
430,000 Firewalls Became a Ransomware Supply Line
The FortiBleed campaign sniffed credentials from FortiGate firewalls using FortiOS own diagnostic tool, feeding INC Ransom and Lynx. A patched firewall is not enough.

The FortiBleed campaign sniffed credentials from FortiGate firewalls using FortiOS own diagnostic tool, feeding INC Ransom and Lynx. A patched firewall is not enough.

PEGI new interactive risk categories rate loot boxes at 16, addictive login streaks at 7, and unrestricted chat at 18. Monetization design is now a distribution decision.

DRAM and NAND could climb about 130 percent in 2026, lifting PC prices near 17 percent and phones near 13 percent. The AI data center is now in your hardware refresh line.

From 2 August 2026 the EU can fine GPAI model providers up to 3 percent of global turnover. If you build on their models, their documentation becomes your compliance file. What to do first.

xAI launched Grok 4.5 at 2 and 6 dollars per million tokens, a third of Opus, and it finishes tasks with 4.2 times fewer output tokens. It loses the benchmarks and wins the bill.

OpenAI launched GPT-Live, a full-duplex voice model rated better than Advanced Voice Mode, but the developer API is on a waitlist. The voice you can deploy this quarter is a different product.

On 8 July 2026 the US lifted a restriction that had staggered OpenAI's GPT-5.6, clearing a worldwide launch on Thursday. Under a June executive order Washington asked the lab to limit the model to about 20 vetted partners. For a European operator, the availability of a US frontier model is now a supply variable to plan around.

On 8 July 2026 Mistral released Robostral Navigate, an 8-billion-parameter model that guides a robot with a single ordinary camera and beats lidar and depth systems on the standard R2R-CE test. For a European operator it cuts the sensor cost of automation and offers a robot brain you can host yourself.

A maximum-severity Adobe ColdFusion flaw, CVE-2026-48282, was attacked within minutes of the technical write-up going public. US agencies must patch by 10 July, and the servers most at risk are the forgotten ones still running Remote Development Services.

CVE-2026-53359, named Januscape, is a 16-year-old flaw that lets a rented virtual machine break out and seize the physical host it shares with other tenants. Closing it needs two separate patches, not one, and patched Linux kernels only shipped on 4 July.

The 2026 AI Act delay pushed the high-risk deadlines to 2027 and 2028, but it left the enforcement clock on general-purpose AI providers untouched. From 2 August 2026 the European Commission can fine any GPAI model maker up to 3 percent of global turnover. Here is what that reaches on your desk.

On 6 July 2026 NVIDIA and Hugging Face put Isaac GR00T 1.7, an open and commercially usable robot foundation model, into LeRobot, along with a tool to collect demonstration data. When the model is free, the edge moves to whoever owns the task data.
Page 66 / 83
One considered note on infrastructure, governance, and measurement, most mornings. No theory.