Connect with us
DAPA Banner
DAPA Coin
DAPA
COIN PAYMENT ASSET
PRIVACY · BLOCKDAG · HOMOMORPHIC ENCRYPTION · RUST
ElGamal Encrypted MINE DAPA
🚫 GENESIS SOLD OUT
DAPAPAY COMING

Tech

And Now Basically Everyone In This LEGO Dispute Looks Sketchy

Published

on

from the it-only-gets-worse dept

A couple weeks ago I wrote 6,000 words about the Reckless Ben/Bricks & Minifigs LEGO mess and concluded that pretty much everyone involved had made serious mistakes — with the Utah contingent (Bricks & Minifigs corporate, Joshua Johnson, Brandon Best, and the American Fork police) looking the worst of all. That take upset basically everyone: some felt I was too hard on Reckless Ben, some felt I was too easy on the American Fork police, and probably a few people just resented spending that much time reading about legos. Since then, a lot more has come out, and the situation has only gotten murkier. My original read still holds up, but the Utah folks look even worse, and some of the other players are looking sketchier too.

And, I think it’s fair to say, mistakes were made by pretty much everyone involved.

Just as before, many of the new details are in long YouTube videos, but if you want watch just one, start with this one by Stephen Findeisen, who is better known as Coffeezilla and who regularly researches financial and cryptocurrency scams:

Advertisement

That video goes deep — Findeisen gets basically everyone on the phone at some point or another (except the cops), accesses a ton of evidence not previously public, and, unlike most of the earlier YouTube coverage, actually tries to find the truth instead of just stoking outrage.

He makes a few points that are hard to argue with:

  • The Lego collection was never actually worth $200k (we had suggested this in our initial post as well). It was probably closer to $100k (and possibly a bit less).
  • Some of it was definitely sold before all this, but much of it had not been.
  • Plenty of it clearly remained in the store after Brandon Best showed up the night in November 2024 to kick out Law and take over the store.
  • Best also showed up with a U-Haul truck, and there are some (slightly conflicting) reports that he subsequently appeared at his other Oregon Bricks & Minifigs store with a bunch of Star Wars Lego sets. Bricks & Minifigs corporate initially insisted this was false and said he showed up in a rental car. But Coffeezilla has visual proof of a U-Haul parked outside that night, which is pretty damning, which led Bricks & Minifigs to revise their story with a complicated one about hauling a camper trailer, which doesn’t make that much sense.
  • Coffeezilla dropped this thread, in part because of a disagreement over the timeline, though it’s not clear to me that the timeline doesn’t really line up. It seems entirely possible that Best could have taken a bunch of legos out of the Gormans’ old store and taken them to his other store and then returned the U-Haul truck.
  • Law & Gorman appear to have sold some of Mansell’s collection and not paid him for that, and it could be a lot of money. Law admits that she may have been a bit sloppy on the record keeping, saying she hadn’t done an inventory in a while and suggesting employees maybe hadn’t told her when certain sets from the collection were sold. But there’s also a credibility problem regarding sets that were listed as being on layaway, but where the spreadsheet suggests they were actually sold, but not accounted for as sold.
  • To her credit, she admits it’s possible she owes Mansell some money and that if she can see evidence of this she will make sure that Mansell is paid what he is owed. But given how quick the Gormans were to insist this was entirely Bricks & Minifigs corporate who were the problem, it’s not a good look.
  • Bricks & Minifigs corporate claims that there were about $5k worth of Star Wars legos left. That appears to be bullshit and wouldn’t really help their case, because even if it was just $5k of Mansell’s legos, those are still stolen legos.
  • Bricks & Minifigs’ CEO and COO (the McNeff brothers) claim that they never were sent a spreadsheet of the collections, and the best moment in the video is when Coffeezilla points out that the Google Docs spreadsheet he’s been using is owned by their account and has been sitting there since 2024. That really makes the McNeffs look sketchy.

That video also includes dueling photographic and videographic evidence of what was in the store the night Best kicked the Gormans out (as well as a few weeks earlier when Best apparently surreptitiously filmed inside the store to see what was there). There are way more empty shelves the night Best kicked out Law & Gorman, but they say that’s because they had moved the high value consignment items to the safes they had purchased for that purpose, which were in the back. Later in the video Coffeezilla shows the McNeffs additional images from Law that appear to show Star Wars lego sets in what appears to be a safe, and which Matt McNeff (the company’s COO) admits they don’t appear to have listed in their own spreadsheet, which they had originally said was a complete listing of all the Star Wars legos in the store the night they took it over.

The McNeffs still look terrible, and Brandon Best also looks a bit sketchy. But it also appears that Law & Gorman’s record keeping was pretty sketchy as well, and while the McNeffs have gone overboard in claiming that they were responsible for Mansell’s “missing” legos, it does appear likely that Law owes Mansell for a decent number of Star Wars legos her store sold.

As for the American Fork Police department and Brandon Best’s partner, Joshua Johnson, we need a different video, this one from Legal Eagle. It breaks down just how many things they did wrong:

Advertisement

There were a lot of assumptions made about the police department, particularly around how they redacted the footage they released to Schneider. There was plenty of smoke, but no actual fire. As it turns out, beyond possibly being corrupt, the American Fork Police Department might also just be incompetent: they accidentally uploaded all the unredacted bodycam footage, which is now available on the Internet Archive.

Schneider initially claimed a hacker obtained the videos, which raised some questions about provenance. Once the department itself admitted the release was accidental, that question went away — and what’s in the footage is pretty hard to explain away. The police were way too credulous with Johnson. The “refusing to accept service” situation alone is maddening: Johnson claims the lawsuits are fake, the officer calls the court and confirms they’re real, and then… still lets Johnson refuse service. Beyond that, there are the extended traffic stops on no real probable cause, and the arrests on a search warrant instead of an arrest warrant — and they didn’t even find what they were looking for. Legal Eagle walks through all of it, and it’s a long list of failures.

