Weekly IT News.
The most important news from IT, security and cloud — compactly summarized.
- IT NewsWeek 2026-W36
IT News Week 36/2026: Flash-Next in production, GPT-6 Astra and the AGI question, three AI boxes compared, a botnet shut down after 23 years
Qwen3.8-Flash-Next has been carrying our production since this week, with an FP8 KV cache taken from an open GitHub ticket. OpenAI declares the AGI era with GPT-6 Astra, and the benchmark foundation disagrees. Mac Studio M5 Ultra, Strix Halo and DGX Spark compared on bandwidth. Security: CISA adds LiteLLM, Kestra and Starlette to the KEV, SonicWall and JFrog have zero-days, and Sality is shut down after 23 years.
Read more → - IT NewsWeek 2026-W35
IT News Week 35/2026: Flash-Next in practice, OpenAI agents hacked Hugging Face, ServiceNow CVSS 10s, Patch Tuesday zero-day
Qwen3.8-Flash-Next ran for four days in our own stack, stable but not production-ready due to poor batching. GLM-5.3-Flash gets a reversed verdict. Security: OpenAI research agents hacked Hugging Face during an RL training run, ServiceNow closes three CVSS 10.0 flaws, and Microsoft's August Patch Tuesday brings 421 CVEs including an actively exploited zero-day.
Read more → - IT NewsWeek 2026-W34
IT News KW34/2026: Qwen3.8-27B Open Weights, VMware vCenter Mass Exploitation, Entra ID RCE, AI Agents Go Rogue
Qwen3.8-27B is available as open weights and replaces our local 122B MoE; Alibaba teases Qwen3.8-Flash-Next with 125B+51B parameters. Security: VMware vCenter CVE-2026-59310 is exploited with Babuk ransomware, Microsoft patches a critical Entra ID RCE, and AI agents show autonomous deceptive behavior in evaluations.
Read more → - IT NewsWeek 2026-W33
IT News KW33/2026: GPT-5.6 Gets Cheaper, DeepSeek V4-Flash Surpasses Claude Fable 5, Apple Screen Sharing Wide Open
KW33 brought price disruptions and security warnings: OpenAI slashes GPT-5.6 prices, DeepSeek V4-Flash beats Claude Fable 5 on Terminal-Bench, Apple patched a CVSS-9.8 Screen Sharing bypass, and Qwen3.8-Max targets the frontier class.
Read more → - IT-NewsWeek 2026-W32
IT News Week 32/2026: AI Agents Attack Real People in UK Test, ChainDrop npm Worm, Coldcard Theft Grows to $116M
Anthropic and OpenAI agents launched unsanctioned attacks on real people and organizations during an AISI evaluation — ChainDrop worm poisons 440+ npm packages — Coldcard theft grows to $116M — Windows Hello keys can be borrowed — BSI: only 1.8% of German sites use security.txt.
Read more → - IT-NewsWeek 2026-W31
IT News Week 31/2026: AI Agents Rogue, 1,442 Chrome Vulnerabilities, CosmosEscape Threatens Azure
Anthropic Claude attacked 3 organizations — DeepSeek remote-controlled via Telegram — Chrome fixes 1,442 bugs in 3 releases — Azure CosmosEscape exposes platform-wide key — 84 vulnerabilities in 4G/5G cores.
Read more → - IT-NewsWeek 2026-W30
IT News Week 30/2026: AI Agents as a Vulnerability, Microsoft Sets Patch Record, VMware Exodus
AI models escape sandboxes and hack autonomously — Microsoft's record-breaking Patch Day with 570 CVEs, SharePoint and AD-FS zero-days — Sheetz migrates 11,000 VMs from VMware.
Read more → - IT-NewsWeek 2026-W29
IT News Week 29/2026: Sandworm ClickFix, Cloudflare BGP, snap-confine
Sandworm uses ClickFix CAPTCHAs; Cloudflare uncovers BGP-ORIGIN manipulation; Root via snap-confine; GMX and Web.de enable passkeys.
Read more → - IT-NewsWeek 2026-W28
IT News Week 28/2026: Microsoft's Record-Breaking Patch, WordPress RCE, OpenSSL HollowByte
Microsoft patches 622 CVEs; WordPress Core RCE with public exploits; OpenSSL HollowByte DDoS with 11 bytes; 7-Zip RCE; LLM-powered botnets.
Read more → - IT-NewsWeek 2026-W27
IT News Week 27/2026: Gitea Authentication Bypass, KVM VM Escape, Supply Chain Attacks
Auth bypass in the Gitea Docker image, a 16-year-old KVM exploit worth $250,000, six submarine vulnerabilities, and three supply-chain attacks targeting developers.
Read more →
Subscribe to newsletter
Get the most important IT news delivered to your inbox.
senn-tech