Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.
The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.
HR startup Rippling filed a lawsuit Monday accusing MCP gateway startup Runlayer of infringing on three of its patents, according to the lawsuit seen by TechCrunch.
The filing comes after Runlayer sued the HR startup last month, accusing it of breach of contract and stealing its product ideas.
It’s the latest saga between the two companies after Rippling spent nearly a year testing the startup’s MCP product. The two companies never agreed on a price, and the trial never turned into a paid contract. Instead, Rippling built its own MCP server, and will soon offer it as a product that competes with Runlayer. (Rippling often turns its internally used tech into products, like its recently released AI Spend Console.)
Their battle serves as a warning of how the relationship between customers and startups can devolve in this AI-powered age of fast product building.
Runlayer, which launched its product about a year ago, bundles an MCP gateway with cybersecurity features like threat detection. MCP is an open standard that allows AI agents to connect with data and software systems needed to work independently.
Runlayer has raised a total of $42 million and was founded by third-time founder Andrew Berman. (His previous companies were baby-monitor maker Nanit and an AI video conferencing tool, Vowel, that sold to Zapier in 2024). Rippling became one of Runlayer’s earliest potential customers trialing its software.
The most dramatic detail in the lawsuit is Runlayer’s claim that a Rippling employee reached out to Berman to warn him that his employer was building a “copy” of Runlayer’s product. A Rippling spokesperson tells TechCrunch that its employee has since revised that view.
On Rippling’s side, perhaps the most dramatic claim is that it informed Runlayer of the patents it believed Runlayer had infringed soon after the startup filed its lawsuit.
One might infer that the suit is intended as leverage to bring Runlayer to the settlement table. Indeed, that’s how Runlayer views it.
“This is a desperate, retaliatory ploy to distract from the fact Rippling misappropriated our proprietary technology. We clearly have a standout AI product that has nothing to do with these patents. No attempt to bully or distract will prevent us from protecting our IP and continuing to innovate and create the best product for our fast-growing customer base,” Berman said in a written statement.
Rippling loves a good fighting-words statement too. Its spokesperson told TechCrunch: “It takes a certain boldness to accuse a competitor of violating intellectual property laws while infringing on that competitor’s inventions. But that’s exactly what Runlayer has done here. Rippling’s lawsuit calls out Runlayer’s hypocrisy. Having manufactured claims against Rippling to distract from its business failures, it now has to face a lawsuit for repeatedly copying Rippling’s inventions in building its own products.”
Now it’s up to the courts to unwind who did what to whom, unless the parties settle. But these dueling cases still serve as a buyer- and seller-beware warning. With AI advances, enterprises have never before been more empowered to build tech in-house. Yet they still may put a startup through its paces before choosing that option.
When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.
In brief: GeForce Now is a cloud gaming service that lets users stream games over the internet in limited sessions. As a pair of modders recently discovered, however, a bit of tinkering can turn it into a formidable system for offloading demanding computing tasks.
GeForce Now can apparently do much more than simply stream a selection of supported games using the AV1 codec. Two modders known as “Zortos” and “dpadGuy” have uncovered a trick to gain full desktop access to the streaming service, allowing them to run custom games and software directly on Nvidia’s hardware. Granted, Nvidia will probably patch this loophole eventually, but in the meantime the workaround remains fully functional for anyone willing to follow the modders’ steps.
The modders explained how they achieved this unprecedented result in a video tutorial. The clip essentially provides a step-by-step guide on how to access the remote desktop, although they warn that the method only works with a paid GeForce Now subscription. Free-tier users and GeForce Now Alliance Partner services remain limited to AV1 game streaming.
The tutorial is based on the free-to-play game Trove and GeForce Now’s ability to expose the Steam client’s full interface. From within the current Steam session, users need to access the client’s browser and locate a specific executable file in Trove’s installation folder. They then need to replace the file with a special version provided by the modders and launch it to finally access the remote desktop.
GeForce Now machines can provide some hefty hardware specifications. Zortos said he was able to access an “Ultimate”-tier machine equipped with an AMD Epyc 9375F 32-core CPU and a GeForce RTX 5080 GPU. The system has 48GB of VRAM and 56GB of total system RAM.
