The Wire
Curated cybersecurity and tech news — AI-summarized, source attributed.
Windows 11 admins get dynamic uninstall list for preinstalled Store apps
Microsoft has expanded its RemoveDefaultMicrosoftStorePackages policy so IT admins can specify any preinstalled MSIX/APPX app for removal by Package Family Name
Windows 11 KB5083631 preview ships Xbox mode, hardened batch file execution
Microsoft pushed the KB5083631 optional preview to Windows 11 24H2 and 25H2, bumping builds to 26100.8328 and 26200.8328 with 34 non-security changes destined f
Windows 11 KB5083769 update breaks third-party backup tools via VSS timeout
Microsoft's April 2026 KB5083769 security update is breaking backup software on Windows 11 24H2 and 25H2 by causing Volume Shadow Copy Service snapshots to time
Zig creator: LLM-assisted PRs leave a 'digital smell' maintainers can detect
Andrew Kelley, creator of the Zig programming language, pushed back on the assumption that maintainers can't distinguish AI-generated contributions from human o
AI Agent Surfaces 38 Bugs in OpenEMR, Exposing Health Record Attack Surface
An AI-driven code analysis run against OpenEMR, a widely deployed open-source electronic health record platform, surfaced 38 distinct security flaws. The findin
AI-Assisted Reverse Engineering Surfaces High-Severity GitHub Flaw
Researchers leveraged AI tooling to reverse engineer GitHub internals and uncover a high-severity vulnerability in the platform. The approach demonstrates how l
Anthropic's Mythos Disclosure Rattles Japanese Financial Sector
Anthropic's recent disclosure of a Claude-driven autonomous attack campaign — dubbed Mythos — has triggered alarm across Japan's financial services industry. In
Claude Mythos surfaces 271 latent Firefox vulns in single sweep
Mozilla disclosed that Firefox 150 ships with fixes for 271 security vulnerabilities identified by an early build of Anthropic's Claude Mythos Preview, an order
Compromised SAP-linked npm packages exfiltrate developer credentials
Several npm packages tied to SAP tooling were hijacked and republished with credential-stealing payloads, hitting developers who pulled updates before the malic
cPanel Auth Bypass Flaw Lets Attackers Hijack Hosting Servers — Patch Now
A critical authentication vulnerability has been disclosed in cPanel, the web hosting control panel that runs on a substantial share of shared and managed Linux
cPanel/WHM emergency patch closes 9.8-severity auth bypass in hosting control panels
WebPros has shipped an out-of-band fix for CVE-2026-41940, a 9.8-rated authentication bypass in cPanel and WHM that lets attackers reach the control panel witho
Critical RCE flaws in Gemini CLI and Cursor expose AI coding tools to silent takeover
Google has patched a maximum-severity CVSS 10 remote code execution flaw in the Gemini CLI's CI integration, alongside a parallel set of vulnerabilities in Curs