Tag: Siri
This article, "iOS 27 Siri Update Will Let Users Make Multiple Requests at Once" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Agents have crossed a threshold.
Over a quarter of all production code is now AI-authored, and developers who use agents are merging roughly 60% more pull requests. But these gains only come when you let agents run autonomously. And to unlock that, you have to get out of the way.That means letting agents run without stopping to ask permission at every step, often called YOLO mode.
Doing that on your own machine is risky. An autonomous agent can access files or directories you did not intend for it to touch, read sensitive data, execute destructive commands, or make broad changes while trying to help.
So yes, guardrails matter, but only when they’re enforced outside the agent, not by it.  Agents need a true bounding box: constraints defined before execution and clear limits on what it can access and execute. Inside that box, the agent should be able to move fast.
That’s exactly what Docker Sandboxes provide.
They let you run agents in fully autonomous mode with a boundary you define. And Docker Sandboxes are standalone; you don’t need Docker Desktop. That dramatically expands who can use them. For the newest class of builder, whether you’re just getting started with agents or building advanced workflows, you can run them safely from day one.
Docker Sandboxes work out of the box with today’s coding agents like Claude Code, Github Copilot CLI, OpenCode, Gemini CLI, Codex, Docker Agent, and Kiro. They also make it practical to run next-generation autonomous systems like NanoClaw and OpenClaw locally, without needing dedicated hardware like a Mac mini.
Here’s what Docker Sandboxes unlock.
You Actually Get the Productivity Agents Promise
The difference between a cautious agent and a fully autonomous one isn’t just speed. The interaction model changes entirely. In a constrained setup, you become the bottleneck: approving actions instead of deciding what to build next. In a sandbox, you give direction, step away, and come back to a cloned repo, passing tests, and an open pull request. No interruptions. That’s what a real boundary makes possible.

You Stop Worrying About Damage
Running an agent directly on your machine exposes everything it can reach. Mistakes are not hypothetical. Commands like rm -rf, accidental exposure of environment variables, or unintended edits to directories like .ssh can all happen.
Docker Sandboxes offer the strongest isolation environments for autonomous agents. Under the hood, each sandbox runs in its own lightweight microVM, built for strong isolation without sacrificing speed. There is no shared state, no unintended access, and no bleed-through between environments. Environments spin up in seconds (now, even on Windows), run the task, and disappear just as quickly. 
Other approaches introduce tradeoffs. Mounting the Docker socket exposes the host daemon. Docker-in-Docker relies on privileged access. Running directly on the host provides almost no isolation. A microVM-based approach avoids these issues by design. 

Run Any Agent
Docker Sandboxes are fully standalone and work with the tools developers already use, including Claude Code, Codex, GitHub Copilot, Docker Agent, Gemini, and Kiro. They also support emerging autonomous systems like OpenClaw and NanoClaw. There is no new workflow to adopt. Agents continue to open ports, access secrets, and execute multi-step tasks. The only difference is the environment they run in. Each sandbox can be inspected and interacted with through a terminal interface, so you always have visibility into what the agent is doing.

What Teams Are Saying
“Every team is about to have their own team of AI agents doing real work for them. The question is whether it can happen safely. Sandboxes is what that looks like at the infrastructure level.”
— Gavriel Cohen, Creator of NanoClaw

“Docker Sandboxes let agents have the autonomy to do long-running tasks without compromising safety.”
— Ben Navetta, Engineering Lead, Warp
Start in Seconds
For macOS: brew install docker/tap/sbx
For Windows: winget install Docker.sbx
Read the docs to learn more, or get in touch if you’re deploying for a team. If you’re already using Docker Desktop, the new Sandboxes experience is coming there soon. Stay tuned.
What’s Next
You already trust Docker to build, ship, and run your software. Sandboxes extend that trust to agents, giving them room to operate without giving them access to everything.
Autonomous agents are becoming more capable. The limiting factor is no longer what they can do, but whether you can safely let them do it.
Sandboxes make that possible.
View the full article
A high-severity security flaw in the TrueConf client video conferencing software has been exploited in the wild as a zero-day as part of a campaign targeting government entities in Southeast Asia dubbed TrueChaos. The vulnerability in question is CVE-2026-3502 (CVSS score: 7.8), a lack of integrity check when fetching application update code, allowing an attacker to distribute a tampered update,View the full article
In a Telegram post today, Iran's Islamic Revolutionary Guard Corps warned that Apple is among a list of major American companies that the country may target amid its ongoing conflict with the United States and Israel, according to CBS News.


The report said the Telegram post listed 18 companies that Iran's Islamic Revolutionary Guard Corps views as "legitimate targets," including Apple, Microsoft, Google, Meta, IBM, Cisco, Tesla, Boeing, Nvidia, J.P Morgan, and others.

The post accused the companies of acting as "spies" for the U.S. government, the report said.
This article, "Iran Reportedly Warns Apple is Among Potential Targets" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple updated the Studio Display earlier this month, four years after the original launched. Here's how it compares to the original model.


The new model keeps the same $1,599 starting price, 27-inch 5K panel, and overall design, but brings a handful of small internal improvements: a newer chip, upgraded Thunderbolt connectivity, Desk View camera support, and improved bass. The display itself, a 60Hz LCD panel with 600 nits of brightness, is unchanged.

Our guide helps you to understand the differences between the two models, and answer the question of which of these two Studio Displays is best for you and whether it's worth upgrading. Here is everything that differs between the 2022 and 2026 Studio Display:







‌Studio Display‌ (2022)
‌Studio Display‌ (2026)


A13 Bionic chip
A19 chip


4GB RAM
8GB RAM


64GB internal storage
128GB internal storage


One Thunderbolt 3 port (upstream, 96W host charging)
Two Thunderbolt 5 ports (one upstream with 96W host charging, one downstream for accessories or daisy-chaining)


Three USB-C ports
Two USB-C ports


12MP Center Stage camera
12MP Center Stage camera with Desk View support


Six-speaker sound system
Six-speaker sound system with 30% deeper bass


Standard Thunderbolt cable included
Thunderbolt 5 Pro cable (1m) included


Compatible with Intel and Apple silicon Macs
Requires Apple silicon Mac (2020 or later)




For existing 2022 ‌Studio Display‌ owners, there is no general-purpose reason to upgrade. The panel is identical, the pass-through charging is the same 96W, and the practical day-to-day experience in front of both screens is the same. The Thunderbolt 5 ports are the only change that meaningfully affect how the display is used, and only if you need high-bandwidth peripherals or daisy-chaining. For everyone else, the update is not worth the cost of replacement.


Studio Display vs. Studio Display XDR Buyer's Guide


For new buyers, the picture is a little more nuanced. At the same $1,599 starting price, the 2026 model is the obvious choice; it is simply the better-specified display for the same money and may last longer.

However, the 2022 ‌Studio Display‌ has been discontinued and stock is available at a discount from third-party retailers. Given how little changed between the two generations, the older model at a sufficiently lower price is a good purchase for most buyers, particularly if you have no need for Thunderbolt 5 or Desk View. The display panel itself is identical.

The compatibility constraint is also worth bearing in mind: The 2026 model requires an Apple silicon Mac, while the 2022 model works with Intel machines too. Apple stopped selling Intel Macs in 2023, so this will only affect a narrowing group, but it is a hard limitation if it applies to you.Related Roundup: Studio DisplayBuyer's Guide: Displays (Buy Now)Related Forum: Mac Accessories
This article, "Studio Display 2022 vs. Studio Display 2026 Buyer's Guide" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Google today announced that you can finally change the Google Account email address that you use for Gmail, Google Calendar, Google Photos, Google Drive, and more, but this ability is only rolling out to U.S. accounts for now. The company did not indicate if or when this functionality will be available in other countries.


You can switch to any available @gmail.com address, and your previous address will become an alias, ensuring that you retain ownership of your original email address. You can still sign in and send and receive emails with both addresses.

You can change your Google Account's email address once per year, up to three times total, and Google says all emails and other account data and history are preserved. If you change your mind, you can revert to your old email address.

This new ability will be especially useful for longtime Gmail users who may have chosen a casual email address when they were younger. For example, maybe 13-year-old you signed up for [email protected], but as an adult you would prefer to have a more professional [email protected] address.

It was already possible to set up other email addresses as aliases in Gmail, but now you can change your account's main email address entirely.

Google provides more details in a support document.Tags: Gmail, Google
This article, "Don't Like Your Gmail Email Address? You Can Finally Change It" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple just launched the new line of Studio Displays this month, and Amazon already has a few $100 discounts on select models during its Big Spring Sale. You can get the Standard Glass Studio Display with Tilt-Adjustable Stand for $1,499.00, down from $1,599.00, an all-time low price.

Note: MacRumors is an affiliate partner with Amazon. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

Additionally, we're tracking $100 discounts on a few other 2026 Studio Display models on Amazon this week, including Nano-Texture, VESA Mount, and Tilt- and Height-Adjustable Stand options. Some models are seeing delivery dates slip into late April, but otherwise you'll find April 6 dates for free delivery options.

$100 OFFApple Studio Display (Standard/Tilt) for $1,499.00
$100 OFFApple Studio Display (Standard/VESA) for $1,499.00
$100 OFFApple Studio Display (Nano-Texture/VESA) for $1,799.00
$100 OFFApple Studio Display (Standard/Tilt and Height) for $1,899.00

Additionally, Amazon has the Studio Display XDR (Standard Glass with VESA Mount) on sale at $100 off this week. You can get this model for $3,199.00, down from $3,299.00, another new record low price.

$100 OFFApple Studio Display XDR (Standard/VESA) for $3,199.00

If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.



Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "New Apple Studio Display Gets $100 Discounts During Amazon's Big Spring Sale" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple today released a teaser trailer for Cape Fear, a new "highly anticipated" psychological thriller series starring Amy Adams, Patrick Wilson, and Javier Bardem. The first two episodes of the 10-episode limited series will premiere on Apple TV on Friday, June 5, and one new episode will follow every Friday through July 31.


In the series, Apple says a storm is coming for happily married attorneys Anna (Adams) and Tom Bowden (Wilson) when the notorious killer Max Cady (Bardem) they are responsible for putting behind bars is let out of prison and wants vengeance.

There is a 70-year history behind this series. The upcoming Apple TV show was inspired by the 1991 film Cape Fear, directed by Martin Scorsese and produced by Steven Spielberg. That film was itself a remake of the 1962 film of the same name, which was based on the 1957 novel The Executioners by John D. MacDonald.


This latest remake was created by Nick Antosca, who serves as showrunner. Scorsese and Spielberg serve as executive producers alongside Antosca.

In the U.S., Apple TV is priced at $12.99 per month or $129 per year, with a free one-week trial available for new subscribers. Apple TV is also included in Apple One and Peacock bundles, with all of the options outlined on Apple's website.

You can stream Apple TV in the Apple TV app, which is available on the iPhone, iPad, Mac, Apple TV 4K, Apple Vision Pro, Android, PlayStation, Xbox, Roku, Amazon Fire TV, select smart TVs, on the web at tv.apple.com, and more.Related Roundup: Apple TVTags: Apple TV Service, Apple TV ShowsBuyer's Guide: Apple TV (Don't Buy)Related Forum: Apple TV and Home Theater
This article, "Apple TV Teases New 'Highly Anticipated' Psychological Thriller Series" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple continues to develop a new feature for its Shortcuts app that will let users generate unique actions using Apple Intelligence models, based on backend code discovered by Nicolás Alvarez and confirmed by MacRumors.


For those unfamiliar with the Shortcuts app, the tool lets users create custom workflows or actions – called shortcuts – to perform tasks automatically or with minimal interaction. Actions can include anything from sending messages to controlling smart home devices. The app emerged out of Apple's 2017 acquisition of Workflow, which was rebranded as Shortcuts the following year.

As part of iOS 26, Apple added Apple Intelligence support to the Shortcuts app, allowing AI models to be incorporated into shortcuts. In contrast, the new version that Apple is working on will let users create actions using Apple Intelligence models – by issuing voice commands in natural language, for example.

Last June, Bloomberg's Mark Gurman reported that Apple was working on the AI-driven feature for release in 2025, but he said that delays could see it launch in 2026. For iOS 27, Apple is expected to include a revamped Siri that functions like a genuine conversational chatbot and can interact with apps, so it's likely that the shortcuts generator will be part of its skill set.Related Roundup: iOS 27Tag: Shortcuts
This article, "iOS 27 Shortcuts App May Write Custom Actions for You Using AI" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Cybersecurity researchers have disclosed a security "blind spot" in Google Cloud's Vertex AI platform that could allow artificial intelligence (AI) agents to be weaponized by an attacker to gain unauthorized access to sensitive data and compromise an organization's cloud environment. According to Palo Alto Networks Unit 42, the issue relates to how the Vertex AI permission model can be misusedView the full article
The $549 AirPods Max 2 are set to launch tomorrow, and ahead of the debut of the new over-ear headphones, Apple sent a pair for MacRumors videographer Dan Barbera to check out.

Subscribe to the MacRumors YouTube channel for more videos.
With the new H2 chip in the AirPods Max, Apple says Active Noise Cancellation is 1.5x better than the ANC in the prior-generation model, and ANC is indeed clearly improved. More exterior noise is eliminated than before, plus audio quality has changed. There's a new digital signal processing algorithm and a high dynamic range amplifier, and when comparing the AirPods Max USB-C to the ‌AirPods Max 2‌, you can hear the difference.

There's more separation between highs, mids, and lows, and there's more bass than before, but it doesn't feel overdone. Audiophiles who pay attention to how music is mixed will appreciate the quality boost in the ‌AirPods Max 2‌. You're getting sound similar to the AirPods Pro 3, but with the over-ear form factor, which provides a wider soundstage and richer audio.

Individual instruments are easier to pick out with spatial audio, and spatial audio feels more immersive. The ‌AirPods Max 2‌ are some of the best over-ear headphones you can get right now.

You'll get the clearest sound over USB-C, since the ‌AirPods Max 2‌ support 24-bit 48kHz lossless audio. The USB-C AirPods Max had lossless audio support too, but the updated sound adds more depth. When you're using a wireless connection, there is a small difference between the ‌AirPods Max 2‌ and the prior version, since the ‌AirPods Max 2‌ are using Bluetooth 5.3.

Unfortunately, Apple didn't update the AirPods Max form factor at all, and that's a major downside. These are still some of the heaviest headphones on the market at 385 grams, and Apple hasn't addressed any design complaints. There's been no change in weight, the headband is the same, and even the minimal case that no one likes is still around. Battery life hasn't changed at 20 hours of listening time, there continues to be no power button to turn the AirPods Max off, and there aren't even any new colors.

The H2 chip brings several features that the AirPods Max should have gotten some time ago, so Apple is just bringing the headphones on par with the ‌AirPods Pro 3‌ and the AirPods 4. Adaptive Audio blends ANC and Transparency to adjust sound on the fly based on where you are, and Conversation Awareness pauses audio if you start to speak to someone.

Real-time Live Translation is available on the ‌AirPods Max 2‌, and there are other nice-to-have features like Personalized Volume for customizing volume based on listening habits and Loud Sound Reduction to cut down on exterior noise.

Phone calls sound better with Voice Isolation and improved microphones, and you can activate Siri without the need to say "Hey." ‌Siri‌ also supports interactions, so you can do things like nod to accept a call or shake your head to decline. Like the ‌AirPods Pro 3‌, the ‌AirPods Max 2‌ can be used as a camera shutter for the iPhone or iPad.

The ‌AirPods Max 2‌ sound fantastic and are great at cutting down on noise, but it is a somewhat disappointing update because Apple didn't refine the design of the headphones. If you have the original AirPods Max from 2020, not much has changed except for the sound profile. Whether it's worth $549 to upgrade to the ‌AirPods Max 2‌ will depend on the person. Sound quality is up, but no new design makes the headphones feel dated.

If you're new to the AirPods and want the best sound you can get via Apple-designed headphones, you won't go wrong with the ‌AirPods Max 2‌ as long as you don't mind the weight or the case.

The ‌AirPods Max 2‌ will be available starting tomorrow.Related Roundup: AirPods Max 2Buyer's Guide: AirPods Max (Buy Now)Related Forum: AirPods
This article, "AirPods Max 2 Review: Better Sound and ANC, Same Design Frustrations" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
RSA 2026 covered no shortage of ground. From identity and platform consolidation to exposure management, detection, and the expanding role of AI across security operations, there was a lot competing for attention. But beneath the broader conference conversation, one theme felt especially relevant from an operational standpoint: how security teams are rethinking the Security Operations Center itself.

That shift stood out. The discussion was less about AI in the abstract and more about how modern SOCs reduce noise, improve triage, accelerate response, and maintain human oversight. For organizations evaluating SOC options in 2026, that is where the conversation becomes practical.
View the full article
Apple's 20th anniversary iPhone will feature a radical new curved design with slimmer bezels, according to a new report.


The X user "@phonefuturist" shared the claims across two posts yesterday and today. The first suggested that the device, referred to as the "anniversary" iPhone, will feature a 1.1mm bezel around the display, along with a seamlessly curved design. The post included a mock-up image showing convex display glass curving down at the edges to meet a slim, iPhone X-like polished frame. The iPhone 17 Pro has a bezel size of approximately 1.44mm.

In a follow-up post today, the same account today referred to the device as the iPhone "XX" for iPhone 20 and claimed Apple has been evaluating Samsung's under-panel camera (UPC) technology as an alternative to the under-display camera (UDC) approach more commonly discussed in rumors, but found the image quality insufficient. As a result, the post claims the iPhone 20 may ship with either a smaller Dynamic Island than the current ‌iPhone 17 Pro‌ or a punch-hole cutout, paired with Samsung's "Polar ID" face authentication system.

The claims should be taken with a considerable pinch of salt given the source's unknown credibility. That said, the information is being widely circulated on social media, and parts of it broadly align with the direction more established leakers and analysts have been pointing toward for the 20th anniversary iPhone.



Apple is reportedly still targeting an all-screen design for the iPhone 20, though as recently as January, reports suggested the all-screen ambition may be in doubt due to the technical difficulty of hiding a front-facing camera beneath the display without degrading photo quality.

The under-display camera problem is well documented. Current UDC implementations, including those used by some Android manufacturers, have struggled to match the image quality of conventionally positioned sensors. With UPC, the camera sits behind the panel but uses a perforated pixel structure rather than a fully transparent region. This means it can theoretically reduce the visual footprint of a cutout, though it has its own quality trade-offs.

If Apple cannot resolve the camera quality issue before the device launches, a smaller ‌Dynamic Island‌ or a conventional punch-hole may represent the fallback position. The iPhone 18 Pro is already expected to be the first iPhone with a smaller Dynamic Island, so the iPhone 20 could take that reduction further still. Apple's 20th anniversary iPhone is expected to arrive in the fall of 2027. Tag: 20th-Anniversary iPhone
This article, "iPhone 20 Rumored to Feature Radical Curved Design" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
OpenAI has fixed two flaws in its AI stack that could allow AI agents to move sensitive data in unintended ways.
The issues, disclosed by researchers at BeyondTrust and Check Point Research, affect the OpenAI Codex coding agent and ChatGPT’s code execution environment, respectively. One enabled GitHub token theft through command injection, while the other exposed a hidden channel for silently leaking user data.
Both bugs have now been patched, but researchers warn that giving AI tools autonomy to execute code and interact with external systems creates a long-term risk, allowing attackers to carry out malicious actions without ever breaking the model itself.
Codex command injection turns branch names into backdoors
Researchers at BeyondTrust found that Codex, OpenAI’s coding agent that executes tasks in cloud containers, was vulnerable to a command injection bug concerning the GitHub branch name parameter.
When Codex attempts a task, it clones a repository and authenticates using a short-lived GitHub token. The issue stemmed from how it handled user-controlled input during this setup phase. Specifically, the branch name parameter was not properly sanitized, allowing attackers to inject arbitrary shell commands into the environments.
A maliciously crafted branch name could execute code inside the container, exposing the very token Codex used to access the repository. Researchers demonstrated that the token could then be exfiltrated via task output or external network requests.
This effectively turns a routine developer workflow into a potential credential theft vector. GitHub tokens often grant broad access to private repositories, making them highly valuable in supply chain attacks.
According to a BeyondTrust blog post, the issue was disclosed to OpenAI, which acted quickly to address it by tightening input validation around the vulnerable parameter and hardening how commands are constructed in the execution environment. The fix was rolled out before public disclosure, with no evidence of active exploitation reported, the post added.
Input validation failures seem to have gone up with AI workflows, leading to classic command injection vulnerabilities.
ChatGPT’s hidden outbound channel leaks user data
OpenAI has reportedly fixed a parallel bug in ChatGPT that goes beyond credential theft. Check Point researchers uncovered a hidden outbound communication path in ChatGPT’s code execution runtime that could be triggered with a single malicious prompt.
This channel successfully bypassed the platform’s expected safeguards around external data sharing. Instead of requiring explicit user approval, the runtime could transmit data, such as chat messages, uploaded files, or generated outputs, to an external server without any visible alerts.
CheckPoint researchers demonstrated crafting a prompt that leverages this behavior, allowing the runtime to package and transmit private chat data to an external server. Basically, a normal-looking conversation could be turned into a covert data exfiltration pipeline.
The same mechanism could also be abused by a backdoored or malicious custom GPT, allowing it to siphon off sensitive information without user awareness, the researchers said, adding that the channel could potentially be used to establish remote shell access within the execution environment.
While no active exploitation has been reported, the researchers note significant implications. OpenAI fixed the issue around the same time as the Codex flaw patching by tightening controls around outbound communication in the code execution environment.
OpenAI did not immediately respond to CSO’s request for comments on either of the flaws.
View the full article
Amazon today announced that it is bringing more high-speed Wi-Fi to Delta Air Lines customers via its Amazon Leo technology, which is powered by a constellation of thousands of satellites in low Earth orbit – roughly 370 miles above the planet's surface.


Under the multi-year agreement, Delta will begin rolling out Amazon Leo in 2028 with an initial installation on 500 aircraft, "providing customers with high-speed, low-latency Wi-Fi from gate-to-gate."

Each Delta aircraft will be equipped with a single purpose-built phased array antenna that supports download speeds up to 1 Gbps and upload speeds up to 400 Mbps.
Like Delta's existing commitment to passengers, Leo-powered in-flight Wi-Fi will be free for all Delta SkyMiles members.Tag: Delta Airlines
This article, "Amazon Leo Satellite Internet Coming to Delta Flights in 2028" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
The following is the list of F5 Distributed Cloud Services technical knowledge updates:
Data Residency and Processing
Updated the Bot Defense section of the Data Residency and Processing Reference to add Sydney and São Paulo to the list of Persistent storage locations,remove "North Virginia/Oregon" from the LATAM list, and change all references of "Bot Defense Basic" to "Bot Defense Standard".
View the full article
Chinese-speaking users are the target of an active campaign that uses typosquatted domains impersonating trusted software brands to deliver a previously undocumented remote access trojan named AtlasCross RAT. "The operation covers VPN clients, encrypted messengers, video conferencing tools, cryptocurrency trackers, and e-commerce applications, with eleven confirmed delivery domains impersonatingView the full article
As part of its interoperability compliance in the EU, Apple has been working on changes to iOS that allow AirPods-like pairing and notification forwarding for third-party wearables on iPhone. In the iOS 26.5 beta released on Monday, Apple added Live Activities forwarding, and the company has now revised its Developer Program License Agreement with new rules on how the forwarding features should be accessed.


In a new section titled "3.3.3 (J), Accessory Notifications Framework and Accessory Live Activities Framework," Apple says that third parties "may not use Forwarding Information for advertising, profiling, training models, or monitoring location." It also states that they "may not disseminate the Forwarding Information to any other Application, or any other device besides Your Authorized Target Accessory."

The new section goes on to state that developers can't store forwarded notification data on servers, in the cloud, or on any remote device, and the data can only be decrypted on the accessory itself, not on a server or anywhere else along the way.

Besides formatting adjustments, the forwarded information can't be altered in any way that changes its meaning, while the accessory that receives the notification can't share that data or its encryption keys with any other device, including the user's own iPhone. In other words, the data must be locked to the device it was sent to.

Even if a developer's app doesn't use these frameworks at all, Apple says it reserves the right to forward that app's notifications to a third-party accessory if the user enables it.

Last September, Apple complained that its obligations under the EU's Digital Markets Act (DMA) would cause feature rollout delays in the bloc, but it also warned of new privacy and security threats. Apple based these threats on companies' submitted requests, which included the complete content of a user's notifications, as well as the full history of Wi-Fi networks a user has joined.

Apple said it had explained the risks of such requests to the European Commission, but the concerns had not been accepted as valid reasons to turn them down. The new developer rules appear to be Apple's best effort to mitigate the risks regardless.

Taken together, they make it clear that Apple wants no tracking, no profiling, no cloud copies, and no sharing between devices, with developers bearing full responsibility for their app's compliance with the new rules. Tag: European Union
This article, "Apple Sets Privacy Rules for Third-Party Access to Live Activities and Notifications" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
The cybersecurity landscape is accelerating at an unprecedented rate. What is emerging is not simply a rise in the number of vulnerabilities or tools, but a dramatic increase in speed. Speed of attack, speed of exploitation, and speed of change across modern environments. This is the defining challenge of the new era of digital warfare: the weaponization of Artificial Intelligence. Threat actorsView the full article
Ollama, the popular app for running AI models locally on a computer, has released an update that takes advantage of Apple's own machine learning framework, MLX. The result is a hefty speed boost on Macs with Apple silicon.


According to Ollama, the new version processes prompts around 1.6 times faster (prefill speed) and nearly doubles the speed at which it generates responses (decode speed). Macs with M5-series chips are said to see the largest improvements, thanks to Apple's new GPU Neural Accelerators.

The update also includes smarter memory management, which should make AI-powered coding tools and chat assistants feel noticeably more responsive during extended use.

Ollama says the new performance boost should especially benefit macOS users who run personal assistants like OpenClaw or coding agents like Claude Code, OpenCode, or Codex.

