⏐ Taklimat Pagi

Taklimat Pagi Saya

“Otak yang lapar perlu diberi makan fakta. Pagi ni kita isi.”
//85 cerita//~3 minit

🔗 baca_penuh: pagi.hejes.my/2026/09/16

> ringkasan_ai

# 🛡️ Cybersecurity (Banyak Lubang Hari Ni!)

✅ **Kritikal CVEs: Microsoft Edge, Oracle GraalVM & Secret Server** [CVE Feed/Critical] — Ada banyak *vulnerability* serius, termasuk *Remote Code Execution* (RCE) kat Edge dan *Authentication Bypass* kat Secret Server.💡 **Kenapa Penting** — Master kena pastikan semua *browser* dan *server* kita *up-to-date* sebelum kena *hack*.

✅ **Serangan WordPress: Plugin Admin Menu Editor Pro & WooCommerce** [BleepingComputer] — Hacker dah masuk *backdoor* kat lebih 1,500 site WordPress melalui plugin-plugin ni.💡 **Kenapa Penting** — Kalau kita ada guna WordPress, kena *check* balik plugin mana yang *compromised*.

✅ **Malware BambooToken & KREMLIN** [BleepingComputer/Hacker News] — BambooToken guna protokol MQTT untuk kawal Windows/Linux, manakala KREMLIN target *session tokens* kat Chrome/Edge.💡 **Kenapa Penting** — Teknik serangan makin pelik, kena pantau trafik rangkaian kita.

✅ **Isu Security Lain (Acronis, mySCADA, Siemens, Digital Watchdog)** [CISA/BleepingComputer] — Pelbagai *flaws* dikesan kat sistem *backup* cPanel dan peranti industri/surveillance.💡 **Kenapa Penting** — Menunjukkan *hardware* industri pun sekarang jadi sasaran utama.

# 🤖 AI & Machine Learning (Zaman Agent)

✅ **Google Gemini 3.8 Live & Databricks GPT-5.5** [MarkTechPost/OpenAI] — Google keluarkan model *voice agent* yang boleh fikir panjang, manakala Databricks bawa GPT-5.5 untuk *enterprise workflow*.💡 **Kenapa Penting** — AI sekarang dah boleh buat kerja *background* sambil sembang, makin *seamless*.

✅ **Trend AI Agents (Meta, OpenAI, Agent-net)** [TechCrunch/OpenAI/MarkTechPost] — Meta guna AI untuk *setup* WhatsApp Business, dan Agent-net *open-source* kan Webagent untuk tukar website jadi AI agent.💡 **Kenapa Penting** — Kita menuju ke arah "Agentic Workflow" di mana AI buat kerja, bukan sekadar jawab soalan.

✅ **Hardware AI: MediaTek Dimensity 9600 Pro (2nm)** [Amanz] — Cip baru 2nm dah sampai, Oppo Find X10 Pro Max bakal guna cip ni untuk *performance* gila-gila.💡 **Kenapa Penting** — Teknologi 2nm ni akan buat AI *on-device* jadi jauh lebih laju dan jimat bateri.

✅ **Isu Etika & Realiti AI (Jensen Huang & AI Graveyard)** [TechCrunch] — CEO Nvidia kata tak payah *regulate* AI sangat, biar *maker* yang jaga. Dalam masa sama, ada senarai "kubur" projek AI yang gagal.💡 **Kenapa Penting** — Peringatan yang tak semua *hype* AI akan berjaya.

# 💻 Tech, Dev & Science

✅ **Linux Kernel Flaws & Sandbox Challenge** [SecurityWeek] — Cabaran $1 juta dedahkan banyak lubang kat Linux Kernel guna bantuan AI.💡 **Kenapa Penting** — AI sekarang dah jadi senjata untuk cari *bug* dengan lebih cepat.

✅ **Meta ZGateway** [MarkTechPost] — Meta buat *proxy tier* baru yang boleh handle 1 bilion operasi sesaat untuk ZippyDB.💡 **Kenapa Penting** — Skala infrastruktur Meta memang lain macam, boleh jadi rujukan untuk *scaling* sistem kita.

