Both are well-regarded ATX boards with built-in Wi-Fi, and both represent meaningful savings if you’re mid-build or planning an upgrade. And both punch above their discounted price.
The two boards target different platforms entirely — one is AMD AM5, the other Intel LGA 1700 — so this isn’t a true apples-to-apples comparison. Think of them as two separate opportunities: one for Ryzen 7000/8000/9000 builders, and one for 12th/13th/14th Gen Intel builders.
Advertisement
Today’s top computer deals
More on the PRO X870-P WiFi — AMD AM5
At this price, the PRO X870-P Wi-Fi sits in an interesting spot: it’s the X870 chipset — AMD’s current-gen platform with full PCIe 5.0 support — at a price that previously would have bought you a mid-range B650 board. The X870 chipset brings wider PCIe 5.0 support and Wi-Fi 7 as a platform requirement (rather than an optional add-on), and AMD has committed to AM5 support through at least 2027, which means whatever Ryzen processor you pair with this board today will have a clear upgrade path for several years.
The connectivity package at this price is genuinely impressive. Wi-Fi 7 with its 320MHz channel width delivers noticeably lower latency and higher throughput than Wi-Fi 6E — the kind of upgrade you notice on a busy home network. The 5Gbps Ethernet port, USB4 at 40Gbps, and Thunderbolt 4 are the kind of specs that usually appear on more expensive boards. Three M.2 slots (including one Gen5) gives you flexibility for fast SSDs now and room to expand later.
MSI’s PRO series is positioned more toward productivity and professional use than the flashier gaming-branded boards, which means the design is restrained — minimal RGB, clean silver heatsinks, no aggressive aesthetics. Whether that’s a positive depends entirely on what you want your build to look like. Best Buy reviewers have praised it as straightforward to install and stable from the first boot, with multiple builders noting it’s working well with everything from Ryzen 7700X to the 9800X3D.
Advertisement
One honest note: the PRO X870-P is tuned more for stability and accessibility than aggressive overclocking. If you’re planning to push DDR5 kits to their absolute limits or run a flagship Ryzen 9 chip at sustained all-core maximum TDP, a higher-end X870E board would give you more VRM headroom. For the majority of builds — including enthusiast setups — it handles everything without issue.
More on the B760 Gaming Plus WiFi Gaming Motherboard
The B760 Gaming Plus WiFi is the more straightforward recommendation of the two — it’s a well-established board with a substantial real-world track record. The 840+ reviews on Amazon at 4.4/5 tell a consistent story: this board works reliably, installs without drama, and delivers good performance across a wide range of Intel builds.
Intel’s LGA 1700 platform supports 12th, 13th, and 14th Gen Core processors, which means there’s a wide choice of CPUs available at various price points — everything from a budget Core i3 to the Core i9-14900K. It’s worth noting that Intel has moved on to the LGA 1851 socket for its newest Arrow Lake generation, so this platform won’t support 15th Gen CPUs. That said, for builds centered on a 13th- or 14th-Gen processor, the B760 remains a very solid foundation.
Advertisement
Wi-Fi 6E built-in is a practical inclusion at this price — it saves you from buying a separate wireless adapter and keeps the build clean. 2.5 Gbps Ethernet provides fast wired connectivity for those who prefer a cable. Two M.2 Gen4 slots comfortably handle primary and secondary NVMe SSDs, and PCIe 4.0 x16 is more than adequate for any current GPU.
Reviewers have specifically praised the B760 Gaming Plus WiFi for its stability across sustained workloads — one reviewer noted it handled “AAA applications and multitasking effortlessly” over ten months of use without a single stability issue. The reinforced PCIe slots and robust VRM heatsinks contribute to a build quality that feels more substantial than budget Intel boards at a similar price.
Streaming spent a decade telling viewers that the future meant paying only for the services they actually wanted. It has now reached the stage where those services are being bundled back together by the platforms large enough to control discovery, billing and your television home screen.
Beginning in early 2027, eligible U.S. YouTube Premium subscribers will gain access to Peacock Premium within the YouTube experience, combining ad-free YouTube, background playback, downloads and YouTube Music with NBCUniversal’s ad-supported streaming service. The cable bundle did not die. It learned how to recommend reaction videos.
Related Reviews:
What YouTube Premium Subscribers Will Receive
The included tier is Peacock Premium, which currently costs $10.99 per month when purchased separately. It includes Peacock Originals, Universal and Focus Features movies, NBC and Bravo programming, and live sports.