The preview release is available to download as Ollama 0.19 – just make sure you have a Mac with more than 32GB of unified memory to run it. Support is currently limited to Alibaba's Qwen3.5, but Ollama says support for more AI models is planned.
This article, "Ollama Now Runs Faster on Macs Thanks to Apple's MLX Framework" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
As every CISO knows, maintaining a strong cybersecurity posture is costly. What’s not so well known is that there are many ways cybersecurity can be enhanced with the help of relatively trivial investments. Simply by thinking creatively, a security leader can substantially boost enterprise protection at a minimal cost.
Could your organization benefit from some extra low-cost protection? If so, here are eight ways to improve enterprise cybersecurity without seriously denting your budget.
1. Enforce MFA better
Risk mitigation should start with fundamentals, says Trevor Horwitz, CISO at compliance technology services firm TrustNet. “MFA directly supports confidentiality and access control, which are core security objectives,” he states. “In almost every breach we analyze, compromised credentials are involved.” Most organizations already have access to this capability. Turn it on, especially for privileged access, Horwitz advises.
Randy Gross, CISO at certification firm CompTIA, agrees. “Begin by clearly defining the crown jewels and the next tier of important systems, then enforce MFA and least privilege across those environments,” he recommends. “Next, establish time-bound remediation expectations for the meaningful vulnerabilities in those systems before expanding attention to the broader environment.”
2. Take full advantage of your existing tools
A practical way to strengthen enterprise security without incurring additional significant spend is to ensure you’re fully leveraging the capabilities of solutions already present within your organization, says Gary Brickhouse, CISO at security services firm GuidePoint Security.
“Most organizations have invested heavily in security solutions, yet most are only using a portion of what those tools can do,” he explains. “By optimizing and operationalizing existing technologies, organizations can realize a reduction in cybersecurity risk with little spend.”
Brickhouse says this approach is highly effective because it focuses on improving operational maturity rather than adding more technology solutions. “This tactic also increases ROI by helping to ensure organization are getting the most value from solutions they already own,” he says.
3. Conduct tabletop exercises
Don’t underestimate the power of tabletop exercises, advises Ryan Davis, CISO at IT services provider New Charter Technologies. “They almost guarantee a positive action, and the only cost is in time,” he says.
A tabletop exercise requires participants to view scenarios from an execution perspective rather than a theoretical position.
“Practicing for unexpected scenarios enables teams to exercise muscles they wouldn’t normally use,” Davis says. “It allows team members to ask questions they may not typically ask in everyday scenarios because there isn’t time or an obvious need to do so.”
He adds that the approach also quickly highlights strengths that don’t need further attention, as well as gaps that need to be closed.
4. Utilize the application layer
An effective way to bolster coverage and reduce overall risk is to include the application layer in your cybersecurity strategy, says Bill Oliver, managing director at cybersecurity platform provider SecurityBridge. He notes that ERP systems sit at the core of your company’s operations and have been targeted by bad actors for years.
“Monitoring your ERP systems for missing security patches, bad security configurations, real-time security events, and so on can give you great cybersecurity protection at a relatively low cost as compared to other cybersecurity initiatives,” he says. “Understanding what security events are happening in real time, will greatly bolster your company’s cybersecurity program and correct a weakness that has been there since day one.”
5. Implement passkeys
Passkeys eliminate the single biggest attack vector most organizations face: stolen or phished credentials, says John Coursen, CISO at Fortify Cyber, a firm that helps regulated industries secure their infrastructure.
“They remove the human element from authentication,” he explains. Coursen notes that passwords tend to get reused, phished, and stuffed into credential databases. “Passkeys can’t be phished, because there’s no shared secret to steal.”
Coursen observes that most modern identity providers, such as Azure AD and Okta, already support passkeys. “The tech isn’t hard to implement — it’s the behavior change and getting users to adopt it.”
Start with your highest-risk users, Coursen advises, including executives, finance teams, and anyone with access to sensitive client data or wire transfer authority.
6. Aim for the heart
Target what attackers actually exploit, suggests Mike Wilkes, CISO at security technology provider Aikido Security. “Set up redundant DNS providers — they’re low-cost, high-impact, and massively underused,” he says. “Put Cloudflare’s free plan in front of your public-facing apps, and you get DDoS mitigation and a WAF layer instantly.”
Turn on SPF, DMARC, and DKIM, since email is still the No. 1 initial access vector and these DNS controls take just an afternoon to implement. “Enable MFA everywhere using the free Google Authenticator,” Wilkes says, while also recommending checking DNS records and auditing MFA for gaps.
7. Consider human risk management
At a time when the vast majority of cyberattacks involve people, human risk management is a critical and cost-effective way to keep the enterprise safe, says Matt Lindley, chief innovation and security officer at cybersecurity awareness training firm NINJIO.
Human risk management works because it addresses the most urgent cyberthreat most enterprises face by establishing a culture of cybersecurity at every level of the organization, Lindley says.
“Instead of treating employees as the weak links in an organization’s cybersecurity posture, they should be regarded as its greatest security assets,” he states. “When employees are empowered to identify, report, and thwart cyberattacks, the enterprise now has a distributed and adaptive layer of cybersecurity.”
Effective human risk management requires security leaders to provide engaging, actionable, and personalized security awareness training, Lindley says. It also demands a high degree of accountability. He notes that security leaders should be able to determine whether behavioral interventions are actually working by using benchmarks beyond vanity metrics, such as completion rates.
“This means providing data on phish reporting and other real-world improvements to the organization’s cybersecurity posture, all of which will generate buy-in across the C-suite,” he says.
8. Double-down on cybersecurity fundamentals
One of the most effective low-cost security strategies is to double down on fundamentals such as identity protection, patching, visibility, and user awareness, says Jeff Foresman, vice president of cybersecurity at technology services firm Resultant.
Most organizations already have the tools they need through platforms like Microsoft and Google, as well as their endpoint and email security stacks, Foresman says. The real opportunity, he notes, lies in better configuration and disciplined execution, such as enforcing MFA everywhere, reducing unnecessary admin access, patching Internet-facing systems quickly, and improving phishing reporting and response. “Those steps alone significantly reduce real-world risk,” Foresman says.
Foresman notes that a fundamentalist approach works by targeting how attackers actually gain access. The majority of breaches still begin with compromised credentials, phishing, exposed systems, or misconfigurations, not advanced zero-day exploits, he explains. By focusing on identity, email, and attack surface reduction, organizations can address the most common entry points.
“It’s practical, measurable, and tied to the breach patterns we see every day, rather than theoretical controls,” Foresman says.
See also:
How MFA gets hacked — and strategies to prevent it Redefining multifactor authentication: Why we need passkeys Human risk management: CISOs’ solution to the security awareness training paradox CISOs must rethink the tabletop, as 57% of incidents have never been rehearsed Phishing training needs a new hook — here’s how to rethink your approach View the full article
Over the last four years, I’ve watched organizations get blindsided by threats that originated in a third-party network. More than 35% of data breaches are caused by a compromised vendor or partner, not by any failure in the organization’s controls. While many organizations know that the biggest threats to their security come from forces entirely outside their control, that risk is accelerating this year.  
Some of those forces come from beyond their network and even far beyond their region. International conflict is influencing attacker behavior in ways that are showing up far from conflict zones. AI-driven automation is reducing the effort required to exploit systems and people. Third-party risk continues to be the most common reason well-defended organizations still suffer serious incidents. 
These three factors are creating an environment that is heightening cybersecurity risk. I work with organizations that invest in security, quantify risk and take resilience seriously. Yet when something truly disruptive happens, it is rarely because a basic control was missing. Security is only as strong as the weakest link in a chain that extends far beyond an organization’s firewall — and those weak links are multiplying.  
Geopolitics amplify cyber risk, particularly for OT networks 
For a long time, geopolitical conflicts felt like a separate category of risk. If you did not operate in or near a conflict zone, it was easy to assume it posed little risk to your organization or your security posture. In my experience, that assumption no longer holds. 
In my previous position, we had an office in Israel, so I was always alert and aware of tensions and conflicts in that area. What I see consistently is that techniques used in active geopolitical conflicts do not stay contained to that geographic area or digital environment. The techniques and tactics are tested, refined and then used by criminal groups and other threat actors. Eventually, they surface in environments that have nothing to do with the original conflict. 
The 2026 WEF Global Cybersecurity Outlook reflects this shift, identifying geopolitical instability as a primary driver of cyber risk, and how those tensions have translated into repeated cyber and kinetic disruptions to various sectors like energy, telecom and water. While it is much less likely that the U.S. will be hit with a kinetic attack, we are and have been getting hit with battle-tested cyberattacks. The network that is often targeted by these kinds of attacks is the Operational Technology (OT) network and IoT devices. The report correctly ties this to real safety and continuity impacts, not just data loss, which matches my experience. As a leader, you need to expect some kind of spillover from active warzones to your environment and plan accordingly. Defense in depth is more than a slogan; it’s a way to avoid, mitigate or transfer this kind of risk.  
What I have seen forward-looking organizations do is elevate OT security to the board level so that OT risk is added to the Risk Register as board oversight. Organizations that I work with, where life and health concerns are top of mind, have segmented their network to reduce the blast radius of an attack. The best defense is to implement a ransomware resilient backup solution that has immutable backups with a 3-2-1-1 strategy, where that extra 1 is an immutable copy. Once the board has been made aware of the risk, the budget typically follows.  
AI is accelerating both the attackers and your defenses, but governance is often missing 
What I see generative AI doing in cybersecurity is accelerating what attackers can do and lowering the cost of entry for new criminal gangs. Cyberattacks are more potent because the technology makes it easier to target victims, create deepfake videos or explicit and lewd pictures or fake their voices. Cyber defense tools are getting better, but make no mistake, we are in an arms race with the attackers, criminals and nation-states.  
At the same time, organizations are expanding their attack surface by leaps and bounds through internal AI adoption. Chatbots, AI assistants, GPT models and internal AI tools are all new vectors for attack. Agentic AI tools are very easy to build, but are often given more access and privileges than needed. Agents that can read and compose emails, and create and delete appointments and contacts, can provide significant benefits while also creating havoc if there isn’t a human in the loop or proper governance in place. Many organizations are deploying AI faster than they can secure it. 
In practice, organizations often follow two paths. The first is a big splashy AI project that usually costs millions of dollars, but often doesn’t have a clear goal, clean data, or appropriate governance in place before the project starts. In this case, the project stalls as policies and decisions are made. Budgets are blown, timelines slip, project dates get extended, or not, and then the project is either abandoned or brought in-house now that internal staff have learned enough from the consultants. 
The second path is slower, smaller and often internally driven. This smaller project is more organic and often focused on a particular project or need of the organization. The budget for this smaller project is minimal until the proof of concept is viable, and it can demonstrate a ROI. Because the smaller project is slower, policy and governance can be developed alongside it. 
Leaders should assume that AI models can be manipulated and exploited. AI models will have data leakage issues without robust data governance policies and controls. Also, prompt-injection attacks cannot totally be prevented; you need strong guardrails and to evaluate the data model and guardrails on a regular basis.  
What I have seen successful companies do to address the governance issue is create an AI Risk Council that has the CISO, CAIO, CTO, Legal and Risk, and the Council, at a minimum, has veto power for model release and is given time to do AI pentesting. Organizations with strong risk programs have tended to adopt the NIST risk management framework. It’s a great guide to get started on an AI governance program for any project.  
Cyber inequity is a systemic business risk  
Even if you do everything right, a partner that’s connected to your network can create a vulnerability. Vendors and partners might not operate with the same level of cyber maturity that you do. 
I have firsthand experience with four organizations that have suffered data breaches, even though their own security programs held. In each case, a vendor or partner was compromised first. The effect was the same every time. Company data was compromised, and the organization had to respond as if it had failed. Pointing the finger at the third party was not going to help customers who had data stolen or restore their trust. 
Criminal gangs are opportunistic; they will attack the weakest link, and if your suppliers do not invest in the same level of controls that you do, or that you need, that is a risk to your business the moment systems are integrated. Many leaders still underestimate this exposure because it feels indirect, but cyber inequality is a systemic risk to your business. 
I saw this become more visible during the pandemic, when supply chain disruptions forced organizations to examine dependencies that they had not fully mapped. The lesson remains relevant now. As organizations rely more heavily on external partners, the gap between internal and external exposure continues to widen.  
If these risks feel overwhelming, don’t panic. While this quickly evolving threat landscape is the new normal, cybersecurity professionals like this dynamic environment. We like change. The organizations that respond best have realistic incident response and business continuity plans that assume a partner will eventually be compromised. They involve internal teams early and work closely with trusted partners so that when disruption occurs, response is coordinated rather than reactive. 
Organizations can’t eliminate these external pressures, but they can plan for them. The leaders I see succeed assume disruption, invest in resilience and prepare for failures that start outside their control. 
This article is published as part of the Foundry Expert Contributor Network.
Want to join?
View the full article
Writing a conference preview is an act of professional speculation. You read the agenda, map the schedule session density, and make your personal best call about where the intellectual energy will concentrate.
From my perspective going in, RSA Conference 2026 outlined a defining tension for CISOs today: how to enable AI adoption fast enough to stay competitive while securing the enterprise against a threat landscape AI itself is reshaping.
Now that RSAC 2026 has run its course, it’s worth holding pre-event predictions, such as my five key priorities for CISOs and their teams, against what actually emerged from the sessions, VC panels, and hallway conversations that tend to be more candid than anything on stage.
The verdict: the frame held. In fact, there was very little conversation without AI being front and center. At the Moscone Center in San Francisco I kept hearing, ‘We live in unprecedented times’ — a cliché that I do believe is true.
My own surprises were mostly matters of AI emphasis and velocity with stronger and perhaps sharper commercial edges than I expected.
The AI saturation hypothesis was confirmed
My RSAC 2026 preview argued that AI was no longer a track but had become the event itself, with approximately 40% of the agenda AI-weighted across every cyber domain.
That certainly bore out on stage. Every panel, whether focused on investment, products, identity, or offensive capability, returned to AI. Yoav Leitersdorf of YL Ventures put this bluntly: “Everyone only wants to talk about AI, and if you aren’t doing AI, investors don’t want to talk to you.”
Kevin Mandia from Ballistic Ventures at the RSA Annual Executive Dinner noted that we have to take humans out of the loop, so that AI versus AI is the new paradigm. He explained that AI agents have been introduced into red teaming exercises and are capable of operating at scale and with speed. So, while AI compresses the attack cycle, AI can also “automate” existing teams to improve their response from 5 days to 5 minutes.
What my preview couldn’t fully anticipate was the degree to which the AI narrative forked into two distinct commercial pressures running simultaneously.
Dave DeWalt of NightDragon captured both sides: AI as a tool for defense and offense, but also AI as a structural force flattening the competitive landscape between established vendors and startups. His observation that Series A funding is now looking to be $100 million — and that he’d never seen capital deploy this fast — landed with impact.
RSAC 2026 felt less like a learning event and more like a deal-making environment with educational sessions attached.
Securing the AI stack: Yes, but the threat surface has grown
The first technical priority I offered for CISOs in my conference preview was securing the AI stack — RAG workflows, LLM data pipelines, vector databases, and model APIs — on the basis that prompt injection, training data poisoning, and model inversion attacks were no longer theoretical.
The floor validated this but added dimensions my preview had underweighted. Mike Leland of Island framed the enterprise AI risk surface comprehensively: data leakage, shadow AI, prompt injection, copyright and IP infringement, hallucinations, and data residency. These aren’t sequential concerns — they arrive simultaneously the moment an organization allows AI tools into the environment.
The AI red teaming conversation surfaced with more commercial urgency than anticipated. Frontier Labs’ Brian Singer described environments where AI attackers operate at 1,000 times the speed of human adversaries, pushing the securing-the-stack conversation from defensive posture into something more active. While my preview was right about the topic, it underestimated the operational tempo.
On the conference floor I caught up with Singulr CEO Shiv Agarwaland Richard Bird, Singulr’s CSO and chief strategyofficer,whose platform is attempting to solve this visibility problem at scale. Their starting point was blunt: “AI usage is going out of control at the enterprise. The CIO, the CSO, they need some level of control, but without stopping or slowing down innovation.”
What Singulr’s discovery work is revealing is more of an issue than most boards appreciate. Bird told me that across enterprise assessments, they consistently surface between 350 and 430 AI services and features in active use, the overwhelming majority of which were never formally sanctioned. The shadow AI problem isn’t theoretical. It’s already deployed.
He offered a more nuanced risk framing than most vendors I encountered: context matters as much as the tool itself. “ChatGPT is a very well-contracted and approved AI service,” he said. “But if someone is using it with a personal account and model training has not been turned off, it brings the same risk as a service put up by two people in a garage.” Unfortunately sanction alone doesn’t confer safety.
Non-human identity: The standout theme of the conference
My preview identified non-human identity (NHI) governance as rapidly becoming one of the most consequential operational gaps in enterprise security. This proved to be my most prescient call. It wasn’t just a track; it became a through-line across multiple panels. Ross Haleliuk noted bluntly that machine identities already outnumber human ones.
Mark McClain, founder of SailPoint, reframed the entire identity management problem around agent intent and context: Humans we assumed were at an office or working remotely, but do we understand the intention of an AI agent, and do we have guardrail policies capable of reasoning about that?
McClain’s framing felt the most intellectually honest moment of the conference on this topic. He acknowledged that new technology was coming that would put his own platform under pressure, while simultaneously arguing that anyone who believes you can master the agentic world in isolation without human oversight is being misled.
The infrastructure question was taken further in my conversation with Noam Issachar and Jake Turetsky of Jazz, whose platform is building what they describe as a control plane for the agentic layer. Their framing was architecturally provocative: “AI is the new infrastructure. An AI agent can conduct and take action for something that looks like data transformation and never go into the lower tiers of the technology stack.” In their view, the agent layer is becoming the new HTTP — a data transport and transformation tier that sits above traditional infrastructure but below application logic.
What they found most troubling was the governance vacuum that currently exists in that space: “If AI is truly transformational, then why is there no transformation of processes, policies, and governance to reflect the fact that traffic management is already happening there?” It’s a fair challenge. The architecture has moved faster than the frameworks built to govern it.
AI governance: Present, but absorbed into broader conversations
The compliance priority in my preview centered on the EU AI Act and the need for CISOs to develop defensible licence-to-operate frameworks for AI deployment.
This theme was present at RSAC but was somewhat absorbed into broader discussions about regulatory alignment rather than treated as a standalone priority. VP of Google Threat Intelligence Sandra Joyce’s exchange with Richard Horne of the NCSC touched on the tension between defenders and attackers both benefiting from AI — the NCSC providing framework standards that regulators then align to, a model of governance by reference rather than prescription.
Jay Bavasi, CEO of EC Council, offered the most direct governance framing I encountered across the entire week: “Our attitude as a community has been shoot first, ask questions later. But what we should be doing is ask questions first, shoot later.”
The data behind that charge is harder to dismiss than the rhetoric. Bavasi cited that 84% of Fortune 500 companies reference AI implementation in their 10-K filings. He noted that the proportion that claims to have actual AI governance in place is just 18%. With 72 countries having already launched AI regulations or frameworks, the gap between disclosure and accountability is widening, not closing.
Singulr’s Bird reinforced this concern from an operational standpoint, noting that the governance conversation is still largely performative inside most enterprises — boards are discussing AI risk without the institutional mechanisms to actually manage it.
In-Q-Tel’s Katie Gray offered the sharpest counterweight to the governance narrative: There has never been a better time to sell to the US government, and the DoD spends $5 billion on cyber annually. In that environment, governance conversations are less about compliance architecture and more about positioning to capture procurement.
Shadow AI: Validated and commercially urgent
My preview’s risk priority around shadow AI and vibe coding — unsanctioned AI tool usage largely invisible to security teams — was confirmed across multiple sessions. Leland’s readiness framework put it plainly: Do you have visibility of shadow AI tool usage across the enterprise? Can you identify and prevent inappropriate data usage with gen AI tools?
Singulr’s Agarwal added a dimension that most vendors are reluctant to name. The most commonly discovered unsanctioned AI application in enterprise assessments is Grammarly — not a rogue model or an exotic data exfiltration tool, a writing assistant that most employees assume is benign and most IT teams have never thought to classify as AI risk.
His broader point about risk posture deserves to sit with board directors: “Your monthly board report is kind of useless in a way because your risk position today versus this morning is different.” A static governance snapshot of a dynamic and real-time threat surface is a category error, not a reporting format.
Team8’s Amir Zilberstein flagged investment in a reimagined DLP category on exactly this basis, the old category was hated, but AI-driven classification changes what’s possible.
What my preview missed
Two things the pre-event article didn’t fully anticipate:
First, the capital concentration dynamic. Amir Zilberstein’s observation that more funding is going to fewer companies, combined with David DeWalt’s seed and Series A figures, describes a market consolidating at the top even as it fragments at the bottom. The 9,900 cyber companies DeWalt cited aren’t all going to survive contact with AI titans crossing over from the SaaS world.
Second, the workforce conversation. This was the thread I found most unresolved across every conversation I had on stage and off.
Many speakers quoted Jensen Huang’s 1:2,000 agent-to-human ratio framing. Then I’d note Yoav Leitersdorf counsel to keep R&D flat and grow through AI, and Mark McClain’s observation that AI agents operate at a speed humans physically cannot match — these signals point to a structural workforce shift that cybersecurity leadership hasn’t fully internalized yet.
EC Council’s Bavasi was the most direct voice on this. He pushed back on the premise that CISOs should own AI wholesale: “CISOs are already suffering. A thousand things are already going on. It is one of the most short-lived jobs in the world. And you’re about to throw a behemoth to them.”
He cited 4 million cybersecurity jobs unfilled today, with that figure likely to double as the agentic layer matures — not because demand shrinks, but because the skill profile required is fundamentally different.
Bavasi also landed what I’d call the most confronting statistic of the week — not about threat actors, but about the industry’s own readiness: “We are living in an era where AI agents already have a social media community of their own. We live in an era where humans are being threatened and blackmailed and we still haven’t figured out how we’re going to implement responsible AI governance and ethics,” he said.
Closing observation
While my preview was focused on what CISOs needed to learn at RSAC, what the floor revealed was that some of that may require them to rethink how their teams are built, how their governance is structured, and how they report to boards, which are asking AI governance questions but receiving answers designed for a different era.
The intelligence is accumulating. The institutional response is lagging. That gap was the real story of RSAC 2026.
View the full article
Writing a conference preview is an act of professional speculation. You read the agenda, map the schedule session density, and make your personal best call about where the intellectual energy will concentrate.
From my perspective going in, RSA Conference 2026 outlined a defining tension for CISOs today: how to enable AI adoption fast enough to stay competitive while securing the enterprise against a threat landscape AI itself is reshaping.
Now that RSAC 2026 has run its course, it’s worth holding pre-event predictions, such as my five key priorities for CISOs and their teams, against what actually emerged from the sessions, VC panels, and hallway conversations that tend to be more candid than anything on stage.
The verdict: the frame held. In fact, there was very little conversation without AI being front and center. At the Moscone Center in San Francisco I kept hearing, ‘We live in unprecedented times’ — a cliché that I do believe is true.
My own surprises were mostly matters of AI emphasis and velocity with stronger and perhaps sharper commercial edges than I expected.
The AI saturation hypothesis was confirmed
My RSAC 2026 preview argued that AI was no longer a track but had become the event itself, with approximately 40% of the agenda AI-weighted across every cyber domain.
That certainly bore out on stage. Every panel, whether focused on investment, products, identity, or offensive capability, returned to AI. Yoav Leitersdorf of YL Ventures put this bluntly: “Everyone only wants to talk about AI, and if you aren’t doing AI, investors don’t want to talk to you.”
Kevin Mandia from Ballistic Ventures at the RSA Annual Executive Dinner noted that we have to take humans out of the loop, so that AI versus AI is the new paradigm. He explained that AI agents have been introduced into red teaming exercises and are capable of operating at scale and with speed. So, while AI compresses the attack cycle, AI can also “automate” existing teams to improve their response from 5 days to 5 minutes.
What my preview couldn’t fully anticipate was the degree to which the AI narrative forked into two distinct commercial pressures running simultaneously.
Dave DeWalt of NightDragon captured both sides: AI as a tool for defense and offense, but also AI as a structural force flattening the competitive landscape between established vendors and startups. His observation that Series A funding is now looking to be $100 million — and that he’d never seen capital deploy this fast — landed with impact.
RSAC 2026 felt less like a learning event and more like a deal-making environment with educational sessions attached.
Securing the AI stack: Yes, but the threat surface has grown
The first technical priority I offered for CISOs in my conference preview was securing the AI stack — RAG workflows, LLM data pipelines, vector databases, and model APIs — on the basis that prompt injection, training data poisoning, and model inversion attacks were no longer theoretical.
The floor validated this but added dimensions my preview had underweighted. Mike Leland of Island framed the enterprise AI risk surface comprehensively: data leakage, shadow AI, prompt injection, copyright and IP infringement, hallucinations, and data residency. These aren’t sequential concerns — they arrive simultaneously the moment an organization allows AI tools into the environment.
The AI red teaming conversation surfaced with more commercial urgency than anticipated. Frontier Labs’ Brian Singer described environments where AI attackers operate at 1,000 times the speed of human adversaries, pushing the securing-the-stack conversation from defensive posture into something more active. While my preview was right about the topic, it underestimated the operational tempo.
On the conference floor I caught up with Singulr AI CEO Shiv Agarwaland Richard Bird, Singulr AI’s CSO and chief strategyofficer,whose platform is attempting to solve this visibility problem at scale. Their starting point was blunt: “AI usage is going out of control at the enterprise. The CIO, the CSO, they need some level of control, but without stopping or slowing down innovation.”
What Singulr AI’s discovery work is revealing is more of an issue than most boards appreciate. Bird told me that across enterprise assessments, they consistently surface between 350 and 430 AI services and features in active use, the overwhelming majority of which were never formally sanctioned. The shadow AI problem isn’t theoretical. It’s already deployed.
He offered a more nuanced risk framing than most vendors I encountered: context matters as much as the tool itself. “ChatGPT is a very well-contracted and approved AI service,” he said. “But if someone is using it with a personal account and model training has not been turned off, it brings the same risk as a service put up by two people in a garage.” Unfortunately sanction alone doesn’t confer safety.
Non-human identity: The standout theme of the conference
My preview identified non-human identity (NHI) governance as rapidly becoming one of the most consequential operational gaps in enterprise security. This proved to be my most prescient call. It wasn’t just a track; it became a through-line across multiple panels. Ross Haleliuk noted bluntly that machine identities already outnumber human ones.
Mark McClain, founder of SailPoint, reframed the entire identity management problem around agent intent and context: Humans we assumed were at an office or working remotely, but do we understand the intention of an AI agent, and do we have guardrail policies capable of reasoning about that?
McClain’s framing felt the most intellectually honest moment of the conference on this topic. He acknowledged that new technology was coming that would put his own platform under pressure, while simultaneously arguing that anyone who believes you can master the agentic world in isolation without human oversight is being misled.
The infrastructure question was taken further in my conversation with Noam Issachar and Jake Turetsky of Jazz, whose platform is building what they describe as a control plane for the agentic layer. Their framing was architecturally provocative: “AI is the new infrastructure. An AI agent can conduct and take action for something that looks like data transformation and never go into the lower tiers of the technology stack.” In their view, the agent layer is becoming the new HTTP — a data transport and transformation tier that sits above traditional infrastructure but below application logic.
What they found most troubling was the governance vacuum that currently exists in that space: “If AI is truly transformational, then why is there no transformation of processes, policies, and governance to reflect the fact that traffic management is already happening there?” It’s a fair challenge. The architecture has moved faster than the frameworks built to govern it.
AI governance: Present, but absorbed into broader conversations
The compliance priority in my preview centered on the EU AI Act and the need for CISOs to develop defensible licence-to-operate frameworks for AI deployment.
This theme was present at RSAC but was somewhat absorbed into broader discussions about regulatory alignment rather than treated as a standalone priority. VP of Google Threat Intelligence Sandra Joyce’s exchange with Richard Horne of the NCSC touched on the tension between defenders and attackers both benefiting from AI — the NCSC providing framework standards that regulators then align to, a model of governance by reference rather than prescription.
Jay Bavisi, CEO of EC Council, offered the most direct governance framing I encountered across the entire week: “Our attitude as a community has been shoot first, ask questions later. But what we should be doing is ask questions first, shoot later.”
The data behind that charge is harder to dismiss than the rhetoric. Bavisi cited that 84% of Fortune 500 companies reference AI implementation in their 10-K filings. He noted that the proportion that claims to have actual AI governance in place is just 18%. With 72 countries having already launched AI regulations or frameworks, the gap between disclosure and accountability is widening, not closing.
Singulr AI’s Bird reinforced this concern from an operational standpoint, noting that the governance conversation is still largely performative inside most enterprises — boards are discussing AI risk without the institutional mechanisms to actually manage it.
In-Q-Tel’s Katie Gray offered the sharpest counterweight to the governance narrative: There has never been a better time to sell to the US government, and the DoD spends $5 billion on cyber annually. In that environment, governance conversations are less about compliance architecture and more about positioning to capture procurement.
Shadow AI: Validated and commercially urgent
My preview’s risk priority around shadow AI and vibe coding — unsanctioned AI tool usage largely invisible to security teams — was confirmed across multiple sessions. Leland’s readiness framework put it plainly: Do you have visibility of shadow AI tool usage across the enterprise? Can you identify and prevent inappropriate data usage with gen AI tools?
Singulr AI’s Agarwal added a dimension that most vendors are reluctant to name. The most commonly discovered unsanctioned AI application in enterprise assessments is Grammarly — not a rogue model or an exotic data exfiltration tool, a writing assistant that most employees assume is benign and most IT teams have never thought to classify as AI risk.
His broader point about risk posture deserves to sit with board directors: “Your monthly board report is kind of useless in a way because your risk position today versus this morning is different.” A static governance snapshot of a dynamic and real-time threat surface is a category error, not a reporting format.
Team8’s Amir Zilberstein flagged investment in a reimagined DLP category on exactly this basis, the old category was hated, but AI-driven classification changes what’s possible.
What my preview missed
Two things the pre-event article didn’t fully anticipate:
First, the capital concentration dynamic. Amir Zilberstein’s observation that more funding is going to fewer companies, combined with David DeWalt’s seed and Series A figures, describes a market consolidating at the top even as it fragments at the bottom. The 9,900 cyber companies DeWalt cited aren’t all going to survive contact with AI titans crossing over from the SaaS world.
Second, the workforce conversation. This was the thread I found most unresolved across every conversation I had on stage and off.
Many speakers quoted Jensen Huang’s 1:2,000 agent-to-human ratio framing. Then I’d note Yoav Leitersdorf counsel to keep R&D flat and grow through AI, and Mark McClain’s observation that AI agents operate at a speed humans physically cannot match — these signals point to a structural workforce shift that cybersecurity leadership hasn’t fully internalized yet.
EC Council’s Bavasi was the most direct voice on this. He pushed back on the premise that CISOs should own AI wholesale: “CISOs are already suffering. A thousand things are already going on. It is one of the most short-lived jobs in the world. And you’re about to throw a behemoth to them.”
He cited 4 million cybersecurity jobs unfilled today, with that figure likely to double as the agentic layer matures — not because demand shrinks, but because the skill profile required is fundamentally different.
Bavasi also landed what I’d call the most confronting statistic of the week — not about threat actors, but about the industry’s own readiness: “We are living in an era where AI agents already have a social media community of their own. We live in an era where humans are being threatened and blackmailed and we still haven’t figured out how we’re going to implement responsible AI governance and ethics,” he said.
Closing observation
While my preview was focused on what CISOs needed to learn at RSAC, what the floor revealed was that some of that may require them to rethink how their teams are built, how their governance is structured, and how they report to boards, which are asking AI governance questions but receiving answers designed for a different era.
The intelligence is accumulating. The institutional response is lagging. That gap was the real story of RSAC 2026.
View the full article
Writing a conference preview is an act of professional speculation. You read the agenda, map the schedule session density, and make your personal best call about where the intellectual energy will concentrate.
From my perspective going in, RSA Conference 2026 outlined a defining tension for CISOs today: how to enable AI adoption fast enough to stay competitive while securing the enterprise against a threat landscape AI itself is reshaping.
Now that RSAC 2026 has run its course, it’s worth holding pre-event predictions, such as my five key priorities for CISOs and their teams, against what actually emerged from the sessions, VC panels, and hallway conversations that tend to be more candid than anything on stage.
The verdict: the frame held. In fact, there was very little conversation without AI being front and center. At the Moscone Center in San Francisco I kept hearing, ‘We live in unprecedented times’ — a cliché that I do believe is true.
My own surprises were mostly matters of AI emphasis and velocity with stronger and perhaps sharper commercial edges than I expected.
The AI saturation hypothesis was confirmed
My RSAC 2026 preview argued that AI was no longer a track but had become the event itself, with approximately 40% of the agenda AI-weighted across every cyber domain.
That certainly bore out on stage. Every panel, whether focused on investment, products, identity, or offensive capability, returned to AI. Yoav Leitersdorf of YL Ventures put this bluntly: “Everyone only wants to talk about AI, and if you aren’t doing AI, investors don’t want to talk to you.”
Kevin Mandia from Ballistic Ventures at the RSA Annual Executive Dinner noted that we have to take humans out of the loop, so that AI versus AI is the new paradigm. He explained that AI agents have been introduced into red teaming exercises and are capable of operating at scale and with speed. So, while AI compresses the attack cycle, AI can also “automate” existing teams to improve their response from 5 days to 5 minutes.
What my preview couldn’t fully anticipate was the degree to which the AI narrative forked into two distinct commercial pressures running simultaneously.
Dave DeWalt of NightDragon captured both sides: AI as a tool for defense and offense, but also AI as a structural force flattening the competitive landscape between established vendors and startups. His observation that Series A funding is now looking to be $100 million — and that he’d never seen capital deploy this fast — landed with impact.
RSAC 2026 felt less like a learning event and more like a deal-making environment with educational sessions attached.
Securing the AI stack: Yes, but the threat surface has grown
The first technical priority I offered for CISOs in my conference preview was securing the AI stack — RAG workflows, LLM data pipelines, vector databases, and model APIs — on the basis that prompt injection, training data poisoning, and model inversion attacks were no longer theoretical.
The floor validated this but added dimensions my preview had underweighted. Mike Leland of Island framed the enterprise AI risk surface comprehensively: data leakage, shadow AI, prompt injection, copyright and IP infringement, hallucinations, and data residency. These aren’t sequential concerns — they arrive simultaneously the moment an organization allows AI tools into the environment.
The AI red teaming conversation surfaced with more commercial urgency than anticipated. Frontier Labs’ Brian Singer described environments where AI attackers operate at 1,000 times the speed of human adversaries, pushing the securing-the-stack conversation from defensive posture into something more active. While my preview was right about the topic, it underestimated the operational tempo.
On the conference floor I caught up with Singulr AI CEO Shiv Agarwaland Richard Bird, Singulr AI’s CSO and chief strategyofficer,whose platform is attempting to solve this visibility problem at scale. Their starting point was blunt: “AI usage is going out of control at the enterprise. The CIO, the CSO, they need some level of control, but without stopping or slowing down innovation.”
What Singulr AI’s discovery work is revealing is more of an issue than most boards appreciate. Bird told me that across enterprise assessments, they consistently surface between 350 and 430 AI services and features in active use, the overwhelming majority of which were never formally sanctioned. The shadow AI problem isn’t theoretical. It’s already deployed.
He offered a more nuanced risk framing than most vendors I encountered: context matters as much as the tool itself. “ChatGPT is a very well-contracted and approved AI service,” he said. “But if someone is using it with a personal account and model training has not been turned off, it brings the same risk as a service put up by two people in a garage.” Unfortunately sanction alone doesn’t confer safety.
Non-human identity: The standout theme of the conference
My preview identified non-human identity (NHI) governance as rapidly becoming one of the most consequential operational gaps in enterprise security. This proved to be my most prescient call. It wasn’t just a track; it became a through-line across multiple panels. Ross Haleliuk noted bluntly that machine identities already outnumber human ones.
Mark McClain, founder of SailPoint, reframed the entire identity management problem around agent intent and context: Humans we assumed were at an office or working remotely, but do we understand the intention of an AI agent, and do we have guardrail policies capable of reasoning about that?
McClain’s framing felt the most intellectually honest moment of the conference on this topic. He acknowledged that new technology was coming that would put his own platform under pressure, while simultaneously arguing that anyone who believes you can master the agentic world in isolation without human oversight is being misled.
The infrastructure question was taken further in my conversation with Noam Issachar and Jake Turetsky of Jazz, who are building a new DLP for AI. Jazz, which won CrowdStrike’s 2026 Cybersecurity Startup Accelerator at the show, has developed an engine and an agentic investigator that collects rich context and uses it to drive investigations. Instead of relying on static rules, it understands behavior in context and evaluates it against your organization’s intent and policies.
AI governance: Present, but absorbed into broader conversations
The compliance priority in my preview centered on the EU AI Act and the need for CISOs to develop defensible licence-to-operate frameworks for AI deployment.
This theme was present at RSAC but was somewhat absorbed into broader discussions about regulatory alignment rather than treated as a standalone priority. VP of Google Threat Intelligence Sandra Joyce’s exchange with Richard Horne of the NCSC touched on the tension between defenders and attackers both benefiting from AI — the NCSC providing framework standards that regulators then align to, a model of governance by reference rather than prescription.
Jay Bavisi, CEO of EC Council, offered the most direct governance framing I encountered across the entire week: “Our attitude as a community has been shoot first, ask questions later. But what we should be doing is ask questions first, shoot later.”
The data behind that charge is harder to dismiss than the rhetoric. Bavisi cited that 84% of Fortune 500 companies reference AI implementation in their 10-K filings. He noted that the proportion that claims to have actual AI governance in place is just 18%. With 72 countries having already launched AI regulations or frameworks, the gap between disclosure and accountability is widening, not closing.
Singulr AI’s Bird reinforced this concern from an operational standpoint, noting that the governance conversation is still largely performative inside most enterprises — boards are discussing AI risk without the institutional mechanisms to actually manage it.
In-Q-Tel’s Katie Gray offered the sharpest counterweight to the governance narrative: There has never been a better time to sell to the US government, and the DoD spends $5 billion on cyber annually. In that environment, governance conversations are less about compliance architecture and more about positioning to capture procurement.
Shadow AI: Validated and commercially urgent
My preview’s risk priority around shadow AI and vibe coding — unsanctioned AI tool usage largely invisible to security teams — was confirmed across multiple sessions. Leland’s readiness framework put it plainly: Do you have visibility of shadow AI tool usage across the enterprise? Can you identify and prevent inappropriate data usage with gen AI tools?
Singulr AI’s Agarwal added a dimension that most vendors are reluctant to name. The most commonly discovered unsanctioned AI application in enterprise assessments is Grammarly — not a rogue model or an exotic data exfiltration tool, a writing assistant that most employees assume is benign and most IT teams have never thought to classify as AI risk.
His broader point about risk posture deserves to sit with board directors: “Your monthly board report is kind of useless in a way because your risk position today versus this morning is different.” A static governance snapshot of a dynamic and real-time threat surface is a category error, not a reporting format.
Team8’s Amir Zilberstein flagged investment in a reimagined DLP category on exactly this basis, the old category was hated, but AI-driven classification changes what’s possible.
What my preview missed
Two things the pre-event article didn’t fully anticipate:
First, the capital concentration dynamic. Amir Zilberstein’s observation that more funding is going to fewer companies, combined with David DeWalt’s seed and Series A figures, describes a market consolidating at the top even as it fragments at the bottom. The 9,900 cyber companies DeWalt cited aren’t all going to survive contact with AI titans crossing over from the SaaS world.
Second, the workforce conversation. This was the thread I found most unresolved across every conversation I had on stage and off.
Many speakers quoted Jensen Huang’s 1:2,000 agent-to-human ratio framing. Then I’d note Yoav Leitersdorf counsel to keep R&D flat and grow through AI, and Mark McClain’s observation that AI agents operate at a speed humans physically cannot match — these signals point to a structural workforce shift that cybersecurity leadership hasn’t fully internalized yet.
EC Council’s Bavasi was the most direct voice on this. He pushed back on the premise that CISOs should own AI wholesale: “CISOs are already suffering. A thousand things are already going on. It is one of the most short-lived jobs in the world. And you’re about to throw a behemoth to them.”
He cited 4 million cybersecurity jobs unfilled today, with that figure likely to double as the agentic layer matures — not because demand shrinks, but because the skill profile required is fundamentally different.
Bavasi also landed what I’d call the most confronting statistic of the week — not about threat actors, but about the industry’s own readiness: “We are living in an era where AI agents already have a social media community of their own. We live in an era where humans are being threatened and blackmailed and we still haven’t figured out how we’re going to implement responsible AI governance and ethics,” he said.
Closing observation
While my preview was focused on what CISOs needed to learn at RSAC, what the floor revealed was that some of that may require them to rethink how their teams are built, how their governance is structured, and how they report to boards, which are asking AI governance questions but receiving answers designed for a different era.
The intelligence is accumulating. The institutional response is lagging. That gap was the real story of RSAC 2026.
View the full article
Tayler Derden | shutterstock.com
Nach jahrelangen Cybercrime-Angriffen auf mehr als Hundert Unternehmen und Einrichtungen in Deutschland haben Ermittler zwei zentrale Verdächtige identifiziert. Der eine sei der mutmaßliche Kopf von zwei Hackergruppen, der andere der mutmaßliche Programmierer der von diesen Gruppen genutzten Schadsoftware. Dies teilten das bei der Generalstaatsanwaltschaft Karlsruhe eingerichtete Cybercrime-Zentrum und das Landeskriminalamt Baden-Württemberg mit.
Es sei eine weltweite Fahndung nach den beiden Gesuchten eingeleitet worden. Laut den Haftbefehlen sollen die beiden Männer zwischen 2019 und 2021 an Angriffen der Gruppen auf insgesamt 130 Unternehmen und Einrichtungen in Deutschland beteiligt gewesen sein. In 25 Fällen sei das geforderte Lösegeld bezahlt worden. Der Gesamtlösegeldschaden belaufe sich auf rund 1,8 Millionen Euro.
Wirtschaftlicher Schaden in Höhe von rund 35 Millionen Euro
Diese Attacken führten in Deutschland laut der Mitteilung zu wirtschaftlichen Schäden in Höhe von rund 35 Millionen Euro. Alleine einem Unternehmen aus Baden-Württemberg sei ein Schaden in Höhe von rund 9 Millionen Euro entstanden.
Bei Ransomware-Angriffen verschlüsseln Cyberkriminelle laut dem Bundesamt für Sicherheit in der Informationstechnik die Daten auf Servern und Computern ihrer Opfer mit hochkomplexer Schadsoftware. Eine Entschlüsselung wird nur gegen Zahlung eines Lösegelds (englisch: ransom) in Aussicht gestellt – meist in schwer nachverfolgbarem Bitcoin. Häufig drohen die Täter zusätzlich mit der Veröffentlichung sensibler gestohlener Daten auf sogenannten Leak-Sites im Darknet, um Druck zu erhöhen.
Bereits im Januar war ein wichtiges Mitglied einer der beiden Hackergruppen, der berüchtigten «GandCrab», wegen Computersabotage und Erpressung mit einer manipulierten Software zu einer Gefängnisstrafe von sieben Jahren verurteilt worden. Als mutmaßliches Gruppenmitglied soll er die Netzwerke von 22 deutschen Unternehmen und öffentlichen Einrichtungen lahmgelegt haben – darunter Krankenhäuser, Kliniken und die Württembergischen Staatstheater in Stuttgart. (dpa/ad)
View the full article
Tayler Derden | shutterstock.com
Nach jahrelangen Cybercrime-Angriffen auf mehr als Hundert Unternehmen und Einrichtungen in Deutschland haben Ermittler zwei zentrale Verdächtige identifiziert. Der eine sei der mutmaßliche Kopf von zwei Hackergruppen, der andere der mutmaßliche Programmierer der von diesen Gruppen genutzten Schadsoftware. Dies teilten das bei der Generalstaatsanwaltschaft Karlsruhe eingerichtete Cybercrime-Zentrum und das Landeskriminalamt Baden-Württemberg mit.
Es sei eine weltweite Fahndung nach den beiden Gesuchten eingeleitet worden. Laut den Haftbefehlen sollen die beiden Männer zwischen 2019 und 2021 an Angriffen der Gruppen auf insgesamt 130 Unternehmen und Einrichtungen in Deutschland beteiligt gewesen sein. In 25 Fällen sei das geforderte Lösegeld bezahlt worden. Der Gesamtlösegeldschaden belaufe sich auf rund 1,8 Millionen Euro.
Wirtschaftlicher Schaden in Höhe von rund 35 Millionen Euro
Diese Attacken führten in Deutschland laut der Mitteilung zu wirtschaftlichen Schäden in Höhe von rund 35 Millionen Euro. Alleine einem Unternehmen aus Baden-Württemberg sei ein Schaden in Höhe von rund 9 Millionen Euro entstanden.
Bei Ransomware-Angriffen verschlüsseln Cyberkriminelle laut dem Bundesamt für Sicherheit in der Informationstechnik die Daten auf Servern und Computern ihrer Opfer mit hochkomplexer Schadsoftware. Eine Entschlüsselung wird nur gegen Zahlung eines Lösegelds (englisch: ransom) in Aussicht gestellt – meist in schwer nachverfolgbarem Bitcoin. Häufig drohen die Täter zusätzlich mit der Veröffentlichung sensibler gestohlener Daten auf sogenannten Leak-Sites im Darknet, um Druck zu erhöhen.
Bereits im Januar war ein wichtiges Mitglied einer der beiden Hackergruppen, der berüchtigten «GandCrab», wegen Computersabotage und Erpressung mit einer manipulierten Software zu einer Gefängnisstrafe von sieben Jahren verurteilt worden. Als mutmaßliches Gruppenmitglied soll er die Netzwerke von 22 deutschen Unternehmen und öffentlichen Einrichtungen lahmgelegt haben – darunter Krankenhäuser, Kliniken und die Württembergischen Staatstheater in Stuttgart. (dpa/ad)
View the full article
The popular HTTP client known as Axios has suffered a supply chain attack after two newly published versions of the npm package introduced a malicious dependency. Versions 1.14.1 and 0.30.4 of Axios have been found to inject "plain-crypto-js" version 4.2.1 as a fake dependency. According to StepSecurity, the two versions were published using the compromised npm credentials of the primary AxiosView the full article
When promoting the MacBook Neo, Apple found a surprise hit with a tiny anthropomorphized version of the Mac Finder icon, which people have taken to calling Little Finder Guy. Little Finder Guy starred in some of Apple's early March TikTok videos, and Apple is now targeting Finder fans with a trio of new videos.


