Security firm Socket uncovered a campaign, active since early 2024, in which 16 malware modules were pushed through browser extensions on the Chrome Web Store and Microsoft Edge add-ons store. Five extensions were initially legitimate but were bought from their original developers and later turned malicious via automatic updates, including one tool with roughly 70,000 Chrome users and 10,000 Edge users. Once activated, the extensions connected to remote servers to strip website security headers, inject phishing scripts, and drain cryptocurrency wallets on platforms like Coinbase, Binance, Kraken and MetaMask.
Startups like Prenuvo and Neko Health are selling elective full-body MRI diagnostics to wealthy clients, with prices ranging from $2,500 to $4,000 per scan promising detection of hundreds of conditions. This luxury health trend is expanding even as a growing share of Americans, now 36 percent according to a KFF survey, report skipping doctor visits due to cost.
A Wonder Tools newsletter roundup highlights software for private AI chats, offline audio transcription, and secure PDF redaction that all run without sending user data to external servers. The focus is on tools designed so sensitive information stays on the user's own device rather than being uploaded for processing.
An engineer upgrading a MySQL database via a replica discovered that a table's auto-incrementing primary key was assigned in a different row order on the replica than on the source. Because six related tables had been migrated to reference these new IDs, one of them ended up pointing to completely wrong rows after the switchover, while the other five happened to remain correct.
Following its latest earnings report, Nvidia is showing investors that its competitive moat isn't limited to GPU chips, where rivals like Amazon and Google are building in-house alternatives. The company's Vera Rubin architecture bundles GPUs with CPUs, inference accelerators, storage and networking racks, positioning Nvidia as the orchestrator of entire gigawatt-scale AI data centers rather than just a chip supplier.
A wave of surveys and protests shows growing American distrust of major tech companies, driven by anxiety over AI-related job losses, sprawling data center construction, and the addictive design of social media platforms. This week Meta agreed to pay up to $17 billion to settle claims tied to its apps' harmful effects, adding fuel to public frustration that coincides with high inflation and falling consumer confidence.
Residents and advocacy group Stand.earth allege that the DataOne data center in Vineland, New Jersey — tied to a $19.4 billion Nebius-Microsoft GPU deal — has been running dozens of unpermitted gas turbines and building an unpermitted 1.5-million-gallon LNG storage tank near two schools. Locals say they only learned the site was a data center after the Microsoft deal became public, and complaints about nighttime noise and air pollution led to a delayed town hall in January 2026, months after construction began.
A journalist filed over 100 California Consumer Privacy Act data-access requests to major companies, including McDonald's, which returned a 515-page report detailing app behavior and predictive profiling. Many companies mishandled the process—some deleted data instead of disclosing it despite explicit instructions otherwise, while others ignored the contact methods listed in their own privacy policies.
A commentary argues that the widespread criticism of GDPR, especially over cookie consent banners, misreads what's happening. The author contends that companies deliberately designed those banners as confusing dark patterns to frustrate users into clicking 'accept,' not because the regulation demanded it, and that this design choice is being unfairly blamed on the law itself.
A report examines whether components and equipment sourced from Chinese manufacturers are quietly underpinning the rapid expansion of American data centers driving the AI buildout. The claim centers on supply chain dependencies that persist even as US-China tech tensions escalate publicly.
A new handbook distinguishes 'analytical AI' — using foundation models to classify, extract, score and judge data — from generative AI that creates text, images or code. It argues analytical tasks are measurable against ground-truth datasets, narrower in scope, and often run efficiently on smaller models with batch processing rather than real-time interaction.
McKesson, a major U.S. healthcare and pharmaceutical distributor, disclosed in an SEC filing that it discovered unauthorized access to third-party applications and data exfiltration on August 25, 2026. The extortion group ShinyHunters claims responsibility, alleging it stole 284 million patient records, though McKesson has not confirmed the scope or named the affected applications. The company says its investigation is ongoing and has not yet determined whether the incident is financially material.