✅ **Gaming News: Steam Deck 2, Steam Frame & Hearthstone** [Amanz/Aksiz] — Valve umum set kepala VR "Steam Frame" dan pembangunan Steam Deck 2 masih *on track* untuk 2028.💡 **Kenapa Penting** — Untuk Master *relax* lepas kerja, boleh standby bajet untuk *gadget* baru ni.

🔥 Top Picks

**Gemini 3.8 Live** — Sebab *voice agent* yang boleh *multitasking* ni memang *game changer*.

**Kritikal CVEs (Edge/Secret Server)** — Bahaya kalau tak *patch* cepat-cepat.

**MediaTek Dimensity 9600 Pro** — Lompatan ke 2nm ni memang teknikal yang mengagumkan.

> ls -la berita/

🛡️ Cybersecurity

30
🛡️ Cybersecurity

What We Missed: Did ShinyHunters 'Breach' ReliaQuest?

In this video conversation, Dark Reading editors discuss some of the news they didn't get a chance to cover, from the latest antics of ShinyHunters to new research about the prevalence (or lack thereof) of AI-generated malware.

$> Dark Reading⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-15638 - Cryptographic Padding Oracle

CVE ID :CVE-2026-15638 Published : Sept. 15, 2026, 11:20 p.m. | 48 minutes ago Description :An unauthenticated user with access to Secret Server could leverage a padding oracle to decrypt or encrypt data using one of the server's cryptographic keys.

$> CVE Feed⏱️ 1m
→
🛡️ Cybersecurity

Malcious Admin Menu Editor Pro plugin backdoors 1,500 WordPress sites

Malicious versions of the Admin Menu Editor Pro plugin for WordPress have been distributed to more than 200 customers after a threat actor compromised the maintainer's website and pushed updates that created a hidden user account. [...]

$> BleepingComputer⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-85893 - Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVE ID :CVE-2026-85893 Published : Sept. 15, 2026, 11:19 p.m. | 48 minutes ago Description :Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network. Severity: 8.8 | HIGH Visit the link fo

$> CVE Critical⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-83408 - Vulnerability in the Oracle GraalVM for JDK, Oracl

CVE ID :CVE-2026-83408 Published : Sept. 15, 2026, 10:17 p.m. | 1 hour, 50 minutes ago Description :Vulnerability in the Oracle GraalVM for JDK, Oracle GraalVM product of Oracle Java SE (component: Compiler). The supported version that is affected is

$> CVE Critical⏱️ 1m
→
🛡️ Cybersecurity

mySCADA myPRO Manager

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to access privileged management functions or send arbitrary SMS messages through the connected GSM modem. The following versions of mySCADA myPRO Manager are a

$> CISA⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-15640 - Authentication Bypass via SAML Response Manipulation

CVE ID :CVE-2026-15640 Published : Sept. 15, 2026, 11:22 p.m. | 47 minutes ago Description :Under certain conditions a valid SAML IdP response may be used to impersonate another Secret Server user. Severity: 9.5 | CRITICAL Visit the link for more det

$> CVE Feed⏱️ 1m
→
🛡️ Cybersecurity

“We Think the Security Control Is Working” Is No Longer Good Enough

Point-in-time audits and sampled assessments offer only snapshots; continuous control monitoring provides evidence that security controls are working today. The post “We Think the Security Control Is Working” Is No Longer Good Enough appeared first o

$> SecurityWeek⏱️ 1m
→
🛡️ Cybersecurity

Hackers target WordPress sites via third-party WooCommerce plugin

Hackers are actively exploiting a critical vulnerability in the WooCommerce Wholesale Lead Capture premium plugin for WordPress to upload a PHP backdoor. [...]

$> BleepingComputer⏱️ 1m
→
🛡️ Cybersecurity

Acronis warns of actively exploited flaw in its cPanel backup plugin

Acronis disclosed a high-severity Linux local privilege escalation vulnerability in its backup plugin for cPanel, WebHost Manager (WHM), and Plesk that may be exploited in the wild. [...]