Three tutorials on Apple's TikTok account star Little Finder Guy. Videos feature Stacks on the Mac desktop, ring light for video apps, and dictation. The tutorials are all shown on the ‌MacBook Neo‌, and each one includes Little Finder Guy.


Most of the comments on the videos are about Apple's new Finder mascot. Stephen Hackett of 512 Pixels has created a .3mf file for 3D printing a Little Finder Guy for those that have a printer available.


Android has long had a 3D mascot that's a hybrid between a bug and a droid, which Google calls The Bot, so now there is an Apple equivalent.Tags: Apple Ads, TikTok
This article, "Apple Leans Into Little Finder Guy With New TikTok Videos" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Today marks the 10th anniversary of Safari Technology Preview, a version of Safari that's aimed at testing new web technologies.


Apple first announced ‌Safari Technology Preview‌ for Mac on March 30, 2016, and rolled it out that same day. At the time, Apple said that it wanted to get feedback from developers on browser development using a method more easily accessible than WebKit. "Get a sneak peek at upcoming web technologies in macOS and iOS with ‌Safari Technology Preview‌ and experiment with these technologies in your websites and extensions," reads the description on Apple's developer website.

‌Safari Technology Preview‌ can be used side-by-side with the main Safari browser, and it can be set as the default if users prefer it. Though it is designed for developers, it does not require a developer account to download and use. ‌Safari Technology Preview‌ has a purple icon to distinguish it from the standard version of Safari.

STP is compatible with macOS Sequoia and macOS Tahoe right now, and when macOS 27 launches, it will work with ‌macOS 27‌ and ‌macOS Tahoe‌.

Apple regularly releases updates for ‌Safari Technology Preview‌, and over the last decade, we've had 240 versions. Apple provides detailed release notes for each update, highlighting new additions and bug fixes in STP that will later come to the primary version of Safari.

‌Safari Technology Preview‌ can be downloaded from Apple's developer website.Tag: Safari Technology Preview
This article, "Safari Technology Preview Turns 10: A Decade of Testing Apple's Web Technologies" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Yet another critical flaw in a Fortinet product has come to light as attackers continue to target the company, this time by actively exploiting a critical SQL injection vulnerability in the cybersecurity company’s management server.
The vulnerability, (CVE-2026-21643), allows unauthenticated threat actors to execute arbitrary code on unpatched systems via specifically-crafted HTTP requests. These low-complexity attacks target the FortiClient Endpoint Management Server (EMS), a widely-used cybersecurity tool. 
The CVE was being abused as recently as four days ago, according to research from red-teaming company Defused Cyber, and reflects a concerning trend for the cybersecurity giant, which  serves more than 900,000 customers.
“This is Fortinet’s seventh SQL CVE over the past 12 months, and that’s frankly seven too many,” said David Shipley of Beauceron Security.
Gives broad access to sensitive data
FortiClient EMS provides centralized management, deployment, and monitoring for FortiClient endpoint agents across numerous platforms. CVE-2026-21643 was discovered internally by Fortinet’s security team and published on February 6. It impacts FortiClient EMS version 7.4.4 when multi-tenant mode is enabled. Single-site deployments are not impacted. Enterprises should patch immediately, security experts warn, by upgrading to version 7.4.5 or later.
As of publication time, Fortinet had not yet updated its security advisory to flag the active exploitation of the CVE.
The flaw is described as “an improper neutralization of special elements” used in a SQL command vulnerability. This means that a single HTTP request with a crafted header value is sufficient to execute arbitrary SQL against the backing PostgreSQL database, according to a deep dive report by pentesting company Bishop Fox. An attacker who can reach the EMS web interface over HTTPS “needs no credentials to exploit this,” it said.
“This gives attackers access to admin credentials, endpoint inventory data, security policies, and certificates for managed endpoints,” the researchers wrote. They pointed out that the endpoint returns database error messages and has no lockout protections, allowing attackers to quickly extract sensitive data.
The Shadowserver Foundation, a nonprofit security watchdog, is currently tracking more than 2,400 FortiClient EMS instances with web interfaces exposed to the internet, the majority of them in the US and Europe. And Shodan, a search engine for internet-connected devices, reported 1,000 publicly-exposed instances of FortiClient EMS.
SQL injection a top app security issue
Beauceron’s Shipley underscored the dangers of SQL injection, pointing out that the vulnerability was the first on the OWASP top 10 application security risks when the open source foundation was launched more than 20 years ago. The attack type has remained in the top spot for most of that time, “for good reason.”
“You don’t want these kinds of bugs to lead to remote code execution, [but] in multi-site setups of this service, that’s what you can get,” said Shipley.
Victor Okorie, advisory director in the security and privacy practice at Info-Tech Research Group, agreed with Shipley’s assessment that SQL injection vulnerabilities are particularly dangerous.
Most existing controls do not catch flaws like this, he pointed out, allowing for credential theft, enabling lateral movement due to the “implicit trust” of the EMS, and permitting manipulation and exfiltration of sensitive data. Attackers can execute unauthorized commands and bypass authentication completely, “which makes getting in a breeze.”
“The bad actor’s playbook consists of ‘get in,’ ‘take control,’ and ‘profit,’ and this is something we should always remember when reviewing vulnerabilities being exploited in the wild,” said Okorie.
Highlights importance of zero trust
Fortinet has been a prime target for threat actors of late, with attackers using AI to exploit weakly-protected firewalls, launching zero-day attacks against customer devices, and stealing FortiGate firewall credentials. The company has also been criticized for “silent” patching after disclosing zero-day vulnerabilities in some of its equipment.
All told, the US Cybersecurity and Infrastructure Security Agency (CISA) lists 24 Fortinet vulnerabilities actively being exploited.
This highlights the importance of a zero-trust architecture, said Okorie. Organizations should check whether their EMS is internet-facing, he advised; if it is, they should remove it from direct exposure to the internet and place it behind a secure access gateway. Enterprises should also inspect HTTP traffic logs for anomalous SQL syntax embedded within the ‘Site’ header.
“Old dogs don’t really need new tricks, and that can be applicable here,” said Okorie. Because Fortinet vulnerabilities have been used in ransomware campaigns, “there is a sense of familiarity” for attackers, who continue to identify and exploit weaknesses.
Fortinet must be ‘more proactive’
“Fortinet seems to have an issue resolving entire bug classes,” added Beauceron’s Shipley. They seem to keep playing “bug whack-a-mole,” fixing the immediate problem but not taking the time to review codebases in depth to uncover the same flawed code in other areas.
“Attackers, on the other hand, smell blood,” he noted. Once they find this kind of bug repeated, they will refine their hacking attempts to discover more instances of it.
With AI tools speeding up attackers’ work, Fortinet must be more proactive on bug hunts, said Shipley. But that being said, he observed, the company’s revenue continued to grow in 2025 by more than 14%, “so the market isn’t exactly sending a strong signal that they should care [about this] more.”
View the full article
iOS 26.5 is now available for developers, and while it doesn't include any new Siri capabilities, there are some major changes for the European Union, and smaller tweaks for features available worldwide.