– Zortos (@Zortosdev) August 7, 2026
The tutorial demonstrates how the newly discovered desktop access could be used to install Wallpaper Engine from Steam or customize the Windows taskbar. More generally, it could provide broader access to Nvidia’s hardware resources, raising significant security and trust concerns. Later, Zortos used the powerful remote machines to install custom AI models, promising that more “juicy” demonstrations are on the way.
It’s worth noting that this kind of access sits well outside GeForce Now’s terms of service, so anyone attempting this risks having their account suspended or banned.
In any case, the Trove-based method for breaking into Nvidia’s cloud gaming service does not appear to be foolproof. Some users who tried the same trick experienced a few unexpected issues, including Windows sessions closing automatically or being unable to download the custom executable file to Trove’s folder. Some said the Trove method no longer works, although Zortos reiterated that this is not the case.
A routine security assessment found that cameras aboard Royal Navy Kraken unmanned surface vessels were sending “heartbeat” signals to an IP address in China. “A thorough investigation found no evidence of MoD data or systems being accessed, compromised or transmitted externally,” said a Ministry of Defense spokesperson. “Our assurance and testing processes are designed to identify and address potential vulnerabilities early, and we continue to undertake routine security activity across our systems and equipment.” The Register reports: According to reports, the talkative components were cameras sourced by Kraken from a third-party supplier. The incident raises questions about supply chains, audits, and cybersecurity in the British armed forces. The spokesperson said: “The first duty of government is national security, and we take the security of our equipment, networks, and data extremely seriously.”
Read more of this story at Slashdot.
Hackers used a dedicated mobile gateway to compromise a second facility during the destructive cyberattacks that hit Poland’s energy sector last year.
The second target was a small combined heat-and-power (CHP) plant that supplies heat to around 50,000 residents, resulting in the steam turbine and the water treatment system being shut down.
The Polish Computer Emergency Response Team (CERT) disclosed this second incident in a follow-up report over the weekend, saying that the attacker used a private Access Point Name (APN) to access the operational technology network.
“The attack was made possible, among other factors, by a misconfiguration that allowed arbitrary devices within the private APN network to communicate with one another.”
On December 29, 2025, an attacker believed to be linked to the Russian Electrum threat group targeted 30 wind and solar power installations and a large CHP plant in Poland, destroying key equipment beyond repair.
The threat actor hit distributed energy resource (DER) sites across the country, disabled communications equipment, corrupted operational technology (OT) devices, and wiped Windows systems. Despite this effort to destabilize the grid, energy generation and distribution were not disrupted.
In the newly disclosed attack at a second, smaller CHP plant, the threat actor switched off the programmable logic controllers (PLC) and protected access with a password, thus deactivating a steam turbine and the plant’s process-water treatment system and interrupting cogeneration operations.
The staff at the plant managed to restore impacted systems quickly, so the outage was short-lived and had no impact on the population.
Upon investigating the incident, the Polish CERT determined that the attacker initially compromised a FortiGate VPN/firewall at a wind farm and used a Teltonika cellular router on its network to tunnel into a private APN managed by the distribution system operator.
The APN lacked client isolation, allowing the attacker to scan for and communicate with devices at other facilities.
Beginning on December 18, the attacker found a WAGO PFC200 PLC at the CHP plant whose web interface was exposed on the APN and protected with default administrator credentials.
After compromising the controller, the attacker enabled SSH and used it as a bridge into the plant’s OT network.
Over the following week, they scanned the network for SCADA systems and industrial devices, and on December 25 they connected to three Siemens PLCs, likely in preparation for the attack.
At approximately 5:30 a.m. on December 29, the attacker accessed the SCADA interface and Siemens PLCs, switching them into STOP mode, activating password protection, and shutting down the steam turbine and process-water treatment system.

The attacker also reset and reconfigured several Moxa devices to impede recovery, destroyed logs, and hindered forensic analysis by corrupting or resetting the WAGO controller, Teltonika router, and FortiGate firewall used throughout the intrusion.
The Polish CERT believes this to be the first known real-world cyberattack in which an attacker entered an OT network by moving laterally through a private APN.
“To the best of our knowledge, the incident described in this report, which involved gaining access to an OT network through a private APN, was the first observed instance of this attack vector being used in a real-world cyberattack,” commented CERT Polska.
The surveys that followed the investigation determined that this configuration was common in Poland at the time, and the country’s CERT estimates that it’s likely similar arrangements are widely used internationally.
