Lotu RadarAbout · RSS

Latest News Archive - Page 549

Cybersecurity · The Hacker News

236,000 DCloud Uni-App Sites Used in Crypto Scams, Phishing, and Wallet Drainers

New findings unearthed by Infoblox show that more than 236,000 websites are using investment scam templates built using a legitimate Chinese open-source, cross-platform application development framework called DCloud Uni-App. The templates power bogus cryptocurrency exchanges, multi-language pig-butchering operations, WhatsApp phishing networks, fake gambling platforms, brand-impersonation

Cybersecurity · The Hacker News

Why Post-Quantum Cryptography Starts With Credentials

Today’s encrypted data, such as credentials, may no longer remain confidential in the future because the public-key cryptography protecting it will soon be broken by quantum computers. Although no machine today can break elliptic curve cryptography or RSA, quantum hardware is advancing rapidly and will inevitably change how organizations protect their data. Ciphertext and credentials captured by

Cybersecurity · The Hacker News

Gamaredon Expands Ukraine Attacks with New Malware and Cloud Service Abuse

A Russian advanced persistent threat (APT) group has continued to evolve and expand its malware arsenal as part of its ongoing cyber onslaught against Ukraine throughout 2025. Slovakian cybersecurity company ESET said it observed 35 distinct spear-phishing campaigns mounted by Gamaredon against new targets, with most of them taking place in the second half of the year. Primary targets of these

Products & Consumer Tech · The Verge

Comcast is splitting in two

Comcast has announced plans to separate itself into two publicly traded companies, spinning off its NBCUniversal and Sky broadcasting arms. The shake up aims to protect the media conglomerate's profitable broadband and wireless brand, which will retain the "Comcast" company name, as its media and entertainment business - now collectively named "NBCUniversal" - faces increasing […]

Cybersecurity · BleepingComputer

US seizes hundreds of FIFA World Cup illegal streaming domains

The U.S. Justice Department's Criminal Division has seized nearly 400 web domains used for illegally streaming matches at the FIFA World Cup. [...]

Cybersecurity · SecurityWeek

‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access

A variant of DirtyFrag, the flaw allows unprivileged local users to manipulate the Linux page cache and gain root privileges. The post ‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access appeared first on SecurityWeek .

Cloud & Infrastructure · CNCF Blog

OTel and mesh-derived metrics: A 2026 reference

If you already run an OpenTelemetry pipeline, you have good visibility into what your applications are doing. This blog post is about what you don’t see yet: the east-west traffic between your services, measured at the...

Cloud & Infrastructure · CNCF Blog

etcd-operator joins Cozystack with a new v1alpha2 API

The etcd-operator project, which develops an operator for deploying and maintaining etcd clusters on Kubernetes, has been donated to the Cozystack project. Alongside the donation, a from-scratch implementation of the operator has been published under a...

Business · CNBC Technology

SpaceX's $25 billion bond sale drives huge demand - and a potential headache for investors

SpaceX’s $25 billion debt sale drew heavy demand, but analysts warn of capital spending, refinancing and investor concentration risks.

Products & Consumer Tech · Ars Technica

NASA's X-59 "frankenjet" tests supersonic flight without the sonic boom

NASA’s quiet supersonic flight tests could eventually go on a national tour.

Cybersecurity · SecurityWeek

OpenAI and Anthropic Limit New AI Models to Trump-Approved Customers During Cybersecurity Review

ChatGPT maker OpenAI said Friday it is restricting the release of its new artificial intelligence model at the request of President Donald Trump’s administration. The post OpenAI and Anthropic Limit New AI Models to Trump-Approved Customers During Cybersecurity Review appeared first on SecurityWeek .

AI · The Decoder

Claude Code runs a GitHub repo's hidden malware without verification, giving attackers full control

Security researchers at Mozilla's 0DIN platform have shown how a single compromised GitHub repo can take over a developer's machine the moment an AI coding tool like Claude Code runs its setup. The catch: the malicious code only loads at runtime via a DNS query, invisible in the repo, to scanners, and to the AI agent itself. The article Claude Code runs a GitHub repo's hidden malware without verification, giving attackers full control appeared first on The Decoder .

Notable Blogs · Stratechery

Summer Break: Week of June 29

Stratechery is on summer break the week of June 29. There will be no Weekly Article or Updates. The next Update will be on Tuesday, July 7. Dithering, Sharp Tech, and Sharp China will also return the week of July 6. Greatest of All Talk and Asianometry will continue to publish. The full Stratechery posting schedule is here.

Startups & Funding · Hacker News Best

Pollen tried to remove my article and Google is assisting with it

Article URL: https://blog.pragmaticengineer.com/pollen-tried-to-remove-my-article-about-callum-negus-fancey-and-google-is-assisting-to-it/ Comments URL: https://news.ycombinator.com/item?id=48716902 Points: 620 # Comments: 88

Notable Blogs · Seth Godin

Backlist confusion

The backlist are the products already in the marketplace. Built earlier, still sold. The frontlist is the new. Restaurants have regulars (backlist) and new patrons. Broadway shows are attended by people who see three to ten shows a year, as well as folks going to their very first production. Supermarkets sell staples (like milk and […]

Society · NPR Technology

Red, white and glowing blue: Trump's push for new reactors reaches the finish line

A program initiated by the Trump administration has allowed small companies to rush their testing of several new nuclear reactor designs. Some worry that safety is being compromised.

Business · BBC Business

South Korea unveils $880bn chip and AI investment plan

It comes as regional rivals like Taiwan, China and Japan are investing heavily in chip factories and other technology.

Products & Consumer Tech · Product Hunt

Bilt.me - Figma

Get a real mobile app from your Figma design Discussion | Link

Society · NPR Technology

Study finds Australia's social media ban for children has barely affected access

Despite Australia promising tougher penalties for a world-first social media ban for children, a new study indicates that six months in, the policy has barely affected youth access.

Cybersecurity · The Hacker News

Microsoft Removes 119 Edge Extensions That Hid Malware in Images and Fonts

Microsoft has shut down a long-running malicious extension operation on the Edge Add-ons store that hid its payloads inside ordinary image and font files, then woke up days after install to steal credentials and run ad fraud. The company calls it StegoAd, a mash-up of steganography and adware, and ties 119 extensions to a single threat actor it says has been active since at least 2021.

Products & Consumer Tech · Product Hunt

Midway Chat

Real-time member chat for Memberstack and Webflow sites Discussion | Link

AI · The Decoder

Samsung and SK Hynix plan $590 billion chip investment as AI demand sends memory prices soaring

Samsung and SK Hynix, backed by the South Korean government, are pouring $590 billion into new chip factories and packaging centers as AI data center demand surges. According to Jefferies, memory prices could climb to 50 percent per quarter through 2027. The two companies control nearly 80 percent of the global HBM market. The article Samsung and SK Hynix plan $590 billion chip investment as AI demand sends memory prices soaring appeared first on The Decoder .

Products & Consumer Tech · Product Hunt

Justwrite

A private, local-first writing space that works offline Discussion | Link

Cybersecurity · The Hacker News

Public PoC Released for Critical libssh2 CVE-2026-55200 Client-Side SSH Flaw

A public proof-of-concept is now out for CVE-2026-55200, a critical flaw in libssh2 that lets a malicious or compromised SSH server trigger memory corruption on a connecting client, with possible code execution. No credentials, no user interaction. The bug affects every release up to and including 1.11.1 and carries a CVSS 4.0 score of 9.2. libssh2 is a client-side SSH library, not a server.