NBCUniversal specifically lists NFL football, the Olympics, NBA, MLB, Premier League soccer, WNBA, college football and basketball, golf and the Kentucky Derby among the sports available through the service. Television programming includes Saturday Night Live, Law & Order: SVU, The Office, The Traitors, Love Island USA and The Real Housewives franchise.
The content will be available directly within YouTube rather than requiring subscribers to jump between separate applications. YouTube says it will announce the exact launch date and additional eligibility details over the coming months.
Advertisement
That should make Peacock substantially easier to find and use, particularly on televisions where YouTube is already one of the most frequently opened applications.
It also means millions of existing YouTube Premium subscribers may no longer need a separate Peacock Premium subscription once the bundle launches. Account migration, billing changes and whether existing Peacock profiles or watch histories can be transferred have not been explained.
YouTube Premium Will Be Ad Free Until Peacock Starts
There is one important distinction hiding beneath two uses of the word “Premium.”
YouTube Premium removes advertisements from regular YouTube viewing. Peacock Premium is the ad-supported Peacock tier. Subscribers should therefore expect commercials during Peacock movies, series and live programming even though they are paying for YouTube Premium.
Advertisement
Peacock Premium Plus, currently $16.99 per month, removes most on-demand advertising and adds downloads and access to a live local NBC station. Even that tier retains commercials during live sports, events, linear channels and selected programming.
YouTube says subscribers will have options to upgrade their Peacock membership, but it has not announced upgrade pricing or how that process will work.
Advertisement. Scroll to continue reading.
Peacock Premium Plus has already been available as a separately purchased YouTube Primetime Channel since June 29. The standard Peacock Premium tier will become available as a separate YouTube add-on later this summer, before it joins eligible YouTube Premium subscriptions in 2027.
Advertisement
What Has Not Been Announced
The companies have not provided a precise launch date beyond early 2027, nor have they confirmed whether every individual, student and family YouTube Premium plan will qualify.
YouTube’s announcement repeatedly refers to “eligible” Premium subscribers. Premium Lite is not mentioned and should not be assumed to include Peacock.
YouTube has also not explained whether Peacock content will stream in 4K HDR, support Dolby Atmos or 5.1 audio, or be available for offline viewing through the YouTube app. Simultaneous stream limits, parental controls, user profiles, watchlist and viewing-history transfers, and access while traveling outside the United States also remain unresolved. The largest financial question is whether adding Peacock will eventually trigger another YouTube Premium price increase, although Google has not announced one.
YouTube has not announced a higher price tied to the partnership. It has also not promised that current subscription pricing will remain unchanged through 2027.
Advertisement
For home theater owners, the lack of video and audio format details is not trivial. Peacock’s streaming quality has varied by device and event, and watching inside YouTube could produce different results from using the native Peacock application. “Seamless access” is useful. It is not a technical specification.
YouTube Premium Is Not YouTube TV
The agreement also extends NBCUniversal’s distribution contract with YouTube TV, ensuring that NBCUniversal’s linear television networks remain available through the live television service. That is a separate part of the deal.
A YouTube Premium subscription will not suddenly become a YouTube TV subscription, and the included Peacock tier does not provide the full collection of live NBCUniversal cable channels.
This distinction will almost certainly confuse people because Google has named three different products YouTube, YouTube Premium and YouTube TV, apparently after concluding that nouns were becoming expensive.
Advertisement
Why Peacock Is Doing This
NBCUniversal describes the agreement as Peacock’s largest wholesale distribution partnership. Instead of relying entirely on direct subscriptions, Peacock gains immediate access to millions of existing YouTube Premium customers and one of the most powerful content discovery platforms on the planet.
That distribution matters as streaming subscriber growth slows and customer acquisition becomes more expensive. Bundles reduce the number of monthly decisions consumers must make and can lower cancellation rates, even when nobody remembers which service is technically charging the credit card.
NBCUniversal gives up some control over billing, viewing data and the direct customer relationship, but Peacock gains scale without having to convince every household to install another application.
Advertisement. Scroll to continue reading.
Advertisement
Peacock has already pursued similar distribution through Comcast services, Walmart+ and YouTube Primetime Channels. The strategy is clear: place Peacock wherever millions of paying customers already exist and worry less about whether they arrived through the front door.
Why YouTube Is Doing This
YouTube Premium has primarily been sold around four benefits: ad-free YouTube, background playback, offline downloads and YouTube Music.
Peacock gives Google something it has not previously offered inside the standard subscription: a large catalog of studio movies, conventional television series and major live sports.
That makes YouTube Premium more competitive with Amazon Prime, Walmart+ and telecommunications bundles that combine video, shopping, wireless service or other benefits into one monthly payment.
