ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
25 stories in the last 7 days
The latest Security news, distilled by AI into sharp ~100-word summaries covering cybersecurity, breaches, vulnerabilities, malware and privacy. ByteBrief scans dozens of tech sources and surfaces only what matters, updated hourly. Tap any story for the full brief, or open the original source.
OpenAI is putting $1 billion behind Daybreak for Frontline Defenders, a program delivering cyber tools to water utilities, electric grid operators, local government, community banks, nonprofits, and open-source maintainers. The announcement coincided with the release of GPT-6 Astra.
Infinix launched the Hot 70 Pro smartphone in India. The device introduces new hardware and features for the budget segment. Pricing and full specifications were detailed at the launch event.
Ollie, a San Diego-based personal AI assistant company, raised $7.5 million in seed funding from Khosla Ventures and AI House. Founded by Bill Lennon, Ollie helps families manage tasks via group chat and avoids data sharing for model training.
Plex urges users to update to Plex Media Server 1.43.3 and Plex Desktop 1.115.0, which patch multiple undisclosed security flaws. CVE identifiers have been requested for the issues. Over 360,000 devices expose the Plex Media Server web interface, according to Censys data.
Google patched 12 Chrome vulnerabilities, including CVE-2026-85046, a high-severity type confusion bug in V8 actively exploited in the wild. The flaw allows remote code execution via crafted HTML pages. Users should update to version 152.0.7977.82 for Windows, macOS, and Linux.
The White House added an online arcade to its website on September 3, 2026, featuring five games tied to President Donald Trump's agenda. Titles include "Flappy Bill," "Build the Wall," "Rio Run," "Supply Line," and "Trump Savings Tycoon," focusing on border protection, immigration, and savings accounts.
Samsung released the first software update for the Galaxy S26 FE, bringing the August 2026 security patch that fixes 56 issues and improves stability. The update, firmware version S741NKSU1AZHD, is available first in South Korea.
Aslan Protects raised $20.8 million in seed funding co-led by Khosla Ventures and XYZ Venture Capital. The Washington, D.C. startup builds human-supervised AI operatives for national security and law enforcement. Funds will scale engineering and threat intelligence workforces.
The Galaxy Watch 9 is Samsung's first smartwatch with seamless updates, letting firmware install in the background during use. The roughly 193MB first update carries the August 5, 2026 security patch. The Galaxy Watch Ultra 2 may share the architecture, pending its first update.
Zack Bartel built Tether, an open-source project integrating Apple Continuity features with Linux. It sends iMessages, syncs clipboards, and shows iOS notifications on Linux via secure local network communication and a custom Bluetooth stack.
Adani Ports and Special Economic Zone Ltd. (APSEZ) will launch a dedicated Empty Container Yard (ECY) with integrated warehousing at Mundra Port. The facility offers end-to-end services across the empty container lifecycle, including storage, maintenance, inspection, and movement to exporters and Container Freight Stations. Shares traded at Rs 1707.70, up Rs 21.10 (+1.25%).
Cisco disclosed three critical flaws, including two in IOS XR. CVE-2026-20274 and CVE-2026-20279 score 9.8, covering buffer issues and improper access control. The flaws are addressed in an update release.
BASF's trinamiX unit sued Apple in Midland, Texas, alleging Face ID infringes seven patents for anti-spoofing facial authentication. The technology detects photographs, 3D-printed masks, and silicone replicas. BASF seeks halted infringements and damages, covering iPhones and iPads since the iPhone X.
Upwind Security Inc. raised $300 million in Series C funding led by Bessemer and TCV, with Salesforce Ventures, Greylock, and Craft Ventures participating. The cloud security platform is now valued at $3.8 billion, up $2 billion since the start of the year.
OpenAI pledged $1 billion in subsidized access, training, and technical support for cyber defenders through its Daybreak for Frontline Defenders initiative. The program initially targets U.S. operators of essential services, including water utilities, electric grid operators, and community banks, with plans to expand to partner countries.
Cloudflare opened early access to Vulnerability Discovery and Remediation, using OpenAI's GPT-5.6-Cyber model to find and block code flaws. The service runs in Cloudflare Managed Defense, requires human approval for fixes, and addresses a record 60,475 vulnerabilities logged by September.
OpenAI released GPT-6 Astra, its most intelligent model, initially to Trusted Access Program members, with Plus, Pro, Business, and Enterprise subscribers gaining access in coming days. It excels at computer-use, browsing, software engineering, and cybersecurity, scoring 98.6% on ARC-AGI-3 and a perfect ExploitBench score.
Zscaler beat Q4 estimates with $1.19 adjusted EPS on $898.2M revenue, up 25% year-over-year, but shares sagged after-hours. The Red Canary acquisition added $141M ARR. Fiscal 2027 guidance topped analyst expectations.
France's CNIL fined Hôpital privé de la Loire €500,000 ($580,000) for security failures that led to a 2025 breach exposing data of 727,000 people, including 524,867 patients. The hospital lacked multi-factor authentication and real-time monitoring, allowing an attacker to extract data over several days.
Ugreen's $149.99 MagFlow Pro power bank features a visible liquid-cooling system with a micro-pump and Cyber Window. The 10,000mAh Qi2.2-compatible bank charges wirelessly at up to 25W and via USB-C at up to 45W.
Starting September 11, the EU Cyber Resilience Act requires manufacturers to notify regulators within 24 hours of learning a vulnerability is actively exploited, with a fuller report due within 72 hours. FossID's Aaron Branson says source-code analysis verifies SBOMs against underlying code.
Cloudflare announced early access to Vulnerability Discovery and Remediation, part of Cloudflare Managed Defense. The invitation-only service uses OpenAI Daybreak models, including GPT-5.6 Cyber, through the OpenAI Daybreak Defense Network to detect, prioritize, and propose fixes for code vulnerabilities, with no changes taking effect without human approval.
Astra Security tops a proof-based ranking of autonomous pentesting tools, using dual agents and a walled-off validator that re-exploits findings. NodeZero, XBOW, Pentera, Aikido, Hadrian, Ridge Security, Ethiack, Picus, and Cymulate follow. Astra's report logged a critical vulnerability every 48 seconds through 2025.
A Government Accountability Office report found the Secret Service left drone threats unaddressed before the 2024 Trump assassination attempt in Butler, Pennsylvania. Between 2015 and 2025, the agency faced 83 security incidents but updated policies for only 25, failing to document why others were ignored.
OpenAI is launching an initiative providing subsidized model access to water systems, electricity providers, local governments, and other critical services. President Greg Brockman announced the program at a summit hosting 300 security leaders at company headquarters Thursday, addressing anticipated AI-enabled cyberattacks.