Author: precious

I’m Precious Amusat, Phronews’ Content Writer. I conduct in-depth research and write on the latest developments in the tech industry, including trends in big tech, startups, cybersecurity, artificial intelligence and their global impacts. When I’m off the clock, you’ll find me cheering on women’s footy, curled up with a romance novel, or binge-watching crime thrillers.

The UK’s National Cyber Security Centre (NCSC) has published a formal guidance post telling developers and organisations exactly how much trust to place in AI-generated code, which is otherwise called vibe coding. Written by Toby W, a Principal Security Architect at the NCSC, the blog post lays out what the agency is calling a “vibe coding spectrum,” a framework for how organisations should calibrate their use of AI-assisted software development depending on the risk attached to what they are building. This post is the NCSC’s most practical intervention yet on vibe coding, and it arrives as AI coding tools have…

Read More

North Korea’s Sapphire Sleet hacking group compromised 144 packages in the Mastra AI framework’s npm scope in a single 88-minute automated campaign. Developers who ran a standard install command during that window may have handed a foreign state actor their cloud credentials, LLM API keys, and cryptocurrency wallet data without any visible warning. Microsoft attributed the attack with “high confidence” to Sapphire Sleet, also tracked as BlueNoroff, a North Korean state actor that primarily targets the financial sector. What Mastra Is and Why It Was Targeted Mastra is an open-source TypeScript AI agent framework with over 1.1 million combined weekly…

Read More

Security researchers have identified an active, large-scale credential compromise campaign affecting Fortinet FortiGate firewalls, which has been dubbed FortiBleed. According to Hudson Rock, the dataset contains 73,932 unique firewall URLs across 194 countries and impacts 21,632 unique domains. The number of compromised devices stands at 86,644 as of June 19, 2026, according to data from SOCRadar. And the group behind it is still adding new victims. The dataset was surfaced on June 17, 2026 by security researcher Volodymyr “Bob” Diachenko and verified by Hudson Rock, SOCRadar, Arctic Wolf, and Kevin Beaumont. Among the organizations Hudson Rock says appear in the…

Read More

Cybersecurity researchers at Cybernews recently discovered an exposed database containing roughly 24 billion stolen credential records, making it one of the largest collections of stolen login data ever found on the internet. The records, stored in more than 8.3 terabytes of data, included usernames, email addresses, plaintext passwords, and the login URLs the credentials were meant to unlock. The database was hosted on a publicly accessible Elasticsearch cluster, meaning anyone who knew where to look could browse its full contents without any login or authentication. After the original report was published, researchers learned that the dataset belonged to a threat…

Read More

SpaceX has signed a computing power deal worth up to $6.3 billion with Reflection AI, the open-source artificial intelligence startup founded by former Google DeepMind researchers. Under the agreement, Reflection will pay $150 million per month beginning July 1, 2026, for access to Nvidia GB300 chips at SpaceX’s Colossus 2 data center near Memphis, Tennessee. The contract runs through the end of 2029, although both parties can exit with 90 days’ notice after the first three months. The deal adds Reflection to a growing list of outside companies renting compute capacity from SpaceX, following earlier agreements with Anthropic, Google, and…

Read More

Groq has secured $650 million in new growth capital to accelerate the expansion of its AI inference cloud. The round was led by Disruptive and Infinitum, with participation from investors who elected to reinvest in the company. Six months after the company handed over its founder, president, and core engineering team to Nvidia in a deal worth roughly $20 billion, it is back under new leadership and betting everything on the one market it was originally built for. What Led to This In December 2025, Nvidia agreed to a non-exclusive license to Groq’s technology. Groq’s founder Jonathan Ross, who helped…

Read More

New York Attorney General Letitia James has served OpenAI with a subpoena, acting on behalf of a coalition of 42 state attorneys general. The subpoena seeks documents covering OpenAI’s advertising practices, user engagement and retention strategies, handling of consumer and health data, its treatment of minors and seniors, use of deep learning models, model sycophancy, and internal company policies. AI Sycophancy, in this context, describes a chatbot that tells a user what they want to hear rather than what is true or safe. It is the broadest legal investigation any state government has opened against an AI company, and it…

Read More

Google has fixed a security flaw in its Vertex AI cloud platform that lets attackers hijack a victim’s machine learning model uploads and run malicious code inside Google’s own infrastructure, without ever touching the victim’s account. What the Flaw Allowed The vulnerability lived inside the Vertex AI SDK for Python, the tool many developers use to build and upload machine learning models to Google Cloud. Palo Alto Networks’ Unit 42 named the technique “Pickle in the Middle.” An attacker needed only two things to pull it off, a Google Cloud project of their own and the victim’s project ID, a…

Read More

Microsoft confirmed its June 2026 Patch Tuesday update on June 9, fixing dozens of Windows vulnerabilities. Hours later, a researcher already banned from GitHub published a new zero-day exploit targeting Microsoft Defender, marking the third consecutive month the researcher has timed a disclosure to Patch Tuesday, which is the day Microsoft ships its monthly batch of security fixes. What Happened On June 9, the researcher known as Nightmare Eclipse, who also posts as Chaotic Eclipse, published proof of concept code for a new Windows zero day named RoguePlanet. The exploit targets Microsoft Defender and works against fully patched Windows 10…

Read More

Elon Musk’s net worth has crossed $1 trillion, making him the world’s first trillionaire. This comes a day after SpaceX went public for the first time and its stock began trading on Nasdaq. SpaceX initially priced its initial public offering (IPO) at $135 per share, selling 555.6 million shares and raising $85.7 billion. This offering valued the company at roughly $1.77 trillion, making it the largest IPO on record and surpassing Saudi Aramco’s $29 billion raise in 2019. And because Musk owns roughly 40 % of SpaceX, that stake alone immediately became worth hundreds of billions of dollars. This Status…

Read More