Advertisement
It also pushes YouTube further into the role once occupied by cable and satellite companies. Google is no longer merely hosting video or selling a live television replacement. It is becoming the platform through which other streaming services reach customers.
The Larger Trend
Streaming fragmentation created too many applications, passwords, price increases and monthly decisions. The industry’s solution is increasingly to bundle those services through a larger distributor.
The new gatekeepers are YouTube, Amazon, Apple, Roku, Walmart, Verizon and the remaining cable companies. Viewers may receive better overall value, but the companies controlling the interface, billing relationship and recommendation engine gain enormous leverage over the services inside it.
That does not mean this Peacock deal is bad for consumers. For an existing YouTube Premium subscriber who already pays separately for Peacock Premium, the bundle could eliminate a $10.99 monthly charge while putting the same programming inside an application already installed on almost every television.
Advertisement
But the direction is unmistakable. Streaming is consolidating around a handful of large platforms capable of bundling everyone else.
We cut the cord to escape the package. The package has returned without the coaxial cable.
The Bottom Line
Adding Peacock Premium makes YouTube Premium a much broader entertainment subscription and gives existing members access to a meaningful catalog of movies, television and live sports.
The value proposition is potentially excellent, particularly for subscribers currently paying for both services. The catch is that Peacock Premium remains ad-supported, while upgrade pricing, account migration, technical quality and exact eligibility remain unresolved.
Advertisement. Scroll to continue reading.
Advertisement
NBCUniversal gains reach. YouTube gains premium programming and live sports. Viewers gain one fewer application to open and one more bundle to explain to someone else in the house.
Streaming promised simplicity. It has finally delivered cable with better search.
The program, ChatGPT for Academic Researchers, will start with 10,000 participants this summer.
Samuel Boivin/Shutterstock
OpenAI is launching a new program called ChatGPT for Academic Researchers that will offer free access to the company’s AI models to 100,000 scientists, mathematicians and engineers. Researchers from “select academic institutions” included in the program will receive hands-on support from OpenAI, access to the company’s latest GPT-5.6 Sol Pro model and be able to invite four collaborators from their institution to participate.
The program will start with 10,000 participants this summer and scale up to 100,000 through 2027. OpenAI says offering free access to its AI tools “is part of a commitment of more than $250 million through 2027 to support external scientific research and discovery.” As the company notes, researchers are already using AI models to sift through data and write grants — this just makes the relationship a bit more formal. OpenAI’s version of ChatGPT for schools, ChatGPT Edu, follows a similar logic.
While the least charitable read of the program is that OpenAI is looking for new sources of training data, the company says that by default, researchers’ data will not be used to train models. What handing out freebies to research institutions could generate, though, is more research breakthroughs that in some way involved a GPT model. And making more scientific fields dependent on the company’s tools could also pave the way for future revenue from for-profit research.
Advertisement
This isn’t the first time the company has courted researchers. OpenAI introduced Prism in January, an AI-powered tool for working with scientific journals and documents. Prism is available to anyone with a ChatGPT account and can be used to verify things like research citations and formatting. OpenAI’s early demo of the tool also included a way to generate lesson plans, one of the more tedious but critical tasks of research professors.
Curiosity has been climbing the broad valley nicknamed Valle Grande for weeks when its cameras locked onto something that stopped the science team cold. On June 11, 2026, the 4,923rd Martian day of the mission, the rover’s Mastcam stitched together eleven frames into a clean panorama of a solitary butte standing roughly 20 feet tall. Mission planners named it Miraflores. A thick layer of dark sand sits on its flat top like a natural crown, while the rock faces below show the slow work of wind and time carving away everything that once surrounded it. That erosion left the butte standing and deepened the valley the rover is now driving through.
From the ground, the vista feels almost uncomfortably personal, as the slope slopes away in all directions, as if blown away by the wind. Dark sand is drawn into every low spot and gradually works its way up the lower slopes. The distant horizon resembles the stratified landscape we’ve been investigating with Curiosity on the lower part of Mount Sharp for over a decade. The ground immediately surrounding Miraflores catches your attention. A never-ending blanket of small many-sided cracks stretches out in every direction the camera can see, with each polygon measuring little more than 3 inches across. The edges of those tiny fissures rise up to form an extremely tight honeycomb pattern that wraps all the way up the sides of the butte.