Schneider is a more complicated case. He’s clearly one of the good guys here, and the attention he generated did move the needle when nothing else was. But some of his own claims haven’t held up. He never independently verified the value of the collection — and in the Coffeezilla video, he appears genuinely surprised it’s nowhere near $200k, which is a bad look for someone who made that figure central to his coverage. The small claims court situation is worse: Schneider said Johnson and Best had defaulted on those cases, but they were basically all dismissed for being filed against the wrong defendants, or never properly served. In a followup video, Reckless Ben admits he thought he’d won by default simply because he and his friends filed for default. Which goes back to the original point: talk to a lawyer, even just for an hour.

Advertisement

The Mexico situation is its own category of self-inflicted damage. In multiple videos he’s mentioned that after facing criminal charges he had fled to Mexico and joked about how Utah law enforcement can’t reach him there. Whether or not he actually left the country, publicly bragging about being a flight risk while facing criminal charges is exactly the kind of thing that hands prosecutors an easy argument. He has real defenses available to him. This doesn’t help.

And then there’s Law & Gorman, who aren’t villains, but they aren’t blameless either. It appears Law owes Mansell for a fair number of sets her store sold without paying him out — and the record-keeping problems aren’t fully explained by sloppy bookkeeping. The layaway-versus-sold discrepancy in the spreadsheet is a credibility problem, not just an accounting one. To her credit, Law has said she’ll make it right if shown the evidence. But the Gormans were also quick to frame this entire situation as purely a Bricks & Minifigs corporate problem, and that framing looks increasingly incomplete.

Every side of this story is a disaster. We’ve got a corporation willing to say anything to save face, a police department that accidentally leaked its own bad behavior, franchise owners who likely shortchanged their client, and a YouTuber whose good intentions were undercut by bad execution. About the only thing missing is anyone who actually handled this well.

Filed Under: american fork pd, ammon mcneff, ben schneider, benjamin gorman, bryan mansell, chrystal law, consignment, legos, matt mcneff, reckless ben, utah

Companies: bricks & minifigs

Advertisement

Source link

Continue Reading
Click to comment

You must be logged in to post a comment Login

Leave a Reply

Tech

Microsoft unveils AI security tools it says outperform competing platforms

Published

on

Microsoft said MDASH with MAI-Cyber-1-Flash received a 96 percent score on CyberGYM, a standard benchmark test. The rating is 12 points higher than Anthropic’s Mythos and also beats Google Gemini and OpenAI GPT. The new MDASH costs half as much to use as the previous MDASH offering.

The second tool Microsoft announced on Monday is named Project Perception. It too is a collection of specialized AI agents that perform red-, blue-, and green-team functions for finding vulnerabilities, investigating them to determine their risk, and taking corrective actions, respectively. Microsoft said the platform selects the models to use based on the assigned task. Considerations that go into the decision include the model’s effectiveness and the end cost to the customer. Microsoft said the decisions are shaped by “ongoing research, benchmarking and evaluation across frontier and specialized models.”

Microsoft said Project Perception is designed to perform 90 percent of tasks for lower costs than similar platforms from competitors. That means customers can turn to the more expensive alternatives only for the remaining 10 percent of tasks.

Microsoft said the new tools respond to a seismic shift in how organizations secure their networks against catastrophic hacks.

Advertisement

“As AI accelerates the speed and scale of cyberattacks, defenders are being asked to secure increasingly complex digital environments with approaches built for a different era,” the company said. “Security teams are often forced to piece together signals, context, and risk insights across vast amounts of data, making it harder to keep pace with emerging threats.”

With last week’s OpenAI incident evoking troubling scenes straight out of the most dystopian sci-fi novels, the tools, which are currently in preview mode, deserve a healthy dose of caution that Microsoft made no mention of. They should be closely scrutinized and evaluated before being used in production. On the other hand, there are clear risks for not adopting such tools. Balancing the risks of using AI agents versus the threat of avoiding them is a work in progress with no clear answers for now.

Source link

Advertisement
Continue Reading

Tech

iOS 26.6 has more than 75 security fixes

Published

on

Apple’s iOS 26.6 update stops attackers from using iPhone Mirroring, Siri, and more to gain user data. Here’s what you need to know.

On Monday, just under a month following the arrival of the security-focused iOS 26.5.2, Apple made iOS 26.6 available to the general public. The latter includes over 75 security enhancements, 14 of which address kernel-related vulnerabilities.

10 of the now-patched kernel issues allowed apps to trigger unexpected system terminations, while others let apps access sensitive user data and write kernel memory. Apple resolved these issues through improved memory handling, memory management, state management, bounds checks, and more.

The iOS 26.6 fixes that keep your data safe

Additionally, iOS 26.6 prevents attackers from using iPhone Mirroring to access sensitive user data, as an Accessibility issue was resolved through state management improvements. Similar App Store and FrontBoard issues were resolved through improved checks and the use of HTTPS, respectively.

Advertisement
Smartphone lying on a wooden table with its colorful screen blurred and a large black Apple logo overlay; autumn leaves and a wooden box are in the background

iOS 26.6 contains multiple fixes that protect user data.

Apple also stopped apps from accessing user information through Game Center by improving data protection. Enhanced state management was used to fix similar Managed Configuration and WorkoutKit vulnerabilities.

iOS 26.6 also removed vulnerable Siri code, resolving an information disclosure issue that gave apps access to sensitive information about the user. Entitlement checks were employed to fix an NSColorPanel issue, once again preventing apps from leaking user data.

The Contacts app received three security enhancements as well, as processing a maliciously crafted contact will no longer leak sensitive user data, thanks to the iOS 26.6 update. Additionally, apps can no longer add contacts without user authorization, thanks to validation improvements.

Advertisement

How iOS 26.6 stops apps from gaining root access

Apple also took security measures to ensure that attackers with physical access to locked devices can’t gain user data, as the company fixed a DriverKit and Wi-Fi issue.

Blue digital skull silhouette formed by dense white computer code on a dark background, symbolizing hacking, malware, or cybersecurity threats in a stylized, abstract way

iOS 26.6 prevents DOS attacks and stops apps from gaining root privileges.

iOS 26.6 also addresses a significant MediaRemote issue. The now-patched path handling vulnerability gave apps root privileges. Similarly. the iOS 26.6 update contains an Apple Books fix that prevents apps from accessing protected parts of the filesystem.