Suggested Places

In the Maps app, there's a new "Suggested Places" feature that recommends locations to visit based on trending places nearby and recent searches. When Apple launches ads in Maps, it will also show ads.


Ads in Maps

iOS 26.5 lays the groundwork for ads in the Maps app. Apple plans to implement ads this summer, with businesses able to purchase ads that are shown in search results and Suggested Places.


Code in iOS 26.5 says the following: "Maps may show local ads based on your approximate location, current search terms, or view of the map while you search." Ads will have a clear "ad" label.

RCS End-to-End Encryption

Apple re-enabled end-to-end encryption (E2EE) for RCS messages between iPhone and Android users in iOS 26.5. Apple tested the feature in the iOS 26.4 beta, but not include E2EE in the final version.

There is a toggle for End-to-End Encryption in the Messages section of the Settings app, and the feature is enabled by default. E2EE for ‌RCS‌ means that conversations between iPhone and Android users are encrypted and cannot be intercepted and read by a third party.

European Union Third-Party Wearable Changes

Apple is working on new interoperability features in the EU to comply with the requirements of the Digital Markets Act. Apple has tested these features in prior betas, but the Live Activity sharing feature is new.

Proximity pairing - Devices like earbuds will be able to pair with an iOS device in an AirPods-like way by bringing the accessory close to an iPhone or iPad to initiate a simple, one-tap pairing process. Pairing third-party devices will no longer require multiple steps.
Notifications - Third-party accessories like smart watches will be able to receive notifications from the iPhone. Users will be able to view and react to incoming notifications, which is a capability normally limited to the Apple Watch. Notifications can only be forwarded to one connected device at a time, and turning on notifications for a third-party device disables notifications to an Apple Watch. Notifications from select apps can be forwarded, or from all apps.
Live Activities - Live Activities are able to sync to a third-party wearable, similar to other notifications. This is a feature that appears to be new to iOS 26.5.

There's no word on when the EU third-party wearable features will launch, and Apple also tested them in the iOS 26.3 and iOS 26.4 betas before removing them when the software was released to the public.

Magic Accessories

When you connect an accessory like a Magic Keyboard to an iPhone over USB-C, the iPhone will automatically establish a Bluetooth connection with the accessory.

iPhone to Android Transfer

When switching from an iPhone to an Android device, there appears to be a new setting for selecting which message attachments to transfer over. There are options for All, 1 year, or 30 days.

Apple Books

There are mentions of new awards in the Apple Books app, which are likely for year-end wrap-ups.

Keyboard Layout

iOS 26.5 has an Inuktitut keyboard layout option.Related Roundups: iOS 26, iPadOS 26Related Forum: iOS 26
This article, "Everything New in iOS 26.5 Beta 1" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple has removed a "vibe coding" app from its App Store, reports The Information. AI app building app "Anything" was pulled from the ‌App Store‌, and Anything co-founder Dhruv Amin was told that his app violated Guideline 2.5.2.


"Vibe coding" is a term used for code generated using AI based on natural language with no coding experience necessary. Anything and other apps like it let users create apps, websites, and tools with text-based prompts.

Apple started removing vibe coding apps from the ‌App Store‌ earlier in March, and the company said that certain features in the apps that were pulled violate code execution rules. In a statement to MacRumors, Apple said that there are no specific rules against vibe coding, but the apps have to adhere to longstanding guidelines. Apple specifically mentioned Guideline 2.5.2, which is the rule Anything apparently violated.

"Anything" launched on iOS back in November with no issue, and Amin says the tool has been used to publish thousands of apps in the ‌App Store‌. The app let users create and preview vibe code apps on the iPhone, and it raised $11 million at a valuation of $100 million back in September.

While Anything was removed from the ‌App Store‌ on March 26, Apple has been blocking updates to the app since December. Amin submitted an update that would allow vibe coded apps to be previewed in a web browser instead of in the app to attempt to comply with the 2.5.2 rule, but Apple blocked the update and pulled the app.

Apple previously blocked iOS updates to Vibecode and Replit, vibe coding apps used to generate other apps.Tag: App Store
This article, "Apple Pulls Vibe Coding App 'Anything' From App Store, Escalating Enforcement" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple is planning to introduce ads to the Apple Maps app in the near future, and the iOS 26.5 beta lays the groundwork for the feature.


Code in the update says the following: "Maps may show local ads based on your approximate location, current search terms, or view of the map while you search."

Apple also says that a user's location and ads interacted with in ‌Apple Maps‌ are not linked to an Apple account to protect user privacy. Apple does not plan to collect or store Maps app data, or share it with third parties.

Last week, Apple said that ads are coming to the Apple Maps app for iPhone and iPad in the U.S. and Canada "this summer."

Businesses in the U.S. and Canada will be able to show ads in search results and at the top of a "Suggested Places" section in the app, which is new in iOS 26.5. Suggested Places displays recommendations for locations to visit based on trending places nearby, recent searches, and more.

Ads in the Maps app will have a clear "Ad" label, much like the ads shown in the App Store search results.Related Roundups: iOS 26, iPadOS 26Tag: Apple MapsRelated Forum: iOS 26
This article, "Apple Lays Groundwork for Ads in Maps With iOS 26.5" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
For the last several months, Apple has been working on interoperability changes that are set to be implemented in the European Union to comply with the Digital Markets Act. Apple is developing AirPods-like pairing and notification forwarding for third-party wearables.


Testing on these features started back in iOS 26.3 and continued in iOS 26.4, but the options have not yet launched. Apple is still testing them in iOS 26.5, and both notification forwarding and proximity pairing for wearables are included in the iOS 26.5 beta. Today's update also appears to include a new feature forwarding Live Activities to a third-party wearable device, so Live Activities will be included under the notification forwarding umbrella.

Third-party wearables like earbuds will be able to use proximity pairing, similar to AirPods. Bringing a set of earbuds close to an iPhone or iPad will initiate an AirPods-like one-tap pairing process, so pairing third-party earbuds and other wearables will no longer require multiple steps.

Apple is also planning to allow third-party accessories like smartwatches to receive notifications from the iPhone. Users will be able to view and react to incoming notifications, which is a capability currently limited to the Apple Watch. Notifications are only able to be forwarded to one connected device at a time, and turning on notifications for a third-party device disables notifications on an Apple Watch.

Apple has not provided details on when these features will launch in the European Union, but the European Commission said that Apple will roll them out in Europe in 2026. Developers can test third-party TVs, smartwatches, and headphones with the new options.

The notification forwarding and proximity pairing features are only going to be available to device makers and users in the EU.Related Roundups: AirPods 4, iOS 26, iPadOS 26Tag: European UnionBuyer's Guide: AirPods (Neutral)Related Forums: AirPods, iOS 26
This article, "Apple Testing AirPods-Like Pairing, Live Activities and Notification Forwarding for Third-Party Wearables in EU With iOS 26.5" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple accidentally started rolling out Apple Intelligence features in China before receiving regulatory approval, reports Bloomberg's Mark Gurman.


Some Chinese users began seeing ‌Apple Intelligence‌ features listed as available and active in the Settings app on their iPhones, but Apple made no formal announcement. Gurman says that Apple is not planning to launch the feature imminently, and that its availability was a mistake. Apple has since removed the ‌Apple Intelligence‌ features.

Gurman claims that Apple would not launch AI features in China without an announcement, nor would it launch AI in China in the middle of the night local time. The feature also currently uses Google reverse image search, and Google is banned in China.

Apple has not been able to launch ‌Apple Intelligence‌ features in China because the country restricts foreign AI technology. Apple is partnering with Alibaba to power ‌Apple Intelligence‌ capabilities, but Apple needs regulatory approval from China's Cyberspace Administration (CAC). The CAC has to test and approve all AI models before AI services are able to launch in China, and there have been ongoing delays with that process.

It is unclear when ‌Apple Intelligence‌ features will come to China, but Apple is eager to launch in the country. Chinese smartphone makers like Huawei and Xiaomi have a variety of AI features available to customers, which puts Apple far behind in the AI race.Related Roundups: iOS 26, iPadOS 26Tags: Apple Intelligence, ChinaRelated Forum: iOS 26
This article, "Apple Intelligence Accidentally Goes Live in China Before Regulatory Approval" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
The iOS 26.5 beta that Apple released today includes no new Apple Intelligence Siri functionality, which suggests we're going to be waiting until iOS 27 to see any of the promised ‌Siri‌ features.


Apple was initially targeting iOS 26.4 for new ‌Siri‌ capabilities, but in February, Bloomberg's Mark Gurman said that the company wasn't going to make that goal due to ongoing accuracy issues. He said that Apple could postpone some or all of the new ‌Siri‌ features until iOS 26.5 and ‌iOS 27‌.

At the time, Apple engineers were apparently using iOS 26.5 for internal ‌Siri‌ testing, and the employees said the update included all of the ‌Apple Intelligence‌ ‌Siri‌ features that Apple promised back at WWDC 2024, but there are no signs of those additions to ‌Siri‌ now that the beta is available to developers.

It's possible that ‌Siri‌ features could come in a later beta of iOS 26.5, but that's looking less and less likely as we get closer to June and the ‌iOS 27‌ WWDC debut.

Last week, Gurman said that ‌iOS 27‌ would include a standalone Siri chatbot app and all of the ‌Apple Intelligence‌ ‌Siri‌ features, indicating members of the public won't get a smarter ‌Siri‌ until ‌iOS 27‌ launches in September 2026.

When Apple introduced ‌Apple Intelligence‌ ‌Siri‌ in June 2024, it said the feature set would launch in an update to iOS 26 coming in 2025. When spring 2025 rolled around, Apple announced a delay and said that ‌Siri‌ was not ready and needed more time. After that setback, Apple made no promise other than saying the revamped version of ‌Siri‌ would launch in 2026.

Behind-the-scenes rumors suggested Apple was targeting iOS 26.4 and development was further delayed, but Apple never publicly mentioned the iOS 26.4 update. As long as Apple launches the new ‌Siri‌ features before December 2026, it will be on track to deliver what it promised.

The version of ‌Siri‌ that Apple has planned for ‌iOS 27‌ will go above and beyond what was demonstrated at WWDC 2024. ‌Siri‌ is turning into a full chatbot, with a standalone ‌Siri‌ app and feature set that will put the personal assistant on par with Gemini, Claude, ChatGPT, and other AI chatbots.Related Roundups: iOS 26, iPadOS 26, iOS 27Tag: SiriRelated Forum: iOS 26
This article, "New Siri Features Absent From iOS 26.5 Beta, Likely Pushed to iOS 27 in September" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple tested end-to-end encryption (E2EE) for RCS messages exchanged between iPhone and Android users in the iOS 26.4 beta, but Apple made it clear the functionality was not going to launch in the iOS 26.4 update.


E2EE for ‌RCS‌ was removed before iOS 26.4 was released, but the feature is back in the iOS 26.5 beta as Apple continues testing it.

In the Messages section of the Settings app, the End-to-End Encryption toggle is back in the ‌RCS‌ options, and like before, it is turned on by default.

End-to-end encryption ensures that messages sent between devices cannot be intercepted and read by a third party. Right now, ‌RCS‌ messages sent between Android and iPhone users do not have E2EE, but ‌RCS‌ messages between Android users do. iMessages exchanged between iPhone users have always had end-to-end encryption.

E2EE is in beta and is not available to all devices or carriers in iOS 26.5. Conversations that are encrypted have a lock symbol.Related Roundups: iOS 26, iPadOS 26Tags: Android, RCSRelated Forum: iOS 26
This article, "iOS 26.5 Beta Continues RCS End-to-End Encryption Testing for iPhone and Android Messages" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Amazon's Big Spring Sale is set to end tomorrow, March 31, so you still have a little while to shop some of the best prices of the year so far on AirPods, MacBooks, and much more. In this article we're recapping all of the best deals you can still get before the event ends, including a few accessory sales.

Note: MacRumors is an affiliate partner with some of these vendors. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

AirPods



The best current AirPods deal during the Big Spring Sale is the AirPods Pro 3 for $199.00, down from $249.00. You can also get a pre-order discount on the brand new AirPods Max 2.

$50 OFFAirPods Pro 3 for $199.00
$19 OFFAirPods Max 2 for $529.99
Apple Watch Series 11



Amazon this week has all-time low prices on the Apple Watch Series 11, with $100 discounts across numerous models of the smartwatch. We first started tracking the return of these deals last month, but this sale has now expanded with many more options on both 42mm and 46mm GPS models.

$100 OFFApple Watch Series 11 (42mm GPS) for $299.00
$100 OFFApple Watch Series 11 (46mm GPS) for $329.00

You can get the 42mm GPS Apple Watch Series 11 for $299.00, down from $399.00, and the 46mm GPS model for $329.00, down from $429.00. On Amazon, you'll find four of the 42mm GPS models on sale at this all-time low price, and four of the 46mm GPS models on sale as well.

$100 OFFApple Watch Series 11 (42mm Cell) for $399.00
$100 OFFApple Watch Series 11 (46mm Cell) for $429.00
M4 iPad Air



Amazon is taking up to $100 off the brand new M4 iPad Air during its Big Spring Sale this week. Specifically, Amazon has up to $80 off the 11-inch M4 iPad Air and up to $100 off the 13-inch M4 iPad Air. All of these discounts have been automatically applied and do not require a coupon code or a Prime membership.

$40 OFF11-inch M4 iPad Air for $559.00
$50 OFF13-inch M4 iPad Air for $749.00

The new iPad Air features the M4 chip, C1X modem, and N1 networking chip, which brings support for Wi-Fi 7 and Bluetooth 6. In terms of design, the 2026 models are identical to the 2025 iPad Air tablets, with an edge-to-edge display, slim bezels, and aluminum chassis.

M5 Pro/M5 Max MacBook Pro



Amazon is offering new all-time low prices on Apple's M5 Pro/M5 Max MacBook Pro, with up to $149 off select models without the need of a membership or clipping a coupon.

$149 OFF14-inch M5 Pro MacBook Pro (24GB/1TB) for $2,049.99
$149 OFF14-inch M5 Pro MacBook Pro (24GB/2TB) for $2,449.99

We're also tracking similar steep discounts on the 16-inch models, including a few M5 Max options. These discounts reach up to $199 off original prices, and as of writing we're only tracking these deals on Amazon.

$149 OFF16-inch M5 Pro MacBook Pro (24GB/1TB) for $2,549.99
$199 OFF16-inch M5 Pro MacBook Pro (48GB/1TB) for $2,899.99

Anker



Anker's new Prime 3-in-1 Wireless Charging Station has been marked down to $104.99 during the Big Spring Sale, down from $149.99, with no need for a coupon. This accessory just launched last month, and Amazon's sale today represents a new all-time low price.

$45 OFFAnker Prime 3-in-1 Wireless Charging Station for $104.99

The Prime 3-in-1 Wireless Charging Station features Qi2.2 support, which lets a compatible MagSafe ‌iPhone‌ charge at up to 25W. It's the same speed as Apple's ‌MagSafe‌ charger, and it is 10W faster than the standard Qi2 ‌MagSafe‌ chargers. You can also simultaneously charge an Apple Watch and AirPods with the device.

There are plenty of other Anker discounts happening on Amazon this week, including the Prime 14-in-1 Thunderbolt 5 Dock back at its all-time low price of $339.99, down from $399.99. Anker's popular 3-in-1 MagSafe-Compatible Charging Cube is also down to a new all-time low price of $79.03, down from $129.99.

$60 OFFAnker Prime 14-in-1 Thunderbolt 5 Dock for $339.99
Wall Chargers

Nano USB-C Wall Charger - $27.99, down from $39.99
6-in-1 USB-C Power Strip - $59.99, down from $109.99
140W 4-Port GaN USB-C Charger - $89.99, down from $99.99
14-in-1 Prime Thunderbolt 5 Dock - $339.99, down from $399.99
Wireless Chargers

3-in-1 MagSafe-Compatible UFO Charger - $69.99, down from $89.99
3-in-1 MagSafe-Compatible Foldable Charging Station - $79.99, down from $109.99
3-in-1 MagSafe-Compatible Charging Cube - $79.03, down from $129.99
3-in-1 Prime Wireless Charging Station - $104.99, down from $149.99
Prime MagSafe-Compatible 3-in-1 Charging Station - $149.99, down from $229.99
Portable Chargers

SOLIX C300 Power Station with Lantern - $169.99, down from $249.00
Prime Power Bank 26,250 mAh - $199.99, down from $229.99
SOLIX C1000 Gen 2 Portable Power Station - $428.99, down from $799.00
SOLIX C2000 Gen 2 Portable Power Station - $749.00, down from $1,499.00

If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.



Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "Amazon Big Spring Sale Last Chance Deals: AirPods Pro 3, MacBook Pro, and More Best-Ever Prices" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
A previously unknown vulnerability in OpenAI ChatGPT allowed sensitive conversation data to be exfiltrated without user knowledge or consent, according to new findings from Check Point. "A single malicious prompt could turn an otherwise ordinary conversation into a covert exfiltration channel, leaking user messages, uploaded files, and other sensitive content," the cybersecurity company said inView the full article
Apple today provided developers with the first betas of upcoming watchOS 26.5, tvOS 26.5, and visionOS 26.5 betas for testing purposes. The software comes a week after Apple launched the 26.4 versions of each platform.


The software updates are available through the Settings app on each device, and because these are developer betas, a free developer account is required.

There's no word on what's in the software as of yet. watchOS, tvOS, and visionOS often get few features in each new beta, with updates primarily focusing on bug fixes and performance improvements.

Apple will likely provide public beta testers with access to the tvOS 26.5 and watchOS 26.5 betas in April, but visionOS 26.5 will remain limited to developers.Related Roundups: Apple TV, Apple Vision Pro, watchOS 26Buyer's Guide: Apple TV (Don't Buy), Vision Pro (Buy Now)Related Forums: Apple TV and Home Theater, Apple Vision Pro, Apple Watch
This article, "Apple Releases First watchOS 26.5, tvOS 26.5 and visionOS 26.5 Betas" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple today provided the first beta of an upcoming macOS Tahoe 26.5 update to developers for testing purposes, with the update coming six days after Apple launched ‌macOS Tahoe‌ 26.4.


Developers can download the ‌macOS Tahoe‌ 26.5 update by opening up the System Settings app, selecting the General category, and then choosing Software Update. Beta Updates will need to be enabled, and a free developer account is required.

‌macOS Tahoe‌ 26.5 could introduce some Apple Intelligence Siri features, though recent rumors suggest the new capabilities will be held until iOS 27.

The beta is limited to developers right now, but a public beta is expected in the next week or two.Related Roundup: macOS TahoeRelated Forum: macOS Tahoe
This article, "First macOS Tahoe 26.5 Beta Now Available for Developers" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple today seeded the first betas of upcoming iOS 26.5 and iPadOS 26.5 updates to developers for testing purposes, with the software coming a week after Apple released iOS 26.4 and iPadOS 26.4.


Registered developers can download the betas from the Settings app on the iPhone or iPad by going to the General section and selecting Software Update.

It's possible iOS 26.5 and iPadOS 26.5 will include new Apple Intelligence Siri features, but it's sounding like those capabilities are going to be held until iOS 27.

Apple is planning to implement end-to-end encrypted RCS messages at some point, so that functionality could come in iOS 26.5, plus Apple has been planning to implement notification forwarding and proximity pairing for third-party wearables in the EU.

It's not known what other features might be included in iOS 26.5, but we'll provide updates when we've installed the new software. Related Roundups: iOS 26, iPadOS 26Related Forum: iOS 26
This article, "Apple Seeds First iOS 26.5 and iPadOS 26.5 Betas to Developers" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
While it felt inevitable, it was still big news last week when Apple announced that the Mac Pro was discontinued after a nearly 20-year run.


Apple discontinued a lot more than just the Mac Pro this month, though, as outlined below.

Mac Studio with 512GB of RAM

Apple no longer allows customers to configure the Mac Studio with 512GB of RAM, with the maximum amount of unified memory now limited to 256GB.


Apple has not publicly commented on removing the 512GB of RAM option, but it was likely because of the ongoing memory chip shortage, which has resulted in the price of RAM chips skyrocketing. It is possible that Apple could allow the Mac Studio to be configured with 512GB of RAM again one day, once supply catches up to demand.

14-inch MacBook Pro with 512GB of Storage

The new 14-inch and 16-inch MacBook Pro models with M5 Pro and M5 Max chips start with at least 1TB of storage, and Apple also decided to bump the minimum storage for the lower-end 14-inch MacBook Pro with the M5 chip to 1TB.


This means the 14-inch MacBook Pro with the M5 chip and 512GB of storage was discontinued.

Keep in mind that the 14-inch MacBook Pro now starts at $1,699, whereas a configuration with 512GB of storage previously started at $1,599.

Pro Display XDR

Apple discontinued the Pro Display XDR this month after releasing the Studio Display XDR, which effectively replaces it.


Released alongside the 2019 Mac Pro, the Pro Display XDR featured a 32-inch screen with LED backlighting, 6K resolution, a 60Hz refresh rate, P3 wide color, up to 1,600 nits of brightness, one Thunderbolt 3 port, and three USB-C ports. In the U.S., the monitor started at $4,999, but the optional Pro Stand cost $999 extra.

The Studio Display XDR has a lot of superior features compared to the Pro Display XDR, including mini-LED backlighting, a 120Hz refresh rate, up to twice as much display brightness, speakers, a camera, Thunderbolt 5 support, and a lower $3,299 starting price that includes a stand. However, it has a smaller 27-inch screen.

More

Of course, Apple also discontinued previous-generation versions of the iPad Air, MacBook Air, and many other products this month, as we already listed.Related Roundups: Studio Display, Mac Studio, MacBook ProBuyer's Guide: Displays (Buy Now), Mac Studio (Caution), MacBook Pro (Buy Now), Mac Pro (Don't Buy)Related Forums: Mac Accessories, Mac Studio, MacBook Pro, Mac Pro
This article, "Apple Discontinued More Than Just the Mac Pro This Month" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
New images of an alleged iPhone 18 Pro prototype and screen protectors have emerged from multiple sources, adding weight to earlier reports that Apple plans to significantly shrink the Dynamic Island later this year.


An X user called @earlyappleleaks recently shared an image purportedly showing a prototype ‌iPhone 18 Pro‌ with a noticeably smaller ‌Dynamic Island‌. In the picture, the flashlight of another iPhone is held over the corner of the display, revealing a small circular punch-hole cutout under the display, which is presumably a relocated Face ID sensor.

Moving TrueDepth camera components under the display would allow the ‌Dynamic Island‌ cutout itself to shrink considerably, and multiple earlier reports suggested ‌Face ID‌ will be the first component Apple plans to move beneath the screen. "Early Apple" is a relatively new account of unknown origin with no established track record, so the image should be taken with caution.



Separately, the leaker known as "Ice Universe," who has a decent track record for Apple leaks, shared an image of an alleged ‌iPhone 18 Pro‌ screen protector showing dramatically smaller cutouts compared to the current design. The protector images appear to corroborate the alleged prototype photo, and similar images have since been proliferating across Chinese social media.

The leaker known as "Majin Bu," citing the accumulating evidence, claims the ‌Dynamic Island‌ is set to shrink by as much as 35% compared to the iPhone 17 Pro. The fact that these accessories are starting to be produced suggests that manufacturers have a high level of confidence that the upcoming device will feature a smaller ‌Dynamic Island‌.



There has been some disagreement among sources on the smaller ‌Dynamic Island‌, with some reports casting doubt on the rumors, but most of the evidence now appears to support the change.

Ice Universe previously reported that the smaller ‌Dynamic Island‌ would be adopted across the full iPhone 18 lineup, not just the Pro models, while bezels on next-generation devices will apparently remain identical to those on the iPhone 17 series.

