Toggle light / dark theme

Get the latest international news and world events from around the world.

Log in for authorized contributors

One of the Thinnest Transistor Interfaces Yet Could Reshape Future Chips

A sub-nanometer buffer improved atomically thin transistors, pushing future chips closer to silicon’s limits.

A transistor channel only one atom thick sounds like an ideal foundation for the next generation of computer chips. But surrounding that channel with the materials needed to control it can erase much of its advantage.

Researchers at National Yang Ming Chiao Tung University (NYCU) and TSMC Corporate Research have now demonstrated a possible way around that problem. Instead of developing another semiconductor, they redesigned the tiny interface where the semiconductor meets its insulating layer.

Nearly 800 Malicious npm Packages Deliver CrossPlatform RAT and Infostealer

A cluster of nearly 800 malicious packages has been published to the npm registry as part of a new campaign designed to deliver cross-platform malware targeting Windows, Mac, and Linux systems.

“These packages appear to use AI slop squatted, or randomly generated typo-squatting package names, but all of them deliver a powerful RAT and infostealer payload,” OpenSourceMalware researcher Paul McCarty said.

Unlike other npm-oriented software supply chain attacks that make use of lifecycle hooks like preinstall or postinstall to trigger the execution of malicious code, the newly identified packages come with a README that instructs developers to load them with require, a built-in function to import modules, local files, and third-party packages.

Metabase SQLi zero-day exploited in customer data-theft attacks

A critical Metabase SQL injection vulnerability was exploited in zero-day attacks to breach customer instances in data theft attacks, known to impact Framework and Tally.

Metabase disclosed the attacks on Thursday, warning that its Metabase Cloud SaaS platform was compromised through a previously unknown vulnerability affecting versions 1.58 and above. The company warns that self-hosted installations are also vulnerable.

“We recently identified that Metabase Cloud was attacked by someone utilizing an unknown (“0-day”) security vulnerability in versions 1.58 and above,” Metabase CEO Sameer Al-Sakran warned in a blog post.

Unlimited Technology Systems breach impacts 3.8 million people

Healthcare software company Unlimited Technology Systems reported that more than 3.8 million people were impacted by a data breach incident that occurred in October 2025.

The organization submitted data breach notification samples to the authorities this year on July 1st without revealing the exact number of impacted individuals.

An entry on the breach notification portal of the U.S. Dept. of Health and Human Services now shows that a company server was breached and data of 3,803,750 people was exposed to an unauthorized party.

Real emails, hijacked payments: Two H1 2026 attack chains

Address books or allowlists reduce repeated manual entry, while first-time or changed destinations deserve a full comparison rather than a check of only the opening and closing characters.

In both campaigns, the first trust decision could look legitimate while the surrounding workflow had already been changed. Detection and verification need to cover the steps between the authenticated email, the copied value and the final action.

Gen’s H1 2026 Threat Report covers the broader picture across scams, malware, identity exposure, privacy and AI-driven attacks.

/* */