Multiple Model I/O issues were resolved as well, meaning that remote attackers can no longer cause unexpected app crashes on iOS 26.6. Three now-patched Scene I/O exploits enabled arbitrary code execution.

Advertisement

Apple also took measures to prevent apps from escaping their sandbox. The company did so by resolving Game Center and libc vulnerabilities with improved path validation and input validation, respectively.

Safari and WebKit fixes in iOS 26.6

Monday’s iOS update also stops apps from using a WebKit issue to escape their sandbox. In total, iOS 26.6 contains eight WebKit fixes, meant to keep your data safe while browsing the web.

Two smartphones displaying Safari webpages on dark mode, demonstrating article summaries, relevant data cards, and highlights, with labels Safari, Article Summaries, Get Relevant Data, and Highlights on a dark background

iOS 26.6 contains multiple WebKit fixes.

Notably, iOS 26.6 includes a fix that stops websites from knowing the user visited a specific link. Apple also made UI improvements, as maliciously framed websites were found to spoof select UI elements.

Advertisement

As for the other WebKit patches, one of them prevents denial-of-service attacks, while two prevent Safari crashes on iOS 26.6. Apple similarly included fixes for mDNSResponder and Heimdal to prevent denial-of-service attacks.

Monday’s software update contains a multitude of security enhancements. As Apple’s website notes, fixes for Pro Res, WebRTC, AuthKit, the Apple Neural Engine, and more are present in iOS 26.6.Unlike other iOS releases, however, iOS 26.6 doesn’t include fixes for vulnerabilities that were used in targeted attacks.

Even so, AppleInsider recommends installing it to ensure your devices have the latest security enhancements. Unlike the iOS 27 developer betas, which may contain bugs, glitches, and performance issues, the iOS 26.6 update should be installed by all users.

Advertisement

Source link

Continue Reading

Tech

Satya Nadella says companies that trust one AI for everything may not survive

Published

on

On Sunday, Microsoft CEO Satya Nadella doubled down on the shocking warning he issued earlier this month to businesses that use AI, taking it a step further this time. Companies that rely wholly on the proprietary AI labs for their AI needs ultimately won’t survive, he predicts.

That’s what he said on CNN’s “Fareed Zakaria GPS.” When Zakaria asked Nadella to explain what constitutes a company sharing too much with an AI model provider, Nadella said businesses need to be wary of everything they hand over, from their data to their prompts.

Nadella called for a setup where “every time you use the model, all of the metadata around it is retained by you, so that you could use all of that to train perhaps your own weights or your own open model.” (Weights are a model’s trained parameters — essentially its brain. Nadella’s point: Companies should hold on to their own usage data so they can eventually build a model of their own.)

“Any firm that doesn’t have this control, I will claim will not remain a firm because you’ve essentially outsourced your thinking,” he added.

Advertisement

In short: Companies without their own models — or without a layer of AI infrastructure known as AI gateways to separate their prompts from the model itself — will be in trouble, Nadella says.

He specifically wants companies to stop relying on AI labs’ built-in coding tools, known as harnesses.(Anthropic’s Claude Code and OpenAI’s ChatGPT Codex are examples of these.)

“By keeping the harness separate from the model and the context and memory separate from the model, you absolutely can use multiple models for what they’re great at. At the same time, any one model can go away, and you can still continue to be in control of your own destiny,” Nadella said.

Mind you, Microsoft is an investor in the two largest AI labs, Anthropic and OpenAI. Coding agents are a particularly popular way for enterprises to use AI models and by all accounts are earning the model makers gobs of money.

Advertisement

And yet, Nadella is telling enterprises not to rely too heavily on them. Microsoft, naturally, would benefit from that warning, as its cloud business is now also selling the kind of alternative infrastructure he’s recommending.

Despite the obvious self-serving fear tactic, he’s not wrong. Enterprises are increasingly realizing that they need many model options, particularly cheaper options, and are turning to open-weight models — models whose underlying code is publicly available — that they can fine-tune and run on their own hardware. That, in turn, means they will also need ways to manage multiple models, as well as coding agents that aren’t tied to a specific model provider.

But Nadella’s observation isn’t just about runaway budgets. He anticipates that once a company has “outsourced its thinking” to a model, there’s little to stop the AI lab from eventually offering a competing service of its own. This risk grows as enterprises adopt AI agents and give them access to the innards of the company.

It’s the kind of warning that the startup industry has been shuddering about for years: What’s to stop model makers from wiping out startups by copying and competing with them?

Advertisement

In May, for example, when OpenAI CEO Sam Altman offered to invest in every Y Combinator startup in its latest cohort by offering them AI credits, seed investor Jason Calacanis issued a similar buyer-beware, posting: “If you take these tokens, there’s a non-zero chance that OpenAI will study exactly what your startup is doing, copy your idea and put your app into their free offering. This is the classic platform playbook — be careful, founders!” he posted.

Now Nadella is making that same case to enterprises.

One caveat: Nadella’s concern about oversharing with AI models applies only to businesses — not individuals. When Zakaria specifically asked Nadella how everyday people could protect themselves, Nadella shrugged it off, saying that sharing data is simply the price consumers pay for using a service, especially a free one.

“To some degree there’s got to be some value exchange in the consumer space where you’re getting something for free, maybe for your data. That’s sort of how the advertising business model has worked,” Nadella said.

Advertisement

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

Source link

Continue Reading

Tech

Kelsonik’s Stealthy Tesla Model S Shooting Brake Boasts a Wide Stance and Longer Roof

Published

on

Tesla Model S Shooting Brake Concept
Photo credit: Kelsonik
Nikita Chuicko works under the name kelsonik and spends his time turning existing cars into the versions manufacturers never quite got around to building. His latest set of renderings takes the Tesla Model S and stretches it into a shooting brake while adding a full widebody kit. Everything is finished in solid black, the stance is dropped, and the proportions feel deliberate rather than forced.