Apple is expected to announce the ‌iPhone 18 Pro‌ models alongside its first foldable iPhone this fall, with the standard ‌iPhone 18‌ arriving early next year as part of a new split-cycle launch strategy.Related Roundups: iPhone 18, iPhone 18 ProTags: Dynamic Island, Ice Universe, Majin BuRelated Forum: iPhone
This article, "iPhone 18 Pro's Smaller Dynamic Island Revealed" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
A new campaign has leveraged the ClickFix social engineering tactic as a way to distribute a previously undocumented malware loader referred to as DeepLoad. "It likely uses AI-assisted obfuscation and process injection to evade static scanning, while credential theft starts immediately and captures passwords and sessions even if the primary loader is blocked," ReliaQuest researchers ThassanaiView the full article
Just a few days after the iPhone Air received a big discount on Amazon in the United Kingdom, Best Buy today is offering customers in the United States a chance to get up to $200 off the smartphone.

Note: MacRumors is an affiliate partner with Best Buy. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

You can get the 256GB iPhone Air for $799.99 ($200 off) if you activate the device through Verizon or AT&T. The retailer is also offering an unlocked version of the 256GB iPhone Air for $899.99 ($100 off).

UP TO $200 OFFiPhone Air Starting at $799.99

These deals are available in Light Gold, Sky Blue, and Space Black for the 256GB model. You can also find similar discounts at up to $200 off the 512GB and 1TB models on Best Buy.

This is Best Buy's deal of the day for today, so we only expect it to be around until later tonight. If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.



Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "iPhone Air Discounts Continue With Up to $200 Off in Best Buy Flash Sale" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Some weeks are loud. This one was quieter but not in a good way. Long-running operations are finally hitting courtrooms, old attack methods are showing up in new places, and research that stopped being theoretical right around the time defenders stopped paying attention. There's a bit of everything this week. Persistence plays, legal wins, influence ops, and at least one thing that looks boringView the full article
What is really slowing Tier 1 down: the threat itself or the process around it? In many SOCs, the biggest delays do not come from the threat alone. They come from fragmented workflows, manual triage steps, and limited visibility early in the investigation. Fixing those process gaps can help Tier 1 move faster, reduce unnecessary escalations, and improve how the entire SOC responds under pressureView the full article
Apple's Irish subsidiary has been fined £390,000 ($516,110) by the UK government for making payments to a sanctioned Russian streaming platform in 2022.


The Office of Financial Sanctions Implementation (OFSI) said that Apple Distribution International Ltd. (ADI), the Republic of Ireland-based entity Apple uses to pay App Store developers, made two payments totaling £635,618 to Okko LLC, a Russian video streaming platform, in June and July 2022, at a time when Okko was subject to UK sanctions following Russia's invasion of Ukraine. The payments were routed through UK banks.

ADI voluntarily disclosed the payments to OFSI, and the agency confirmed that no breach had been attributed to Apple Inc. itself, only to the subsidiary. In a statement, Apple said:



OFSI said Apple had relied on corporate affiliates to handle payment processing, sanctions screening, and due diligence, but that companies are ultimately responsible for ensuring their own compliance with financial sanctions rules. Tags: Ireland, Russia, United Kingdom
This article, "Apple Subsidiary Fined Over $500,000 for Breaching Russian Sanctions" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Security researchers are warning that applications using AI frameworks without proper safeguards can expose sensitive information in basic, yet critical, non-AI ways.
According to a recent Cyera analysis, widely used AI orchestration tools, LangChain and LangGraph, are vulnerable to critical input validation flaws that could allow attackers to access sensitive enterprise data.
In a recent blog post, the cybersecurity company outlined how a newly discovered flaw in LangChain, along with two similarly-themed previously reported ones, can be exploited to retrieve different categories of data, including local files, API keys, and stored application state. “The biggest threat to your enterprise AI data might not be as complex as you think,” Cyera researchers said in the post.
The issues often hide in the “invisible, foundational plumbing” that connects AI to business workflows, the researchers argued, adding that all the flaws are now fixed by the tools’ maintainers but need to be applied immediately across integrations to avoid impact. Path Traversal becomes the latest in a series of input validation bugs
Cyera disclosed a new path traversal vulnerability and analyzed it alongside two previously reported flaws, showing how each maps to specific components in LangChain and LangGraph and enables access to a different class of data.
The path traversal issue, tracked as CVE-2026-34070, arises from how a LangChain feature resolves file paths when loading prompt templates or external resources. By supplying crafted input, an attacker can traverse directories and read arbitrary files from the host system, potentially exposing configuration files and credentials. The flaw received a severity rating of CVSS 7.5 out of 10.
One of the older flaws, an unsafe deserialization flaw identified as  CVE-2025-68664, stemmed from the handling of serialized objects within the LangChain framework. The issue lets an application process untrusted serialized data, allowing an attacker to inject malicious payloads interpreted as trusted objects, enabling access to sensitive runtime data such as API keys and environment variables. The flaw had received a critical 9.3/10.0 rating when it was disclosed in December 2025.
The other older flaw, an SQL injection vulnerability in LangGraph’s checkpointing mechanism, was found to allow manipulation of backend queries. Exploiting this flaw could grant access to stored application data, including conversation history and workflow state tied to AI agents. Tracked with the CVE ID CVE-2025-67644, the flaw was assigned a high-severity rating of CVSS 7.3 out of 10.
Together, Cyera researchers pointed out, the three flaws (along with others of the kind) highlight how widely used AI frameworks can expose different layers of enterprise data, effectively turning LangChain and LangGraph into a new attack surface.
Back to the basics
The exploit technique described in the report relies on insufficient input validation and unsafe handling of data across key integration points in AI pipelines. In each case, attacker-controlled input, whether through prompts, serialized payloads, or query parameters, can influence how the framework interacts with the filesystem or database.
For the most recent path traversal bug, the risk is driven by a lack of strict path validation and sandboxing. Mitigations include enforcing allowlists for file access and restricting directory boundaries. In the case of deserialization, the issue lies in treating external data as trusted.
Cyera recommends avoiding unsafe deserialization methods and ensuring that only validated, expected data structures are processed. For SQL injection, the company recommended using parameterized queries and strengthening input sanitization. Across all three cases, the guidance aligned with established secure coding practices.

View the full article
Apple is preparing to launch an iMac featuring an OLED panel with higher brightness, according to ZDNet Korea.


Apple has apparently requested that Samsung Display, LG Display, and other suppliers produce 24-inch OLED panel samples suitable for a future ‌iMac‌ model using their mass-production facilities. This would be the biggest ever OLED display offered on an Apple device.

Specifically, Apple asked suppliers for 24-inch OLED panels with 600 nits of brightness and around 218 pixels-per-inch (PPI).By comparison, the current ‌iMac‌ features a 24-inch LCD display with 500 nits of brightness and 218 PPI.

Samsung Display is expected to respond first, planning to produce 220 PPI samples on its large-format Quantum Dot OLED (QD-OLED) production lines and ship them to Apple in the second half of 2026. This would be a considerable step up from the 160 PPI QD-OLED panels it currently mass-produces for monitors. SEMES announced earlier this month that it had shipped inkjet printing equipment to Samsung capable of supporting the higher pixel density.

LG Display's samples are expected to follow those of Samsung, and may not be as bright due to using color filters rather than a quantum dot color conversion layer. Instead of using its existing 4-stack W-OLED panels, the company reportedly plans to compete using a still-in-development 5-stack design that adds a green layer for better brightness. LG Display is also developing "eLEAP" technology, referred to internally as "fLEAP," which eliminates the need for Fine Metal Masks (FMM), for a selection of future Apple device displays, including the ‌iMac‌ and MacBook.

Apple purportedly wants to launch the OLED ‌iMac‌ in 2029 or 2030. For now, the ‌iMac‌ is due an upgrade to the M5 chip. Apple last refreshed the machine with the M4 chip and a 12MP Center Stage camera in October 2024. Related Roundup: iMacTag: OLEDBuyer's Guide: iMac (Don't Buy)Related Forum: iMac
This article, "Apple Reportedly Planning to Launch iMac With OLED Display" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Anthropic didn’t intend to introduce Mythos this way. Details of what it calls its most capable AI model yet surfaced through a data leak in its content management system (CMS), revealing a LLM with sharply improved reasoning and coding skills.
The data leak, which was the result of the company’s staffers inadvertently exposing material about the LLM, including a draft blog post about it, via a publicly accessible data repository, was first identified by independent security researchers last week.
Following disclosure of the issue, Anthropic restricted public access to the data store, only to later attribute the exposure to a configuration error in its CMS and confirm the existence of the model to Fortune, which was the first to report the leak.
Apple-focused leaker M1Astra also flagged the exposure, archiving a copy of a draft Anthropic blog post about Mythos on X before access was restricted.
In that draft, Anthropic itself struck a cautious tone, signaling concern about the model’s potential implications on cybersecurity.
“In preparing to release Claude Mythos, we want to act with extra caution and understand the risks it poses — even beyond what we learn in our own testing,” the company wrote, adding that it is particularly focused on assessing near-term cybersecurity risks.
The blog further stated that Anthropic wants to seed Mythos across enterprise security teams first and has already been testing the model’s cybersecurity prowess with a “small number of early access customers.”
The rationale seems straightforward: if today’s models can already identify and even help exploit software vulnerabilities, a more capable system like Mythos could significantly accelerate both discovery and misuse — raising the stakes for defenders and attackers alike.
Pareekh Jain, principal analyst at Pareekh Consulting, says Mythos could cut both ways for CISOs and enterprise security teams, compressing the gap between cyber offense and defense.
While at one end, models like Mythos could transform security by automating vulnerability discovery, continuous red-teaming, faster triage, and large-scale threat hunting areas, on the other hand, it could make cyberattacks easier by letting AI agents act autonomously with high skill, Jain said.
That risk for CISOs is not theoretical, Jain added, as earlier-generation models were quickly repurposed into tools for developing malware.
The risk is even higher with Mythos because of its capabilities like “recursive self-fixing,” Vladimir Belomestnov, senior technical specialist at HCLTech, wrote in a post on LinkedIn.
“The leaked files highlight a capability for the AI to autonomously identify and patch vulnerabilities in its own code. Even if this is currently limited to assisted exploitation, it suggests a narrowing gap between human and machine software engineering,” Belomestnov wrote.
However, Anthropic appears to be some distance from a full release of the model.
“Mythos is also a large, compute-intensive model. It’s very expensive for us to serve, and will be very expensive for our customers to use. We’re working to make the model much more efficient before any general release,” the copy of the draft blog post reads.
What is clear, however, is that the company is already planning a phased rollout targeting cybersecurity use cases.
“We’ll be slowly expanding access to Claude Mythos to more customers using the Claude API over the coming weeks. Since we’re particularly interested in cybersecurity uses, that’s where we aim to expand the EAP initially,” the company wrote in the draft blog post.
There is another copy of the blog post, which also names the model as Capybara. Anthropic hasn’t made it clear what the final name of the model will be.
The indecision over the model’s name, though, didn’t stop it from rattling markets last week. Shares of cybersecurity vendors, including CrowdStrike, Palo Alto Networks, Zscaler, and Fortinet, fell as investors assessed what more capable models within Claude Code Security could mean for the competitive landscape.
However, Avasant’s research director, Gaurav Dewan, was more optimistic about Mythos’ impact on vendors: “Powerful models will not replace cybersecurity platforms”.
Rather, Dewan sees vendors increasingly embedding frontier models from Anthropic and OpenAI and others into their stacks for vulnerability discovery, code and cloud posture management, and threat investigation and response automation.
“One can expect partnerships and controlled integrations, not disintermediation. Vendors that already own telemetry, workflows, and enforcement will benefit most,” Dewan added.
View the full article
Secrets sprawl isn't slowing down: in 2025, it accelerated faster than most security teams anticipated. GitGuardian's State of Secrets Sprawl 2026 report analyzed billions of commits across public GitHub and uncovered 29 million new hardcoded secrets in 2025 alone, a 34% increase year over year and the largest single-year jump ever recorded. This year's findings reveal three core trends: AI hasView the full article
Recent breaches suggest attackers are shifting beyond traditional endpoints to target application programming interfaces (APIs). But typical perimeter protections can completely miss this vector.
“We used to talk about defense-in-depth and endpoint protection,” says Sean Murphy, CISO at BECU, a nationwide credit union. “That morphed into identity, and now the API is the new perimeter.”
BECU’s backend architecture is heavily based on microservices and APIs, making this an important — and widening — surface to secure. “They’re your front door, and if you don’t know what the inventory of your APIs is, the attackers surely will find them.”
With API-first development on the rise, API portfolios have quietly ballooned throughout large enterprises. Conservative estimates place the average number of APIs within a large company at 250 to 500, but it’s not uncommon for enterprises to run thousands.
These useful interfaces often connect backend systems, partners, and customer data. Yet their access is frequently ungoverned, insecure, or misconfigured. A 2025 report from Salt Security found that nearly one in three organizations experienced an API breach in the past 12 months. They also found 95% of attacks originate from authenticated sources, often using stolen API keys or credentials.
Traditional security approaches, such as endpoint detection and response (EDR) and web application firewalls (WAFs), often miss these attacks because they lack the context needed to detect business-logic abuse. To these systems, API abuse often looks like normal, valid traffic.
“EDR and WAFs were built for yesterday’s problems: malware on endpoints and basic web exploits,” says Elliott Franklin, CISO at Fortitude Re, a reinsurance company. “Without a deep understanding of business logic and identity context, traditional tools miss credential stuffing, token theft, or data scraping.”
CISOs say addressing the problem at scale requires new tooling, practices, and governance frameworks. It’ll also take an identity-aware shift to hedge for tomorrow’s problems, which revolve around the use of APIs in agentic AI.
APIs are the new attack surface
APIs drive the majority of internet traffic, and cybercriminals are taking advantage. In the 2024 Optus breach, attackers exposed 9 million customer records due to broken API access control. Over the past two years, API exploits have also hit WhatsApp, Trello, 23andMe, Avelo Airlines, and Volkswagen.
These threats have many CISOs viewing APIs as a primary attack surface. “APIs have become the most critical and rapidly expanding attack surface for the modern enterprise,” says Senthil Subramaniam, global CISO and assistant VP at Infinite Computer Solutions, an IT services company. “Many API security incidents arise from flaws like injection attacks and broken authorizations.”
A key contributor to the rise in exploits is the ubiquity of APIs, which now act as connective tissue across enterprises, linking SaaS platforms, cloud workloads, and internal applications. “That ubiquity makes them a natural focus for attackers,” says Fortitude Re’s Franklin.
The openness of APIs and their proximity to sensitive data and critical systems also make them attractive to attackers. “APIs have absolutely become one of the primary attack surfaces today,” says James Faxon, a principal advisor at Risk & Insight Group and previously CISO of NukuDo, a cybersecurity talent development company. “In many environments, APIs now represent a much more direct path to business systems than endpoints ever did.”
“An attacker doesn’t need to compromise a laptop or deploy malware to gain leverage,” adds Faxon. By simply obtaining a token, he explains, an attacker could exploit a misconfiguration or flawed authorization logic to move laterally and extract data without triggering traditional endpoint controls.
To make matters worse, many organizations lack proper API inventories, making it easy for APIs to fall outside normal oversight. A 2023 study from Enterprise Management Associates found that roughly 70% of enterprises have just 30% of their APIs documented. That figure does not include shadow APIs outside normal security governance.
“Most teams don’t have clear visibility into how their APIs are working behind the scenes,” says Chaim Mazal, chief AI and security officer at cloud security company Gigamon. Without a clear understanding of how APIs communicate and the data they expose, developers can inadvertently create exploitable attack paths.
Others see growing urgency amid AI-driven shifts. “APIs may not yet be the primary attack surface, but it’s becoming more urgent in recent years,” says Andreas Gaetje, CISO at Körber, a provider of intelligent manufacturing and supply chain solutions, who notes hyperautomation and agentic AI make API security more pressing.
Still, the number of reported API security incidents doesn’t outweigh credential theft, phishing, and endpoint compromise, notes Mark Dorsi, CISO at Netlify, a cloud computing company. But the threat level is changing as autonomous systems gain higher-value capabilities.
“As agentic systems increasingly interact with services through APIs, including Model Context Protocol, agent-to-agent workflows, and automated integrations, APIs will see a material uplift in both usage and exposure,” says Dorsi.
Legacy defenses can’t keep up
Traditional perimeter-based defenses are often insufficient against API-layer attacks. Traditional security defenses, such as EDR, XDR, and WAF, “primarily focus on clients, hardware, and software endpoints, looking at IP-based attack vectors,” explains BECU’s Murphy. “APIs bring us into the world of business logic and runtime types of issues.”
Others agree that legacy defenses leave a gap for API-first architectures. For example, EDR misses east-west traffic, content within API flows, and gateway-level attacks, while WAFs mainly detect malicious payload patterns and miss important context around authorization, identity, and caller intent, says Infinite Computer Solutions’ Subramaniam.
“API attacks often exploit business logic, not payload patterns,” he adds. “They exploit broken authentication or authorization, abuse of legitimate endpoints, excessive data exposure, and mass enumeration.” These requests often appear valid individually, but together form a malicious sequence.
“API attacks are typically logical, valid requests made with stolen or over-permissioned credentials that abuse business logic rather than breaking HTTP rules,” Risk & Insight Group’s Faxon says. For example, an attacker might abuse a long-lived, over-permissioned token for a financial API. “API abuse can often blend into normal traffic until the damage is already done,” he adds.
Netlify’s Dorsi agrees. “Traditional controls lack the context to understand intent, misuse, or abuse across API calls,” he says.
How CISOs are responding
CISOs are deploying a range of strategies to mitigate API threats. This goes beyond buying new-fangled cloud-native tools — it requires an API governance strategy involving organization-wide policies, API inventories, automated checks, and strong identity and access control.
For example, BECU has implemented an API governance structure, adopting a single policy for all developers. “We started building in governance before the technology was leveraged,” explains Murphy. This is critical to reduce the possibility for misconfigurations, he says, which remains a leading risk in the OWASP Top 10 API Security Risks.
In large enterprises, shared security guidance helps maintain least-privilege access and avoid exposing internal secrets. While all engineers and API builders are subject to BECU’s internal policy, it’s continually evolving, Murphy adds.
“Strong API governance is key,” agrees Franklin. “At Fortitude Re, we’re building API security into our broader identity and access management strategy.” A key area of focus is tracing non-human identities, which helps inventory and classify APIs in use. “The biggest gap I see is shadow APIs,” he adds.
To reduce that risk, visibility is critical. Körber’s Gaetje recommends taking proactive steps to enhance visibility by cataloging your surface area. “The most important activity is to gain visibility into exposed APIs,” he says. “What you cannot see, you cannot control.”
For Faxon, security begins with a full inventory of what APIs exist, who owns them, and what data they expose. “The most effective organizations treat APIs as first-class security assets,” he says.
In practice, implementing holistic API governance involves multiple tools and developer touchpoints. Infinite Computer Solutions uses specialized API gateways for processing traffic and adopts advanced security features to run risk assessments, Subramaniam says.
“Our security tools are also embedded into the CI/CD pipeline,” he adds, noting that API specifications must pass automated security validation checks, which helps ensure compliance with security standards.
Dorsi says Netlify takes a disciplined approach to understanding how APIs are used, emphasizing strong authorization maturity through practices like limiting scopes, rotating credentials, and continually reassessing trust.
“We treat APIs as critical infrastructure, not just plumbing,” he says. “Strong identity and authorization design is foundational. That means explicit ownership models, least privilege scopes, and consistent auth patterns across APIs.”
All in all, CISOs indicate that API security requires deep forethought. “We treat APIs as part of our operational surface, not just our software stack,” says Faxon. “Every API we build is documented, threat-modeled, and owned, with least-privilege access as the default and permissions continuously re-evaluated as systems evolve.”
AI exacerbates preexisting risks
Another driver of today’s API vulnerabilities is the rise of AI. While large language models (LLMs) and coding assistants empower software engineers, they also empower adversaries, complicating the API security landscape and requiring new approaches beyond traditional endpoint defenses.
“AI is fundamentally reshaping the threat landscape,” says Gigamon’s Mazal. “AI has enabled the democratization of offensive tooling, meaning that anyone, regardless of skill level, can now exploit API weaknesses without writing a single line of code.” With a growing API attack surface and lower barriers, organizations should assume a breach posture, he adds.
For instance, AI can amplify an attacker’s ability to discover and exploit API vulnerabilities like misconfigurations or over-permissioning, says Murphy. This reality has influenced BECU to take a deliberate approach to API visibility, deploying monitoring tools to discover and track its entire API catalog.
Another element of BECU’s policy requires developers to use a sanctioned API gateway with enforced security controls. “We make it as difficult as possible for an adversary to exploit us in any shape or form,” says Murphy, adding they apply identity and access control, monitoring, and alerting, regardless of API type.
“Internal doesn’t mean an external adversary can’t access it,” adds Murphy. As such, BECU is vigilant with all APIs, regardless of whether they’re internal APIs used for backend system-to-system communication or external-facing APIs that power customer interactions on mobile banking apps.
Beyond amplifying external threats, AI is increasingly embedded within enterprise software stacks, introducing a new vector to cover. A 2025 study from Software Finder found that 56% of IT leaders expect their software stack to be AI-powered by 2030. As agentic AI begins to consume APIs, the risks around unauthorized access and unintended sensitive data exposure rise as well.
As Subramaniam explains, “AI agentic systems, which autonomously access APIs to perform tasks, complicate API security by expanding the attack surface, enabling dynamic and unpredictable interactions, and amplifying existing vulnerabilities through high-speed, automated actions.” Preventing unauthorized access by agents will require more granular control and more time-bound role-based access control (RBAC).
Securing third-party tool usage
Other API risks stem from the broader software supply chain. In 2025, JPMorganChase CISO Patrick Opet published an open letter about diminishing standards for SaaS providers, writing that the SaaS delivery model is “quietly enabling cyber attackers” and creating a “substantial vulnerability that is weakening the global economic system.”
Third-party API consumption can open an organization to sensitive data exposure. According to Gartner, 71% of organizations use APIs provided by third parties such as SaaS vendors, making third-party APIs another major risk vector.
“For third-party APIs, we already require vendor security reviews and contractual security assurances,” says Fortitude Re’s Franklin, noting that this is part of a broader SaaS security program that provides visibility into the SaaS systems employees use.
The onus, however, is also on the consuming organization to implement better token-handling processes to secure API connections to SaaS platforms. This is especially important, as developers are often reckless with API keys and secrets. In 2024, Escape discovered 18,000 API secrets and tokens floating around on the open web.
Some CISOs are actively addressing this. “Our team centralizes and encrypts all third-party credentials — API keys, tokens — within the API management layer,” says Subramaniam. “We never distribute raw credentials to our internal development teams.”
Maintaining safe integrations requires ongoing discipline, too. “We apply the same rigor to third-party APIs: Credentials are tightly scoped, regularly rotated, and monitored for behavioral drift,” adds Faxon. “If an integration begins acting outside its expected pattern, it’s treated as a security event, not a technical anomaly.”
For Murphy, avoiding third-party API gaps requires careful vendor evaluation and tooling decisions. “You trust but verify.” The same intentions must be applied to assessing API management tools, too — maintaining too many niche products increases complexity and brings scalability challenges, and requires stitching them together to obtain a cohesive API security view.
“The more complexity, and the more differentiated monitoring, the higher risk you’re going to mess up,” says Murphy. “But, diversity in the platform is good, too, since compartmentalizing can help with a tiered aspect to security oversight.” One top item in BECU’s roadmap for 2026 is automating between their exposure management platform, vulnerability management platform, and security operations center, he adds.
API standards must evolve
As APIs become a core aspect of modern business operations, their security risks are becoming more pronounced. “Every API misconfiguration is not just a security gap,” says Faxon. “It’s a business decision being executed at machine speed, without human oversight.”
Responding to this new era of threats requires moving beyond traditional perimeter defenses. Organizations will need new approaches to secure non-human identities — machines, bots, and agents that increasingly interact with systems and data at a business application level.
“The real shift isn’t just from endpoints to APIs,” says Franklin. “It’s from human-driven access to non-human identities like APIs, service accounts, and machine-to-machine connections.” Although these identities now outnumber humans in most enterprises, he adds, they lack rigorous governance, requiring rethinking to secure this new attack surface.
The challenge is further complicated by the diversity of API environments. APIs may be distributed across multiple clouds, platforms, and locations, each with different security controls. As Mazal explains, “The challenge is that as development accelerates and the pace of innovation increases, not all APIs follow the same set of controls.”
Edge-based IoT APIs, for instance, may not allow the same types of traffic enforcement found in centralized environments. “The resulting gaps in interconnectivity make it difficult to manage APIs holistically and consistently across the ecosystem.” For him, real-time threat monitoring and visibility of network telemetry are still essential to correct visibility gaps.
Ultimately, CISOs shouldn’t abandon traditional security tools. But they do need to extend security deeper into the development and design process, embedding checks early, strengthening identity-based authorization, and improving real-time visibility into business-layer interactions.
By combining governance, identity controls, and visibility, CISOs can adequately prepare for the security realities of an API-driven world.
View the full article
Cybersecurity researchers have discovered a remote access toolkit of Russian-origin that's distributed via malicious Windows shortcut (LNK) files that are disguised as private key folders. The CTRL toolkit, according to Censys, is custom-built using .NET and includes various executables" to facilitate credential phishing, keylogging, Remote Desktop Protocol (RDP) hijacking, and reverse tunnelingView the full article
Three threat activity clusters aligned with China have targeted a government organization in Southeast Asia as part of what has been described as a "complex and well-resourced operation." The campaigns have led to the deployment of various malware families, including HIUPAN (aka USBFect, MISTCLOAK, or U2DiskWatch), PUBLOAD, EggStremeFuel (aka RawCookie), EggStremeLoader (aka Gorem RAT), MASOLView the full article
Data Security Posture Management erfordert nicht nur die richtigen Tools, sondern auch eine entsprechende Vorbereitung.
Foto: Rawpixel.com | shutterstock.com
Cloud Computing ist von Natur aus dynamisch und flüchtig: Daten können schnell und einfach erstellt, gelöscht oder verschoben werden. Das sorgt dafür, dass auch die Cloud-Angriffsfläche sehr dynamisch ist – was Schutzmaßnahmen erschwert. Ein lästiges Problem stellt dabei insbesondere dar, sensible Daten innerhalb von Cloud-Umgebungen aufzuspüren. An dieser Stelle kommt Data Security Posture Management – kurz DSPM – ins Spiel.
Was ist Data Security Posture Management?
Im Bereich DSPM wurden in den vergangenen Jahren diverse Tools entwickelt, die dabei unterstützen, sowohl bekannte als auch unbekannte Daten zu erkennen, zu strukturieren und mit Blick auf Security und Datenschutzrisiken zu managen. Data Security Posture Management Tools können Sicherheitsentscheidern und ihren Teams dabei einen umfassenden Blick auf den Datenbestand des Unternehmens ermöglichen.
Das könnte Ihnen eventuell bekannt vorkommen – dennoch handelt es sich bei DSPM nicht um einen Abkömmling von Data Loss Prevention (DLP). Der wesentliche Unterschied besteht darin, dass DSPM-Tools nicht darauf “warten”, dass Daten gestohlen oder exfiltriert werden. DSPM-Produkte sind darauf ausgerichtet, Daten zu finden – unabhängig davon, wo sie sich befinden und ob diese Speicherorte gut dokumentiert oder unstrukturiert sind. Dabei zielen Data Security Posture Management Tools insbesondere darauf ab, sogenannte “Schattendaten” aufzuspüren. Dabei handelt es sich zum Beispiel um Datenelemente, die von Entwicklern oder Backup-Prozessen erstellt wurden oder veraltete Repositories, die in längst vergessenen, nicht mehr aktualisierten Cloud-Containern schlummern. DSPM-Tools übernehmen dabei eine “Locator”-Funktion. Gefundene Probleme zu beheben, fällt eigentlich in den Bereich traditionellerer Toolsets – beispielsweise SOAR, SIEM oder CNAPP. Inzwischen werden solche “Fix it”-Tools jedoch zunehmend von den Anbietern im Bereich Data Security Posture Management integriert.
Daten aufzuspüren, ist allerdings nur der erste Schritt des DSPM-Prozesses: Sobald diese gefunden sind, müssen sie katalogisiert, ausgewertet und in verschiedenen Dashboards zusammengefasst werden. Das kann schwierig sein, wenn keine strikten Sicherheitskontrollen vorhanden sind. Deshalb werben die meisten DSPM-Anbieter auch damit, dass Kundendaten immer in der Umgebung des Kunden bleiben – was in der Regel bedeutet, dass nicht die eigentlichen Daten, sondern Metadaten gesammelt werden. Das heißt bei den Anbietern “agentenloser” oder API-Zugriff und hat den Vorteil, dass große Datenmengen schnell gescannt werden können, um die Art ihrer Nutzung und potenzielle Risikofaktoren zu verstehen.
Sobald die Daten entdeckt und die Metadaten gesammelt sind, besteht der nächste Schritt darin, regelmäßige Scans durchzuführen, um festzustellen, welche Änderungen vorgenommen werden. Die Betonung liegt dabei auf “regelmäßig”. Ergänzend hinzu kommt schließlich auch noch das Thema Data Governance: DSPM-Tools klassifizieren nach Risiken und können im Zusammenspiel mit anderen Security-Tools Richtlinien durchsetzen und Probleme beheben.
Grundsätzlich bestehen DSPM-Tools aus mehreren Komponenten, darunter:
Agenten und “agentless Collectors” (nützlich, um On-Premises-Daten zu tracken),
ein zentralisiertes Management-Dashboard,
Scanner, die Datensammlungen erkennen und priorisieren,
Data-Lineage- und Usage-Karten sowie
Compliance Assessments.
Das übergeordnete Ziel von DSPM-Produkten besteht darin, umfassendere Cloud Security Posture Management (CSPM)-Tools zu ergänzen. Dabei fokussieren die DSPM-Werkzeuge jedoch nicht auf Cloud-Infrastrukturen selbst, sondern ausschließlich auf Daten sowie darauf, wie diese durch die verschiedenen Services genutzt werden. In vielen Fällen haben DSPM-Anbieter deswegen auch CSPM-Offerings im Portfolio.
DSPM-Produkte evaluieren
Tools im Bereich Data Security Posture Management zu evaluieren, erfordert erheblichen Personalaufwand, da viele verschiedene Aspekte der IT-Infrastruktur eines Unternehmens davon betroffen sind. Das ist allerdings auch gut so, schließlich wollen Sie ja auch alle relevanten Daten identifizieren. Hilfreich ist zu diesem Zweck insbesondere ein Plan, der die wichtigsten Daten nach Priorität ordnet. Ein weiterer Tipp: Dokumentieren Sie, wie die einzelnen DSPM-Tools ihre Data Map erstellen und wie diese – und die darauf basierenden Dashboards – zu interpretieren sind. Schließlich ist es bei der Entscheidung über ein DSPM-Tool essenziell zu wissen, welche spezifischen Cloud Services abgedeckt sind und welche (noch) nicht.
Was die Preisgestaltung von DSPM-Tools angeht, ist diese im Regelfall flexibel gestaltet und hängt von diversen Faktoren ab. Das Gros der Anbieter setzt auf entsprechende Abo-Modelle. Sicher ist, dass das teuer wird: Sie dürfen pro Jahr mit einer sechsstelligen Summe rechnen. Eine weitere Vorwarnung: Es wird Sie einiges an Zeit und Mühe kosten, den Umfang, das Integrationsniveau und die enthaltenen Schutzfunktionen der einzelnen DSPM-Angebote bis ins letzte Detail zu durchdringen.
Die besten DSPM-Tools
Im Folgenden haben wir die aktuell wichtigsten DSPM-Anbieter und ihre Offerings für Sie zusammengestellt.
Concentric Semantic Intelligence Cyera Data Security Platform IBM Guardium Onetrust Data Use Governance Palo Alto Networks Prisma Cloud DSPM Proofpoint DSPM Securiti Data Command Center DSPM Sentra Cloud-Native Data Security Platform Symmetry Modern Data Security Platform Tenable DSPM Varonis Data Security Platform Wiz DSPM (fm)
View the full article
This month, tech columnist David Pogue launched a new book called "Apple: The First 50 Years." On Amazon, you can get the new book for $33.80 in hardcover, down from $50.00, the best price we've seen so far on the book.

