Every published Canopy story, newest first — free, unedited, no paywall.
Hardware & Devices LG monitors auto-install software on Windows PCs via driver updates, including McAfee advertising Hardware vendors using Windows Update to silently install applications raises questions about driver delivery boundaries and user consent.
Privacy & Regulation AliExpress fined $625 million for failing to remove unsafe products under EU Digital Services Act The record DSA fine signals stronger enforcement of platform accountability for product safety in EU markets.
Artificial Intelligence Adobe Indigo camera app adds generative AI editing features Adobe's experimental camera app pivots from natural photography to AI editing, reflecting broader industry tension about computational photography and image authenticity.
Open Source GitHub Sponsors reaches $100 million milestone for open source maintainers GitHub's platform has distributed $100 million to open source maintainers since launch, marking a significant milestone in monetizing critical infrastructure work.
Cloud & Infrastructure Windows Server Update Services fail under Microsoft metadata load Enterprise patch management infrastructure is breaking down as Microsoft's update metadata volume overwhelms on-premises systems, leaving existing deployments unable to synchronize.
Security Microsoft 365 calendars exploited as command-and-control infrastructure in espionage campaign Attackers are weaponizing trusted Microsoft cloud services to evade detection, hiding espionage commands in calendar appointments scheduled decades into the future.
Security OpenCode raises security concerns about VSCode extension execution Developer tools that execute code from remote repositories without clear isolation boundaries introduce supply chain risks to local development environments.
Security Romania's entire land registry database wiped by hacker A successful attack on a national land registry threatens property rights and legal certainty for an entire country's real estate system.
Privacy & Regulation EU artificial intelligence transparency requirements take effect August 2 Companies deploying AI systems in the EU must disclose when content is AI-generated and implement detection mechanisms for synthetic media under new regulations.
Privacy & Regulation EU-US visa-free travel agreement would grant American authorities access to sensitive biometric data The proposed agreement would transfer EU citizens' fingerprints, facial recognition data, and travel records to US authorities with limited privacy safeguards.
Security Paidwork user database with 23 million records leaked online A database containing bank account numbers, payout histories, and personal details for 23 million users of a gig economy platform is now publicly accessible.
Privacy & Regulation AliExpress fined €550 million for Digital Services Act violations The European Commission imposed its largest e-commerce penalty under the Digital Services Act, signaling stricter enforcement against platforms selling illegal or counterfeit goods.
Security Hugging Face breached via autonomous AI agent system An autonomous AI agent breached a major AI repository, exposing internal datasets and credentials — a new attack vector combining AI capabilities with traditional intrusion methods.
Artificial Intelligence Moonshot and Alibaba release AI models claimed competitive with OpenAI and Anthropic Two major Chinese AI companies released models claiming frontier performance at lower cost, intensifying competition in a technology increasingly tied to national strategy.
Security WordPress remote code execution vulnerability discovered using AI-assisted research A security researcher used AI tools to discover a WordPress vulnerability valued at $500,000 by exploit brokers, demonstrating AI's growing role in vulnerability research.
Cloud & Infrastructure Airbus exits AWS in major cloud infrastructure reversal A major European aerospace manufacturer is moving away from AWS, signaling potential shift in enterprise cloud strategy and concerns about vendor lock-in or sovereignty.
Security ServiceNow AI Platform critical vulnerability now under active exploitation A critical code execution flaw in ServiceNow's enterprise AI platform is being actively exploited, threatening organizations using the widely deployed IT service management system.
Artificial Intelligence UK government auditors question £45 billion AI savings forecast Public sector AI deployments require workforce planning before promising multi-billion-pound savings.
Cloud & Infrastructure Red Hat introduces two-node edge cluster configuration to reduce deployment costs Edge computing infrastructure becomes more accessible as Red Hat addresses the cost barrier of traditional three-node deployments.
Open Source Microsoft proprietary formats remain primary lock-in strategy, Document Foundation reports Proprietary document formats create vendor dependency that affects procurement decisions and interoperability across organizations.