Copy protection enforced by hardware
POPULARITY
This week we have a technical segment focused on Linux! Paul released a script that helps you get a handle on Linux supply chain security, and new features allow you to assess the state of Secure Boot on your Linux systems (that also use MS certificates, ironically). The script is in his Git repo: https://github.com/pasadoorian/Linux_Hacks. In the security news: The CVE chase The new security basics Enterprises are lacking more than AI Detections are falling behind Why DOOM!?! Chromium vulnerability The ambitious Flipper One I'm still curious who was behind these leaks Mitre moves Caldera to Apache foundation Wind cybersecurity PQC updates YellowKey Bitlocker Bypass updates The software supply chain is in deep trouble Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-928
This week we have a technical segment focused on Linux! Paul released a script that helps you get a handle on Linux supply chain security, and new features allow you to assess the state of Secure Boot on your Linux systems (that also use MS certificates, ironically). The script is in his Git repo: https://github.com/pasadoorian/Linux_Hacks. In the security news: The CVE chase The new security basics Enterprises are lacking more than AI Detections are falling behind Why DOOM!?! Chromium vulnerability The ambitious Flipper One I'm still curious who was behind these leaks Mitre moves Caldera to Apache foundation Wind cybersecurity PQC updates YellowKey Bitlocker Bypass updates The software supply chain is in deep trouble Show Notes: https://securityweekly.com/psw-928
The original Secure Boot certificate expires in June 2026! Richard talks to Richard Hicks about how Secure Boot works and how the expiration of the master certificate can leave PCs vulnerable to boot-related malware, such as rootkits. Richard discusses recent Microsoft communications on SecureBoot and how to check which certificate your machines have. Workstations using managed updates are likely already up to date, but servers are a different issue. When the certificate expires, you'll no longer receive updates to Secure Boot for known exploits, leaving your machines vulnerable. Update today! Links Secure Boot Certificates Expiring Sony Rootkit Scandal Secure Boot Playbook for Windows Client Windows Update Management Registry Key Updates for Secure Boot Richard's Blog Post on Secure Boot EUFI Certificates Expiring Get-UEFICertificate in PowerShell Gallery Recorded March 9, 2026
SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast
Today's Odd Web Requests https://isc.sans.edu/diary/Today%27s%20Odd%20Web%20Requests/32934 Incomplete Patch of APT28's Zero-Day Leads to CVE-2026-32202 https://www.akamai.com/blog/security-research/2026/apr/incomplete-patch-apt28s-zero-day-cve-2026-32202 Assess Secure Boot status with Microsoft Defender https://techcommunity.microsoft.com/blog/MicrosoftDefenderATPBlog/assess-secure-boot-status-with-microsoft-defender/4510356 Deprecating Legacy TLS and Endpoints for POP and IMAP in Exchange Online https://techcommunity.microsoft.com/blog/exchange/deprecating-legacy-tls-and-endpoints-for-pop-and-imap-in-exchange-online/4515201 SAP Related npm Packages Compromised https://www.stepsecurity.io/blog/a-mini-shai-hulud-has-appeared
Hosts Lois Houston and Nikita Abraham are joined by Brent Dayley, Senior Principal APEX and Apps Dev Instructor, to explore the latest vector AI supporting features in Oracle Exadata and GoldenGate 23ai. The conversation begins with an overview of Exadata's capabilities and then shifts to how GoldenGate is powering distributed AI, real-time data streaming, and analytics with advanced microservices architecture. Brent highlights recent GoldenGate enhancements, including distributed vector support, robust monitoring, OCI IAM integration, and support for next-generation AI workloads via real-time vector hubs. Oracle AI Vector Search Deep Dive: https://mylearn.oracle.com/ou/course/oracle-ai-vector-search-deep-dive/144706/ Oracle University Learning Community: https://education.oracle.com/ou-community LinkedIn: https://www.linkedin.com/showcase/oracle-university/ X: https://x.com/Oracle_Edu Special thanks to Arijit Ghosh, Anna Hulkower, and the OU Studio Team for helping us create this episode. Please note, this episode was recorded before Oracle AI Database 26ai replaced Oracle Database 23ai. However, all concepts and features discussed remain fully relevant to the latest release. ------------------------------------------------------- Episode Transcript: 00:00 Welcome to the Oracle University Podcast, the first stop on your cloud journey. During this series of informative podcasts, we'll bring you foundational training on the most popular Oracle technologies. Let's get started! 00:26 Lois: Hello and welcome to another episode of the Oracle University Podcast! I'm Lois Houston, Director of Communications and Adoption Programs with Customer Success Services, and with me is Nikita Abraham, Team Lead of Editorial Services with Oracle University. Nikita: Hi everyone! Thanks for joining us! In our previous episode of this series, we took a deep dive into Oracle AI Vector Search and Retrieval Augmented Generation, or RAG, showing how unstructured data can be transformed into embeddings to power smarter, more context-aware AI with Oracle Database 23ai. Lois: That's right, Niki. We also explored how the OCI Generative AI service can be used with both Python and PL/SQL, and how AI Vector Search enables relevant information retrieval for large language model prompts. 01:21 Nikita: Today, we're focusing on the latest supporting features for Oracle AI Vector Search. Joining us once again is Brent Dayley, Senior Principal APEX and Apps Dev Instructor. Welcome back, Brent! To kick things off, could you outline what's new in Exadata with the 24ai release, particularly for AI storage? Brent: So Exadata has ushered in a new era of AI capabilities with 24ai release. Key features of Exadata system software 24ai include AI Smart Scan, Exadata RDMA Memory, known as XRMEM, Exadata Smart Flash Cache, and on-storage processing. In-Memory Columnar Speed JSON Queries, Transparent Cross-Tier Scans, and caching enhancements, including Columnar Smart Scan at Memory Speed, Exadata Cache Observability, and Automatic KEEP Object Load into Exadata Flash Cache. Now, Exadata system software 24ai is a significant release. It ushers in a new era of AI capabilities for Oracle Database users. Now there have been some infrastructure improvements, including the ability to increase the number of virtual machines on X10M and Secure Boot for KVM Virtual Machines. We have also improved and enhanced high availability and network resilience, including improved RoCE Network Resilience and enhanced RoCE Network Discovery. There have been some enhancements for monitoring and management, including AWR and SQL Monitor Enhancements and JSON API for Management Server. Additionally, security enhancement. SNMP Security. Now, Exadata system software 24ai is supported on Exadata database machines and storage expansion racks from X6 and newer. 03:40 Lois: Those are some fantastic advancements for Exadata users. Now, let's pivot to distributed AI. Brent, can you walk us through how GoldenGate enables distributed AI? Brent: Let's take a look at some common GoldenGate use cases as a refresher. The first use case is multi-active, high availability, and cross-region deployments, spanning on-premises and cloud environments. Another use case includes data offloading and data hub creation in order to support multiple downstream applications. Real-time data stores for Downstream Marts and Analytics. Micro and mini services architecture and an audit history of transactions. Other use cases include migrations and upgrades of databases, including OCI-hosted databases. Another use case would be creating analytic data feeds for various applications, including SaaS and on-premises apps. And finally, stream analytics using application and transaction events captured by GoldenGate Stream Analytics. 05:03 Nikita: We know GoldenGate has long been a staple for enterprise data integration. So Brent, what makes GoldenGate the best choice today, and how has its architecture evolved? Brent: It offers DIY Stream Analytics. GoldenGate does remain the top choice for Enterprise Standard, real-time data streaming. It supports Oracle and third-party databases, vector sources, messaging systems, and NoSQL databases. OCI offers a fully managed pipeline builder for Stream Analytics. This pipeline leverages various OCI services, such as OCI Streaming for real-time event ingestion, OCI Dataflow for stream processing, OCI Big Data for data storage and processing, and OCI Stream Analytics for real-time event processing and analysis. GoldenGate microservices, available since 2017 in Oracle GoldenGate 12.3, is used in over 4,000 deployments in OCI. Benefits of GoldenGate microservices include the ability to employ the same trusted Extract and Replicat processes as the classic architecture. Provides flexible and secure remote administration through a user-friendly web interface or CLI. Deployable on-premises in OCI as a service and in third-party cloud environments. Simplified patching and upgrading process. Now the GoldenGate architecture evolution. First, classic architecture that was deprecated in version 19c and desupported in 23ai. Microservices Architecture introduced in version 12.3 and is the recommended architecture. A migration utility is available to upgrade from classic to microservices architecture. 