$> BleepingComputer⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-15639 - Reflected Cross-Site Scripting

CVE ID :CVE-2026-15639 Published : Sept. 15, 2026, 11:21 p.m. | 48 minutes ago Description :An attacker can craft a malicious link that, if used by a legitimate user, may cause the user's browser to run JavaScript supplied by the attacker. Severity:

$> CVE Feed⏱️ 1m
→
🛡️ Cybersecurity

[webapps] PodcastGenerator 3.2.9 - Stored XSS

PodcastGenerator 3.2.9 - Stored XSS

$> Exploit-DB⏱️ 1m
→
🛡️ Cybersecurity

KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens

Cybersecurity researchers have shed light on a previously undocumented Brazilian banking malware operation that delivers a toolkit called KREMLIN. Elastic Security Labs is tracking the activity under the moniker REF9334. Active since at least May 202

$> Hacker News⏱️ 1m
→
🛡️ Cybersecurity

[webapps] Marimo 0.20.4 - RCE

Marimo 0.20.4 - RCE

$> Exploit-DB⏱️ 1m
→
🛡️ Cybersecurity

Siemens Teamcenter

View CSAF Summary A reflected cross site scripting vulnerability in the authentication redirect flow (/auth/) of Teamcenter allows an unauthenticated remote attacker to inject JavaScript into an authenticated user's session by crafting a malicious UR

$> CISA⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-92184 - ag-ui-protocol ag-ui Multimodal Content utils.py urllib.request.urlopen server-side request forgery

CVE ID :CVE-2026-92184 Published : Sept. 15, 2026, 11:30 p.m. | 39 minutes ago Description :A security flaw has been discovered in ag-ui-protocol ag-ui 0.3.0. Affected is the function urllib.request.urlopen of the file integrations/aws-strands/python

$> CVE Feed⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-69486 - Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVE ID :CVE-2026-69486 Published : Sept. 15, 2026, 11:17 p.m. | 50 minutes ago Description :Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Severity: 8.8 | HIGH Visit the l

$> CVE Critical⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-83357 - Vulnerability in the Oracle GraalVM for JDK, Oracl

CVE ID :CVE-2026-83357 Published : Sept. 15, 2026, 10:17 p.m. | 1 hour, 50 minutes ago Description :Vulnerability in the Oracle GraalVM for JDK, Oracle GraalVM product of Oracle Java SE (component: Compiler). The supported version that is affected is

$> CVE Critical⏱️ 1m
→
🛡️ Cybersecurity

[webapps] Langflow 1.10.0 - RCE

Langflow 1.10.0 - RCE

$> Exploit-DB⏱️ 1m
→
🛡️ Cybersecurity

Digital Watchdog VMAX DVR and NVR Product Lineups

View CSAF Summary Successful exploitation of these vulnerabilities could grant full administrative control of the device, allowing an attacker to view live and recorded surveillance, alter device configurations, and use the device as a network pivot

$> CISA⏱️ 1m
→
🛡️ Cybersecurity

BambooToken Malware Uses MQTT to Control Windows and Linux Systems

Cybersecurity researchers have disclosed details of a multi-platform campaign that uses the Message Queueing Telemetry Transport (MQTT) protocol as a communication channel to control Windows and Linux systems. The emerging malware family, codenamed B

$> Hacker News⏱️ 1m
→
🛡️ Cybersecurity

[hardware] Fullhan FH8626V100 - Multiple Vulnerabilities

Fullhan FH8626V100 - Multiple Vulnerabilities

$> Exploit-DB⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-73460 - Security Advisory 0160

CVE ID :CVE-2026-73460 Published : Sept. 15, 2026, 11:20 p.m. | 49 minutes ago Description :On affected platforms running Arista EOS with IS-IS graceful restart enabled, an unauthenticated attacker who can inject a malformed IS-IS LSP PDU packet can

