Latest Tech News

Stay updated with the latest in technology, AI, cybersecurity, and more

Filtered by: 02 Clear Filter

On stage at TechCrunch Disrupt 2025: How AI is forcing late-stage startups to rewire GTM — or be left behind

AI isn’t just disrupting products — it’s upending how companies sell, scale, and succeed. At TechCrunch Disrupt 2025, happening October 27–29 in San Francisco, we’re diving deep into how late-stage startups are navigating this shift. Catch this dynamic panel on the Going Public Stage, where three seasoned leaders will explore how AI is transforming go-to-market (GTM) strategies from the inside out. Why attend this session? If you’re scaling a startup and wondering how AI fits into your next ph

Topics: 2025 ai brings com gtm

Microsoft links Sharepoint attacks to Chinese hacking groups

Several hacking groups with ties to the Chinese government have been linked to a recent wave of widespread attacks targeting a Microsoft SharePoint zero-day vulnerability chain. They used this exploit chain (dubbed "ToolShell") to breach dozens of organizations worldwide after hacking into their on-premise SharePoint servers. "Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon exploiting these vulnerabilities targeting internet-facing SharePoint serv

Microsoft Sharepoint ToolShell attacks linked to Chinese hackers

Hackers with ties to the Chinese government have been linked to a recent wave of widespread attacks targeting a Microsoft SharePoint zero-day vulnerability chain. They used this exploit chain (dubbed "ToolShell") to breach dozens of organizations worldwide after hacking into their on-premise SharePoint servers. "We assess that at least one of the actors responsible for this early exploitation is a China-nexus threat actor. It's critical to understand that multiple actors are now actively explo

A new Moto 360 is coming, but maybe not like you’d expect

TL;DR Leaked renders have provided us with our first glimpse of the new Moto 360 (2025) smartwatch. Unlike the last Moto 360, this one is reportedly made by Motorola itself, rather than a third-party company. Currently, it’s unclear whether the Moto 360 (2025) will run Wear OS, a scaled-back RTOS, or both. The Moto 360 will forever be one of the most memorable Android smartwatches, and according to a new leak, an updated 2025 model may be on the way soon. On Monday, Android Headlines publishe

Topics: 2025 360 moto os watch

SharePoint vulnerability with 9.8 severity rating under exploit across globe

Authorities and researchers are sounding the alarm over the active mass exploitation of a high-severity vulnerability in Microsoft SharePoint Server that’s allowing attackers to make off with sensitive company data, including authentication tokens used to access systems inside networks. Researchers said anyone running an on-premises instance of SharePoint should assume their networks are breached. The vulnerability, tracked as CVE-2025-53770, carries a severity rating of 9.8 out of a possible 1

Comparison of MGR, SunView, OpenWindows and X11R6 (2022)

My general vintage computing projects, mostly microcomputers, 6502, PalmOS, 68K/Power Mac and Unix workstations, but that's not all you'll see. While over the decades I've written for publications likeand, these articles are all original and just for you. My promise: No AI-generated article text, ever. All em-dashes are intentional and inserted by hand. Be kind, REWIND and PLAY.Old VCR is advertisement- and donation-funded, and what I get goes to maintaining the hardware here at Floodgap. I don'

Dior begins sending data breach notifications to U.S. customers

The House of Dior (Dior) is sending data breach notifications to U.S. customers informing them that a May cybersecurity incident compromised their personal information. Dior is a French luxury fashion house, part of the LVMH (Moët Hennessy Louis Vuitton) group, which is the world's largest luxury conglomerate. The Dior brand alone generates an annual revenue of over $12 billion, operating hundreds of boutiques worldwide. The security incident occurred on January 26, 2025, but the company only

Microsoft Fix Targets Attacks on SharePoint Zero-Day

On Sunday, July 20, Microsoft Corp. issued an emergency security update for a vulnerability in SharePoint Server that is actively being exploited to compromise vulnerable organizations. The patch comes amid reports that malicious hackers have used the Sharepoint flaw to breach U.S. federal and state agencies, universities, and energy companies. In an advisory about the SharePoint security hole, a.k.a. CVE-2025-53770, Microsoft said it is aware of active attacks targeting on-premises SharePoint

Microsoft fixes two SharePoint zero-days under attack, but it's not over - how to patch

sankai/Getty Microsoft has patched two critical zero-day SharePoint security flaws that have already been exploited by hackers to attack vulnerable organizations. Responding to the exploits, the software giant has issued fixes for SharePoint Server Subscription Edition and SharePoint Server 2019 but is still working on a patch for SharePoint Server 2016. Designated as CVE-2025-53771 and CVE-2025-53770, the two vulnerabilities apply only to on-premises versions of SharePoint, so organizations t

Over 1,000 CrushFTP servers exposed to ongoing hijack attacks

Over 1,000 CrushFTP instances currently exposed online are vulnerable to hijack attacks that exploit a critical security bug, providing admin access to the web interface. The security vulnerability (CVE-2025-54309) is due to mishandled AS2 validation and impacts all CrushFTP versions below 10.8.5 and 11.3.4_23. The vendor tagged the flaw as actively exploited in the wild on July 19th, noting that attacks may have begun earlier, although it has yet to find evidence to confirm this. "July 18th,