07:12 Are you ready to create and manage AI Agents in Fusion Applications? Check out the Oracle AI Agent Studio for Fusion Applications courses! Start with the Foundations course to build, customize, and deploy AI Agents, and then advance to the Developer Professional certification. Explore hands-on labs and real-world case studies. Visit mylearn.oracle.com for all the details. 07:39 Nikita: Welcome back! It sounds like the latest GoldenGate updates offer new features and integrations. Could you share more about these enhancements? Brent: There are many new features and enhancements in GoldenGate, along with microservices, including a redesigned GUI for enhanced usability. Integration with StatsD and Telegraf for monitoring and metrics. OCI IAM integration for secure access control. JSON Relational Duality for flexible data handling. Next-generation AI with distributed vector support. PDB Extract Capture for efficient data extraction from Oracle Pluggable Databases. DDL notification on Target Tables for schema evolution management. Support for non-Oracle and Big Data technologies. Online DDL and EBR enhancement for improved performance. Data Streams Pub-Sub for asynchronous data dissemination. Async API support for standardized event communication. High-availability clusters for increased resilience. Trail Files Management for efficient data storage. And support for new features in 23ai database. It also includes integrated diagnostics for improved troubleshooting of IE and IR processes. And 30 or more OS and database certifications for wider platform support. @Dbfunction Mapping for custom data transformations. And lastly, GoldenGate free recipes for pre-built solutions and best practices. New in GoldenGate, distributed AI processing with vector replication. 09:37 Lois: And what type of use cases does this enable? Brent: Migrating vectors into Oracle Vector Database. Replicating and consolidating vector changes. Implementing multi-cloud, multi-active Oracle vector databases. Streaming text and vector changes to search engines. Key considerations include that embedding models must be consistent across all vector stores for effective similarity searches. 10:09 Lois: Now, many organizations wonder if they can use generative AI with their own business data. Brent, how do enterprises typically approach this? Brent: Organizations are using generative AI typically like this. Building LLMs from scratch. Training models on proprietary data for specific tasks. Fine-tuning LLMs, adapting pre-trained models to a specific domain using private data. And prompt engineering with retrieval augmented generation or RAG. Augmenting prompts with relevant information retrieved from a knowledge base to improve the accuracy and relevance of LLM responses. Now it's possible to create a real-time vector hub for GenAI. This hub can ingest real-time data from various sources, including Oracle and third-party relational databases, vector databases, third-party messaging systems, and NoSQL databases, business updates, documents, events, and alerts. 11:11 Nikita: And how does the vector hub work? Brent: DML and DDL changes, vector changes, and prompt or chat history are used to enrich prompts. And embedding model generates embeddings from the text data. Similarity search is performed on these embeddings to retrieve relevant information from the vector hub. The retrieved information is used to augment the prompt, leading to more accurate and trustworthy answers from the LLM. Now, the benefits of real-time data and generative AI include the ability to ensure answers are based on fresh business data. And helps reduce hallucinations in generative AI responses. Actionable AI and machine learning from streaming pipelines allows data from ERP and SaaS applications, databases, event messaging systems, and NoSQL databases to be ingested into streaming pipelines. This data can then be used for AI and machine learning model training, similarity searches, machine learning tasks, external AI, and machine learning integrations, alerts, and data product creation. 12:25 Lois: So if you had to summarize, Brent, why does GoldenGate 23ai stand out for artificial intelligence workloads? Brent: Well, first up, it improves data quality for AI model training and fine-tuning. And secondly, it enhances retrieval augmented generation by providing real-time access to relevant business data, leading to more accurate and trustworthy generative AI responses. Nikita: Thank you, Brent, for sharing your insights and detailing these exciting new features across Oracle's AI stack. If you'd like to dive deeper into these topics, don't forget to visit mylearn.oracle.com and look for Oracle AI Vector Search Deep Dive course. Until next time, this is Nikita Abraham… Lois: And Lois Houston, signing off! 13:16 That's all for this episode of the Oracle University Podcast. If you enjoyed listening, please click Subscribe to get all the latest episodes. We'd also love it if you would take a moment to rate and review us on your podcast app. See you again on the next episode of the Oracle University Podcast.
We all have data to rescue, you just don't realize it yet. This week we build our own custom live rescue distros, recover real data, and show you how to make your own.Sponsored By:Jupiter Party Annual Membership: Put your support on automatic with our annual plan, and get one month of membership for free!Managed Nebula: Meet Managed Nebula from Defined Networking. A decentralized VPN built on the open-source Nebula platform that we love.Support LINUX UnpluggedLinks:
This month's Patch Tuesday drops a SQL Server elevation of privilege that hands attackers sysadmin access and an actively exploited SharePoint XSS flaw that requires no authentication. SQL injection in the database engine. Cross-site scripting. In 2026...? Ryan and Mat break down how these attacks work, what to watch for, and why these "classic" vulnerability classes refuse to stay dead. Also covered: 80 Edge and Chromium fixes released this month, and a recurring reminder about Secure Boot certificates you can't afford to ignore this year.
professorjrod@gmail.comIn this episode, we dive into a crucial decision for IT professionals and students preparing for their CompTIA exam: choosing between a clean install or an in-place upgrade of Windows. Understanding this choice is vital for effective tech exam prep and real-world IT skills development. We discuss the technician's approach to troubleshooting issues like slow laptops, pop-ups, crashes, and system instability, highlighting how an incorrect decision can lead to persistent problems such as corruption, malware, and driver conflicts. Tune in to boost your technology education and get practical insights for your CompTIA study guide journey.From there, we zoom in on the planning that makes a Windows 11 installation succeed: verifying CPU support, RAM, storage, TPM 2.0, and Secure Boot before you start; staging essential device drivers so you do not lose Wi‑Fi or audio afterward; and checking application compatibility and licensing so an upgrade does not break business-critical software. We also talk about backups the way CompTIA exams expect you to think about them, and how time constraints and data criticality shape your real-world approach.Then we get into execution: boot devices and boot order in BIOS vs UEFI, GPT vs MBR (and why a 4TB drive must use GPT), and NTFS vs FAT32 so you do not get trapped by file-size limits. We round it out with deployment methods like unattended installation, network deployment, and zero touch deployment, plus repair and recovery options that help you choose the least destructive fix first. If you're studying for CompTIA A+ or you just want to install Windows with confidence, this one gives you a clean, practical framework. Subscribe, share this with a friend who “just clicks Next,” and leave a review with your biggest Windows install lesson.Support the showArt By Sarah/DesmondMusic by Joakim KarudLittle chacha ProductionsJuan Rodriguez can be reached atTikTok @ProfessorJrodProfessorJRod@gmail.com@Prof_JRodInstagram ProfessorJRod