$> CVE Feed⏱️ 1m
→
🛡️ Cybersecurity

CVE-2026-81855 - Wärtsilä FOS-Onboard Use of Hard-coded Cryptographic Key

CVE ID :CVE-2026-81855 Published : Sept. 15, 2026, 10:17 p.m. | 1 hour, 50 minutes ago Description :A hardcoded cryptographic client authentication key vulnerability exists in the robot testing framework component of Wärtsilä FOS-Onboard. Severity: 9

$> CVE Critical⏱️ 1m
→
🛡️ Cybersecurity

CenterPoint Energy confirms customer data stolen in cyberattack

CenterPoint Energy disclosed a breach compromising some customers' personal information after an attacker leaked data allegedly stolen from the utility company. [...]

$> BleepingComputer⏱️ 1m
→
🛡️ Cybersecurity

VectraRAT Can Hack Windows Enterprises for $250 per Month

The full-service malware-as-a-service (MaaS) platform offers a Windows implant, command-and-control (C2) infrastructure, and an operator panel for comprehensive remote access.

$> Dark Reading⏱️ 1m
→
🛡️ Cybersecurity

Iranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and Journalists

Cybersecurity agencies in the United States, the United Kingdom, and the Netherlands have detailed a Windows malware that they say Iran's intelligence service uses to spy on dissidents, journalists, and activists around the world. The malware is cont

$> Hacker News⏱️ 1m
→
🛡️ Cybersecurity

Human Attacker Exploits Marimo RCE, Reaches SSH Bastion in Eight Seconds

With artificial intelligence (AI) shrinking the window between vulnerability discovery and exploitation and lowering the barrier to entry for bad actors, new findings from Sysdig show that skilled human operators can move just as swiftly after gainin

$> Hacker News⏱️ 1m
→
🛡️ Cybersecurity

Exein Secures $270M at $1.7B Valuation for Physical AI Security

The cybersecurity startup is building a proprietary foundation model and plans to accelerate global expansion. The post Exein Secures $270M at $1.7B Valuation for Physical AI Security appeared first on SecurityWeek.

$> SecurityWeek⏱️ 1m
→
🛡️ Cybersecurity

Texas Utility CenterPoint Energy Confirms Breach After Hacker Leaks Data

A hacker claims to have stolen 7.5 million customer records after breaching the company’s systems. The post Texas Utility CenterPoint Energy Confirms Breach After Hacker Leaks Data appeared first on SecurityWeek.

$> SecurityWeek⏱️ 1m
→

🧠 AI/ML

39
🧠 AI/ML

Toward Self-Adaptive Physical AI: Can LLM Agents Manage Long-Horizon Physical Tasks?

arXiv:2609.13436v1 Announce Type: new Abstract: Large Language Model (LLM) agents offer a promising path toward autonomously managing long-term physical tasks without human intervention. However, physical tasks require agents to continuously observe

$> arXiv cs.AI⏱️ 1m
→
🧠 AI/ML

Hearthstone Menerima Penambahan Reign of the Black Empire Oktober Ini – Kelas Baharu Tahun Depan

Blizzard Entertainment telah mengumumkan pelan kandungan baharu untuk Hearthstone di acara BlizzCon 2026. Fokus utama pengumuman tersebut adalah pelancaran penambahan baharu berjudul Reign of the Black Empire pada 20 Oktober... The post Hearthstone M

$> Aksiz⏱️ 1m
→
🧠 AI/ML

Databricks brings GPT-5.5 to enterprise agent workflows

Databricks uses GPT-5.5 for enterprise agent workflows after the model set a new state of the art on the OfficeQA Pro benchmark.

$> OpenAI⏱️ 1m
→
🧠 AI/ML

The AI data center boom is colliding with cities scarred by big industry

National outcry against data center construction has spread to Philadelphia, where officials suggested possible construction in a neighborhood already impacted by a now-defunct oil refinery.

$> TechCrunch⏱️ 1m
→
🧠 AI/ML

New insights from Google’s AI & Economy ATLAS

We’ve translated ATLAS’s millions of global data points into an interactive, open-access experience.