Tesla Model S Shooting Brake Concept
Tesla has finally closed the book on the Model S and Model X, but it has left a tiny window open to make one last shot at a limited Signature Series of the two cars, complete with Gold badges and a price tag to match, before moving on to the next thing. Chuicko, on the other hand, saw and appreciated a chance. As far as he could tell, the shape of that iconic vehicle still had life in it. So he preserved the Model S design but went a little further with the roof, elevating it well over the back axle and squaring off the back end to give it a functional hatch, ultimately changing it into a car that sits somewhere between a grand tourer and a high-speed hauler.


Amphibious Remote Control Car, 1:18 Monster Truck Toys for Boys RC Cars, 2.4 GHz Waterproof RC Trucks…
  • 2.4 GHz Remote Control Car – 1:18 scale cool design, waterproof RC truck toys made of premium material and sturdy, with LED lights, waterproof remote…
  • High Quality & DIY Removable Toys RC Cars – This remote control monster truck structure design quality, flexibility and strength in one. The rc truck…
  • All Terrain Amphibious Monster Truck – 4-wheel drive off-road design rc trucks for kids, with high-quality tires (shock absorption, strong grip…

Tesla Model S Shooting Brake Concept
Out front, the design is reminiscent of the newer Model Y, with two independent headlights flanking a continuous LED light strip that spans the entire front of the vehicle. The bumper is nice and low and clean, with just enough going on to keep the face from looking plain, and then there are those enormous front wheel flares that push the front wheels out and give it a planted aspect even when it’s just sitting in the driveway. The Black concave Y-spoke wheels, which run way down into the flares, help to secure those wheels.

Tesla Model S Shooting Brake Concept
Along the sides, the extra width stands out. The size of the flares suggests that they are structural rather than purely aesthetic. There is still a high beltline that protects the glass area from looking stretched out, as well as a modest small roof spoiler that sits right above the back window. That spoiler works in tandem with the second one positioned on the hatch. At the back, there’s a translucent full-width LED light bar that runs down the tailgate, lit in a mellow crimson that really shows out against the matte black paint. Then, beneath that, there is this quite aggressive diffuser that caps off the edge of the lower paneling and connects the entire rear track.

Tesla Model S Shooting Brake Concept
The entire car is finished in a single deep black color that absorbs light rather than reflecting it back out. There are no bright particles to be found breaking up the surface. The end effect is a car that is both silent and hefty, with a finish that makes the extra width appear to be there by design. Looking at it from the back three quarters, you can see that the elevated roof, two spoilers, and flared arches give the car a low, purposeful appearance while still allowing for a load behind the rear seats.
[Source]

Source link

Advertisement
Continue Reading

Tech

Xbox Live Is Still Down Monday. Microsoft Says It’s Working on a Resolution

Published

on

An Xbox controller
Finn Gomez/The Boston Globe/Getty Images

Gamers looking to start off the week by relaxing with their Xbox might need to find something else to do. On Monday, Microsoft reported that several issues were preventing gamers from using the platform. According to the Xbox Live Status page, the problems range from sign-in issues to difficulty viewing games in the Xbox store. And as of 2 p.m. PT, the problems were continuing.

The latest post from the official Xbox Support account on X, posted around 1:40 pm PT on Monday, said, “Thanks for your continued patience. Our engineers are still working to identify a fix, and we’ll share more as soon as we can.”

An earlier post Monday on the status page warned that players might not be able to sign in to their Xbox profiles, might be disconnected while signed in, or face other related problems. It also said that “features that require sign-in, like most games, apps and social activity, won’t be available.”

A Microsoft representative didn’t immediately respond to a request for comment.

The Xbox Live Status page says a resolution for all issues is “pending,” but no further detail or timing is listed.

Advertisement

“We are aware that some users are encountering errors when attempting to sign in, see your game library, or launch games,” the official Xbox Support account on X posted early Monday. “Our engineers are actively working to mitigate the issue.”

Microsoft later posted two updates, neither of which offers any real news on progress.

“Another update on the game library, sign-in, and game launch issue: Our teams are focused on multiple investigation angles and remain hard at work,” one update reads. “Thanks for your patience while teams keep working — we’ll share more details as they become available here or at http://support.xbox.com.”

Source link

Continue Reading

Tech

British Army finds a new eye in the sky after Watchkeeper woes

Published

on

OFFBEAT

Tekever AR5 drone regarded as more up-to-date answer to provide battlefield surveillance for soldiers

The UK Ministry of Defence (MoD) is investing up to £400 million in new surveillance drones to replace the British Army’s troublesome Watchkeeper fleet.

The MoD has selected the Tekever AR5 uncrewed aerial vehicle (UAV) for a fleet of “spy-in-the-sky” aircraft intended to provide real-time intelligence, protect troops, and inform battlefield decisions.

Advertisement
Tekever AR5 surveillance drone drone taking off

Tekever AR5 surveillance drone

The initial order will be for six AR5 drones, with up to 24 expected by 2029. The aircraft will be built at a soon-to-open manufacturing facility in Swindon and, subject to contract signature and final approval, will begin entering service later this year. Support is expected to continue for at least five years, with options to extend it.

Tekever is a small aerospace and defense biz based in Portugal, but with a number of manufacturing and test facilities in the UK. One of its other products has already been adopted by the Royal Air Force as the basis for the StormShroud electronic warfare drone.

The AR5 is a medium-endurance UAV that resembles a small conventional light aircraft. It is 4 m (13 ft) long with a 7.3 m (24 ft) wingspan and is powered by a pair of 170 cc two-stroke boxer piston engines, so it isn’t going to break any speed records. It is capable of carrying a 50 kg (110 pounds) payload, with an endurance of up to 20 hours, and can take off and land on rough ground.

The newcomer is expected to replace the Watchkeeper in British Army service, a drone system perhaps best known to Reg readers for its tendency to not remain in the air.

Advertisement

According to Janes, Watchkeeper only saw brief operational service at the end of the conflict in Afghanistan, and was also used to track refugee boats in the English Channel in 2020. Other than that, it has largely been used for training, which may explain why at least seven are known to have been lost in incidents.

Former defence secretary John Healey announced in 2024 that Watchkeeper was set to be retired, despite the system having entered service only in 2014 and being expected to serve the Army until 2042.

The reasons for this should be obvious: the war in Ukraine has seen airborne drone technology advance significantly over the past several years, and Watchkeeper was already seen as not up to snuff.