Julia Liuson is leaving Microsoft. Liuson joined Microsoft in 1992, the same year as CEO Satya Nadella (she worked on Access at first). She helped build the first version of Visual Studio and was the first female corporate vice president at Microsoft. Liuson has been president of Microsoft's Developer Division since 2021. Also, curious about life on the other side of the fence? Paul has a tip for finding games that are optimized for Linux. Plus, Chrome joins the 21st century with vertical tabs and a real reading view. Just be sure to install those anti-tracking extensions. Windows Microsoft promises more native apps for Windows 11, but... which apps? New apps? Replacements for existing apps? Thanks for making us revisit the web app vs. native app thing yet again, Microsoft Windows 11 version 25H2 is now being pushed to all compatible PCs Compatibility milestone, not a big deal because 24H2/25H2 features are identical, same underlying codebase - but some will complain that Microsoft is "forcing" 25H2 on them Secure Boot certificate notifications are now available so you can see where your PC is at Another month, another emergency Windows Update patch New Dev/Beta builds add Xbox Mode, new haptic effects, etc., plus a new Canary build with features we've seen before Microsoft is taking the Insider Program on the road Component shortages trigger another Raspberry Pi price hike, but also a promise for the future The AMD Ryzen 9 9950X3D2 Dual Edition processor will be available from leading retailers starting Apr. 22 with a retail price of $899 AI Microsoft's terms of service for Copilot say it's for entertainment purposes only. Yes, really. Microsoft AI releases new foundational models for transcription, voice, and images Word on iPhone gets Copilot co-create capabilities - used to be AI Mode, you need a Microsoft 365 Copilot subscription Anthropic has hired away a key AI executive from Microsoft, and what he has to say about the opportunity is interesting Anthropic brings Computer Use to Windows Google: Seriously, we are not training AI with your Gmail Google AI Pro plans now offer 5 TB of cloud storage, yikes Xbox & gaming Xbox is refreshing the look of achievements on the console Call of Duty: Modern Warfare, more coming to Game Pass this month Was this the best COD ever? In search of greatness Also: Forza Horizon 6 launches May 19 and will be available on Xbox Series X|S, Xbox on PC and Xbox Cloud as an Xbox Play Anywhere title, and playable day one with Xbox Game Pass Xbox will hold FanFest events around the world Tips & picks Tip of the week: So you want to try gaming on Linux App pick of the week: Google Chrome RunAs Radio this week: Securing AI Agents with Niall Merrigan Brown liquor pick of the week: Corowa Peated Single Barrel 521 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: zscaler.com/security helixsleep.com/windows cachefly.com/twit
Julia Liuson is leaving Microsoft. Liuson joined Microsoft in 1992, the same year as CEO Satya Nadella (she worked on Access at first). She helped build the first version of Visual Studio and was the first female corporate vice president at Microsoft. Liuson has been president of Microsoft's Developer Division since 2021. Also, curious about life on the other side of the fence? Paul has a tip for finding games that are optimized for Linux. Plus, Chrome joins the 21st century with vertical tabs and a real reading view. Just be sure to install those anti-tracking extensions. Windows Microsoft promises more native apps for Windows 11, but... which apps? New apps? Replacements for existing apps? Thanks for making us revisit the web app vs. native app thing yet again, Microsoft Windows 11 version 25H2 is now being pushed to all compatible PCs Compatibility milestone, not a big deal because 24H2/25H2 features are identical, same underlying codebase - but some will complain that Microsoft is "forcing" 25H2 on them Secure Boot certificate notifications are now available so you can see where your PC is at Another month, another emergency Windows Update patch New Dev/Beta builds add Xbox Mode, new haptic effects, etc., plus a new Canary build with features we've seen before Microsoft is taking the Insider Program on the road Component shortages trigger another Raspberry Pi price hike, but also a promise for the future The AMD Ryzen 9 9950X3D2 Dual Edition processor will be available from leading retailers starting Apr. 22 with a retail price of $899 AI Microsoft's terms of service for Copilot say it's for entertainment purposes only. Yes, really. Microsoft AI releases new foundational models for transcription, voice, and images Word on iPhone gets Copilot co-create capabilities - used to be AI Mode, you need a Microsoft 365 Copilot subscription Anthropic has hired away a key AI executive from Microsoft, and what he has to say about the opportunity is interesting Anthropic brings Computer Use to Windows Google: Seriously, we are not training AI with your Gmail Google AI Pro plans now offer 5 TB of cloud storage, yikes Xbox & gaming Xbox is refreshing the look of achievements on the console Call of Duty: Modern Warfare, more coming to Game Pass this month Was this the best COD ever? In search of greatness Also: Forza Horizon 6 launches May 19 and will be available on Xbox Series X|S, Xbox on PC and Xbox Cloud as an Xbox Play Anywhere title, and playable day one with Xbox Game Pass Xbox will hold FanFest events around the world Tips & picks Tip of the week: So you want to try gaming on Linux App pick of the week: Google Chrome RunAs Radio this week: Securing AI Agents with Niall Merrigan Brown liquor pick of the week: Corowa Peated Single Barrel 521 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: zscaler.com/security helixsleep.com/windows cachefly.com/twit
Julia Liuson is leaving Microsoft. Liuson joined Microsoft in 1992, the same year as CEO Satya Nadella (she worked on Access at first). She helped build the first version of Visual Studio and was the first female corporate vice president at Microsoft. Liuson has been president of Microsoft's Developer Division since 2021. Also, curious about life on the other side of the fence? Paul has a tip for finding games that are optimized for Linux. Plus, Chrome joins the 21st century with vertical tabs and a real reading view. Just be sure to install those anti-tracking extensions. Windows Microsoft promises more native apps for Windows 11, but... which apps? New apps? Replacements for existing apps? Thanks for making us revisit the web app vs. native app thing yet again, Microsoft Windows 11 version 25H2 is now being pushed to all compatible PCs Compatibility milestone, not a big deal because 24H2/25H2 features are identical, same underlying codebase - but some will complain that Microsoft is "forcing" 25H2 on them Secure Boot certificate notifications are now available so you can see where your PC is at Another month, another emergency Windows Update patch New Dev/Beta builds add Xbox Mode, new haptic effects, etc., plus a new Canary build with features we've seen before Microsoft is taking the Insider Program on the road Component shortages trigger another Raspberry Pi price hike, but also a promise for the future The AMD Ryzen 9 9950X3D2 Dual Edition processor will be available from leading retailers starting Apr. 22 with a retail price of $899 AI Microsoft's terms of service for Copilot say it's for entertainment purposes only. Yes, really. Microsoft AI releases new foundational models for transcription, voice, and images Word on iPhone gets Copilot co-create capabilities - used to be AI Mode, you need a Microsoft 365 Copilot subscription Anthropic has hired away a key AI executive from Microsoft, and what he has to say about the opportunity is interesting Anthropic brings Computer Use to Windows Google: Seriously, we are not training AI with your Gmail Google AI Pro plans now offer 5 TB of cloud storage, yikes Xbox & gaming Xbox is refreshing the look of achievements on the console Call of Duty: Modern Warfare, more coming to Game Pass this month Was this the best COD ever? In search of greatness Also: Forza Horizon 6 launches May 19 and will be available on Xbox Series X|S, Xbox on PC and Xbox Cloud as an Xbox Play Anywhere title, and playable day one with Xbox Game Pass Xbox will hold FanFest events around the world Tips & picks Tip of the week: So you want to try gaming on Linux App pick of the week: Google Chrome RunAs Radio this week: Securing AI Agents with Niall Merrigan Brown liquor pick of the week: Corowa Peated Single Barrel 521 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: zscaler.com/security helixsleep.com/windows cachefly.com/twit
Julia Liuson is leaving Microsoft. Liuson joined Microsoft in 1992, the same year as CEO Satya Nadella (she worked on Access at first). She helped build the first version of Visual Studio and was the first female corporate vice president at Microsoft. Liuson has been president of Microsoft's Developer Division since 2021. Also, curious about life on the other side of the fence? Paul has a tip for finding games that are optimized for Linux. Plus, Chrome joins the 21st century with vertical tabs and a real reading view. Just be sure to install those anti-tracking extensions. Windows Microsoft promises more native apps for Windows 11, but... which apps? New apps? Replacements for existing apps? Thanks for making us revisit the web app vs. native app thing yet again, Microsoft Windows 11 version 25H2 is now being pushed to all compatible PCs Compatibility milestone, not a big deal because 24H2/25H2 features are identical, same underlying codebase - but some will complain that Microsoft is "forcing" 25H2 on them Secure Boot certificate notifications are now available so you can see where your PC is at Another month, another emergency Windows Update patch New Dev/Beta builds add Xbox Mode, new haptic effects, etc., plus a new Canary build with features we've seen before Microsoft is taking the Insider Program on the road Component shortages trigger another Raspberry Pi price hike, but also a promise for the future The AMD Ryzen 9 9950X3D2 Dual Edition processor will be available from leading retailers starting Apr. 22 with a retail price of $899 AI Microsoft's terms of service for Copilot say it's for entertainment purposes only. Yes, really. Microsoft AI releases new foundational models for transcription, voice, and images Word on iPhone gets Copilot co-create capabilities - used to be AI Mode, you need a Microsoft 365 Copilot subscription Anthropic has hired away a key AI executive from Microsoft, and what he has to say about the opportunity is interesting Anthropic brings Computer Use to Windows Google: Seriously, we are not training AI with your Gmail Google AI Pro plans now offer 5 TB of cloud storage, yikes Xbox & gaming Xbox is refreshing the look of achievements on the console Call of Duty: Modern Warfare, more coming to Game Pass this month Was this the best COD ever? In search of greatness Also: Forza Horizon 6 launches May 19 and will be available on Xbox Series X|S, Xbox on PC and Xbox Cloud as an Xbox Play Anywhere title, and playable day one with Xbox Game Pass Xbox will hold FanFest events around the world Tips & picks Tip of the week: So you want to try gaming on Linux App pick of the week: Google Chrome RunAs Radio this week: Securing AI Agents with Niall Merrigan Brown liquor pick of the week: Corowa Peated Single Barrel 521 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: zscaler.com/security helixsleep.com/windows cachefly.com/twit