Microsoft releases emergency patches for SharePoint RCE flaws exploited in attacks

Microsoft has released emergency SharePoint security updates for two zero-day vulnerabilities tracked as CVE-2025-53770 and CVE-2025-53771 that have compromised services worldwide in "ToolShell" attacks. In May, during the Berlin Pwn2Own hacking contest, researchers exploited a zero-day vulnerability chain called "ToolShell," which enabled them to achieve remote code execution in Microsoft SharePoint. These flaws were fixed as part of the July Patch Tuesday updates; However, threat actors were

Former Tesla president discloses the secret to scaling a company

Few companies have grown as quickly as Tesla, especially just before and after the company launched the Model 3, its first affordable EV. “We scaled Tesla in 30 months from $2 billion in revenue to $20 billion in revenue,” Jon McNeil, the former president of Tesla who is now co-founder and CEO of DVx Ventures, told the crowd at TechCrunch’s All Stage event in Boston. It wasn’t McNeil’s first time scaling companies, nor would it be his last. Previously, he founded six different companies, and a

Microsoft SharePoint zero-day exploited in RCE attacks, no patch available

A critical zero-day vulnerability in Microsoft SharePoint, tracked as CVE-2025-53770, has been actively exploited since at least July 18th, with no patch available and at least 85 servers already compromised worldwide. In May, Viettel Cyber Security researchers chained two Microsoft SharePoint flaws, CVE-2025-49706 and CVE-2025-49704, in a "ToolShell" attack demonstrated at Pwn2Own Berlin to achieve remote code execution. While Microsoft patched both ToolShell flaws as part of the July Patch T

Early ‘Fantastic Four: First Steps’ Reactions Say It’s…Well, Y’know,

We’re less than a full week away from Fantastic Four: First Steps, and Marvel’s already gone and let early watchers give their thoughts on the film. That’s nothing terribly new, save for these thoughts come ahead of the film’s Hollywood premiere on Monday night, when they were originally meant to drop. But it’s not without reason, as the impressions are quite glowing, even moreso than last weekend’s Superman or Thunderbolts* from a few months ago. Check out the impressions from critics and influ

Roku’s newest streaming sticks are on sale!

These offers are available from Amazon as “limited time deals.” This means the deals should end relatively soon. Streaming Stick HD 2025 The Streaming Stick HD 2025 is for those who don’t need 4K resolutions. If you have a Full HD TV, this one will be more than good enough, as it offers a 1,080p resolution. It’s small at just 3.7 x 0.8 x 0.5 inches, and hides away in the back of your TV. You’ll also get a Roku Voice Remote. While more affordable, it offers all the capabilities of Roku streame

Mr Browser – Macintosh Repository file downloader that runs directly on 68k Macs

What is MR Browser? MR Browser is a small utility app allowing very old Macs from the 90's that are too old to use a normal web browser, but are new enough to connect to the internet through TCP/IP, to access Macintosh Repository online services, e.g. to directly download files without the help of a modern computer. For now, it's limited to only listing files smaller than 1GB, considering it's only meant to run on mid 90's System 7 environments. Note: Before downloading files with MR Browser, to

Topics: 06 2025 browser mr v0

Samsung Galaxy Flip 7 FE vs. Motorola Razr 2025: Battle of the Budget Foldables

Samsung just unveiled its $900 Galaxy Flip 7 FE, the most affordable foldable phone the company has ever released. Despite that position in Samsung's history, the Galaxy Z Flip 7 FE is still notably pricier than the $700 Motorola Razr 2025, leaving a decided gap in cost that makes their value comparison even more intriguing. That's because Samsung and Motorola have been neck and neck in pushing the envelope for clamshell foldables. The first modern-era Motorola Razr came out in early 2020 and t

Topics: 2025 fe flip galaxy razr

GrapheneOS makers take a knife to this ‘Google-free’ phone coming to the US (Updated)

Update, July 18, 2025 (04:40 PM ET): We have just heard back from Fairphone in response to our inquiry. In a statement, the company explains: Fairphone and Murena have a strong, proud partnership that offers many users around the world a secure, sustainable, and modular smartphone alternative – with a clear focus on longevity and lasting value. We’re committed to delivering operating systems that meet market-standard security expectations. While we respect that there are different approaches to

What is Mistral AI? Everything to know about the OpenAI competitor

Mistral AI, the French company behind AI assistant Le Chat and several foundational models, is officially regarded as one of France’s most promising tech startups and is arguably the only European company that could compete with OpenAI. But compared to its $6 billion valuation, its global market share is still relatively low. However, the recent launch of its chat assistant on mobile app stores was met with some hype, particularly in its home country. “Go and download Le Chat, which is made by