$> Google AI⏱️ 1m
→
🧠 AI/ML

Pembangunan Steam Deck 2 Masih Diteruskan – Tidak Terjejas Dengan Isu Komponen Memori

Pada pertengahan tahun ini, ia telah dilaporkan bahawa Valve akan memulakan proses pembangunan konsol permainan mudah-alih generasi kedua mereka, Steam Deck 2 dan jangkaan mereka ialah konsol tersebut akan diperkenalkan sekitar tahun 2028 kelak. Pier

$> Amanz⏱️ 1m
→
🧠 AI/ML

Sega dan Netflix Bekerjasama Terbit Filem Crazy Taxi, Siri Baharu Sonic Serta Stranger Than Heaven

Francais permainan video arked klasik Crazy Taxi bakal diadaptasi menjadi sebuah filem live-action di Netflix menerusi perjanjian penerbitan multi-judul bersama SEGA. Kerjasama ini turut merangkumi pembangunan siri animasi baharu berteraskan... The p

$> Aksiz⏱️ 1m
→
🧠 AI/ML

Google Releases Gemini 3.8 Live and 3.8 Live Extended Thinking for Production Grade Voice Agents

Google has released Gemini 3.8 Live and Gemini 3.8 Live Extended Thinking, its most advanced live dialogue models to date. The models execute tools and API calls in the background while the conversation keeps flowing, process live visual inputs, and

$> MarkTechPost⏱️ 1m
→
🧠 AI/ML

The AI graveyard: a running list of projects and startups that didn’t make it

From Apple's repeatedly delayed Siri AI to OpenAI's messy "super app" launch, here's a look at the AI projects that shut down or missed expectations.

$> TechCrunch⏱️ 1m
→
🧠 AI/ML

Your Architecture Is Why Your Coding Agent Keeps Writing Bad Code

Stop blaming LLMs for bad PRs. Learn how monorepo isolation and tiered AGENTS.md rules eliminate context drift and double your AI coding agent productivity.

$> Hacker Noon⏱️ 1m
→
🧠 AI/ML

Valve Umum Set Kepala VR Steam Frame Secara Rasmi

Valve hari ini telah mengumumkan dan membuka pendaftaran secara rasmi untuk perkakasan terbaharunya, Steam Frame. Peranti ini merupakan set kepala VR tanpa wayar berserta alat kawalan yang direka untuk permainan... The post Valve Umum Set Kepala VR S

$> Aksiz⏱️ 1m
→
🧠 AI/ML

ZGCM-1: A Fully Open and Extremely Efficient Foundation Model for Math and Agentic Search

arXiv:2609.13356v1 Announce Type: new Abstract: In this work, we present ZGCM-1, a fully open 7B dense foundation model trained from scratch with extreme data, system, and algorithmic efficiency. ZGCM-1 is founded on a core premise: compact models ca

$> arXiv cs.AI⏱️ 1m
→
🧠 AI/ML

I Built a RevenueCat Paywall That Doesn’t Hold the First Lesson Hostage

How Slovo uses RevenueCat to keep daily Russian lessons free while testing a custom paywall, three-day trial, and outcome-based subscription pitch.

$> Hacker Noon⏱️ 1m
→
🧠 AI/ML

Grab Bersetuju Membeli Pegangan Majoriti 60% Atome Untuk RM6.1 Bilion

Grab hari ini bersetuju untuk membeli pegangan majoriti pada perkhidmatan bayar nanti, pakai lekas (BNPL), Atome Financial, pada harga RM6.1 bilion. Grab akan mendapatkan pegangan sebanyak 60% pada Atome melalui transaksi ini. Langkah ini juga akan t

$> Amanz⏱️ 1m
→
🧠 AI/ML

AI for Societal Impact

Explore this collection to see how experts and local leaders are using AI breakthroughs to ensure everyone can share the opportunity of AI.