Feed a passion for science and technology – Kids can learn more about the challenges of space exploration with this LEGO Technic NASA Mars Rover…
Conduct a test flight – This advanced building kit for kids ages 10 and up includes a buildable toy version of NASA’s Ingenuity helicopter, which…
AR brings the mission to life – The accompanying augmented reality app experience lets kids dive into the details of the rover and its mission
The puzzle of how those shapes developed remains, as when the team first noticed them on the trip, they appeared as mud cracks when the wet sand dried out and shriveled away. Other items, however, can leave behind the same pattern. Repeated heating and cooling might cause the surface to break completely. Alternatively, compression on anything still buried can force the water out of the silt, leaving a network of fissures in its wake. Now, teams on Earth are reviewing the measurements and readings from the rover’s instruments to try to narrow it down even more. Then there are the dark pebbles and cobbles sprinkled around the region, which provide an extra depth of mystery to the mix. Some of them could just be bits of higher-up rock that slid down. Others could be impact debris swept up from the side and tossed here, or perhaps meteorites, given the nickel in a few of the samples.
A second, wider 360-degree panorama taken a week later, on sols 4,930 and 4,931, showed the same pattern stretching farther than the rover’s cameras could resolve. Mission scientists had spotted similar geometric shapes in small patches several times before. Never had they found an expanse this large. Project scientist Ashwin Vasavada put the feeling into words: “We’ve seen a lot of fascinating landscapes through Curiosity’s eyes, but this sea of polygons took our breath away. We measured their shapes and chemistry carefully and are hopeful there are clues in the data as to how these features formed.”
If you’re searching for some fun mini tools like pocket flashlights, you may have seen the term COB in a product description and wondered what it means. COB stands for chip-on-board, a type of LED technology that is being used in more and more lighting products. But what makes this light different isn’t its technical name; it’s how it’s designed.
A COB light is built with multiple LED chips arranged together on a single board, creating a compact and energy-efficient design. The result is a light source that can produce high light output and handle a variety of tasks, including lighting up your work area. COB lights also have a long lifespan and are typically brighter than traditional LEDs. This technology can help prevent a COB flashlight from experiencing excessive hotspots while also producing a wider and more even beam compared to traditional LEDs. This makes a COB flashlight useful for lighting up larger areas.
Many flashlights that use COB technology place it on the side of the device instead of using it as the primary beam. This allows you to use a front LED light that focuses straight ahead and the COB side panel for a wider floodlight when needed. But some flip flashlight designs can use COB technology as the main source of light, often with different modes that allow you to adjust the brightness of the beam.
Advertisement
How COB improves modern LED lighting
Emmomushroom/Shutterstock
COB lights can deliver high lumen output, which can be important when selecting a camping flashlight. That’s because the concentration of built-in LED chips allows for more light output than traditional LEDs. COB technology not only increases the viewing angle but helps reduce light loss as well. This means that more of the light the LEDs produce makes it out of the flashlight instead of being absorbed or scattered by additional parts around the LED chips.
COB technology evolved as a new way to arrange LEDs because manufacturers wanted to create brighter lighting without having to increase the size of the light fixture itself. Earlier LED designs were limited and could not achieve this outcome. However, COB helped solve the problem, making it a popular design for situations in which strong and efficient light is needed. Today, COB technology is not just used for flashlights but also in several other types of devices.
Advertisement
COB technology is used in a variety of applications, including residential lighting, as well as industrial lighting, photography, and automotive, among others. COB can be found in products such as ceiling lights, spotlights, and vehicle lighting, where strong and consistent light is needed.
[Hans Scharler] came into a neat find recently—the playfield from a 1970s Atari Superman game. It’s the sort of thing that’s too nice to throw away, but isn’t really enough to reassemble into a viable full machine without a great deal of effort. Thus, [Hans] went a different route—turning it into a beautiful piece of wall art.
The first step of the build was to collect missing parts; in particular, all the plastic inserts for the playfield that had been lost at some point. Everything was cleaned up and mounted, along with some modified flippers to complete the look. Custom pop bumpers were 3D printed to act as LED-lit light guides rather than as functional pinball components. [Hans] then set about dotting the board with plenty of WS2811 addressable LEDs in a bullet form factor. Everything was placed under the command of a WLED controller, and it’s synced up to [Hans’s] CheerLights MQTT server to boot. More build details are available on the Pinside post for those eager for a deeper dive.
If you’ve been patiently waiting for a discount on Apple’s latest earbuds or over-ear headphones, it’s finally here. For a limited time, both the AirPods Pro 3 and AirPods Max 2 are on sale, knocking up to $100 off their regular prices. Whether you want pocketable earbuds for everyday use, premium noise-canceling headphones, or seamless Apple integration, these are some of the best prices I’ve seen since launch. As always with Amazon deals, there’s no telling how long they’ll stick around, so I wouldn’t wait too long if you’ve been planning to upgrade.
