Girl Scouts of the USA is introducing two new products for its 2024 cookie season: Sparkables, a nut-free, gluten-free and vegan oatmeal cookie made with Partake Foods, and Patch Pals, a blueberry muffin-flavored soft treat for dogs made with Bark. Both items will be sold exclusively online starting when cookie season begins on January 12, rather than through local troop sales.
cnet.com
· 2026-09-08
After 17 years without built-in voice communication for full teams, Riot Games is rolling out team-wide voice chat in League of Legends starting with Patch 26.20. The feature launches first in North America and Oceania, with other regions like Korea, Brazil and Latin America potentially following depending on how the rollout goes. Players need an Honor level of 3 or higher to speak, though anyone can listen, and Riot is also introducing customizable 'voice skins' along with improved noise cancellation and connection stability.
engadget.com
· 2026-09-08
Microsoft has issued the KB5122878 update for Windows 10 Enterprise LTSC and machines enrolled in the Extended Security Updates program, bumping systems to build 19045.7725 (or 19044.7725 for LTSC 2021). The update bundles this month's Patch Tuesday security fixes plus smaller changes covering Secure Boot certificate rollout, a time-zone correction for Morocco, and diagnostic and compatibility tweaks.
bleepingcomputer.com
· 2026-09-08
Microsoft's latest Patch Tuesday release addresses 966 vulnerabilities, its largest batch ever, including 105 rated Critical and two zero-days already being exploited in the wild. The count excludes 204 additional flaws Microsoft patched earlier in the month across products like Azure AI Language, Copilot Studio, and Entra ID.
bleepingcomputer.com
· 2026-09-08
Microsoft has shipped the September 2026 Patch Tuesday cumulative updates KB5124008 and KB5122880 for Windows 11 versions 25H2/24H2 and 23H2. The update patches roughly 1,000 vulnerabilities catalogued in recent months and is mandatory, installable via Windows Update or the Microsoft Update Catalog. Since 25H2 shares its codebase with 24H2, both versions receive identical fixes and features.
bleepingcomputer.com
· 2026-09-08
Microsoft is set to release its largest patch Tuesday yet, fixing more than 650 security vulnerabilities in Windows, according to sources. This follows a summer of escalating patch counts—around 200 in June, 570 in July, and nearly 400 in August—driven by AI models from Anthropic and OpenAI that are uncovering software flaws far faster than before.
theverge.com
· 2026-09-08
Plex is urging all users to immediately update Plex Media Server to version 1.43.3 and Plex Desktop to version 1.115.0, both released earlier this year, to fix multiple unspecified security vulnerabilities. The company emailed affected customers directly and said CVE identifiers have been requested but not yet published, though the flaws are known to impact Media Server v1.43.2 and earlier.
bleepingcomputer.com
· 2026-09-03
Shadowserver has identified nearly 22,000 internet-exposed Microsoft Exchange servers that remain unpatched against CVE-2026-62911, a high-severity authentication bypass flaw affecting Exchange Server 2016, 2019, and Subscription Edition. Most vulnerable systems are located in the United States and Germany, where officials say roughly 85% of on-premises Exchange servers remain exposed despite Microsoft releasing a fix in August 2026.
bleepingcomputer.com
· 2026-09-01
A technical note explains how to move large files directly between two computers by connecting them with a standard Ethernet patch cable, manually assigning IPv6 addresses to each machine's interface, and piping data through tools like socat and dd. The author reports this setup can reach roughly 900 Mbits per second on ordinary hardware, translating to about 6.7 GB per minute, far outpacing USB drives or cloud uploads for nearby machines.
maurycyz.com
· 2026-08-31
A tester given preview access to GPT-5.6-Cyber challenged the AI agent to escape a QEMU/KVM virtual machine on a Debian Linux host. The model succeeded three separate times, first using recently disclosed kernel bugs, then unpatched vulnerabilities not yet flagged as security issues, and finally by discovering its own zero-day exploits after the system was rebuilt from the latest source code.
blog.trailofbits.com
· 2026-08-26
CISA has issued an emergency directive requiring federal agencies to fix a Zimbra vulnerability, tracked as CVE-2026-73570, within just three days. The flaw is severe enough that exploitation could give an attacker complete control over a victim's email and communications.
darkreading.com
· 2026-08-24
Microsoft has confirmed that the August 2026 .NET Framework cumulative update causes some WPF-based applications to throw a System.IO.FileFormatException when printing or exporting to PDF/XPS with fonts like Calibri. The bug affects current Windows 10 and 11 releases as well as Windows Server versions from 2012 through 2025, and Microsoft is still working on a permanent fix.
bleepingcomputer.com
· 2026-08-24