Note: MacRumors is an affiliate partner with Amazon. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

The book explores the first five decades of Apple's history, including interviews with 150 key people who shaped Apple into what it is today, like Steve Wozniak, John Sculley, Jony Ive, and more. The book is launching to coincide with Apple's upcoming 50th anniversary on April 1, 2026.

32% OFFApple: The First 50 Years for $33.80

Amazon's sale is on the hardcover version of the book, and provides an estimated April 3 delivery date for free delivery.

We've collected all of the best deals you can find during Amazon's Big Spring Sale in our dedicated article. If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.



Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "New Book 'Apple: The First 50 Years' Hits Record Low Price on Amazon" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Amazon is offering new all-time low prices on Apple's M5 Pro/M5 Max MacBook Pro, with up to $149 off select models without the need of a membership or clipping a coupon. This deal is part of Amazon's ongoing Big Spring Sale, which has major discounts on AirPods, iPads, and more.

Note: MacRumors is an affiliate partner with Amazon. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

Starting with the 14-inch models, you can get the 24GB/1TB M5 Pro MacBook Pro for $2,049.99, down from $2,199.00. This deal, along with all of the others we're tracking in this article, represent new best-ever prices on the brand new M5 Pro and M5 Max MacBook Pro.

$149 OFF14-inch M5 Pro MacBook Pro (24GB/1TB) for $2,049.99
$149 OFF14-inch M5 Pro MacBook Pro (24GB/2TB) for $2,449.99

We're also tracking similar steep discounts on the 16-inch models, including a few M5 Max options. These discounts reach up to $199 off original prices, and as of writing we're only tracking these deals on Amazon.

$149 OFF16-inch M5 Pro MacBook Pro (24GB/1TB) for $2,549.99
$199 OFF16-inch M5 Pro MacBook Pro (48GB/1TB) for $2,899.99

If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.



Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "Apple's M5 Pro/M5 Max MacBook Pro Reaches New All-Time Low Prices on Amazon" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple has been celebrating its upcoming 50th anniversary by hosting surprise performances and other events around the world over the past few weeks, and now Bloomberg's Mark Gurman has revealed details about the company's grand finale.


In a social media post, Gurman said Apple's celebrations will conclude this week with a finale at its Apple Park headquarters for employees.

A special guest will perform, according to Gurman. He hinted at Paul McCartney.

"Let me just say he's still going strong, was part of the British Invasion and [Steve] Jobs would've been ecstatic," Gurman said about the headliner.

As spotted by MacRumors contributor Aaron Perris, the Apple Park Visitor Center is closing early at 3 p.m. Pacific Time on Tuesday, March 31. However, it is our understanding that Apple's final celebration will not have a public component, with the event likely to be limited to Apple's corporate employees and other invitees.

It is unclear if any of Apple's retail employees will be invited to the event.

Apple turns 50 on April 1. It is unclear if the final celebration will be happening on March 31 or on April 1, but it should be quite the party.Tags: Apple 50th Anniversary, Apple Park, Mark Gurman
This article, "Apple's 50th Anniversary Finale Revealed" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Bloomberg's Mark Gurman has high expectations for Apple's first foldable iPhone.


In his Power On newsletter today, he said the foldable iPhone will be "the most significant overhaul in the iPhone's history."

"iPhone 4, iPhone 6 and iPhone X were clearly a big deal, but this is a whole new design," he said.

Like Samsung's Galaxy Z Fold 7, the foldable iPhone will reportedly open up like a book, providing users with a large inner screen for watching videos, playing games, and multitasking. iOS 27 is expected to be optimized for the foldable iPhone, allowing for apps to be open side-by-side and for other iPad-like multitasking functionality.

A few months ago, a report said the foldable iPhone will be equipped with a 7.7-inch inner display, and a 5.3-inch outer display. It was initially rumored that the device would have a virtually "crease-free" inner display, but it was later reported that Apple is using technology that "reduces the crease without eliminating it entirely."

Apple supply chain analyst Ming-Chi Kuo expects the foldable iPhone to have two rear cameras, one front camera, and a Touch ID power button instead of Face ID.

Apple will likely unveil the foldable iPhone in September this year, alongside the iPhone 18 Pro and iPhone 18 Pro Max. However, according to analyst Tim Long and Gurman, the foldable iPhone might ship later than the Pro models.

In the U.S., it has been estimated that the foldable iPhone may start at or above $1,999.

Related Roundup: iPhone FoldTags: Bloomberg, Mark Gurman
This article, "Apple Preparing 'Most Significant Overhaul in the iPhone's History'" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
In his Power On newsletter today, Bloomberg's Mark Gurman discussed Apple's upcoming AI plans in more detail. As he reported last week, this will apparently include a Siri app with a so-called "Extensions" feature across iOS 27, iPadOS 27, and macOS 27.


With the Siri app, the report said that iPhone, iPad, and Mac users would be able to interact with Apple's assistant in both text and voice modes. The app would also provide users with access to their past conversations with Siri. Overall, the Siri app would function similarly to the ChatGPT, Gemini, and Claude apps.

Siri has been able to tap into ChatGPT since iOS 18.2, and the "Extensions" feature would allow for additional third-party chatbots to be connected.

"Extensions allow agents from installed apps to work with Siri, the Siri app and other features on your devices," reads fine print in the Settings app on an internal, pre-release version of iOS 27, according to Gurman. The first developer beta of iOS 27 should be available in June, ahead of a wide release to all users in September.

In his newsletter, Gurman said the App Store will have a dedicated "Extensions" section.

"It will be a marketplace of sorts for third-party AI integrations," he wrote.

That fine print also seemingly confirms that Apple is indeed testing a Siri app.

It is unclear if the Siri app will be available on all iPhone models compatible with iOS 27, or if it will require an iPhone 15 Pro or newer with Apple Intelligence support.

Beyond supporting more third-party chatbots, Siri will receive a major overhaul on iOS 27, according to Gurman. He expects Siri to have a redesigned interface, which may involve the Dynamic Island, and there will apparently be a systemwide "Ask Siri" button in Apple's apps and a "Write with Siri" button above the keyboard.

Related Roundup: iOS 27Tags: Apple Intelligence, Bloomberg, Mark Gurman, Siri
This article, "iOS 27 Rumored to Feature All-New Siri App With 'Extensions' Feature" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Threat actors with ties to Iran successfully broke into the personal email account of Kash Patel, the director of the U.S. Federal Bureau of Investigation (FBI), and leaked a cache of photos and other documents to the internet. Handala Hack Team, which carried out the breach, said on its website that Patel "will now find his name among the list of successfully hacked victims." In a statementView the full article
Amazon today has the AirPods Pro 3 available for $199.00 during its Big Spring Sale, down from $249.00. This is a match of the all-time low price on the AirPods Pro 3, and one of the best all-around deals you can get during the Amazon's springtime Prime Day.

Note: MacRumors is an affiliate partner with some of these vendors. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

This model of the AirPods Pro launched in September 2025 and has 2x better Active Noise Cancellation than the previous generation, better audio quality, a revised fit that's meant to improve comfort and stability, Live Translation for in-person conversations, and heart rate sensing for workouts.

$50 OFFAirPods Pro 3 for $199.00

You can also get the AirPods 4 for $99.99 in the Big Spring Sale, down from $129.00, which is a solid second-best price. You can find all of the best discounts going on during this event in our dedicated post, which highlights discounts on AirTag, iPads, MacBooks, and more.

If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.



Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "AirPods Pro 3 Hit $199 Record Low Price in Amazon's Big Spring Sale" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
A recently disclosed critical security flaw impacting Citrix NetScaler ADC and NetScaler Gateway is witnessing active reconnaissance activity, according to Defused Cyber and watchTowr. The vulnerability, CVE-2026-3055 (CVSS score: 9.3), refers to a case of insufficient input validation leading to memory overread, which an attacker could exploit to leak potentially sensitive information. PerView the full article
Proofpoint has disclosed details of a targeted email campaign in which threat actors with ties to Russia are leveraging the recently disclosed DarkSword exploit kit to target iOS devices. The activity has been attributed with high confidence to the Russian state-sponsored threat group known as TA446, which is also tracked by the broader cybersecurity community under the monikers Callisto,View the full article
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical security flaw impacting F5 BIG-IP Access Policy Manager (APM) to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability in question is CVE-2025-53521 (CVSS v4 score: 9.3), which could allow a threat actor to achieve remote code execution. "When aView the full article
We're less than three months away from our first look at Apple's smarter, redesigned version of Siri. iOS 27, iPadOS 27, and macOS 27 will focus on ‌Siri‌ updates, and rumors about what we can expect are picking up.


There's a full chatbot version of ‌Siri‌ in the works, which will change the way that we use Apple's personal assistant. ‌Siri‌ will be more like Claude or ChatGPT, marking a major improvement in how ‌Siri‌ works and what it can do.

SiriBot

With ‌iOS 27‌, Apple will change the way that ‌Siri‌ works. Right now, ‌Siri‌ can answer common questions and complete simple tasks, but you can't engage it in a back and forth conversation, get help with multi-step tasks, or ask complicated questions.

Based on the current ‌Siri‌ chatbot rumors, ‌Siri‌ will be able to do all of that and more with the upcoming upgrade, and it will work like competing chatbots.

Apple wasn't initially planning to introduce a full chatbot like ChatGPT, but chatbots have become too popular for Apple to ignore. Simply adding AI capabilities to apps and features isn't enough for Apple to stay competitive with the way people have embraced chatbots for everything from web searches to coding help.

Google has already integrated Gemini into its Android device lineup, and chatbots like ChatGPT have hundreds of millions of weekly active users.

Standalone Siri App

When ‌Siri‌ evolves into a dedicated Apple-designed chatbot, it will launch alongside a standalone ‌Siri‌ app. The ‌Siri‌ app will look similar to apps from other companies like OpenAI, displaying a grid or list of past conversations.

‌Siri‌ will support text and voice-based conversations, and there will be options to favorite chats, search for content within chats, initiate new chats, and save chats. Conversations with ‌Siri‌ will apparently resemble iMessage conversations, with Apple adopting chat bubbles.

New conversations will start with suggested prompts on what users can ask ‌Siri‌.

Deep Integration

While there will be a standalone ‌Siri‌ app for back-and-forth conversations, ‌Siri‌ will be deeply integrated into Apple devices at the system level. ‌Siri‌ will be activated the same way as today, by speaking the ‌Siri‌ wake word or pressing on the side button of a Siri-enabled device. ‌Siri‌ will be able to respond to both voice and text-based requests.

Siri Capabilities

‌Siri‌ will be able to do much of what current chatbots can do, such as searching the web with visually rich results, providing summaries, and evaluating uploaded documents. The personal assistant will still be integrated into Apple devices. ‌Siri‌ integration will replace the current Spotlight search functionality, but Apple plans to keep and expand on ‌Siri‌ Suggestions. ‌Siri‌ Suggestions will have more access to user data to provide more relevant prompts.

Search the web for information
Generate images
Generate content
Summarize information
Analyze uploaded files
Use personal data to complete tasks
Ingest information from emails, messages, files and more
Analyze open windows and on-screen content to take action
Control device features and settings
Search for on-device content, replacing Spotlight

‌Siri‌ will also be integrated into Apple's core apps, including Mail, Messages, Apple TV, Xcode, and Photos. ‌Siri‌ will be able to search for specific images, edit photos, help with coding, make suggestions for TV shows and movies, and send emails.

New Look

Chatbot ‌Siri‌ will have an updated look to go along with the dedicated app. Activating ‌Siri‌ will have a new animation that prompts the user to search or ask a question, and Bloomberg's Mark Gurman says Apple is testing a version of ‌Siri‌ integrated into the Dynamic Island. Apple's test interface includes a glowing ‌Siri‌ icon and a "searching" label in the ‌Dynamic Island‌ while ‌Siri‌ is processing a request, and once done, ‌Siri‌ expands into a larger translucent panel with the results. Pulling down on the menu initiates an interface for a conversation.

Apple may also integrate an "Ask ‌Siri‌" button into the menus of other apps, giving users a way to send content directly to ‌Siri‌ alongside a request. The iOS keyboard could get a Write with ‌Siri‌ option that surfaces Writing Tools.

Memory

Claude, ChatGPT, and Gemini can remember past conversations and interactions, retaining a memory of the user. Apple is said to be discussing how much the ‌Siri‌ chatbot will be able to remember.

Apple may limit conversational memory to protect user privacy.

Third-Party Chatbot Integrations

Apple will allow third-party AI chatbots to integrate with Siri in ‌iOS 27‌. Apple already has a partnership with OpenAI that lets ‌Siri‌ hand questions off to ChatGPT, but that integration will expand to chatbots from other companies like Google and Anthropic.

An iPhone user with the Claude or Gemini app installed will be able to send questions from ‌Siri‌ to those chatbots, similar to how the OpenAI integration works today.

iPhone users will be able to choose which services they want to use inside ‌Siri‌ through a new "Extensions" option coming to the ‌Siri‌ and Apple Intelligence section in the Settings app.

Promised iOS 18 Features

‌Apple Intelligence‌ ‌Siri‌ features that were originally planned for iOS 18 will be introduced in ‌iOS 27‌, with ‌Siri‌ able to use personal data and context to answer queries. ‌Siri‌ will also be able to do more in and between apps, and will be able to see what's on the user's screen. Apple promised that those features would appear before the end of 2026.

Underlying Architecture and Servers

Apple has inked a deal with Google that will see Gemini powering upcoming versions of ‌Siri‌. Apple plans to use Gemini for the ‌Siri‌ chatbot and the other ‌Siri‌ features coming in ‌iOS 27‌.

"Apple and Google have entered into a multi-year collaboration under which the next generation of Apple Foundation Models will be based on Google's Gemini models and cloud technology," the two companies said in a statement in January.

The ‌Siri‌ chatbot specifically will rely on a custom AI model developed by the Google Gemini team. Gurman claims that the custom model is comparable to Gemini 3, and that it is more powerful than models Apple has developed in-house.

Apple and Google are also discussing running the ‌Siri‌ chatbot on Google's servers powered by Tensor Processing Units, probably because Apple doesn't yet have the infrastructure to handle chatbot queries from billions of active devices per day.

Launch Date

Apple is planning to introduce ‌Siri‌'s chatbot capabilities when it announces ‌iOS 27‌, iPadOS 27, and ‌macOS 27‌ at the June Worldwide Developers Conference, which starts on Monday, June 8. It is still unclear which ‌Siri‌ features Apple will be ready to unveil, and some could be held for future updates.Related Roundup: iOS 27Tags: Siri, Siri Chatbot
This article, "5+ Things to Know About the Siri Chatbot Coming in iOS 27" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
The European Commission is continuing to investigate the theft of data from its cloud infrastructure earlier this week.
On Thursday, the Commission revealed there had been an attack on its Europa.eu platform, offering few details, then, on Friday, security news site Bleeping Computer reported that the attack had involved the compromise of an account or accounts on Amazon Web Services (AWS).
The news site said an unnamed threat actor who claimed responsibility told it that they had stolen over 350GB of Commission data, and had shown the reporter several screenshots as evidence.
The hacker also said they will leak the data, rather than try to extort the Commission.
CSO asked a spokesperson for the Commission for comment, but no reply was received by our deadline.
For its part, Amazon said, “AWS did not experience a security event, and our services operated as designed.”
The Commission said the Europa websites remain available, and that its “swift response ensured the incident was contained and risk mitigation measures were implemented to protect services and data.” Its internal systems weren’t affected by the attack, the statement added.
The incident comes after the Commission revealed on January 30 that its central infrastructure for managing mobile devices had “identified traces of a cyber attack” which may have exposed names and mobile number of some staff.
IAM is hard
The lack of information about the attack makes it hard for security industry experts to comment. For one thing, it’s unknown how the breach of security controls happened: Did the threat actor take advantage of an unpatched software or hardware vulnerability, find a zero day, or did an employee fall for a phishing attack?
“There is very little info out,” said Kellman Meghu, chief technology officer of Canadian incident response firm DeepCove Cybersecurity, “but this does sound bad. This is why I force all my users to use AWS Identity Center sign on. No IAM-generated keys, and admin accounts are only activated through a ‘break glass’ strategy, where two people are needed to authenticate.”
By “break glass” strategy, Meghu said he meant that the AWS root/admin account that controls all of an organization’s cloud infrastructure is stored outside of AWS on a system that requires authorization from both the CEO and CTO, via credentials and hardware tokens. This access generates an alert, so if there was an unauthorized attempt to sign in, the CEO and CTO would know.
“I personally live in constant fear of this sort of thing happening” he said. “I create multiple separate AWS accounts using the AWS Organizations feature so accounts are completely isolated from each other. For example, there can be a ‘dev ORG’ for testing with no real data, and a ‘uat ORG’ for user testing with some data, and a ‘prod ORG’ where no one is allowed. You can also break things down so different application types get their own Organizations, which limits lateral movement. Azure has similar setup and options, which are called Tenants.
“The reality is, identity access management (IAM) is hard, and not just in AWS,” he added. “[It’s] the same challenge with all infrastructure. [Microsoft] Entra ID scares me just as much. How do we guarantee the authorized person has legitimate access? It only takes one mistake.”
A ‘grim warning’
Ilia Kolochenko, CEO of Swiss-based ImmuniWeb, said that while the attack “may appear to be pretty banal on its face, there are several things to pay attention to.”
Referring to the Bleeping Computer report, he said that, given that the attackers allegedly plan to release the data, their key intention here is to visibly hurt and to cause reputational damage.
“The attackers behind are either hacktivists or cyber mercenaries hired by a nation state,” he concluded. “In view of the geopolitical turbulence around the globe, such attacks will probably surge in 2026. The problem is that in such cases, attackers rarely consider their costs and may persistently invest time and efforts in sophisticated hacking campaigns against the most protected organizations. Organizations should urgently prepare themselves for an avalanche of politically motivated attacks with highly destructive consequences this year.”
Combined with the previous history of similar incidents impacting the European Commission and other EU bodies, this incident “is a grim warning that the European regulation of cybersecurity, that some experts perceive as excessive and unnecessarily complicated, is not a panacea against data breaches,” he added. “Whilst cloud data breaches are quite widespread, and have already affected thousands of large organizations in 2026, this incident may be leveraged by the opponents of further overregulation of the European data protection landscape.”
Kolochenko also said that European companies may utilize this incident to promote digital sovereignty and “EU-made” cloud. “While data storage in Europe, under management of European cloud providers, will quite unlikely make any material change of cloud security landscape, some organizations may be tempted leave American vendors in favor of their European competitors,” he said.
View the full article
March has been an incredibly busy month for Apple, with the company unveiling more than 10 new products and accessories. We said hello to the MacBook Neo at the start of the month, and we bid farewell to the Mac Pro at the end of it.


Nevertheless, there is still a lot more to come this year.

Beyond the usual annual updates to iPhones and Apple Watches, Apple's all-new smart home hub is finally expected to launch later this year, once the more personalized version of Siri arrives. We are also expecting a foldable iPhone, a MacBook Pro with an OLED display, and long-awaited updates to the Apple TV and HomePods this year.

Here is what to expect from Apple later this year, according to rumors. Where there are arrows shown, it refers to a device's current chip → next chip.

iPhones

iPhone 18 Pro: A20 Pro chip, a smaller Dynamic Island, a simplified Camera Control button, a red color option, variable aperture for at least one rear camera, web browsing via satellite, Apple-designed C2 modem for 5G, and more.
iPhone 18 Pro Max: The same features rumored for the iPhone 18 Pro, but the Pro Max model might be slightly thicker.
Foldable iPhone: 7.7-inch inner display with a reduced crease, 5.3-inch outer display, two rear cameras, one front camera, a Touch ID power button instead of Face ID, and more. iOS 27 is expected to be tailored for the foldable iPhone, allowing for side-by-side apps and other iPad-like multitasking functionality.