The latest AirPods Pro 3 are Apple’s best AirPods yet. Upgrades include stronger noise canceling, a new acoustic architecture for deeper bass, and redesigned ear tips for a more secure fit. New tools include a built-in heart rate sensor for fitness tracking, live translation, and a camera remote to snap photos or videos on your iPhone. These earbuds are also the first AirPods to be IP57 rated against dust, sweat, and rain.
Advertisement
Right now, they are 20 percent off at Amazon, Target, and Walmart. There’s no telling how long this discount will last, so I’d grab a pair now if they’re on your wish list.
Apple AirPods Max 2 for $449 ($100 Off)
The AirPods Max 2 are arguably the most stylish pair of noise-canceling headphones on the market. The newer H2 chip improves active noise cancellation and transparency mode and enables a suite of intelligent features, including conversation awareness, live translation, and improved Siri interactions. The AirPods Max 2 are designed with a new high-dynamic-range amplifier for deeper bass, more natural vocals, and cleaner highs.
At $549, the AirPods Max 2 can be a tough sell, especially with so many excellent, more affordable alternatives on the market. But $100 off, they’re a lot easier to justify, especially if you want the seamless integration that comes with Apple’s ecosystem. It’s unclear how long this deal will last, so I’d snag a pair sooner rather than later if you’ve been eyeing them.
It’s one of the most expensive for a reason, and comes with more attachments than any other model. I do find myself regularly grabbing the Fluffy Optic head for vacuuming my hard floors, which cover many square feet of my home. If you’re looking to really splurge on the best vacuum, this is still the one to get.
The only downside is compatibility with Dyson’s bigger attachments, namely a mop head or docking station. It doesn’t have a Submarine option like the V16 or V15, and Dyson’s Auto-empty Dok won’t work with this model. But if you aren’t worried about add-ons, this is the vacuum to buy. It’s had better sales since the launch of the new models, too.
The Runner-Up
The V16 Piston Animal’s powerful 315 air watts of suction did pretty well on almost every test. My only issue with this vacuum compared to the Gen5Detect is that it was more likely to push small debris (in my tests, both sand and litter) into a pile in front of itself if you were vacuuming a large spill. Gen5Detect did better all around, but the V16 Piston Animal stayed close behind that hiccup.
It’s a powerful all-around vacuum with some nice design upgrades to make it a little easier to use. This newer model has a release below the vacuum motor to release the cleaner head without having to bend down, and built-in crevice tools to both the handheld motor and the long wand that makes up the middle of the device. There’s also a compressor to help push dust out of the dustbin, and it’ll be compatible with Dyson’s upcoming self-emptying docking station. There’s also a Submarine version ($1,100) so you can use this vacuum as a mop, too.
Advertisement
It has some nice quality-of-life upgrades, but it’s really expensive. I’d recommend it if you know you also want to invest in the mop head and docking station; otherwise, just get the Gen5Detect.
The Affordable All-Arounder
One of the best overall performers is nearly half the price of my winners. The Dyson V10 Konical never once scored in last place, and was especially comfortable to use on carpets and rugs with the new cleaner head design. It did much better than the more expensive and powerful Gen5Detect and V15 Detect when vacuuming up sand, and I found it more comfortable to push around than the Digital Motorbar head on the V15 and V8 when it came to vacuuming a low-pile rug.
Hugging Face on Monday published a technical timeline that walks readers through how an autonomous AI agent, built on OpenAI models and running inside one of OpenAI’s own cybersecurity evaluations, broke into its systems over more than four days earlier this month. It’s the first security incident about which OpenAI CEO Sam Altman “felt very viscerally,” he has said.
Little wonder given it feels, at least, like something has truly been unleashed here. In fact, Hugging Face’s team prefaced its report by offering that “everyone should be prepared as defenders,” before diving into the nitty gritty of what went down for the benefit of security professionals everywhere.
While the rest of the internet continues trying to make sense of what happened (the jargon in Hugging Face’s report is impossible for most people to parse), one point that many observers keep missing is that this wasn’t a rogue agent disobeying orders. It was a system built to hunt for exploits, doing exactly that, just against the wrong target.
Another way to think about the whole thing is to picture a bear at a campsite. Really. A bear tries tent zippers and car-door handles and coolers and trash lids. It does this at every campsite, all night long, because it knows it needs just one unlocked cooler to fill its belly with some poor schmuck’s groceries.
Advertisement
That’s roughly what happened at Hugging Face. The OpenAI system tried thousands of things and just kept going. Eventually, a handful of those attempts worked, and once they did, the agent plowed ahead. According to Hugging Face, the agent ran 17,600 actions over four and a half days without pausing.
