remote

AppWizard
September 20, 2026
Google is rolling out a fix for the cellular signal icon bug on Android Auto, which has been missing but does not affect the app's performance. The fix is currently available to beta users, with the cellular signal icon reappearing after installing the latest beta build. The rollout is phased, and it is unclear who will receive the fix initially. A broader announcement is expected when Android Auto version 17.8 is ready for production devices. Additionally, Google plans to introduce support for widgets and video apps, with YouTube being one of the first apps to offer this functionality. The update to version 17.8 is anticipated to be approved through the Google Play Store by the end of the week.
AppWizard
September 19, 2026
Security researchers have identified an Android banking Trojan named RatHat, which utilizes artificial intelligence, accessibility features, and Android Debug Bridge (ADB) to steal financial credentials, PINs, and one-time passcodes. Unlike traditional malware, RatHat employs a live AI assistant that interacts with the Android accessibility tree, allowing it to make real-time decisions based on the victim's screen content. The infection typically starts with social-engineering tactics, leading victims to counterfeit download pages where they are tricked into sideloading a malicious APK. Once installed, RatHat prompts users to enable Android Accessibility Service permissions, which it exploits to navigate Developer Options and enable Wireless Debugging. This grants it shell-level ADB access, allowing it to bypass application sandbox restrictions. RatHat deploys two native binaries for executing commands and maintaining a connection to the attacker's infrastructure. It targets banking applications through credential-stealing overlays and can intercept SMS messages for transaction verification codes. Additionally, it can record touch coordinates to reconstruct PINs and unlock patterns. RatHat includes persistence mechanisms to restore itself after removal, and users are advised to perform a factory reset if they suspect compromise. To reduce infection risk, users should avoid sideloading apps from unknown links, deny unnecessary Accessibility Service requests, and refrain from enabling Developer Options or Wireless Debugging for unfamiliar applications.
Winsage
September 19, 2026
Microsoft resolved an issue that caused misleading alerts indicating that Defender Antivirus was disabled after recent updates. This fix was confirmed in an update to the Windows release health dashboard and was implemented in the Microsoft Defender Antivirus update (version 4.18.26080.4) rolled out on September 17. The bug, acknowledged by Microsoft in late August, affected users in the Release Preview Channel of the Windows Insider program since at least June and impacted all supported versions of Windows clients and servers. Users received erroneous notifications in the Windows Security app prompting them to activate Microsoft Defender Antivirus, despite it functioning correctly. Misleading alerts could appear upon Windows startup and intermittently thereafter, even when notification settings were disabled.
Winsage
September 18, 2026
Microsoft acknowledged a bug affecting Excel's copy and paste functionality that emerged after the September Patch Tuesday update. They have released an out-of-band update to resolve various issues, including the Excel bug. Instructions for users to navigate the issue include using the Paste Special feature and selecting options like Formulas, Values, or Links. Microsoft is investigating the root cause of the issue and plans to implement broader fixes. Additionally, Windows 11 is being refreshed to streamline the update process and reduce bugs.
AppWizard
September 17, 2026
Security researchers at Zimperium have identified a new strain of Android malware called RatHat, which is linked to threat actors from China and is designed to steal sensitive credentials and banking information. RatHat infiltrates devices through phishing sites, malvertising, and SMS phishing (smishing), tricking users into downloading malicious Android package kits (APKs). The malware uses a dropper to activate its payload, which is hidden in encrypted assets, and employs techniques to bypass Android's security measures. RatHat consists of three main components: a malicious Android application, a Go agent (liblocal-service.so), and an FRP client (libmedia_codec.so). The app collects sensitive information such as banking credentials, notifications, 2FA codes, OTP keys, and screen inputs. It features a generative AI user interface-automation engine that communicates in Mandarin and can perform various tasks like determining screen coordinates and issuing navigation commands. The Go agent acts as a command-and-control executor, executing commands to bypass app-level security and manage system-level tasks. The FRP client maintains a secure reverse tunnel to the attacker's server, allowing ongoing remote access to the device. The architecture of RatHat demonstrates the inadequacy of traditional mobile security measures against such advanced threats.
Winsage
September 17, 2026
Microsoft plans to submit proposals for a data center in Slough, England, potentially as early as autumn. This follows a consultation with local residents, during which Microsoft highlighted the importance of data centers in modern life. A petition opposing the construction has gained significant support, and hundreds of protesters gathered at the proposed site, expressing concerns about environmental impacts, including noise pollution. Microsoft has received approval for a similar project from Leeds City Council, but the decision for the Slough data center will be made by Chief Planning Officer Martin Elliot, who will consider community feedback.
Winsage
September 17, 2026
On September 14, 2026, Microsoft released KB5129195, an out-of-band cumulative update for Windows 11 versions 24H2 and 25H2, transitioning systems to build 26100.9457 for 24H2 and 26200.9457 for 25H2. The update addresses several regressions, including failed connections and sign-ins in Remote Desktop Services, host-folder sharing failures in Plan9 file sharing for HCS-managed Linux virtual machines, and failures affecting 8-channel and 3D-audio modes in USB Audio Class 1.0. However, it does not fix ongoing issues with AMD Radeon graphics cards, such as freezes, black screens, and driver timeouts, which have affected various hardware configurations. KB5129195 is available through multiple distribution channels, including Windows Update and WSUS.
Search