White House lets US firms hack foreign cybercrime groups
- 01The White House said US companies can now legally attack foreign cybercrime groups, a major shift in cyber policy. Cyber
- 02Hackers stole large amounts of passwords in an attack on LiteLLM, affecting Microsoft, Amazon, Cisco, Samsung, and Salesforce. Cyber
- 03California Uber and Lyft drivers won union rights in one of the biggest gig-worker organizing wins ever. Business
- 04Congo's Ebola outbreak is on track to become the deadliest ever, the WHO chief said. World
- 05Hackers are using a SharePoint security flaw after someone released working attack code online. Cyber
Technology
Microsoft Edge is dropping older extensions, affecting popular privacy tools
Microsoft Edge will stop supporting Manifest V2 extensions by the end of 2026, leaving 58 popular extensions to update.
Background
Manifest V2 (MV2) is an old system for how extensions work in Edge, Microsoft's web browser. Extensions are add-on tools that change how the browser works, often for privacy or security. Microsoft is now moving to Manifest V3 (MV3), a newer system. Most popular MV2 extensions have already switched to MV3.
What happened
Microsoft is retiring MV2 extensions in Edge starting this month. Some users will see warnings in their extension settings. Over the coming months, MV2 extensions will be turned off by default. Microsoft plans to finish removing them for regular users by the end of 2026. Enterprise users on managed systems will lose them in early 2027.
Why it matters
If you use privacy extensions in Edge, you may need to update them soon. Microsoft found 58 MV2 extensions with real usage. Only three lack a newer MV3 version you can switch to. For most popular tools, updated versions already exist. You will not lose functionality, but you may need to reinstall or update your extensions.
Twitch now lets users opt out of Amazon AI training on their content
Amazon has been using Twitch streams, clips, and chat to train AI models for more than two years.
Background
Amazon acquired Twitch, a video streaming platform where creators broadcast games and other content live, in 2014. For years, Amazon has been using material from Twitch streams, clips, and chats to train its generative AI models, which are systems designed to create new text, images, audio, or video. Users were not told they could opt out of this practice until now.
What happened
Twitch announced today that users can opt out of having their content used for Amazon's AI training. The opt-out applies to streams, archived videos (called VODs), clips, chat messages, and channel images and text. Users can change this setting at www.twitch.tv/settings/security. Previously, Amazon's use of Twitch content for AI training was not something creators could refuse.
Why it matters
If you stream on Twitch, your content may have already been fed into Amazon's AI systems without your knowledge. Now you have a choice: you can prevent future streams and posts from being used this way by adjusting your privacy settings. This matters because your creative work shapes how these AI tools learn and behave, and you now get a say in whether that happens.
Business
California Uber and Lyft drivers win union recognition
California Uber and Lyft drivers won union rights in one of the biggest gig-worker organizing wins ever.
Background
Uber and Lyft drivers in California are independent contractors, not employees. This means they have fewer legal protections than regular workers. On Friday, the Public Employment Relations Board said the California Gig Workers Union had reached the threshold to represent California Uber and Lyft drivers.
What happened
Uber and Lyft drivers gathered in Los Angeles on Tuesday to celebrate. The California Gig Workers Union said they won what they call one of the largest new organizing victories in modern labor history. After a 30-day waiting period, the union expects to be certified as their official bargaining representative.
On August 7, 2026, we won.
Why it matters
If certified, the union can negotiate wages, benefits, and working conditions for thousands of California drivers. This could affect how much drivers earn and what protections they have on the job. It may also shape how other gig work companies treat their drivers.
General Dynamics failed to deliver artillery shells despite $533 million contract
General Dynamics was paid in full but did not produce a single usable shell at its new factory.
Background
The Army needed artillery shells made quickly. It skipped normal safety rules and hired General Dynamics, a big defense company that builds military equipment. General Dynamics brought in a Turkish subcontractor without much vetting. The Army gave the company $533 million to build a new factory.