It is recommended to treat private APNs as untrusted external networks, enable isolation between connected clients, use allowlists for essential traffic between APN gateways and OT systems, and disable exposed SSH and Telnet administration services.
Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.
The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.
Sounding off: Microsoft’s push to bake AI into every product and service it sells is understandably facing some backlash. Even Office is turning into a vessel for Redmond’s chatbots, which may be why one developer decided to go back in time instead, releasing a wild modern port of an early Word release.
Developer Justin Marshall recently ported Word for Windows 1.1a to modern Windows systems. The open-source conversion draws on the source code of the original program, which Microsoft shared with the community in 2014.
Marshall’s port brings the original WfW experience to Windows x64, replacing non-working 16-bit code with modern programming conventions. The coder explains there’s no emulation, virtualization, or reimplementation trick involved: the original Word application runs with its original resources and UI elements intact.
Porting WfW to Windows x64 wasn’t exactly a “plug-and-play” affair. Marshall said that while the original C code and resource files are still part of the port, he had to make the 16-bit code behave properly in a modern 64-bit Windows environment. Specific behaviors tied to the Win16 API had to be adapted to modern Win32 APIs, while dialogs, cursors, and bitmap elements had to be rebuilt with native host tools through the CMake build process.
“CMake inventories the legacy assembly tree but does not compile those modules into native targets. This keeps the historical implementation available as a reference while ensuring all shipped code is valid for AMD64,” Marshall explained on the project’s GitHub page.
Word, and Word for Windows 1.1a specifically, hold a special place in Microsoft’s software history. The original Word for Windows debuted in 1989, bringing the DOS-based productivity tool to a new GUI paradigm; version 1.1a followed a year later as the release that added dedicated support for Windows 3.0. Over time, Word became the de facto standard for word processing in lieu of WordPerfect.
Compared to the barebones GUI of Word for Windows 1.1a, today’s Word is a completely different beast. Microsoft now treats its productivity software largely as a means of promoting its AI services. Thanks to chatbots and LLMs, the latest Microsoft 365 version of Word can even write documents and expand drafts on its own. No pesky human intelligence required.
While Microsoft keeps cramming more AI into Office, some developers are trying to fight back by returning to the roots of its software tools. Before the WfW port, Marshall built other projects blending old software with modern tech, including a ray-tracing port of Quake 1 and a merge of the Quake 4 SDK with the Doom 3 graphics engine, among others.
The Mcon controller balances portability and performance in a compact, MagSafe-compatible design for iPhone gamers.
Gaming controllers usually come in two flavors. You’ll find ones that are extremely comfortable and capable, as well as those that are small and portable.
Finding a controller that is both portable and capable is a rarity, to say the least. The OhSnap Mcon is the first one I’ve tested that makes good choices on compromises and uses MagSafe for easy connection to iPhone.
Mcon has a very cool design. It’s roughly the size of my iPhone 17 Pro, but a bit thicker.
It connects to your iPhone with MagSafe and has a solid hold. When you’re ready to game, you just press the silver button that sits right where your fingers rest.
When the button is pressed, the controller springs open. The Bluetooth is turned on, and the iPhone gets positioned just above the controller buttons.
It’s just fun to do and has a satisfying whoosh and click. I also appreciate that the phone doesn’t just slide forward; it angles upward slightly to make it more comfortable.
With the controller open, you can then rotate out two extra palm grips from around the back. This puts you in a natural gaming position with access to the joysticks, triggers, and all the other buttons.
Speaking of the buttons, they’re in a bit of an interesting layout. It’s like a combination of a PlayStation controller and an Xbox controller.
It uses the XYAB buttons that Xbox uses, but it uses dual, center-justified joysticks as PlayStation does. The button labels are mostly irrelevant, and I vastly prefer this joystick setup to the Xbox’s.
Those joysticks use what OhSnap calls MagRes technology that promises to be ultra-accurate, lag-free, and drift-free. OhSnap even claims it is superior to the well-respected Hall-effect mechanics.
You can use the controller via Bluetooth, or you can use it wired via USB-C. If you go wireless, you can enter “kickback mode” by pressing the eject button and removing the MagSafe module.
This gives you a magnetic stand for your phone that you can place anywhere you want and then relax with the wireless controller. It’s very clever how the metal arm that works as the stand also doubles as the central guide and stabilizer as it opens and closes.
