LinkedIn

Winsage
May 16, 2025
Microsoft addressed issues with dual-boot installations involving Linux that were caused by updates released in August, which disrupted many configurations and Linux boot media. The updates aimed to enhance security by blocking outdated boot managers but resulted in error messages indicating a security policy violation. To resolve these issues, Microsoft created the Secure Boot Advanced Targeting (SBAT) update to prevent installation on dual-boot systems, but the detection mechanism was often ineffective. The SBAT update was paused in September, and Microsoft announced that the problem was resolved with security updates released in May. Affected Windows versions include Windows Server editions from 2012 to 2022, Windows 11 (versions 23H2, 22H2, and 21H2), and Windows 10 (versions 22H2, 21H2, and Enterprise 2015 LTSB). Microsoft also provided guidance for users to prevent the SBAT update and steps to restore dual-boot systems.
AppWizard
May 16, 2025
The gaming community has shifted its focus from Shift Up, the developer of Stellar Blade, to Sony, the game's publisher, due to issues surrounding the game. This shift parallels last year's backlash against Sony during the launch of Helldivers II, where player discontent arose from the mandatory inclusion of PSN. The community is questioning the extent of Sony's responsibility for the current issues with Stellar Blade, and there is less than a month for the team to address these concerns. The situation could significantly impact the goodwill that Stellar Blade has garnered since its launch. The dialogue about publisher influence in game development is becoming increasingly relevant as the relationship between developers, publishers, and players remains complex.
Tech Optimizer
May 14, 2025
Databricks intends to acquire Neon, a leader in serverless Postgres technology, to enhance its database and developer experience. The database market is valued at over [openai_gpt model="gpt-4o-mini" prompt="Summarize the content and extract only the fact described in the text bellow. The summary shall NOT include a title, introduction and conclusion. Text: Databricks, a prominent player in the Data and AI landscape, has announced its intention to acquire Neon, a leading innovator in serverless Postgres technology. This strategic move comes as the database market, valued at over 0 billion, stands on the brink of significant transformation driven by advancements in AI. Databricks aims to enhance Neon's database and developer experience, catering to both existing and prospective customers and partners. Neon: An Open, Serverless Foundation for Developers and AI Agents In the evolving landscape of software development, AI agents are becoming indispensable. Neon is specifically designed to facilitate the workflows of these agents. Recent telemetry data indicates that more than 80 percent of databases provisioned on Neon are generated automatically by AI agents, highlighting the rapid growth of agent-driven workloads. These workloads present distinct characteristics that set them apart from traditional human-driven processes: Speed + flexibility: AI agents operate at machine speed, eliminating the bottlenecks often associated with traditional database provisioning. Neon's capability to launch a fully isolated Postgres instance in under 500 milliseconds, along with its support for instant branching and forking of database schemas and data, ensures that experiments can be conducted without disrupting production environments. Cost proportionality: The demand for a cost structure that scales with usage is paramount for agents. Neon's architecture separates compute and storage, allowing for a total cost of ownership that aligns with the actual queries executed across thousands of ephemeral databases. Open source ecosystem: AI agents thrive in an environment that leverages the extensive Postgres community. Neon is fully compatible with Postgres and integrates seamlessly with popular extensions. Ali Ghodsi, Co-Founder and CEO of Databricks, remarked on the significance of this acquisition: "The era of AI-native, agent-driven applications is reshaping what a database must do. Neon exemplifies this shift, with four out of five databases on their platform being created by code rather than human intervention. By integrating Neon into Databricks, we are providing developers with a serverless Postgres solution that meets the demands of agentic speed, flexible economics, and the openness of the Postgres community." Databricks and Neon's Shared Vision The collaboration between Databricks and Neon aims to dismantle the conventional constraints of databases that require simultaneous scaling of compute and storage, a limitation that can impede AI workloads. The fusion of Neon's serverless Postgres architecture with the Databricks Data Intelligence Platform is set to empower developers and enterprise teams to efficiently construct and deploy AI agent systems. This integration not only mitigates performance bottlenecks associated with numerous concurrent agents but also streamlines infrastructure, reduces costs, and fosters innovation—all while maintaining Databricks' core principles of security, governance, and scalability. Nikita Shamgunov, CEO of Neon, expressed optimism about the future: "Four years ago, we set out to build the best serverless Postgres for the cloud, highly scalable and open to all. With this acquisition, we aim to accelerate that mission, bolstered by the support and resources of an AI powerhouse. Databricks was founded by open-source pioneers dedicated to simplifying the interaction between developers and data at any scale. Together, we are embarking on a new chapter in our ambitious journey." Following the completion of the transaction, Neon's skilled team is expected to join Databricks, bringing valuable expertise and continuity to Neon's thriving community. This partnership will enable organizations to break down data silos, streamline architecture, and develop AI agents that are more responsive, reliable, and secure. Further insights will be shared at the upcoming Data + AI Summit, scheduled to take place in San Francisco from June 9 to 12. Details Regarding the Proposed AcquisitionThe acquisition is subject to customary closing conditions, including necessary regulatory approvals. About NeonFounded in 2021 by a team of seasoned database engineers and Postgres contributors, Neon aims to provide a serverless Postgres platform that accelerates the development of reliable and scalable applications, catering to projects ranging from personal endeavors to enterprise-level solutions. About DatabricksDatabricks is a leader in Data and AI, trusted by over 10,000 organizations globally—including notable names like Block, Comcast, Condé Nast, Rivian, and Shell, as well as over 60% of the Fortune 500. The Databricks Data Intelligence Platform empowers organizations to harness their data effectively and leverage AI capabilities. Headquartered in San Francisco, Databricks was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake, and MLflow. For more information, follow Databricks on X, LinkedIn, and Facebook." max_tokens="3500" temperature="0.3" top_p="1.0" best_of="1" presence_penalty="0.1" frequency_penalty="frequency_penalty"] billion and is undergoing transformation due to AI advancements. More than 80% of databases on Neon are provisioned automatically by AI agents, which operate at machine speed and require a cost structure that scales with usage. Neon's architecture separates compute and storage, aligning costs with actual queries. The integration of Neon's serverless Postgres with Databricks aims to improve AI workloads by dismantling traditional database constraints. Following the acquisition, Neon’s team will join Databricks, enhancing their community and capabilities. The acquisition is subject to customary closing conditions and regulatory approvals. Neon was founded in 2021 to provide a scalable serverless Postgres platform. Databricks serves over 10,000 organizations globally, including many Fortune 500 companies.