Which brings us back to our bear analogy. Just like one success with a cooler full of food teaches a bear to try even harder next time (it is now a “food-conditioned” bear), one leaked password led OpenAI’s agent to look for more exploits and, eventually, to a single key that unlocked several company systems at once.
Neither scenario is harmless. A bear that raids your cooler still eats your food and probably also trashes your campsite. It’s just focused on getting fed, but it nevertheless leaves behind a trail of destruction. Similarly, OpenAI’s agent was seemingly chasing a goal without regard for anything else. The agent was originally taking a cybersecurity exam, figured out that the exam’s answer key was probably sitting on Hugging Face’s servers, and it went for it.
The persistence here is really what’s noteworthy above all else; the agent had a job and it wasn’t going to stop until it got it done. Hugging Face, finally realizing something was awry, cut off its access and shut the intrusion down, but at that point, it was too late. The agent had already gotten what it came for, and a great deal more to boot.
Advertisement
In case you missed it, here’s most of what happened, per Hugging Face’s timeline, but in plainer English.
The agent was taking a cybersecurity skills exam for OpenAI, one where an AI is scored on finding and exploiting software bugs. This specific run had the guardrails stripped out. (OpenAI had turned off its usual safety filters to see what the model could do at full strength, with no human involved in any of its individual moves.) Somewhere in there, it figured out the exam’s reference solutions were likely stored on Hugging Face’s servers. So instead of solving the challenge, it stole the answer key from infrastructure that had nothing to do with the original test.
It escaped the OpenAI exam environment by exploiting an unpatched software flaw that gave it a path to the open internet. From there, it found another AI-testing tool sitting exposed online (nothing to do with Hugging Face), broke into that too, and slipped in code that quietly ran hidden commands the moment the program started. That gave it full control of the machine — its new home base for the rest of the operation that it would use to go after Hugging Face’s systems.
From that base, it turned to Hugging Face itself. Hugging Face had a filter meant to block suspicious requests from reaching out to the open web, but the filter only checked outgoing requests, not requests to read local files sitting right there on the server. The agent found this blind spot and slipped through it. It uploaded a file disguised as an ordinary dataset, but buried inside was an instruction telling Hugging Face’s own systems to pull passwords and source code off the server and hand them back disguised as normal data.
That trick got it passwords and code, but the agent still couldn’t run anything on Hugging Face’s servers. To execute commands there, it needed a second way in. It found a different bug in that same Hugging Face system — software would take a piece of text from the agent and accidentally treat it as a command to run instead of just data to read. That gave the agent the ability to execute its own code directly on Hugging Face’s servers.
For getting commands in and stolen data out, the agent didn’t build any special infrastructure of its own, per Hugging Face. It used tools anyone can access — paste websites and request-logging services, plus Hugging Face’s own upload and proxy features — working together in covert fashion. On top of those, it built a small, improvised messaging system with sequence numbers to keep the pieces in order, plus a quick built-in check to catch anything that arrived corrupted, so it could send multi-step commands and put stolen data back together in the right order.
It also made sure that nothing traveled in plain sight. Whatever it stole or sent, it scrambled first. Hugging Face’s initial automated scan of the intercepted traffic caught only a small slice of what had been taken. Investigators found the rest — roughly four times more — only after they reverse-engineered the agent’s own scrambling method.
The agent even had back-up plans, planting copies of itself across 11 different servers, each set up to relaunch on its own so that shutting down one copy wouldn’t stop anything, since more of the agent’s process was already running elsewhere.
At one point, the agent nabbed the private cryptographic key used to generate valid login tokens. From there, it could mint its own valid credentials whenever it wanted.
After compromising a single server, the agent got hold of a credential that, because of a misconfiguration on Hugging Face’s end, turned out to unlock several separate internal systems at once rather than just the one it came from. That single mistake handed the agent broad control almost immediately.
Using stolen repository access, it submitted a change to a build script that, if it had gone through, could have compromised the automated systems running that code. It didn’t work, though. Hugging Face’s safeguards caught it.
The agent seemed to hold back from doing real damage, Hugging Face observed, but probably not out of restraint. Investigators noticed that every command capable of deleting or altering cloud resources was run in “dry run” mode, meaning it would report what would happen without doing it.
Every time its test environment reset — which happened constantly, by design — it lost every tool and every trace of its identity. But it rebuilt from nothing and reconnected to its stolen infrastructure each time, for more than four days straight.