I wouldn’t consider myself a professional gamer by any means, but I’m certainly an avid one. I’ve long been a proponent of more console-level games making their way to iPhone, iPad, and Mac.
Quickly after launch, I eagerly downloaded Assassin’s Creed Mirage, Hitman World of Assassination, and Red Dead Redemption. Not to mention many more mobile-specific games like PowerWash Simulator, Thronefall, Call of Duty Mobile, or Alto’s Odyssey.
I tested the Mcon controller with most of these games over the course of the last several weeks. While it wasn’t perfect, it’s very reliable to use.
All of the buttons were incredibly tactile, providing a solid click each time they are pressed. The bumpers and triggers also felt reliable, though they were skinny, leaving my finger feeling a bit unsupported.
To me, the joysticks are the most important control, and OhSnap did a great job with these ones. They’re absolutely on the small side, but there was basically no dead zone in the middle, and they were very reactive when using them.
Mcon mobile gaming controller review: The bumper and trigger buttons feel good, but are somewhat thin
I think all of these buttons are premium in design and performance, but are slightly smaller to accommodate the portable footprint.
With mobile gaming being as popular as it is, there is no shortage of controllers on the market. We’ve reviewed several here at AppleInsider.
Mcon mobile gaming controller review: There are lots of controllers out there, but none as compact and premium
For standalone controllers, I’m still the biggest fan of the DualSense controller that is MFi certified and even has a streamlined pairing process with iOS 26. The Razer Kishi Ultra is also an excellent option.
Both of them are inarguably more comfortable than the Mcon is. They fit your hand better, and the buttons are bigger.
Neither of those, nor the equally popular Backbone, will fit in your pocket, though. That portability is ultimately what matters most with the Mcon.
You can find more comfortable controllers, but you’d be hard-pressed to find a portable one that is as solid as this one is.
Rating: 4.5 out of 5
Buy the Mcon controller for $129 from OhSnap in either black or white.
Anyone who grew up or was already driving in the 1990s remembers the era of the jellybean car — all smooth lines and soft curves. Today, many modern vehicles, even bulky SUVs, are still mostly comprised of sleek lines. It’s a dramatic shift from the 1970s and 1980s, when most automakers used flat panels and straight lines, producing vehicles that more closely resembled a cardboard box than the aerodynamic designs we see on the road today. You may have noticed another shift in recent years, however, as some automakers are bringing back those boxy blueprints.
SUVs trace their lineage back to the Willys Jeep that was used during World War II. The earliest SUVs mimicked this design, which was easy to manufacture, and offered lots of interior space for families to spread out and carry luggage or cargo. By the 1960s, other manufacturers had joined Jeep with their own boxy SUVs, and the style remained popular until the late 1990s. SUVs soared in popularity, and designs trended to more car-like lines. Stricter rules regarding fuel efficiency also helped soften lines for more aerodynamic designs.
Car design, like almost everything else, however, is cyclical, and boxy SUVs are making a comeback. Modern engineering and advances in engine design mean that those straight lines don’t have as much effect on fuel efficiency as they did in the past, and many Americans are hungering for retro designs in everything from cameras to cars. Here are five car brands that make boxy SUVs engineered for the modern buyer.
Ford is one the most iconic automakers in American history, so it stands to reason that it has produced vehicles of every shape and size over its more than 100-year history, and one of its most legendary models is the Bronco. First introduced in 1966, the Bronco was designed as an all-purpose vehicle that could easily take you off the road and go head-to-head with vehicles like the Jeep CJ. Ford ended production on the Bronco in 1996, but reintroduced the model with a retro vibe, including the boxy exterior that so many loved, in 2021.
Now a competitor to the Jeep Wrangler, the Bronco’s shape isn’t just an homage to a well-loved vehicle. Those straight lines and the flat hood make it easier for drivers to see where they are on a rocky path or muddy trail. The 2026 model starts at $40,795, and offers a four-cylinder engine and standard four-wheel drive. Buyers can opt for either a two-door or a four-door model.
Ford also sells the Bronco Sport, a more refined option that still offers that retro-inspired, rugged design. It has a lower starting price of $31,845 but comes with standard four-wheel drive. Unlike both the two-door and four-door models of the Bronco, the doors on the Bronco Sport are not removable.