AppWizard
May 14, 2025
Since April 2024, the threat actor Marbled Dust has been exploiting a zero-day vulnerability (CVE-2025-27920) in the Output Messenger chat application, targeting user accounts that have not applied necessary fixes. This exploitation has resulted in the collection of sensitive data from users in Iraq, specifically linked to the Kurdish military. Microsoft has high confidence in this assessment and notes that Marbled Dust conducts reconnaissance to identify potential targets using Output Messenger. Marbled Dust has successfully utilized this vulnerability to deploy malicious files and exfiltrate data. Microsoft notified the application’s developer, Srimax, about the vulnerability, leading to the release of a software update. A second vulnerability (CVE-2025-27921) was also found, but no exploitation of this second flaw has been observed. The zero-day vulnerability allows an authenticated user to upload malicious files to the server's startup directory. Marbled Dust has exploited this flaw to place a backdoor file, OMServerService.vbs, in the startup folder, enabling them to access communications and sensitive data indiscriminately. The attack chain begins with Marbled Dust gaining access to the Output Messenger Server Manager, likely through DNS hijacking or other credential interception techniques. Once inside, they exploit the vulnerability to drop malicious files, including a GoLang backdoor, which connects to a Marbled Dust command-and-control domain for data exfiltration. To mitigate this threat, Microsoft recommends updating to the latest version of Output Messenger, activating various security protections, and implementing rigorous vulnerability management strategies. Microsoft Defender XDR customers can identify potential threat activity through specific alerts related to Marbled Dust and utilize advanced hunting queries for detection. Indicators of compromise include traffic to the domain api.wordinfos[.]com, associated with Marbled Dust activities.
Tech Optimizer
May 12, 2025
Cybersecurity developers have created a tool called defendnot, which disables Windows Defender by utilizing undocumented Windows Security Center (WSC) APIs. This tool is a successor to the no-defender project, which was taken down due to DMCA challenges. The developer reverse-engineered WSC’s validation algorithms and identified Taskmgr.exe as a suitable process to host the necessary code. Defendnot persists across reboots by adding itself to Windows autorun and can be managed via a command-line interface with options to disable Windows Defender and Windows Firewall. Unlike its predecessor, defendnot does not use third-party antivirus code. Security experts warn that disabling protection mechanisms should only be done in controlled environments by knowledgeable users.
Tech Optimizer
May 5, 2025
X Business, an e-commerce store specializing in handmade home décor, experienced a cybersecurity incident involving a malware strain called Chimera. The attack began during a routine update to their inventory management system and escalated within 12 hours, resulting in halted customer orders, locked employee accounts, and a crashed website. The attackers demanded a ransom of 0,000 in cryptocurrency, threatening to expose sensitive customer data. Chimera is an AI-driven malware that adapts its code to evade detection, targeting both Windows and macOS systems. It exploited a zero-day vulnerability in Windows' Print Spooler service and bypassed macOS security measures by forging code signatures. The malware used social engineering tactics to deceive employees into activating malicious payloads, leading to compromised systems and encrypted customer data. The recovery process took 48 hours, utilizing cybersecurity tools like CrowdStrike Falcon and SentinelOne Singularity to identify and isolate the malware. Data restoration was achieved through Acronis Cyber Protect and macOS Time Machine, while vulnerabilities were addressed with Qualys and emergency patch deployment via WSUS. The network security framework was improved using Cisco Umbrella and Zscaler Private Access to implement a Zero Trust architecture. The incident highlights the need for small enterprises to adopt proactive cybersecurity strategies, including a 3-2-1 backup approach, Zero Trust models, investment in AI-driven defense tools, and employee training to recognize social engineering attempts.
AppWizard
May 5, 2025
The 80 Level team is seeking official confirmation from Shift Up regarding recent developments and will provide updates once a response is received. Users are encouraged to add Stellar Blade to their Steam wishlist and join the 80 Level Talent platform and Discord server.
Search