The British Army began the procurement process for Watchkeeper’s successor last year under the codename Project Corvus.

Advertisement

Newly appointed defence secretary Wes Streeting said the chosen replacement has already been put to good use by Ukraine’s military.

“Proven in Ukraine and designed to protect British soldiers globally, we’ve chosen the UK-based Tekever AR5 drone to supply our personnel with kit that will keep them ahead of emerging threats,” he said.

It offers significantly improved endurance, sensor capability, and reliability, according to the MoD.

Payload options include electro-optical and infrared sensors, maritime radar, signals intelligence equipment, and search-and-rescue capability.

Advertisement

Tekever UK managing director Karl Brew insisted that this wouldn’t be about supplying a point solution, but helping the Army to stay one step ahead of its adversaries.

“Tekever aims to create a new type of partnership between government and industry where we will ensure a constant cycle of capability evolution that delivers decisive advantage to our end users,” he claimed. ®

Source link

Advertisement
Continue Reading

Tech

Microsoft launches AI cybersecurity model, agentic defense platform to cut enterprise security costs

Published

on

Microsoft opened a new front in the AI security wars on Monday, unveiling its first custom-built cybersecurity model and a sweeping agentic defense platform — and making an argument that could reshape how enterprises buy AI: the future belongs not to the biggest model, but to the cheapest one that’s good enough, routed intelligently.

The company announced MAI-Cyber-1-Flash, a compact security model developed in-house by its Microsoft AI (MAI) division, embedded inside MDASH, Microsoft’s multi-agent harness for finding and fixing software vulnerabilities. Together, the company says, the system scores 96% on CyberGym — a benchmark measuring how well AI systems reason over large codebases to find real vulnerabilities — beating frontier models including Mythos, Gemini, and GPT, while cutting costs roughly in half compared to Microsoft’s own current production configuration.

Alongside the model, Microsoft introduced Project Perception, an agentic security system that coordinates “red team” agents that hunt for paths to compromise, “blue team” agents that investigate and triage risk, and “green team” agents that remediate and harden defenses. Project Perception enters public preview on August 3.

In a wide-ranging interview with VentureBeat, Microsoft AI CEO Mustafa Suleyman made clear the company sees Monday’s announcement as the opening move in a much longer campaign.

Advertisement

“We really do have a pretty significant data and harness and expertise moat, and that is enabling us to train models which are faster, better, cheaper, and I think this is genuinely the tip of the iceberg,” Suleyman said. “We haven’t been working on this for long. The next model is going to be pretty phenomenal.”

Screenshot 2026-07-27 at 12.13.03 PM

Microsoft’s MDASH system, which pairs its new MAI-Cyber-1-Flash model with OpenAI’s GPT-5.4, scored 95.95 percent on the CyberGym benchmark, outperforming rival configurations from Google, OpenAI and others by more than 10 percentage points. (Source: Microsoft)

Inside the 90/10 architecture that still depends on OpenAI’s GPT-5.4

The most technically revealing detail in the announcement is not the model itself but how Microsoft deploys it. MAI-Cyber-1-Flash was designed to handle up to 90% of security tasks efficiently, while MDASH escalates the remaining 10% of exceptionally difficult problems to a larger frontier model — which, notably, is OpenAI’s GPT-5.4. In other words, Microsoft’s flagship security AI still leans on its longtime partner-turned-rival for the hardest work.

Asked to explain that relationship, Suleyman pointed to the harness, the orchestration layer that routes each incoming problem to the right model. “The harness is like a router,” he told VentureBeat. “It’s kind of like guardrails and a rule set of an organizing logic, which matches queries to… incoming problems to a model that suits the problem.” The system has three components, he explained: the harness, the small and fast MAI-Cyber-1-Flash handling the bulk of queries, and GPT-5.4 sitting alongside as “just a generalist coding model.”

Advertisement

Pressed on how a system reliant on OpenAI’s model can outperform frontier competitors, Suleyman argued the performance comes from the whole system, not any single model. “These are very complicated, long, agentic loops which require storing state, drawing on another database, consulting best practice… handing back to a small model, writing a bunch of code, validating that that was correct,” he said. “There’s like hundreds of steps to solve that, and that’s why it’s really the system together that delivers the better performance.”

And why GPT-5.4 specifically for the escalation tier? Cost, again. “GPT-5.6 is expensive. GPT-5.4 is incredibly good relative to its cost,” Suleyman said. “The whole game here is to reduce the costs. Mythos and so on are extremely expensive models… we want to be able to deliver better performance for cheaper. That’s what customers want.” The arrangement captures Microsoft’s evolving posture toward OpenAI: still a customer of the partnership that drew regulatory scrutiny in Brussels and Washington in 2024, but increasingly determined to own the layers of the stack where it believes it holds durable advantages.

Why token costs — not model quality — are becoming the real barrier to enterprise AI adoption

The economics may matter more than the benchmark. Microsoft says the new configuration delivers roughly 50% cost savings against the current MDASH setup, which runs a blend of GPT-5.4, 5.4 mini, and 5.3 codex. In security — an always-on workload processing enormous volumes of signals — token costs compound relentlessly, and Microsoft argues they have become the binding constraint for defenders.

Suleyman frames the cost issue as downstream of a harder physical limit. “The key barrier to adoption is access to chips, and cost is a function of chips,” he said. “No matter how much money you’ve got, there’s actually a limited supply of chips. Then trying to squeeze more model output on fewer chips is clearly super valuable.”

Advertisement

He also described a broader enterprise backlash against frontier-model pricing. Companies initially maxed out on the best available models, he said, but “then they realize they’re sort of paying… a phenomenal amount of money, and people are absolutely token maxing everywhere across their business. So there’s a massive pushback to reduce cost everywhere.”

That positions Microsoft to ride a market trend rather than fight it. Cost-efficient, near-frontier models have proliferated over the past year — from xAI’s recent Grok release to a wave of Chinese models built on the same premise — and Microsoft is betting that as a platform company it can align itself with enterprise cost pressure. “The top model providers want you to use the most expensive model continuously, whereas because we are a platform, we’re on the side of the enterprise,” Suleyman said. “There’s no point asking… Mythos what the capital of France is.”