What happened
General Dynamics did not produce a single usable shell at the new factory. The Army shut down two production lines there. Despite this failure and no public penalty, the General Dynamics unit got new contract awards worth $2.5 billion.
Why it matters
Taxpayers paid $533 million for zero working shells. The military needs ammunition made well, and accountability matters when big contractors fail. It raises questions about how the Army checks its spending when a project goes wrong and whether failed contractors face real consequences.
US politics
Immigration and Customs Enforcement plans to equip agents with electric shock gloves
ICE plans to spend up to $20 million on gloves that deliver painful electric shocks.
Background
ICE enforces immigration law and handles deportations. In August, Norm covered ICE's plan to buy shock-delivering gloves. Now the agency has posted official details about the purchase.
What happened
ICE plans to spend up to $20 million to buy gloves that deliver electric shocks. The gloves, called GLOVE, can deliver 380 volts of electricity. That is roughly three times the power of a standard US outlet. The Department of Homeland Security published the plan on Monday.
Why it matters
ICE agents would use these gloves during arrests and enforcement actions. Civil rights groups, including the ACLU, have raised concerns about the devices. The gloves could change how ICE officers handle people who resist.
Federal judges describe violent threats amid dehumanizing attacks from political leaders
Hundreds of federal judges have gotten threats against them and their families.
Background
Federal judges decide cases on everything from criminal trials to disputes over policy. They sometimes face criticism when they rule against powerful people or groups. This year, hundreds of judges have received threats against themselves and their families, according to the U.S. Marshals Service.
What happened
The threats come as President Trump and his administration have made verbal and written attacks on judges who ruled against them. Some judges describe the attacks as dehumanizing. Judge John McConnell and others have spoken publicly about the threats they have received.
Why it matters
When judges fear for their safety, they struggle to make fair decisions. It also makes it harder for people to trust that justice is applied equally. Threats that target judges undermine the courts' ability to work without fear or pressure.
Three men will be executed on the same day for first time in 16 years
Three inmates in Tennessee, Alabama, and Oklahoma will be executed Thursday, the first time three were executed on the same day since 2010.
Background
The US allows states to execute people convicted of murder, usually after years of legal appeals. It's been 16 years since three people were executed on the same day.
What happened
Three men will be executed on Thursday in three different states. Anthony Darrell Hines, 66, will die in Tennessee. Jeremy Williams, 41, will die in Alabama. Carlos Cuesta-Rodriguez, 71, will die in Oklahoma. Last year there were more than four times as many executions as in 2021.
Why it matters
Executions are climbing sharply. Yet most Americans now oppose the death penalty. The trend shows a split between what states are doing and what most people want.
World
Democratic Republic of Congo Ebola outbreak on track to be deadliest ever
The WHO director says the current outbreak is on pace to surpass the 2014-2016 West Africa outbreak.
Background
The Democratic Republic of Congo has had Ebola outbreaks before. The worst one was from 2014 to 2016. That outbreak killed at least 11,000 people. The current outbreak started on May 15 of this year.
What happened
The current Ebola outbreak in Congo has caused more than 2,000 deaths and at least 4,300 cases so far. Tedros Adhanom Ghebreyesus is the director of the World Health Organization. He said the outbreak, at its current pace, will surpass the 2014-2016 outbreak as the deadliest ever. The WHO hopes to slow the spread within three months.
Why it matters
Ebola kills many people who catch it. If this outbreak becomes the deadliest on record, it means the disease is harder to control now than before. This changes how public health groups will prepare for and handle future outbreaks.
Ukrainian attack on Russian Black Sea port damages major grain export terminals
A strike on the Russian port of Novorossiysk killed three people, including a child, and hurt 24.
Background
Novorossiysk is Russia's main Black Sea port. It handles grain exports and hosts a major Russian naval base. Ukraine and Russia have fought over control of the Black Sea since Russia's 2022 invasion.