Julia Liuson is leaving Microsoft. Liuson joined Microsoft in 1992, the same year as CEO Satya Nadella (she worked on Access at first). She helped build the first version of Visual Studio and was the first female corporate vice president at Microsoft. Liuson has been president of Microsoft's Developer Division since 2021. Also, curious about life on the other side of the fence? Paul has a tip for finding games that are optimized for Linux. Plus, Chrome joins the 21st century with vertical tabs and a real reading view. Just be sure to install those anti-tracking extensions. Windows Microsoft promises more native apps for Windows 11, but... which apps? New apps? Replacements for existing apps? Thanks for making us revisit the web app vs. native app thing yet again, Microsoft Windows 11 version 25H2 is now being pushed to all compatible PCs Compatibility milestone, not a big deal because 24H2/25H2 features are identical, same underlying codebase - but some will complain that Microsoft is "forcing" 25H2 on them Secure Boot certificate notifications are now available so you can see where your PC is at Another month, another emergency Windows Update patch New Dev/Beta builds add Xbox Mode, new haptic effects, etc., plus a new Canary build with features we've seen before Microsoft is taking the Insider Program on the road Component shortages trigger another Raspberry Pi price hike, but also a promise for the future The AMD Ryzen 9 9950X3D2 Dual Edition processor will be available from leading retailers starting Apr. 22 with a retail price of $899 AI Microsoft's terms of service for Copilot say it's for entertainment purposes only. Yes, really. Microsoft AI releases new foundational models for transcription, voice, and images Word on iPhone gets Copilot co-create capabilities - used to be AI Mode, you need a Microsoft 365 Copilot subscription Anthropic has hired away a key AI executive from Microsoft, and what he has to say about the opportunity is interesting Anthropic brings Computer Use to Windows Google: Seriously, we are not training AI with your Gmail Google AI Pro plans now offer 5 TB of cloud storage, yikes Xbox & gaming Xbox is refreshing the look of achievements on the console Call of Duty: Modern Warfare, more coming to Game Pass this month Was this the best COD ever? In search of greatness Also: Forza Horizon 6 launches May 19 and will be available on Xbox Series X|S, Xbox on PC and Xbox Cloud as an Xbox Play Anywhere title, and playable day one with Xbox Game Pass Xbox will hold FanFest events around the world Tips & picks Tip of the week: So you want to try gaming on Linux App pick of the week: Google Chrome RunAs Radio this week: Securing AI Agents with Niall Merrigan Brown liquor pick of the week: Corowa Peated Single Barrel 521 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: zscaler.com/security helixsleep.com/windows cachefly.com/twit
Julia Liuson is leaving Microsoft. Liuson joined Microsoft in 1992, the same year as CEO Satya Nadella (she worked on Access at first). She helped build the first version of Visual Studio and was the first female corporate vice president at Microsoft. Liuson has been president of Microsoft's Developer Division since 2021. Also, curious about life on the other side of the fence? Paul has a tip for finding games that are optimized for Linux. Plus, Chrome joins the 21st century with vertical tabs and a real reading view. Just be sure to install those anti-tracking extensions. Windows Microsoft promises more native apps for Windows 11, but... which apps? New apps? Replacements for existing apps? Thanks for making us revisit the web app vs. native app thing yet again, Microsoft Windows 11 version 25H2 is now being pushed to all compatible PCs Compatibility milestone, not a big deal because 24H2/25H2 features are identical, same underlying codebase - but some will complain that Microsoft is "forcing" 25H2 on them Secure Boot certificate notifications are now available so you can see where your PC is at Another month, another emergency Windows Update patch New Dev/Beta builds add Xbox Mode, new haptic effects, etc., plus a new Canary build with features we've seen before Microsoft is taking the Insider Program on the road Component shortages trigger another Raspberry Pi price hike, but also a promise for the future The AMD Ryzen 9 9950X3D2 Dual Edition processor will be available from leading retailers starting Apr. 22 with a retail price of $899 AI Microsoft's terms of service for Copilot say it's for entertainment purposes only. Yes, really. Microsoft AI releases new foundational models for transcription, voice, and images Word on iPhone gets Copilot co-create capabilities - used to be AI Mode, you need a Microsoft 365 Copilot subscription Anthropic has hired away a key AI executive from Microsoft, and what he has to say about the opportunity is interesting Anthropic brings Computer Use to Windows Google: Seriously, we are not training AI with your Gmail Google AI Pro plans now offer 5 TB of cloud storage, yikes Xbox & gaming Xbox is refreshing the look of achievements on the console Call of Duty: Modern Warfare, more coming to Game Pass this month Was this the best COD ever? In search of greatness Also: Forza Horizon 6 launches May 19 and will be available on Xbox Series X|S, Xbox on PC and Xbox Cloud as an Xbox Play Anywhere title, and playable day one with Xbox Game Pass Xbox will hold FanFest events around the world Tips & picks Tip of the week: So you want to try gaming on Linux App pick of the week: Google Chrome RunAs Radio this week: Securing AI Agents with Niall Merrigan Brown liquor pick of the week: Corowa Peated Single Barrel 521 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Download or subscribe to Windows Weekly at https://twit.tv/shows/windows-weekly Check out Paul's blog at thurrott.com The Windows Weekly theme music is courtesy of Carl Franklin. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: zscaler.com/security helixsleep.com/windows cachefly.com/twit
The expensive, challenging, and humbling journey with open source agents.Sponsored By:Jupiter Party Annual Membership: Put your support on automatic with our annual plan, and get one month of membership for free!Managed Nebula: Meet Managed Nebula from Defined Networking. A decentralized VPN built on the open-source Nebula platform that we love.Support LINUX UnpluggedLinks:
Ubuntu wants a leaner, stricter GRUB, and your favorite setup may not survive the cut. We break down what's really changing, and the practical ways to adapt. Plus, Chris moves on from one of his favorite open source apps.Sponsored By:Jupiter Party Annual Membership: Put your support on automatic with our annual plan, and get one month of membership for free!Managed Nebula: Meet Managed Nebula from Defined Networking. A decentralized VPN built on the open-source Nebula platform that we love.Support LINUX UnpluggedLinks:
This week the guys take a look at the Pine Time Pro, cover KDE 6.6 and its performance wins, and celebrate the Kali Linux release. Ubuntu's Grub may be changing, Nvidia has a new stable driver, and the SystemD age birth date field is still causing controversy. Gnome has a new fellowship to pay programmers directly, and AI bug reports may finally be decent. For tips we have OMP Manager for easy Oh My Posh installs, fluidsynth for playing midi, exiftool for manipulating media meta-information, and part one of a grafana installation. You can find the show notes at https://bit.ly/4skwtS1 and have a great week! Host: Jonathan Bennett Co-Hosts: Rob Campbell, Jeff Massie, and Ken McDonald Download or subscribe to Untitled Linux Show at https://twit.tv/shows/untitled-linux-show Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord.
This week the guys take a look at the PineTime Pro, cover KDE 6.6 and its performance wins, and celebrate the Kali Linux release. Ubuntu's Grub may be changing, Nvidia has a new stable driver, and the SystemD age birth date field is still causing controversy. Gnome has a new fellowship to pay programmers directly, and AI bug reports may finally be decent. For tips we have OMP Manager for easy Oh My Posh installs, fluidsynth for playing midi, exiftool for manipulating media meta-information, and part one of a grafana installation. You can find the show notes at https://bit.ly/4skwtS1 and have a great week! Host: Jonathan Bennett Co-Hosts: Rob Campbell, Jeff Massie, and Ken McDonald Download or subscribe to Untitled Linux Show at https://twit.tv/shows/untitled-linux-show Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord.
