Author: Gary Behan

Software engineer and video game uber-nerd.

Microsoft has shipped a Windows WUSA installer fix that resolves over a year’s worth of pain for enterprise administrators, bundling the repair into the June 2026 Patch Tuesday cumulative updates. The bug, first acknowledged in August 2025, caused Windows updates to fail with an ERROR_BAD_PATHNAME error whenever the Windows Update Standalone Installer (WUSA) was used to deploy .msu files from a network share containing multiple such files.WUSA is a built-in Windows command-line tool that allows administrators to install and uninstall Microsoft Standalone Update (.msu) files via the Windows Update Agent API, the sort of workhorse utility that rarely makes headlines…

Read More

Federal agencies in the United States have been ordered to patch the Ivanti Sentry CVE-2026-10520 exploit within three days, after the internet security watchdog Shadowserver reported that attackers had already backdoored exposed Sentry gateways less than 24 hours after Ivanti issued a fix. The flaw carries a maximum severity rating and stems from an OS command injection weakness in Ivanti’s Sentry security gateway appliance, formerly known as MobileIron Sentry.Ivanti released patches on Tuesday, stating at the time that it had no evidence of in-the-wild exploitation. By Wednesday, Shadowserver had already observed active attacks. According to Dark Reading, the vulnerability affects…

Read More

The AudiA6 ransomware laundering service has been dismantled by authorities from 11 countries, with two individuals arrested in Georgia accused of running a cryptocurrency laundering network that processed more than $380 million in criminal proceeds. The takedown, supported by Europol and Eurojust, culminated in arrests, property searches, domain seizures and the freezing of hundreds of thousands of euros in cryptocurrency.According to Europol, AudiA6 operated as an industrial-scale laundering hub between 2022 and 2025, built around thousands of fraudulent exchange accounts opened using stolen or purchased identities. Europol linked the service to more than 15 distinct international investigations involving ransomware attacks…

Read More

Microsoft has fixed the BitLocker recovery Windows Server 2025 problem that forced some enterprise machines into recovery mode after installing the April 2026 security update, and it only took two months. The fix arrived during June’s Patch Tuesday via cumulative updates KB5094125 (Windows Server 2025) and KB5093998 (Windows 11 23H2).BitLocker encrypts storage drives to prevent unauthorised access, and it typically demands a recovery key when it detects changes to a system’s boot environment, such as a TPM (Trusted Platform Module) update or a new boot manager. That behaviour is by design. What was not by design was the behaviour introduced…

Read More

XBOW has published a detailed evaluation of Mythos Preview offensive security capabilities, concluding that Anthropic’s model represents a genuine step forward in vulnerability discovery (particularly from source code) while falling short of magic when deployed against live systems. The evaluation comes after XBOW received early access roughly three months before publication, testing the model through benchmarks, interactive sessions and agent integrations. The timing matters. Mythos Preview was announced on 7 April 2026 and was not generally available at launch, with access running through Project Glasswing, an invitation-only partner programme covering 12 founding organisations and roughly 40 vetted critical-infrastructure operators, according…

Read More

NFCShare Android malware is now being distributed through fake banking app updates hosted on GitHub, with new variants targeting customers of multiple banks and financial institutions across Europe in a campaign designed to steal payment card data via NFC. The malware tricks victims into holding their payment card near their phone’s near-field communication (NFC) chip by presenting a fake verification screen. Once the card is in range, NFCShare reads the data using Android’s IsoDep interface and EMV commands, harvesting the card number, card type, expiry date, and a four-digit PIN that the victim enters under the pretence of a routine…

Read More

Oxford University has disclosed an Oxford CareerConnect data breach after its third-party provider, Group GTI, confirmed that the CareerConnect careers platform had been compromised on 28 May. Attackers gained access to users’ first names, last names, email addresses and encrypted passwords, at least for those accounts not protected by Single Sign-On (SSO).The breach is limited to GTI’s own systems. Oxford has stated there is no evidence that university systems themselves were affected, and both GTI and the university say they have found no indication that students’ passwords or financial information were accessed. Course information, uploaded files, appointment data and financial…

Read More

I was never a fan of Dead Island. While the idea of an island infested with Zombies mixed with first person melee gameplay mechanics sounded like something that I would definitely be a fan of, the end result was a mixed bag of unfulfilled potential. Riptide fixed some of the issues, but created some new ones. So I was hopeful that Techland’s new game; Dying Light could learn from it’s mistakes and improve on the existing formula. The result is, unfortunately, another mixed bag. The first 5 or so hours of Dying Light are a great time. Running, kicking, hacking,…

Read More

I wanted to like Assassin’s Creed Unity, I really did. It had a lot going for it; next gen visuals, co-op in an assassin sandbox and a lot of positive press leading up to its release. I was always a little skeptical about Unity after they announced that the series would return to a city based sandbox, removing the ships entirely. This felt like a scaling back in terms of the scope the series had become accustomed to, which has become a symptom of high fidelity graphics in this new generation of consoles. I managed to get Unity on launch…

Read More

I’ve been waiting for The Evil Within for a year and a half since it was first announced. Survival horror, as a genre, had suffered some serious missteps with the likes of Resident Evil 5, Silent Hill: Homecoming and Clive Barkers Jericho. Not even the awesomeness that was Dead Space could save it. Especially when you consider the 2 lacklustre sequels that followed, effectively killing the initial momentum of the series. Since then, we haven’t seen a mainstream survival horror game come out that feels like it might give the genre a much needed shot in the arm. Until now.…

Read More