RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

cybersecurityvulnerability

TRE regex engine shrugs off ReDoS attacks that choke Python's re module

Simon Willison built an experimental Python ctypes binding to Ville Laurikari's TRE regex library after noticing antirez had pulled it into Redis. The motivatio

via Simon Willison ·
cybersecuritysupply-chain

Trellix confirms breach after attackers access portion of source code repo

Trellix, the cybersecurity vendor born from the 2021 McAfee Enterprise and FireEye merger, has disclosed unauthorized access to part of its source code reposito

via BleepingComputer ·
cybersecuritymalware

VENOMOUS#HELPER campaign abuses SimpleHelp and ScreenConnect to backdoor 80+ orgs

A phishing operation tracked as VENOMOUS#HELPER has compromised more than 80 organizations, predominantly in the U.S., by weaponizing legitimate Remote Monitori

via The Hacker News ·
cybersecurityvulnerability

Weaver E-cology RCE flaw exploited days after patch, weeks before disclosure

Attackers began hitting CVE-2026-22679, an unauthenticated RCE in Weaver E-cology 10.0, on March 17 — five days after the vendor shipped a fix and roughly two w

via BleepingComputer ·
cybersecuritysupply-chain

Weekly Recap: cPanel Zero-Day, Linux Copy Fail, GitHub RCE, and TeamPCP's Supply Chain Spree

Attackers spent the week occupying systems rather than just breaching them. CVE-2026-41940, a critical authentication bypass in cPanel/WHM, is under active expl

via The Hacker News ·
aitech-culture

Willison's April 2026 newsletter: Opus 4.7, GPT-5.5 price hikes, Claude Mythos security

Simon Willison's sponsors-only April newsletter covers the month's frontier model churn: Anthropic's Opus 4.7 and OpenAI's GPT-5.5 both shipped with price incre

via Simon Willison ·
aitech-culture

Y Combinator's quiet 0.6% stake in OpenAI now worth $5B+

John Gruber surfaced a figure that has been notably hard to pin down: Y Combinator holds roughly 0.6 percent of OpenAI. Against the company's current $852 billi

via Simon Willison ·
devopstech-culture

Alert-driven monitoring: dashboards are decoration, alerts are the job

Most monitoring projects center on dashboards because they look like productive output, but nobody actually sits and watches charts all day. The real product of

via Hacker News ·
tech-cultureai

Ask.com shuts down after 25 years as IAC exits search business

IAC has wound down Ask.com, ending the search engine's 25-year run as of May 1, 2026. The company framed the closure as part of a broader strategic narrowing, c

via Hacker News ·
tech-culture

Banksy statue of suited man blinded by flag appears overnight in central London

A statue attributed to Banksy went up overnight in Waterloo Place, London, depicting a suited man carrying a wind-blown flag that obscures his vision as he step

via Hacker News ·
tech-cultureopen-source

BYOMesh pushes LoRa mesh radios to 100x existing bandwidth

A new project called BYOMesh claims to deliver roughly 100 times the bandwidth of existing LoRa mesh radio implementations. LoRa, a long-range low-power RF prot

via Hacker News ·
tech-cultureopen-source

DIY galvanic hair electrolysis: a soldering iron, a car battery, and a pop can

A hobbyist documents building a homemade galvanic hair electrolysis machine, the only FDA-recognized permanent hair removal method. Galvanic electrolysis works

via Hacker News ·