When Hyundai debuted the fully redesigned 2024 Santa Fe, some enthusiasts were shocked at its transformation. The smooth, flowing lines of its predecessor were nowhere to be seen, replaced by a new boxy design that is reminiscent of days long past. The change wasn’t for simple aesthetics, however. Automakers try to stay ahead of emerging trends when it comes to design, hoping to satisfy buyers when these vehicles hit the sales lot.
The Santa Fe’s boxy look is geared toward outdoor enthusiasts, offering more interior space along with a wide tailgate opening that allows for easy loading and access to cargo. Tail lights are positioned low on the vehicle to enhance that wide space for even better accessibility.
Despite the boxy look, Hyundai carefully designed the Santa Fe to maximize aerodynamics, and it has excellent fuel economy. This three-row SUV also has a lower starting price than many competitors, with the base SE trim available for $36,650 including destination.
Other Hyundai models retain the flowing lines many modern consumers expect, but the Santa Fe isn’t the automaker’s only angular SUV. Its much smaller cousin, the Venue, also has a compact, boxy design to maximize interior space, while the fully electric IONIQ 9 offers a structured look. The Venue starts at $20,550, while the IONIQ 9 has an MSRP of $58,955, showcasing Hyundai’s commitment to providing thoughtfully-designed vehicles at different price points.
Jeep has a long history of boxy SUVs, all the way back to the pioneering Willys, but it’s also produced many rounded, sleek models as well. Today, the Wrangler and the brand new Recon are Jeep’s most angular vehicles. The Recon is fully electric and trail-rated, with 650 horsepower and enough torque to easily get you up a rocky path. It’s more than a typical electric SUV, however.
The Recon has removable doors, removable rear-quarter glass, removable swing gate glass, and an available power-folding roof that opens with the touch of a button. The Recon’s retro look isn’t just rugged and cool, it also gives buyers a ton of interior cargo space. This new model has a starting price of $66,995.
Jeep’s iconic Wrangler has always had a boxy shape, even as both consumer preference and technology changed over the years. The 2026 Wrangler is no different. Starting at $36,035, the Wrangler’s shape is intrinsically tied with its history and utility. This much beloved vehicle is made for off-roading fun, and the outcry would likely be enormous if Jeep ever changed its basic design.
The large Grand Wagoneer, priced at $63,995, also has an angular silhouette. The design is a nod to the original Jeep Wagoneer, which was launched in the 1960s. The straight sides and flat roof offer plenty of room for your family to stretch out over three rows of seats.
Many words come to mind when you think of Mercedes-Benz. Luxurious, timeless, and high-performing, most Mercedes models have smooth, aerodynamic bodies with flowing rooflines. The G-Class is the exception to the rule. Nicknamed the G-Wagon, this SUV has been produced continuously since it first debuted in 1979, and Mercedes never smoothed out those iconic sharp corners.
The automaker originally partnered with an Austrian military vehicle manufacturer called Steyr-Daimler-Puch to design the Geländewagen for both military and civilian use. These roots are still evident in the vehicle’s ladder-frame chassis, tailgated-mounted spare tire, and rugged design. With a starting price of almost $200,000, however, the latest G63 AMG goes beyond your typical off-roading vehicle. It’s highly-capable on the trail, but it can also go from 0 to 60 mph in about four seconds, thanks to a 577 hp twin-turbo V8.
Inside, buyers will find leather seats available in a wide array of patterns and colors, a premium sound system, two 12.3-inch screens under a single pane of glass, and other truly cool features. There’s more than 37 cubic feet of cargo space and a side-hinged tailgate that looks great, but it might be cumbersome at times. Most of Mercedes-Benz’s other vehicles have a more streamlined design, even its wagons, but some of the more affordable SUVs like the GLB and the EQB offer harder edges that lend themselves to more cargo space.
The Land Cruiser has been one of Toyota’s boxier SUVs since its launch in the 1950s, but there’s no denying that the automaker softened its lines in the late 1990s and into the 2000s. After discontinuing the model in 2021, the Land Cruiser made a triumphant return in 2024 with a look that harkens back to its original, boxy appearance.
The current model offers only two rows instead of three like its predecessor, and it offers ample cargo space. The retro touches are everywhere, from the TOYOTA heritage grille to the round headlights found on the base “1958” trim. Of course, it’s a different story when it comes to tech and safety features, and there’s also a modern hybrid powertrain with 326 hp and better-than-average fuel economy. It also boasts full-time four-wheel drive and three drive modes. Prices start at $59,675 including destination.