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
In this week's episode of Hands-On Tech, Mikah walks David through how to troubleshoot and set up a dual-boot system with Windows 10 and Windows 11 on separate SSDs. Don't forget to send in your questions for Mikah to answer during the show! hot@twit.tv Host: Mikah Sargent Download or subscribe to Hands-On Tech at https://twit.tv/shows/hands-on-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: Melissa.com/twit
Du denkst, dein IoT-Kram ist harmlos: ein Thermometer, ein Staubsaugerroboter, ein bisschen Smart Home. Aber was, wenn genau diese Geräte der perfekte Tunnel aus deinem Netzwerk sind, weil sie selten sauber segmentiert werden, kaum jemand Egress Traffic prüft und Authentifizierung oft mit Autorisierung verwechselt wird?In dieser Episode nehmen wir drei Sicherheitsvorfälle auseinander und ziehen konkrete Learnings daraus:Den Aquarium-Thermometer-Case im Casino mit ungewöhnlichem Outbound Traffic, alternative Exfiltration Kanäle und die Frage, ob IoT wirklich das Einfallstor war oder eher der Exit. Ein Jeep Cherokee Hack von 2015, inklusive offenen Port 6667, DBus-Zugriff, Firmware ohne Signierung, CAN-Bus und einem Diagnosemodus, der plötzlich die Bremsen ausknipst. Ein MQTT Case rund um Staubsaugerroboter, Pub/Sub, Wildcards und fehlende ACLs, also Mandantenisolierung zum Weglaufen.Am Ende bleibt eine unbequeme, aber sehr praktische Checkliste: Segmentierung, Zero Trust, Least Privilege, Monitoring und Logging, Secure Boot und vor allem Egress Traffic als First Class Control.Und jetzt Hand aufs Herz: Was ist deine beste Ausrede, warum dein Netzwerk noch nicht segmentiert ist?Unsere aktuellen Werbepartner findest du auf https://engineeringkiosk.dev/partnersDas schnelle Feedback zur Episode:
Long-time Microsoft MVP and consultant Richard Hicks joins The PowerShell Podcast to talk about ADCS security, PKI misconfigurations, and why PowerShell is a consultant's ultimate force multiplier. Richard shares real-world stories from auditing enterprise certificate environments, explains how simple template mistakes can lead to full domain compromise, and walks through tools like Locksmith that help administrators quickly identify dangerous configurations. The conversation also explores Richard's open-source PowerShell work, including his widely downloaded Get-UEFICertificate script for Secure Boot certificate expiration issues and his new ADPrincipalCertificate module for cleaning up unnecessary certificates published in Active Directory. Along the way, Richard reflects on career growth, publishing, consulting, and why sharing knowledge openly has been one of the biggest drivers of his long-term success. Key Takeaways: • ADCS is easy to deploy but difficult to secure — Misconfigured certificate templates, especially ESC1 scenarios, can allow instant privilege escalation and domain compromise. • PowerShell turns repetitive work into reusable tools — From UEFI certificate auditing to Active Directory cleanup, scripting creates consistency and prevents human error. • Sharing expertise compounds over time — Blogging, publishing modules, and speaking at conferences builds credibility, community, and long-term career momentum. Guest Bio: Richard Hicks is the founder and principal consultant of Richard M. Hicks Consulting, Inc. A Microsoft MVP with over 30 years of experience, he specializes in secure remote access and PKI, helping organizations deliver secure, high-performing access for today's mobile workforce. Resource Links: Richard Hicks Website – https://richardhicks.com Connect with Richard – https://richardhicks.com/connect Connect with Andrew: https://andrewpla.tech/links Get-UEFICertificate Script – https://www.powershellgallery.com/packages/Get-UEFICertificate ADPrincipalCertificate Module – https://www.powershellgallery.com/packages/ADPrincipalCertificate Locksmith ADCS Audit Tool – https://github.com/jakehildreth/Locksmith PDQ Discord – https://discord.gg/PDQ PowerShell Wednesdays – https://www.youtube.com/watch?v=Oa0GYX9_vj8&list=PL1mL90yFExsix-L0havb8SbZXoYRPol0B&pp=sAgC The PowerShell Podcast on YouTube: https://youtu.be/4HYCAjQS2W8
Classic Outlook gets more Copilot capabilities. Good idea, given that much of the world still uses Classic Outlook. But this week we also see a modern feature removed from New Outlook. Context IQ and the / are retiring in New Outlook. Interesting move. Will the / be used for something else more Copiloty? 0:00 Welcome 2:25 Secure Boot certificate updates: actions required ahead of June 2026 expiration - MC1230373 5:11 Microsoft 365 Copilot: Prepare for meetings with Copilot in classic Outlook for Windows - MC1228331 8:53 Microsoft 365 Copilot: Scheduling with Copilot in classic Outlook for Windows - MC1228333 12:11 SharePoint Pages: Retirement of Web Search (Bing) image pivot - MC1230452 16:01 Context IQ retirement in the new Outlook and Outlook on the web - MC1230455 19:22 Microsoft Teams: Voice tethering - MC1230459
After years of ignoring and maligning Windows, Microsoft has finally woken up and is making some happy noises. Last week, we discussed how Microsoft plans to improve the quality of Windows and that there are already many signs of that work in various security features and new OneDrive Folder Backup changes - plus those two new direct reports to Nadella. Then, Microsoft announced its Windows Baseline Security Mode and User Transparency and Consent initiatives with questions about the timing. And now, Microsoft just explained Windows 11 version 26H1, and it's not like 24H2 at all despite being tied to Snapdragon X2 silicon.Something happened ... and that something is tied to 26H1 26H1: Only for Snapdragon X2, a "scoped release," based on a "different core" from 24H2 and 25H2 You cannot upgrade 24H2 or 25H2 to 26H1 You cannot upgrade 26H1 to 26H2 (!) - instead, those on 26H1 "will have a path to update in a future Windows release." - Is that future Windows release Windows 12? Probably 24H2, 25H2, and 26H1 will all have the same user-facing features, this has been the case with all support Windows (11) versions for 2+ years (Remember, this is not what happened with 24H2. Shipped early on Snapdragon X1, but was made available to all Windows 11 PCs later that year) So why is this happening now? Fortune 500/corporate customer pushback on AI is one guess This is GOOD news, however it all unfolds More Windows 11 Yesterday was Patch Tuesday, so get to work. Updates this month include: Agent in Settings (Copilot+ PCs only) improvements. Settings improvements, cross-device Resume improvements, Windows MIDI Services improvements, Narrator improvements, Smart App Control improvements, Windows Hello New ESS improvements, and File Explorer improvements Somewhat related to the quality/security push noted above, Microsoft is rolling out new Secure Boot certificates this year for older (pre-2024/25) PCs Microsoft announces a Store CLI that does (almost) nothing new compared to winget New Dev and Beta builds with minor changes: Emoji 16.0, camera improvements, various fixes More earnings Amazon hits $213.4 billion in revenues, will spend $200 billion CAPEX/AI infrastructure this fiscal year, more than Google ($175/$185 billion) or Microsoft (estimated $150+ billion) Qualcomm $12.25 billion in revenues, up 5 percent Alphabet/Google - Up 18 percent (!) to $113.8 billion - 750 million MAUs on Gemini, 74 percent of revenues come from advertising Spotify - somehow has over 750 million MAUs now AI and dev OpenAI and Anthropic release dueling agentic AI coding models that do more than agentic AI coding within minutes of each other Ads appear in ChatGPT Free and Go as threatened Duck.ai adds private, anonymous real-time AI voice chat NET 11 Preview 1 arrives, but there's nothing major here Xbox & games Microsoft announces the 2025 Xbox Excellence Awards Celebrate 35 years of Id Software - Castle Wolfenstein 3D was a wake-up call for PC gaming, but DOOM was a miracle, and Quake was a real WTF moment Sony sold 8 million PlayStation 5s (down 16 percent YOY) in the holiday quarter, 92 million (!) overall Valve predictably delays the vaporware Steam Machine Epic Games is having a winter sale - for example, Silent Hill 2, GTA V Enhanced are 50 percentR These show notes have been truncated due to length. For the full show notes, visit https://twit.tv/shows/windows-weekly/episodes/970 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Sponsors: threatlocker.com/twit helixsleep.com/windows trustedtech.team/windowsweekly365 cachefly.com/twit