Apple Watches
Apple Watch Series 12: A new chip, design changes (or not), and potentially Touch ID.
Apple Watch Ultra 4: A new chip and potentially Touch ID.

iPads
iPad 12: A16 chip → A18 chip or A19 chip with Apple Intelligence support.
iPad mini: A17 Pro chip → A19 Pro or A20 Pro chip, an OLED display, a vibration-based speaker system, and a water-resistant design.
Macs

Mac Studio: M4 Max and M3 Ultra chips → M5 Max and M5 Ultra chips.
Mac mini: M4 and M4 Pro chips → M5 and M5 Pro chips.
iMac: M4 chip → M5 chip, plus new color options.
MacBook Pro with OLED display: A major redesign towards the end of 2026, with M6 Pro and M6 Max chips, an OLED display, a touch screen, a Dynamic Island, and a thinner design. On this device, which could also be named MacBook Ultra, macOS 27 is expected to offer a touch-friendly interface.

Home

Apple TV: A17 Pro chip with support for the more personalized Siri, and Apple's N1 chip with Wi-Fi 7 support. A built-in FaceTime camera has been rumored for a future Apple TV, but it is unclear if that will arrive with the next model.
HomePod mini: S9 chip or newer with support for the more personalized Siri, Apple's N1 chip with Wi-Fi 7 support, improved sound quality, a second-generation Ultra Wideband chip, and potentially new color options like red.
HomePod: A new full-sized HomePod that supports the revamped Siri.
Home Hub: An all-new smart home hub featuring the more personalized version of Siri, a 6-inch to 7-inch square display, an A18 chip for Apple Intelligence, FaceTime, and more. Place it on a table or mount it on a wall.
Security Camera/Sensor: Apple-designed, HomeKit-enabled security camera/sensor accessory to be sold alongside the new smart home hub.
Face ID Doorbell: A video doorbell with Face ID and HomeKit Secure Video, wirelessly connects to a compatible deadbolt lock.

For more details, read our Upcoming Apple Products Guide: What's Coming in 2026.
This article, "Apple to Launch These 15+ New Products Later This Year" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
It was a busy week in the Apple world, with Apple announcing the discontinuation of the Mac Pro, releasing iOS 26.4 and other updates, and officially announcing dates for this year's Worldwide Developers Conference.


This week also saw the AirPods Max 2 become available to order while we heard some fresh details about upcoming Apple hardware, so read on below for all the details!

Top Stories

Apple Confirms Mac Pro Is Dead, No Future Models Planned

It shouldn't be much of a surprise considering it hadn't been updated in three years and there have been no rumors of anything coming in the future, but it was still a bit sad to see Apple officially discontinue the Mac Pro this week. And yes, Apple's infamous $700 kit to add wheels to the Mac Pro has also been put out to pasture.


Arriving 20 years ago as an Intel-based upgrade to the PowerPC-driven Power Mac G5, the Mac Pro evolved from a traditional tower workstation to a compact cylindrical form factor and back again over the years, but while it was intended to serve the high-end professional market, it was never upgraded as frequently as other Macs and its role has largely been usurped by the Mac Studio that carries a much lower starting price.

Apple Releases iOS 26.4 and iPadOS 26.4 With New Emoji, Playlist Playground, Purchase Sharing Changes and More

Apple this week released iOS 26.4 and related operating system updates, delivering several improvements but not the revamped Siri we'd been hoping would make an appearance in these releases. That major revamp now looks like it may not come until iOS 27.


iOS 26.4 does bring a number of new features like the AI-driven Playlist Playground in Apple Music, eight new emoji characters, concert listings in Apple Music, CarPlay enhancements, and more.

Alongside iOS 26.4, other releases included macOS Tahoe 26.4 with the return of the compact tab bar option for Safari and a new battery charge limit setting, plus tvOS 26.4 with a new Genius Browse content discover feature, subtitle styling, and more.

Apple Announces WWDC 2026 Will Take Place June 8 to 12

Apple has officially announced that its annual developer conference will take place during the usual timeframe, kicking off with a keynote on Monday, June 8, and running through Friday, June 12.


WWDC will be a hybrid event again this year, with developers able to attend virtual sessions and labs free of charge. There is a lottery, however, for developers to enter for a chance to attend the Monday keynote sessions in person at Apple Park.

We're expecting to see Apple unveil significant AI advancements this year after a number of delays, and the company has confirmed that those advancements will be a major focus of WWDC.

AirPods Max 2 Now Available for Pre-Order With First Deliveries as Soon as April 1

Apple this week began accepting pre-orders for the AirPods Max 2 headphones that were introduced on March 16. In the U.S., Apple's online store intially listed a delivery timeframe of April 1 to April 3, although orders placed today may arrive a few days later than that.


Priced at $549, the ‌AirPods Max 2‌ feature the same design as the original AirPods Max, but Apple updated the over-ear headphones with an H2 chip that adds new capabilities already offered by other AirPods models. Amazon is already offering small discounts on select colors.

The AirPods Max 2 aren't the only new audio product launched by Apple in the past week, as the company's Beats brand also released new special-edition Nike Powerbeats Pro 2 featuring Nike's signature neon green-yellow "Volt" color.

New Apple TV and HomePod Mini Remain 'Ready' to Launch

Apple has unveiled quite a few new products this month, but the wait continues for the next-generation Apple TV 4K and HomePod mini models.


In his Power On newsletter this week, Bloomberg's Mark Gurman said new versions of the Apple TV and HomePod mini have been "ready" since last year, but he reiterated that Apple has held off on releasing them until the more personalized version of Siri and other Apple Intelligence upgrades are released later this year. In a live Q&A on Thursday, Gurman indicated that a new full-size HomePod is in the same predicament.

Apple Unveils 'Apple Business' All-in-One Platform

Apple this week announced Apple Business, a new all-in-one platform that unifies device management, productivity tools, and customer outreach features.


Rolling out on April 14, the service is designed to be a consolidated replacement for several of Apple's existing business-focused offerings, including Apple Business Essentials, Apple Business Manager, and Apple Business Connect. It provides organizations with a single interface to manage devices, employees, communications, and customer engagement across Apple's ecosystem.

The effort will also bring ads to Apple Maps, starting "this summer" in the United States and Canada.

Apple Reportedly Preparing 'Biggest Set of iPhone Revamps' Ever

Apple is working on "the biggest set of iPhone revamps in the product's history," according to the latest word from Bloomberg's Mark Gurman.


In an in-depth profile of Apple's hardware engineering chief John Ternus, who is widely considered to be the leading candidate to become Apple's next CEO whenever Tim Cook steps down, Gurman said Ternus is "overseeing the biggest set of iPhone revamps in the product's history, including a foldable model this year and a version with an edge-to-edge screen that could arrive as early as 2027, for the device's 20th anniversary."

MacRumors Newsletter

Each week, we publish an email newsletter like this highlighting the top Apple stories, making it a great way to get a bite-sized recap of the week hitting all of the major topics we've covered and tying together related stories for a big-picture view.

So if you want to have top stories like the above recap delivered to your email inbox each week, subscribe to our newsletter!Tag: Top Stories
This article, "Top Stories: Mac Pro Discontinued, iOS 26.4 Out Now, WWDC 2026 Announced, and More" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Anime streaming service Crunchyroll is now available as an Apple TV app channel, making it easier for prospective customers to subscribe without having to open up another app.


‌Apple TV‌ users in the U.S., Canada, UK, and Australia are now able to subscribe to Crunchyroll through the ‌Apple TV‌. There's a 7-day free trial available, after which the service is priced at $9.99 per month. The Crunchyroll ‌Apple TV‌ Channel is separate from existing Crunchyroll subscriptions, and an existing account can't be linked to the ‌Apple TV‌ app.

As with all ‌Apple TV‌ Channels content, if you sign up for Crunchyroll with the ‌Apple TV‌ app, you'll be billed through Apple. Crunchyroll says its full catalog of over 50,000 episodes is available through the Crunchyroll ‌Apple TV‌ Channel.

Apple TV Channels have long been an ‌Apple TV‌ app feature that makes subscribing to multiple services more convenient. Channels content can be watched in the ‌Apple TV‌ app without having to open up another app, and access can be shared with up to six members of a Family Sharing group. Channels also offer watch on-demand content and offline downloads.

Some of the available ‌Apple TV‌ Channels include Starz, Paramount+, AMC+, Mubi, Shudder, MGM+, and IFC Films.Related Roundup: Apple TVBuyer's Guide: Apple TV (Don't Buy)Related Forum: Apple TV and Home Theater
This article, "Apple TV Channels Gains Crunchyroll Anime Streaming Service" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple has hired former Google VP Lilian Rincon as its vice president of product marketing for artificial intelligence, reports Axios. Before joining Apple, Rincon was vice president of product for Google Shopping.


At Apple, Rincon will be in charge of product marketing and product management for all of Apple's AI platforms, reporting to Apple marketing chief Greg Joswiak.

Rincon led the global product organization that handled Google's consumer-facing shopping experiences, and before that, she was a director of product management in the Google Shopping division, and she worked on Google Assistant. Rincon first joined Google in 2017, and she also previously worked at Microsoft and Skype.

Apple's AI marketing efforts come at a critical time as it prepares to roll out the updated chatbot version of Siri in iOS 27, and Rincon has a lot of work ahead. Apple is seen as being far behind competitors when it comes to AI development, both because of its failure to deploy Apple Intelligence Siri features on time and because iOS, macOS, and iPadOS offer far fewer AI features compared to Android and Windows.

With ‌iOS 27‌, Apple is overhauling ‌Siri‌. We'll get the smarter ‌Siri‌ Apple first introduced at the June 2024 WWDC keynote, plus Apple is planning for a full chatbot version of ‌Siri‌ that will compete with chatbots like Claude, Gemini, and ChatGPT.

We'll see our first glimpse of the new AI features Apple has planned at the 2026 Worldwide Developers Conference, which begins on Monday, June 8.Tags: Apple Intelligence, Google
This article, "Apple Brings On Google Shopping VP to Lead AI Marketing Push" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Lloyds Banking Group has identified the glitch that led to some of its customers being able to see details of other customers’ transactions on March 12.
It revealed the information in a letter to the UK Parliament’s Treasury Committee, setting out the details of the incident and how it has been handled.
The issue arose after an overnight IT change meant that two customers who accessed their accounts simultaneously could have sight of each other’s accounts, it said. The bank said that fault was because of defect in “the design of the code used to update the Application Programme Interface (API) used by the app.” It didn’t go into any more detail about the precise nature of the defect.
The company stressed that at no point did any customer have full access to another account, and said it had not identified any loss suffered by any customer. It said it had notified all the relevant financial authorities, as well as the UK Information Commissioner’s Office, which regulates data privacy, and was fully co-operating with any further enquiries.
The bank said that of the 21.6 million users of its mobile app, 447,936 may have been presented with another user’s transactions, or had their transactions presented to another user, and of those 114,182 customers may have clicked to view details of a transaction during the incident and thus may have been presented with details of someone else’s transactions.
View the full article
Apple is now sending Lock Screen notifications to iPhones and iPads running older versions of iOS and iPadOS to alert users of web-based attacks and urge them to install the update. The development was first reported by MacRumors. "Apple is aware of attacks targeting out-of-date iOS software, including the version on your iPhone. Install this critical update to protect your iPhone," theView the full article
It's been a little over two weeks since the MacBook Neo launched on March 11, and MacRumors videographer Dan Barbera has been using it daily to do a more thorough review.

Subscribe to the MacRumors YouTube channel for more videos.
At $599 (or $499 for students), the ‌MacBook Neo‌ is the cheapest laptop that Apple has come out with, and given the quality of the product, it's an impressive price. The A18 Pro chip isn't underpowered for a notebook machine, and the Neo is going to handle every day-to-day task that you might throw at it.

8GB RAM might sound like not enough because all of Apple's other Macs have 16GB or more, but Macs use RAM so efficiently that most people aren't going to miss having more RAM. If you're browsing the web, watching videos, managing documents, writing, scrolling through social media apps, sending emails, completing homework, and doing other light work, the ‌MacBook Neo‌ isn't going to struggle. 8GB RAM is also sufficient for all of the Apple Intelligence features that Apple has come out with so far.

The ‌MacBook Neo‌ works totally fine for editing photos and videos, but it's of course not as quick as Apple's MacBook Air and MacBook Pro with M-series chips. You're going to see slower export times, but the actual process of editing video on the ‌MacBook Neo‌ doesn't feel overly sluggish.

The ‌MacBook Neo‌ had no problems with 30 Chrome tabs open with YouTube, Google Docs, news sites, spreadsheets, Twitter, and more, even when other apps like Mail, Messages, and Spotify were running. Bumping up to 60 tabs used all of the available RAM, but everything running was usable with no freezing or beach balls. A Windows laptop probably wouldn't be able to operate like the Neo does on just 8GB RAM, but with Apple's SoC, it works.

There are some compromises with the ‌MacBook Neo‌ in addition to the RAM. You're not going to get Apple's best display, but it's not too far off the ‌MacBook Air‌ display. There's just no True Tone for adjusting the display white balance to the lighting in the room. You're limited to two USB-C ports (one limited to USB 2 speeds at 480Mb/s, which does impact how fast files transfer), and another that's USB 3 at 10Gb/s. There's no Thunderbolt, no MagSafe charger, no SD card slot, no HDMI port, and no backlighting for the keyboard. The trackpad is mechanical instead of Force Touch, but it works largely the same, and there's a 1080p camera.

Battery life is solid at up to 16 hours on a full charge, and the power draw is low enough that you can get some extra juice with a small power bank. The ‌MacBook Neo‌ only comes in 256GB and 512GB configurations, so storage is a bit limited, and we do recommend that 512GB upgrade for an extra $100 if you can swing it because it adds Touch ID to the keyboard. The ‌MacBook Neo‌ is slim and lightweight at 2.7 pounds, plus it comes in fun colors like blush, citrus, silver, and indigo.

The ‌MacBook Neo‌ is designed for students on a budget, parents buying a first laptop for a child, and people who just need a basic machine for everyday online tasks. It may be Apple's lowest tier Mac, but it is one of the best computers you can get in its price range.

Many competing Windows PCs and Chromebooks around the $600 mark are bulkier and uglier, with dimmer displays and less powerful chips. PC makers haven't had to try in the low-end market because Apple didn't compete there, but now that's changed.

There's a reason why ASUS CFO Nick Wu said that the ‌MacBook Neo‌ was a "shock" to the entire PC industry that's being taken "very seriously." PC makers are going to need to innovate to keep Apple from dominating the affordable and education market.Related Roundup: MacBook NeoBuyer's Guide: MacBook Neo (Buy Now)Related Forum: MacBook Neo
This article, "MacBook Neo Review: Can Apple's Cheapest Laptop Handle Real Work?" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Name : National Cyber Security Show
Website: https://www.nationalcybersecurityshow.com/
Date: April 28-30, 2026
Location: NEC Birmingham, United Kingdom
The National Cyber Security Show is the UK’s premier cybersecurity trade event, taking place 28–30 April 2026 at the NEC in Birmingham. It brings together cybersecurity professionals, industry experts, vendors, and solution providers to address the latest digital threats and resilience strategies. Across three days, attendees can explore 100+ exhibitors and innovation pavilions, attend conferences and expert-led sessions on practical cyber essentials and risk management, and participate in networking opportunities designed to share best practices and forge strategic partnerships. The show offers a one-stop platform to discover cutting-edge technologies, gain actionable insights, and strengthen organisational defences against evolving cyber challenges.
Book Now The post National Cyber Security Show appeared first on CISO MAG | Cyber Security Magazine.
View the full article
Apple is into its final days of hosting 50th-anniversary celebrations around the world, making stops in Washington D.C., Mexico City, Shanghai, Tokyo, and beyond.


On Tuesday, March 24, actor Troy Kotsur and Gallaudet University president Roberta Cordano sat down for a discussion with Apple's accessibility chief Sarah Herrlinger about how accessible technology helps to foster creativity.

In 2022, Kotsur became the first deaf male actor to win an Academy Award for his performance in the Apple TV film CODA, while Cordano is the first deaf woman to be president of the Gallaudet University for the deaf and hard of hearing.


The discussion was part of a special Today at Apple session held at Apple's Carnegie Library store in Washington, D.C., and hundreds of other accessibility advocates also attended the event to reflect on what it means to have Apple products and technologies that work for everyone, including people with disabilities.

On Wednesday, March 25, Apple brought together "some of Mexico's most celebrated filmmakers, actors, and creators" for a conversation about creativity and storytelling at its Apple Antara store in Mexico City. This included some of the people behind the hit Apple TV productions Las Azules, Acapulco, and Midnight Family.

In front of its Jing'an store in Shanghai today, Apple set up a circular catwalk that models walked around as part of Shanghai Fashion Week.


And over in Tokyo today, a virtual YouTuber and singer known as Mori Calliope appeared live on a screen at Apple's Omotesando store.

Image Credit: @hamu_3nd
Today at Apple sessions were also held at Apple Pacific Centre in Vancouver, Canada and at Apple Champs-Élysées in Paris, France this week, and there will be another session at Apple BKC in Mumbai, India on Sunday, March 29.

Apple kicked off its 50th anniversary celebrations with a surprise Alicia Keys performance at its store inside New York's iconic Grand Central Terminal earlier this month, while Mumford & Sons performed in London earlier this week. Apple has also held events in Australia, South Korea, Thailand, and elsewhere over the past few weeks.

Apple turns 50 on April 1.Tags: Apple 50th Anniversary, Today at Apple
This article, "Apple's 50th Anniversary Events Continue in Washington D.C., Shanghai, Tokyo, and Beyond" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
TeamPCP, the threat actor behind the supply chain attack targeting Trivy, KICS, and litellm, has now compromised the telnyx Python package by pushing two malicious versions to steal sensitive data. The two versions, 4.87.1 and 4.87.2, published to the Python Package Index (PyPI) repository on March 27, 2026, concealed their credential harvesting capabilities within a .WAV file. Users areView the full article
On this week's episode of The MacRumors Show, we discuss Apple's announcement of its 37th annual Worldwide Developers Conference (WWDC), where the company is expected to unveil a major Siri overhaul alongside iOS 27, macOS 27, and other next-generation operating systems.

Subscribe to The MacRumors Show YouTube channel for more videos

Like last year, WWDC 2026 will be a primarily online event open to all developers at no cost, with an in-person component at Apple Park in Cupertino reserved for developers and students selected through a random lottery. Apple will notify accepted in-person attendees on April 2. The keynote and all sessions will be available on the Apple Developer app, Apple's website, and YouTube, with over 100 video sessions and interactive labs with Apple engineers and designers planned across the week.

Apple first unveiled Apple Intelligence at WWDC 2024, promising a smarter Siri with personal context, on-screen awareness, and deeper app integration, features that were delayed in March 2025, delayed again at WWDC 2025, and then missed a further internal target of iOS 26.4. Apple confirmed in its announcement that the conference will "spotlight incredible updates for Apple platforms, including AI advancements and exciting new software and developer tools," which points clearly to what is shaping up to be the most consequential ‌Siri‌ update ever.

The revamped ‌Siri‌ is said to be a sweeping redesign that turns Apple's long-struggling assistant into a full AI chatbot, with Bloomberg's Mark Gurman reporting that Apple is testing a standalone ‌Siri‌ app displaying prior conversations in a list or grid, with pinned and searchable chats and iMessage-style chat bubbles. ‌Siri‌ is also said to be gaining Dynamic Island integration, with a glowing icon and "searching" label while processing requests, an "Ask ‌Siri‌" button in third-party app menus, and a "Write with ‌Siri‌" keyboard option, while Spotlight is expected to be replaced by ‌Siri‌ as the primary search interface on iPhone.

The technology underpinning virtually all of this comes from Apple's multi-year partnership with Google, under which next-generation Apple Foundation Models are based on Gemini, with processing continuing to run on-device and in Private Cloud Compute. Separately, Apple plans to open Siri to third-party AI chatbots in ‌iOS 27‌ via an "Extensions" system in Settings, ending OpenAI's exclusive arrangement and allowing users to direct queries to Claude, Gemini, Grok, and others.

Beyond ‌Siri‌, iOS 27 is expected to be a relatively lean update, described as a "Snow Leopard" year, focused on performance improvements, bug fixes, and code cleanup rather than major new feature additions. Notable exceptions include optimizations for Apple's first foldable iPhone, which is expected to launch in the fall, and new satellite connectivity features.

macOS 27 will apparently share the same ‌Siri‌ upgrades and "Snow Leopard" stability focus. It will drop support for Intel-based Macs entirely. Apple will also unveil iPadOS 27, watchOS 27, tvOS 27, and visionOS 27 at the keynote. The MacRumors Show has its own YouTube channel, so make sure you're subscribed to keep up with new episodes and clips.

Subscribe to The MacRumors Show YouTube channel!

You can also listen to ‌The MacRumors Show‌ on Apple Podcasts, Spotify, Overcast, or other podcast apps. You can also copy our RSS feed directly into your player.



If you haven't already listened to the previous episode of The MacRumors Show, catch up to hear our discussion about Apple's surprise AirPods Max 2 announcement.

Subscribe to ‌The MacRumors Show‌ for new episodes every week, where we discuss some of the topical news breaking here on MacRumors, often joined by interesting guests such as Kayci Lacob, Kevin Nether, John Gruber, Mark Gurman, Jon Prosser, Luke Miani, Matthew Cassinelli, Brian Tong, Quinn Nelson, Jared Nelson, Eli Hodapp, Mike Bell, Sara Dietschy, iJustine, Jon Rettinger, Andru Edwards, Arnold Kim, Ben Sullins, Marcus Kane, Christopher Lawley, Frank McShan, David Lewis, Tyler Stalman, Sam Kohl, Federico Viticci, Thomas Frank, Jonathan Morrison, Ross Young, Ian Zelbo, and Rene Ritchie.

‌The MacRumors Show‌ is on X @MacRumorsShow, so be sure to give us a follow to keep up with the podcast. You can also email us at [email protected] or head over to The MacRumors Show forum thread. Remember to rate and review the podcast, and let us know what subjects and guests you would like to see in the future.Related Roundup: WWDC 2026Tags: The MacRumors Show, WWDC 2026Related Forum: Apple, Inc and Tech Industry
This article, "The MacRumors Show: Apple Announces WWDC 2026" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple says it has no record of a successful spyware attack against any device running Lockdown Mode, the opt-in security feature it introduced in 2022.


"We are not aware of any successful mercenary spyware attacks against a Lockdown Mode-enabled Apple device," an Apple spokesperson told TechCrunch.

Lockdown Mode is available on the iPhone, iPad, and Mac, and dramatically restricts certain system features that are commonly exploited by mercenary spyware. When enabled, it blocks most message attachment types, disables certain complex web technologies, and prevents devices from automatically joining non-secure Wi-Fi networks, among other restrictions. Apple designed the feature specifically to protect high-risk users such as journalists, activists, lawyers, and others who may be personally targeted by sophisticated nation-state-level attacks.

Enable Lockdown Mode on iPhone, iPad, and Mac

Donncha Ó Cearbhaill, head of the security lab at Amnesty International, said he and his colleagues "have not seen any evidence of an iPhone being successfully compromised by mercenary spyware where Lockdown Mode was enabled at the time of the attack." Digital rights organizations including Amnesty International and the University of Toronto's Citizen Lab have documented numerous successful spyware attacks on iPhone users over the years, but none have involved a bypass of Lockdown Mode.

Citizen Lab researchers have confirmed at least two cases where Lockdown Mode actively blocked spyware attacks, with one involving NSO Group's Pegasus and another involving Predator spyware, made by a company now part of Intellexa. Google researchers found that spyware was coded to abort its infection attempt if it detected Lockdown Mode was active, apparently to avoid leaving traces that could expose the attack.