In addition to the Land Cruiser, several of Toyota’s other SUVs have boxy, rugged designs. The massive Sequoia has strong, muscular lines that maximize cabin space for both passengers and cargo. Nothing is small about the Sequoia, which starts at a much higher $67,920 including destination. The rugged, midsize 4Runner is designed to be as capable off-road as it is on the highway, and its square shape gives drivers a clearer line of sight, especially on the trail. The 2026 model starts at $43,865 including destination. Even the popular RAV4 is relatively boxy, with a squared-off roofline and fender arches that give it a distinctly Toyota off-roader shape.
Security
Franklin project adds new security providers, employs digital twins and AI
DEF CON hackers expanded their efforts to provide free cyber-defenses to rural water systems in the US to include managed detection and response providers, digital twins, and AI agents.
On Friday, at the annual hacker’s conference, DEF CON Franklin and the National Rural Water Association (NRWA) announced a new program called the Water Watch Center. It will initially fund five providers – Defendify, Legato Security, L1 Secure, Rapid7, and Sentinel Technologies – to help small water utilities serving fewer than 10,000 people detect and mitigate breaches.
The security providers will exchange threat info and share that with the NRWA, which provides technical assistance and operational support to small water and wastewater utilities across all 50 states.
“We’ve had our volunteer experts out for two years in these water utilities, in the trenches with these folks, and the thing that we’ve realized is that there’s just not a scalable delivery mechanism for cyber for these utilities when there’s 150,000 of them, and 98 percent of them are small businesses,” Jake Braun told The Register during an interview at DEF CON.
Braun co-founded the Franklin project at DEF CON in 2024, and 350 people signed up that year to donate their time and talent to securing water facilities.
“We groped around in the dark for what to do, and eventually realized we already know how to do security for small businesses – it’s MSSPs,” Braun said. “So why don’t we just do that?”
He described the new Water Watch Center as a pyramid, with the NRWA at the top, the managed detection and response providers’ sensors hunting for security vulnerabilities across the utilities’ networks, and then Franklin volunteers fixing issues or responding to instructions as needed.
“We have five initial MSSPs, which will expand to 10 eventually, based on the 10 CISA regions,” Braun said. “And then below that, we have volunteers who can help, and connect water utilities to MSSPs, so we’re not just sending alerts. We can take the alerts that CISA and the ISAC put out, and deliver cybersecurity. That’s been the missing piece: there has been no delivery mechanism for cybersecurity that’s scalable nationally – that’s what this is.”
Suspected Iranian hackers have hit numerous water systems in recent weeks, and most were small, community systems that left programmable logic controllers directly exposed to the internet using default or weak passwords. There’s no indication that the attackers used AI to help plan or carry out these digital disruptions. However, as both cyber and national security experts told The Register during conversations on the sidelines of Black Hat and DEF CON, it’s only a matter of time until that happens.
DEF CON Franklin has a plan for that scenario, too.
The Water Watch Center also partnered with Vanderbilt University to apply research from the DARPA Cyber Agents for Security Testing and Learning Environment (CASTLE) program. This partnership will create digital twins for a few WWC water and wastewater system environments, and then researchers will deploy both red- and blue-team agents across these digital dupes.
The red-team attack agents try to hack the water systems, testing the blue-team defenders’ automated detection and response capabilities, with the eventual goal of deploying AI-based defense to water and wastewater facilities across the US.
“They let it fight each other a gazillion times, and then they figure out when does the blue team win, so we can train agents to then later drop into these 150,000 water utilities,” Braun said.
“There’s already a 500,000-person shortage of cyber professionals. The idea that we’re magically going to find 150,000 new people is a fantasy. There is no other way to really be able to combat the AI attacks that are going to be coming at these things.” ®
Facepalm: Microsoft’s default Weather app in Windows 11 can use nearly 1.2 GB of RAM while sitting open on a forecast screen, according to testing by Windows Latest. The app doesn’t need to be actively used to reach that level of memory consumption. The report found that MSN Weather launches as many as nine Chromium-based subprocesses, suggesting the app is built around a web wrapper rather than as a fully native application. That design helps explain why a basic system utility can use so much memory.
MSN Weather is the standard weather app included with Windows 11. It provides a detailed set of tools, including live radar, hourly forecasts, wind and precipitation data, air-quality readings and moon phases. The data comes from several weather providers, with Foreca serving as a primary source.
