Toggle light / dark theme

Get the latest international news and world events from around the world.

Log in for authorized contributors

A sophisticated new model raised the Sun’s estimated silver abundance by 55%, shrinking its discrepancy with primitive meteorites from 0.25 to just 0.06 dex—and largely resolving a longstanding Solar System puzzle

3D non-LTE analysis of two difficult ultraviolet silver lines raises the inferred solar abundance by 55 percent and brings it within the uncertainty of primitive meteorites.

GCAP Electronics Evolution Receives Contract to Deliver Sensing and Communications Capability to Next-generation Fighter Aircraft

As a strategic enabling partner to Edgewing, the consortium will deliver information superiority for the future complex and contested airspace.

A new contract has been awarded to the companies of the GCAP Electronics Evolution (G2E) consortium – the international collaboration between the national defence electronics champions for Italy, Japan and the United Kingdom – to further develop the integrated sensing and communications for the Global Combat Air Programme (GCAP).

The 18-month contract was awarded by Edgewing – the joint venture established by Leonardo S.p. A., Japan Aircraft Industrial Enhancement Co. Ltd. (JAIEC) and BAE Systems plc that is responsible for the design and development of the sixth-generation GCAP fighter aircraft. It follows the signing of a contract between Edgewing and the GCAP Agency, the government entity that manages GCAP on behalf of the three nations.

Northrop Grumman to Produce the Next-Generation Precision Guidance Kit with Anti-Jamming Technology

Northrop Grumman Corporation (NYSE: NOC) will produce the PGK E5, a next-generation of the M1156 Precision Guidance Kit (PGK) featuring critical anti-jam capabilities, enabling U.S. Army and allied forces to maintain artillery operations in GPS degraded environments. The PGK E5 transforms existing 155 mm high-explosive projectiles into cost-effective, GPS-guided weapons, delivering precise, reliable indirect fires in current threat environments. Upgraded capabilities of the PGK E5 include advanced anti-jam technology to overcome emerging electronic threats, ensuring accuracy even in contested battlefield environments, while maintaining the same trusted reliability, form factor and user experience as the current PGK. In recent testing conducted in GPS-degraded environments, PGK E5 demonstrated accuracy exceeding both threshold and objective requirements. This precision reduces collateral damage and rounds per engagement, increasing warfighter survivability.

Dave Fine, vice president, armament systems, Northrop Grumman: “Today’s threat environment demands speed and innovation and we’re working closely with the U.S. Army to ensure the PGK E5 keeps maneuver forces ready to win in GPS degraded environments. With decades of proven performance and growing production, PGK continues to deliver reliable, mission-ready technology that warfighters can count on.”

As GPS jamming becomes more prevalent, Northrop Grumman has collaborated with the U.S. Army to innovate and deliver a solution for PGK, all without altering the fit, form or factor to integrate with 155mm artillery. Production is underway at Northrop Grumman’s Plymouth, Minnesota facility with first deliveries expected in early 2028. Compatible with existing 155 mm projectiles and fielded howitzers, the PGK E5 requires minimal retraining or system changes, enabling rapid fielding and deployment.

Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files

Docker Sandboxes runs each AI coding agent in its own small virtual machine with the project directory shared in. The code that could escape is whatever runs inside that machine, such as a coding agent that has been turned against its user, or anything malicious the agent installs and runs.

Docker has not reported any exploitation. CISA’s added assessment on the CVE record lists exploitation as none, and the flaw is not in CISA’s Known Exploited Vulnerabilities catalog as of the catalog version released on September 16.

The flaw needs malicious code inside the sandbox, and protecting the host from what an agent runs is what the sandbox is for. The agent installs packages and runs commands with sudo inside the virtual machine, and Docker’s isolation documentation says the hypervisor boundary “is the isolation control, not in-VM privilege separation.”

New RatHat Android malware uses AI to automate device control

A new Android malware called RatHat has been discovered, targeting users with an AI-powered subsystem that helps operators remotely navigate compromised devices.

Zimperium zLabs researchers analyzed the malware and believe it is linked to threat actors from China after finding it using LLM prompts written in Chinese.

The researchers say the malware is distributed through malvertising, SMS, and phishing sites promoting APK downloads from outside Google Play.

Brevo supply-chain attack injected ClickFix scripts on customer sites

Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites and JavaScript files embedded on customer sites to distribute malware.

The customer relationship management and digital marketing company says the attackers used the API key to create a malicious Cloudflare Worker that modified content at the CDN edge for approximately five and a half hours on September 14.

The attack affected pages on brevo.com, sendinblue.com, login/account/my/onboarding.brevo.com, and sibforms.com. The Cloudflare worker also modified the Brevo forms script, Brevo Conversations widget, and the Brevo SDK loader scripts that customers embed on their websites.

/* */