$> Google AI⏱️ 1m
→
🧠 AI/ML

We don’t need AI regulation — leave safety to us, Nvidia’s Jensen Huang says

AI isn't some kind of new form of "alien mind," according to Jensen Huang. It's just hardware and software, so safety can be engineered by each AI product maker.

$> TechCrunch⏱️ 1m
→
🧠 AI/ML

Helping ChatGPT better recognize context in sensitive conversations

Learn how new ChatGPT safety updates improve context awareness in sensitive conversations, helping detect risk over time and respond more safely.

$> OpenAI⏱️ 1m
→
🧠 AI/ML

Your Agent Aced the Task. Will It Do It Again?

$> HuggingFace⏱️ 1m
→
🧠 AI/ML

Operations workflows with ChatGPT Work

Learn practical ChatGPT Work workflows for initiative briefs, strategy updates, decision packets, and progress reporting.

$> OpenAI⏱️ 1m
→
🧠 AI/ML

Black Hat USA 2026 | The 'Breaking' News: The OpenAI–Hugging Face Incident

The 'Breaking' News: The OpenAI–Hugging Face Incident - A Technical Reconstruction and Its Implications for AI At this Black Hat USA 2026 talk, OpenAI security engineers and researchers will reconstruct the OpenAI-Hugging Face incident and examine it

$> Dark Reading⏱️ 1m
→
🧠 AI/ML

What the AI Warning Letter Completely Missed

The recent open letter is right about the "window," but it omits naming who is coming through it or, critically, who will close it.

$> Dark Reading⏱️ 1m
→
🧠 AI/ML

Democratizing AI Safety with RiskRubric.ai

$> HuggingFace⏱️ 1m
→
🧠 AI/ML

Oppo Find X10 Pro Max Akan Menggunakan Cip MediaTek Dimensity 9600 Pro

MediaTek baru sahaja melancarkan cip mercu baharu Dimensity 9600 Pro yang dibina menggunakan teknologi 2nm. Sejurus selepas pengumuman tersebut, Oppo mengesahkan bahawa telefon pintar premium terbaharu mereka, Find X10 Pro Max akan menjadi antara per

$> Amanz⏱️ 1m
→
🧠 AI/ML

Cip MediaTek Dimensity 9600 Pro Dilancarkan Dengan Binaan 2nm

Cip MediaTek Dimensity 9600 Pro diperkenalkan dengan teknologi 2nm TSMC. Ia hadir dengan reka bentuk CPU 2+3+3 All Big Core yang menggabungkan 2x C2-Ultra sehingga 4.55GHz, 3x C2-Pro pada 4.35GHz dan 3x C2-Pro pada 3.1GHz. Hasilnya, prestasi teras tu

$> Amanz⏱️ 1m
→
🧠 AI/ML

Converge Then Diversify: Decoupling Convergence and Diversity in Multi-Objective Bayesian Optimisation

arXiv:2609.13396v1 Announce Type: new Abstract: Multi-objective Bayesian optimisation (MOBO) is a sample-efficient approach for optimising expensive black-box functions with multiple objectives. In MOBO, the goal is to adequately approximate the Pare

$> arXiv cs.AI⏱️ 1m
→
🧠 AI/ML

Building AI to accelerate science and improve lives

The true measure of AI is who it helps. Here’s how it’s impacting lives today. We're focused on key areas where advanced technology can help make extraordinary progress …

$> Google AI⏱️ 1m
→
🧠 AI/ML

Scaleway on Hugging Face Inference Providers 🔥

$> HuggingFace⏱️ 1m
→
🧠 AI/ML

US data centers could consume more natural gas than Germany and Japan combined by 2035

The AI frenzy could push U.S. data centers to become one of the largest consumers of natural gas in the world.