After years of ignoring and maligning Windows, Microsoft has finally woken up and is making some happy noises. Last week, we discussed how Microsoft plans to improve the quality of Windows and that there are already many signs of that work in various security features and new OneDrive Folder Backup changes - plus those two new direct reports to Nadella. Then, Microsoft announced its Windows Baseline Security Mode and User Transparency and Consent initiatives with questions about the timing. And now, Microsoft just explained Windows 11 version 26H1, and it's not like 24H2 at all despite being tied to Snapdragon X2 silicon.Something happened ... and that something is tied to 26H1 26H1: Only for Snapdragon X2, a "scoped release," based on a "different core" from 24H2 and 25H2 You cannot upgrade 24H2 or 25H2 to 26H1 You cannot upgrade 26H1 to 26H2 (!) - instead, those on 26H1 "will have a path to update in a future Windows release." - Is that future Windows release Windows 12? Probably 24H2, 25H2, and 26H1 will all have the same user-facing features, this has been the case with all support Windows (11) versions for 2+ years (Remember, this is not what happened with 24H2. Shipped early on Snapdragon X1, but was made available to all Windows 11 PCs later that year) So why is this happening now? Fortune 500/corporate customer pushback on AI is one guess This is GOOD news, however it all unfolds More Windows 11 Yesterday was Patch Tuesday, so get to work. Updates this month include: Agent in Settings (Copilot+ PCs only) improvements. Settings improvements, cross-device Resume improvements, Windows MIDI Services improvements, Narrator improvements, Smart App Control improvements, Windows Hello New ESS improvements, and File Explorer improvements Somewhat related to the quality/security push noted above, Microsoft is rolling out new Secure Boot certificates this year for older (pre-2024/25) PCs Microsoft announces a Store CLI that does (almost) nothing new compared to winget New Dev and Beta builds with minor changes: Emoji 16.0, camera improvements, various fixes More earnings Amazon hits $213.4 billion in revenues, will spend $200 billion CAPEX/AI infrastructure this fiscal year, more than Google ($175/$185 billion) or Microsoft (estimated $150+ billion) Qualcomm $12.25 billion in revenues, up 5 percent Alphabet/Google - Up 18 percent (!) to $113.8 billion - 750 million MAUs on Gemini, 74 percent of revenues come from advertising Spotify - somehow has over 750 million MAUs now AI and dev OpenAI and Anthropic release dueling agentic AI coding models that do more than agentic AI coding within minutes of each other Ads appear in ChatGPT Free and Go as threatened Duck.ai adds private, anonymous real-time AI voice chat NET 11 Preview 1 arrives, but there's nothing major here Xbox & games Microsoft announces the 2025 Xbox Excellence Awards Celebrate 35 years of Id Software - Castle Wolfenstein 3D was a wake-up call for PC gaming, but DOOM was a miracle, and Quake was a real WTF moment Sony sold 8 million PlayStation 5s (down 16 percent YOY) in the holiday quarter, 92 million (!) overall Valve predictably delays the vaporware Steam Machine Epic Games is having a winter sale - for example, Silent Hill 2, GTA V Enhanced are 50 percentR These show notes have been truncated due to length. For the full show notes, visit https://twit.tv/shows/windows-weekly/episodes/970 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Sponsors: threatlocker.com/twit helixsleep.com/windows trustedtech.team/windowsweekly365 cachefly.com/twit
In the security news: Viral AI prompts Things to do in your home security lab I can open your garage door They call me DKnife Beyondtrust RCE Cool AI device Robots need your body Meta is just full of scams, phishing, and malware Claude Opus 4.6 found more than 500 high-severity vulnerabilities Arista next gen firewalls and command injection Secure Boot updates The RCE AMD won't fix and why the article went away End of support means get it off the network Accidentally giving away $44 billion of Bitcoin Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-913
After years of ignoring and maligning Windows, Microsoft has finally woken up and is making some happy noises. Last week, we discussed how Microsoft plans to improve the quality of Windows and that there are already many signs of that work in various security features and new OneDrive Folder Backup changes - plus those two new direct reports to Nadella. Then, Microsoft announced its Windows Baseline Security Mode and User Transparency and Consent initiatives with questions about the timing. And now, Microsoft just explained Windows 11 version 26H1, and it's not like 24H2 at all despite being tied to Snapdragon X2 silicon.Something happened ... and that something is tied to 26H1 26H1: Only for Snapdragon X2, a "scoped release," based on a "different core" from 24H2 and 25H2 You cannot upgrade 24H2 or 25H2 to 26H1 You cannot upgrade 26H1 to 26H2 (!) - instead, those on 26H1 "will have a path to update in a future Windows release." - Is that future Windows release Windows 12? Probably 24H2, 25H2, and 26H1 will all have the same user-facing features, this has been the case with all support Windows (11) versions for 2+ years (Remember, this is not what happened with 24H2. Shipped early on Snapdragon X1, but was made available to all Windows 11 PCs later that year) So why is this happening now? Fortune 500/corporate customer pushback on AI is one guess This is GOOD news, however it all unfolds More Windows 11 Yesterday was Patch Tuesday, so get to work. Updates this month include: Agent in Settings (Copilot+ PCs only) improvements. Settings improvements, cross-device Resume improvements, Windows MIDI Services improvements, Narrator improvements, Smart App Control improvements, Windows Hello New ESS improvements, and File Explorer improvements Somewhat related to the quality/security push noted above, Microsoft is rolling out new Secure Boot certificates this year for older (pre-2024/25) PCs Microsoft announces a Store CLI that does (almost) nothing new compared to winget New Dev and Beta builds with minor changes: Emoji 16.0, camera improvements, various fixes More earnings Amazon hits $213.4 billion in revenues, will spend $200 billion CAPEX/AI infrastructure this fiscal year, more than Google ($175/$185 billion) or Microsoft (estimated $150+ billion) Qualcomm $12.25 billion in revenues, up 5 percent Alphabet/Google - Up 18 percent (!) to $113.8 billion - 750 million MAUs on Gemini, 74 percent of revenues come from advertising Spotify - somehow has over 750 million MAUs now AI and dev OpenAI and Anthropic release dueling agentic AI coding models that do more than agentic AI coding within minutes of each other Ads appear in ChatGPT Free and Go as threatened Duck.ai adds private, anonymous real-time AI voice chat NET 11 Preview 1 arrives, but there's nothing major here Xbox & games Microsoft announces the 2025 Xbox Excellence Awards Celebrate 35 years of Id Software - Castle Wolfenstein 3D was a wake-up call for PC gaming, but DOOM was a miracle, and Quake was a real WTF moment Sony sold 8 million PlayStation 5s (down 16 percent YOY) in the holiday quarter, 92 million (!) overall Valve predictably delays the vaporware Steam Machine Epic Games is having a winter sale - for example, Silent Hill 2, GTA V Enhanced are 50 percentR These show notes have been truncated due to length. For the full show notes, visit https://twit.tv/shows/windows-weekly/episodes/970 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Sponsors: threatlocker.com/twit helixsleep.com/windows trustedtech.team/windowsweekly365 cachefly.com/twit
After years of ignoring and maligning Windows, Microsoft has finally woken up and is making some happy noises. Last week, we discussed how Microsoft plans to improve the quality of Windows and that there are already many signs of that work in various security features and new OneDrive Folder Backup changes - plus those two new direct reports to Nadella. Then, Microsoft announced its Windows Baseline Security Mode and User Transparency and Consent initiatives with questions about the timing. And now, Microsoft just explained Windows 11 version 26H1, and it's not like 24H2 at all despite being tied to Snapdragon X2 silicon.Something happened ... and that something is tied to 26H1 26H1: Only for Snapdragon X2, a "scoped release," based on a "different core" from 24H2 and 25H2 You cannot upgrade 24H2 or 25H2 to 26H1 You cannot upgrade 26H1 to 26H2 (!) - instead, those on 26H1 "will have a path to update in a future Windows release." - Is that future Windows release Windows 12? Probably 24H2, 25H2, and 26H1 will all have the same user-facing features, this has been the case with all support Windows (11) versions for 2+ years (Remember, this is not what happened with 24H2. Shipped early on Snapdragon X1, but was made available to all Windows 11 PCs later that year) So why is this happening now? Fortune 500/corporate customer pushback on AI is one guess This is GOOD news, however it all unfolds More Windows 11 Yesterday was Patch Tuesday, so get to work. Updates this month include: Agent in Settings (Copilot+ PCs only) improvements. Settings improvements, cross-device Resume improvements, Windows MIDI Services improvements, Narrator improvements, Smart App Control improvements, Windows Hello New ESS improvements, and File Explorer improvements Somewhat related to the quality/security push noted above, Microsoft is rolling out new Secure Boot certificates this year for older (pre-2024/25) PCs Microsoft announces a Store CLI that does (almost) nothing new compared to winget New Dev and Beta builds with minor changes: Emoji 16.0, camera improvements, various fixes More earnings Amazon hits $213.4 billion in revenues, will spend $200 billion CAPEX/AI infrastructure this fiscal year, more than Google ($175/$185 billion) or Microsoft (estimated $150+ billion) Qualcomm $12.25 billion in revenues, up 5 percent Alphabet/Google - Up 18 percent (!) to $113.8 billion - 750 million MAUs on Gemini, 74 percent of revenues come from advertising Spotify - somehow has over 750 million MAUs now AI and dev OpenAI and Anthropic release dueling agentic AI coding models that do more than agentic AI coding within minutes of each other Ads appear in ChatGPT Free and Go as threatened Duck.ai adds private, anonymous real-time AI voice chat NET 11 Preview 1 arrives, but there's nothing major here Xbox & games Microsoft announces the 2025 Xbox Excellence Awards Celebrate 35 years of Id Software - Castle Wolfenstein 3D was a wake-up call for PC gaming, but DOOM was a miracle, and Quake was a real WTF moment Sony sold 8 million PlayStation 5s (down 16 percent YOY) in the holiday quarter, 92 million (!) overall Valve predictably delays the vaporware Steam Machine Epic Games is having a winter sale - for example, Silent Hill 2, GTA V Enhanced are 50 percentR These show notes have been truncated due to length. For the full show notes, visit https://twit.tv/shows/windows-weekly/episodes/970 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Sponsors: threatlocker.com/twit helixsleep.com/windows trustedtech.team/windowsweekly365 cachefly.com/twit