Ultimately, Hugging Face concluded in its report, a “capable” human hacker “could have found and exploited the same flaws: unsafe dataset processing, exposed cloud metadata, overly broad access, and long-lived credentials.” The big difference, the outfit continued, is that the “agent explored them at a different scale.”
Which is really where the bear analogy ends up being the most useful. The best defense against a hungry bear is protocol. You put the food away; you use a latch that works well enough to hold. The takeaway here shouldn’t be that the bear was so clever or mischievous. It’s that it never stopped checking. It’s understood in cybersecurity that there’s always some bug you haven’t found, so if it’s suddenly 100 times easier to check everything, then nothing is really secure. That’s what so many find unsettling about this episode.
When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.
Health-ISAC, a cybersecurity information-sharing organization for the health sector, is warning healthcare and medical technology organizations of an observed increase in successful attacks by ShinyHunters.
ShinyHunters is an extortion gang that primarily conducts supply chain and identity attacks to breach cloud SaaS and storage platforms in data theft attacks,
Over the past two years, the threat actors have become notorious for conducting numerous supply chain attacks on third-party integration partners. These breaches give them access to OAuth tokens that are used to integrate with SaaS providers like Salesforce and Snowflake.
The threat actors are known for identity attacks, where they target employees through social engineering, including vishing and phishing, to compromise corporate single-sign-on accounts. Once they gain access to an account, they log in to an organization’s Okta, Microsoft Entra, or Google SSO dashboard, which acts as a centralized hub listing all SaaS applications the user has permission to access.
Example Microsoft Entra SSO dashboard
These applications include Salesforce, a primary target of ShinyHunters, Microsoft 365, SharePoint, DocuSign, Slack, Atlassian, Dropbox, Google Drive, and many other internal and third-party platforms.
For threat actors focused on data theft and extortion, the SSO dashboard becomes a springboard to a company’s cloud data, allowing them to access multiple services from a single compromised account.
Advertisement
Hardening helpdesk and SSO security
According to a July 24 advisory, ShinyHunters attacks follow a chain that begins with voice phishing (vishing) to manipulate employees or helpdesk personnel into resetting passwords, changing multifactor authentication methods, or enrolling new devices.
These phishing kits are designed for live interaction with targeted employees via voice calls, allowing attackers to change content and display authentication dialogs in real time as a call progresses.
A C2 panel allowing real-time control of authentication flows Source: Okta
Once an account is breached, the attackers use it to access connected SaaS platforms, where they rapidly steal data that can be used for extortion.
“SSO is the control plane, and ShinyHunters’ leverage is created through data theft at cloud scale,” Health-ISAC warned.
Advertisement
The advisory does not identify affected healthcare organizations, disclose how many incidents have been observed, or provide a timeframe for the reported increase.
However, BleepingComputer is aware of recent ShinyHunters attacks at healthcare and medtech companies, including Medtronic, DentaQuest, iRhythm, and OneMedical.
Health-ISAC said that in recent incident reporting, ShinyHunters claimed it successfully vished multiple employees, compromised a Microsoft Entra SSO account, and stole data from Microsoft 365, SharePoint, and other enterprise platforms.
However, the organization cautioned that not every data theft claim has been verified, and defenders should instead focus on the attack pattern of using compromised SSO identities to access and exfiltrate data from connected cloud services.
Advertisement
Health-ISAC says the most important defensive step is breaking the attack chain between the initial vishing call and the takeover of an SSO account.
Organizations are advised to require out-of-band identity verification for password resets, MFA resets, and device re-enrollment requests.
This can include calling users back using a previously verified phone number and requiring manager approval for privileged accounts.
The advisory also recommends helpdesk personnel follow a “no same-call” policy that prevents resets during the same inbound call. Instead, reset requests should require a support ticket and a verified callback before any changes are made.
Advertisement
Additional verification should be required when changes are requested for executives, IT administrators, security personnel, finance employees, and other high-risk users.
Healthcare organizations should also deploy phishing-resistant MFA, such as FIDO2 or WebAuthn security keys, for administrators, helpdesk personnel, executives, and other high-risk groups.
SMS and voice-based authentication should be disabled or tightly restricted. At the same time, registering new MFA factors should require additional controls, such as a managed device or a conditional access policy.
Health-ISAC also recommends treating SSO systems as “Tier 0,” which represent the most critical assets in an organization.
Advertisement
This includes requiring MFA and compliant devices when accessing sensitive cloud services, blocking legacy authentication, detecting sessions with improbable geographic changes, and limiting administrative portals to managed devices.