Patrick Wardle, an Apple cybersecurity expert, told TechCrunch, "I think it's safe to say, Lockdown Mode is one of the most aggressive consumer-facing hardening features ever shipped."Tags: Apple Security, Cybersecurity, TechCrunch
This article, "Apple Says No iPhone in Lockdown Mode Has Ever Been Hacked" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Hello, I’m Philippe, and I am a Principal Solutions Architect helping customers with their usage of Docker. I wanted a lightweight way to automate my IT news roundups without burning through AI credits. So I built a Docker Agent skill that uses the Brave Search API to fetch recent articles on a topic, then hands the results to a local model running with Docker Model Runner to analyze the stories and generate a Markdown report.
In this setup, Qwen3.5-4B handles the reasoning and skill invocation, while the skill itself does the retrieval work. The result is a simple local workflow for turning a prompt like “use news roundup skill with tiny language models” into a structured news brief I can save, review, and reuse.
It is a bit slower than doing the same thing with Claude Code, but that tradeoff works for me: I keep the workflow local, I save my Claude credits, and I get a practical example of how skills make Docker Agent more useful for repeatable tasks.
Prerequisites for building the news roundup:
Docker and Docker Compose, obviously. A Brave Search account with an API key (you can get one here). (There’s a free plan.) A local model that supports a large context window and knows how to do function calling. I chose to use qwen3.5-4b from Qwen (I went with the Unsloth version), a 4-billion-parameter model optimized for text understanding and generation, with native support for up to 262144 context tokens.
I started my tests with qwen3.5-9b, but on my MacBook Air, it’s a bit slow and qwen3.5-4b does the job just fine.
Let’s get into the setup.
Step-by-step guide to building the news roundup
Step 1: Creating the Dockerfile
I used an ubuntu:22.04 base image and installed curl to make requests to the Brave Search API. I also copied the docker-agent binary from the docker/docker-agent:1.32.5 image to run the agents.
FROM --platform=$BUILDPLATFORM docker/docker-agent:1.32.5 AS coding-agent FROM --platform=$BUILDPLATFORM ubuntu:22.04 AS base LABEL maintainer="@k33g_org" ARG TARGETOS ARG TARGETARCH ARG USER_NAME=docker-agent-user ARG DEBIAN_FRONTEND=noninteractive ENV LANG=en_US.UTF-8 ENV LANGUAGE=en_US.UTF-8 ENV LC_COLLATE=C ENV LC_CTYPE=en_US.UTF-8 # ------------------------------------ # Install Tools #------------------------------------ RUN <<EOF apt-get update apt-get install -y wget curl apt-get clean autoclean apt-get autoremove --yes rm -rf /var/lib/{apt,dpkg,cache,log}/ EOF # ------------------------------------ # Install docker-agent # ------------------------------------ COPY --from=coding-agent /docker-agent /usr/local/bin/docker-agent # ------------------------------------ # Create a new user # ------------------------------------ RUN adduser ${USER_NAME} # Set the working directory WORKDIR /home/${USER_NAME} # Set the user as the owner of the working directory RUN chown -R ${USER_NAME}:${USER_NAME} /home/${USER_NAME} # Switch to the regular user USER ${USER_NAME} Let’s move on to the agent configuration.
Step 2: Creating the Docker Agent configuration file
For the Docker Agent configuration, I defined a root agent using the brain model, which is an alias for qwen3.5-4b. I also enabled skills support (skills: true) and provided detailed instructions so the agent behaves like an expert IT journalist, capable of searching, analyzing, and summarizing the latest tech news.
For the toolsets, Docker Agent ships with some ready-to-use ones, but I preferred a script-type toolset with an execute_command that can run any shell command and capture its output. This gives me the flexibility to interact with the Brave Search API directly from shell commands, without having to implement specific tools for it — and most importantly, it keeps the agent’s instructions lightweight. 
agents: root: model: brain description: News Roundup Expert skills: true instruction: | You are an expert IT journalist with deep knowledge of software engineering, cloud infrastructure, artificial intelligence, cybersecurity, and the open-source ecosystem. Your role is to gather, analyze, and summarize the latest technology news in a clear, accurate, and engaging way. You write for a technical audience and always provide context, highlight trends, and explain the impact of each piece of news. toolsets: - type: script shell: execute_command: description: Execute a shell command and return its stdout and stderr output. args: command: description: The shell command to execute. cmd: | bash -c "$command" 2>&1 models: brain: provider: dmr model: huggingface.co/unsloth/qwen3.5-4b-gguf:Q4_K_M temperature: 0.0 top_p: 0.95 presence_penalty: 1.5 provider_opts: # llama.cpp flags runtime_flags: ["--context_size=65536"] Now let’s look at the skill.
Step 3: Building the news roundup skill
I created a news-roundup skill that uses the Brave Search API to search for the latest news on a given topic, enriches each article with additional web searches, and generates a structured Markdown report.
Inside the .agents/skills folder, I created a news-roundup directory with a SKILL.md file that describes the skill in detail, with the steps to follow and the commands to execute at each step.
├── .agents │ └── skills │ └── news-roundup │ └── SKILL.md Here’s the content of SKILL.md:
--- name: news-roundup description: search the news using Brave News Search API with a query as argument. Use this skill when the user asks to search for recent news or current events. --- # News Roundup ## Purpose Generate a comprehensive Markdown news report on a given topic (default: "small ai local models"). ## Steps to follow ### Step 1 — Search for recent news #### Command to execute ```bash curl -s "https://api.search.brave.com/res/v1/news/search?q=$(echo "$ARGUMENTS_REST" | sed 's/ /+/g')&count=3&freshness=pw" \ -H "X-Subscription-Token: ${BRAVE}" \ -H "Accept: application/json" ``` ### Step 2 — Enrich each article For each article returned in Step 1, use the below command with the article URL to retrieve additional context and details. #### Command to execute ```bash curl -s "https://api.search.brave.com/res/v1/web/search?q=$(echo "$ARTICLE_URL" | sed 's/ /+/g')&count=10" \ -H "X-Subscription-Token: ${BRAVE}" \ -H "Accept: application/json" ``` ### Step 3 — Generate the Markdown report Using all the collected information, write a well-structured Markdown report saved to `/workspace/news-report.md`. The report must follow this structure: ```markdown # IT News Report — {topic} > Generated on {date} ## Summary A short paragraph summarizing the main trends found across all articles. ## Articles ### {Article Title} - **Source**: {source name} - **URL**: {url} - **Published**: {date} {2-3 sentence summary of the article content and its significance for IT professionals} --- (repeat for each article) ## Key Trends A bullet list of the main technology trends identified across all articles. ``` Save the final report to `/workspace/data/news-report-{YYYYMMDD-HHMMSS}.md` using the `write_file` tool, where `{YYYYMMDD-HHMMSS}` is the current date and time (e.g. `news-report-20260318-143012.md`). To get the current timestamp, run: ```bash date +"%Y%m%d-%H%M%S" ``` All that’s left is to create the compose.yml file to launch the agent.
Step 4: Updating the compose.yml file
Here’s the content of compose.yml. 
Note: you’ll need a .env file with your Brave Search API key (e.g. BRAVE=abcdef1234567890).
services: news-roundup: build: context: . dockerfile: Dockerfile stdin_open: true tty: true command: docker-agent run /workspace/config.yaml volumes: - ./config.yaml:/workspace/config.yaml:ro - ./.agents:/workspace/.agents:ro - ./data:/workspace/data working_dir: /workspace env_file: - .env models: qwen3.5-4b: models: qwen3.5-4b: model: huggingface.co/unsloth/qwen3.5-4b-gguf:Q4_K_M context_size: 65536 And that’s it — everything we need to run our IT news roundup agent.
Step 5: Let’s test it out!
Just run the following command in your terminal:
docker compose run --rm --build news-roundup And ask the agent:
use news roundup skill with tiny language models The agent will then execute the news-roundup skill, query the Brave Search API, analyze the articles, and generate a Markdown report in the data folder. 
Note: this can take a little while, so feel free to grab a coffee (or get some work done).
The agent will detect that it needs to run tools (the curl commands from the news-roundup skill) — you can validate each command manually or let the agent run them automatically: 
Your agent will work for a few minutes…

…and at the end, it will give you the path of the generated report, which you can open to read your personalized IT news roundup:
You can find examples of generated reports in the data folder of the project on this repository: https://codeberg.org/docker-agents/news-roundup/src/branch/main/data.
Final Thoughts 
That’s the full setup: a Docker Agent skill for news retrieval, the Brave Search API for fresh articles, and Docker Model Runner with Qwen3.5-4B for local analysis and report generation.
You now have a fully local IT news roundup agent. I have written a lot of content on use cases for local models, including context packaging and making small LLMs smarter. See you soon for more Docker Agent use cases with local language models!

View the full article
Apple has begun pushing Lock Screen notifications to iPhones and iPads running older versions of iOS and iPadOS, warning users of active web-based attacks.


The alerts, which appear as a "Critical Software" notification from the Settings app, warn that Apple "is aware of attacks targeting out-of-date iOS software, including the version on your iPhone," and urge users to install a critical update to protect their device. The notifications are being seen on devices running a range of older iOS versions, including iOS 17.0, far beyond the iOS 13 and iOS 14 devices that Apple specifically flagged in its support documentation.

In the documentation, Apple highlighted recent reports about hacking tools that are effective against older versions of iOS. Hackers are using iOS exploit kits known as "Coruna" and "DarkSword," which can take advantage of vulnerabilities in iOS 13 through to iOS 17.2.1. Clicking a malicious link or visiting a compromised website on an unpatched device could result in data being stolen.

"If your iPhone doesn't have the latest software, update iOS to protect your data," Apple says. Users can update by going to Settings, General, and Software Update.

Apple released iOS 15.8.7 and iOS 16.7.15, along with corresponding iPadOS versions, on March 11 to address security vulnerabilities associated with the Coruna exploit kit. Devices running the latest updated versions of iOS 15 through iOS 26 are already protected, while devices on iOS 13 or iOS 14 must update to iOS 15 to receive these protections.

Apple has patched the vulnerabilities as they have come to light over the last several months, so users who have already upgraded to the newest version of iOS available for their iPhone are protected from the malicious websites and links that are circulating right now. Apple Safe Browsing in Safari is enabled by default and blocks the malicious URL domains identified in the attacks.

Users who are unable to update should consider enabling Lockdown Mode, if available, to protect against malicious web content. Lockdown Mode is available on iOS 16 and later.Tags: Apple Security, CybersecurityRelated Forums: iOS 17, iPadOS 17, iOS 15, iOS 16
This article, "Apple Now Sending Critical Security Alerts to iPhones Running iOS 17 and Earlier" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Amazon kicked off the Big Spring Sale this week, and with it has come big discounts across a number of Apple products. This includes all-time low prices on AirPods Pro 3, AirTag, M4 iPad Air, and more.

Note: MacRumors is an affiliate partner with some of these vendors. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

AirPods Pro 3


What's the deal? Take $49 off AirPods Pro 3
Where can I get it? Amazon
Where can I find the original deal? Right here
$49 OFFAirPods Pro 3 for $199.99

Amazon has the AirPods Pro 3 available for $199.99 this week, down from $249.00. This is a match of the all-time low price on the AirPods Pro 3, which has been rare on Amazon in recent weeks.

AirTag


What's the deal? Take $39 off AirTag 1
Where can I get it? Amazon
Where can I find the original deal? Right here
$39 OFFAirTag 4-Pack for $59.99

Amazon has the first generation AirTag 4-Pack on sale for $59.99 during the Big Spring Sale, down from $99.00. This is a new record low price on the first generation accessory.

M4 iPad Air


What's the deal? Take up to $80 off M4 iPad Air
Where can I get it? Amazon
Where can I find the original deal? Right here
$40 OFF11-inch M4 iPad Air for $559.00
$50 OFF13-inch M4 iPad Air for $749.00

This month saw the launch of all of Apple's new products, and Amazon is already offering good discounts on many models of the M4 iPad Air. We're seeing up to $80 off both the 11-inch and 13-inch models, which is solid for a brand-new product.

MacBook Air and MacBook Pro


What's the deal? Take $49 off M5 MacBook Air and M5 Pro/M5 Max MacBook Pro
Where can I get it? Amazon
Where can I find the original deal? Right here
$49 OFF13-inch M5 MacBook Air (512GB) for $1,049.99
$49 OFF15-inch M5 MacBook Air (512GB) for $1,249.99
$49 OFF16-inch M5 Pro MacBook Pro (24GB/1TB) for $2,649.99
$49 OFF16-inch M5 Max MacBook Pro (36GB/2TB) for $3,849.99

Similar to the M4 iPad Air, Amazon is offering multiple discounts across the new M5 MacBook Air and M5 Pro/M5 Max MacBook Pro this week. You'll find $49 off select models right now, without the need of a coupon code.

Apple Watch Series 11


What's the deal? Take $100 off Apple Watch Series 11
Where can I get it? Amazon
Where can I find the original deal? Right here
$100 OFFApple Watch Series 11 (42mm GPS) for $299.00
$100 OFFApple Watch Series 11 (46mm GPS) for $329.00

Amazon this week has all-time low prices on the Apple Watch Series 11, with $100 discounts across numerous models of the smartwatch. We first started tracking the return of these deals last month, but this sale has now expanded with many more options on both 42mm and 46mm GPS models.

If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.



Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "Best Apple Deals of the Week: Low Prices Hit AirPods Pro 3, AirTag, and More During Amazon's Big Spring Sale" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Cybersecurity researchers have disclosed details of a now-patched bug impacting Open VSX's pre-publish scanning pipeline to cause the tool to allow a malicious Microsoft Visual Studio Code (VS Code) extension to pass the vetting process and go live in the registry. "The pipeline had a single boolean return value that meant both 'no scanners are configured' and 'all scanners failed to run,'" KoiView the full article
Anker's new Prime 3-in-1 Wireless Charging Station has been marked down to $104.99 during Amazon's Big Spring Sale, down from $149.99, with no need for a coupon. This accessory just launched last month, and Amazon's sale today represents a new all-time low price.

Note: MacRumors is an affiliate partner with some of these vendors. When you click a link and make a purchase, we may receive a small payment, which helps us keep the site running.

The Prime 3-in-1 Wireless Charging Station features Qi2.2 support, which lets a compatible MagSafe ‌iPhone‌ charge at up to 25W. It's the same speed as Apple's ‌MagSafe‌ charger, and it is 10W faster than the standard Qi2 ‌MagSafe‌ chargers. You can also simultaneously charge an Apple Watch and AirPods with the device.

$45 OFFAnker Prime 3-in-1 Wireless Charging Station for $104.99

There are plenty of other Anker discounts happening on Amazon this week, including the Prime 14-in-1 Thunderbolt 5 Dock back at its all-time low price of $339.99, down from $399.99. Anker's popular 3-in-1 MagSafe-Compatible Charging Cube is also down to a new all-time low price of $79.03, down from $129.99.

$60 OFFAnker Prime 14-in-1 Thunderbolt 5 Dock for $339.99
Wall Chargers

Nano USB-C Wall Charger - $27.99, down from $39.99
6-in-1 USB-C Power Strip - $59.99, down from $109.99
140W 4-Port GaN USB-C Charger - $89.99, down from $99.99
14-in-1 Prime Thunderbolt 5 Dock - $339.99, down from $399.99
Wireless Chargers

3-in-1 MagSafe-Compatible UFO Charger - $69.99, down from $89.99
3-in-1 MagSafe-Compatible Foldable Charging Station - $79.99, down from $109.99
3-in-1 MagSafe-Compatible Charging Cube - $79.03, down from $129.99
3-in-1 Prime Wireless Charging Station - $104.99, down from $149.99
Prime MagSafe-Compatible 3-in-1 Charging Station - $149.99, down from $229.99
Portable Chargers

SOLIX C300 Power Station with Lantern - $169.99, down from $249.00
Prime Power Bank 26,250 mAh - $199.99, down from $229.99
SOLIX C1000 Gen 2 Portable Power Station - $428.99, down from $799.00
SOLIX C2000 Gen 2 Portable Power Station - $749.00, down from $1,499.00
We've collected all of the best deals you can find during Amazon's Big Spring Sale in our dedicated article. If you're on the hunt for more discounts, be sure to visit our Apple Deals roundup where we recap the best Apple-related bargains of the past week.



Deals Newsletter

Interested in hearing more about the best deals you can find in 2026? Sign up for our Deals Newsletter and we'll keep you updated so you don't miss the biggest deals of the season!




Related Roundup: Apple Deals
This article, "Anker's New Prime 3-in-1 Foldable Charging Station Hits $104.99 Low Price on Amazon" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple this week announced that it has discontinued the Mac Pro, with new configurations no longer available and no further models planned.


Below, we reflect on nearly two decades of the Mac Pro.

2006 to 2013

In August 2006, Apple introduced the original Mac Pro, which was an Intel-based follow-up to the PowerPC-based Power Mac G5 that debuted a few years earlier.

Mac Pro was the final Mac model to transition from PowerPC to Intel processors.

"Apple has successfully completed the transition to using Intel processors in just seven months—210 days to be exact," said Apple's then-CEO Steve Jobs, in a press release announcing the first Mac Pro. "And what better product to complete it with than the new Mac Pro, the workstation Mac users have been dreaming about."


The original Mac Pro was powered by two dual-core Intel Xeon processors, making it up to twice as fast as the Power Mac G5, according to Apple. It could be configured with up to 2TB of storage—the most ever in a Mac at the time—and up to 16GB of RAM. The computer was equipped with an NVIDIA GeForce 7300 GT graphics card.

Like the Power Mac G5, the Mac Pro featured an aluminum tower with a perforated front panel, which earned it the nickname "cheese grater Mac Pro." The computer was equipped with a variety of FireWire and USB-A ports, and it had PCI Express expansion slots. In the U.S., the original Mac Pro started at $2,499.

The classic Mac Pro went on to receive faster Intel processors and other spec bumps until 2012.

2013 to 2019

"Can't innovate anymore, my ass," Apple's former marketing chief Phil Schiller infamously joked, when unveiling the redesigned Mac Pro in June 2013.

"The new Mac Pro is our vision for the future of the pro desktop, everything about it has been reimagined and there has never been anything like it," said Schiller, in a press release announcing the second-generation Mac Pro.


The so-called "trash can" Mac Pro featured a cylindrical design with a polished black aluminum finish and a "unified thermal core." The computer was visually striking, but Apple later admitted that it was thermally constrained, and it had poor upgradeability. Instead of internal slots, Apple pushed expansion via six Thunderbolt 2 ports.

Other specs included up to a 12-core Intel Xeon processor, dual AMD FirePro GPUs, up to 64GB of RAM, and up to a 1TB SSD. In the U.S., pricing started at $2,999.

Overall, Apple prioritized the Mac Pro's compact size, thermal efficiency, and quiet operation, when most pro users simply wanted the most performant and expandable Mac possible. Then, the Mac Pro went years without receiving upgrades, leading some to question whether Apple was still committed to the high-end Mac market.


The criticism ultimately led Apple to make the rare and surprising move of publicly apologizing to Mac users and ensuring that it remained committed to the Mac. Apple also pre-announced that it was working on a "completely rethought" Mac Pro with a modular design, along with what became the iMac Pro and Pro Display XDR.

"I think we designed ourselves into a bit of a thermal corner, if you will," said Apple's software engineering chief Craig Federighi, at the time. "We designed a system with the kind of GPUs that at the time we thought we needed, and that we thought we could well serve with a two GPU architecture. That that was the thermal limit we needed, or the thermal capacity we needed. But workloads didn't materialize to fit that as broadly as we hoped."

So, Apple went back to the drawing board.

2019 to 2023

In December 2019, the third-generation Mac Pro arrived. As promised, it fixed many of the problems that arose with the "trash can" model.

With this Mac Pro, Apple returned to a modular design with an aluminum housing that lifts off for "360-degree access" to the entire system. The computer had a "state-of-the-art thermal architecture" and eight PCI Express expansion slots.

"We designed Mac Pro for users who require a modular system with extreme performance, expansion and configurability," said Schiller, in a press release at the time. "With its powerful Xeon processors, massive memory capacity, groundbreaking GPU architecture, PCIe expansion, Afterburner accelerator card and jaw-dropping design, the new Mac Pro is a monster that will enable pros to do their life's best work."


This was the final Intel-based model, with up to a 28-core Xeon processor available alongside up to 1.5TB of RAM and up to an 8TB SSD. It could be configured with AMD's Radeon Pro Vega II Duo, which Apple said was the world's most powerful graphics card at the time. Other specs included four Thunderbolt 3 ports and an Apple Afterburner accelerator card that enabled playback of three streams of 8K ProRes RAW video simultaneously.

In the U.S., pricing started at $5,999, which was much higher than the previous models.

2023 to 2026

In June 2023, the Mac Pro entered the Apple silicon era when it received the M2 Ultra chip.

Mac Pro was the final Mac to transition from Intel to Apple silicon, much like the original Mac Pro was the final Mac to switch from PowerPC to Intel.

Apple stuck with the same overall design as the previous generation, but the M2 Ultra chip with unified graphics and memory freed up a lot of internal space compared to the Intel model, resulting in a "hollow" appearance. And on the exterior, the Mac Pro gained eight Thunderbolt 4 ports, up from four Thunderbolt 3 ports previously.

Other specs included up to 192GB of unified memory and up to an 8TB SSD. In the U.S., starting pricing rose to a steep $6,999.


By the time the Mac Pro moved to Apple silicon, Apple had already released the Mac Studio, another desktop computer that is smaller than a Mac Pro but beefier than a Mac mini. It is currently powered by M4 Max or M3 Ultra chips, and configurations with M5 Max and M5 Ultra chips are expected to launch later this year.

The primary reason to purchase the latest Mac Pro over the Mac Studio was PCI expansion, but the Mac Pro's starting price was thousands of dollars higher than the Mac Studio, so the writing was on the wall that the Mac Pro's days were probably numbered.

Indeed, the Mac Pro was ultimately discontinued this week, marking the end of an era.Related Roundup: Mac ProBuyer's Guide: Mac Pro (Don't Buy)Related Forum: Mac Pro
This article, "Mac Pro Discontinued: Reflecting on 20 Years of Apple's Desktop Tower" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Apple Vision Pro owners have a new Apple Immersive video available to watch from today. "Debut at the BBC Proms" is a full classical music concert filmed at the Royal Albert Hall during the 2025 Proms season, courtesy of BBC Arts.


Filmed by Livewire Pictures using Blackmagic's URSA Cine Immersive cameras, the experience follows Austrian piano sensation Lukas Sternath as he takes to the stage in his BBC Proms debut, performing Edvard Grieg's Piano Concerto in A Minor with the BBC Symphony Orchestra, under chief conductor Sakari Oramo.

From the BBC media center:
The new immersive video experience is available now on the Apple TV app for Vision Pro.Related Roundup: Apple Vision ProBuyer's Guide: Vision Pro (Buy Now)Related Forum: Apple Vision Pro
This article, "New Apple Immersive Video of BBC Proms Concert on Apple Vision Pro" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Attackers have exploited a critical Langflow RCE within hours of disclosure, prompting the US Cybersecurity and Infrastructure Security Agency (CISA) to formally flag it for urgent remediation.
The flaw, which allows running arbitrary code on vulnerable Langflow instances without >credentials, was weaponized within 20 hours of the open-source AI-pipeline tool disclosing it.
According to a Sysdig report, crooks started hitting a fleet of honeypot nodes with vulnerable instances across multiple cloud providers and regions right after they went live. Sysdig observed four such attempts within hours of deployment, with one attacker progressing to environment variable exfiltration.
“This is notable because no public POC repository existed on GitHub at the time of the first attack,” Sysdig researchers said. “The advisory itself contained enough detail (the vulnerable endpoint path and the mechanism for code injection via flow node definitions) for attackers to construct a working exploit without additional research.”
CISA has added the flaw to its Known Exploited Vulnerabilities (KEV) catalog, urging federal agencies to patch their systems by April 8, 2026.
A default setting allows code injection
The vulnerability, tracked as CVE-2026-33017, stems from an exposed API endpoint in Langflow, the open-source visual framework for building AI agents and Retrieval-Augmented Generation (RAG) pipelines.
The exposure allows attackers to submit malicious workflow data containing embedded Python code. Instead of using trusted data, the application executes this attacker-supplied code without any sandboxing, leading to unauthenticated remote code execution on affected systems, according to an NVD description.
“The build_public_tmp endpoint is designed to be unauthenticated (for public flows) but incorrectly accepts attacker-supplied flow data containing arbitrary executable code,” the description added. “This is distinct from CVE-2025-3248, which fixed /api/v1/validate/code by adding authentication.”
The Code Injection flaw affects Langflow versions up to (excluding) 1.8.2, and has been fixed in v1.9.0. It received a critical CVSS rating of 9.3 out of 10, owing to its “unauthenticated” and simple exploitability, massive AI attack surface, and high impact.
Pace of exploit raises concerns
Exploitation activity was observed less than a day after the vulnerability became public, which, Sysdig noted, demonstrates threat actors quickly operationalizing new vulnerabilities (probably through automation).
Attackers could build a working exploit just from the advisory description and quickly start scanning for flawed instances. “Exfiltrated information included keys and credentials, which provided access to connected databases and potential software supply chain compromise,” Sysdig researchers said.
With patch windows collapsing significantly, runtime detection remains a primary and the only option, Sysdig noted. “Every attacker in this campaign followed the same post-exploitation playbook: execute a shell command via Python’s os.popen(), then exfiltrate the output over HTTP,” it said, adding that runtime rules can detect these attempts.
The way runtime detection can help is by working on “day zero,” the researchers explained. “These rules do not require a signature for CVE-2026-33017 specifically because they detect the exploitation behavior, not the vulnerability. The same rules would fire regardless of whether the initial access came through CVE-2026-33017, CVE-2025-3248, or any other RCE in an application.”
Sysdig also shared a list of indicators of compromise (IOCs), including attacker source IPs, C2 and staging infrastructure detected, Dropper URLs, and interactsh callback domains. It recommends immediately upgrading to patched versions, restricting exposure, and monitoring for anomalous activity, emphasizing that exposed instances should be treated as potentially compromised.
View the full article
Threat actors are using adversary-in-the-middle (AitM) phishing pages to seize control of TikTok for Business accounts in a new campaign, according to a report from Push Security. Business accounts associated with social media platforms are a lucrative target, as they can be weaponized by bad actors for malvertising and distributing malware. "TikTok has been historically abused to distributeView the full article
Next year's regular iPhone 18 will feature the smaller Dynamic Island rumored to be coming to the iPhone 18 Pro models this September, according to Chinese leaker Ice Universe, who has a decent track record for leaks.

iPhone 18 Pro with a smaller Dynamic Island (mockup via Ice Universe)
In a new post on Weibo, the leaker said the smaller Dynamic Island will be adopted across the full iPhone 18 series, while the bezels on the next-generation devices will remain identical to those on the iPhone 17 series.

Going forward, Apple is planning a split-cycle launch strategy for the iPhone. Pro models will be announced in the coming fall season – likely alongside the company's first foldable iPhone – while the regular iPhone 18 will arrive early next year.

One leaker has cast doubt on reports that the iPhone 18 Pro models will have a narrower Dynamic Island, but most reports do support the claim. Related Roundup: iPhone 18Tags: Dynamic Island, Ice UniverseRelated Forum: iPhone
This article, "iPhone 18 Series: Same Bezels But Smaller Dynamic Island, Says Leaker" first appeared on MacRumors.com

Discuss this article in our forums

View the full article
Rising geopolitical tensions are reflected (or in some cases preceded) by cyber operations, while technology itself has become politicized. Let’s admit it: we are in the middle of it.  Introduction: One tech power to rule them all is a thing of the past  The relative safety, peace and prosperity that much of the world has enjoyed since 1945 was not accidental. It emerged from the ashesView the full article

Account

Navigation

Search

Search

Configure browser push notifications

Chrome (Android)
  1. Tap the lock icon next to the address bar.
  2. Tap Permissions → Notifications.
  3. Adjust your preference.
Chrome (Desktop)
  1. Click the padlock icon in the address bar.
  2. Select Site settings.
  3. Find Notifications and adjust your preference.