TOP STORIES
AI
-
On-PREM
AMD's Threadripper Halo is a local-AI workstation for researchers with deep pockets
AI workstation promises to put up to 576 GB of HBM3e and 16 TB/s of memory bandwidth on your desk
-
ai and ml
Hugging Face is too important to fall into Nvidia's hands
$12.9 billion deal will inevitably cement Nvidia's market dominance and harm competition in the process. Regulators should take note
-
ai and ml
Zuck's Muse to Spark joy with open weights release 'soon'
While you wait, Meta says it’s taught the model to stop wasting tokens and ask for help a bit more often
-
ai and ml
With Gemini 3.8 Flash, Google reminds everyone it's still in the race
AI model scores well, runs fast, and doesn't cost too much (yet)
-
security
AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit
Adding insult to injury
Infosec
-
Security
Russians are posing as Signal support to launch phishing attacks
PLUS: US takes down Iranian propaganda sites; Marketing company asks 'Why Do We Have Your Information?' And more!
-
Security
Microsoft patches failed to fix on-prem SharePoint, which is now under zero-day attack
PLUS: China upgrades smartphone surveillance tools; Ring eases anti-snooping stance; and more
-
Black Hat and DEF CON
DEF CON Franklin project enlists hackers to harden critical infrastructure
Voting village reports have been so successful, says Jeff Moss, that the whole of DEF CON will now be included
-
Security
EQT buys majority share in Swiss cybersecurity biz Acronis
Went at equivalent of $3.5B+ valuation for entire firm, though portion sold not specified
-
Malware Month
Ten years since the first corp ransomware, Mikko Hyppönen sees no end in sight
On the plus side, infosec's a good bet for a long, stable career
FOSS
-
Feel peak Windows was 7? You might like Kumander Linux
Debian and Xfce – solid, sensible choices – with a pretty skin
-
Canonical shuttering some of its legacy chat channels
The Ubuntu Pastebin went in June, IRC gets demoted next
-
Audacity audio-editing app no longer looks like it's from the early 2000s
The FOSS tool for audio editing has a fresh coat of paint, and new features to boot
-
Haiku OS rises / Beta 6 sails open web / Virtual winds fly fast
A real alternative to running some kind of FOSS Unix clone
-
Offshoots of cancelled TrueNAS Core upgrade to FreeBSD 15
Exeunt zVault stage right; enter FreeCORE and BSDnas
-
Debian votes to let contributors code with AI
Disclosure optional, quality mandatory
Facts Only
* AMD released the Threadripper Halo as a local-AI workstation featuring up to 576 GB of HBM3e and 16 TB/s of memory bandwidth.
* A $12.9 billion deal involving Hugging Face was noted in relation to Nvidia's market dominance.
* Meta taught a model to reduce token usage and request assistance more frequently.
* Google announced Gemini 3.8 Flash, positioning it in the AI race with favorable performance and cost metrics.
* AI agents executed every step of a ransomware attack, resulting in an 80-page security audit.
* Russians are posing as Signal support to launch phishing attacks.
* Microsoft patched failed fixes for on-prem SharePoint, leaving it vulnerable to zero-day attacks.
* EQT bought a majority share in the Swiss cybersecurity firm Acronis for an equivalent valuation of $3.5B+.
* Mikko Hyppönen noted no end in sight for corporate ransomware threats over ten years.
* Debian voted to allow contributors to code with AI, mandating quality.
Executive Summary
Full Take
The narrative presented juxtaposes the rapid advancement and commercialization of high-end AI hardware and models against persistent, escalating security vulnerabilities and foundational software shifts. The tension lies between technological acceleration (AI workstations, new models) and systemic risk management (ransomware, state-sponsored attacks). The move to open weights suggests a decentralized push in AI development, yet the massive financial alignment around Nvidia creates a centralization paradox where innovation is monetized while competition is ostensibly cautioned against. The security reports regarding AI agents highlight that autonomous systems, intended for efficiency, can introduce severe liability when deployed in high-stakes environments, shifting accountability downstream. Furthermore, the FOSS trends—from operating systems like Kumander Linux to the debate over AI coding assistance in Debian—reveal a parallel movement toward distributed control and transparency, suggesting an underlying pattern where users are seeking sovereignty over the tools they employ, whether in computing or data governance. The implication is that true resilience requires not just faster computation, but establishing transparent, decentralized controls over the very infrastructure creating the intelligence.
Bridge Questions: If AI agents prove to be effective attack vectors, what new architectural requirements must software systems adopt to guarantee integrity without relying on human oversight for every step? How does the pursuit of open-source operating systems and coding assistance ultimately reshape the power dynamics between large technology vendors and end-users? What mechanisms are necessary to ensure that the vast computational power described by AMD's specifications is used to secure, rather than compromise, critical infrastructure?