Detecting cloud data theft
Health-ISAC recommends centralizing identity and SaaS audit logs and monitoring for signs of account takeover and large-scale data access, including new MFA registrations, newly enrolled devices, suspicious OAuth grants, unusual API activity, and bulk file downloads.
Organizations should also restrict API tokens and third-party integrations, require approval for access to sensitive data, and ensure incident response teams can quickly revoke active sessions, reset credentials, and turn off malicious OAuth applications.
Over the next 30 to 60 days, healthcare organizations are urged to prioritize phishing-resistant MFA for high-risk users, strengthen helpdesk reset procedures, enforce conditional access policies, and test their ability to contain compromised cloud accounts.
Advertisement
Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.
The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.
Panasonic has announced that Panasonic AVC Networks Kuala Lumpur Malaysia will cease operations by the end of March 2027, affecting approximately 400 employees. The factory currently produces televisions, Panasonic Blu-ray Disc players and unspecified Technics branded Hi-Fi components.
This does not mean that Panasonic is abandoning Blu-ray players or that Technics is exiting the Hi-Fi market. Production is being moved elsewhere. But the closure removes another major consumer audio and video factory from Panasonic’s manufacturing network, and that matters for a company whose premium audio reputation still depends heavily on engineering consistency, build quality and control over production.
Related Reviews:
What Is Moving?
Panasonic says television production will end at the Malaysian facility, while Blu-ray Disc player production will transfer to China Hualu Panasonic AVC Networks Co., Ltd. in China by the end of September 2026.
Production of Technics branded Hi-Fi audio products will end at the Shah Alam factory by the end of February 2027 and move to another Panasonic Group operation. Panasonic has not disclosed the destination or identified which Technics products are currently manufactured at the facility.
Advertisement
That missing information is important. Technics currently sells turntables, integrated amplifiers, network players, wireless loudspeakers, headphones and true wireless earphones across multiple price categories. Consumers should not assume that every Technics component is affected, or that production is being outsourced to an unrelated manufacturer.
The official statement says Technics manufacturing will remain within the Panasonic Group.
Why This Matters
Panasonic has already reduced its direct involvement in television manufacturing. Earlier in 2026, the company entered a partnership with Skyworth for production of Panasonic branded televisions sold in the United States. The Malaysian closure shows that the restructuring extends beyond one regional TV agreement and reaches deeper into Panasonic’s global AVC manufacturing footprint.
Technics is the more sensitive part of the announcement.
Advertisement
Technics SL-1500CS Turntable
Panasonic has spent the past decade rebuilding Technics as a premium audio brand, with direct drive turntables such as the SL-1200G, SL-1200GR2 and new SL-1500CS supported by proprietary motor control, digital amplification and extensive in-house engineering. Moving production does not automatically reduce quality, but relocating manufacturing can affect component sourcing, production capacity, delivery schedules, costs and country of origin labeling.
It can also require new tooling, worker training and quality control procedures. Panasonic has not announced any product delays, shortages, price changes or model cancellations connected to the move, so predicting those outcomes would be premature.
What Happens to Technics?
For now, Technics continues as normal.
Advertisement. Scroll to continue reading.
Advertisement
The company has introduced multiple new products in 2026, including the SL-1500CS turntable and limited edition SL-1200 models. Nothing in Panasonic’s announcement suggests that product development, sales, warranty coverage or customer support will end.
The unanswered question is whether Panasonic will move production to another existing Technics facility, consolidate it with a different Panasonic audio operation or create a more centralized manufacturing structure.
Until Panasonic identifies the destination and affected product lines, anything more specific would be speculation wearing a factory badge.
Malaysia Remains Important to Panasonic
Panasonic says Malaysia will remain one of its key regional hubs, with approximately 12,000 employees working across manufacturing, research and development, procurement and corporate operations. The company says it is working with government agencies and the Electrical Industry Workers’ Union to provide job placement and career transition support for the approximately 400 affected employees.
Advertisement
That does not make the closure less significant for the people losing their jobs. “Manufacturing footprint optimization” tends to sound considerably better when one is not standing inside the footprint being optimized.
The Bottom Line
Panasonic is not shutting down Technics, but it is closing a factory that produces Technics HiFi components and moving that work to an undisclosed Panasonic Group operation.
The transfer could ultimately improve production efficiency without changing product quality. It could also create temporary supply, cost or capacity issues during the transition. Panasonic has not provided enough information to know which outcome is more likely.
What is clear is that Panasonic continues to consolidate its consumer AV manufacturing while protecting the brands and product categories it still believes have value.
Advertisement
Technics remains alive and active. We just do not yet know where some of it will be built next.
You must be logged in to post a comment Login