The app’s interface is modern and works smoothly, but still, the level of resource use stands out when compared with Apple’s Weather app on macOS, which uses about 250 MB of RAM while providing similar forecast details. That is about five times the RAM usage for the built-in Windows alternative.
The Windows app also carries advertising. Windows Latest’s testing cited ads for Adobe Acrobat while others saw ads for LendingTree and Spotify. Microsoft may need to offset the cost of delivering weather data, but ads in a Microsoft-owned app remain a point of frustration for users who have already paid for a Windows license.
The report arrives as Microsoft has been talking more openly about Windows 11 performance. The company recently removed material recommending 32 GB of RAM for gaming PCs, and has said Windows 11 is optimized to run smoothly on systems with 8 GB of memory.
On an 8 GB machine, an app using close to 1.2 GB of RAM would take up roughly 15% of the system’s available memory. That is a significant share for an application users may open only to check the temperature or see whether rain is expected.
But it seems Microsoft has been building simple apps like this one using WebView2, the company’s framework for embedding web content inside Windows apps. It runs on the same Chromium engine that powers Microsoft Edge, splitting rendering, networking and GPU work into separate processes. That’s why Task Manager shows Weather behaving less like a single lightweight app and more like a small browser session running in the background.
Microsoft has said it plans to improve performance, reliability and memory use across Windows 11. It has also discussed updating the apps included with the operating system as it shifts from older Win32 and UWP approaches toward WinUI-based development.
It’s not clear whether that work will include MSN-branded services such as Weather and News. Those services are built into the Windows experience, but Microsoft hasn’t specifically said they’ll be part of the planned overhaul.
For now, the Weather app shows the gap between Microsoft’s broader optimization goals and the experience of using some Windows utilities today. The app is visually polished and offers plenty of forecast data, but its browser-based structure, high memory use and ads make it an awkward fit for a default desktop app.
Looking for a different day?
A new NYT Connections puzzle appears at midnight each day for your time zone – which means that some people are always playing ‘today’s game’ while others are playing ‘yesterday’s’. If you’re looking for Monday’s puzzle instead then click here: NYT Connections hints and answers for Monday, August 10 (game #1156).
Good morning! Let’s play Connections, the NYT’s clever word game that challenges you to group answers in various categories. It can be tough, so read on if you need Connections hints.
What should you do once you’ve finished? Why, play some more word games of course. I’ve also got daily Strands hints and answers and Quordle hints and answers articles if you need help for those too, while Marc’s Wordle today page covers the original viral word game.
SPOILER WARNING: Information about NYT Connections today is below, so don’t read on if you don’t want to know the answers.
Latest Videos FromTechRadar
Today’s NYT Connections words are…
What are some clues for today’s NYT Connections groups?
Need more clues?
We’re firmly in spoiler territory now, but read on if you want to know what the four theme answers are for today’s NYT Connections puzzles…
What are the answers for today’s NYT Connections groups?
Right, the answers are below, so DO NOT SCROLL ANY FURTHER IF YOU DON’T WANT TO SEE THEM.
The answers to today’s Connections, game #1157, are…
It was very pleasant to see some tiles made up of single words after a run of two-worded tiles, but it didn’t make pouting the four groups together any easier.
That is until I had a blinding moment of revelation and remembered that I had watched the English Premier league on USA Network and BET, BRAVO and HISTORY were also TV stations of note, not that I know them as BASIC CABLE CHANNELS.
From here it all came together like a charm and I wondered why I was ever confused. That, though, is part of the magic that is Connections: bafflement and enlightenment within seconds.
NYT Connections is one of several increasingly popular word games made by the New York Times. It challenges you to find groups of four items that share something in common, and each group has a different difficulty level: green is easy, yellow a little harder, blue often quite tough and purple usually very difficult.
On the plus side, you don’t technically need to solve the final one, as you’ll be able to answer that one by a process of elimination. What’s more, you can make up to four mistakes, which gives you a little bit of breathing room.
It’s a little more involved than something like Wordle, however, and there are plenty of opportunities for the game to trip you up with tricks. For instance, watch out for homophones and other word games that could disguise the answers.
It’s playable for free via the NYT Games site on desktop or mobile.