The 100-trillion-signal data moat Microsoft says no competitor can replicate

Every AI lab claims differentiation. Microsoft’s claim in security rests on something genuinely hard to copy: telemetry. The company processes more than 100 trillion security signals daily — a figure consistent with its 2025 Digital Defense Report, which also cited 4.5 million new malware files blocked and 5 billion emails screened per day — and draws operational insight from 1.6 million customers.

“We have trillions and trillions of data points going back decades,” Suleyman said. “It is, I think, the largest longitudinal cybersecurity dataset around,” in part because Microsoft’s customer base includes governments “who have been consistently attacked for years, and we have been consistently attacked.” Asked directly whether this constitutes an advantage no competitor can match, Suleyman didn’t hedge: “That is definitely a moat for us. Both the data and the expertise, and just the experience in the institution of going through that process.”

Advertisement

The strategic logic is that cybersecurity functions as a live reinforcement-learning loop: defenders act, outcomes are observed, models improve. Microsoft argues that connecting actions to outcomes — what was exploited, what was contained, what was blocked — yields training signal that pure model labs simply cannot buy or manufacture.

There is real substance here, but the usual caveats apply. The CyberGym results come from Microsoft’s own evaluation, the fine print shows the headline “96%” is actually 95.95%, and vendor-run benchmarks that pit an entire tuned agentic system against competitors’ base models are not apples-to-apples comparisons. What Microsoft has measured is a full harness-plus-models configuration against what customers might otherwise assemble — arguably the commercially relevant comparison, but not a controlled model-versus-model test.

The dual-use dilemma: how Microsoft plans to keep a vulnerability-hunting AI out of the wrong hands

A model built to find challenging vulnerabilities in complex codebases is, by definition, a model that could find vulnerabilities for attackers. This is not a theoretical concern. Microsoft’s own threat intelligence team, in joint research with OpenAI published in February 2024, documented nation-state actors from Russia, North Korea, Iran, and China probing large language models for reconnaissance, scripting, and vulnerability research. Its 2025 Digital Defense Report went further, warning that AI agents could eventually automate the entire attack lifecycle.

Suleyman said Microsoft is gating access accordingly. “We’re very strict about who gets access to the model, and we’re very careful about that,” he said. “We constantly monitor the API and usage.” An approved user, he added, “has to be seen to be having good intent, but also have technical competence.” The rollout will be deliberately staged: “It’s not going to be thousands next week. There will be tens, and then hundreds, and then thousands.”

Advertisement

Microsoft says the model was evaluated by its AI Red Team, subjected to automated and expert-led adversarial exercises, and independently assessed by a third party, with deployment wrapped in tenant isolation, auditing, and sandboxed execution environments with no internet access.

Suleyman also offered a candid acknowledgment of Microsoft’s positioning relative to the bleeding edge — one that doubles as a pitch to risk-averse buyers. “Even though we might be a few months behind the absolute cutting edge at any given moment… it matters that we’re doing it very carefully and thoughtfully, and we have a track record of doing that,” he said. For a company that spent 2024 absorbing hard security lessons — from delaying its Recall feature over privacy concerns to convening an industry summit after the CrowdStrike outage disabled some 8.5 million Windows devices — that trust-first framing is both strategy and necessity.

What Microsoft’s superintelligence roadmap signals about the future of enterprise AI

Suleyman described a rapidly accelerating MAI roadmap, roughly nine months after Microsoft stood up its superintelligence team. “We have the compute that we need. We certainly have the data we need. We have the talent,” he said. “Our momentum is accelerating rapidly.” The top enterprise demand he’s hearing is for “agents that can produce arbitrary code to solve whatever problem they direct them at,” as vibe-coded internal tools graduate from experiments into production. The next phase, he said, pulls voice, transcription, image, and coding models “all integrated into the same harness.”

Notably, Suleyman expressed skepticism about the industry’s default assumption that everything eventually converges into one giant unified model. “It remains to be seen whether one giant model that is fully multimodal is actually able to deliver additional transfer learning benefit because of the integration,” he said, “or whether it’s just a big lumbering expensive giant.”

Advertisement

That skepticism is the through line of the entire announcement. Microsoft is wagering that the unit of competition in enterprise AI is no longer the model at all — it’s the system: the router, the specialized small models, the frontier fallback, and the proprietary data feeding the loop. In security, where Microsoft controls both the telemetry flowing in and the products that act on it, that wager is at its strongest. Whether it holds in domains where the company’s data advantage is thinner remains the open question hanging over the MAI roadmap.

For now, though, Microsoft has offered the industry a preview of how it intends to fight the next phase of the AI race: not by building the biggest brain, but by building the best machine around it. As Suleyman put it, this is the tip of the iceberg — and Microsoft is betting everything on what sits below the waterline.

Source link

Advertisement
Continue Reading

Tech

Microsoft Says Its New Cybersecurity AI Beats Industry Leaders at Half the Cost

Published

on

Microsoft has a new AI cybersecurity model called MAI-Cyber-1-Flash, and when it’s combined with agentic security system MDASH and OpenAI’s GPT-5.4 model, it outscores Anthropic’s Claude Mythos 5 by 12 points on a key benchmark. The security product is designed for “using AI to defend against AI,” Microsoft says.

The combination of MAI-Cyber-1-Flash with MDASH — which launched in May — is called Project Perception, and it enters public preview on Aug. 3, built directly into Microsoft Defender. It will slowly roll out to all Microsoft Security products.

According to benchmarks posted by Microsoft on Monday, the combination scored 96% on CyberGym, compared with Mythos 5 at 84%.

A screenshot of the CyberGym evaluation of Microsoft's new AI cybersecurity product compared to Gemini, GPT and Mythos 5Microsoft

Pricing is consumption-based, measured by the number of security compute units you use. As AI agents run scenarios, they consume SCUs, so the more work performed, the more you pay — but Microsoft says cost savings are almost 50% of the current MDASH configuration on the market now.

Speaking at a Microsoft briefing on Monday morning, Mustafa Suleyman, CEO of Microsoft AI, explained the handover process between MAI-Cyber-1-Flash and GPT-5.4. 

