security flaw
Firefox's biggest redesign in years just landed with Nova
PCWorld notes that Firefox 157 introduces the Nova redesign, the browser's biggest visual overhaul in years, featuring rounded corners, subtle color gradients, and 12 unique themes with light and dark modes. A new Compact Mode helps users save screen space, making Firefox more practical for smaller displays. Mozilla also released ESR security updates fixing dozens of vulnerabilities, with older system support continuing until March 2027. Firefox 157 is out for Windows, macOS, Linux, and Android and the biggest change in this version is the new Nova design, which brings a more modern look to the browser. Mozilla has also fixed over 70 security vulnerabilities, and updates are also available for the Firefox ESR versions. The release of Firefox 158 is scheduled for October 13th, 2026.
Chrome 154 fixes 108 security flaws, including 11 critical bugs
PCWorld reports that Google has released Chrome 154, fixing 108 security vulnerabilities, including 11 classified as critical risks. The update is available across Windows, macOS, Linux, Android, and iOS, with external researchers helping identify 32 of the patched issues. Users are strongly advised to update Chrome immediately via the Help menu to protect against these serious security flaws.
Microsoft Defender is causing slow VLC startups. Here's the fix
When you purchase through links in our articles, we may earn a small commission. Microsoft Defender is causing slow VLC startups. Here's what you can do to fix it For some time now, there have been complaints across various online forums about how the popular VLC Media Player takes several seconds (sometimes half a minute!) to start up. The problem occurs regardless of size or the type of media file you wish to play. There's also some unfounded accusations against the VideoLan developers; one often reads claims that Microsoft is deliberately slowing down the open-source media player.
Google just fixed 42 Chrome security flaws. Update now
PCWorld reports that Google has patched 42 security vulnerabilities in Chrome, with three classified as critical risks affecting Windows, macOS, Linux, Android, and iOS users. Many of the fixes address use-after-free memory flaws, and while none have been exploited yet, the risks are serious enough to warrant immediate action. Users should update Chrome now via the About Google Chrome menu to stay protected.
Latest Windows 11 update restores your taskbar control, patches 995 security flaws
The September Windows 11 update set a new patching record with almost 1,000 security flaws fixed. Lance Whitney is a technology journalist with an IT background. He's written for TechRepublic, PCMag, Macworld, and Time, among others, He also teaches classes in AI, cybersecurity, and social media. The September Windows update finally lets you move the taskbar to any side. It also enhances the Start menu and Search window.
Firefox 155 patches 30 security flaws, adds sortable tab groups
When you purchase through links in our articles, we may earn a small commission. Mozilla's latest Firefox update fixes 10 high-risk security flaws and rolls out small but useful features, from Switch Pro controller support to sortable tabs. The newest major release of Firefox 155 for Windows, macOS, Linux, and Android brings a number of improvements, including support for Nintendo Switch Pro controllers and sortable tab groups. Mozilla has also patched over 30 security vulnerabilities, and updates are also available for the ESR versions of Firefox for older systems. The release of the next major version, Firefox 156, is already scheduled for September 15th, with time for a bug-fix update on September 8th.
Chrome just patched 320 security flaws, and paid 25K for one of them
When you purchase through links in our articles, we may earn a small commission. Google's latest Chrome update fixes 327 security flaws. None are being exploited in the wild, but you should update anyway. According to Google, none of the patched vulnerabilities are being exploited in the wild yet. Google has also released Chrome for Android 152.0.7977.64 and Chrome for iOS 152.0.7977.64 this week.
Moltbook, the Social Network for AI Agents, Exposed Real Humans' Data
Plus: Apple's Lockdown mode keeps the FBI out of a reporter's phone, Elon Musk's Starlink cuts off Russian forces, and more. An analysis by WIRED this week found that ICE and CBP's face recognition app Mobile Fortify, which is being used to identify people across the United States, isn't actually designed to verify who people are and was only approved for Department of Homeland Security use by relaxing some of the agency's own privacy rules. WIRED took a close look at highly militarized ICE and CBP units that use extreme tactics typically seen only in active combat. Two agents involved in the shooting deaths of US citizens in Minneapolis are reportedly members of these paramilitary units. And a new report from the Public Service Alliance this week found that data brokers can fuel violence against public servants, who are facing more and more threats but have few ways to protect their personal information under state privacy laws.
GitHub's Copilot Code Review: Can AI Spot Security Flaws Before You Commit?
As software development practices increasingly adopt AI-powered tools, ensuring that such tools can support secure coding has become critical. This study evaluates the effectiveness of GitHub Copilot's recently introduced code review feature in detecting security vulnerabilities. Using a curated set of labeled vulnerable code samples drawn from diverse open-source projects spanning multiple programming languages and application domains, we systematically assessed Copilot's ability to identify and provide feedback on common security flaws. Contrary to expectations, our results reveal that Copilot's code review frequently fails to detect critical vulnerabilities such as SQL injection, cross-site scripting (XSS), and insecure deserialization. Instead, its feedback primarily addresses low-severity issues, such as coding style and typographical errors. These findings expose a significant gap between the perceived capabilities of AI-assisted code review and its actual effectiveness in supporting secure development practices. Our results highlight the continued necessity of dedicated security tools and manual code audits to ensure robust software security.
Urgent warning as 1.5 MILLION private photos are leaked from BDSM dating apps - so, have your sexy snaps been exposed?
Cybersecurity researchers have issued an urgent warning as almost 1.5 million private photos from dating apps are exposed. Affected apps include the kink dating sites BDSM People and CHICA, as well as LGBT dating services PINK, BRISH, and TRANSLOVE - all of which were developed by M.A.D Mobile. The leaked files include photos used for verification, photos removed by app moderators, and photos sent in direct messages between users - many of which were explicit. These sensitive snaps were being stored online without password protection, meaning anyone with the link could view and download them. Researchers from Cybernews, who discovered the vulnerability, say this easily exploited security flaw put up to 900,000 users at risk of further hacks or extortion.