Toggle light / dark theme

SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch now

SonicWall warns that threat actors have been exploiting two SMA1000 vulnerabilities, tracked as CVE-2026–15409 and CVE-2026–15410, in zero-day attacks and urges customers to install the newly released security updates.

CVE-2026–15409 is a critical (CVSS 10.0) server-side request forgery (SSRF) vulnerability in the SMA1000 Appliance Work Place interface that allows a remote, unauthenticated attacker to force an appliance to make requests to unintended locations.

CVE-2026–15410 is a high-severity (CVSS 7.2) post-authentication code injection flaw in the SMA1000 Appliance Management Console that could allow a remote authenticated administrator to execute arbitrary operating system commands.

Microsoft releases Windows 10 KB5099539 extended security update

Microsoft has released the Windows 10 KB5099539 extended security update, which includes the July 2026 Patch Tuesday security updates for 570 vulnerabilities, along with additional security fixes.

Initially, Microsoft only offered consumers one year of extended security updates. However, last month, Microsoft quietly extended its free Windows 10 Extended Security Updates (ESU) program for consumers by an additional year, allowing enrolled devices to receives security updates until October 12, 2027.

If you are running Windows 10 Enterprise LTSC or are enrolled in the ESU program, you can install this update like normal by going into Settings, clicking on Windows Update, and manually performing a ‘Check for Updates.’

DNA origami turns secret messages into nano–Morse code that acts as multiplayer molecular encryption

Mathematics has always been at the core of securing information. From online banking to government communications, modern society relies on cryptography, in which complex mathematical algorithms transform readable information into an unreadable form to keep it secure. But as computing power grows and quantum technology advances, these mathematical safeguards are increasingly vulnerable to being broken. That’s where biology stepped in.

Choosing DNA as their information protector, researchers from China developed a multilayer encryption device that takes advantage of the double-helix molecule’s programmable nature to create an origami structure that can store information with high security.

This new system used tiny, custom-built rectangular structures made of DNA, in which researchers stored the message as dots and dashes, creating a nanoscale version of Morse code. To hide the message further, they turned the flat DNA origami surfaces into tubes, physically blocking the patterns from being read or imaged. With the help of a matching unlocking key, the recipient can trigger a reaction that unrolls the DNA back to its flat form, allowing them to read and verify the message.

Testing the limits of what’s possible (and what isn’t) with AI

When can we trust the results we get from AI, and when is learning impossible? Researchers have shown that there are some problems that even the most powerful AI cannot reliably solve, no matter how much data it is given.

The researchers, from the University of Cambridge and the University of California, Santa Barbara, designed “adversarial” mathematical systems to fool any AI algorithm. Like ethical hackers stress-testing a network’s security, these adversarial systems were designed to map out exactly where and why AI prediction breaks down.

Many real-world systems—like those in the oceans, the human brain or robotics—are too complex to describe neatly with equations, so researchers often learn how they behave by using machine learning. But these AI methods don’t always work well, returning unreliable results or poor predictions.

Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found

Google and Microsoft have pulled ModHeader, a popular header-editing extension with roughly 1.6 million installs across Chrome and Edge, after researchers found a hidden browsing-history collector built into its official store version.

The collector was dormant. An empty allow-list kept it switched off, and no proof has emerged that it ever gathered or sent a single browsing domain.

The analysis came from Stripe OLT, a UK security firm, which checked the code against Google’s own Web Store signature and confirmed the collector shipped inside the genuine extension, not a counterfeit.

The Future Will Be Shaped By Accelerated Technological Development And Visionary Leadership

Chuck Brooks is the president of Brooks Consulting International and one of Executive Mosaic’s GovCon Experts.

We are on the brink of a transformative era where rising technologies are colliding to create unparalleled innovation. artificial intelligence, nanotechnology and quantum technologies are transforming research and development, expediting prototyping and disrupting various industries.

This convergence, propelled by exponential processing power, molecular precision and intelligent systems, promises trillions in economic value while posing significant concerns in security, ethics and labor preparedness.

Microsoft expects more Windows security updates from AI-discovered flaws

Microsoft says Windows users should expect to see an increase in security updates as the company increasingly relies on artificial intelligence to discover vulnerabilities in its codebase.

In a blog post published today, Microsoft said advances in AI have significantly accelerated vulnerability discovery, allowing engineers to identify more security issues before they can be exploited in zero-day attacks.

“The pace of vulnerability discovery is changing with advances in AI making it possible to find more issues, faster, across more code, with new mechanisms that can accelerate both discovery and analysis,” Microsoft said.

/* */