Advertisement

“MAI-Cyber-1-Flash handles about 90% of the queries. It detects the vulnerabilities, it patches them, ships them and then proves that it was actually a valid and correct solve. And then it basically defers about 10% of the queries to GPT-5.4, which is obviously a larger model, about 10x larger, and it solves those,” Suleyman said. “In conjunction, as the models hand off between each other, they’re actually not just able to deliver better performance than all of the other models combined — they do so at 50% of the cost.”

Suleyman called the CyberGym benchmark result “quite a remarkable result.”

It follows the launch of Anthropic’s Claude Fable 5 last month, the first publicly available model from the Mythos family. At the time, Anthropic said Mythos was so good at finding cybersecurity flaws that it could break the internet if used unchecked — and Anthropic was forced to walk back the Fable 5 and Mythos 5 launches within days because the US government said it was aware of a way to “jailbreak” the model and bypass limits. When Mythos was first announced, it was released only to select government agencies and tech professionals.

“Microsoft has long been the trusted steward of some of the most valuable, important government and enterprise data in the world over many decades. We’ve accrued a phenomenal amount of data in that time,” Suleyman said Monday. “It’s that data combined with the expertise that we have from the world-class cybersecurity experts in the company that we’ve been able to really drive this combined model.”

Advertisement

Source link

Advertisement
Continue Reading

Tech

AMD says the MI430X is the fastest FP64 GPU ever built, but you can’t buy one until 2027

Published

on


  • AMD’s MI400 press release publishes exactly one performance figure
  • 288 TFLOPS of hardware FP64 on the MI430X, a GPU it positions as its go-to for sovereign AI and HPC
  • Unlike the MI455X, which it launched alongside, the MI430X will have researchers and sovereign AI clients waiting longer, with AMD targeting early 2027 for its first shipments

AMD has launched its latest Instinct MI400 series, unveiling two new chips which bring performance gains, larger, faster HBM4 memory, and a continued promise to support its open-source ROCm stack.

While both chips come with 432GB of HBM4 memory, they both have very different use cases: the MI455X is AMD’s attempt to dominate AI data centers and run training and inference for frontier models, while the MI430 is positioned as a high-performance compute (HPC) alternative that offers superior precision thanks to it being tuned for superior FP64 performance at a hardware level.

Source link

Advertisement
Continue Reading

Tech

Shanling EC Zero T Max Gives Portable CDs 1.3 Watts Because the Original Was Apparently Too Polite

Published

on

Portable CD players are suddenly everywhere again, which is what happens when streaming fatigue collides with a physical format that costs less than vinyl and does not arrive warped. US CD sales jumped 16% to 16.3 million units during the first half of 2026, but many of the new portable players still force buyers to choose between mobility and enough power to drive demanding headphones.

The $629 Shanling EC Zero T Max addresses that problem with a revised battery-powered amplifier delivering up to 1,300mW into 32 ohms, while retaining the original model’s 24-bit R2R DAC, dual JAN6418 tubes, USB DAC, Bluetooth transmission and CD-ripping capabilities.

The CD revival has officially reached the stage where a Discman now requires resistor ladders, vacuum tubes and more output than some desktop amplifiers.

What Changed From the EC Zero T?

Shanling EC Zero T Portable CD Player
Shanling EC Zero T Portable CD Player

The Max is not a different finish wrapped around last year’s electronics.

Shanling replaced the original TPA6120-based headphone section with a revised amplifier built around the Analog Devices AD8397. The balanced 4.4mm output now produces as much as 1,300mW into 32 ohms in transistor mode and 1,162mW in tube mode while operating from the internal battery. The 3.5mm output reaches 361mW into the same load.

Advertisement

The original EC Zero T delivered 551mW into 32 ohms from its balanced output on battery power and required external DC power to reach its maximum 1,220mW specification. Its single-ended output was limited to 158mW on battery. The Max therefore supplies more power away from the wall than the previous model could produce even when plugged into one.

That matters because a supposedly portable player that requires an external power supply to unlock its best amplifier performance is portable in much the same way that a countertop microwave is technically movable.

Shanling has also reduced output impedance from 4.7 ohms on the original 3.5mm output and 6.6 ohms on the balanced output to approximately 0.4 and 0.7 ohms, respectively. That change may be even more useful than the additional power for owners of sensitive multi-driver IEMs, which can react unpredictably when connected to a source with high output impedance.

ec-zero-t-max-portable-cd-player-top-closed
Shanling EC Zero T Max

The R2R DAC Gets Revised Power and Signal Circuits

The EC Zero T Max retains Shanling’s in-house 24-bit R2R DAC module, built around 192 precision resistors with 0.1% tolerance. Users can choose between oversampling and non-oversampling modes, depending on whether they prefer conventional digital filtering or a more direct NOS presentation.

Shanling says it revised the DAC’s power supply and portions of the analog signal path using experience gained during the development of its newer PRO R2R platform. The company claims the changes produce a wider and deeper soundstage with greater midrange and treble transparency. Those claims will require listening rather than obediently copying the brochure, but this appears to be circuit-level work rather than a new firmware filter wearing a party hat.

Advertisement

The dual JAN6418 miniature vacuum tubes also return, with selectable tube and transistor output modes. Shanling isolates the tubes inside a damped mounting structure to reduce microphonic noise, which becomes especially important when two vacuum tubes are sharing a chassis with a spinning optical mechanism.

Advertisement. Scroll to continue reading.

Still a CD Player and Quite a Bit More

The EC Zero T Max uses a custom CD mechanism with an active magnetic clamp and anti-skip system. It supports gapless CD playback and can rip discs in real time to an attached USB storage device as uncompressed WAV files.

It can also operate as a USB DAC, supporting PCM up to 32-bit/768kHz and DSD512. Analog connectivity includes separate 3.5mm and balanced 4.4mm headphone and line outputs, while coaxial and optical connections allow the Shanling to feed an external DAC or full-size audio system.