A threat actor compromised the upstream infrastructure of BdThemes, a developer of premium WordPress web-design tools, and modified a remote JSON feed delivered to administrators’ browsers to create rogue admin accounts.
Starting Saturday, the affected BdThemes products were no longer available for download after the WordPress Plugins team closed all of them pending a full review.
BdThemes provides premium WordPress plugins, including Element Pack, Prime Slider, Ultimate Post Kit, Pixel Gallery, and Ultimate Store Kit.
Its flagship free Element Pack plugin alone currently shows more than 100,000 active installations on WordPress.org, while the developer advertises a portfolio with over 350,000 active installs.
WordPress security firm Defiant started seeing attacks through its Wordfence web application firewall (WAF) on August 7.
The researchers say that the attacker “poisoned a static remote JSON data stream fetched by an administrative promotional banner component” after obtaining write access to the vendor’s storage bucket.
According to the researchers, the plugin developer had introduced a cross-site scripting (XSS) vulnerability in the JSON response parsing code, allowing the attacker to replace the legitimate promotional JSON with malicious code that exploited the security issue.
The researchers report that the attack was enabled by a coding flaw introduced in March 2026 in the JSON response-parsing code, which created a cross-site scripting (XSS) vulnerability in the BdThemes infrastructure.
The flaw is in the Biggop Library used by the Biggopti component responsible for getting promotional banners from the vendor’s API server and showing them in the customers’ WordPress admin dashboard.
A report from Defiant explains that the malicious JavaScript injection uses the legitimate administrator’s authenticated session to create rogue admin accounts on impacted sites, while an additional payload (w2.js) establishes persistence via a webshell (emer-run.php) by installing a fake plugin.
“The Biggop Library is vulnerable to Cross-Site Scripting via the ‘display_id’ parameter from the Sigmative API in various versions due to insufficient output escaping,” Wordfence researchers say.
“This makes it possible for attackers who can compromise the Sigmative API server to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.”

The issue was assigned a “medium” severity score, and Defiant’s report lists it as unpatched as of publishing.
Because the attack is entirely API-driven, requires no interaction, file modification, or plugin update, it is entirely stealthy, and the payload executes every time a logged-in administrator opens a wp-admin page.
The injected code manipulates WordPress database queries to hide rogue administrator accounts from the user list, making the compromise more difficult to spot.
Defiant’s Wordfence researchers say that reports that the command-and-control (C2) infrastructure used in the observed attacks points to the same attacker behind the recent Advanced Responsive Video Embedder and OptinMonster supply-chain compromises.
After discovering the attacks, the researchers analyzed available records and determined that the earliest possible start of the campaign was June 23.
The affected plugins were pulled from the WordPress.org directory on August 8, pending investigation, while two poisoned API endpoints now return clean JSON data.
At the time of writing, the vendor has not published an official statement about the incident on its website.
BleepingComputer has contacted BdThemes for a statement, but we have not received a response.
Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.
The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.
Weekend Open Thread: Mattifying Sunscreen
Frugal Friday’s Workwear Report: Cap-Sleeve Pointelle Crewneck Sweater
Jordan Coyle & Cordiamo take Laya Arena Stakes at RDS
Can Astrology Help Find Gold and Silver Trends? A Financial Astrology Guide
US stocks: Dow closes at record on Mideast optimism; SpaceX, AMD drag Nasdaq
Reform UK And Greens Sink To Lowest Favourability Ratings To Date
OpenAI, Anthropic AI agents targeted real people and systems in cyber tests
Nvidia Stock Climbs 2.5% as Chip Sector Rally Builds Ahead of AMD Earnings, Nvidia’s Own Report Looms
Polymarket targets $20 billion valuation as competition heats up in prediction market sector
Supply chain issues impact Ingredion
CLARITY Act Senate Vote Locked In, But 60-Vote Hurdle Looms Large
Rinn Pharma & Biopharma to join NordicPharmaTrain network
Dow and S&P 500 Hit Records on AI Earnings: When Will the Bubble Burst?
How to Start a Cleaning Business: A Step-by-Step Guide
The Senate has one week: CLARITY’s last August window
Datadog: Best Of Breed For Multiple Reasons
BDC Weekly Review: Private BDC Q2 Numbers Are Strong
Dollar Index Trapped at 100 as Hawkish Fed Meets Official Selling
New York sued, who is next
McDonald’s (MCD) Q2 2026 earnings
You must be logged in to post a comment Login