On this episode, I go into an update on the Secure Boot certificate update, the upcoming Windows 11 26H1 release, recent Azure outage, signs Microsoft will be focusing on quality and more! Reference Links: https://www.rorymon.com/blog/patch-tuesday-news-azure-outage-impacted-windows-updates-wom11-26h1-info/
In the security news: Viral AI prompts Things to do in your home security lab I can open your garage door They call me DKnife Beyondtrust RCE Cool AI device Robots need your body Meta is just full of scams, phishing, and malware Claude Opus 4.6 found more than 500 high-severity vulnerabilities Arista next gen firewalls and command injection Secure Boot updates The RCE AMD won't fix and why the article went away End of support means get it off the network Accidentally giving away $44 billion of Bitcoin Show Notes: https://securityweekly.com/psw-913
After years of ignoring and maligning Windows, Microsoft has finally woken up and is making some happy noises. Last week, we discussed how Microsoft plans to improve the quality of Windows and that there are already many signs of that work in various security features and new OneDrive Folder Backup changes - plus those two new direct reports to Nadella. Then, Microsoft announced its Windows Baseline Security Mode and User Transparency and Consent initiatives with questions about the timing. And now, Microsoft just explained Windows 11 version 26H1, and it's not like 24H2 at all despite being tied to Snapdragon X2 silicon.Something happened ... and that something is tied to 26H1 26H1: Only for Snapdragon X2, a "scoped release," based on a "different core" from 24H2 and 25H2 You cannot upgrade 24H2 or 25H2 to 26H1 You cannot upgrade 26H1 to 26H2 (!) - instead, those on 26H1 "will have a path to update in a future Windows release." - Is that future Windows release Windows 12? Probably 24H2, 25H2, and 26H1 will all have the same user-facing features, this has been the case with all support Windows (11) versions for 2+ years (Remember, this is not what happened with 24H2. Shipped early on Snapdragon X1, but was made available to all Windows 11 PCs later that year) So why is this happening now? Fortune 500/corporate customer pushback on AI is one guess This is GOOD news, however it all unfolds More Windows 11 Yesterday was Patch Tuesday, so get to work. Updates this month include: Agent in Settings (Copilot+ PCs only) improvements. Settings improvements, cross-device Resume improvements, Windows MIDI Services improvements, Narrator improvements, Smart App Control improvements, Windows Hello New ESS improvements, and File Explorer improvements Somewhat related to the quality/security push noted above, Microsoft is rolling out new Secure Boot certificates this year for older (pre-2024/25) PCs Microsoft announces a Store CLI that does (almost) nothing new compared to winget New Dev and Beta builds with minor changes: Emoji 16.0, camera improvements, various fixes More earnings Amazon hits $213.4 billion in revenues, will spend $200 billion CAPEX/AI infrastructure this fiscal year, more than Google ($175/$185 billion) or Microsoft (estimated $150+ billion) Qualcomm $12.25 billion in revenues, up 5 percent Alphabet/Google - Up 18 percent (!) to $113.8 billion - 750 million MAUs on Gemini, 74 percent of revenues come from advertising Spotify - somehow has over 750 million MAUs now AI and dev OpenAI and Anthropic release dueling agentic AI coding models that do more than agentic AI coding within minutes of each other Ads appear in ChatGPT Free and Go as threatened Duck.ai adds private, anonymous real-time AI voice chat NET 11 Preview 1 arrives, but there's nothing major here Xbox & games Microsoft announces the 2025 Xbox Excellence Awards Celebrate 35 years of Id Software - Castle Wolfenstein 3D was a wake-up call for PC gaming, but DOOM was a miracle, and Quake was a real WTF moment Sony sold 8 million PlayStation 5s (down 16 percent YOY) in the holiday quarter, 92 million (!) overall Valve predictably delays the vaporware Steam Machine Epic Games is having a winter sale - for example, Silent Hill 2, GTA V Enhanced are 50 percentR These show notes have been truncated due to length. For the full show notes, visit https://twit.tv/shows/windows-weekly/episodes/970 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Sponsors: threatlocker.com/twit helixsleep.com/windows trustedtech.team/windowsweekly365 cachefly.com/twit
In the security news: Viral AI prompts Things to do in your home security lab I can open your garage door They call me DKnife Beyondtrust RCE Cool AI device Robots need your body Meta is just full of scams, phishing, and malware Claude Opus 4.6 found more than 500 high-severity vulnerabilities Arista next gen firewalls and command injection Secure Boot updates The RCE AMD won't fix and why the article went away End of support means get it off the network Accidentally giving away $44 billion of Bitcoin Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-913
After years of ignoring and maligning Windows, Microsoft has finally woken up and is making some happy noises. Last week, we discussed how Microsoft plans to improve the quality of Windows and that there are already many signs of that work in various security features and new OneDrive Folder Backup changes - plus those two new direct reports to Nadella. Then, Microsoft announced its Windows Baseline Security Mode and User Transparency and Consent initiatives with questions about the timing. And now, Microsoft just explained Windows 11 version 26H1, and it's not like 24H2 at all despite being tied to Snapdragon X2 silicon.Something happened ... and that something is tied to 26H1 26H1: Only for Snapdragon X2, a "scoped release," based on a "different core" from 24H2 and 25H2 You cannot upgrade 24H2 or 25H2 to 26H1 You cannot upgrade 26H1 to 26H2 (!) - instead, those on 26H1 "will have a path to update in a future Windows release." - Is that future Windows release Windows 12? Probably 24H2, 25H2, and 26H1 will all have the same user-facing features, this has been the case with all support Windows (11) versions for 2+ years (Remember, this is not what happened with 24H2. Shipped early on Snapdragon X1, but was made available to all Windows 11 PCs later that year) So why is this happening now? Fortune 500/corporate customer pushback on AI is one guess This is GOOD news, however it all unfolds More Windows 11 Yesterday was Patch Tuesday, so get to work. Updates this month include: Agent in Settings (Copilot+ PCs only) improvements. Settings improvements, cross-device Resume improvements, Windows MIDI Services improvements, Narrator improvements, Smart App Control improvements, Windows Hello New ESS improvements, and File Explorer improvements Somewhat related to the quality/security push noted above, Microsoft is rolling out new Secure Boot certificates this year for older (pre-2024/25) PCs Microsoft announces a Store CLI that does (almost) nothing new compared to winget New Dev and Beta builds with minor changes: Emoji 16.0, camera improvements, various fixes More earnings Amazon hits $213.4 billion in revenues, will spend $200 billion CAPEX/AI infrastructure this fiscal year, more than Google ($175/$185 billion) or Microsoft (estimated $150+ billion) Qualcomm $12.25 billion in revenues, up 5 percent Alphabet/Google - Up 18 percent (!) to $113.8 billion - 750 million MAUs on Gemini, 74 percent of revenues come from advertising Spotify - somehow has over 750 million MAUs now AI and dev OpenAI and Anthropic release dueling agentic AI coding models that do more than agentic AI coding within minutes of each other Ads appear in ChatGPT Free and Go as threatened Duck.ai adds private, anonymous real-time AI voice chat NET 11 Preview 1 arrives, but there's nothing major here Xbox & games Microsoft announces the 2025 Xbox Excellence Awards Celebrate 35 years of Id Software - Castle Wolfenstein 3D was a wake-up call for PC gaming, but DOOM was a miracle, and Quake was a real WTF moment Sony sold 8 million PlayStation 5s (down 16 percent YOY) in the holiday quarter, 92 million (!) overall Valve predictably delays the vaporware Steam Machine Epic Games is having a winter sale - for example, Silent Hill 2, GTA V Enhanced are 50 percentR These show notes have been truncated due to length. For the full show notes, visit https://twit.tv/shows/windows-weekly/episodes/970 Hosts: Leo Laporte, Paul Thurrott, and Richard Campbell Sponsors: threatlocker.com/twit helixsleep.com/windows trustedtech.team/windowsweekly365 cachefly.com/twit
