Toggle light / dark theme

Get the latest international news and world events from around the world.

Log in for authorized contributors

Scientists Capture a Fundamental Energy-Transfer Reaction in Remarkable Detail

Researchers captured how a molecule and its surrounding water reorganize together during a rapid energy-transfer reaction that plays a key role in nature.

A chemical process central to photosynthesis, metabolism, and other forms of energy conversion has now been captured in unusual detail, revealing how a molecule and the water around it change together as a proton and electron are transferred.

Using two complementary ultrafast X-ray techniques, researchers tracked changes inside a light-activated molecule while observing how the surrounding network of water molecules reorganized. Combined with advanced computer simulations, the measurements showed how gaining a proton reshaped the molecule’s electronic structure at specific sites while altering its surrounding environment.

Scientists Just Built the World’s Most Accurate Clock

Lutetium clocks have achieved record accuracy and comparison precision, making them promising candidates for future time standards and measurements of gravity.

An atomic clock built from the element lutetium at the Centre for Quantum Technologies (CQT) at the National University of Singapore (NUS) has set a new benchmark for timekeeping accuracy. Results published in Nature on show that the clock measured its transition frequency to 19 decimal places, yielding an uncertainty of 1 × 10⁻¹⁹, the lowest reported for any optical atomic clock to date.

“I am confident that what we have now is the most accurate clock in the world,” says team leader Murray Barrett, a CQT Principal Investigator and Associate Professor in the Department of Physics at the National University of Singapore.

Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks

Hackers have used a malware family called NeedyMantis to maintain long-term access to networks they had already breached, Microsoft said in a technical analysis.

The malware has been seen in a small number of targeted intrusions at telecommunications organizations, universities, medical nonprofits, intergovernmental organizations, and government contractors. Its use goes back to at least October 2025.

Microsoft found NeedyMantis while following up on indicators from Kaspersky’s investigation into the supply chain attack on DAEMON Tools. In that attack, official, signed installers for the DAEMON Tools Lite disk image program carried malicious code from April 8, 2026. The developer replaced them with a clean version on May 5.

RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims

RatHat’s operators build and publish the Android banking trojan and control infected phones from a web console, according to security company Cleafy has traced nearly 100 deployments of that console since April 2026. It said this fits a malware-as-a-service model, in which each customer runs a separate copy.

The console stores what the malware collects from each phone, including text messages and passwords entered into fake login screens overlaid on banking apps.

Its latest version asks Google’s Gemini AI model to estimate each victim’s bank balance from those messages and sorts the phones into high-value and mid-value groups.

Carbonato Botnet Compromises Docker Hosts to Deploy Telegram-Controlled Hermes AI Agent

Cybersecurity researchers have disclosed details of a new botnet malware called Carbonato that’s targeting exposed Docker daemons to deploy an open-source artificial intelligence (AI) agent framework called Hermes Agent.

“The implant installs the framework unchanged, then overwrites its SOUL.md persona file,” ThreatDown said. “The 39-line prompt directs it to execute tasks received through Telegram, maintain persistence, and collect credentials.”

At a high level, the botnet breaks into Docker daemons exposed without authentication on port 2,375 and scans neighboring networks every five minutes to propagate further. On each host, it installs Hermes Agent with instructions to follow operators’ Telegram commands.

Over 16,000 Supabase databases expose PII, passwords, auth tokens

Researchers found more than 16,000 misconfigured Supabase databases exposing readable tables with personally identifiable information, passwords, or authentication tokens.

Based on the analysis of table schemas, researchers at cyber risk management company UpGuard believe that a very small set of the exposed information includes credit card data.

Supabase is an open-source development platform built around PostgreSQL that provides developers with a range of backend services to build and launch apps and websites faster.

JadePuffer agentic AI attacks target Azure, destroy cloud resources

The JadePuffer ransomware operator is targeting Azure tenants with agent-driven attacks that conduct reconnaissance, steal credentials, and destroy core components.

The malware emerged in July, with researchers at cloud security company Sysdig highlighting that it uses AI agents to automate the entire attack chain, from reconnaissance, credential theft, and lateral movement to persistence and data encryption.

Shortly after, the company noted that JadePuffer expanded its focus to AI assets, training datasets, and vector databases, using a tool called EncForge.

/* */