RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

policytech-culture

Bridenstine takes over Quantum Space as Pentagon ramps up orbital maneuver push

Former NASA administrator and ex-Navy aviator Jim Bridenstine has been named CEO of Quantum Space, a Maryland firm pitching national security customers a highly

via Ars Technica ·
cybersecurityvulnerability

Cisco CNC/NSO flaw lets unauthenticated attackers wedge systems until manual reboot

Cisco patched CVE-2026-20188, a high-severity DoS flaw in Crosswork Network Controller and Network Services Orchestrator caused by missing rate limiting on inbo

via BleepingComputer ·
supply-chainmalware

DAEMON Tools Lite ships clean build after supply chain trojan hits free installer

Disc Soft confirmed its build environment was compromised, resulting in trojanized DAEMON Tools Lite (free) installers distributed from the official site betwee

via BleepingComputer ·
cybersecuritymalware

Fake Claude AI site pushes 'Beagle' Windows backdoor via trojanized installer

A spoofed Claude AI site at claude-pro[.]com is distributing a 505MB MSI installer that masquerades as a 'Claude-Pro Relay' tool for Claude Code developers. Sop

via BleepingComputer ·
privacyai

ICE Building Facial-Recognition Smart Glasses Wired to Federal Biometric Databases

U.S. Immigration and Customs Enforcement is developing smart glasses that perform real-time facial recognition against federal biometric holdings, including gai

via Schneier on Security ·
cybersecuritysupply-chain

Instructure Breach Lays Bare K-12's Single-Vendor Risk in Canvas LMS

A breach at Instructure, the company behind the Canvas learning management system used across thousands of schools and universities, has surfaced how deeply edu

via Dark Reading ·
open-sourcetech-culture

Library of Congress Adds SQLite to Its Short List of Recommended Dataset Formats

The US Library of Congress has designated SQLite as a Recommended Storage Format for datasets, placing it alongside XML, JSON, and CSV as one of only four forma

via Hacker News ·
cybersecuritymalware

MuddyWater Hides Iranian Espionage Behind Chaos Ransomware Brand via Teams Phishing

Rapid7 attributes an early-2026 intrusion to Iran's MuddyWater group operating under the cover of the Chaos ransomware-as-a-service brand. Operators initiated c

via The Hacker News ·
cybersecuritymalware

New bypass punches through Chrome's app-bound encryption for cookie theft

Researchers have demonstrated another technique that defeats Google Chrome's app-bound encryption, the protection Google introduced to stop infostealers from li

via Dark Reading ·
cybersecurityvulnerability

PAN-OS Captive Portal zero-day exploited since April 9 by suspected state actors

Palo Alto Networks disclosed CVE-2026-0300, an unauthenticated remote code execution flaw in the PAN-OS User-ID Authentication Portal caused by a buffer overflo

via BleepingComputer ·
tech-culturepolicy

Permacomputing: 10 Principles for Sustainable, Resilient Digital Practice

Permacomputing borrows from permaculture's ethics of Earth Care, People Care, and Fair Share, translating them into ten design principles aimed at reducing the

via Hacker News ·
cybersecurityvulnerability

Rowhammer Jumps to NVIDIA GPUs, Yielding Full Host Compromise

Three independent research teams have demonstrated Rowhammer attacks against NVIDIA Ampere GPUs that escalate from GDDR memory bitflips to full control of the h

via Schneier on Security ·