Hackers scanning for TeleMessage Signal clone flaw exposing passwords

Researchers are seeing exploitation attempts for the CVE-2025-48927 vulnerability in the TeleMessage SGNL app, which allows retrieving usernames, passwords, and other sensitive data. TeleMessage SGNL is a Signal clone app now owned by Smarsh, a compliance-focused company that provides cloud-based or on-premisses communication solutions to various organizations. Scanning for vulnerable endpoints Threat monitoring firm GreyNoise has observed multiple attempts to exploit CVE-2025-48927, likely b

Netflix just revealed its biggest shows and movies coming this year and next

Netflix reported its quarterly earnings yesterday, and alongside revealing viewership data from the first half of 2025, Co-CEO Ted Sarandos name-dropped a bunch of the streamer’s biggest TV shows and movies that are coming throughout the rest of 2025 and into 2026. Netflix’s back half of 2025 has ‘most anticipated slate of new movies’ ever Ted Sarandos, who made his acting debut in Apple TV+ hit The Studio this year, also happens to be Netflix’s Co-CEO, was asked yesterday whether Netflix can

Citrix Bleed 2 exploited weeks before PoCs as Citrix denied attacks

A critical Citrix NetScaler vulnerability, tracked as CVE-2025-5777 and dubbed "CitrixBleed 2," was actively exploited nearly two weeks before proof-of-concept (PoC) exploits were made public, despite Citrix stating that there was no evidence of attacks. GreyNoise has confirmed its honeypots detected targeted exploitation from IP addresses located in China on June 23, 2025. "GreyNoise has observed active exploitation attempts against CVE-2025-5777 (CitrixBleed 2), a memory overread vulnerabili

VMware fixes four ESXi zero-day bugs exploited at Pwn2Own Berlin

VMware fixed four vulnerabilities in VMware ESXi, Workstation, Fusion, and Tools that were exploited as zero-days during the Pwn2Own Berlin 2025 hacking contest in May 2025. Three of the patched flaws have a severity rating of 9.3, as they allow programs running in a guest virtual machine to execute commands on the host. These flaws are tracked as CVE-2025-41236, CVE-2025-41237, and CVE-2025-41238. These flaws are described in the security advisory as: CVE-2025-41236 : VMware ESXi, Workstatio

Max severity Cisco ISE bug allows pre-auth command execution, patch now

A critical vulnerability (CVE-2025-20337) in Cisco's Identity Services Engine (ISE) could be exploited to let an unauthenticated attacker store malicious files, execute arbitrary code, or gain root privileges on vulnerable devices. The security issue received the maximum severity rating, 10 out of 10, and is caused by insufficient user-supplied input validation checks. It was discovered by Kentaro Kawane, a researcher at the Japanese cybersecurity service GMO Cybersecurity by Ierae, and report

The Open 2025: TV Schedule Today, How to Watch, Stream All the PGA Tour Golf From Anywhere

World No. 1 Scottie Scheffler will be aiming to claim the iconic Claret Jug and his second major of the season this weekend as the world's top players gather in Northern Ireland's at Royal Portrush Golf Club for the 153rd Open Championship. Keep reading to find out the best live TV streaming services you can use to watch each day of the tournament live wherever you are in the world, and how to use a VPN if they're not available where you are. Scheffler enters the tournament as the favorite, bu

PyPI Prohibits inbox.ru email domain registrations

Prohibiting inbox.ru email domain registrations A recent spam campaign against PyPI has prompted an administrative action, preventing using the inbox.ru email domain. This includes new registrations as well as adding as additional addresses. The campaign created over 250 new user accounts, publishing over 1,500 new projects on PyPI, leading to end-user confusion, abuse of resources, and potential security issues. All relevant projects have been removed from PyPI, and accounts have been disabl

ASML shares drop 11% after the chip giant says it can't confirm that it will grow in 2026

ASML on Wednesday warned of the possibility of no growth in 2026, even as it beat top and bottom line expectations for the second quarter. ASML's guidance for the current quarter missed expectations while it narrowed its own forecast for the rest of the year. Shares of the firm ended the day 11.4% lower. Like many companies in the semiconductor industry, ASML has been grappling with uncertainty created by U.S. tariff policy. The company forecast third-quarter revenue of between 7.4 billion eu

New Fortinet FortiWeb hacks likely linked to public RCE exploits

Multiple Fortinet FortiWeb instances recently infected with web shells are believed to have been compromised using public exploits for a recently patched remote code execution (RCE) flaw tracked as CVE-2025-25257. News of the exploitation activity comes from threat monitoring platform The Shadowserver Foundation, which observed 85 infections on July 14 and 77 on the next day. The researchers reported that these Fortinet FortiWeb instances are believed to be compromised through the CVE-2025-252

Google fixes actively exploited sandbox escape zero day in Chrome

Google has released a security update for Chrome to address half a dozen vulnerabilities, one of them actively exploited by attackers to escape the browser's sandbox protection. The vulnerability is identified as CVE-2025-6558 and received a high-severity rating of 8.8. It was discovered by researchers at Google’s Threat Analysis Group (TAG) on June 23. The security issue is described as an insufficient validation of untrusted input in ANGLE and GPU that affects Google Chrome versions before 1