$> TechCrunch⏱️ 1m
→
🧠 AI/ML

Public AI on Hugging Face Inference Providers 🔥

$> HuggingFace⏱️ 1m
→
🧠 AI/ML

Inside NVIDIA’s cuDNN Graph API: Fusion, Autotuning, and Plan Reuse with cuDNN Frontend

Learn how to leverage NVIDIA’s cuDNN Frontend Graph API to build custom kernel fusions, autotuning engine configurations, FP8-style epilogues, scaled dot-product attention, dynamic shapes, and CUDA graph captures. This practical tutorial demonstrates

$> MarkTechPost⏱️ 1m
→
🧠 AI/ML

Blizzard Umum World of Warcraft: Forever, Kempen Baharu Warcraft III: Reforged, dan Pengakhiran Midnight

Blizzard Entertainment mengumumkan pelbagai kandungan bagi francais Warcraft di BlizzCon 2026, didahalui oleh pengenalan judul baharu World of Warcraft: Forever, pelancaran kempen penceritaan untuk Warcraft III: Reforged, serta kemas kini... The post

$> Aksiz⏱️ 1m
→
🧠 AI/ML

What’s at stake in AI’s trillion-dollar gamble

When Jessica Wachter, a finance professor at the University of Pennsylvania’s Wharton School, wanted to assess AI’s impact on the economy over the next few years, she faced a long list of business and technical uncertainties. So she started with what

$> MIT Tech Rev⏱️ 1m
→
🧠 AI/ML

AI for everyone in every language

We’re moving beyond traditional text translation to build models that understand the world’s rich, living languages exactly as they are expressed.

$> Google AI⏱️ 1m
→
🧠 AI/ML

Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point

Introduction Security teams have gotten pretty good at testing against what can hurt them. Can this EDR agent catch this payload? Will my organization fail the phishing simulation? Does this SIEM rule fire on this particular technique? And, in more m

$> Hacker News⏱️ 1m
→
🧠 AI/ML

Schneider Electric SCADAPack x70 Products

View CSAF Summary Schneider Electric is aware of a vulnerability in its SCADAPack x70 products. The SCADAPack 47x, SCADAPack 47xi, SCADAPack 47xd, SCADAPack 470R and SCADAPack 57x products are Remote Terminal Units that provide communication capabili

$> CISA⏱️ 1m
→
🧠 AI/ML

Generalized Agent Iteration: One Formal Framework for Iterative Policy Improvement and Recursive Self-Improvement

arXiv:2609.13406v1 Announce Type: new Abstract: When we speak of recursive self-improvement (RSI), are we speaking of a phenomenon, a mechanism, or a prospect? Towards autonomous and evolving intelligence, RSI is being claimed at many scales, while n

$> arXiv cs.AI⏱️ 1m
→
🧠 AI/ML

Vibe Patenting: Evaluating LLM Judges for Professional Patent-Drafting Agents

arXiv:2609.13422v1 Announce Type: new Abstract: LLM judges are increasingly used to evaluate and improve AI-generated outputs, yet their reliability for complex professional work remains unclear. We study this problem through Vibe Patenting, an end-t

$> arXiv cs.AI⏱️ 1m
→
🧠 AI/ML

Samsung Galaxy A08 Kini Rasmi Dengan Bateri 6000mAh

Samsung Galaxy A08 kini dilancarkan secara rasmi selepas disenaraikan secara senyap di laman web rasmi beberapa negara termasuk Malaysia. Model ini hadir sebagai penerus siri Galaxy A untuk segmen asas, dengan peningkatan ketara pada kapasiti bateri

$> Amanz⏱️ 1m
→
🧠 AI/ML

Roundtables: Could AI really kill us all?

Listen to the session or watch below Employees at the world’s leading AI labs are saying there’s a real possibility that advanced AI could destroy humanity. Are they right? Or is this more scaremongering and hype? Watch a conversation unpacking AI ex

$> MIT Tech Rev⏱️ 1m
→

🔬 Science/Research

2

⚡ Tech/Dev

13
⚡ Tech/Dev

BambooToken malware controls Windows and Linux systems via MQTT

A previously unknown malware framework called BambooToken, active since at least 2023, is now using the Message Queuing Telemetry Transport (MQTT) protocol to communicate with Windows and Linux systems. [...]

