RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

aidevops

Anthropic's Code w/ Claude 2026: no new model, but Routines, Dreaming, and a SpaceX deal

Anthropic's Code w/ Claude 2026 keynote skipped a model launch and instead focused on tooling around the existing Claude lineup. Chief Product Officer Ami Vora

via Simon Willison ·
cybersecuritymalware

Backups fail in ransomware attacks because attackers hunt them first

Ransomware operators no longer just encrypt production systems — they systematically destroy backups before triggering payloads. The standard kill chain runs fr

via BleepingComputer ·
policytech-culture

Bridenstine takes over Quantum Space as Pentagon ramps up orbital maneuver push

Former NASA administrator and ex-Navy aviator Jim Bridenstine has been named CEO of Quantum Space, a Maryland firm pitching national security customers a highly

via Ars Technica ·
cybersecurityvulnerability

Cisco CNC/NSO flaw lets unauthenticated attackers wedge systems until manual reboot

Cisco patched CVE-2026-20188, a high-severity DoS flaw in Crosswork Network Controller and Network Services Orchestrator caused by missing rate limiting on inbo

via BleepingComputer ·
supply-chainmalware

DAEMON Tools Lite ships clean build after supply chain trojan hits free installer

Disc Soft confirmed its build environment was compromised, resulting in trojanized DAEMON Tools Lite (free) installers distributed from the official site betwee

via BleepingComputer ·
cybersecuritymalware

Fake Claude AI site pushes 'Beagle' Windows backdoor via trojanized installer

A spoofed Claude AI site at claude-pro[.]com is distributing a 505MB MSI installer that masquerades as a 'Claude-Pro Relay' tool for Claude Code developers. Sop

via BleepingComputer ·
privacyai

ICE Building Facial-Recognition Smart Glasses Wired to Federal Biometric Databases

U.S. Immigration and Customs Enforcement is developing smart glasses that perform real-time facial recognition against federal biometric holdings, including gai

via Schneier on Security ·
cybersecuritysupply-chain

Instructure Breach Lays Bare K-12's Single-Vendor Risk in Canvas LMS

A breach at Instructure, the company behind the Canvas learning management system used across thousands of schools and universities, has surfaced how deeply edu

via Dark Reading ·
open-sourcetech-culture

Library of Congress Adds SQLite to Its Short List of Recommended Dataset Formats

The US Library of Congress has designated SQLite as a Recommended Storage Format for datasets, placing it alongside XML, JSON, and CSV as one of only four forma

via Hacker News ·
cybersecuritymalware

MuddyWater Hides Iranian Espionage Behind Chaos Ransomware Brand via Teams Phishing

Rapid7 attributes an early-2026 intrusion to Iran's MuddyWater group operating under the cover of the Chaos ransomware-as-a-service brand. Operators initiated c

via The Hacker News ·
cybersecuritymalware

New bypass punches through Chrome's app-bound encryption for cookie theft

Researchers have demonstrated another technique that defeats Google Chrome's app-bound encryption, the protection Google introduced to stop infostealers from li

via Dark Reading ·
cybersecurityvulnerability

PAN-OS Captive Portal zero-day exploited since April 9 by suspected state actors

Palo Alto Networks disclosed CVE-2026-0300, an unauthenticated remote code execution flaw in the PAN-OS User-ID Authentication Portal caused by a buffer overflo

via BleepingComputer ·