In the security news: Viral AI prompts Things to do in your home security lab I can open your garage door They call me DKnife Beyondtrust RCE Cool AI device Robots need your body Meta is just full of scams, phishing, and malware Claude Opus 4.6 found more than 500 high-severity vulnerabilities Arista next gen firewalls and command injection Secure Boot updates The RCE AMD won't fix and why the article went away End of support means get it off the network Accidentally giving away $44 billion of Bitcoin Show Notes: https://securityweekly.com/psw-913
SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast
Microsoft Patch Tuesday - February 2026 https://isc.sans.edu/diary/Microsoft%20Patch%20Tuesday%20-%20February%202026/32700 Refreshing the root of trust https://blogs.windows.com/windowsexperience/2026/02/10/refreshing-the-root-of-trust-industry-collaboration-on-secure-boot-certificate-updates/ Fake 7-Zip downloads are turning home PCs into proxy nodes https://www.malwarebytes.com/blog/threat-intel/2026/02/fake-7-zip-downloads-are-turning-home-pcs-into-proxy-nodes FortiNet Vulnerabilities https://fortiguard.fortinet.com/psirt/FG-IR-25-093 https://fortiguard.fortinet.com/psirt/FG-IR-25-1052
On this week's show Patrick Gray and Adam Boileau discuss the week's cybersecurity news, including: Microsoft reshuffles security leadership. It doesn't spark joy. Russia is hacking the Winter Olympics. Again. But y tho? China-linked groups are keeping busy, hacking telcos in Norway, Singapore and dozens of others Campaigns underway targeting Ivanti, BeyondTrust and SolarWinds products An unknown hero blocks 23/tcp on the US internet backbone And James Wilson pops into talk about Claude's go at a C compiler This week's episode is sponsored by Ent.AI, an AI startup that isn't quite ready to tell us all what they're doing. But nevertheless, founder Brandon Dixon joins to discuss AI's role in security. Where does language-based understanding take us that previous methods couldn't? This episode is also available on Youtube. Show notes Updates in two of our core priorities - The Official Microsoft Blog Strengthening Windows trust and security through User Transparency and Consent | Windows Experience Blog Microsoft prepares to refresh Secure Boot's digital certificate | Cybersecurity Dive Microsoft Patch Tuesday matches last year's zero-day high with six actively exploited vulnerabilities | CyberScoop Microsoft releases urgent Office patch. Russian-state hackers pounce. - Ars Technica Italy blames Russia-linked hackers for cyberattacks ahead of Winter Olympics | The Record from Recorded Future News Researchers uncover vast cyberespionage operation targeting dozens of governments worldwide | The Record from Recorded Future News Germany warns of state-linked phishing campaign targeting journalists, government officials | The Record from Recorded Future News Norwegian intelligence discloses country hit by Salt Typhoon campaign | The Record from Recorded Future News Singapore says China-linked hackers targeted telecom providers in major spying campaign | The Record from Recorded Future News Largest Multi-Agency Cyber Operation Mounted to Counter Threat Posed by Advanced Persistent Threat (APT) Actor UNC3886 to Singapore's Telecommunications Sector | Cyber Security Agency of Singapore How Intel and Google Collaborate to Strengthen Intel® TDX Strengthening the Foundation: A Joint Security Review of Intel TDX 1.5 - Google Bug Hunters Active Exploitation of SolarWinds Web Help Desk (CVE-2025-26399) | Huntress EU, Dutch government announce hacks following Ivanti zero-days | The Record from Recorded Future News North Korean hackers targeted crypto exec with fake Zoom meeting, ClickFix scam | The Record from Recorded Future News BeyondTrust warns of critical RCE flaw in remote support software Rapid7 Analysis of CVE-2026-1731 Building a C compiler with a team of parallel Claudes Anthropic (1) Post by @ryiron.bsky.social — Bluesky What AI Security Research Looks Like When It Works | AISLE South Korean crypto exchange races to recover $40bn of bitcoin sent to customers by mistake | South Korea | The Guardian White House to meet with GOP lawmakers on FISA Section 702 renewal | The Record from Recorded Future News
EU grants Google approval for Wiz Microsoft rolls out Secure Boot certificates before expiration North Korean hackers target crypto exec Get the show notes here: https://cisoseries.com/cybersecurity-news-google-gets-eu-wiz-approval-microsoft-secures-secure-boot-certificates-north-korean-hackers-target-crypto-exec/ Huge thanks to our episode sponsor, ThreatLocker Want real Zero Trust training? Zero Trust World 2026 delivers hands-on labs and workshops that show CISOs exactly how to implement and maintain Zero Trust in real environments. Join us March 4–6 in Orlando, plus a live CISO Series episode on March 6. Get $200 off with ZTWCISO26 at ztw.com.
In the security news: KVMs are a hacker's dream Hacking an e-scooter Flipper Zero alternatives The best authentication bypass Pwning Claude Code ForiSIEM, vulnerabilities, and exploits Microsoft patches and Secure Boot fun Making Windows great, again? Breaching the Breach Forum Congressional Emails unsolicited Instagram password reset requests - Is Meta doing enough to secure the platform? LLMs are HIPAA compliant? Threat actors target LLM honeypots Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-909
In the security news: KVMs are a hacker's dream Hacking an e-scooter Flipper Zero alternatives The best authentication bypass Pwning Claude Code ForiSIEM, vulnerabilities, and exploits Microsoft patches and Secure Boot fun Making Windows great, again? Breaching the Breach Forum Congressional Emails unsolicited Instagram password reset requests - Is Meta doing enough to secure the platform? LLMs are HIPAA compliant? Threat actors target LLM honeypots Show Notes: https://securityweekly.com/psw-909
In the security news: KVMs are a hacker's dream Hacking an e-scooter Flipper Zero alternatives The best authentication bypass Pwning Claude Code ForiSIEM, vulnerabilities, and exploits Microsoft patches and Secure Boot fun Making Windows great, again? Breaching the Breach Forum Congressional Emails unsolicited Instagram password reset requests - Is Meta doing enough to secure the platform? LLMs are HIPAA compliant? Threat actors target LLM honeypots Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-909
Happy New Year! In this episode, Automox cybersecurity experts Ryan Braunstein and Seth Hoyt break down the security vulnerabilities you need to know heading into 2026.First up: a ticking time bomb. Microsoft's 2011 Secure Boot certificates expire in June and October 2026, making this your top patching priority for the year. If your BIOS and OS aren't both updated, you're leaving the door wide open for rootkit attacks. Start auditing your hardware now. You have six months.Next up: a Windows Installer Elevation of Privilege Vulnerability that exploits a time-of-check to time-of-use (TOCTOU) race condition. Think of it like swapping wristbands after the bouncer checks you at the door.Finally, an actively exploited flaw in Desktop Window Manager that can leak sensitive information and even break out of sandboxes.Patch your systems. Patch your BIOS. See you next month.
In this episode, eco & Tyler welcome back Skot who was at the African Bitcoin Conference, this year hosted in Mauritius, where he spoke on open-source Bitcoin mining. We swap travel tales (including Scott's chaotic Paris layover) and impressions of Mauritius, the conference venue, and side events focused on Bitcoin education. We dig into mining headlines: Bitdeer's missed ASIC roadmap and investor lawsuit, Bitmain's history (Antbleed) and why open-source mining matters, and MicroBT's M70-series lineup pushing industrial-scale, three-phase miners. Skot explains the theory behind Bitdeer's hyped “adiabatic charge recovery logic,” why it's hard to scale, and how thermal and power density realities define miner design. We go deep on open hardware and firmware progress: Braiins' open control board, Secure Boot obstacles, and Mujina's modular path to safe, customizable, dev-fee-free mining; plus Skot's BitCrain control board concept for USB‑controlled fleets. We share shop-floor lessons building AddIt boards and Ember One prototypes (solder paste, tombstoning, reflow profiles) and celebrate practical innovation like Gridless's open-source JuaKali direct-DC solar mining kit. On home-mining UX, Tyler demos new Home Assistant integrations for Canaan Avalons and WhatsMiner, and we preview Hydra Pool deployments (Grafana/Prometheus dashboards) for the upcoming Telehash. Finally, we update the community on the Samourai Wallet case: Keonne's facility designation, the continuing push for a presidential pardon, and how to support via petition and donations. #PardonSamourai.
First up is a technical segment on UEFI shells: determining if they contain dangerous functionality that allows attackers to bypass Secure Boot. Then in the security news: Your vulnerability scanner is your weakest link Scams that almost got me The state of EDR is not good You don't need to do that on a phone or Raspberry PI Hash cracking and exploits Revisiting LG WebOS Hardening Docker images Hacking Moxa NPort Shoddy academic research The original sin of computing Bodycam hacking A new OS for ESP32 The AI bubble is going to burt Mobile VPNs are not always secure Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-896