$> BleepingComputer⏱️ 1m
→
⚡ Tech/Dev

$1 Million Sandbox Challenge Uncovers Linux Kernel Flaws

AI-assisted researchers flooded Vercel with reports, forcing the company to automate vulnerability triage. The post $1 Million Sandbox Challenge Uncovers Linux Kernel Flaws appeared first on SecurityWeek.

$> SecurityWeek⏱️ 1m
→
⚡ Tech/Dev

Microsoft Commits to Sweeping AI Privacy Rules for Students. Will Other Tech Giants Follow?

Microsoft agreed to adopt guardrails and privacy standards for its AI in schools, as negotiated with the American Federation of Teachers. The post Microsoft Commits to Sweeping AI Privacy Rules for Students. Will Other Tech Giants Follow? appeared fi

$> SecurityWeek⏱️ 1m
→
⚡ Tech/Dev

Protecting Tokens and Assertions from Forgery, Theft, and Misuse: Implementation Recommendations for Agencies and Cloud Service Providers

Developed by the National Institute of Standards and Technology (NIST) and CISA, this interagency report provides federal agencies and cloud service providers with guidelines to protect the identity assertions, access tokens, and cryptographic mechan

$> CISA⏱️ 1m
→
⚡ Tech/Dev

Meta Introduces ZGateway: A Stateless Proxy Tier That Unifies ZippyDB Traffic and Handles Over 1 Billion Operations Per Second

Meta engineering team introduced ZGateway, a proxy tier that now sits between client applications and ZippyDB, the Meta’s most widely used key value store. ZippyDB backs product metadata, counters, and configuration at billions of operations per seco

$> MarkTechPost⏱️ 1m
→
⚡ Tech/Dev

Work with Codex from anywhere

Use Codex anywhere with the ChatGPT mobile app. Monitor, steer, and approve coding tasks in real time across devices and remote environments.

$> OpenAI⏱️ 1m
→
⚡ Tech/Dev

Meta now lets AI agents handle the boring parts of WhatsApp Business setup

A new WhatsApp Business MCP server lets developers use AI coding agents like Claude, Cursor, Codex, and ChatGPT to handle setup, messaging templates, testing, and troubleshooting.

$> TechCrunch⏱️ 1m
→
⚡ Tech/Dev

Sea's View on the Future of Agentic Software Development with Codex

Sea Limited's CPO explains why the company is deploying Codex across engineering teams to accelerate AI-native software development in Asia.

$> OpenAI⏱️ 1m
→
⚡ Tech/Dev

Agent-net Open Sources Webagent: A Go Harness That Turns Any Website into a Guarded AI Agent

Agent-net, the team building an agent-to-agent marketplace where AI agents discover, trust, and pay each other, has released Webagent, an open source harness for standing up public-facing business agents. So, basically you give it your website, get a

$> MarkTechPost⏱️ 1m
→
⚡ Tech/Dev

Building a Local-First Kotlin App With GitHub Actions and RevenueCat

Inside the six-day build of myQuote, a Kotlin app using Jetpack Compose, Android TTS, GitHub Actions, and RevenueCat’s Test Store.

$> Hacker Noon⏱️ 1m
→
⚡ Tech/Dev

Amana’s Sky Shader Worked Perfectly, Except It Kept Getting the Weather Wrong

Three rendering bugs made Amana’s Metal sky shader contradict the real weather. Here is how cloud color, scope, and interpolation were fixed.

$> Hacker Noon⏱️ 1m
→
⚡ Tech/Dev

[webapps] Ghost_CMS 6.19.0 - Remote Code Execution

Ghost_CMS 6.19.0 - Remote Code Execution

$> Exploit-DB⏱️ 1m
→
⚡ Tech/Dev

Microsoft Issues Emergency Fixes After Massive Patch Tuesday

You can't make an omelet without breaking a few eggs, and you can't patch nearly 1,000 CVEs without a few glitches.

$> Dark Reading⏱️ 1m
→

📌 Lain-lain

1