What happened
Ukraine launched a drone and missile strike on Novorossiysk overnight. The attack damaged two grain export terminals at the port. It also hit the naval base, Russia's last major one on the Black Sea. Local officials said three people died, including an eight-year-old child. Another 24 were injured. Ukraine's military said four Russian warships were hit.
Why it matters
Grain exports from Russia feed many countries worldwide. Damage to these terminals could disrupt global food supplies and raise prices. The strike also weakens Russia's military position in the region, which affects shipping and regional stability. As the war continues, both sides target each other's economic and military assets.
Thousands of Canadians call for US ambassador's expulsion over political interference
More than 70,000 Canadians signed a petition asking the US to remove ambassador Pete Hoekstra for interfering in Canada.
Background
Pete Hoekstra is the US ambassador to Canada. He was appointed by the Trump administration. Canada and the US are now in trade talks. They aim to reach a deal before new US tariffs start.
What happened
More than 70,000 Canadians signed an online petition calling for Hoekstra's expulsion. The petition says he has repeatedly spoken in Canadian politics. It also says he has treated Trump's talk of annexing Canada as a '51st state' as normal. The US embassy said it knows about the petition but will not say more.
Why it matters
These talks happen when relations between the two countries are already tense. A weakened relationship could hurt the chance of a trade deal that avoids new tariffs on both sides. Canada and the US are major trading partners, and tariffs would affect prices on goods.
Cybersecurity
White House authorizes private companies to hack foreign cybercrime groups
A presidential memo lets US companies legally attack foreign hackers on their own.
Background
Foreign cybercrime groups based outside the US attack American businesses and steal from people online. Until now, private companies could only defend their own systems. The government handled counterattacks.
What happened
The White House issued a directive allowing US companies to conduct offensive cyber operations. Companies may now hack foreign crime groups that target them. The order removes legal barriers that previously stopped private companies from hacking attackers.
Why it matters
American businesses targeted by cybercriminals may now fight back directly instead of waiting for government help. This could slow attacks faster. It also creates new risks if companies act recklessly or misidentify their targets.
Terabytes of credentials leaked in massive supply-chain attack on LiteLLM
The breach exposed passwords and access codes from Microsoft, Amazon, Cisco, Samsung, Salesforce, and thousands more.
Background
LiteLLM is an open source tool that helps developers build AI-powered software. It is widely used by major companies. This week, security researchers discovered that someone exposed sensitive data from people who use LiteLLM.
What happened
Researchers at CloudSEK and Hudson Rock found terabytes of leaked credentials. The data came from about 2,500 organizations. Victims include Microsoft, Amazon, Cisco, Samsung, Salesforce, Nvidia, Boeing, and Intel. The leaked files held cloud keys, password tokens, and AI access codes. Attackers could have used these to break into victim systems.
Why it matters
If your company uses LiteLLM, assume any passwords or access codes stored there are now exposed. You should change them right away. Even if you do not use LiteLLM directly, the breach shows that attacks on widely used tools can reach thousands of organizations at once.
Briefly
- Node.js creator liberates Durable Objects from Cloudflare · Tech
- Europe solar eclipse: millions watch rare spectacle across Spain, UK and Iceland – as it happened · Science
- Hudson-Smith dazzles home fans as he surges to golden European 400m hat-trick · Sports
- Polymarket let users bet on wildfires. Lawmakers warn that could spur arson. · Regulation
- India fuels worldwide jump in planned coal production · World
- Taiwan says it was hit by ‘abnormal’ AI-assisted cyber-attack · Cyber
- ChatGPT Desktop (Codex Desktop) for Linux · Tech
- AI nuclear power firm Fermi finally has a new CEO · Tech
- Japan protests Putin visit to disputed islands · World
- Trump says White House press secretary Karoline Leavitt to leave post · US Politics
- Economy grew in April to June as sun and World Cup helped some UK businesses · Finance
- A look at Spain's plan to give undocumented migrants legal status · World