Advertisement

Bluetooth 5.3 transmission supports aptX Adaptive, aptX and SBC. The important word is transmission: the Shanling can send CD audio to compatible wireless headphones or speakers, but it is not advertised as a Bluetooth receiver for streaming music from a phone. LDAC is also absent.

The internal 5,500mAh battery is rated for up to eight hours through the single-ended output, approximately 7.5 hours through the balanced output and as much as 20 hours when the player is used as a Bluetooth transmitter.

ec-zero-t-max-portable-cd-player-top-open
Shanling EC Zero T Max

Shanling EC Zero T Max Specifications

  • Type: Portable CD player, USB DAC and headphone amplifier
  • DAC: Shanling 24-bit R2R module
  • Resistor network: 192 resistors with 0.1% tolerance
  • Digital modes: Oversampling and non-oversampling
  • Tube stage: Two JAN6418 miniature vacuum tubes
  • Amplifier: AD8397-based revised headphone stage
  • Output modes: Tube or transistor
  • Balanced output: Up to 1,300mW into 32 ohms in transistor mode
  • Balanced tube output: Up to 1,162mW into 32 ohms
  • Single-ended output: Up to 361mW into 32 ohms
  • Headphone outputs: 3.5mm and 4.4mm balanced
  • Line outputs: 3.5mm and 4.4mm balanced
  • Digital outputs: Coaxial and optical
  • USB DAC support: PCM up to 32-bit/768kHz and DSD512
  • Bluetooth: Version 5.3 transmitter
  • Bluetooth codecs: aptX Adaptive, aptX and SBC
  • CD ripping: Real-time WAV ripping to USB storage
  • Battery: 5,500mAh
  • Battery life: Up to 8 hours wired or 20 hours over Bluetooth
  • Display: 1.68-inch color LCD
  • Construction: Aluminum chassis with tempered-glass panels
  • Dimensions: 6.2 x 5.9 x 1.1 inches
  • Weight: 1.47 pounds
  • Finish: Titanium gray

What Makes the EC Zero T Max Unique?

Portable CD players with balanced headphone outputs are no longer especially unusual. The Max separates itself by combining a custom R2R DAC, selectable physical tube stage, CD ripping, high-resolution USB DAC support and a genuinely powerful battery-operated amplifier in one component.

The critical improvement is not that it reaches 1.3 watts. The original model could approach that figure when connected to external power. The difference is that the Max provides its full amplifier output from the internal battery while also lowering output impedance enough to work more predictably with sensitive IEMs.

That gives it a broader range than most portable disc players. It can drive efficient earphones, more demanding over-ear headphones, powered speakers or an external DAC without requiring the owner to construct a small equipment shrine beside the CD case.

Advertisement

Three Alternatives

FiiO DM15 R2R

fiio-dm15-r2r-cd-player-silver-left
FiiO DM15 R2R

The $269.99 FiiO DM15 R2R is substantially less expensive and uses FiiO’s own 24-bit resistor-ladder DAC. It provides 3.5mm and balanced 4.4mm outputs, Bluetooth 5.4 transmission, USB DAC operation and digital outputs. Output reaches 812mW into 32 ohms on battery or 1,150mW in desktop mode.

The DM15 is lighter, cheaper and offers newer Bluetooth connectivity. The Shanling counters with substantially more battery-driven power, selectable tube and transistor stages, lower output impedance and a more elaborate analog section.

Cayin CP6

The $699 Cayin CP6 is the closest conceptual rival. It uses two JAN6418 tubes, offers classic tube, modern tube and solid-state sound modes, supports bidirectional Bluetooth 5.4 and includes USB DAC and CD-ripping functions. Its amplifier can produce as much as 1,300mW into 32 ohms when operating in DC power mode.

The Cayin offers more Bluetooth flexibility and three distinct output modes, but uses dual Cirrus Logic DACs rather than an R2R network. The Shanling also reaches its maximum balanced output on battery power rather than requiring external DC power.

Moondrop DiscDream 2 Ultra

The $349 Moondrop DiscDream 2 Ultra provides balanced and single-ended headphone outputs, an optical output, USB DAC operation and approximately eight hours of battery life. It is a simpler and much less expensive route into transportable CD playback.

Advertisement
Advertisement. Scroll to continue reading.

It does not offer Bluetooth, CD ripping, an R2R DAC or a tube stage. The Moondrop makes sense for listeners who primarily want a well-built portable CD transport and headphone source rather than an entire personal-audio laboratory.

Who Is It For?

The EC Zero T Max makes the most sense for CD collectors who use a mixture of sensitive IEMs and full-size headphones and want one component that can travel between portable and desktop systems.

It also suits listeners who prefer R2R conversion or want the option of switching between a tube and solid-state presentation without purchasing two separate headphone amplifiers.

Advertisement

Who Should Avoid It?

Anyone who only wants to play CDs through efficient earbuds can spend substantially less on the FiiO DM15 R2R, Shanling EC Play or Moondrop DiscDream 2 Ultra.

The Max also lacks LDAC and Bluetooth reception, while its 1.47-pound weight stretches the meaning of “portable.” You can carry it, but nobody is clipping it to a tracksuit and running the Jersey Shore boardwalk unless their chiropractor has fallen behind on the boat payments.

ec-zero-t-max-portable-cd-player-top

The Bottom Line

The Shanling EC Zero T Max is the version the original EC Zero T probably should have been from the beginning.

It preserves the unusual combination of physical CD playback, R2R conversion and real vacuum tubes while addressing the original model’s most obvious weaknesses: limited battery-powered output and relatively high output impedance.

The result is not merely a louder EC Zero T. It is better suited to both demanding over-ear headphones and sensitive IEMs, while still functioning as a USB DAC, CD ripper, Bluetooth transmitter and digital transport.

Advertisement

Portable CD playback in 2026 has become remarkably sophisticated. It has also become remarkably expensive, but at least Shanling remembered to improve the parts that matter.

Price & Availability

The Shanling EC Zero T Max is priced at $629 and is now shipping to distributors. Shanling lists European pricing at €689 and says the player will be offered in titanium gray. Final US dealer pricing and local availability may vary as inventory reaches regional distributors.

For more information: en.shanling.com

Advertisement

Source link

Continue Reading

Trending

Copyright © 2025